|
Log-Analyse und Auswertung: Win 8.1 MPC Cleaner lässt sich nicht entfernenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
25.04.2016, 09:20 | #16 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernenCode:
ATTFilter Farbar Service Scanner Version: 27-01-2016 Ran by Jan (administrator) on 25-04-2016 at 10:18:38 Running from "C:\Users\Jan\Downloads" Microsoft Windows 8.1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Policy: ======================== Action Center: ============ Windows Update: ============ wuauserv Service is not running. Checking service configuration: The start type of wuauserv service is set to Demand. The default start type is Auto. The ImagePath of wuauserv service is OK. The ServiceDll of wuauserv service is OK. Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== WinDefend Service is not running. Checking service configuration: The start type of WinDefend service is OK. The ImagePath of WinDefend service is OK. Windows Defender Disabled Policy: ========================== [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender] "DisableAntiSpyware"=DWORD:1 Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => File is digitally signed C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed C:\Windows\System32\dhcpcore.dll => File is digitally signed C:\Windows\System32\drivers\afd.sys => File is digitally signed C:\Windows\System32\drivers\tdx.sys => File is digitally signed C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed C:\Windows\System32\dnsrslvr.dll => File is digitally signed C:\Windows\System32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\System32\mpssvc.dll => File is digitally signed C:\Windows\System32\bfe.dll => File is digitally signed C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed C:\Windows\System32\wscsvc.dll => File is digitally signed C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed C:\Windows\System32\wuaueng.dll => File is digitally signed C:\Windows\System32\qmgr.dll => File is digitally signed C:\Windows\System32\es.dll => File is digitally signed C:\Windows\System32\cryptsvc.dll => File is digitally signed C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed C:\Program Files\Windows Defender\MsMpEng.exe => File is digitally signed C:\Windows\System32\ipnathlp.dll => File is digitally signed C:\Windows\System32\iphlpsvc.dll => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed **** End of log **** der Windows Defender lässt sich übrigens nicht mehr aktivieren! Schon seit dem Mpc Cleaner. Mfg, Jan |
25.04.2016, 17:51 | #17 |
/// Malwareteam | Win 8.1 MPC Cleaner lässt sich nicht entfernen Ja darum geht es grade
__________________Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter cmd: sc config wuauserv start= auto reg: reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender" /v DisableAntiSpyware /t REG_DWORD /d 0x0 /f cmd: sc start wuauserv cmd: sc start WinDefend HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Schritt: 2 Bitte starte wieder FRST, setze den Haken bei Addition und drücke auf Untersuchen. Poste bitte wieder die beiden Textdateien, die so entstehen.
__________________ |
25.04.2016, 18:17 | #18 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernenCode:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-04-2016 01 durchgeführt von Jan (2016-04-25 19:05:00) Run:2 Gestartet von C:\Users\Jan\Desktop Geladene Profile: Jan (Verfügbare Profile: Jan) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** cmd: sc config wuauserv start= auto reg: reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender" /v DisableAntiSpyware /t REG_DWORD /d 0x0 /f cmd: sc start wuauserv cmd: sc start WinDefend HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" emptytemp: ***************** ========= sc config wuauserv start= auto ========= [SC] ChangeServiceConfig ERFOLG ========= Ende von CMD: ========= ========= reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender" /v DisableAntiSpyware /t REG_DWORD /d 0x0 /f ========= Der Vorgang wurde erfolgreich beendet. ========= Ende von Reg: ========= ========= sc start wuauserv ========= SERVICE_NAME: wuauserv TYPE : 20 WIN32_SHARE_PROCESS STATE : 2 START_PENDING (NOT_STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN) WIN32_EXIT_CODE : 0 (0x0) SERVICE_EXIT_CODE : 0 (0x0) CHECKPOINT : 0x0 WAIT_HINT : 0x7d0 PID : 552 FLAGS : ========= Ende von CMD: ========= ========= sc start WinDefend ========= [SC] StartService FEHLER 577: Die digitale Signatur dieser Datei kann nicht �berpr�ft werden. M�glicherweise wurde durch eine k�rzlich durchgef�hrte Hardware- oder Software�nderung eine falsch signierte oder besch�digte Datei oder eine Datei, bei der es sich um b�swillige Software aus einer unbekannten Quelle handelt, installiert. ========= Ende von CMD: ========= "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc" => Schlüssel erfolgreich entfernt "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc" => Schlüssel erfolgreich entfernt EmptyTemp: => 530.1 MB temporäre Dateien entfernt. Das System musste neu gestartet werden. ==== Ende von Fixlog 19:05:19 ==== Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-04-2016 01 durchgeführt von Jan (Administrator) auf NOTEBOOK-JAN2 (25-04-2016 19:14:25) Gestartet von C:\Users\Jan\Desktop Geladene Profile: Jan (Verfügbare Profile: Jan) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe () C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe (Qualcomm Atheros) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtTray.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Intel Corporation) C:\Program Files (x86)\Common Files\Intel\RSSDK\v3\bin\win32\notification_tool.exe (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Astonsoft) C:\Program Files (x86)\EssentialPIM\EssentialPIM.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Jan\Desktop\FRST64 (1).exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-26] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1387376 2014-05-13] (Realtek Semiconductor) HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.) HKLM-x32\...\Run: [Intel Privacy Notification Tool] => C:\Program Files (x86)\Common Files\Intel\RSSDK\v3\bin\win32\notification_tool.exe [8173240 2014-10-30] (Intel Corporation) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe -autorun HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-08-27] (Atheros Communications) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-03-31] (Valve Corporation) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [GoogleChromeAutoLaunch_1F14D2380DB1DE09582B9D790BD95BA5] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1008280 2016-04-21] (Google Inc.) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [Allway Sync] => C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe [93488 2015-10-29] () HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\MountPoints2: {7dd3a79a-3f30-11e5-826a-206a8a9e0239} - "F:\LaunchU3.exe" -a HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe HKU\S-1-5-18\...\RunOnce: [iCloud] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe [60688 2015-12-01] (Apple Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\phase-6 Reminder.lnk [2016-04-22] ShortcutTarget: phase-6 Reminder.lnk -> C:\Program Files (x86)\phase-6\phase-6\reminder\reminder.exe (phase-6) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{562729EF-57C3-478A-BEFD-55F1642D22A4}: [DhcpNameServer] 10.61.12.1 Tcpip\..\Interfaces\{8718928D-CBEB-45EA-A621-800A9249001D}: [NameServer] 10.0.0.1 Tcpip\..\Interfaces\{DB5D870B-9660-446A-83A0-9E1575A73068}: [DhcpNameServer] 192.168.178.1 ManualProxies: Internet Explorer: ================== SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> {A3782EB2-C684-409E-A3C8-C932D426AFD5} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-03-15] (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-04-20] (Microsoft Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-08-30] (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\kZsq9LNj.default FF NewTab: about:newtab FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll [2015-08-10] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll [2015-08-10] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-02-19] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-02-19] (Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-08-30] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-05] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-05] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\kZsq9LNj.default\Extensions\abs@avira.com.xpi [2016-04-10] StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR Profile: C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Adblock Plus) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-04-19] CHR Extension: (Skype) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-04-19] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-19] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [322176 2014-08-27] (Windows (R) Win 7 DDK provider) [Datei ist nicht signiert] R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [Datei ist nicht signiert] R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2829552 2016-03-08] (Microsoft Corporation) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1164672 2016-02-17] (NVIDIA Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315352 2014-06-16] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-02-19] (Intel Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-02-19] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-02-17] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6474112 2016-02-17] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2609024 2016-02-17] (NVIDIA Corporation) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3905536 2014-08-11] (Qualcomm Atheros Communications, Inc.) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-08-27] (Qualcomm Atheros) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) S3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) S3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-04-25] (Malwarebytes) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [116736 2014-02-19] (Intel Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28032 2016-02-17] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation) S3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42736 2014-07-10] (Synaptics Incorporated) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-04-25 16:21 - 2016-04-25 16:21 - 00000000 ____D C:\Users\Jan\AppData\Local\TempTaskUpdateDetection4822F7AE-F8AC-457E-8AF6-112DFE867E18 2016-04-25 15:48 - 2016-04-25 15:48 - 00000000 ____D C:\Users\Jan\AppData\Local\Microsoft Help 2016-04-25 10:18 - 2016-04-25 10:18 - 00002957 _____ C:\Windows\SysWOW64\FSS.txt 2016-04-25 10:12 - 2016-04-25 10:11 - 00007164 _____ C:\Users\Jan\Desktop\WinDefend.reg 2016-04-25 10:11 - 2016-04-25 10:11 - 00007164 _____ C:\Users\Jan\Downloads\WinDefend.reg 2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bonjour-Druckdienste 2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files\Bonjour Print Services 2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files\Bonjour 2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-04-25 09:57 - 2016-04-25 09:57 - 00000000 ____D C:\Users\Jan\Documents\Bluetooth Folder 2016-04-25 09:57 - 2016-04-25 09:57 - 00000000 ____D C:\Users\Jan\AppData\Local\BMExplorer 2016-04-22 17:15 - 2016-04-22 17:20 - 00000696 _____ C:\Users\Jan\Desktop\Search.txt 2016-04-22 14:13 - 2016-04-25 18:26 - 00009152 _____ C:\Users\Jan\Documents\Liste der erhaltenen Geschenke Konfirmation Jan am 24.04.2016.docx.xlsx 2016-04-22 14:12 - 2016-04-22 14:12 - 00008302 _____ C:\Users\Jan\Documents\Mappe1.xlsx 2016-04-21 19:52 - 2016-04-21 19:52 - 00000000 ____D C:\Users\Jan\Downloads\370LvL 2016-04-21 19:51 - 2016-04-21 19:51 - 00061155 _____ C:\Users\Jan\Downloads\370LvL.rar 2016-04-21 18:52 - 2016-04-21 18:52 - 00002796 _____ C:\Users\Jan\Downloads\FSS.txt 2016-04-21 18:51 - 2016-04-21 18:51 - 00899584 _____ (Farbar) C:\Users\Jan\Downloads\FSS.exe 2016-04-21 18:24 - 2016-04-21 18:26 - 00237504 _____ C:\TDSSKiller.3.1.0.9_21.04.2016_18.24.25_log.txt 2016-04-21 18:23 - 2016-04-21 18:23 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Jan\Downloads\tdsskiller.exe 2016-04-20 19:55 - 2016-04-20 19:55 - 02870984 _____ (ESET) C:\Users\Jan\Downloads\esetsmartinstaller_deu.exe 2016-04-20 19:49 - 2016-04-25 19:05 - 00002354 _____ C:\Users\Jan\Desktop\Fixlog.txt 2016-04-19 19:07 - 2016-04-19 19:08 - 29872687 _____ C:\Users\Jan\Downloads\client_20810.zip 2016-04-19 15:10 - 2016-04-25 19:14 - 00019430 _____ C:\Users\Jan\Desktop\FRST.txt 2016-04-19 15:10 - 2016-04-21 06:12 - 00050301 _____ C:\Users\Jan\Desktop\Addition.txt 2016-04-19 15:09 - 2016-04-19 15:09 - 00001271 _____ C:\Users\Jan\Downloads\FRST - Verknüpfung.lnk 2016-04-19 15:09 - 2016-04-18 16:45 - 02375680 _____ (Farbar) C:\Users\Jan\Desktop\FRST64 (1).exe 2016-04-19 15:01 - 2016-04-19 14:50 - 00024064 _____ C:\Windows\zoek-delete.exe 2016-04-19 14:50 - 2016-04-22 13:43 - 00001377 _____ C:\Users\Jan\Desktop\zoek - Verknüpfung.lnk 2016-04-19 14:49 - 2016-04-19 14:49 - 00001355 _____ C:\Users\Jan\Downloads\zoek - Verknüpfung.lnk 2016-04-19 14:48 - 2016-04-19 15:01 - 00000000 ____D C:\zoek_backup 2016-04-19 14:48 - 2016-04-19 14:48 - 01309184 _____ C:\Users\Jan\Downloads\zoek.exe 2016-04-19 14:44 - 2016-04-19 14:44 - 00047545 _____ C:\Users\Jan\Desktop\mbam.txt 2016-04-19 14:39 - 2016-04-22 13:43 - 00001353 _____ C:\Users\Jan\Desktop\GeForce Experience.lnk 2016-04-19 13:07 - 2016-04-25 19:06 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-04-19 13:07 - 2016-04-22 13:43 - 00001074 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-04-19 13:07 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-04-19 13:07 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-04-19 13:07 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-04-19 13:05 - 2016-04-19 13:05 - 22851472 _____ (Malwarebytes ) C:\Users\Jan\Downloads\mbam-setup-2.2.1.1043.exe 2016-04-18 16:48 - 2016-04-18 16:50 - 00047979 _____ C:\Users\Jan\Downloads\Addition.txt 2016-04-18 16:47 - 2016-04-18 16:50 - 00048575 _____ C:\Users\Jan\Downloads\FRST.txt 2016-04-18 16:46 - 2016-04-25 19:14 - 00000000 ____D C:\FRST 2016-04-18 16:45 - 2016-04-18 16:45 - 02375680 _____ (Farbar) C:\Users\Jan\Downloads\FRST64 (1).exe 2016-04-16 17:44 - 2016-04-16 17:44 - 00002440 _____ C:\Users\Jan\Desktop\AdwCleaner[C6].txt 2016-04-16 17:38 - 2016-04-16 17:38 - 01726464 _____ (Farbar) C:\Users\Jan\Downloads\FRST.exe 2016-04-16 17:36 - 2016-04-16 17:36 - 02375168 _____ (Farbar) C:\Users\Jan\Downloads\FRST64.exe 2016-04-16 17:18 - 2016-03-31 02:54 - 25817600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-04-16 17:18 - 2016-03-31 02:03 - 20352512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-04-16 17:18 - 2016-03-31 01:39 - 15415808 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-04-16 17:17 - 2016-03-31 02:31 - 02892800 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-04-16 17:17 - 2016-03-31 02:28 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-04-16 17:17 - 2016-03-31 02:25 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-04-16 17:17 - 2016-03-31 02:17 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-04-16 17:17 - 2016-03-31 01:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2016-04-16 17:17 - 2016-03-31 01:56 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-04-16 17:17 - 2016-03-31 01:55 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-04-16 17:17 - 2016-03-31 01:53 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-04-16 17:17 - 2016-03-31 01:51 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-04-16 17:17 - 2016-03-31 01:50 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2016-04-16 17:17 - 2016-03-31 01:45 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-04-16 17:17 - 2016-03-31 01:45 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-04-16 17:17 - 2016-03-31 01:43 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-04-16 17:17 - 2016-03-31 01:43 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-04-16 17:17 - 2016-03-31 01:43 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-04-16 17:17 - 2016-03-31 01:42 - 02131968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-04-16 17:17 - 2016-03-31 01:30 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-04-16 17:17 - 2016-03-31 01:30 - 02596864 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-04-16 17:17 - 2016-03-31 01:30 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-04-16 17:17 - 2016-03-31 01:30 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2016-04-16 17:17 - 2016-03-31 01:27 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2016-04-16 17:17 - 2016-03-31 01:24 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-04-16 17:17 - 2016-03-31 01:23 - 02056192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-04-16 17:17 - 2016-03-31 01:23 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-04-16 17:17 - 2016-03-31 01:23 - 00330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-04-16 17:17 - 2016-03-31 01:21 - 13811712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-04-16 17:17 - 2016-03-31 01:18 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-04-16 17:17 - 2016-03-31 01:06 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-04-16 17:17 - 2016-03-31 01:05 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-04-16 17:17 - 2016-03-31 01:02 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-04-16 17:17 - 2016-03-31 01:00 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-04-16 17:16 - 2016-03-16 01:00 - 00561952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2016-04-16 17:16 - 2016-03-15 16:14 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-04-16 17:16 - 2016-03-11 16:48 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2016-04-16 17:16 - 2016-03-10 20:22 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-04-16 17:16 - 2016-03-10 20:21 - 00401920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-04-16 17:16 - 2016-03-10 20:20 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-04-16 17:16 - 2016-03-10 19:44 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-04-16 17:16 - 2016-03-10 19:16 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-04-16 17:16 - 2016-03-10 19:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2016-04-16 17:16 - 2016-03-10 18:48 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2016-04-16 17:16 - 2016-03-03 18:47 - 02345472 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2016-04-16 17:16 - 2016-03-03 18:33 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2016-04-16 17:15 - 2016-04-16 17:15 - 03677760 _____ C:\Users\Jan\Downloads\adwcleaner_5.111.exe 2016-04-16 17:15 - 2016-04-04 08:35 - 00046768 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-04-16 17:15 - 2016-04-02 15:26 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-04-16 17:15 - 2016-04-02 15:26 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00698368 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-04-16 17:15 - 2016-03-03 03:39 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2016-04-16 17:15 - 2016-03-03 03:39 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2016-04-16 17:14 - 2016-03-10 21:19 - 07452512 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-04-16 17:14 - 2016-03-10 21:17 - 01663192 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-04-16 17:14 - 2016-03-10 21:17 - 01523216 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2016-04-16 17:14 - 2016-03-10 21:17 - 01490128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-04-16 17:14 - 2016-03-10 21:17 - 01358960 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2016-04-16 17:14 - 2016-03-10 21:17 - 01133752 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-04-16 17:14 - 2016-03-10 19:48 - 00862720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-04-16 17:14 - 2016-03-10 19:43 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2016-04-16 17:14 - 2016-03-10 18:55 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2016-04-16 17:14 - 2016-03-10 18:42 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2016-04-16 17:12 - 2016-03-03 18:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2016-04-16 12:12 - 2016-03-29 16:05 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-04-11 19:01 - 2016-04-11 19:01 - 00000000 _____ C:\autoexec.bat 2016-04-11 18:29 - 2016-04-16 17:20 - 00000000 ____D C:\AdwCleaner 2016-04-10 16:51 - 2016-04-10 16:51 - 00000000 ____D C:\Users\Jan\AppData\Roaming\MCorp 2016-04-10 16:28 - 2016-04-10 16:34 - 00000000 ____D C:\Users\Jan\AppData\Local\app 2016-04-10 16:19 - 2016-04-10 16:20 - 00000000 ____D C:\Users\Jan\AppData\Local\Tempfolder 2016-04-10 16:19 - 2016-04-10 16:19 - 00000000 ____D C:\uninst 2016-04-10 16:17 - 2016-04-10 16:20 - 00127488 _____ C:\Users\Jan\AppData\Roaming\Installer.dat 2016-04-10 16:16 - 2016-04-10 16:15 - 00001006 _____ C:\Windows\system32\Drivers\etc\hp.bak 2016-04-09 12:37 - 2016-04-09 12:37 - 00000000 ____D C:\Users\Jan\AppData\Roaming\dvdcss 2016-04-09 10:39 - 2016-04-09 10:39 - 00000000 ____D C:\Users\Jan\AppData\Local\Avira_Operations_GmbH_&_C 2016-04-09 10:31 - 2016-04-09 10:31 - 00000000 ____D C:\Users\Jan\AppData\Local\Avira 2016-04-09 10:29 - 2016-04-12 20:41 - 00000000 ____D C:\Program Files (x86)\Avira 2016-04-09 10:29 - 2016-04-11 20:20 - 00000000 ____D C:\ProgramData\Avira 2016-04-09 09:57 - 2016-04-09 09:57 - 00000000 ____D C:\Windows\system32\SSL 2016-03-29 12:06 - 2016-03-29 12:06 - 00000000 ____D C:\Users\Jan\AppData\Roaming\NVIDIA 2016-03-29 11:31 - 2016-03-29 11:31 - 00000000 ____D C:\ProgramData\NVIDIA 2016-03-29 11:31 - 2016-03-22 04:25 - 06369728 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2016-03-29 11:31 - 2016-03-22 04:25 - 02993088 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2016-03-29 11:31 - 2016-03-22 04:25 - 02561472 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2016-03-29 11:31 - 2016-03-22 04:25 - 01264064 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2016-03-29 11:31 - 2016-03-22 04:25 - 00532536 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2016-03-29 11:31 - 2016-03-22 04:25 - 00393784 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2016-03-29 11:31 - 2016-03-22 04:25 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2016-03-29 11:31 - 2016-03-22 04:25 - 00069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2016-03-29 11:31 - 2016-03-18 20:10 - 06253721 _____ C:\Windows\system32\nvcoproc.bin 2016-03-29 11:30 - 2016-03-22 06:12 - 42923576 _____ C:\Windows\system32\nvcompiler.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 37567424 _____ C:\Windows\SysWOW64\nvcompiler.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 31555008 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 25321408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 21355248 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 20897416 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 19004040 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 17748712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 17342392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 17248408 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 16446032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 14128840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 12567608 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2016-03-29 11:30 - 2016-03-22 06:12 - 10550736 _____ C:\Windows\system32\nvptxJitCompiler.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 08659472 _____ C:\Windows\SysWOW64\nvptxJitCompiler.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 03714472 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 03286992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 03235896 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 02809280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 01924152 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436472.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 01573432 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436472.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00959544 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00889400 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00753208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00695864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00678520 _____ C:\Windows\system32\nvfatbinaryLoader.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00571912 _____ C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00501896 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00425016 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00423080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00377792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00175368 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00153392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2016-03-29 11:30 - 2016-03-22 06:12 - 00037091 _____ C:\Windows\system32\nvinfo.pb 2016-03-29 11:30 - 2016-03-22 06:12 - 00000139 _____ C:\Windows\SysWOW64\nv-vk32.json 2016-03-29 11:30 - 2016-03-22 06:12 - 00000139 _____ C:\Windows\system32\nv-vk64.json 2016-03-27 12:08 - 2016-03-27 12:08 - 00000000 ____D C:\Users\Jan\Documents\Razer ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-04-25 19:13 - 2015-06-17 21:46 - 06387290 _____ C:\Windows\system32\perfh007.dat 2016-04-25 19:13 - 2015-06-17 21:46 - 01843714 _____ C:\Windows\system32\perfc007.dat 2016-04-25 19:13 - 2014-03-18 12:03 - 00005430 _____ C:\Windows\system32\PerfStringBackup.INI 2016-04-25 19:06 - 2015-08-09 19:46 - 00000000 ____D C:\Program Files (x86)\Steam 2016-04-25 19:06 - 2015-08-09 10:05 - 00001142 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-04-25 19:05 - 2015-07-15 18:57 - 00000000 ____D C:\Users\Jan 2016-04-25 19:05 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-04-25 19:02 - 2015-08-09 10:05 - 00001146 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-04-25 18:53 - 2015-08-10 08:56 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-04-25 16:15 - 2016-03-20 10:00 - 00000000 ____D C:\Users\Jan\AppData\Local\ElevatedDiagnostics 2016-04-25 16:15 - 2015-08-09 08:50 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-489078762-871934448-399521353-1001 2016-04-25 13:04 - 2015-08-31 20:54 - 00000000 ____D C:\Users\Jan\Documents\Euro Truck Simulator 2 2016-04-25 10:20 - 2015-06-17 12:54 - 00003718 _____ C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2016-04-25 09:57 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf 2016-04-23 20:37 - 2015-01-12 14:48 - 00000000 ____D C:\Windows\Panther 2016-04-23 13:04 - 2015-08-09 10:06 - 00002171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-04-23 13:04 - 2015-08-09 10:06 - 00002159 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-04-22 13:43 - 2016-03-22 18:08 - 00000882 _____ C:\Users\Public\Desktop\CCleaner.lnk 2016-04-22 13:43 - 2016-03-22 16:58 - 00001769 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-04-22 13:43 - 2016-02-24 21:09 - 00000921 _____ C:\Users\Public\Desktop\Euro Truck Simulator 2 Multiplayer.lnk 2016-04-22 13:43 - 2016-02-24 21:09 - 00000916 _____ C:\Users\Public\Desktop\American Truck Simulator Multiplayer.lnk 2016-04-22 13:43 - 2016-02-15 20:24 - 00000867 _____ C:\Users\Jan\Desktop\Steam.lnk 2016-04-22 13:43 - 2015-12-08 21:50 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk 2016-04-22 13:43 - 2015-11-03 19:57 - 00001772 _____ C:\Users\Jan\Desktop\Word 2013.lnk 2016-04-22 13:43 - 2015-08-31 16:42 - 00002838 _____ C:\Users\Jan\Desktop\Excel 2013.lnk 2016-04-22 13:43 - 2015-08-31 16:42 - 00002769 _____ C:\Users\Jan\Desktop\PowerPoint 2013.lnk 2016-04-22 13:43 - 2015-08-30 13:14 - 00001251 _____ C:\Users\Jan\Desktop\Landwirtschafts Simulator 15 .lnk 2016-04-22 13:43 - 2015-08-30 12:46 - 00001945 _____ C:\Users\Public\Desktop\Samsung Kies 3.lnk 2016-04-22 13:43 - 2015-08-30 12:28 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-04-22 13:43 - 2015-08-30 12:28 - 00002031 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2016-04-22 13:43 - 2015-08-30 12:15 - 00001089 _____ C:\Users\Public\Desktop\phase-6 desktop.lnk 2016-04-22 13:43 - 2015-08-30 11:54 - 00001042 _____ C:\Users\Public\Desktop\VLC media player.lnk 2016-04-22 13:43 - 2015-08-30 11:43 - 00001027 _____ C:\Users\Public\Desktop\EssentialPIM.lnk 2016-04-22 13:43 - 2015-08-30 11:41 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-04-22 13:43 - 2015-08-30 11:40 - 00000990 _____ C:\Users\Jan\Desktop\IrfanView 64.lnk 2016-04-22 13:43 - 2015-07-15 18:58 - 00001272 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk 2016-04-22 13:43 - 2015-07-15 18:58 - 00001051 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-04-22 13:43 - 2015-07-15 18:57 - 00000469 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-04-22 13:43 - 2015-07-15 18:57 - 00000467 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-04-22 13:43 - 2015-01-12 15:58 - 00001357 _____ C:\Users\Public\Desktop\CyberLink PowerDirector 10.lnk 2016-04-22 13:42 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\addins 2016-04-22 13:34 - 2015-12-08 21:50 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Skype 2016-04-22 13:29 - 2015-08-30 11:43 - 00000000 ____D C:\Users\Jan\AppData\Roaming\EssentialPIM 2016-04-21 06:19 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2016-04-20 19:32 - 2013-08-22 17:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-04-20 19:31 - 2015-08-30 13:10 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-04-19 20:34 - 2016-02-10 14:20 - 00000000 ____D C:\Users\Jan\Documents\ETS2MP 2016-04-19 19:33 - 2015-12-08 21:50 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-04-19 19:33 - 2015-12-08 21:50 - 00000000 ____D C:\ProgramData\Skype 2016-04-19 19:32 - 2015-08-09 09:00 - 00000000 ____D C:\Users\Jan\AppData\Local\CrashDumps 2016-04-19 19:08 - 2016-02-10 12:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ETS2 + ATS Multiplayer 2016-04-19 19:08 - 2016-02-10 12:51 - 00000000 ____D C:\Program Files\TruckersMP 2016-04-19 14:34 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\schemas 2016-04-19 13:51 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache 2016-04-19 13:02 - 2013-08-22 16:44 - 00381472 _____ C:\Windows\system32\FNTCACHE.DAT 2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ___SD C:\Windows\system32\GWX 2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ____D C:\Windows\system32\appraiser 2016-04-18 18:41 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp 2016-04-18 17:05 - 2016-02-13 20:35 - 00000000 ___HD C:\$WINDOWS.~BT 2016-04-18 16:45 - 2015-08-09 11:47 - 00000000 ____D C:\Windows\system32\MRT 2016-04-18 16:42 - 2015-08-09 11:47 - 135176864 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-04-18 16:39 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-04-16 17:21 - 2016-03-12 12:26 - 00000000 ____D C:\Program Files (x86)\Razer 2016-04-16 17:14 - 2016-01-12 20:47 - 00177488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-04-16 17:13 - 2016-03-09 15:46 - 01737080 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-04-16 17:13 - 2016-03-09 15:46 - 01501488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-04-16 17:13 - 2016-03-09 15:46 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll 2016-04-16 17:07 - 2016-03-12 12:31 - 00000000 ____D C:\Users\Jan\AppData\Local\Razer 2016-04-16 17:07 - 2016-03-12 12:26 - 00000000 ____D C:\ProgramData\Razer 2016-04-10 17:41 - 2016-02-07 17:03 - 00000000 ____D C:\Users\Jan\Documents\American Truck Simulator 2016-04-09 12:41 - 2015-08-30 11:54 - 00000000 ____D C:\Users\Jan\AppData\Roaming\vlc 2016-04-09 10:35 - 2015-08-30 12:20 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Mozilla 2016-04-09 09:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2016-04-05 23:53 - 2015-01-12 15:43 - 00829944 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-04-05 23:53 - 2015-01-12 15:43 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-04-05 15:36 - 2015-11-03 21:23 - 00000222 _____ C:\Users\Jan\Desktop\DiRT Rally.url 2016-04-02 19:54 - 2016-03-02 16:14 - 00000000 ____D C:\Users\Jan\Documents\Project CARS 2016-03-29 11:31 - 2015-06-17 12:50 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-03-29 11:31 - 2015-06-17 12:50 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2016-03-29 11:31 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Help ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-04-10 16:17 - 2016-04-10 16:20 - 0127488 _____ () C:\Users\Jan\AppData\Roaming\Installer.dat 2015-06-17 13:07 - 2015-06-17 13:07 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-04-20 21:55 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-04-2016 01 durchgeführt von Jan (2016-04-25 19:14:55) Gestartet von C:\Users\Jan\Desktop Windows 8.1 (X64) (2015-07-15 16:57:53) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-489078762-871934448-399521353-500 - Administrator - Disabled) Gast (S-1-5-21-489078762-871934448-399521353-501 - Limited - Disabled) Jan (S-1-5-21-489078762-871934448-399521353-1001 - Administrator - Enabled) => C:\Users\Jan ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8106.0 - Acer Incorporated) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8108 - Acer Incorporated) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (HKLM-x32\...\{F83DD803-2467-4D07-9D6F-87AF0434410A}) (Version: 11.9.900.170 - Adobe Systems Incorporated) Allway Sync (HKLM-x32\...\{BD9C52C1-7971-47D1-AB95-5F1F9F34D35A}) (Version: 15.3.1 - Botkind, Inc.) American Truck Simulator (HKLM-x32\...\Steam App 270880) (Version: - SCS Software) Apple Application Support (32-Bit) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.) Bonjour-Druckdienste (HKLM\...\{0DA20600-6130-443B-9D4B-F30520315FA6}) (Version: 2.0.2.0 - Apple Inc.) Broadcom NetLink Controller (HKLM\...\{7FBA83D7-D58E-4B70-9B9B-12E95B183B22}) (Version: 16.6.1.3 - Broadcom Corporation) Brother MFL-Pro Suite MFC-J6510DW (HKLM-x32\...\{17795164-3BC1-4D4F-8ADA-65C895EBFC9A}) (Version: 2.0.0.0 - Brother Industries, Ltd.) CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform) Cities: Skylines (HKLM-x32\...\Steam App 255710) (Version: - Colossal Order Ltd.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.4220 - CyberLink Corp.) DiRT Rally (HKLM-x32\...\Steam App 310560) (Version: - Codemasters Racing Studio) Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc) EssentialPIM (HKLM-x32\...\EssentialPIM) (Version: 6.58 - Astonsoft Ltd) Euro Truck Simulator (HKLM-x32\...\Steam App 232010) (Version: - SCS Software) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) F1 2012 (HKLM-x32\...\Steam App 208500) (Version: - Codemasters Birmingham) F1 2013 (HKLM-x32\...\Steam App 223670) (Version: - Codemasters Birmingham) F1 2015 (HKLM-x32\...\Steam App 286570) (Version: - Codemasters) Foxit PhantomPDF (HKLM-x32\...\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}) (Version: 6.0.121.624 - Foxit Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.87 - Google Inc.) Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden GRID 2 (HKLM-x32\...\Steam App 44350) (Version: - Codemasters Racing) iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.) Intel RealSense Warrior Wave (HKLM-x32\...\Warrior Wave) (Version: 1.0.24 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3643 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (x86): Core (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (x86): Face Tracking (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (x86): Face Tracking: Models (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (x86): User Notification Tool files and components (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (HKLM-x32\...\ARP_for_prd_rs_sdk_runtime_v3_3.1.0.85181) (Version: 3.1.0.85181 - Intel Corporation) IrfanView 64 (remove only) (HKLM\...\IrfanView) (Version: 4.40 - Irfan Skiljan) iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.) Kinect for Windows Speech Recognition Language Pack (de-DE) (HKLM-x32\...\{898AA67F-99B8-4C7F-9611-B11F98EF6E78}) (Version: 11.0.7413.611 - Microsoft Corporation) Landwirtschafts Simulator 15 (HKLM-x32\...\FarmingSimulator2015DE_is1) (Version: 1.4.2.0 - GIANTS Software) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4815.1001 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-489078762-871934448-399521353-1001\...\OneDriveSetup.exe) (Version: 17.3.6302.0225 - Microsoft Corporation) Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation) NVIDIA Grafiktreiber 364.72 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 364.72 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4815.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4815.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4815.1001 - Microsoft Corporation) Hidden phase-6 2.3.5 (HKLM-x32\...\phase-6) (Version: 2.3.5 - phase-6) Project CARS (HKLM-x32\...\Steam App 234630) (Version: - Slightly Mad Studios) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.330 - Qualcomm Atheros Communications) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.43 - Qualcomm Atheros) RaceRoom Racing Experience (HKLM-x32\...\Steam App 211500) (Version: - Sector3 Studios) RaceRoom Racing Experience Launcher (HKLM-x32\...\{1FD9F07F-7BBF-4C91-B3F0-A23714A3A913}_is1) (Version: 1.0 - Sector3 Studios) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39059 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7260 - Realtek Semiconductor Corp.) Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.16011.2 - Samsung Electronics Co., Ltd.) Samsung Kies3 (x32 Version: 3.2.16011.2 - Samsung Electronics Co., Ltd.) Hidden Scania Truck Driving Simulator (HKLM-x32\...\Steam App 258760) (Version: - SCS Software) SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.21 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.21.100 - Skype Technologies S.A.) Spintires (HKLM-x32\...\Steam App 263280) (Version: - Oovee® Game Studios) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TruckersMP 0.2.0.8.1 Alpha (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.2.0.8.1 Alpha - ETS2MP Team) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Welcome to Intel RealSense 3D Camera (HKLM-x32\...\Welcome to Intel RealSense 3D Camera) (Version: 1.05 - Intel) WinRAR 5.31 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07A88F54-C730-4DF8-BCC3-487E1A76ACF6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.) Task: {0F0B2947-8987-410B-87C4-8783AB74FC1B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\Windows\system32\MRT.exe [2016-04-18] (Microsoft Corporation) Task: {144CF144-9872-4470-98C7-96F247898303} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [2014-07-22] (Acer Incorporated) Task: {2D8F5536-6E75-4A7B-9608-890995125601} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-10] (Adobe Systems Incorporated) Task: {3386A9AD-41B9-44E2-8207-1CB1BBAC9757} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated) Task: {61B4AA7B-433F-481E-B729-50D03345EA54} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.) Task: {64463039-F0D9-4FA1-A62E-2423AEF171E6} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-489078762-871934448-399521353-1001 => C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-11] (Microsoft Corporation) Task: {6E5497CD-4EAA-47CB-827D-E28BC9C911C1} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2014-06-17] (Acer Incorporated) Task: {7D2CFD96-D1A2-45C2-974A-2814F836791E} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {7D36D36D-8C01-41F6-9BB6-AF7D5E84A5C4} - System32\Tasks\{BF66D5AD-3558-4BBF-9D5D-82147A5E9F3F} => pcalua.exe -a "C:\Program Files (x86)\Acer\abDocs\AcerDocsSetup.exe" -c -uninstall Task: {91CFB104-0317-4B91-89F7-29EAFF0CD2B5} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation) Task: {95A1FE22-88D3-4336-B7AD-CCF5B920B496} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {9CAB6DED-5621-4F5E-9970-B32B21887A37} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd) Task: {9CF1FF96-5129-498B-A9F2-3EFF6A437F42} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe [2014-04-07] (Dolby Laboratories Inc.) Task: {BEB25077-0AEE-4334-8CD9-E0F48D46E870} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {C54C4F96-BDFA-4A9E-AAED-43F7385562F8} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-04-18] (Microsoft Corporation) Task: {D0A479A7-929A-49B8-8484-2E9B420B9332} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe Task: {E987A9FC-7172-4CFF-AC33-3F4B42D608F1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-03-29 11:31 - 2016-03-22 04:25 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-03-18 23:56 - 2016-03-18 23:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-03-18 23:56 - 2016-03-18 23:56 - 01329936 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-08-30 13:10 - 2015-10-13 05:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2016-03-01 21:16 - 2016-02-17 08:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2015-12-19 19:54 - 2016-02-17 08:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-03-01 21:16 - 2016-02-17 08:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2015-01-12 15:54 - 2012-04-24 12:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2015-08-30 12:43 - 2010-03-16 01:04 - 00143360 _____ () C:\Windows\system32\BrSNMP64.dll 2014-04-07 16:13 - 2014-04-07 16:13 - 00052096 _____ () C:\Program Files\Dolby Digital Plus\Dolby.DDP.Controls_Desktop.dll 2015-06-17 12:50 - 2016-02-17 09:01 - 00717184 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll 2015-06-17 12:50 - 2016-02-17 09:02 - 00862592 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll 2014-08-27 19:45 - 2014-08-27 19:45 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2014-08-27 19:41 - 2014-08-27 19:41 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll 2014-08-27 19:47 - 2014-08-27 19:47 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe 2015-10-29 15:14 - 2015-10-29 15:14 - 00093488 _____ () C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe 2014-08-27 19:48 - 2014-08-27 19:48 - 00384128 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ContactsApi.dll 2014-08-27 19:36 - 2014-08-27 19:36 - 00020992 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\L10n\de-DE\BtTray.de-DE.dll 2016-03-11 22:31 - 2016-03-11 22:31 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2016-04-23 13:04 - 2016-04-21 07:10 - 02224280 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libglesv2.dll 2016-04-23 13:04 - 2016-04-21 07:10 - 00097944 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libegl.dll 2015-08-09 10:40 - 2016-02-17 09:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-08-09 19:48 - 2016-03-11 02:56 - 00783360 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-08-09 19:48 - 2015-07-03 18:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-08-09 19:48 - 2016-03-31 22:55 - 02549840 _____ () C:\Program Files (x86)\Steam\video.dll 2015-08-09 19:48 - 2015-07-03 18:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-08-09 19:48 - 2015-07-03 18:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2015-08-09 19:48 - 2016-03-31 22:55 - 00829008 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-03-09 19:14 - 2016-02-18 00:25 - 00281088 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2015-10-29 13:44 - 2015-10-29 13:44 - 08569344 _____ () C:\Program Files (x86)\Allway Sync\Bin\syncapp.dll 2015-08-30 12:43 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2015-08-09 19:48 - 2016-02-09 03:33 - 48400672 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2014-02-19 18:51 - 2014-02-19 18:51 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 15:25 - 2016-04-10 16:15 - 00001006 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-489078762-871934448-399521353-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jan\AppData\Roaming\Microsoft\Windows Photo Viewer\Hintergrundbild der Windows-Fotoanzeige.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\StartupApproved\Run: => "Spotify Web Helper" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{5255B9A2-A987-47B7-AD1D-5B9EC09BBD29}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{177AEDA3-7A63-40BD-B9D2-86E5DE0B0525}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{168494FD-66C5-4C2A-AE2D-C1E8EEB66228}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe FirewallRules: [{CCCF3C04-4E6A-46C3-93BD-28DAB4F8BD45}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe FirewallRules: [{9F0CBB67-0577-48F2-9783-D423DE006369}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{03F81190-EA49-4E74-834F-09FB3235F302}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{42D08078-860B-4AE9-B02C-1B518878C94D}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{32F0C2BF-DAEF-4801-9CB7-A292D319B58E}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{B90645B1-0989-496E-B2E6-7C4AA0C67184}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{6D49E321-B7BE-48D9-96A8-FD265A4F9EB3}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{E4F3E027-28A6-4B3B-93AD-A37A06578C0F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{23684A87-38E4-4BA0-A204-6ECBEAD044B0}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{66D90117-1867-4F0A-B85C-CD00058459CD}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{AB017C7A-6014-404A-B10B-B38536445939}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{2695E114-88E4-4C0F-A250-430847E147EB}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{0275EA0C-D51E-4E08-8874-4304C8165CCE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{D633977F-1C07-4F70-A691-EDAFC53FEB65}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{AB0B2FB5-21A1-45B6-B31C-5C19D4FD133C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{B5B2424C-3B0D-4720-BF7A-87357F1E3177}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{3B2ECB12-BCA8-47F3-A7FB-DD1715975F80}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{3A938CB8-68AA-46AE-ACD8-967440294721}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{E8666CED-3003-4AE8-8F0A-62869EAB6068}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{DAB988FC-FAEA-4D69-8B20-9DE4472466D9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{AFADCC7F-303F-4374-BB18-14622EEA487D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{0ED1EBD6-C022-4274-9495-D019F1FB9DA1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{4054727D-41C2-4AD0-8069-88FDD7442191}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{514A81D2-AA7E-431C-977F-ED9E7C66B522}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{B7C60454-A552-4859-9BA2-65EFA7C40FA1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{31B9CF05-4391-4741-85C8-1D900B7C846F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{C0010281-198A-4A0D-BFC3-F4928D9D45F6}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{A38C273F-78AF-4F85-A4C3-089100CFF807}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{02F30AB7-0A5A-4156-AA33-792730082FAE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{1E20F0C0-1479-4194-A641-2774204AA61E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{EABF564F-3340-43E5-8262-2CDEF4458F6C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{D4A908AA-782E-44A6-A6A5-77E5E204361B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{2F2F3FAD-9AFD-4FA7-B4C6-0B8130B488E8}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe FirewallRules: [{C3197FBD-F2D0-491C-8ECD-2CAEF5ACA4C5}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe FirewallRules: [{FAD1F37E-0A45-4AAD-BC61-FCB84390D491}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe FirewallRules: [{501C0F43-EBC3-4858-AF25-0B1E3D29C021}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe FirewallRules: [{133E087A-AAF9-4BE6-A4F4-32EF738DC6E6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{86FB5E4D-CB72-4A4C-98CD-2F892244BCBE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{0EB6DFB3-0DF8-4215-AF62-52B0C597A470}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{EF72E83F-26F9-4616-B64F-28D1250250DC}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{061DC6EF-0495-493B-81F1-DB74C9DB04A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe FirewallRules: [{BB2976D1-D38F-4137-B34D-066FA09B8682}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe FirewallRules: [{5CD1601B-F887-4D2B-9367-5698E3A34B38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2012\F1_2012.exe FirewallRules: [{E486775E-0703-47C3-94F6-2D268BC6962B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2012\F1_2012.exe FirewallRules: [{B05CBC4F-BC42-406D-8B87-F32FA2BAFE53}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\f12013\F1_2013.exe FirewallRules: [{0EF656BD-F3FB-44B5-ACB6-096829CC86D6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\f12013\F1_2013.exe FirewallRules: [{573BC1AD-64F3-4BAB-AEA8-64DC16E4A4F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe FirewallRules: [{49D2CD9B-E5B5-4777-92A5-AC8B7BBB7917}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe FirewallRules: [{16773875-EA72-44B6-912B-EC94F8A546CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe FirewallRules: [{E9BCAC84-4BF9-41AF-8792-AFF33F96764A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe FirewallRules: [TCP Query User{00105315-7825-4946-BB0A-71F1E266630C}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{B4C455B4-DEA3-44A7-991B-FFD1D366CA41}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{67B2E0AF-CCA2-4647-87DA-83930B1FEDEB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe FirewallRules: [{F2D8E220-A092-42EA-9AF3-0EF775A171AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe FirewallRules: [{63976110-E447-4B78-B963-2FAB5EDAB20A}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe FirewallRules: [{36C30BA6-9718-447F-B59F-0DD2AB2C28E1}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe FirewallRules: [{786CC2EB-683D-4794-BAAC-E38D81D66A17}] => (Allow) LPort=54925 FirewallRules: [{147D1EEF-67C4-4E55-B685-D77493CD480A}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{28B7563D-6764-437B-9E5E-1E988232B4F2}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{634A5341-F797-40F1-9AA3-D1E41EB72BB6}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{7EB100D4-EEE7-4EF8-A74D-3264DF9FD4F4}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{EA9AC0B9-6F1B-424E-8E48-64F4BF8126FA}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{2C2EA128-6412-4181-8A4D-D92E05B7EC75}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{F40459FE-8EAC-433D-ACEA-97FDC5DA3D32}] => (Allow) C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [TCP Query User{E9FFD9BF-2060-402E-AD79-C906B02B539C}C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe] => (Allow) C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe FirewallRules: [UDP Query User{BA51C170-5763-45F1-8034-3938147ABCB3}C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe] => (Allow) C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe FirewallRules: [{E0CBDE1E-5C86-48CE-9802-86DA3BA91D52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe FirewallRules: [{E63F55E2-D563-4B39-A5AE-D87509A12EC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe FirewallRules: [{BC520304-1C68-4BA3-89C4-32FEE1C82F4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe FirewallRules: [{E9DA2C27-251D-430B-A8E7-16A1D7319300}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe FirewallRules: [{A12925A2-9BA0-42AD-A3AE-FC712C36A199}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe FirewallRules: [{341F4A65-AD01-449C-ADFD-E7E47CD8DDB1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe FirewallRules: [{E21ADE07-AEE0-44C2-8E37-A0913B44A52A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trucks & Trailers\bin\win_x86\trucks_n_trailers.exe FirewallRules: [{028CBB43-3354-487B-BB8B-FE14A4767410}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trucks & Trailers\bin\win_x86\trucks_n_trailers.exe FirewallRules: [{89D56416-7B46-4FCE-BFCC-4DE65FEA769F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe FirewallRules: [{82F2CA31-99DA-4917-B91D-452B1D2B449F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe FirewallRules: [{EC639DFF-6821-429A-951C-C651DC9B099F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator\eurotrucks.exe FirewallRules: [{C5753D9C-1DBE-434A-B4A2-DB3A2427141E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator\eurotrucks.exe FirewallRules: [TCP Query User{3B3EFB66-147E-4B3D-997F-E504925A9C31}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{05FDD09D-27D4-4C69-8ECF-49B5354C1AE7}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{C017ED3E-56ED-44CE-A897-2A0791F55148}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{F39FBCC3-FEEB-423B-A925-E4AA7E88EFC5}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{5B20645B-91CE-4204-8671-5DABE490E824}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe FirewallRules: [{2F27CF8E-6801-45DF-845A-47F79EFE5CF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe FirewallRules: [{AE33FC29-0BE1-4DE7-A8FC-E7355C8B82F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\pCars\pCARS64.exe FirewallRules: [{3C4815BF-CC19-401E-A619-F4CB7B4F63C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\pCars\pCARS64.exe FirewallRules: [{3981513C-C594-46CB-8249-9CB7FE806353}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{BAEDA2ED-8C25-4C9C-A51F-72FC0BB0ADE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\Game\RRRE.exe FirewallRules: [{0D9F4E1B-F2B1-4B46-8FD9-8BC452808629}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\Game\RRRE.exe FirewallRules: [{E2230A58-72F0-4AB0-B896-309157D9C62C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe FirewallRules: [{7F378F69-E9D6-46E3-AF0E-FEF3735F6932}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe FirewallRules: [{225A46F2-0C09-4422-9E6A-53D188C34E05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{B274B511-4E4E-4E19-8BE6-D4BEDA1F9C9E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{D6353889-13F9-4AE5-BFA3-71349B47325C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{5E84EF38-6DC6-40A9-A45E-CC41BE572881}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{8480922A-BF1B-4F54-87AA-1E80C8FA4C44}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{C3A5C10A-5F58-4FC0-A69C-F02D39C6F7EC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{2AF52FEC-CB35-4E46-B89F-D48C7F7EBABF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe ==================== Wiederherstellungspunkte ========================= 25-04-2016 10:01:11 Installed Bonjour Print Services ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (04/25/2016 07:13:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (04/25/2016 07:13:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (04/25/2016 07:13:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 21 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR Notebook-Jan2.local. Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 192.168.178.19:5353 23 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR Notebook-Jan2-2.local. Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 21 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.3.E.0.C.B.C.E.D.0.0.3.0.0.2.ip6.arpa. PTR Notebook-Jan2.local. Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 192.168.178.19:5353 23 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.3.E.0.C.B.C.E.D.0.0.3.0.0.2.ip6.arpa. PTR Notebook-Jan2-2.local. Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 21 19.178.168.192.in-addr.arpa. PTR Notebook-Jan2.local. Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 192.168.178.19:5353 23 19.178.168.192.in-addr.arpa. PTR Notebook-Jan2-2.local. Error: (04/25/2016 07:01:09 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 21 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR Notebook-Jan2.local. Systemfehler: ============= Error: (04/25/2016 07:06:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (04/25/2016 07:05:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (04/25/2016 07:01:10 PM) (Source: NetBT) (EventID: 4321) (User: ) Description: Der Name "WORKGROUP :1d" konnte nicht auf der Schnittstelle mit IP-Adresse 192.168.178.19 registriert werden. Der Computer mit IP-Adresse 192.168.178.1 hat nicht zugelassen, dass dieser Computer diesen Namen verwendet. Error: (04/25/2016 07:00:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (04/25/2016 07:00:11 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 25.04.2016 um 18:50:53 unerwartet heruntergefahren. Error: (04/25/2016 06:31:48 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (04/25/2016 06:15:08 PM) (Source: BTHUSB) (EventID: 16) (User: ) Description: Die beiderseitige Authentifizierung zwischen dem lokalen Bluetooth-Adapter und einem Gerät mit Bluetooth-Adapteradresse (08:df:1f:de:84:91) ist fehlgeschlagen. Error: (04/25/2016 05:00:57 PM) (Source: DCOM) (EventID: 10016) (User: Notebook-Jan2) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Notebook-Jan2JanS-1-5-21-489078762-871934448-399521353-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (04/25/2016 05:00:57 PM) (Source: DCOM) (EventID: 10016) (User: Notebook-Jan2) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Notebook-Jan2JanS-1-5-21-489078762-871934448-399521353-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (04/25/2016 05:00:57 PM) (Source: DCOM) (EventID: 10016) (User: Notebook-Jan2) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Notebook-Jan2JanS-1-5-21-489078762-871934448-399521353-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar CodeIntegrity: =================================== Date: 2016-04-25 19:06:10.023 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-25 19:05:02.537 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-25 19:00:52.353 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-25 17:00:55.667 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-25 12:19:36.949 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-25 10:15:58.727 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-20 19:50:08.821 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-10 16:20:41.321 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-10 16:20:41.224 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-10 16:20:41.108 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-4710HQ CPU @ 2.50GHz Prozentuale Nutzung des RAM: 26% Installierter physikalischer RAM: 8115.27 MB Verfügbarer physikalischer RAM: 5954.97 MB Summe virtueller Speicher: 16819.27 MB Verfügbarer virtueller Speicher: 14480.1 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:453.77 GB) (Free:221.46 GB) NTFS Drive d: (DATA) (Fixed) (Total:453.77 GB) (Free:453.62 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 27067300) Partition: GPT. ==================== Ende von Addition.txt ============================ |
26.04.2016, 16:25 | #19 | |
/// Malwareteam | Win 8.1 MPC Cleaner lässt sich nicht entfernen ... Hattest du zu vor mal eine andere Antivirenlösung installiert? Wenn ja, welche? Schritt: 1 Bitte gehe mal zu diesem Pfad: Zitat:
__________________ Mfg, Rafael ~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~ Unterstütze uns mit einer Spende ......... Lob, Kritik oder Wünsche ......... .......... Folge uns auf Facebook .......... |
26.04.2016, 16:37 | #20 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernen Hallo Rafael, Nein ich hatte keine Antivirenlösung installiert. Die MSASCUI.exe ist in dem angegebenen Ordner nicht vorhanden. Was nun? Gruß Jan |
28.04.2016, 09:12 | #21 |
/// Malwareteam | Win 8.1 MPC Cleaner lässt sich nicht entfernen Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter cmd: sfc /Scannow cmd: findstr /c:"[SR]" %windir%\logs\cbs\cbs.log cmd: dir "C:\Program Files\Windows Defender" Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ --> Win 8.1 MPC Cleaner lässt sich nicht entfernen |
29.04.2016, 05:12 | #22 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernen Hallo Rafael, die Fixlog.txt ist zu lang um sie hier posten zu können!!! Sind noch viele Schritte bis zur engültigen besiegung der adware nötig? Gruß Jan Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-04-2016 01 durchgeführt von Jan (2016-04-28 18:22:26) Run:3 Gestartet von C:\Users\Jan\Desktop Geladene Profile: Jan (Verfügbare Profile: Jan) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** cmd: sfc /Scannow cmd: findstr /c:"[SR]" %windir%\logs\cbs\cbs.log cmd: dir "C:\Program Files\Windows Defender" ***************** ========= sfc /Scannow ========= S y s t e m s u c h e w i r d g e s t a r t e t . D i e s e r V o r g a n g k a n n e i n i g e Z e i t d a u e r n . � b e r p r � f u n g s p h a s e d e r S y s t e m s u c h e w i r d g e s t a r t e t . � b e r p r � f u n g 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 2 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 3 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 4 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 5 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 6 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 7 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 8 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 0 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 1 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 2 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 3 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 4 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 5 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 6 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 7 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 8 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 9 9 % a b g e s c h l o s s e n . � b e r p r � f u n g 1 0 0 % a b g e s c h l o s s e n . V o m W i n d o w s - R e s s o u r c e n s c h u t z w u r d e n b e s c h � d i g t e D a t e i e n g e f u n d e n , u n d e i n i g e d a v o n k o n n t e n n i c h t r e p a r i e r t w e r d e n . W e i t e r e I n f o r m a t i o n e n f i n d e n S i e i n d e r D a t e i " C B S . L o g " u n t e r " w i n d i r \ L o g s \ C B S \ C B S . l o g " , z . B . " C : \ W i n d o w s \ L o g s \ C B S \ C B S . l o g " . H i n w e i s : B e i d e r O f f l i n e w a r t u n g w i r d d i e P r o t o k o l l i e r u n g d e r z e i t n i c h t u n t e r s t � t z t . ========= Ende von CMD: ========= ========= findstr /c:"[SR]" %windir%\logs\cbs\cbs.log ========= 2016-04-28 18:22:36, Info CSI 0000000a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:22:36, Info CSI 0000000b [SR] Beginning Verify and Repair transaction 2016-04-28 18:22:42, Info CSI 0000000c [SR] Verify complete 2016-04-28 18:22:42, Info CSI 0000000d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:22:42, Info CSI 0000000e [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:00, Info CSI 0000000f [SR] Verify complete 2016-04-28 18:23:00, Info CSI 00000010 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:00, Info CSI 00000011 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:03, Info CSI 00000012 [SR] Verify complete 2016-04-28 18:23:03, Info CSI 00000013 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:03, Info CSI 00000014 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:06, Info CSI 00000015 [SR] Verify complete 2016-04-28 18:23:06, Info CSI 00000016 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:06, Info CSI 00000017 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:10, Info CSI 00000018 [SR] Verify complete 2016-04-28 18:23:10, Info CSI 00000019 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:10, Info CSI 0000001a [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:13, Info CSI 0000001b [SR] Verify complete 2016-04-28 18:23:13, Info CSI 0000001c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:13, Info CSI 0000001d [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:22, Info CSI 0000001e [SR] Verify complete 2016-04-28 18:23:22, Info CSI 0000001f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:22, Info CSI 00000020 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:26, Info CSI 00000021 [SR] Verify complete 2016-04-28 18:23:26, Info CSI 00000022 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:26, Info CSI 00000023 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:29, Info CSI 00000024 [SR] Verify complete 2016-04-28 18:23:29, Info CSI 00000025 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:29, Info CSI 00000026 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:31, Info CSI 00000027 [SR] Verify complete 2016-04-28 18:23:31, Info CSI 00000028 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:31, Info CSI 00000029 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:34, Info CSI 0000002a [SR] Verify complete 2016-04-28 18:23:35, Info CSI 0000002b [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:35, Info CSI 0000002c [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:44, Info CSI 0000002d [SR] Verify complete 2016-04-28 18:23:44, Info CSI 0000002e [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:44, Info CSI 0000002f [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:46, Info CSI 00000030 [SR] Verify complete 2016-04-28 18:23:46, Info CSI 00000031 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:46, Info CSI 00000032 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:49, Info CSI 00000033 [SR] Verify complete 2016-04-28 18:23:49, Info CSI 00000034 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:49, Info CSI 00000035 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:52, Info CSI 00000036 [SR] Verify complete 2016-04-28 18:23:52, Info CSI 00000037 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:52, Info CSI 00000038 [SR] Beginning Verify and Repair transaction 2016-04-28 18:23:59, Info CSI 00000039 [SR] Verify complete 2016-04-28 18:23:59, Info CSI 0000003a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:23:59, Info CSI 0000003b [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:02, Info CSI 0000003c [SR] Verify complete 2016-04-28 18:24:02, Info CSI 0000003d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:02, Info CSI 0000003e [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:04, Info CSI 0000003f [SR] Verify complete 2016-04-28 18:24:04, Info CSI 00000040 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:04, Info CSI 00000041 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:07, Info CSI 00000042 [SR] Verify complete 2016-04-28 18:24:07, Info CSI 00000043 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:07, Info CSI 00000044 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:15, Info CSI 00000045 [SR] Verify complete 2016-04-28 18:24:15, Info CSI 00000046 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:15, Info CSI 00000047 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:17, Info CSI 00000048 [SR] Verify complete 2016-04-28 18:24:17, Info CSI 00000049 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:17, Info CSI 0000004a [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:20, Info CSI 0000004b [SR] Verify complete 2016-04-28 18:24:20, Info CSI 0000004c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:20, Info CSI 0000004d [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:22, Info CSI 0000004e [SR] Verify complete 2016-04-28 18:24:23, Info CSI 0000004f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:23, Info CSI 00000050 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:25, Info CSI 00000051 [SR] Verify complete 2016-04-28 18:24:25, Info CSI 00000052 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:25, Info CSI 00000053 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:33, Info CSI 00000054 [SR] Verify complete 2016-04-28 18:24:33, Info CSI 00000055 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:33, Info CSI 00000056 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:36, Info CSI 00000057 [SR] Verify complete 2016-04-28 18:24:36, Info CSI 00000058 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:36, Info CSI 00000059 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:38, Info CSI 0000005a [SR] Verify complete 2016-04-28 18:24:38, Info CSI 0000005b [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:38, Info CSI 0000005c [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:40, Info CSI 0000005d [SR] Verify complete 2016-04-28 18:24:40, Info CSI 0000005e [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:40, Info CSI 0000005f [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:42, Info CSI 00000060 [SR] Verify complete 2016-04-28 18:24:42, Info CSI 00000061 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:42, Info CSI 00000062 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:50, Info CSI 00000063 [SR] Verify complete 2016-04-28 18:24:50, Info CSI 00000064 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:50, Info CSI 00000065 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:53, Info CSI 00000066 [SR] Verify complete 2016-04-28 18:24:53, Info CSI 00000067 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:53, Info CSI 00000068 [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:55, Info CSI 00000069 [SR] Verify complete 2016-04-28 18:24:55, Info CSI 0000006a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:55, Info CSI 0000006b [SR] Beginning Verify and Repair transaction 2016-04-28 18:24:57, Info CSI 0000006c [SR] Verify complete 2016-04-28 18:24:58, Info CSI 0000006d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:24:58, Info CSI 0000006e [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:05, Info CSI 0000006f [SR] Verify complete 2016-04-28 18:25:05, Info CSI 00000070 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:05, Info CSI 00000071 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:08, Info CSI 00000072 [SR] Verify complete 2016-04-28 18:25:08, Info CSI 00000073 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:08, Info CSI 00000074 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:10, Info CSI 00000075 [SR] Verify complete 2016-04-28 18:25:10, Info CSI 00000076 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:10, Info CSI 00000077 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:12, Info CSI 00000078 [SR] Verify complete 2016-04-28 18:25:12, Info CSI 00000079 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:12, Info CSI 0000007a [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:14, Info CSI 0000007b [SR] Verify complete 2016-04-28 18:25:14, Info CSI 0000007c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:14, Info CSI 0000007d [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:22, Info CSI 0000007e [SR] Verify complete 2016-04-28 18:25:22, Info CSI 0000007f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:22, Info CSI 00000080 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:25, Info CSI 00000081 [SR] Verify complete 2016-04-28 18:25:25, Info CSI 00000082 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:25, Info CSI 00000083 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:27, Info CSI 00000084 [SR] Verify complete 2016-04-28 18:25:27, Info CSI 00000085 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:27, Info CSI 00000086 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:29, Info CSI 00000087 [SR] Verify complete 2016-04-28 18:25:29, Info CSI 00000088 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:29, Info CSI 00000089 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:32, Info CSI 0000008a [SR] Verify complete 2016-04-28 18:25:32, Info CSI 0000008b [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:32, Info CSI 0000008c [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:40, Info CSI 0000008d [SR] Verify complete 2016-04-28 18:25:40, Info CSI 0000008e [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:40, Info CSI 0000008f [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:42, Info CSI 00000090 [SR] Verify complete 2016-04-28 18:25:42, Info CSI 00000091 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:42, Info CSI 00000092 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:44, Info CSI 00000093 [SR] Verify complete 2016-04-28 18:25:44, Info CSI 00000094 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:44, Info CSI 00000095 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:47, Info CSI 00000096 [SR] Verify complete 2016-04-28 18:25:47, Info CSI 00000097 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:47, Info CSI 00000098 [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:49, Info CSI 00000099 [SR] Verify complete 2016-04-28 18:25:49, Info CSI 0000009a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:49, Info CSI 0000009b [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:56, Info CSI 0000009c [SR] Verify complete 2016-04-28 18:25:56, Info CSI 0000009d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:56, Info CSI 0000009e [SR] Beginning Verify and Repair transaction 2016-04-28 18:25:59, Info CSI 0000009f [SR] Verify complete 2016-04-28 18:25:59, Info CSI 000000a0 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:25:59, Info CSI 000000a1 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:01, Info CSI 000000a2 [SR] Verify complete 2016-04-28 18:26:01, Info CSI 000000a3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:01, Info CSI 000000a4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:03, Info CSI 000000a5 [SR] Verify complete 2016-04-28 18:26:03, Info CSI 000000a6 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:03, Info CSI 000000a7 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:05, Info CSI 000000a8 [SR] Verify complete 2016-04-28 18:26:05, Info CSI 000000a9 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:05, Info CSI 000000aa [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:12, Info CSI 000000ab [SR] Verify complete 2016-04-28 18:26:12, Info CSI 000000ac [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:12, Info CSI 000000ad [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:16, Info CSI 000000ae [SR] Verify complete 2016-04-28 18:26:16, Info CSI 000000af [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:16, Info CSI 000000b0 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:18, Info CSI 000000b1 [SR] Verify complete 2016-04-28 18:26:18, Info CSI 000000b2 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:18, Info CSI 000000b3 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:20, Info CSI 000000b4 [SR] Verify complete 2016-04-28 18:26:20, Info CSI 000000b5 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:20, Info CSI 000000b6 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:25, Info CSI 000000b7 [SR] Verify complete 2016-04-28 18:26:25, Info CSI 000000b8 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:25, Info CSI 000000b9 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:30, Info CSI 000000bb [SR] Verify complete 2016-04-28 18:26:30, Info CSI 000000bc [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:30, Info CSI 000000bd [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:36, Info CSI 000000be [SR] Verify complete 2016-04-28 18:26:36, Info CSI 000000bf [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:36, Info CSI 000000c0 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:38, Info CSI 000000c1 [SR] Verify complete 2016-04-28 18:26:38, Info CSI 000000c2 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:38, Info CSI 000000c3 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:40, Info CSI 000000c4 [SR] Verify complete 2016-04-28 18:26:40, Info CSI 000000c5 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:40, Info CSI 000000c6 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:42, Info CSI 000000c7 [SR] Verify complete 2016-04-28 18:26:42, Info CSI 000000c8 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:42, Info CSI 000000c9 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:44, Info CSI 000000ca [SR] Verify complete 2016-04-28 18:26:44, Info CSI 000000cb [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:44, Info CSI 000000cc [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:46, Info CSI 000000cd [SR] Verify complete 2016-04-28 18:26:46, Info CSI 000000ce [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:46, Info CSI 000000cf [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:48, Info CSI 000000d0 [SR] Verify complete 2016-04-28 18:26:49, Info CSI 000000d1 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:49, Info CSI 000000d2 [SR] Beginning Verify and Repair transaction 2016-04-28 18:26:59, Info CSI 000000d3 [SR] Verify complete 2016-04-28 18:26:59, Info CSI 000000d4 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:26:59, Info CSI 000000d5 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:01, Info CSI 000000d6 [SR] Verify complete 2016-04-28 18:27:01, Info CSI 000000d7 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:01, Info CSI 000000d8 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:03, Info CSI 000000d9 [SR] Verify complete 2016-04-28 18:27:04, Info CSI 000000da [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:04, Info CSI 000000db [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:06, Info CSI 000000dc [SR] Verify complete 2016-04-28 18:27:06, Info CSI 000000dd [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:06, Info CSI 000000de [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:15, Info CSI 000000df [SR] Verify complete 2016-04-28 18:27:15, Info CSI 000000e0 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:15, Info CSI 000000e1 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:16, Info CSI 000000e2 [SR] Verify complete 2016-04-28 18:27:16, Info CSI 000000e3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:16, Info CSI 000000e4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:18, Info CSI 000000e5 [SR] Verify complete 2016-04-28 18:27:18, Info CSI 000000e6 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:18, Info CSI 000000e7 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:20, Info CSI 000000e8 [SR] Verify complete 2016-04-28 18:27:20, Info CSI 000000e9 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:20, Info CSI 000000ea [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:21, Info CSI 000000eb [SR] Verify complete 2016-04-28 18:27:22, Info CSI 000000ec [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:22, Info CSI 000000ed [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:29, Info CSI 000000ee [SR] Verify complete 2016-04-28 18:27:30, Info CSI 000000ef [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:30, Info CSI 000000f0 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:33, Info CSI 000000f1 [SR] Verify complete 2016-04-28 18:27:33, Info CSI 000000f2 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:33, Info CSI 000000f3 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:36, Info CSI 000000f4 [SR] Verify complete 2016-04-28 18:27:36, Info CSI 000000f5 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:36, Info CSI 000000f6 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:38, Info CSI 000000f7 [SR] Verify complete 2016-04-28 18:27:38, Info CSI 000000f8 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:38, Info CSI 000000f9 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:40, Info CSI 000000fa [SR] Verify complete 2016-04-28 18:27:40, Info CSI 000000fb [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:40, Info CSI 000000fc [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:49, Info CSI 000000fd [SR] Verify complete 2016-04-28 18:27:49, Info CSI 000000fe [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:49, Info CSI 000000ff [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:51, Info CSI 00000100 [SR] Verify complete 2016-04-28 18:27:51, Info CSI 00000101 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:51, Info CSI 00000102 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:54, Info CSI 00000103 [SR] Verify complete 2016-04-28 18:27:54, Info CSI 00000104 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:54, Info CSI 00000105 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:56, Info CSI 00000106 [SR] Verify complete 2016-04-28 18:27:56, Info CSI 00000107 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:56, Info CSI 00000108 [SR] Beginning Verify and Repair transaction 2016-04-28 18:27:57, Info CSI 0000010a [SR] Cannot repair member file [l:32{16}]"Event Viewer.lnk" of EventViewerSettings, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:27:58, Info CSI 0000010c [SR] Cannot repair member file [l:32{16}]"Event Viewer.lnk" of EventViewerSettings, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:27:58, Info CSI 0000010d [SR] This component was referenced by [l:164{82}]"Package_752_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2054_neutral_GDR" 2016-04-28 18:27:58, Info CSI 00000110 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:32{16}]"Event Viewer.lnk"; source file in store is also corrupted 2016-04-28 18:27:58, Info CSI 00000111 [SR] Verify complete 2016-04-28 18:27:58, Info CSI 00000112 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:27:58, Info CSI 00000113 [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:00, Info CSI 00000114 [SR] Verify complete 2016-04-28 18:28:00, Info CSI 00000115 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:00, Info CSI 00000116 [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:12, Info CSI 00000117 [SR] Verify complete 2016-04-28 18:28:12, Info CSI 00000118 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:12, Info CSI 00000119 [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:16, Info CSI 0000011a [SR] Verify complete 2016-04-28 18:28:16, Info CSI 0000011b [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:16, Info CSI 0000011c [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:19, Info CSI 0000011d [SR] Verify complete 2016-04-28 18:28:19, Info CSI 0000011e [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:19, Info CSI 0000011f [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:23, Info CSI 00000120 [SR] Verify complete 2016-04-28 18:28:23, Info CSI 00000121 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:23, Info CSI 00000122 [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:30, Info CSI 00000123 [SR] Verify complete 2016-04-28 18:28:30, Info CSI 00000124 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:30, Info CSI 00000125 [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:35, Info CSI 00000126 [SR] Verify complete 2016-04-28 18:28:35, Info CSI 00000127 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:35, Info CSI 00000128 [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:36, Info CSI 00000129 [SR] Verify complete 2016-04-28 18:28:36, Info CSI 0000012a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:36, Info CSI 0000012b [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:39, Info CSI 0000012c [SR] Verify complete 2016-04-28 18:28:39, Info CSI 0000012d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:39, Info CSI 0000012e [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:45, Info CSI 00000147 [SR] Verify complete 2016-04-28 18:28:45, Info CSI 00000148 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:45, Info CSI 00000149 [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:47, Info CSI 0000014b [SR] Cannot repair member file [l:36{18}]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:28:49, Info CSI 0000014d [SR] Cannot repair member file [l:32{16}]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:28:52, Info CSI 00000152 [SR] Cannot repair member file [l:36{18}]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:28:52, Info CSI 00000153 [SR] This component was referenced by [l:164{82}]"Package_873_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2613_neutral_GDR" 2016-04-28 18:28:52, Info CSI 00000156 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:36{18}]"Steps Recorder.lnk"; source file in store is also corrupted 2016-04-28 18:28:53, Info CSI 00000158 [SR] Cannot repair member file [l:32{16}]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:28:53, Info CSI 00000159 [SR] This component was referenced by [l:164{82}]"Package_868_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2529_neutral_GDR" 2016-04-28 18:28:53, Info CSI 0000015c [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:32{16}]"Task Manager.lnk"; source file in store is also corrupted 2016-04-28 18:28:53, Info CSI 00000160 [SR] Verify complete 2016-04-28 18:28:53, Info CSI 00000161 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:53, Info CSI 00000162 [SR] Beginning Verify and Repair transaction 2016-04-28 18:28:58, Info CSI 00000165 [SR] Verify complete 2016-04-28 18:28:58, Info CSI 00000166 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:28:58, Info CSI 00000167 [SR] Beginning Verify and Repair transaction 2016-04-28 18:29:06, Info CSI 0000016f [SR] Verify complete 2016-04-28 18:29:06, Info CSI 00000170 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:29:06, Info CSI 00000171 [SR] Beginning Verify and Repair transaction 2016-04-28 18:29:10, Info CSI 00000177 [SR] Verify complete 2016-04-28 18:29:10, Info CSI 00000178 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:29:10, Info CSI 00000179 [SR] Beginning Verify and Repair transaction 2016-04-28 18:29:13, Info CSI 0000017a [SR] Verify complete 2016-04-28 18:29:13, Info CSI 0000017b [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:29:13, Info CSI 0000017c [SR] Beginning Verify and Repair transaction 2016-04-28 18:29:15, Info CSI 0000017e [SR] Cannot repair member file [l:44{22}]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:15, Info CSI 00000180 [SR] Cannot repair member file [l:46{23}]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:16, Info CSI 00000182 [SR] Cannot repair member file [l:28{14}]"Calculator.lnk" of Microsoft-Windows-calc, Version = 6.3.9600.17667, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:17, Info CSI 00000184 [SR] Cannot repair member file [l:46{23}]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:17, Info CSI 00000185 [SR] This component was referenced by [l:164{82}]"Package_752_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2048_neutral_GDR" 2016-04-28 18:29:17, Info CSI 00000188 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:46{23}]"Computer Management.lnk"; source file in store is also corrupted 2016-04-28 18:29:18, Info CSI 0000018b [SR] Cannot repair member file [l:28{14}]"Calculator.lnk" of Microsoft-Windows-calc, Version = 6.3.9600.17667, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:18, Info CSI 0000018c [SR] This component was referenced by [l:154{77}]"Package_1_for_KB3024755~31bf3856ad364e35~amd64~~6.3.1.1.3024755-1_neutral_GDR" 2016-04-28 18:29:18, Info CSI 0000018f [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:28{14}]"Calculator.lnk"; source file in store is also corrupted 2016-04-28 18:29:19, Info CSI 00000191 [SR] Cannot repair member file [l:44{22}]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:19, Info CSI 00000192 [SR] This component was referenced by [l:326{163}]"Microsoft-Windows-Client-Features-Package-AutoMerged-com~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-com-Deployment" 2016-04-28 18:29:19, Info CSI 00000195 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:44{22}]"Component Services.lnk"; source file in store is also corrupted 2016-04-28 18:29:20, Info CSI 00000196 [SR] Verify complete 2016-04-28 18:29:21, Info CSI 00000197 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:29:21, Info CSI 00000198 [SR] Beginning Verify and Repair transaction 2016-04-28 18:29:23, Info CSI 0000019a [SR] Cannot repair member file [l:34{17}]"Character Map.lnk" of Microsoft-Windows-charmap, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:24, Info CSI 0000019c [SR] Cannot repair member file [l:32{16}]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:27, Info CSI 000001a5 [SR] Cannot repair member file [l:34{17}]"Character Map.lnk" of Microsoft-Windows-charmap, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:27, Info CSI 000001a6 [SR] This component was referenced by [l:166{83}]"Package_1361_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3943_neutral_GDR" 2016-04-28 18:29:27, Info CSI 000001a9 [SR] Could not reproject corrupted file [ml:520{260},l:162{81}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools"\[l:34{17}]"Character Map.lnk"; source file in store is also corrupted 2016-04-28 18:29:28, Info CSI 000001b5 [SR] Cannot repair member file [l:32{16}]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:29:28, Info CSI 000001b6 [SR] This component was referenced by [l:166{83}]"Package_1361_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3942_neutral_GDR" 2016-04-28 18:29:28, Info CSI 000001b9 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:32{16}]"Disk Cleanup.lnk"; source file in store is also corrupted 2016-04-28 18:29:30, Info CSI 000001c9 [SR] Verify complete 2016-04-28 18:29:30, Info CSI 000001ca [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:29:30, Info CSI 000001cb [SR] Beginning Verify and Repair transaction 2016-04-28 18:29:40, Info CSI 000001ef [SR] Verify complete 2016-04-28 18:29:40, Info CSI 000001f0 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:29:40, Info CSI 000001f1 [SR] Beginning Verify and Repair transaction 2016-04-28 18:29:47, Info CSI 000001fb [SR] Verify complete 2016-04-28 18:29:47, Info CSI 000001fc [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:29:47, Info CSI 000001fd [SR] Beginning Verify and Repair transaction 2016-04-28 18:29:57, Info CSI 00000206 [SR] Verify complete 2016-04-28 18:29:57, Info CSI 00000207 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:29:57, Info CSI 00000208 [SR] Beginning Verify and Repair transaction 2016-04-28 18:30:04, Info CSI 00000220 [SR] Verify complete 2016-04-28 18:30:04, Info CSI 00000221 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:30:04, Info CSI 00000222 [SR] Beginning Verify and Repair transaction 2016-04-28 18:30:10, Info CSI 00000224 [SR] Cannot repair member file [l:20{10}]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:30:15, Info CSI 00000226 [SR] Cannot repair member file [l:20{10}]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:30:15, Info CSI 00000227 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2637_neutral_GDR" 2016-04-28 18:30:15, Info CSI 0000022a [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:20{10}]"dfrgui.lnk"; source file in store is also corrupted 2016-04-28 18:30:16, Info CSI 00000230 [SR] Verify complete 2016-04-28 18:30:16, Info CSI 00000231 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:30:16, Info CSI 00000232 [SR] Beginning Verify and Repair transaction 2016-04-28 18:30:22, Info CSI 00000233 [SR] Verify complete 2016-04-28 18:30:22, Info CSI 00000234 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:30:22, Info CSI 00000235 [SR] Beginning Verify and Repair transaction 2016-04-28 18:30:31, Info CSI 0000023a [SR] Verify complete 2016-04-28 18:30:31, Info CSI 0000023b [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:30:31, Info CSI 0000023c [SR] Beginning Verify and Repair transaction 2016-04-28 18:30:41, Info CSI 00000258 [SR] Verify complete 2016-04-28 18:30:41, Info CSI 00000259 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:30:41, Info CSI 0000025a [SR] Beginning Verify and Repair transaction 2016-04-28 18:30:43, Info CSI 0000025c [SR] Cannot repair member file [l:48{24}]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:30:53, Info CSI 00000284 [SR] Cannot repair member file [l:48{24}]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:30:53, Info CSI 00000285 [SR] This component was referenced by [l:166{83}]"Package_2188_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-6085_neutral_GDR" 2016-04-28 18:30:53, Info CSI 00000288 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:48{24}]"Windows Fax and Scan.lnk"; source file in store is also corrupted 2016-04-28 18:30:54, Info CSI 00000297 [SR] Verify complete 2016-04-28 18:30:54, Info CSI 00000298 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:30:54, Info CSI 00000299 [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:08, Info CSI 000002b9 [SR] Verify complete 2016-04-28 18:31:08, Info CSI 000002ba [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:31:08, Info CSI 000002bb [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:24, Info CSI 000002c0 [SR] Verify complete 2016-04-28 18:31:24, Info CSI 000002c1 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:31:24, Info CSI 000002c2 [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:28, Info CSI 000002c7 [SR] Verify complete 2016-04-28 18:31:28, Info CSI 000002c8 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:31:28, Info CSI 000002c9 [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:33, Info CSI 000002e2 [SR] Verify complete 2016-04-28 18:31:33, Info CSI 000002e3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:31:33, Info CSI 000002e4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:42, Info CSI 000002f0 [SR] Verify complete 2016-04-28 18:31:42, Info CSI 000002f1 [SR] Verifying 100 (0x0000000000000064) components |
29.04.2016, 05:13 | #23 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernenCode:
ATTFilter 2016-04-28 18:31:42, Info CSI 000002f2 [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:44, Info CSI 000002f3 [SR] Verify complete 2016-04-28 18:31:44, Info CSI 000002f4 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:31:44, Info CSI 000002f5 [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:47, Info CSI 000002fe [SR] Verify complete 2016-04-28 18:31:47, Info CSI 000002ff [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:31:47, Info CSI 00000300 [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:49, Info CSI 00000304 [SR] Verify complete 2016-04-28 18:31:49, Info CSI 00000305 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:31:49, Info CSI 00000306 [SR] Beginning Verify and Repair transaction 2016-04-28 18:31:58, Info CSI 0000037b [SR] Verify complete 2016-04-28 18:31:58, Info CSI 0000037c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:31:58, Info CSI 0000037d [SR] Beginning Verify and Repair transaction 2016-04-28 18:32:06, Info CSI 00000385 [SR] Verify complete 2016-04-28 18:32:06, Info CSI 00000386 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:32:06, Info CSI 00000387 [SR] Beginning Verify and Repair transaction 2016-04-28 18:32:10, Info CSI 00000389 [SR] Cannot repair member file [l:38{19}]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:32:10, Info CSI 0000038e [SR] Cannot repair member file [l:38{19}]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:32:10, Info CSI 0000038f [SR] This component was referenced by [l:164{82}]"Package_941_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2791_neutral_GDR" 2016-04-28 18:32:10, Info CSI 00000392 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:38{19}]"iSCSI Initiator.lnk"; source file in store is also corrupted 2016-04-28 18:32:12, Info CSI 0000039f [SR] Verify complete 2016-04-28 18:32:12, Info CSI 000003a0 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:32:12, Info CSI 000003a1 [SR] Beginning Verify and Repair transaction 2016-04-28 18:32:24, Info CSI 000003a2 [SR] Verify complete 2016-04-28 18:32:24, Info CSI 000003a3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:32:24, Info CSI 000003a4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:32:30, Info CSI 000003ae [SR] Verify complete 2016-04-28 18:32:30, Info CSI 000003af [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:32:30, Info CSI 000003b0 [SR] Beginning Verify and Repair transaction 2016-04-28 18:32:31, Info CSI 000003b2 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:32:33, Info CSI 000003b4 [SR] Cannot repair member file [l:54{27}]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:32:33, Info CSI 000003b6 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:32:33, Info CSI 000003b7 [SR] This component was referenced by [l:166{83}]"Package_1052_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3082_neutral_GDR" 2016-04-28 18:32:33, Info CSI 000003ba [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:60{30}]"ODBC Data Sources (64-bit).lnk"; source file in store is also corrupted 2016-04-28 18:32:36, Info CSI 000003c8 [SR] Cannot repair member file [l:54{27}]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:32:36, Info CSI 000003c9 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2631_neutral_GDR" 2016-04-28 18:32:36, Info CSI 000003cc [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:54{27}]"Memory Diagnostics Tool.lnk"; source file in store is also corrupted 2016-04-28 18:32:36, Info CSI 000003d4 [SR] Verify complete 2016-04-28 18:32:36, Info CSI 000003d5 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:32:36, Info CSI 000003d6 [SR] Beginning Verify and Repair transaction 2016-04-28 18:32:48, Info CSI 000003e1 [SR] Verify complete 2016-04-28 18:32:49, Info CSI 000003e2 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:32:49, Info CSI 000003e3 [SR] Beginning Verify and Repair transaction 2016-04-28 18:32:49, Info CSI 000003e5 [SR] Cannot repair member file [l:50{25}]"Windows Easy Transfer.lnk" of Microsoft-Windows-MigrationWizardApplication, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:32:52, Info CSI 000003e7 [SR] Cannot repair member file [l:50{25}]"Windows Easy Transfer.lnk" of Microsoft-Windows-MigrationWizardApplication, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:32:52, Info CSI 000003e8 [SR] This component was referenced by [l:164{82}]"Package_844_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2333_neutral_GDR" 2016-04-28 18:32:52, Info CSI 000003eb [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:50{25}]"Windows Easy Transfer.lnk"; source file in store is also corrupted 2016-04-28 18:32:53, Info CSI 000003ec [SR] Verify complete 2016-04-28 18:32:53, Info CSI 000003ed [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:32:53, Info CSI 000003ee [SR] Beginning Verify and Repair transaction 2016-04-28 18:32:56, Info CSI 000003f0 [SR] Cannot repair member file [l:48{24}]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:33:05, Info CSI 000003f2 [SR] Cannot repair member file [l:48{24}]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:33:05, Info CSI 000003f3 [SR] This component was referenced by [l:190{95}]"Microsoft-Windows-MediaPlayer-Package~31bf3856ad364e35~amd64~~6.3.9600.16384.WindowsMediaPlayer" 2016-04-28 18:33:05, Info CSI 000003f6 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:48{24}]"Windows Media Player.lnk"; source file in store is also corrupted 2016-04-28 18:33:08, Info CSI 00000404 [SR] Verify complete 2016-04-28 18:33:08, Info CSI 00000405 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:33:08, Info CSI 00000406 [SR] Beginning Verify and Repair transaction 2016-04-28 18:33:10, Info CSI 00000408 [SR] Cannot repair member file [l:48{24}]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:33:12, Info CSI 00000413 [SR] Cannot repair member file [l:48{24}]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:33:12, Info CSI 00000414 [SR] This component was referenced by [l:164{82}]"Package_874_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2621_neutral_GDR" 2016-04-28 18:33:12, Info CSI 00000417 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:48{24}]"System Configuration.lnk"; source file in store is also corrupted 2016-04-28 18:33:14, Info CSI 00000428 [SR] Verify complete 2016-04-28 18:33:15, Info CSI 00000429 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:33:15, Info CSI 0000042a [SR] Beginning Verify and Repair transaction 2016-04-28 18:33:21, Info CSI 0000042c [SR] Cannot repair member file [l:44{22}]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:33:21, Info CSI 0000042e [SR] Cannot repair member file [l:18{9}]"Paint.lnk" of Microsoft-Windows-mspaint, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:33:25, Info CSI 00000435 [SR] Cannot repair member file [l:44{22}]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:33:25, Info CSI 00000436 [SR] This component was referenced by [l:164{82}]"Package_844_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2332_neutral_GDR" 2016-04-28 18:33:25, Info CSI 00000439 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:44{22}]"System Information.lnk"; source file in store is also corrupted 2016-04-28 18:33:25, Info CSI 0000043b [SR] Cannot repair member file [l:18{9}]"Paint.lnk" of Microsoft-Windows-mspaint, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:33:25, Info CSI 0000043c [SR] This component was referenced by [l:166{83}]"Package_1365_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-4028_neutral_GDR" 2016-04-28 18:33:25, Info CSI 0000043f [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:18{9}]"Paint.lnk"; source file in store is also corrupted 2016-04-28 18:33:26, Info CSI 00000444 [SR] Verify complete 2016-04-28 18:33:26, Info CSI 00000445 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:33:26, Info CSI 00000446 [SR] Beginning Verify and Repair transaction 2016-04-28 18:33:34, Info CSI 00000455 [SR] Verify complete 2016-04-28 18:33:34, Info CSI 00000456 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:33:34, Info CSI 00000457 [SR] Beginning Verify and Repair transaction 2016-04-28 18:33:46, Info CSI 00000484 [SR] Verify complete 2016-04-28 18:33:46, Info CSI 00000485 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:33:46, Info CSI 00000486 [SR] Beginning Verify and Repair transaction 2016-04-28 18:33:52, Info CSI 00000489 [SR] Verify complete 2016-04-28 18:33:52, Info CSI 0000048a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:33:52, Info CSI 0000048b [SR] Beginning Verify and Repair transaction 2016-04-28 18:33:58, Info CSI 00000497 [SR] Verify complete 2016-04-28 18:33:59, Info CSI 00000498 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:33:59, Info CSI 00000499 [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:09, Info CSI 000004aa [SR] Verify complete 2016-04-28 18:34:09, Info CSI 000004ab [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:09, Info CSI 000004ac [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:11, Info CSI 000004ae [SR] Cannot repair member file [l:40{20}]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:34:11, Info CSI 000004b0 [SR] Cannot repair member file [l:46{23}]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:34:13, Info CSI 000004b5 [SR] Cannot repair member file [l:40{20}]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:34:13, Info CSI 000004b6 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2628_neutral_GDR" 2016-04-28 18:34:13, Info CSI 000004b8 [SR] Cannot repair member file [l:46{23}]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:34:13, Info CSI 000004b9 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2628_neutral_GDR" 2016-04-28 18:34:13, Info CSI 000004bc [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:40{20}]"Resource Monitor.lnk"; source file in store is also corrupted 2016-04-28 18:34:13, Info CSI 000004bf [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:46{23}]"Performance Monitor.lnk"; source file in store is also corrupted 2016-04-28 18:34:13, Info CSI 000004c2 [SR] Verify complete 2016-04-28 18:34:14, Info CSI 000004c3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:14, Info CSI 000004c4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:14, Info CSI 000004c6 [SR] Cannot repair member file [l:52{26}]"Windows PowerShell ISE.lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:34:14, Info CSI 000004c8 [SR] Cannot repair member file [l:64{32}]"Windows PowerShell ISE (x86).lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:34:18, Info CSI 000004cd [SR] Cannot repair member file [l:52{26}]"Windows PowerShell ISE.lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:34:18, Info CSI 000004ce [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment" 2016-04-28 18:34:18, Info CSI 000004d0 [SR] Cannot repair member file [l:64{32}]"Windows PowerShell ISE (x86).lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:34:18, Info CSI 000004d1 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment" 2016-04-28 18:34:18, Info CSI 000004d4 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:52{26}]"Windows PowerShell ISE.lnk"; source file in store is also corrupted 2016-04-28 18:34:18, Info CSI 000004d7 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:64{32}]"Windows PowerShell ISE (x86).lnk"; source file in store is also corrupted 2016-04-28 18:34:22, Info CSI 000004e4 [SR] Verify complete 2016-04-28 18:34:22, Info CSI 000004e5 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:22, Info CSI 000004e6 [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:30, Info CSI 000004ef [SR] Verify complete 2016-04-28 18:34:30, Info CSI 000004f0 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:30, Info CSI 000004f1 [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:34, Info CSI 000004f3 [SR] Verify complete 2016-04-28 18:34:34, Info CSI 000004f4 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:34, Info CSI 000004f5 [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:47, Info CSI 000004f8 [SR] Verify complete 2016-04-28 18:34:47, Info CSI 000004f9 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:47, Info CSI 000004fa [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:51, Info CSI 00000509 [SR] Verify complete 2016-04-28 18:34:51, Info CSI 0000050a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:51, Info CSI 0000050b [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:55, Info CSI 0000050d [SR] Verify complete 2016-04-28 18:34:55, Info CSI 0000050e [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:55, Info CSI 0000050f [SR] Beginning Verify and Repair transaction 2016-04-28 18:34:59, Info CSI 00000510 [SR] Verify complete 2016-04-28 18:34:59, Info CSI 00000511 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:34:59, Info CSI 00000512 [SR] Beginning Verify and Repair transaction 2016-04-28 18:35:13, Info CSI 00000522 [SR] Verify complete 2016-04-28 18:35:13, Info CSI 00000523 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:35:13, Info CSI 00000524 [SR] Beginning Verify and Repair transaction 2016-04-28 18:35:17, Info CSI 00000527 [SR] Verify complete 2016-04-28 18:35:17, Info CSI 00000528 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:35:17, Info CSI 00000529 [SR] Beginning Verify and Repair transaction 2016-04-28 18:35:22, Info CSI 0000052b [SR] Cannot repair member file [l:24{12}]"services.lnk" of Microsoft-Windows-ServicesSnapIn, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:26, Info CSI 00000532 [SR] Cannot repair member file [l:24{12}]"services.lnk" of Microsoft-Windows-ServicesSnapIn, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:26, Info CSI 00000533 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment" 2016-04-28 18:35:26, Info CSI 00000536 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:24{12}]"services.lnk"; source file in store is also corrupted 2016-04-28 18:35:28, Info CSI 0000053e [SR] Verify complete 2016-04-28 18:35:28, Info CSI 0000053f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:35:28, Info CSI 00000540 [SR] Beginning Verify and Repair transaction 2016-04-28 18:35:31, Info CSI 00000542 [SR] Cannot repair member file [l:34{17}]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:32, Info CSI 00000544 [SR] Cannot repair member file [l:36{18}]"Sound Recorder.lnk" of Microsoft-Windows-SoundRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:32, Info CSI 00000546 [SR] Cannot repair member file [l:44{22}]"Speech Recognition.lnk" of Microsoft-Windows-Speech-UserExperience, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:32, Info CSI 0000054a [SR] Cannot repair member file [l:44{22}]"Speech Recognition.lnk" of Microsoft-Windows-Speech-UserExperience, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:32, Info CSI 0000054b [SR] This component was referenced by [l:166{83}]"Package_1049_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3060_neutral_GDR" 2016-04-28 18:35:32, Info CSI 0000054e [SR] Could not reproject corrupted file [ml:520{260},l:140{70}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility"\[l:44{22}]"Speech Recognition.lnk"; source file in store is also corrupted 2016-04-28 18:35:33, Info CSI 00000550 [SR] Cannot repair member file [l:36{18}]"Sound Recorder.lnk" of Microsoft-Windows-SoundRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:33, Info CSI 00000551 [SR] This component was referenced by [l:166{83}]"Package_1133_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3321_neutral_GDR" 2016-04-28 18:35:33, Info CSI 00000554 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:36{18}]"Sound Recorder.lnk"; source file in store is also corrupted 2016-04-28 18:35:35, Info CSI 00000584 [SR] Cannot repair member file [l:34{17}]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:35, Info CSI 00000585 [SR] This component was referenced by [l:166{83}]"Package_2946_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7137_neutral_GDR" 2016-04-28 18:35:35, Info CSI 00000588 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:34{17}]"Snipping Tool.lnk"; source file in store is also corrupted 2016-04-28 18:35:35, Info CSI 00000589 [SR] Verify complete 2016-04-28 18:35:35, Info CSI 0000058a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:35:35, Info CSI 0000058b [SR] Beginning Verify and Repair transaction 2016-04-28 18:35:35, Info CSI 0000058d [SR] Cannot repair member file [l:32{16}]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:37, Info CSI 0000058f [SR] Cannot repair member file [l:40{20}]"Default Programs.lnk" of Microsoft-Windows-sud-link, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:40, Info CSI 00000591 [SR] Cannot repair member file [l:32{16}]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:40, Info CSI 00000592 [SR] This component was referenced by [l:166{83}]"Package_3033_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7293_neutral_GDR" 2016-04-28 18:35:40, Info CSI 00000595 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:32{16}]"Sticky Notes.lnk"; source file in store is also corrupted 2016-04-28 18:35:44, Info CSI 00000598 [SR] Cannot repair member file [l:40{20}]"Default Programs.lnk" of Microsoft-Windows-sud-link, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:44, Info CSI 00000599 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment" 2016-04-28 18:35:44, Info CSI 0000059c [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:40{20}]"Default Programs.lnk"; source file in store is also corrupted 2016-04-28 18:35:44, Info CSI 0000059e [SR] Verify complete 2016-04-28 18:35:44, Info CSI 0000059f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:35:44, Info CSI 000005a0 [SR] Beginning Verify and Repair transaction 2016-04-28 18:35:47, Info CSI 000005a2 [SR] Cannot repair member file [l:40{20}]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:49, Info CSI 000005a8 [SR] Cannot repair member file [l:40{20}]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:49, Info CSI 000005a9 [SR] This component was referenced by [l:166{83}]"Package_2947_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7141_neutral_GDR" 2016-04-28 18:35:49, Info CSI 000005ac [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:40{20}]"Math Input Panel.lnk"; source file in store is also corrupted 2016-04-28 18:35:49, Info CSI 000005af [SR] Verify complete 2016-04-28 18:35:50, Info CSI 000005b0 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:35:50, Info CSI 000005b1 [SR] Beginning Verify and Repair transaction 2016-04-28 18:35:52, Info CSI 000005b3 [SR] Cannot repair member file [l:58{29}]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:55, Info CSI 000005b5 [SR] Cannot repair member file [l:58{29}]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:35:55, Info CSI 000005b6 [SR] This component was referenced by [l:166{83}]"Package_1471_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-4215_neutral_GDR" 2016-04-28 18:35:55, Info CSI 000005b9 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:58{29}]"Remote Desktop Connection.lnk"; source file in store is also corrupted 2016-04-28 18:35:55, Info CSI 000005ba [SR] Verify complete 2016-04-28 18:35:55, Info CSI 000005bb [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:35:55, Info CSI 000005bc [SR] Beginning Verify and Repair transaction 2016-04-28 18:36:05, Info CSI 000005be [SR] Cannot repair member file [l:38{19}]"Windows Journal.lnk" of Microsoft-Windows-TabletPC-Journal, Version = 6.3.9600.18189, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:36:07, Info CSI 000005c0 [SR] Cannot repair member file [l:38{19}]"Windows Journal.lnk" of Microsoft-Windows-TabletPC-Journal, Version = 6.3.9600.18189, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:36:07, Info CSI 000005c1 [SR] This component was referenced by [l:154{77}]"Package_3_for_KB3115858~31bf3856ad364e35~amd64~~6.3.1.1.3115858-5_neutral_GDR" 2016-04-28 18:36:07, Info CSI 000005c4 [SR] Could not reproject corrupted file [ml:520{260},l:156{78}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC"\[l:38{19}]"Windows Journal.lnk"; source file in store is also corrupted 2016-04-28 18:36:07, Info CSI 000005c5 [SR] Verify complete 2016-04-28 18:36:08, Info CSI 000005c6 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:36:08, Info CSI 000005c7 [SR] Beginning Verify and Repair transaction 2016-04-28 18:36:13, Info CSI 000005ce [SR] Verify complete 2016-04-28 18:36:13, Info CSI 000005cf [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:36:13, Info CSI 000005d0 [SR] Beginning Verify and Repair transaction 2016-04-28 18:36:19, Info CSI 000005d8 [SR] Repairing corrupted file [ml:520{260},l:112{56}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs"\[l:20{10}]"Search.lnk" from store 2016-04-28 18:36:19, Info CSI 000005e0 [SR] Verify complete 2016-04-28 18:36:19, Info CSI 000005e1 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:36:19, Info CSI 000005e2 [SR] Beginning Verify and Repair transaction 2016-04-28 18:36:32, Info CSI 000005ec [SR] Verify complete 2016-04-28 18:36:32, Info CSI 000005ed [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:36:32, Info CSI 000005ee [SR] Beginning Verify and Repair transaction 2016-04-28 18:36:38, Info CSI 000005fb [SR] Verify complete 2016-04-28 18:36:38, Info CSI 000005fc [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:36:38, Info CSI 000005fd [SR] Beginning Verify and Repair transaction 2016-04-28 18:36:48, Info CSI 00000615 [SR] Verify complete 2016-04-28 18:36:48, Info CSI 00000616 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:36:48, Info CSI 00000617 [SR] Beginning Verify and Repair transaction 2016-04-28 18:36:54, Info CSI 00000619 [SR] Verify complete 2016-04-28 18:36:54, Info CSI 0000061a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:36:54, Info CSI 0000061b [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:01, Info CSI 0000061c [SR] Verify complete 2016-04-28 18:37:01, Info CSI 0000061d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:01, Info CSI 0000061e [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:06, Info CSI 00000620 [SR] Cannot repair member file [l:22{11}]"Wordpad.lnk" of Microsoft-Windows-wordpad, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:37:09, Info CSI 00000622 [SR] Cannot repair member file [l:28{14}]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:37:10, Info CSI 0000062c [SR] Cannot repair member file [l:28{14}]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:37:10, Info CSI 0000062d [SR] This component was referenced by [l:166{83}]"Package_3081_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7359_neutral_GDR" 2016-04-28 18:37:11, Info CSI 00000630 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:28{14}]"XPS Viewer.lnk"; source file in store is also corrupted 2016-04-28 18:37:11, Info CSI 00000632 [SR] Cannot repair member file [l:22{11}]"Wordpad.lnk" of Microsoft-Windows-wordpad, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:37:11, Info CSI 00000633 [SR] This component was referenced by [l:166{83}]"Package_1362_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3948_neutral_GDR" 2016-04-28 18:37:11, Info CSI 00000636 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:22{11}]"Wordpad.lnk"; source file in store is also corrupted 2016-04-28 18:37:11, Info CSI 0000063b [SR] Verify complete 2016-04-28 18:37:11, Info CSI 0000063c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:11, Info CSI 0000063d [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:23, Info CSI 0000066b [SR] Verify complete 2016-04-28 18:37:23, Info CSI 0000066c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:23, Info CSI 0000066d [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:25, Info CSI 00000670 [SR] Verify complete 2016-04-28 18:37:25, Info CSI 00000671 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:25, Info CSI 00000672 [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:31, Info CSI 00000681 [SR] Verify complete 2016-04-28 18:37:31, Info CSI 00000682 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:31, Info CSI 00000683 [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:40, Info CSI 00000684 [SR] Verify complete 2016-04-28 18:37:40, Info CSI 00000685 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:40, Info CSI 00000686 [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:44, Info CSI 00000688 [SR] Verify complete 2016-04-28 18:37:44, Info CSI 00000689 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:44, Info CSI 0000068a [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:53, Info CSI 0000068b [SR] Verify complete 2016-04-28 18:37:53, Info CSI 0000068c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:53, Info CSI 0000068d [SR] Beginning Verify and Repair transaction 2016-04-28 18:37:58, Info CSI 0000068e [SR] Verify complete 2016-04-28 18:37:58, Info CSI 0000068f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:37:58, Info CSI 00000690 [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:01, Info CSI 00000691 [SR] Verify complete 2016-04-28 18:38:01, Info CSI 00000692 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:38:01, Info CSI 00000693 [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:12, Info CSI 00000694 [SR] Verify complete 2016-04-28 18:38:12, Info CSI 00000695 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:38:12, Info CSI 00000696 [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:17, Info CSI 00000697 [SR] Verify complete 2016-04-28 18:38:18, Info CSI 00000698 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:38:18, Info CSI 00000699 [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:21, Info CSI 0000069a [SR] Verify complete 2016-04-28 18:38:21, Info CSI 0000069b [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:38:21, Info CSI 0000069c [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:32, Info CSI 0000069d [SR] Verify complete 2016-04-28 18:38:32, Info CSI 0000069e [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:38:32, Info CSI 0000069f [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:37, Info CSI 000006d2 [SR] Verify complete 2016-04-28 18:38:37, Info CSI 000006d3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:38:37, Info CSI 000006d4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:41, Info CSI 000006d5 [SR] Verify complete 2016-04-28 18:38:41, Info CSI 000006d6 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:38:41, Info CSI 000006d7 [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:51, Info CSI 000006d9 [SR] Cannot repair member file [l:86{43}]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:38:55, Info CSI 000006db [SR] Cannot repair member file [l:86{43}]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:38:55, Info CSI 000006dc [SR] This component was referenced by [l:166{83}]"Package_1189_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3446_neutral_GDR" 2016-04-28 18:38:55, Info CSI 000006df [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:86{43}]"Windows Firewall with Advanced Security.lnk"; source file in store is also corrupted 2016-04-28 18:38:56, Info CSI 000006e2 [SR] Verify complete 2016-04-28 18:38:56, Info CSI 000006e3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:38:56, Info CSI 000006e4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:38:57, Info CSI 000006e6 [SR] Cannot repair member file [l:36{18}]"Amd64\CNBJ2530.DPB" of prncacla.inf, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type = [l:24{12}]"driverUpdate", TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:39:06, Info CSI 000006e8 [SR] Cannot repair member file [l:36{18}]"Amd64\CNBJ2530.DPB" of prncacla.inf, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type = [l:24{12}]"driverUpdate", TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:39:06, Info CSI 000006e9 [SR] This component was referenced by [l:166{83}]"Package_2709_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-6825_neutral_GDR" 2016-04-28 18:39:07, Info CSI 000006ea [SR] Verify complete 2016-04-28 18:39:07, Info CSI 000006eb [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:07, Info CSI 000006ec [SR] Beginning Verify and Repair transaction 2016-04-28 18:39:11, Info CSI 000006ed [SR] Verify complete 2016-04-28 18:39:11, Info CSI 000006ee [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:11, Info CSI 000006ef [SR] Beginning Verify and Repair transaction 2016-04-28 18:39:14, Info CSI 000006f1 [SR] Cannot repair member file [l:36{18}]"Task Scheduler.lnk" of TaskSchedulerSettings, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:39:17, Info CSI 000006f3 [SR] Cannot repair member file [l:36{18}]"Task Scheduler.lnk" of TaskSchedulerSettings, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:39:17, Info CSI 000006f4 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment" 2016-04-28 18:39:17, Info CSI 000006f7 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:36{18}]"Task Scheduler.lnk"; source file in store is also corrupted 2016-04-28 18:39:18, Info CSI 000006f8 [SR] Verify complete 2016-04-28 18:39:18, Info CSI 000006f9 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:18, Info CSI 000006fa [SR] Beginning Verify and Repair transaction 2016-04-28 18:39:25, Info CSI 000006fb [SR] Verify complete 2016-04-28 18:39:25, Info CSI 000006fc [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:25, Info CSI 000006fd [SR] Beginning Verify and Repair transaction 2016-04-28 18:39:34, Info CSI 000006ff [SR] Verify complete 2016-04-28 18:39:34, Info CSI 00000700 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:34, Info CSI 00000701 [SR] Beginning Verify and Repair transaction 2016-04-28 18:39:38, Info CSI 0000070b [SR] Verify complete 2016-04-28 18:39:38, Info CSI 0000070c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:38, Info CSI 0000070d [SR] Beginning Verify and Repair transaction 2016-04-28 18:39:49, Info CSI 0000070e [SR] Verify complete 2016-04-28 18:39:49, Info CSI 0000070f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:49, Info CSI 00000710 [SR] Beginning Verify and Repair transaction 2016-04-28 18:39:52, Info CSI 0000077e [SR] Verify complete 2016-04-28 18:39:52, Info CSI 0000077f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:52, Info CSI 00000780 [SR] Beginning Verify and Repair transaction 2016-04-28 18:39:56, Info CSI 00000783 [SR] Verify complete 2016-04-28 18:39:56, Info CSI 00000784 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:39:56, Info CSI 00000785 [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:05, Info CSI 00000786 [SR] Verify complete 2016-04-28 18:40:05, Info CSI 00000787 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:05, Info CSI 00000788 [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:11, Info CSI 00000789 [SR] Verify complete 2016-04-28 18:40:11, Info CSI 0000078a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:11, Info CSI 0000078b [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:16, Info CSI 0000078c [SR] Verify complete 2016-04-28 18:40:16, Info CSI 0000078d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:16, Info CSI 0000078e [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:21, Info CSI 0000078f [SR] Verify complete 2016-04-28 18:40:21, Info CSI 00000790 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:21, Info CSI 00000791 [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:29, Info CSI 000007a2 [SR] Verify complete 2016-04-28 18:40:29, Info CSI 000007a3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:29, Info CSI 000007a4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:34, Info CSI 000007ba [SR] Verify complete 2016-04-28 18:40:34, Info CSI 000007bb [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:34, Info CSI 000007bc [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:45, Info CSI 000007cb [SR] Verify complete 2016-04-28 18:40:45, Info CSI 000007cc [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:45, Info CSI 000007cd [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:47, Info CSI 000007cf [SR] Verify complete 2016-04-28 18:40:47, Info CSI 000007d0 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:47, Info CSI 000007d1 [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:49, Info CSI 000007d2 [SR] Verify complete 2016-04-28 18:40:49, Info CSI 000007d3 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:49, Info CSI 000007d4 [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:54, Info CSI 000007e1 [SR] Verify complete 2016-04-28 18:40:55, Info CSI 000007e2 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:40:55, Info CSI 000007e3 [SR] Beginning Verify and Repair transaction 2016-04-28 18:40:55, Info CSI 000007e5 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:41:04, Info CSI 000007e8 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:41:04, Info CSI 000007e9 [SR] This component was referenced by [l:164{82}]"Package_443_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-1244_neutral_GDR" 2016-04-28 18:41:04, Info CSI 000007ec [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:60{30}]"ODBC Data Sources (32-bit).lnk"; source file in store is also corrupted 2016-04-28 18:41:04, Info CSI 000007ed [SR] Verify complete 2016-04-28 18:41:04, Info CSI 000007ee [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:41:04, Info CSI 000007ef [SR] Beginning Verify and Repair transaction 2016-04-28 18:41:10, Info CSI 00000811 [SR] Verify complete 2016-04-28 18:41:10, Info CSI 00000812 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:41:10, Info CSI 00000813 [SR] Beginning Verify and Repair transaction 2016-04-28 18:41:18, Info CSI 0000081c [SR] Verify complete 2016-04-28 18:41:18, Info CSI 0000081d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:41:18, Info CSI 0000081e [SR] Beginning Verify and Repair transaction 2016-04-28 18:41:24, Info CSI 0000082b [SR] Verify complete 2016-04-28 18:41:24, Info CSI 0000082c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:41:24, Info CSI 0000082d [SR] Beginning Verify and Repair transaction 2016-04-28 18:41:35, Info CSI 0000084c [SR] Verify complete 2016-04-28 18:41:35, Info CSI 0000084d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:41:35, Info CSI 0000084e [SR] Beginning Verify and Repair transaction 2016-04-28 18:41:43, Info CSI 000008a7 [SR] Verify complete 2016-04-28 18:41:43, Info CSI 000008a8 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:41:43, Info CSI 000008a9 [SR] Beginning Verify and Repair transaction 2016-04-28 18:41:51, Info CSI 000008aa [SR] Verify complete 2016-04-28 18:41:51, Info CSI 000008ab [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:41:51, Info CSI 000008ac [SR] Beginning Verify and Repair transaction 2016-04-28 18:41:57, Info CSI 000008ad [SR] Verify complete 2016-04-28 18:41:57, Info CSI 000008ae [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:41:57, Info CSI 000008af [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:02, Info CSI 000008b3 [SR] Verify complete 2016-04-28 18:42:02, Info CSI 000008b4 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:02, Info CSI 000008b5 [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:12, Info CSI 000008cf [SR] Verify complete 2016-04-28 18:42:12, Info CSI 000008d0 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:12, Info CSI 000008d1 [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:16, Info CSI 000008f6 [SR] Verify complete 2016-04-28 18:42:16, Info CSI 000008f7 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:16, Info CSI 000008f8 [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:23, Info CSI 000008fb [SR] Verify complete 2016-04-28 18:42:23, Info CSI 000008fc [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:23, Info CSI 000008fd [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:28, Info CSI 00000905 [SR] Verify complete 2016-04-28 18:42:28, Info CSI 00000906 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:28, Info CSI 00000907 [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:34, Info CSI 00000909 [SR] Verify complete 2016-04-28 18:42:34, Info CSI 0000090a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:34, Info CSI 0000090b [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:42, Info CSI 00000915 [SR] Verify complete 2016-04-28 18:42:43, Info CSI 00000916 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:43, Info CSI 00000917 [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:48, Info CSI 00000936 [SR] Verify complete 2016-04-28 18:42:48, Info CSI 00000937 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:48, Info CSI 00000938 [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:53, Info CSI 0000094f [SR] Verify complete 2016-04-28 18:42:53, Info CSI 00000950 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:53, Info CSI 00000951 [SR] Beginning Verify and Repair transaction 2016-04-28 18:42:58, Info CSI 00000952 [SR] Verify complete 2016-04-28 18:42:58, Info CSI 00000953 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:42:58, Info CSI 00000954 [SR] Beginning Verify and Repair transaction 2016-04-28 18:43:03, Info CSI 00000956 [SR] Verify complete 2016-04-28 18:43:03, Info CSI 00000957 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:43:03, Info CSI 00000958 [SR] Beginning Verify and Repair transaction 2016-04-28 18:43:09, Info CSI 00000962 [SR] Verify complete 2016-04-28 18:43:09, Info CSI 00000963 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:43:09, Info CSI 00000964 [SR] Beginning Verify and Repair transaction 2016-04-28 18:43:17, Info CSI 00000965 [SR] Verify complete 2016-04-28 18:43:17, Info CSI 00000966 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:43:17, Info CSI 00000967 [SR] Beginning Verify and Repair transaction 2016-04-28 18:43:21, Info CSI 00000981 [SR] Verify complete 2016-04-28 18:43:21, Info CSI 00000982 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:43:21, Info CSI 00000983 [SR] Beginning Verify and Repair transaction 2016-04-28 18:43:26, Info CSI 00000985 [SR] Verify complete 2016-04-28 18:43:26, Info CSI 00000986 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:43:26, Info CSI 00000987 [SR] Beginning Verify and Repair transaction 2016-04-28 18:43:36, Info CSI 0000099e [SR] Verify complete 2016-04-28 18:43:36, Info CSI 0000099f [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:43:36, Info CSI 000009a0 [SR] Beginning Verify and Repair transaction 2016-04-28 18:43:42, Info CSI 000009b6 [SR] Verify complete 2016-04-28 18:43:42, Info CSI 000009b7 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:43:42, Info CSI 000009b8 [SR] Beginning Verify and Repair transaction 2016-04-28 18:43:57, Info CSI 000009c8 [SR] Verify complete 2016-04-28 18:43:57, Info CSI 000009c9 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:43:57, Info CSI 000009ca [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:03, Info CSI 000009eb [SR] Verify complete 2016-04-28 18:44:03, Info CSI 000009ec [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:03, Info CSI 000009ed [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:11, Info CSI 000009f6 [SR] Verify complete 2016-04-28 18:44:11, Info CSI 000009f7 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:11, Info CSI 000009f8 [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:16, Info CSI 00000a02 [SR] Verify complete 2016-04-28 18:44:16, Info CSI 00000a03 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:16, Info CSI 00000a04 [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:20, Info CSI 00000a09 [SR] Verify complete 2016-04-28 18:44:20, Info CSI 00000a0a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:20, Info CSI 00000a0b [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:29, Info CSI 00000a0d [SR] Verify complete 2016-04-28 18:44:29, Info CSI 00000a0e [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:29, Info CSI 00000a0f [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:35, Info CSI 00000a14 [SR] Verify complete 2016-04-28 18:44:35, Info CSI 00000a15 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:35, Info CSI 00000a16 [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:43, Info CSI 00000a1b [SR] Verify complete 2016-04-28 18:44:43, Info CSI 00000a1c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:43, Info CSI 00000a1d [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:52, Info CSI 00000a20 [SR] Verify complete 2016-04-28 18:44:52, Info CSI 00000a21 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:52, Info CSI 00000a22 [SR] Beginning Verify and Repair transaction 2016-04-28 18:44:57, Info CSI 00000a27 [SR] Verify complete 2016-04-28 18:44:57, Info CSI 00000a28 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:44:57, Info CSI 00000a29 [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:03, Info CSI 00000a2b [SR] Verify complete 2016-04-28 18:45:03, Info CSI 00000a2c [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:03, Info CSI 00000a2d [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:10, Info CSI 00000a2f [SR] Verify complete 2016-04-28 18:45:10, Info CSI 00000a30 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:10, Info CSI 00000a31 [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:16, Info CSI 00000a3f [SR] Verify complete 2016-04-28 18:45:16, Info CSI 00000a40 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:16, Info CSI 00000a41 [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:25, Info CSI 00000a42 [SR] Verify complete 2016-04-28 18:45:25, Info CSI 00000a43 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:25, Info CSI 00000a44 [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:29, Info CSI 00000a46 [SR] Verify complete 2016-04-28 18:45:29, Info CSI 00000a47 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:29, Info CSI 00000a48 [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:36, Info CSI 00000a49 [SR] Verify complete 2016-04-28 18:45:36, Info CSI 00000a4a [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:36, Info CSI 00000a4b [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:40, Info CSI 00000a4c [SR] Verify complete 2016-04-28 18:45:40, Info CSI 00000a4d [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:40, Info CSI 00000a4e [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:49, Info CSI 00000a4f [SR] Verify complete 2016-04-28 18:45:49, Info CSI 00000a50 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:49, Info CSI 00000a51 [SR] Beginning Verify and Repair transaction 2016-04-28 18:45:54, Info CSI 00000a52 [SR] Verify complete 2016-04-28 18:45:54, Info CSI 00000a53 [SR] Verifying 100 (0x0000000000000064) components 2016-04-28 18:45:54, Info CSI 00000a54 [SR] Beginning Verify and Repair transaction 2016-04-28 18:46:01, Info CSI 00000a57 [SR] Verify complete 2016-04-28 18:46:01, Info CSI 00000a58 [SR] Verifying 4 components 2016-04-28 18:46:01, Info CSI 00000a59 [SR] Beginning Verify and Repair transaction 2016-04-28 18:46:02, Info CSI 00000a5a [SR] Verify complete 2016-04-28 18:46:02, Info CSI 00000a5b [SR] Repairing 36 (0x0000000000000024) components 2016-04-28 18:46:02, Info CSI 00000a5c [SR] Beginning Verify and Repair transaction 2016-04-28 18:46:02, Info CSI 00000a5e [SR] Cannot repair member file [l:32{16}]"Event Viewer.lnk" of EventViewerSettings, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a60 [SR] Cannot repair member file [l:36{18}]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a62 [SR] Cannot repair member file [l:32{16}]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a64 [SR] Cannot repair member file [l:46{23}]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a66 [SR] Cannot repair member file [l:28{14}]"Calculator.lnk" of Microsoft-Windows-calc, Version = 6.3.9600.17667, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a68 [SR] Cannot repair member file [l:44{22}]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a6a [SR] Cannot repair member file [l:34{17}]"Character Map.lnk" of Microsoft-Windows-charmap, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a6c [SR] Cannot repair member file [l:32{16}]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a6e [SR] Cannot repair member file [l:20{10}]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a70 [SR] Cannot repair member file [l:48{24}]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a72 [SR] Cannot repair member file [l:38{19}]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a74 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:02, Info CSI 00000a76 [SR] Cannot repair member file [l:54{27}]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a78 [SR] Cannot repair member file [l:50{25}]"Windows Easy Transfer.lnk" of Microsoft-Windows-MigrationWizardApplication, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a7a [SR] Cannot repair member file [l:48{24}]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a7c [SR] Cannot repair member file [l:48{24}]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a7e [SR] Cannot repair member file [l:44{22}]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a80 [SR] Cannot repair member file [l:18{9}]"Paint.lnk" of Microsoft-Windows-mspaint, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a82 [SR] Cannot repair member file [l:40{20}]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a84 [SR] Cannot repair member file [l:46{23}]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a86 [SR] Cannot repair member file [l:52{26}]"Windows PowerShell ISE.lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a88 [SR] Cannot repair member file [l:64{32}]"Windows PowerShell ISE (x86).lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a8a [SR] Cannot repair member file [l:24{12}]"services.lnk" of Microsoft-Windows-ServicesSnapIn, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a8c [SR] Cannot repair member file [l:44{22}]"Speech Recognition.lnk" of Microsoft-Windows-Speech-UserExperience, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a8e [SR] Cannot repair member file [l:36{18}]"Sound Recorder.lnk" of Microsoft-Windows-SoundRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a90 [SR] Cannot repair member file [l:34{17}]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a92 [SR] Cannot repair member file [l:32{16}]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a94 [SR] Cannot repair member file [l:40{20}]"Default Programs.lnk" of Microsoft-Windows-sud-link, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a96 [SR] Cannot repair member file [l:40{20}]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a98 [SR] Cannot repair member file [l:58{29}]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:03, Info CSI 00000a9a [SR] Cannot repair member file [l:38{19}]"Windows Journal.lnk" of Microsoft-Windows-TabletPC-Journal, Version = 6.3.9600.18189, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:04, Info CSI 00000a9c [SR] Cannot repair member file [l:28{14}]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:04, Info CSI 00000a9e [SR] Cannot repair member file [l:22{11}]"Wordpad.lnk" of Microsoft-Windows-wordpad, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:04, Info CSI 00000aa0 [SR] Cannot repair member file [l:86{43}]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:04, Info CSI 00000aa2 [SR] Cannot repair member file [l:36{18}]"Amd64\CNBJ2530.DPB" of prncacla.inf, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type = [l:24{12}]"driverUpdate", TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:04, Info CSI 00000aa4 [SR] Cannot repair member file [l:36{18}]"Task Scheduler.lnk" of TaskSchedulerSettings, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:04, Info CSI 00000aa6 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:04, Info CSI 00000aa8 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:04, Info CSI 00000aa9 [SR] This component was referenced by [l:166{83}]"Package_1052_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3082_neutral_GDR" 2016-04-28 18:46:04, Info CSI 00000aac [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:60{30}]"ODBC Data Sources (64-bit).lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000aae [SR] Cannot repair member file [l:36{18}]"Amd64\CNBJ2530.DPB" of prncacla.inf, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type = [l:24{12}]"driverUpdate", TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000aaf [SR] This component was referenced by [l:166{83}]"Package_2709_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-6825_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000ab1 [SR] Cannot repair member file [l:48{24}]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000ab2 [SR] This component was referenced by [l:190{95}]"Microsoft-Windows-MediaPlayer-Package~31bf3856ad364e35~amd64~~6.3.9600.16384.WindowsMediaPlayer" 2016-04-28 18:46:05, Info CSI 00000ab5 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:48{24}]"Windows Media Player.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000ab7 [SR] Cannot repair member file [l:32{16}]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000ab8 [SR] This component was referenced by [l:166{83}]"Package_3033_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7293_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000abb [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:32{16}]"Sticky Notes.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000abd [SR] Cannot repair member file [l:20{10}]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000abe [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2637_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000ac1 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:20{10}]"dfrgui.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000ac3 [SR] Cannot repair member file [l:24{12}]"services.lnk" of Microsoft-Windows-ServicesSnapIn, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000ac4 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment" 2016-04-28 18:46:05, Info CSI 00000ac7 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:24{12}]"services.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000ac9 [SR] Cannot repair member file [l:52{26}]"Windows PowerShell ISE.lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000aca [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment" 2016-04-28 18:46:05, Info CSI 00000acc [SR] Cannot repair member file [l:64{32}]"Windows PowerShell ISE (x86).lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000acd [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment" 2016-04-28 18:46:05, Info CSI 00000ad0 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:52{26}]"Windows PowerShell ISE.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000ad3 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:64{32}]"Windows PowerShell ISE (x86).lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000ad5 [SR] Cannot repair member file [l:46{23}]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000ad6 [SR] This component was referenced by [l:164{82}]"Package_752_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2048_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000ad9 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:46{23}]"Computer Management.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000adb [SR] Cannot repair member file [l:38{19}]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000adc [SR] This component was referenced by [l:164{82}]"Package_941_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2791_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000adf [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:38{19}]"iSCSI Initiator.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000ae1 [SR] Cannot repair member file [l:44{22}]"Speech Recognition.lnk" of Microsoft-Windows-Speech-UserExperience, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000ae2 [SR] This component was referenced by [l:166{83}]"Package_1049_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3060_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000ae5 [SR] Could not reproject corrupted file [ml:520{260},l:140{70}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility"\[l:44{22}]"Speech Recognition.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000ae7 [SR] Cannot repair member file [l:34{17}]"Character Map.lnk" of Microsoft-Windows-charmap, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000ae8 [SR] This component was referenced by [l:166{83}]"Package_1361_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3943_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000aeb [SR] Could not reproject corrupted file [ml:520{260},l:162{81}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools"\[l:34{17}]"Character Map.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000aed [SR] Cannot repair member file [l:86{43}]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000aee [SR] This component was referenced by [l:166{83}]"Package_1189_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3446_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000af1 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:86{43}]"Windows Firewall with Advanced Security.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000af3 [SR] Cannot repair member file [l:36{18}]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000af4 [SR] This component was referenced by [l:164{82}]"Package_873_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2613_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000af7 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:36{18}]"Steps Recorder.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000af9 [SR] Cannot repair member file [l:36{18}]"Sound Recorder.lnk" of Microsoft-Windows-SoundRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000afa [SR] This component was referenced by [l:166{83}]"Package_1133_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3321_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000afd [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:36{18}]"Sound Recorder.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000aff [SR] Cannot repair member file [l:48{24}]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000b00 [SR] This component was referenced by [l:164{82}]"Package_874_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2621_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000b03 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:48{24}]"System Configuration.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000b05 [SR] Cannot repair member file [l:32{16}]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000b06 [SR] This component was referenced by [l:166{83}]"Package_1361_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3942_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000b09 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:32{16}]"Disk Cleanup.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000b0b [SR] Cannot repair member file [l:28{14}]"Calculator.lnk" of Microsoft-Windows-calc, Version = 6.3.9600.17667, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000b0c [SR] This component was referenced by [l:154{77}]"Package_1_for_KB3024755~31bf3856ad364e35~amd64~~6.3.1.1.3024755-1_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000b0f [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:28{14}]"Calculator.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000b11 [SR] Cannot repair member file [l:48{24}]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000b12 [SR] This component was referenced by [l:166{83}]"Package_2188_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-6085_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000b15 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:48{24}]"Windows Fax and Scan.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000b16 [SR] Repairing corrupted file [ml:520{260},l:112{56}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs"\[l:20{10}]"Search.lnk" from store 2016-04-28 18:46:05, Info CSI 00000b1d [SR] Cannot repair member file [l:50{25}]"Windows Easy Transfer.lnk" of Microsoft-Windows-MigrationWizardApplication, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000b1e [SR] This component was referenced by [l:164{82}]"Package_844_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2333_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000b21 [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:50{25}]"Windows Easy Transfer.lnk"; source file in store is also corrupted 2016-04-28 18:46:05, Info CSI 00000b23 [SR] Cannot repair member file [l:38{19}]"Windows Journal.lnk" of Microsoft-Windows-TabletPC-Journal, Version = 6.3.9600.18189, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:05, Info CSI 00000b24 [SR] This component was referenced by [l:154{77}]"Package_3_for_KB3115858~31bf3856ad364e35~amd64~~6.3.1.1.3115858-5_neutral_GDR" 2016-04-28 18:46:05, Info CSI 00000b27 [SR] Could not reproject corrupted file [ml:520{260},l:156{78}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC"\[l:38{19}]"Windows Journal.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b29 [SR] Cannot repair member file [l:40{20}]"Default Programs.lnk" of Microsoft-Windows-sud-link, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b2a [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment" 2016-04-28 18:46:06, Info CSI 00000b2d [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:40{20}]"Default Programs.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b2f [SR] Cannot repair member file [l:36{18}]"Task Scheduler.lnk" of TaskSchedulerSettings, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b30 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment" 2016-04-28 18:46:06, Info CSI 00000b33 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:36{18}]"Task Scheduler.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b35 [SR] Cannot repair member file [l:28{14}]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b36 [SR] This component was referenced by [l:166{83}]"Package_3081_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7359_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b39 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:28{14}]"XPS Viewer.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b3b [SR] Cannot repair member file [l:44{22}]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b3c [SR] This component was referenced by [l:164{82}]"Package_844_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2332_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b3f [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:44{22}]"System Information.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b41 [SR] Cannot repair member file [l:40{20}]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b42 [SR] This component was referenced by [l:166{83}]"Package_2947_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7141_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b45 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:40{20}]"Math Input Panel.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b47 [SR] Cannot repair member file [l:54{27}]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b48 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2631_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b4b [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:54{27}]"Memory Diagnostics Tool.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b4d [SR] Cannot repair member file [l:22{11}]"Wordpad.lnk" of Microsoft-Windows-wordpad, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b4e [SR] This component was referenced by [l:166{83}]"Package_1362_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3948_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b51 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:22{11}]"Wordpad.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b53 [SR] Cannot repair member file [l:18{9}]"Paint.lnk" of Microsoft-Windows-mspaint, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b54 [SR] This component was referenced by [l:166{83}]"Package_1365_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-4028_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b57 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:18{9}]"Paint.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b59 [SR] Cannot repair member file [l:32{16}]"Event Viewer.lnk" of EventViewerSettings, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b5a [SR] This component was referenced by [l:164{82}]"Package_752_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2054_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b5d [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:32{16}]"Event Viewer.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b5f [SR] Cannot repair member file [l:32{16}]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b60 [SR] This component was referenced by [l:164{82}]"Package_868_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2529_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b63 [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:32{16}]"Task Manager.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b65 [SR] Cannot repair member file [l:44{22}]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b66 [SR] This component was referenced by [l:326{163}]"Microsoft-Windows-Client-Features-Package-AutoMerged-com~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-com-Deployment" 2016-04-28 18:46:06, Info CSI 00000b69 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:44{22}]"Component Services.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b6b [SR] Cannot repair member file [l:40{20}]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b6c [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2628_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b6e [SR] Cannot repair member file [l:46{23}]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b6f [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2628_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b72 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:40{20}]"Resource Monitor.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b75 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:46{23}]"Performance Monitor.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b77 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b78 [SR] This component was referenced by [l:164{82}]"Package_443_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-1244_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b7b [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:60{30}]"ODBC Data Sources (32-bit).lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b7d [SR] Cannot repair member file [l:58{29}]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b7e [SR] This component was referenced by [l:166{83}]"Package_1471_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-4215_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b81 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:58{29}]"Remote Desktop Connection.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b83 [SR] Cannot repair member file [l:34{17}]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch 2016-04-28 18:46:06, Info CSI 00000b84 [SR] This component was referenced by [l:166{83}]"Package_2946_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7137_neutral_GDR" 2016-04-28 18:46:06, Info CSI 00000b87 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:34{17}]"Snipping Tool.lnk"; source file in store is also corrupted 2016-04-28 18:46:06, Info CSI 00000b88 [SR] Repair complete 2016-04-28 18:46:06, Info CSI 00000b89 [SR] Committing transaction 2016-04-28 18:46:12, Info CSI 00000b8e [SR] Verify and Repair Transaction completed. All files and registry keys listed in this transaction have been successfully repaired ========= Ende von CMD: ========= ========= dir "C:\Program Files\Windows Defender" ========= |
29.04.2016, 05:15 | #24 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernenCode:
ATTFilter Datentr�ger in Laufwerk C: ist Acer Volumeseriennummer: 2093-6EEC Verzeichnis von C:\Program Files\Windows Defender 11.08.2015 21:06 <DIR> . 11.08.2015 21:06 <DIR> .. 20.09.2014 00:09 1.532.584 DbgHelp.dll 11.08.2015 21:06 <DIR> de-DE 06.07.2015 21:20 276.128 EppManifest.dll 06.07.2015 21:20 152.736 MpAsDesc.dll 06.07.2015 21:20 895.432 MpClient.dll 07.07.2015 11:39 387.336 MpCmdRun.exe 06.07.2015 21:20 376.448 MpCommu.dll 06.07.2015 21:20 111.264 MpEvMsg.dll 06.07.2015 21:20 275.736 MpOAV.dll 06.07.2015 21:20 567.560 MpRtp.dll 06.07.2015 21:20 1.784.248 MpSvc.dll 06.07.2015 21:20 62.760 MpTpmAtt.dll 06.07.2015 21:20 28.480 mpuxhostproxy.dll 07.07.2015 11:40 59.736 MpUXSrv.exe 06.07.2015 21:20 1.401.384 MSASCui.exe 06.07.2015 21:20 80.896 MsMpCom.dll 07.07.2015 11:39 23.824 MsMpEng.exe 06.07.2015 21:20 20.408 MsMpLics.dll 06.07.2015 21:20 442.016 MsMpRes.dll 06.07.2015 21:20 119.800 NisIpsPlugin.dll 06.07.2015 21:20 68.448 NisLog.dll 07.07.2015 11:39 366.552 NisSrv.exe 06.07.2015 21:20 81.944 NisWfp.dll 06.07.2015 21:20 640.832 ProtectionManagement.dll 29.06.2015 17:06 27.482 ProtectionManagement.mof 18.06.2013 16:42 2.382 ProtectionManagement_Uninstall.mof 20.09.2014 00:09 143.520 SymSrv.dll 18.06.2013 16:43 1 SymSrv.yes 27 Datei(en), 9.929.937 Bytes 3 Verzeichnis(se), 236.105.093.120 Bytes frei ========= Ende von CMD: ========= ==== Ende von Fixlog 18:46:15 ==== hier ist jetzt doch die Fixlog.txt!!! Habe sie in drei Teilen gepostet. mfg, Jan |
29.04.2016, 09:27 | #25 |
/// Malwareteam | Win 8.1 MPC Cleaner lässt sich nicht entfernen okay - die ganzen Fehler in deinem SFC Bericht kommen von einem Bug in einem Windows Update soweit ich weiß, jedenfalls nicht schlimm. Die Datei vom Windows Defender ist ganz normal in dem Ordner vorhanden. Bitte versuche noch einmal die Anweisung aus diesem Post. MSASCui.exe befindet sich im Ordner C:\Programme\Windows Defender.
__________________ Mfg, Rafael ~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~ Unterstütze uns mit einer Spende ......... Lob, Kritik oder Wünsche ......... .......... Folge uns auf Facebook .......... |
29.04.2016, 14:15 | #26 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernen Hallo Rafael, die MSASCui.exe war jetztv vorhanden habe sie gestartet und den Windows Defender wieder aktiviert. Was ist der nächste Schritt oder sind wir mit allem durch? Mfg, Jan |
29.04.2016, 14:55 | #27 |
/// Malwareteam | Win 8.1 MPC Cleaner lässt sich nicht entfernen Bitte starte wieder FRST, setze den Haken bei Addition und drücke auf Untersuchen. Poste bitte wieder die beiden Textdateien, die so entstehen. Hast du noch irgendwelche Probleme mit deinem Rechner?
__________________ Mfg, Rafael ~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~ Unterstütze uns mit einer Spende ......... Lob, Kritik oder Wünsche ......... .......... Folge uns auf Facebook .......... |
29.04.2016, 15:08 | #28 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernenCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-04-2016 01 durchgeführt von Jan (Administrator) auf NOTEBOOK-JAN2 (29-04-2016 15:59:52) Gestartet von C:\Users\Jan\Desktop Geladene Profile: Jan (Verfügbare Profile: Jan) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe () C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe (Intel Corporation) C:\Program Files (x86)\Common Files\Intel\RSSDK\v3\bin\win32\notification_tool.exe (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\c008c377e14e1f793da31680ece54c17\windowsupdatebox.exe (Microsoft Corporation) C:\$WINDOWS.~BT\Sources\SetupHost.exe (Apple Inc.) C:\Program Files\iTunes\iTunes.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Windows\System32\wimserv.exe (Astonsoft) C:\Program Files (x86)\EssentialPIM\EssentialPIM.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\$WINDOWS.~BT\Work\EE3DE1E7-CCCC-4860-A5F6-E767C11B3677\DismHost.exe (Farbar) C:\Users\Jan\Desktop\FRST64 (1).exe (Microsoft Corporation) C:\$WINDOWS.~BT\Work\87A68FA7-17AE-4276-BFA3-DF68F3A0C529\DismHost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-26] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1387376 2014-05-13] (Realtek Semiconductor) HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.) HKLM-x32\...\Run: [Intel Privacy Notification Tool] => C:\Program Files (x86)\Common Files\Intel\RSSDK\v3\bin\win32\notification_tool.exe [8173240 2014-10-30] (Intel Corporation) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe -autorun HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-08-27] (Atheros Communications) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-03-31] (Valve Corporation) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [GoogleChromeAutoLaunch_1F14D2380DB1DE09582B9D790BD95BA5] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1008280 2016-04-21] (Google Inc.) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [Allway Sync] => C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe [93488 2015-10-29] () HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\MountPoints2: {7dd3a79a-3f30-11e5-826a-206a8a9e0239} - "F:\LaunchU3.exe" -a HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe HKU\S-1-5-18\...\RunOnce: [iCloud] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe [60688 2015-12-01] (Apple Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\phase-6 Reminder.lnk [2016-04-22] ShortcutTarget: phase-6 Reminder.lnk -> C:\Program Files (x86)\phase-6\phase-6\reminder\reminder.exe (phase-6) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{562729EF-57C3-478A-BEFD-55F1642D22A4}: [DhcpNameServer] 10.61.12.1 Tcpip\..\Interfaces\{8718928D-CBEB-45EA-A621-800A9249001D}: [NameServer] 10.0.0.1 Tcpip\..\Interfaces\{DB5D870B-9660-446A-83A0-9E1575A73068}: [DhcpNameServer] 192.168.178.1 ManualProxies: Internet Explorer: ================== SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> {A3782EB2-C684-409E-A3C8-C932D426AFD5} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-03-15] (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-04-20] (Microsoft Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-08-30] (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\kZsq9LNj.default FF NewTab: about:newtab FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll [2015-08-10] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll [2015-08-10] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-02-19] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-02-19] (Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-08-30] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-05] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-05] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\kZsq9LNj.default\Extensions\abs@avira.com.xpi [2016-04-10] StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR Profile: C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Adblock Plus) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-04-19] CHR Extension: (Skype) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-04-19] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-19] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [322176 2014-08-27] (Windows (R) Win 7 DDK provider) [Datei ist nicht signiert] R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [Datei ist nicht signiert] R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2829552 2016-03-08] (Microsoft Corporation) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1164672 2016-02-17] (NVIDIA Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315352 2014-06-16] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-02-19] (Intel Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-02-19] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-02-17] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6474112 2016-02-17] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2609024 2016-02-17] (NVIDIA Corporation) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3905536 2014-08-11] (Qualcomm Atheros Communications, Inc.) S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-08-27] (Qualcomm Atheros) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) S3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) S3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-04-29] (Malwarebytes) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [116736 2014-02-19] (Intel Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28032 2016-02-17] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation) S3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42736 2014-07-10] (Synaptics Incorporated) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-04-26 17:46 - 2016-04-26 17:46 - 00002312 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk 2016-04-25 16:21 - 2016-04-25 16:21 - 00000000 ____D C:\Users\Jan\AppData\Local\TempTaskUpdateDetection4822F7AE-F8AC-457E-8AF6-112DFE867E18 2016-04-25 15:48 - 2016-04-25 15:48 - 00000000 ____D C:\Users\Jan\AppData\Local\Microsoft Help 2016-04-25 10:18 - 2016-04-25 10:18 - 00002957 _____ C:\Windows\SysWOW64\FSS.txt 2016-04-25 10:12 - 2016-04-25 10:11 - 00007164 _____ C:\Users\Jan\Desktop\WinDefend.reg 2016-04-25 10:11 - 2016-04-25 10:11 - 00007164 _____ C:\Users\Jan\Downloads\WinDefend.reg 2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bonjour-Druckdienste 2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files\Bonjour Print Services 2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files\Bonjour 2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-04-25 09:57 - 2016-04-25 09:57 - 00000000 ____D C:\Users\Jan\Documents\Bluetooth Folder 2016-04-25 09:57 - 2016-04-25 09:57 - 00000000 ____D C:\Users\Jan\AppData\Local\BMExplorer 2016-04-22 17:15 - 2016-04-22 17:20 - 00000696 _____ C:\Users\Jan\Desktop\Search.txt 2016-04-22 14:13 - 2016-04-25 18:26 - 00009152 _____ C:\Users\Jan\Documents\Liste der erhaltenen Geschenke Konfirmation Jan am 24.04.2016.docx.xlsx 2016-04-22 14:12 - 2016-04-22 14:12 - 00008302 _____ C:\Users\Jan\Documents\Mappe1.xlsx 2016-04-21 19:52 - 2016-04-21 19:52 - 00000000 ____D C:\Users\Jan\Downloads\370LvL 2016-04-21 19:51 - 2016-04-21 19:51 - 00061155 _____ C:\Users\Jan\Downloads\370LvL.rar 2016-04-21 18:52 - 2016-04-21 18:52 - 00002796 _____ C:\Users\Jan\Downloads\FSS.txt 2016-04-21 18:51 - 2016-04-21 18:51 - 00899584 _____ (Farbar) C:\Users\Jan\Downloads\FSS.exe 2016-04-21 18:24 - 2016-04-21 18:26 - 00237504 _____ C:\TDSSKiller.3.1.0.9_21.04.2016_18.24.25_log.txt 2016-04-21 18:23 - 2016-04-21 18:23 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Jan\Downloads\tdsskiller.exe 2016-04-20 19:55 - 2016-04-20 19:55 - 02870984 _____ (ESET) C:\Users\Jan\Downloads\esetsmartinstaller_deu.exe 2016-04-20 19:49 - 2016-04-28 18:46 - 00198320 _____ C:\Users\Jan\Desktop\Fixlog.txt 2016-04-19 19:07 - 2016-04-19 19:08 - 29872687 _____ C:\Users\Jan\Downloads\client_20810.zip 2016-04-19 15:10 - 2016-04-29 16:00 - 00020556 _____ C:\Users\Jan\Desktop\FRST.txt 2016-04-19 15:10 - 2016-04-25 19:15 - 00047887 _____ C:\Users\Jan\Desktop\Addition.txt 2016-04-19 15:09 - 2016-04-19 15:09 - 00001271 _____ C:\Users\Jan\Downloads\FRST - Verknüpfung.lnk 2016-04-19 15:09 - 2016-04-18 16:45 - 02375680 _____ (Farbar) C:\Users\Jan\Desktop\FRST64 (1).exe 2016-04-19 15:01 - 2016-04-19 14:50 - 00024064 _____ C:\Windows\zoek-delete.exe 2016-04-19 14:50 - 2016-04-22 13:43 - 00001377 _____ C:\Users\Jan\Desktop\zoek - Verknüpfung.lnk 2016-04-19 14:49 - 2016-04-19 14:49 - 00001355 _____ C:\Users\Jan\Downloads\zoek - Verknüpfung.lnk 2016-04-19 14:48 - 2016-04-19 15:01 - 00000000 ____D C:\zoek_backup 2016-04-19 14:48 - 2016-04-19 14:48 - 01309184 _____ C:\Users\Jan\Downloads\zoek.exe 2016-04-19 14:44 - 2016-04-19 14:44 - 00047545 _____ C:\Users\Jan\Desktop\mbam.txt 2016-04-19 14:39 - 2016-04-22 13:43 - 00001353 _____ C:\Users\Jan\Desktop\GeForce Experience.lnk 2016-04-19 13:07 - 2016-04-29 15:10 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-04-19 13:07 - 2016-04-22 13:43 - 00001074 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-04-19 13:07 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-04-19 13:07 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-04-19 13:07 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-04-19 13:05 - 2016-04-19 13:05 - 22851472 _____ (Malwarebytes ) C:\Users\Jan\Downloads\mbam-setup-2.2.1.1043.exe 2016-04-18 16:48 - 2016-04-18 16:50 - 00047979 _____ C:\Users\Jan\Downloads\Addition.txt 2016-04-18 16:47 - 2016-04-18 16:50 - 00048575 _____ C:\Users\Jan\Downloads\FRST.txt 2016-04-18 16:46 - 2016-04-29 15:59 - 00000000 ____D C:\FRST 2016-04-18 16:45 - 2016-04-18 16:45 - 02375680 _____ (Farbar) C:\Users\Jan\Downloads\FRST64 (1).exe 2016-04-16 17:44 - 2016-04-16 17:44 - 00002440 _____ C:\Users\Jan\Desktop\AdwCleaner[C6].txt 2016-04-16 17:38 - 2016-04-16 17:38 - 01726464 _____ (Farbar) C:\Users\Jan\Downloads\FRST.exe 2016-04-16 17:36 - 2016-04-16 17:36 - 02375168 _____ (Farbar) C:\Users\Jan\Downloads\FRST64.exe 2016-04-16 17:18 - 2016-03-31 02:54 - 25817600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-04-16 17:18 - 2016-03-31 02:03 - 20352512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-04-16 17:18 - 2016-03-31 01:39 - 15415808 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-04-16 17:17 - 2016-03-31 02:31 - 02892800 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-04-16 17:17 - 2016-03-31 02:28 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-04-16 17:17 - 2016-03-31 02:25 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-04-16 17:17 - 2016-03-31 02:17 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-04-16 17:17 - 2016-03-31 01:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2016-04-16 17:17 - 2016-03-31 01:56 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-04-16 17:17 - 2016-03-31 01:55 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-04-16 17:17 - 2016-03-31 01:53 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-04-16 17:17 - 2016-03-31 01:51 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-04-16 17:17 - 2016-03-31 01:50 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2016-04-16 17:17 - 2016-03-31 01:45 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-04-16 17:17 - 2016-03-31 01:45 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-04-16 17:17 - 2016-03-31 01:43 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-04-16 17:17 - 2016-03-31 01:43 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-04-16 17:17 - 2016-03-31 01:43 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-04-16 17:17 - 2016-03-31 01:42 - 02131968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-04-16 17:17 - 2016-03-31 01:30 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-04-16 17:17 - 2016-03-31 01:30 - 02596864 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-04-16 17:17 - 2016-03-31 01:30 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-04-16 17:17 - 2016-03-31 01:30 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2016-04-16 17:17 - 2016-03-31 01:27 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2016-04-16 17:17 - 2016-03-31 01:24 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-04-16 17:17 - 2016-03-31 01:23 - 02056192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-04-16 17:17 - 2016-03-31 01:23 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-04-16 17:17 - 2016-03-31 01:23 - 00330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-04-16 17:17 - 2016-03-31 01:21 - 13811712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-04-16 17:17 - 2016-03-31 01:18 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-04-16 17:17 - 2016-03-31 01:06 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-04-16 17:17 - 2016-03-31 01:05 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-04-16 17:17 - 2016-03-31 01:02 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-04-16 17:17 - 2016-03-31 01:00 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-04-16 17:16 - 2016-03-16 01:00 - 00561952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2016-04-16 17:16 - 2016-03-15 16:14 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-04-16 17:16 - 2016-03-11 16:48 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2016-04-16 17:16 - 2016-03-10 20:22 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-04-16 17:16 - 2016-03-10 20:21 - 00401920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-04-16 17:16 - 2016-03-10 20:20 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-04-16 17:16 - 2016-03-10 19:44 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-04-16 17:16 - 2016-03-10 19:16 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-04-16 17:16 - 2016-03-10 19:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2016-04-16 17:16 - 2016-03-10 18:48 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2016-04-16 17:16 - 2016-03-03 18:47 - 02345472 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2016-04-16 17:16 - 2016-03-03 18:33 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2016-04-16 17:15 - 2016-04-16 17:15 - 03677760 _____ C:\Users\Jan\Downloads\adwcleaner_5.111.exe 2016-04-16 17:15 - 2016-04-04 08:35 - 00046768 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-04-16 17:15 - 2016-04-02 15:26 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-04-16 17:15 - 2016-04-02 15:26 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00698368 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2016-04-16 17:15 - 2016-03-28 15:21 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-04-16 17:15 - 2016-03-03 03:39 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2016-04-16 17:15 - 2016-03-03 03:39 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2016-04-16 17:14 - 2016-03-10 21:19 - 07452512 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-04-16 17:14 - 2016-03-10 21:17 - 01663192 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-04-16 17:14 - 2016-03-10 21:17 - 01523216 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2016-04-16 17:14 - 2016-03-10 21:17 - 01490128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-04-16 17:14 - 2016-03-10 21:17 - 01358960 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2016-04-16 17:14 - 2016-03-10 21:17 - 01133752 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-04-16 17:14 - 2016-03-10 19:48 - 00862720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-04-16 17:14 - 2016-03-10 19:43 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2016-04-16 17:14 - 2016-03-10 18:55 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2016-04-16 17:14 - 2016-03-10 18:42 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2016-04-16 17:12 - 2016-03-03 18:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2016-04-16 12:12 - 2016-03-29 16:05 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-04-11 19:01 - 2016-04-11 19:01 - 00000000 _____ C:\autoexec.bat 2016-04-11 18:29 - 2016-04-16 17:20 - 00000000 ____D C:\AdwCleaner 2016-04-10 16:51 - 2016-04-10 16:51 - 00000000 ____D C:\Users\Jan\AppData\Roaming\MCorp 2016-04-10 16:28 - 2016-04-10 16:34 - 00000000 ____D C:\Users\Jan\AppData\Local\app 2016-04-10 16:19 - 2016-04-10 16:20 - 00000000 ____D C:\Users\Jan\AppData\Local\Tempfolder 2016-04-10 16:19 - 2016-04-10 16:19 - 00000000 ____D C:\uninst 2016-04-10 16:17 - 2016-04-10 16:20 - 00127488 _____ C:\Users\Jan\AppData\Roaming\Installer.dat 2016-04-10 16:16 - 2016-04-10 16:15 - 00001006 _____ C:\Windows\system32\Drivers\etc\hp.bak 2016-04-09 12:37 - 2016-04-09 12:37 - 00000000 ____D C:\Users\Jan\AppData\Roaming\dvdcss 2016-04-09 10:39 - 2016-04-09 10:39 - 00000000 ____D C:\Users\Jan\AppData\Local\Avira_Operations_GmbH_&_C 2016-04-09 10:31 - 2016-04-09 10:31 - 00000000 ____D C:\Users\Jan\AppData\Local\Avira 2016-04-09 10:29 - 2016-04-12 20:41 - 00000000 ____D C:\Program Files (x86)\Avira 2016-04-09 10:29 - 2016-04-11 20:20 - 00000000 ____D C:\ProgramData\Avira 2016-04-09 09:57 - 2016-04-09 09:57 - 00000000 ____D C:\Windows\system32\SSL ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-04-29 15:56 - 2016-02-13 20:35 - 00000000 ___HD C:\$WINDOWS.~BT 2016-04-29 15:53 - 2015-08-10 08:56 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-04-29 15:43 - 2015-01-12 14:48 - 00000000 ____D C:\Windows\Panther 2016-04-29 15:26 - 2015-08-09 08:50 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-489078762-871934448-399521353-1001 2016-04-29 15:20 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps 2016-04-29 15:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2016-04-29 15:14 - 2015-06-17 21:46 - 06497862 _____ C:\Windows\system32\perfh007.dat 2016-04-29 15:14 - 2015-06-17 21:46 - 01876866 _____ C:\Windows\system32\perfc007.dat 2016-04-29 15:14 - 2014-03-18 12:03 - 00005430 _____ C:\Windows\system32\PerfStringBackup.INI 2016-04-29 15:10 - 2015-08-09 19:46 - 00000000 ____D C:\Program Files (x86)\Steam 2016-04-29 15:10 - 2015-08-09 10:05 - 00001142 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-04-29 06:31 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-04-28 21:09 - 2015-07-15 18:57 - 00000000 ____D C:\Users\Jan 2016-04-28 21:08 - 2015-08-30 11:43 - 00000000 ____D C:\Users\Jan\AppData\Roaming\EssentialPIM 2016-04-28 21:02 - 2015-08-09 10:05 - 00001146 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-04-28 20:55 - 2015-08-31 20:54 - 00000000 ____D C:\Users\Jan\Documents\Euro Truck Simulator 2 2016-04-28 19:09 - 2015-12-08 21:50 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Skype 2016-04-28 18:23 - 2015-08-30 13:20 - 00003186 _____ C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-489078762-871934448-399521353-1001 2016-04-25 20:32 - 2015-08-09 09:00 - 00000000 ____D C:\Users\Jan\AppData\Local\CrashDumps 2016-04-25 16:15 - 2016-03-20 10:00 - 00000000 ____D C:\Users\Jan\AppData\Local\ElevatedDiagnostics 2016-04-25 10:20 - 2015-06-17 12:54 - 00003718 _____ C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2016-04-25 09:57 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf 2016-04-23 13:04 - 2015-08-09 10:06 - 00002171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-04-23 13:04 - 2015-08-09 10:06 - 00002159 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-04-22 13:43 - 2016-03-22 18:08 - 00000882 _____ C:\Users\Public\Desktop\CCleaner.lnk 2016-04-22 13:43 - 2016-03-22 16:58 - 00001769 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-04-22 13:43 - 2016-02-24 21:09 - 00000921 _____ C:\Users\Public\Desktop\Euro Truck Simulator 2 Multiplayer.lnk 2016-04-22 13:43 - 2016-02-24 21:09 - 00000916 _____ C:\Users\Public\Desktop\American Truck Simulator Multiplayer.lnk 2016-04-22 13:43 - 2016-02-15 20:24 - 00000867 _____ C:\Users\Jan\Desktop\Steam.lnk 2016-04-22 13:43 - 2015-12-08 21:50 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk 2016-04-22 13:43 - 2015-11-03 19:57 - 00001772 _____ C:\Users\Jan\Desktop\Word 2013.lnk 2016-04-22 13:43 - 2015-08-31 16:42 - 00002838 _____ C:\Users\Jan\Desktop\Excel 2013.lnk 2016-04-22 13:43 - 2015-08-31 16:42 - 00002769 _____ C:\Users\Jan\Desktop\PowerPoint 2013.lnk 2016-04-22 13:43 - 2015-08-30 13:14 - 00001251 _____ C:\Users\Jan\Desktop\Landwirtschafts Simulator 15 .lnk 2016-04-22 13:43 - 2015-08-30 12:46 - 00001945 _____ C:\Users\Public\Desktop\Samsung Kies 3.lnk 2016-04-22 13:43 - 2015-08-30 12:28 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-04-22 13:43 - 2015-08-30 12:28 - 00002031 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2016-04-22 13:43 - 2015-08-30 12:15 - 00001089 _____ C:\Users\Public\Desktop\phase-6 desktop.lnk 2016-04-22 13:43 - 2015-08-30 11:54 - 00001042 _____ C:\Users\Public\Desktop\VLC media player.lnk 2016-04-22 13:43 - 2015-08-30 11:43 - 00001027 _____ C:\Users\Public\Desktop\EssentialPIM.lnk 2016-04-22 13:43 - 2015-08-30 11:41 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-04-22 13:43 - 2015-08-30 11:40 - 00000990 _____ C:\Users\Jan\Desktop\IrfanView 64.lnk 2016-04-22 13:43 - 2015-07-15 18:58 - 00001272 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk 2016-04-22 13:43 - 2015-07-15 18:58 - 00001051 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-04-22 13:43 - 2015-07-15 18:57 - 00000469 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-04-22 13:43 - 2015-07-15 18:57 - 00000467 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-04-22 13:43 - 2015-01-12 15:58 - 00001357 _____ C:\Users\Public\Desktop\CyberLink PowerDirector 10.lnk 2016-04-22 13:42 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\addins 2016-04-22 09:57 - 2015-08-09 20:32 - 00453288 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2016-04-21 06:19 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2016-04-20 19:32 - 2013-08-22 17:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-04-20 19:31 - 2015-08-30 13:10 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-04-19 20:34 - 2016-02-10 14:20 - 00000000 ____D C:\Users\Jan\Documents\ETS2MP 2016-04-19 19:33 - 2015-12-08 21:50 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-04-19 19:33 - 2015-12-08 21:50 - 00000000 ____D C:\ProgramData\Skype 2016-04-19 19:08 - 2016-02-10 12:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ETS2 + ATS Multiplayer 2016-04-19 19:08 - 2016-02-10 12:51 - 00000000 ____D C:\Program Files\TruckersMP 2016-04-19 14:34 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\schemas 2016-04-19 13:51 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache 2016-04-19 13:02 - 2013-08-22 16:44 - 00381472 _____ C:\Windows\system32\FNTCACHE.DAT 2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ___SD C:\Windows\system32\GWX 2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ____D C:\Windows\system32\appraiser 2016-04-18 18:41 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp 2016-04-18 16:45 - 2015-08-09 11:47 - 00000000 ____D C:\Windows\system32\MRT 2016-04-18 16:42 - 2015-08-09 11:47 - 135176864 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-04-18 16:39 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-04-16 17:21 - 2016-03-12 12:26 - 00000000 ____D C:\Program Files (x86)\Razer 2016-04-16 17:14 - 2016-01-12 20:47 - 00177488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-04-16 17:13 - 2016-03-09 15:46 - 01737080 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-04-16 17:13 - 2016-03-09 15:46 - 01501488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-04-16 17:13 - 2016-03-09 15:46 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll 2016-04-16 17:07 - 2016-03-12 12:31 - 00000000 ____D C:\Users\Jan\AppData\Local\Razer 2016-04-16 17:07 - 2016-03-12 12:26 - 00000000 ____D C:\ProgramData\Razer 2016-04-10 17:41 - 2016-02-07 17:03 - 00000000 ____D C:\Users\Jan\Documents\American Truck Simulator 2016-04-09 12:41 - 2015-08-30 11:54 - 00000000 ____D C:\Users\Jan\AppData\Roaming\vlc 2016-04-09 10:35 - 2015-08-30 12:20 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Mozilla 2016-04-05 23:53 - 2015-01-12 15:43 - 00829944 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-04-05 23:53 - 2015-01-12 15:43 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-04-05 15:36 - 2015-11-03 21:23 - 00000222 _____ C:\Users\Jan\Desktop\DiRT Rally.url 2016-04-02 19:54 - 2016-03-02 16:14 - 00000000 ____D C:\Users\Jan\Documents\Project CARS ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-04-10 16:17 - 2016-04-10 16:20 - 0127488 _____ () C:\Users\Jan\AppData\Roaming\Installer.dat 2015-06-17 13:07 - 2015-06-17 13:07 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-04-20 21:55 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-04-2016 01 durchgeführt von Jan (2016-04-29 16:00:47) Gestartet von C:\Users\Jan\Desktop Windows 8.1 (X64) (2015-07-15 16:57:53) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-489078762-871934448-399521353-500 - Administrator - Disabled) Gast (S-1-5-21-489078762-871934448-399521353-501 - Limited - Disabled) Jan (S-1-5-21-489078762-871934448-399521353-1001 - Administrator - Enabled) => C:\Users\Jan ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8106.0 - Acer Incorporated) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8108 - Acer Incorporated) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (HKLM-x32\...\{F83DD803-2467-4D07-9D6F-87AF0434410A}) (Version: 11.9.900.170 - Adobe Systems Incorporated) Allway Sync (HKLM-x32\...\{BD9C52C1-7971-47D1-AB95-5F1F9F34D35A}) (Version: 15.3.1 - Botkind, Inc.) American Truck Simulator (HKLM-x32\...\Steam App 270880) (Version: - SCS Software) Apple Application Support (32-Bit) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.) Bonjour-Druckdienste (HKLM\...\{0DA20600-6130-443B-9D4B-F30520315FA6}) (Version: 2.0.2.0 - Apple Inc.) Broadcom NetLink Controller (HKLM\...\{7FBA83D7-D58E-4B70-9B9B-12E95B183B22}) (Version: 16.6.1.3 - Broadcom Corporation) Brother MFL-Pro Suite MFC-J6510DW (HKLM-x32\...\{17795164-3BC1-4D4F-8ADA-65C895EBFC9A}) (Version: 2.0.0.0 - Brother Industries, Ltd.) CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform) Cities: Skylines (HKLM-x32\...\Steam App 255710) (Version: - Colossal Order Ltd.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.4220 - CyberLink Corp.) DiRT Rally (HKLM-x32\...\Steam App 310560) (Version: - Codemasters Racing Studio) Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc) EssentialPIM (HKLM-x32\...\EssentialPIM) (Version: 6.58 - Astonsoft Ltd) Euro Truck Simulator (HKLM-x32\...\Steam App 232010) (Version: - SCS Software) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) F1 2012 (HKLM-x32\...\Steam App 208500) (Version: - Codemasters Birmingham) F1 2013 (HKLM-x32\...\Steam App 223670) (Version: - Codemasters Birmingham) F1 2015 (HKLM-x32\...\Steam App 286570) (Version: - Codemasters) Foxit PhantomPDF (HKLM-x32\...\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}) (Version: 6.0.121.624 - Foxit Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.87 - Google Inc.) Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden GRID 2 (HKLM-x32\...\Steam App 44350) (Version: - Codemasters Racing) iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.) Intel RealSense Warrior Wave (HKLM-x32\...\Warrior Wave) (Version: 1.0.24 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3643 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (x86): Core (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (x86): Face Tracking (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (x86): Face Tracking: Models (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (x86): User Notification Tool files and components (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden Intel® RealSense™ SDK 2014 Runtime (HKLM-x32\...\ARP_for_prd_rs_sdk_runtime_v3_3.1.0.85181) (Version: 3.1.0.85181 - Intel Corporation) IrfanView 64 (remove only) (HKLM\...\IrfanView) (Version: 4.40 - Irfan Skiljan) iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.) Kinect for Windows Speech Recognition Language Pack (de-DE) (HKLM-x32\...\{898AA67F-99B8-4C7F-9611-B11F98EF6E78}) (Version: 11.0.7413.611 - Microsoft Corporation) Landwirtschafts Simulator 15 (HKLM-x32\...\FarmingSimulator2015DE_is1) (Version: 1.4.2.0 - GIANTS Software) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4815.1001 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-489078762-871934448-399521353-1001\...\OneDriveSetup.exe) (Version: 17.3.6302.0225 - Microsoft Corporation) Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation) NVIDIA Grafiktreiber 364.72 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 364.72 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4815.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4815.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4815.1001 - Microsoft Corporation) Hidden phase-6 2.3.5 (HKLM-x32\...\phase-6) (Version: 2.3.5 - phase-6) Project CARS (HKLM-x32\...\Steam App 234630) (Version: - Slightly Mad Studios) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.330 - Qualcomm Atheros Communications) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.43 - Qualcomm Atheros) RaceRoom Racing Experience (HKLM-x32\...\Steam App 211500) (Version: - Sector3 Studios) RaceRoom Racing Experience Launcher (HKLM-x32\...\{1FD9F07F-7BBF-4C91-B3F0-A23714A3A913}_is1) (Version: 1.0 - Sector3 Studios) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39059 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7260 - Realtek Semiconductor Corp.) Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.16011.2 - Samsung Electronics Co., Ltd.) Samsung Kies3 (x32 Version: 3.2.16011.2 - Samsung Electronics Co., Ltd.) Hidden Scania Truck Driving Simulator (HKLM-x32\...\Steam App 258760) (Version: - SCS Software) SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.21 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.21.100 - Skype Technologies S.A.) Spintires (HKLM-x32\...\Steam App 263280) (Version: - Oovee® Game Studios) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TruckersMP 0.2.0.8.1 Alpha (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.2.0.8.1 Alpha - ETS2MP Team) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Welcome to Intel RealSense 3D Camera (HKLM-x32\...\Welcome to Intel RealSense 3D Camera) (Version: 1.05 - Intel) WinRAR 5.31 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07A88F54-C730-4DF8-BCC3-487E1A76ACF6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.) Task: {144CF144-9872-4470-98C7-96F247898303} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [2014-07-22] (Acer Incorporated) Task: {2D8F5536-6E75-4A7B-9608-890995125601} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-10] (Adobe Systems Incorporated) Task: {3386A9AD-41B9-44E2-8207-1CB1BBAC9757} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated) Task: {61B4AA7B-433F-481E-B729-50D03345EA54} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.) Task: {64463039-F0D9-4FA1-A62E-2423AEF171E6} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-489078762-871934448-399521353-1001 => C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-04-26] (Microsoft Corporation) Task: {6E5497CD-4EAA-47CB-827D-E28BC9C911C1} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2014-06-17] (Acer Incorporated) Task: {7D2CFD96-D1A2-45C2-974A-2814F836791E} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {7D36D36D-8C01-41F6-9BB6-AF7D5E84A5C4} - System32\Tasks\{BF66D5AD-3558-4BBF-9D5D-82147A5E9F3F} => pcalua.exe -a "C:\Program Files (x86)\Acer\abDocs\AcerDocsSetup.exe" -c -uninstall Task: {91CFB104-0317-4B91-89F7-29EAFF0CD2B5} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation) Task: {95A1FE22-88D3-4336-B7AD-CCF5B920B496} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {9CAB6DED-5621-4F5E-9970-B32B21887A37} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd) Task: {9CF1FF96-5129-498B-A9F2-3EFF6A437F42} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe [2014-04-07] (Dolby Laboratories Inc.) Task: {BEB25077-0AEE-4334-8CD9-E0F48D46E870} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {C54C4F96-BDFA-4A9E-AAED-43F7385562F8} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-04-18] (Microsoft Corporation) Task: {D0A479A7-929A-49B8-8484-2E9B420B9332} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe Task: {E987A9FC-7172-4CFF-AC33-3F4B42D608F1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-03-18 23:56 - 2016-03-18 23:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-03-18 23:56 - 2016-03-18 23:56 - 01329936 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-08-30 13:10 - 2015-10-13 05:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2016-03-01 21:16 - 2016-02-17 08:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2015-12-19 19:54 - 2016-02-17 08:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-03-01 21:16 - 2016-02-17 08:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2015-01-12 15:54 - 2012-04-24 12:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2015-08-30 12:43 - 2010-03-16 01:04 - 00143360 _____ () C:\Windows\system32\BrSNMP64.dll 2016-03-29 11:31 - 2016-03-22 04:25 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-08-27 19:45 - 2014-08-27 19:45 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2014-08-27 19:41 - 2014-08-27 19:41 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll 2014-08-27 19:47 - 2014-08-27 19:47 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe 2015-06-17 12:50 - 2016-02-17 09:01 - 00717184 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll 2015-06-17 12:50 - 2016-02-17 09:02 - 00862592 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll 2014-04-07 16:13 - 2014-04-07 16:13 - 00052096 _____ () C:\Program Files\Dolby Digital Plus\Dolby.DDP.Controls_Desktop.dll 2015-10-29 15:14 - 2015-10-29 15:14 - 00093488 _____ () C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe 2016-03-11 22:31 - 2016-03-11 22:31 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2016-03-18 23:55 - 2016-03-18 23:55 - 00306960 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxslt.dll 2016-04-23 13:04 - 2016-04-21 07:10 - 02224280 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libglesv2.dll 2016-04-23 13:04 - 2016-04-21 07:10 - 00097944 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libegl.dll 2015-08-30 12:43 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2014-02-19 18:51 - 2014-02-19 18:51 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-08-09 10:40 - 2016-02-17 09:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-08-09 19:48 - 2016-03-11 02:56 - 00783360 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-08-09 19:48 - 2015-07-03 18:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-08-09 19:48 - 2016-03-31 22:55 - 02549840 _____ () C:\Program Files (x86)\Steam\video.dll 2015-08-09 19:48 - 2015-07-03 18:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-08-09 19:48 - 2015-07-03 18:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2015-08-09 19:47 - 2016-02-09 01:14 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2015-08-09 19:48 - 2016-03-31 22:55 - 00829008 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-03-09 19:14 - 2016-02-18 00:25 - 00281088 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2015-10-29 13:44 - 2015-10-29 13:44 - 08569344 _____ () C:\Program Files (x86)\Allway Sync\Bin\syncapp.dll 2015-08-09 19:48 - 2016-02-09 03:33 - 48400672 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2016-03-18 23:56 - 2016-03-18 23:56 - 01040656 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2016-03-18 23:56 - 2016-03-18 23:56 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 15:25 - 2016-04-10 16:15 - 00001006 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-489078762-871934448-399521353-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jan\AppData\Roaming\Microsoft\Windows Photo Viewer\Hintergrundbild der Windows-Fotoanzeige.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-489078762-871934448-399521353-1001\...\StartupApproved\Run: => "Spotify Web Helper" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{5255B9A2-A987-47B7-AD1D-5B9EC09BBD29}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{177AEDA3-7A63-40BD-B9D2-86E5DE0B0525}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{168494FD-66C5-4C2A-AE2D-C1E8EEB66228}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe FirewallRules: [{CCCF3C04-4E6A-46C3-93BD-28DAB4F8BD45}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe FirewallRules: [{9F0CBB67-0577-48F2-9783-D423DE006369}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{03F81190-EA49-4E74-834F-09FB3235F302}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{42D08078-860B-4AE9-B02C-1B518878C94D}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{32F0C2BF-DAEF-4801-9CB7-A292D319B58E}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{B90645B1-0989-496E-B2E6-7C4AA0C67184}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{6D49E321-B7BE-48D9-96A8-FD265A4F9EB3}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{E4F3E027-28A6-4B3B-93AD-A37A06578C0F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{23684A87-38E4-4BA0-A204-6ECBEAD044B0}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{66D90117-1867-4F0A-B85C-CD00058459CD}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{AB017C7A-6014-404A-B10B-B38536445939}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{2695E114-88E4-4C0F-A250-430847E147EB}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{0275EA0C-D51E-4E08-8874-4304C8165CCE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{D633977F-1C07-4F70-A691-EDAFC53FEB65}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{AB0B2FB5-21A1-45B6-B31C-5C19D4FD133C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{B5B2424C-3B0D-4720-BF7A-87357F1E3177}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{3B2ECB12-BCA8-47F3-A7FB-DD1715975F80}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{3A938CB8-68AA-46AE-ACD8-967440294721}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{E8666CED-3003-4AE8-8F0A-62869EAB6068}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{DAB988FC-FAEA-4D69-8B20-9DE4472466D9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{AFADCC7F-303F-4374-BB18-14622EEA487D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{0ED1EBD6-C022-4274-9495-D019F1FB9DA1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{4054727D-41C2-4AD0-8069-88FDD7442191}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{514A81D2-AA7E-431C-977F-ED9E7C66B522}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{B7C60454-A552-4859-9BA2-65EFA7C40FA1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{31B9CF05-4391-4741-85C8-1D900B7C846F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{C0010281-198A-4A0D-BFC3-F4928D9D45F6}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{A38C273F-78AF-4F85-A4C3-089100CFF807}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{02F30AB7-0A5A-4156-AA33-792730082FAE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{1E20F0C0-1479-4194-A641-2774204AA61E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{EABF564F-3340-43E5-8262-2CDEF4458F6C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{D4A908AA-782E-44A6-A6A5-77E5E204361B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{2F2F3FAD-9AFD-4FA7-B4C6-0B8130B488E8}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe FirewallRules: [{C3197FBD-F2D0-491C-8ECD-2CAEF5ACA4C5}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe FirewallRules: [{FAD1F37E-0A45-4AAD-BC61-FCB84390D491}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe FirewallRules: [{501C0F43-EBC3-4858-AF25-0B1E3D29C021}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe FirewallRules: [{133E087A-AAF9-4BE6-A4F4-32EF738DC6E6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{86FB5E4D-CB72-4A4C-98CD-2F892244BCBE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{0EB6DFB3-0DF8-4215-AF62-52B0C597A470}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{EF72E83F-26F9-4616-B64F-28D1250250DC}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{061DC6EF-0495-493B-81F1-DB74C9DB04A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe FirewallRules: [{BB2976D1-D38F-4137-B34D-066FA09B8682}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe FirewallRules: [{5CD1601B-F887-4D2B-9367-5698E3A34B38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2012\F1_2012.exe FirewallRules: [{E486775E-0703-47C3-94F6-2D268BC6962B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2012\F1_2012.exe FirewallRules: [{B05CBC4F-BC42-406D-8B87-F32FA2BAFE53}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\f12013\F1_2013.exe FirewallRules: [{0EF656BD-F3FB-44B5-ACB6-096829CC86D6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\f12013\F1_2013.exe FirewallRules: [{573BC1AD-64F3-4BAB-AEA8-64DC16E4A4F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe FirewallRules: [{49D2CD9B-E5B5-4777-92A5-AC8B7BBB7917}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe FirewallRules: [{16773875-EA72-44B6-912B-EC94F8A546CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe FirewallRules: [{E9BCAC84-4BF9-41AF-8792-AFF33F96764A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe FirewallRules: [TCP Query User{00105315-7825-4946-BB0A-71F1E266630C}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{B4C455B4-DEA3-44A7-991B-FFD1D366CA41}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{67B2E0AF-CCA2-4647-87DA-83930B1FEDEB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe FirewallRules: [{F2D8E220-A092-42EA-9AF3-0EF775A171AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe FirewallRules: [{63976110-E447-4B78-B963-2FAB5EDAB20A}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe FirewallRules: [{36C30BA6-9718-447F-B59F-0DD2AB2C28E1}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe FirewallRules: [{786CC2EB-683D-4794-BAAC-E38D81D66A17}] => (Allow) LPort=54925 FirewallRules: [{147D1EEF-67C4-4E55-B685-D77493CD480A}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{28B7563D-6764-437B-9E5E-1E988232B4F2}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{634A5341-F797-40F1-9AA3-D1E41EB72BB6}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{7EB100D4-EEE7-4EF8-A74D-3264DF9FD4F4}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{EA9AC0B9-6F1B-424E-8E48-64F4BF8126FA}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{2C2EA128-6412-4181-8A4D-D92E05B7EC75}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{F40459FE-8EAC-433D-ACEA-97FDC5DA3D32}] => (Allow) C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [TCP Query User{E9FFD9BF-2060-402E-AD79-C906B02B539C}C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe] => (Allow) C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe FirewallRules: [UDP Query User{BA51C170-5763-45F1-8034-3938147ABCB3}C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe] => (Allow) C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe FirewallRules: [{E0CBDE1E-5C86-48CE-9802-86DA3BA91D52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe FirewallRules: [{E63F55E2-D563-4B39-A5AE-D87509A12EC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe FirewallRules: [{BC520304-1C68-4BA3-89C4-32FEE1C82F4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe FirewallRules: [{E9DA2C27-251D-430B-A8E7-16A1D7319300}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe FirewallRules: [{A12925A2-9BA0-42AD-A3AE-FC712C36A199}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe FirewallRules: [{341F4A65-AD01-449C-ADFD-E7E47CD8DDB1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe FirewallRules: [{E21ADE07-AEE0-44C2-8E37-A0913B44A52A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trucks & Trailers\bin\win_x86\trucks_n_trailers.exe FirewallRules: [{028CBB43-3354-487B-BB8B-FE14A4767410}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trucks & Trailers\bin\win_x86\trucks_n_trailers.exe FirewallRules: [{89D56416-7B46-4FCE-BFCC-4DE65FEA769F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe FirewallRules: [{82F2CA31-99DA-4917-B91D-452B1D2B449F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe FirewallRules: [{EC639DFF-6821-429A-951C-C651DC9B099F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator\eurotrucks.exe FirewallRules: [{C5753D9C-1DBE-434A-B4A2-DB3A2427141E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator\eurotrucks.exe FirewallRules: [TCP Query User{3B3EFB66-147E-4B3D-997F-E504925A9C31}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{05FDD09D-27D4-4C69-8ECF-49B5354C1AE7}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{C017ED3E-56ED-44CE-A897-2A0791F55148}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{F39FBCC3-FEEB-423B-A925-E4AA7E88EFC5}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{5B20645B-91CE-4204-8671-5DABE490E824}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe FirewallRules: [{2F27CF8E-6801-45DF-845A-47F79EFE5CF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe FirewallRules: [{AE33FC29-0BE1-4DE7-A8FC-E7355C8B82F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\pCars\pCARS64.exe FirewallRules: [{3C4815BF-CC19-401E-A619-F4CB7B4F63C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\pCars\pCARS64.exe FirewallRules: [{3981513C-C594-46CB-8249-9CB7FE806353}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{E2230A58-72F0-4AB0-B896-309157D9C62C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe FirewallRules: [{7F378F69-E9D6-46E3-AF0E-FEF3735F6932}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe FirewallRules: [{8480922A-BF1B-4F54-87AA-1E80C8FA4C44}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{C3A5C10A-5F58-4FC0-A69C-F02D39C6F7EC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{2AF52FEC-CB35-4E46-B89F-D48C7F7EBABF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{31F29C08-C67C-4E2B-B50C-A0F57E70C6A3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{3F8DD928-CAF0-484D-A929-8586394860B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{84A5CEFF-F72F-4BC4-80E9-D5952EB5CF45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{9735FA6C-8244-4C87-97B8-13C2E6FCF0C7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{19AEE153-F44C-401D-B689-8AE14321F908}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\Game\RRRE.exe FirewallRules: [{38F358DC-8A96-40E9-B829-139198AFB4A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\Game\RRRE.exe ==================== Wiederherstellungspunkte ========================= 25-04-2016 10:01:11 Installed Bonjour Print Services 29-04-2016 06:17:53 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (04/29/2016 03:14:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (04/29/2016 03:14:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (04/29/2016 03:14:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (04/29/2016 06:13:17 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (04/29/2016 06:13:17 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (04/29/2016 06:13:17 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (04/28/2016 07:28:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (04/28/2016 07:28:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (04/28/2016 07:28:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (04/28/2016 07:14:28 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Systemfehler: ============= Error: (04/29/2016 03:33:08 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (04/29/2016 03:27:27 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (04/29/2016 03:26:57 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (04/29/2016 06:37:28 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definitionsupdate für Windows Defender – KB2267602 (Definition 1.219.254.0) Error: (04/29/2016 06:37:22 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (04/29/2016 06:31:59 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (04/29/2016 06:30:10 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0xc190012f fehlgeschlagen: Upgrade auf Windows 10 Home, Version 1511, 10586 Error: (04/29/2016 06:19:20 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definitionsupdate für Windows Defender – KB2267602 (Definition 1.219.254.0) Error: (04/29/2016 06:19:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (04/28/2016 09:09:14 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} CodeIntegrity: =================================== Date: 2016-04-29 15:28:16.307 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-29 06:37:22.076 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-29 06:31:59.964 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-29 06:19:12.832 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-28 20:10:51.423 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-28 19:22:14.511 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-28 18:50:06.946 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-28 18:28:18.073 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-28 18:20:51.807 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-04-27 20:39:00.102 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-4710HQ CPU @ 2.50GHz Prozentuale Nutzung des RAM: 31% Installierter physikalischer RAM: 8115.27 MB Verfügbarer physikalischer RAM: 5596.33 MB Summe virtueller Speicher: 16819.27 MB Verfügbarer virtueller Speicher: 13549.38 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:453.77 GB) (Free:219.3 GB) NTFS Drive d: (DATA) (Fixed) (Total:453.77 GB) (Free:453.62 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 27067300) Partition: GPT. ==================== Ende von Addition.txt ============================ Nein ich habe sonst keine Probleme mehr. Sollte ich welche haben werde ich mich melden. Dann bedanke ich mich ganz herzlich für die sehr hilfreichen Antworten!! Bis irgendwann mal. Mfg, Jan |
29.04.2016, 15:09 | #29 |
/// Malwareteam | Win 8.1 MPC Cleaner lässt sich nicht entfernen Bitte pass auf, wenn du von Chip oder anderen Portalen Software laden möchtest: Die Logs von deinem Rechner sehen jetzt für mich sauber aus: Herzlichen Glückwunsch - du bist Clean Zum Schluss müssen wir noch etwas aufräumen und ich gebe dir ein paar Hinweise mit auf den Weg: Wichtig: Entfernen der verwendeten Tools Die Reihenfolge ist hier entscheidend.
Malwarebytes Anti-Malware und ESET kannst du als Ergänzung zu deiner bestehenden Antivirus-Lösung auf dem Computer belassen und deinen Computer damit regelmäßig scannen. Persönliche Empfehlungen Das wichtigste zu erst:
Schutz vor unerwünschter Software Adware ist zu einer Art permanenten Bedrohung geworden, weil immer mehr Programme versuchen, einem beim Installieren noch was anderes unterzujubeln - und wie schnell hat man da ein Häkchen übersehen? Darum: pass auf, wenn du dir Software aus dem Internet herunterlädst! Viele Portale im Internet wie Chip, Softonic und Sourceforge versuchen häufig, dir Adware oder sonstige Downloader mit unerwünschten Programmen unterzujubeln. Downloade nach Möglichkeit immer direkt von der Herstellerseite oder alternativ von einem sauberen Download-Portal, wie von FilePony.de. Lese dir dazu auch folgenden Artikel durch: CHIP-Installer - was ist das? - Anleitungen Selbst wenn du ein Programm von einer seriösen Quelle heruntergeladen hast, ist das keine Garantie, dass dein Programm nicht doch versucht, unerwünschte Änderungen an deinem Computer vorzunehmen. So versuchen immer mehr Programme, durch modifizierte Installationsroutinen unerwünschte Programme mit auf deinen PC zu schleusen. Das klappt leider auch häufig, weil viele Anwender nicht lesen, was auf dem Bildschirm steht und stattdessen schnell durchklicken. Deshalb: Wenn du ein Programm installierst, wähle immer die benutzerdefinierte Installation und schaue, was du da gerade eigentlich alles mit einem Klick auf "Ok" oder "Weiter" abnickst - entferne entsprechend die Haken bei Dingen, die du nicht möchtest. Wer lesen kann, ist klar im Vorteil! Benutze keine Optimizer, Cleaner oder sonstige SpeedUp Wunder, da diese Tools fast nie einen auch nur messbaren Performancegewinn bringen. Du kannst jedoch regelmäßig auf deinem PC die Datenträgerbereinigung ausführen, so gewinnst du belegten Speicherplatz zurück. Aktiviere in deiner Virenschutzlösungen den "Schutz vor potentiell unerwünschter Software", um dich bestmöglich zu schützen. Guter Trick: Wenn du den kostenlosen Windows Defender benutzt (ab Windows 8), kannst du einen vergleichbaren Schutz durch einen kleinen Trick auch nutzen! Lese dazu folgenden Artikel um dich mehr zu informieren: Windows mit verstecktem Adware-Killer Zum aktivieren dieses "Tricks" lade einfach nur diese Datei und führe sie aus: MpEnablePlus.reg Tipps, um dein System sicherer zu machen Halte immer deine Plug-ins und Software, insbesondere deinen Browser aktuell. Deinstalliere wenn möglich Java und den Adobe Flashplayer von deinem Computer. Neuerdings benötigt man sie fast nie mehr und stellen darum nur mehr eine unnötige Sicherheitslücke auf deinem Computer dar. Wenn du sie doch unbedingt benötigst, halte sie aber unbedingt aktuell. Weiters kannst du dir Malwarebytes Anti-Exploit installieren. Es schützt gegen viele aktuelle Sicherheitslücken und erhöht so deine Sicherheit. Passwörter Ändere regelmäßig deine Passwörter! Zudem musst du sichere Passwörter benutzen, das bedeutet: mindestens 8 Zeichen, Groß- und Kleinbuchstaben und Sonderzeichen. Ganz wichtig: benutze pro Account ein anderes Passwort! Tipp: Benutze einen Spruch, den du dir leicht merken kannst, als Hilfe für ein Passwort! Zum Beispiel: Der Himmel ist blau und wenn es regnet?-grau ==> DHibuwer?-grau Unterstütze uns und empfiehl uns weiter Du kennst Freunde und Bekannte, die Probleme mit ihrem Computer haben? Schick sie doch zu uns auf das Trojaner Board, wir helfen gerne Wenn du uns mit einer Spende unterstützen möchtest, freuen wir uns sehr und dies kannst du hier tun: http://www.trojaner-board.de/79994-s...ndenkonto.html Herzlichen Dank dafür Wir machen diese Tätigkeit hier freiwillig, darum freue ich mich besonders über ein kurzes Danke, wenn du mit mir zufrieden warest oder sonst über Verbesserungsvorschläge - das kannst du gerne hier machen Besuche und like unsere Facebook-Seite! Danke für deine Mitarbeit und alles Gute! Bitte gib mir Bescheid, wenn du das alles gelesen hast und du keine weiteren Fragen mehr hast.
__________________ Mfg, Rafael ~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~ Unterstütze uns mit einer Spende ......... Lob, Kritik oder Wünsche ......... .......... Folge uns auf Facebook .......... |
29.04.2016, 15:22 | #30 |
| Win 8.1 MPC Cleaner lässt sich nicht entfernen Hallo Rafael, Habe alles gelesen und keine weiteren Fragen mehr. DANKE FÜR ALLES Mfg, Jan |
Themen zu Win 8.1 MPC Cleaner lässt sich nicht entfernen |
64-bit, adwcleaner, brauche, brauche hilfe, cleaner, eingefangen, ellung, entferne, entfernen, fehlermeldung, gefangen, gen, hilfe, logfile, lässt sich nicht entfernen, mpc cleaner, nicht, win, win 8.1 |