|
Log-Analyse und Auswertung: Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel!Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
06.06.2016, 19:43 | #1 |
| Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel! Guten Tag zusammen, mein Skype hat jetzt gestern zum 3. mal an die meisten meiner Kontakte einen Link gesendet der am ende immer den Username desjenigen enthielt, dem die nachricht gewidmet war. Das erste mal ist dies am 30.03 aufgetreten. Da habe ich mein Kennwort geändert und dachte das wärs... Da ich Skype nicht mehr häufig verwende habe ich erst bei einem erneuten start letzte Woche festgestellt, dass erneute links gesendet wurden. Bzw. es erscheint mir so als würden diese nur gesendet, nach dem ich mich in skype angemeldet habe (Nur eine Vermutung). Denn auch gestern nach einem erneuten Passwort reset wurden die LInks versendet. Natürlich habe ich alle betroffenen bereits beim ersten mal gewarnt. Ich hoffe mir kann geholfen werden. Viele Grüße Manju/David Addition: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-06-2016 02 durchgeführt von Manju (2016-06-06 20:35:30) Gestartet von D:\Users\Manju\Desktop\hammel Windows 10 Pro Version 1511 (X64) (2016-03-19 02:45:02) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1906051270-1771474172-258770257-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1906051270-1771474172-258770257-503 - Limited - Disabled) Gast (S-1-5-21-1906051270-1771474172-258770257-501 - Limited - Disabled) Manju (S-1-5-21-1906051270-1771474172-258770257-1001 - Administrator - Enabled) => C:\Users\Manju ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 3DMark (HKLM-x32\...\{12d6e0d7-21d5-4755-9da2-70352c6f7558}) (Version: 1.5.915.0 - Futuremark) 3DMark (Version: 1.5.915.0 - Futuremark) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) A Virus Named TOM (HKLM-x32\...\Steam App 207650) (Version: - Misfits Attic) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.5.1.209 - Adobe Systems Incorporated) Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.1.1 - Adobe Systems Incorporated) Alien: Isolation (HKLM-x32\...\Steam App 214490) (Version: - Creative Assembly) Android Studio (HKLM\...\Android Studio) (Version: 1.0 - Google Inc.) ANNO 1404 - Königsedition (HKLM-x32\...\{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}) (Version: 3.10.0000 - Ubisoft) Anno 2070 (HKLM-x32\...\Uplay Install 22) (Version: - Ubisoft) ARK: Survival Evolved (HKLM-x32\...\Steam App 346110) (Version: - Studio Wildcard) Arma 3 (HKLM\...\Steam App 107410) (Version: - Bohemia Interactive) Assassin's Creed Syndicate (HKLM-x32\...\Uplay Install 1875) (Version: 1.12 - Ubisoft) Assassin's Creed Unity (HKLM-x32\...\Uplay Install 720) (Version: - Ubisoft) ASUS Xonar U7 Audio (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F39206632A}) (Version: - ASUSTeK Computer Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battleborn (HKLM\...\Steam App 394230) (Version: - Gearbox Software) Battleborn Open Beta (HKLM\...\Steam App 451070) (Version: - ) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.7.2.45672 - Electronic Arts) Battlefield™ Hardline (HKLM-x32\...\{CB4AC3DA-8CC1-4516-86DA-4078B57DB229}) (Version: 1.4.0.10 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Borderlands: The Pre-Sequel (HKLM-x32\...\Steam App 261640) (Version: - 2K Australia) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden Call of Duty: Black Ops III (HKLM-x32\...\Steam App 311210) (Version: - Treyarch) Call of Duty: Modern Warfare 2 - Multiplayer (HKLM-x32\...\Steam App 10190) (Version: - Infinity Ward) Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cities in Motion 2 (HKLM-x32\...\Steam App 225420) (Version: - Colossal Order Ltd.) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) Crystals of Time (HKLM-x32\...\Steam App 306410) (Version: - RVL Games) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0112 - Disc Soft Ltd) DARK SOULS III (HKLM\...\Steam App 374320) (Version: - FromSoftware, Inc.) DARK SOULS™ II: Scholar of the First Sin (HKLM-x32\...\Steam App 335300) (Version: - FromSoftware, Inc) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Deus Ex: Human Revolution - Director's Cut (HKLM-x32\...\Steam App 238010) (Version: - Eidos Montreal) DiRT Showdown (HKLM\...\Steam App 201700) (Version: - Codemasters Racing Studio) Dishonored (HKLM-x32\...\Steam App 205100) (Version: 1.0 - Bethesda Softworks) Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) Dr. Langeskov, The Tiger, and The Terribly Cursed Emerald: A Whirlwind Heist (HKLM-x32\...\Steam App 409160) (Version: - Crows Crows Crows) EA SPORTS™ FIFA 15 (HKLM-x32\...\{3D4ADA2B-F028-4307-ADF4-6F9AA44725DA}) (Version: 1.8.0.0 - Electronic Arts) Elite: Dangerous (HKLM-x32\...\Steam App 359320) (Version: - Frontier Developments) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Fallout 4 (HKLM-x32\...\Steam App 377160) (Version: - Bethesda Game Studios) Far Cry 4 (HKLM-x32\...\Uplay Install 420) (Version: - Ubisoft) Farming Simulator 15 (HKLM-x32\...\Steam App 313160) (Version: - Giants Software) Game of Thrones (HKLM-x32\...\Steam App 208730) (Version: - Cyanide Studios) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.102 - Google Inc.) Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) H1Z1: King of the Kill (HKLM\...\Steam App 433850) (Version: - Daybreak Game Company) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Hitman: Absolution (HKLM-x32\...\Steam App 203140) (Version: - IO Interactive) Hyper Fighters (HKLM-x32\...\Steam App 267960) (Version: - Team 6 Studios) InputMapper (HKLM-x32\...\{1A44056A-C7D8-4561-BC43-A0AA7D7AAA64}) (Version: 1.5.31.0 - DSDCS) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1204 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.1.0.1058 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{7228EFBA-512B-4EB3-B8A7-E2C331475DF4}) (Version: 5.0.10.2808 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden Intel® Hardware Accelerated Execution Manager (HKLM\...\{ECCB31F5-435D-4F37-A98D-5854D3C62718}) (Version: 1.1.1 - Intel Corporation) IP Camera Adapter (HKLM-x32\...\{6D140BFF-7CC5-4BFE-AD6D-47035FFE5F14}) (Version: 2.0.0.0 - Pavel Khlebovich) Java 8 Update 77 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418077F0}) (Version: 8.0.770.3 - Oracle Corporation) Java 8 Update 77 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation) Java SE Development Kit 8 Update 73 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180730}) (Version: 8.0.730.2 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) LEGO Racers (HKLM-x32\...\LEGO Racers) (Version: - ) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.422 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.422 - LogMeIn, Inc.) Hidden Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) METAL GEAR SOLID V: THE PHANTOM PAIN (HKLM-x32\...\Steam App 287700) (Version: - Konami Digital Entertainment) Metro: Last Light Redux (HKLM-x32\...\Steam App 287390) (Version: - 4A Games) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.1.0.5973 - Mozilla) Mozilla Thunderbird 45.1.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 45.1.0 (x86 de)) (Version: 45.1.0 - Mozilla) MSI Afterburner 4.1.1 (HKLM-x32\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD) MURDERED: SOUL SUSPECT™ (HKLM-x32\...\Steam App 233290) (Version: - Airtight Games) MuseScore 2 (HKLM-x32\...\{D0969A82-E79E-45D9-95D2-B2824880F780}) (Version: 2.0.2 - Werner Schweer and Others) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.61.23 - Black Tree Gaming) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.8 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 368.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.22 - NVIDIA Corporation) NVIDIA GeForce Experience 2.11.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.3.5 - NVIDIA Corporation) NVIDIA Grafiktreiber 368.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.22 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.14 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) One Finger Death Punch (HKLM-x32\...\Steam App 264200) (Version: - Silver Dollar Games) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation) Oracle VM VirtualBox 5.0.16 (HKLM\...\{F2E958A1-9215-4C7D-9A2E-F0740B8CA5B7}) (Version: 5.0.16 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.10.1.1501 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Plants vs Zombies GW2 (HKLM-x32\...\{C4F00C98-13B4-4313-8152-50EE0B04ABE2}) (Version: 1.0.4.0 - Electronic Arts) Psychonauts (HKLM-x32\...\Steam App 3830) (Version: - Double Fine Productions) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.) PVZ Garden Warfare (HKLM-x32\...\{A5AC7D7B-C1D5-4AF9-8829-993DA335BE1B}) (Version: 1.0.3.0 - Electronic Arts) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.1.42.1291 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.1.42.1291 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{00D4DA5D-EA32-4A7C-A855-A7FDC372049B}) (Version: 1.1.42.1291 - Qualcomm Atheros) Qualcomm Atheros Network Manager (Version: 1.1.42.1291 - Qualcomm Atheros) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.) Reign Of Kings (HKLM-x32\...\Steam App 344760) (Version: - Code}{atch) Rise of the Tomb Raider (HKLM-x32\...\Steam App 391220) (Version: - Crystal Dynamics) RivaTuner Statistics Server 6.3.0 (HKLM-x32\...\RTSS) (Version: 6.3.0 - Unwinder) ROCCAT Kone Pure Mouse Driver (HKLM-x32\...\{4905245D-56E7-4176-BE68-962728B803D6}) (Version: - Roccat GmbH) ROCCAT Ryos Keyboard Driver (HKLM-x32\...\{70F3EF93-44F4-446A-90B8-33DAB2799AF1}) (Version: 1.29.0006 - Roccat GmbH) Rocket League (HKLM-x32\...\Steam App 252950) (Version: - Psyonix) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.8 - Rockstar Games) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - Firaxis Games) Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.) Sniper Elite 3 (HKLM-x32\...\Steam App 238090) (Version: - Rebellion) South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment) SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games) Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.) Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 3.0.8.2 - Splashtop Inc.) Spotify (HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Spotify) (Version: 1.0.29.92.g67727800 - Spotify AB) STAR WARS™ Battlefront™ (HKLM-x32\...\{E402D891-4E45-4ce9-B41F-DD35864EF170}) (Version: 1.0.5.13082 - Electronic Arts) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Stardew Valley (HKLM\...\Steam App 413150) (Version: - ConcernedApe) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Super 3-D Noah's Ark (HKLM-x32\...\Steam App 371180) (Version: - Wisdom Tree, Inc.) Survarium (HKLM-x32\...\Steam App 355840) (Version: - Vostok Games) Sweet Home 3D version 5.2 (HKLM\...\Sweet Home 3D_is1) (Version: 5.2 - eTeks) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) The Banner Saga (HKLM-x32\...\Steam App 237990) (Version: - Stoic) The Beginner's Guide (HKLM-x32\...\Steam App 303210) (Version: - Everything Unlimited Ltd.) The Binding of Isaac: Rebirth (HKLM-x32\...\Steam App 250900) (Version: - Nicalis, Inc.) The Culling (HKLM\...\Steam App 437220) (Version: - Xaviant) The Forest (HKLM-x32\...\Steam App 242760) (Version: - Endnight Games Ltd) The Mean Greens - Plastic Warfare (HKLM-x32\...\Steam App 360940) (Version: - Virtual Basement LLC) The Stanley Parable (HKLM-x32\...\Steam App 221910) (Version: - Galactic Cafe) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.21.0.0 - GOG.com) Titan Souls (HKLM-x32\...\Steam App 297130) (Version: - Acid Nerve) Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version: - Ubisoft) Tom Clancy's The Division (HKLM-x32\...\Uplay Install 568) (Version: - Ubisoft) Tom Clancy's The Division Beta (HKLM-x32\...\Uplay Install 2036) (Version: - Ubisoft) Tomb Raider (HKLM-x32\...\Steam App 203160) (Version: - Crystal Dynamics) Trackmania Turbo (HKLM-x32\...\Uplay Install 2070) (Version: - Ubisoft) TrackMania² Stadium (HKLM\...\Steam App 232910) (Version: - Nadeo) Undertale (HKLM-x32\...\Steam App 391540) (Version: - tobyfox) Uplay (HKLM-x32\...\Uplay) (Version: 12.1 - Ubisoft) Vegas Pro 13.0 (64-bit) (HKLM\...\{CE92F061-BFBC-11E3-8FF3-F04DA23A5C58}) (Version: 13.0.290 - Sony) Virtual Audio Cable 4.10 (HKLM\...\Virtual Audio Cable 4.10) (Version: - ) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1906051270-1771474172-258770257-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-0E72D206E73E}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1906051270-1771474172-258770257-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Manju\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1906051270-1771474172-258770257-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {19CBB4A2-D3BD-4ACB-B966-DD0B0B4FB4E5} - System32\Tasks\AsrSP.exe => C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\AsrSP.exe [2014-04-15] () Task: {3163BEA4-CD5D-4455-B613-AA6844A03D66} - System32\Tasks\Dolby Selector => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.) Task: {68215E4A-5C23-4ED3-8A2D-26F7F895CFC0} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {7A583AA9-0424-41D3-83F1-5982193C0DC8} - System32\Tasks\{D181A0C1-4E75-47CC-81D6-B1AEA51AC273} => pcalua.exe -a E:\AR_KeyRun.exe -d E:\ Task: {7B598923-F264-4F0A-9CC3-D7B6677F577A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-07] (Google Inc.) Task: {8A3620EA-A4F9-4412-9FC1-D9F1D17EBDA0} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-05-12] (Microsoft Corporation) Task: {C5B19965-BED1-4E3B-92CE-BB893E0A4664} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {C7257144-03C9-4C9D-B09D-E00E18BFBB93} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-07] (Google Inc.) Task: {D856ED12-FA6C-4971-8545-EEF976F64DAA} - System32\Tasks\AsrKM => C:\Program Files (x86)\ASRock Utility\Key Master\AsrKM.exe [2013-09-11] () Task: {E17D7C8E-8D77-40D9-B845-B6E4174EBCE4} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-david.stiel@t-online.de => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-01-07] (Adobe Systems Incorporated) Task: {EFA59DEF-DC19-4240-96E5-1848E30D4703} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\Manju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\GeForce Experience Stream Client.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gjljknijpnfibppaijefibndmiabonep ShortcutWithArgument: C:\Users\Manju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Google Play Musik.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=fahmaaghhglfmonjliepjlchgpgfmobi ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2015-11-07 02:07 - 2013-07-25 16:04 - 00454656 _____ () C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe 2016-02-28 02:25 - 2016-05-02 07:54 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2015-12-25 15:14 - 2016-05-02 07:55 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-04-01 17:51 - 2016-05-02 07:54 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2016-02-28 02:25 - 2016-05-02 07:55 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2015-11-07 18:42 - 2015-11-29 14:34 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2016-04-01 17:51 - 2016-05-02 07:55 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2016-04-01 17:51 - 2016-05-02 07:55 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2016-04-01 17:51 - 2016-05-02 07:55 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2016-01-17 00:58 - 2016-05-02 07:55 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2016-04-13 17:57 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-04-13 17:57 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-02-14 11:27 - 2016-01-22 14:55 - 00553136 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2015-04-15 22:13 - 2015-04-15 22:13 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2016-04-19 17:32 - 2016-04-19 17:32 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2016-03-19 04:37 - 2016-03-19 04:37 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-05-11 20:42 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-05-11 20:43 - 2016-04-23 06:02 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-05-11 20:43 - 2016-04-23 05:58 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-05-11 20:43 - 2016-04-23 05:58 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-05-11 20:43 - 2016-04-23 06:01 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-04-01 17:51 - 2016-05-02 07:54 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2016-04-01 17:51 - 2016-05-02 07:54 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll 2016-04-19 17:32 - 2016-04-19 17:32 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-04-19 17:32 - 2016-04-19 17:32 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2015-11-07 02:17 - 2016-05-02 08:02 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2014-03-20 12:43 - 2014-03-20 12:43 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-04-17 04:27 - 2014-04-17 04:27 - 00087552 _____ () C:\Program Files (x86)\IP Camera Adapter\IPCameraAdapter.dll 2016-05-13 15:56 - 2016-05-11 13:48 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libglesv2.dll 2016-05-13 15:56 - 2016-05-11 13:48 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-31 00:42 - 2015-07-31 00:39 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\Control Panel\Desktop\\Wallpaper -> D:\Users\Manju\Desktop\ws_Norway_2560x1440.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\...\StartupApproved\Run: => "CsrHCRPServer" HKLM\...\StartupApproved\Run: => "CsrAudioguiCtrl" HKLM\...\StartupApproved\Run: => "CsrSyncMLServer" HKLM\...\StartupApproved\Run: => "CSRHarmonySkypePlugin" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "GalaxyClient" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "EADM" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "Steam" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{3C90EFF0-8E03-44FE-8574-07D7F6115E08}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\Orcs Must Die! Unchained\Binaries\Win64\SpitfireGame.exe FirewallRules: [{1D466387-CD36-4E18-B87C-A1630F55E85A}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\Orcs Must Die! Unchained\Dashboard\Bin\SpitfireDashboard.exe FirewallRules: [{061E7DAF-C1A5-4D7F-AAE6-25B46E09718D}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\Orcs Must Die! Unchained\OMDU.exe FirewallRules: [{92BE6A94-4A11-4097-987B-702A2D11172B}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [{5A888EA8-6198-46D6-9C5C-337EBF8CFF2E}] => (Block) D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe FirewallRules: [{324618A9-A5AC-4D8C-8C1B-A66477061956}] => (Block) D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe FirewallRules: [UDP Query User{3B0F329F-4547-4495-9211-8BDED11F9E23}D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe] => (Allow) D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe FirewallRules: [TCP Query User{6A45FE93-4A6C-48B0-BBE8-AABE5489041E}D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe] => (Allow) D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe FirewallRules: [{780BDB54-8AC9-42E5-8FCE-FA27BA8FBE3C}] => (Block) C:\windows\syswow64\dplaysvr.exe FirewallRules: [{49E41104-2D1C-479B-8D2F-1AB6108AFD41}] => (Block) C:\windows\syswow64\dplaysvr.exe FirewallRules: [UDP Query User{E8723480-E55C-47E3-808A-DE2BEF20ACF7}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [TCP Query User{4D72BB11-3232-4CBB-A1AC-A9AB35AD4E30}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [{75B2B020-978E-4F73-B385-C0DAC6D5BC49}] => (Block) D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe FirewallRules: [{FE0C7DEB-FB64-45F8-B39B-4DE002C7DC87}] => (Block) D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe FirewallRules: [UDP Query User{E9219D28-0058-4F54-9515-ACD666382CD3}D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe] => (Allow) D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe FirewallRules: [TCP Query User{2EBA6E4E-274E-48DC-91E2-C6D30A16B141}D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe] => (Allow) D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe FirewallRules: [{036B3CE9-75E4-490E-869D-7A736724F97C}] => (Block) C:\program files\java\jdk1.8.0_73\bin\java.exe FirewallRules: [{0684C8B0-FED8-4F57-A149-4EB040D744DB}] => (Block) C:\program files\java\jdk1.8.0_73\bin\java.exe FirewallRules: [{B453BF0F-11AF-428E-8C5E-1D319B0BF50C}] => (Block) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [{84CB6595-DC9C-4C59-BA95-EB077A19DFBF}] => (Block) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [UDP Query User{601978E8-A9AB-42E7-9475-624B8D8479BF}C:\program files\java\jdk1.8.0_73\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_73\bin\java.exe FirewallRules: [TCP Query User{AF6AE225-F88F-42C0-8A45-3D371657B169}C:\program files\java\jdk1.8.0_73\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_73\bin\java.exe FirewallRules: [UDP Query User{D1389CCB-485B-409C-AB08-EB326348F326}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [TCP Query User{1C5B36FD-AF49-4FAE-AAC7-03852EEE9270}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [{F3E63183-4D49-4829-BB6B-796365E6D2F2}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{52840EB9-0CF6-402C-88B5-8AF7BAFFFB1D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [UDP Query User{58CB2B92-E90F-41DB-8ADF-58E52FA69CEB}F:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe FirewallRules: [TCP Query User{F72E7C10-6D49-4990-8AAE-0D33964817C9}F:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe FirewallRules: [{8B389583-FBD2-46A7-BFBB-38F89ECC5D34}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\TheCulling\TheCulling_Launcher.exe FirewallRules: [{50323A14-C194-4DC5-812A-9E83E240DC09}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\TheCulling\TheCulling_Launcher.exe FirewallRules: [{1B85D517-B59E-4AC6-8A3F-921CF5A26C5A}] => (Allow) F:\Program Files (x86)\Origin Games\BFH\BFHWebHelper.exe FirewallRules: [{B4CD5204-F350-44B0-A28F-F717C393EC5F}] => (Allow) F:\Program Files (x86)\Origin Games\BFH\BFHWebHelper.exe FirewallRules: [{A27F04B4-04DC-47B2-B395-B66C87738341}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's The Division\TheDivision.exe FirewallRules: [{18A21E7B-4248-4E04-89B3-72013C52CA98}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{3FDCFEA6-8AB7-421E-BEDE-29CF0D3C2249}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{DD4764D8-5607-4DE2-916A-09E3EEB51B19}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{EDB0C366-8E33-4798-9DBB-51E818FAE13D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{9A831F0F-1BAF-494F-8437-B9BC8748A00A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{210B7662-550A-454C-8EBC-818D714A8B41}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{2BC0C070-1025-48D8-95B3-55BB95E42887}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dr Langeskov The Tiger and The Terribly Cursed Emerald A Whirlwind Heist\DrLangeskov.exe FirewallRules: [{171755A4-C547-4A57-AE20-AD3CE71E9E34}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dr Langeskov The Tiger and The Terribly Cursed Emerald A Whirlwind Heist\DrLangeskov.exe FirewallRules: [{45C61530-49A0-415A-BE91-7B10EF629FBA}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Rise of the Tomb Raider\ROTTR.exe FirewallRules: [{D4B53B83-0DE5-428B-A639-3A42DB0BAA47}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Rise of the Tomb Raider\ROTTR.exe FirewallRules: [{19BD4715-893B-464D-B920-3D13FE652BC6}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Hyper Fighters\Game.exe FirewallRules: [{945B4FFC-0C3E-4087-A44E-40363AEDDEE6}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Hyper Fighters\Game.exe FirewallRules: [{70BAC34F-EDB7-4299-AE21-A19C0F6DD7B3}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Crystals of Time\Crystals of Time.exe FirewallRules: [{A4D7E53C-339A-493C-A0DE-ABCB6DFBD472}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Crystals of Time\Crystals of Time.exe FirewallRules: [{35D9F060-F787-4780-9765-6674CB5326A8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Cities in Motion 2\CIM2.exe FirewallRules: [{BDFD94C7-AD96-4ECC-B6A9-40615EFFB0C0}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Cities in Motion 2\CIM2.exe FirewallRules: [{3C0F7E2D-F2E6-4344-B260-8551F0DCE9A9}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\A Virus Named TOM\AVNT.exe FirewallRules: [{75999081-4B15-4EA1-9D8B-19EBE345D633}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\A Virus Named TOM\AVNT.exe FirewallRules: [{2E443887-A2D3-4B45-A75E-4CB463125C97}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe FirewallRules: [{E0EC5389-6B8B-4C62-9814-55D02BBC0902}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe FirewallRules: [{838CD2E4-062F-49FD-A79D-2B63B426A6CE}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{FFA50430-2DD6-4F69-A1FE-2DDD9192EA67}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{B740DA22-42F3-4775-BEE8-B6A9F4704848}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Psychonauts\Psychonauts.exe FirewallRules: [{A4F2CCCB-0359-4C3B-9ADD-6A8A6298AFCA}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Psychonauts\Psychonauts.exe FirewallRules: [{090F51D8-FAB2-4451-B895-2D6C17CDE64C}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Elite Dangerous\EDLaunch.exe FirewallRules: [{5590F03B-A339-4B93-BFFD-DD907953ED1B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Elite Dangerous\EDLaunch.exe FirewallRules: [{007EAE7F-D6EB-401D-AB88-477342EAD0E4}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare\PVZ.Main_Win64_Retail.exe FirewallRules: [{4E8C08CE-7C11-4AD2-9FD4-193DD42F6AAF}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare\PVZ.Main_Win64_Retail.exe FirewallRules: [{A101DDC5-40EB-4CFF-A73C-B217089EC147}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Alien Isolation\AI.exe FirewallRules: [{C3B61434-4036-42D7-998E-54EA69AB7043}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Alien Isolation\AI.exe FirewallRules: [{A90E7774-886D-4CC5-B42C-DBF18B90B47F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Beginners Guide\beginnersguide.exe FirewallRules: [{475BE081-B120-4076-8875-C7DC5ABD646A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Beginners Guide\beginnersguide.exe FirewallRules: [{DA416742-1950-40F1-9410-12E6448639AC}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Undertale\UNDERTALE.exe FirewallRules: [{9679E6B8-C29F-4BA9-AE19-E91D01332735}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Undertale\UNDERTALE.exe FirewallRules: [{F06BF579-BAE7-4F42-B538-9490D4CA9228}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{F1E63541-386C-459A-8010-C4B3570D46AD}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{3AB03EFA-D1BA-49E4-8D34-6F452D6F7E99}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{CBBE630C-FA64-4BB6-BBF7-4476C768CA42}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{744D65C5-034A-43FD-A2C7-6CE464F68E3A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{4BC24E26-56F9-4285-B63A-A7192FA7722B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{20827E84-4193-4502-B975-68B31CA4BD41}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\game\binaries\x86\survarium.exe FirewallRules: [{EFF8C965-1FFB-49E0-B45C-19BBD05B86A8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\game\binaries\x86\survarium.exe FirewallRules: [{7E06B994-4AA1-457B-86BC-50EC7399F150}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_updater.exe FirewallRules: [{DB5B65D1-FCE7-444E-A800-1340AFF5401A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_updater.exe FirewallRules: [{8FE33849-7134-4F76-99CA-DC66D190CEDE}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_updater.exe FirewallRules: [{EE45F628-2FB6-456D-AFBA-E7A9E61AC282}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_updater.exe FirewallRules: [{8C4AE2B3-E98F-41DD-B1EC-508D11B903A8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_launcher.exe FirewallRules: [{F10D96E3-75F0-495D-8567-24A63B459F38}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForest.exe FirewallRules: [{FBEB0BCA-096A-4C21-98B7-2CF47AF18744}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForest.exe FirewallRules: [{6A7FE8EA-DA2C-4150-B955-3FF72B7B124E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Mean Greens - Plastic Warfare\TheMeanGreens\Binaries\Win64\TheMeanGreens-Win64-Shipping.exe FirewallRules: [{3450E849-2E0B-45ED-99B3-CE9D7BEB2F88}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Mean Greens - Plastic Warfare\TheMeanGreens\Binaries\Win64\TheMeanGreens-Win64-Shipping.exe FirewallRules: [{652EA373-212F-4029-B56F-4BD62F45CE4E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe FirewallRules: [{F533214A-FEE4-4AF7-91FE-ACB8CD751307}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe FirewallRules: [{3AA1135F-AA49-4E67-AD4D-EC405C50AE8F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Reign Of Kings\Reign of Kings.exe FirewallRules: [{17BD5ED4-518C-4515-8CA0-F481C70549F9}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Reign Of Kings\Reign of Kings.exe FirewallRules: [{AF1BB054-A1A2-437B-8235-C4051F7CE08C}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe FirewallRules: [{F0178BB6-48BB-4AB0-9D87-F21B120C2E2B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe FirewallRules: [{E2C092CA-9B6C-40A7-A41C-C99AB34522F4}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe FirewallRules: [{0D166841-C43E-492C-B215-904EE95AAB25}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe FirewallRules: [{F907BC11-3F66-4AE7-9E0C-A4D02260200F}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{36E68249-281C-4377-9A13-4AC9AB2824EE}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{0ECA9805-B718-4955-A9E8-844F6C9DCE69}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{17EC919A-0FA5-44CB-A702-8EED4FDB3DB1}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{36418998-E708-4005-B1E6-D3E2035C1D84}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe FirewallRules: [{F58BC699-5FB0-4E6C-B81E-3F7F316D2528}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe FirewallRules: [{93465E08-A922-4781-AAE0-1E15BF04B98D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{C0304AF8-976C-48A0-8518-36BAEE645347}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{8385A206-2B05-4766-A163-13F0212D96AC}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Super 3-D Noah's Ark\noah3d.exe FirewallRules: [{8A258FA6-5790-4D2C-AC09-BD32DE4AA263}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Super 3-D Noah's Ark\noah3d.exe FirewallRules: [{94F5D089-45BF-48C6-9FB9-A7C9B42CAFD4}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{E53B3281-6C8F-4B22-B8A6-44726E22D32B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{C370D024-9016-4848-866F-E5ACAA00BBA6}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{743691EE-6AF3-4AA3-928D-A7F135584358}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{CF813E8D-1037-440F-AACB-79379C998C85}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{08AC72D2-BB4B-49CE-AA49-66BA196C27FF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{364B8CF9-B9DD-4C6A-9FCB-93813DD7BC1B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Stanley Parable\stanley.exe FirewallRules: [{C6C4FFD0-A66A-4F9A-9D7E-B3EFC58AE389}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Stanley Parable\stanley.exe FirewallRules: [{29E1B492-4044-4B58-B88C-6A11138776DD}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Game of Thrones\Binaries\Win32\ShippingPC-AGOTGame.exe FirewallRules: [{4D5212A5-B5E0-4877-8BC8-217537153E9D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Game of Thrones\Binaries\Win32\ShippingPC-AGOTGame.exe FirewallRules: [{1C3A7854-B97E-4476-8F14-CAB76672E09A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{26F3EC11-A978-4A71-B79B-D11E0BA6C3D8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{D5501BD4-9241-46EB-B3B2-9ABC5A6A6743}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Tomb Raider\TombRaider.exe FirewallRules: [{BE5281FD-433F-4C70-9A74-2BA0CC7BE7A2}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Tomb Raider\TombRaider.exe FirewallRules: [{029CADB9-4EDD-410A-B7F5-6DD4675D9FA4}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Titan Souls\TITAN.exe FirewallRules: [{0D67FE43-210B-46A0-BB52-4EC14A1BD751}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Titan Souls\TITAN.exe FirewallRules: [{814D7E78-A9DE-4F9B-BA0B-5D3AD673961D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\ChivLauncher.exe FirewallRules: [{658A91C8-D286-4A7E-8949-25F449FAE776}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\ChivLauncher.exe FirewallRules: [{EBC16B50-046C-47AD-84C9-02D8800F064C}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe FirewallRules: [{BB61A339-34B5-499F-89C5-F00468212AC0}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe FirewallRules: [{A62825F8-10E9-49E0-B6F2-210A784A8587}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe FirewallRules: [{6C604F05-EDB5-47BE-95A3-CBC98FC67856}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe FirewallRules: [{5E9144AC-547E-4A72-BDEE-F0453393B08A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{0A422458-CA16-4121-8838-6D74A7989430}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{A570EE0C-E524-47D5-A496-63C611ED453F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{554F1C53-795B-4ACD-8813-0BAA0F4909C8}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{A9802445-76F6-4FD6-9044-E65D7D2DE4EC}] => (Block) F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe FirewallRules: [{186B13E8-91F8-459A-BB7B-15C000A36CFD}] => (Block) F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe FirewallRules: [UDP Query User{36F9BB3D-13B6-4674-A1BC-22589A018C6C}F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe FirewallRules: [TCP Query User{4B6F32BA-8D19-4133-AAF2-30557F9EDED3}F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe FirewallRules: [{5B895A57-D5CA-47B3-A5CA-EF65932CF2D2}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe FirewallRules: [{C46DCB7A-B9EF-4D57-8563-466E07FD9C2C}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe FirewallRules: [{9A0639E9-2FAC-4A21-90AA-7F48C357E47F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{88CB1A78-849A-439C-86E8-219AC82E1CF1}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{FE437640-B646-4CE2-9486-D3C060CF1A19}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{7C13880C-E49A-4AD9-BDA8-CD461A85D0F8}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [UDP Query User{E51995AB-6BF7-49B1-9AA2-B84CE7DE7F5C}F:\program files (x86)\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe] => (Allow) F:\program files (x86)\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{B62FE74C-76AB-4346-BE40-675C2B400AB8}F:\program files (x86)\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe] => (Allow) F:\program files (x86)\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe FirewallRules: [{B8E8467F-C4B6-4982-A41E-85DCDA661CE3}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{099BD97F-7FE3-41DC-91E2-19A332ED07E8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{0D37ED60-46CF-49E5-80E6-C29461924136}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{EB44B25C-AC1F-4EA7-8190-E2B96C5C9C3F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{FF62D608-C673-472B-B009-46BA1961A087}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Unity\ACU.exe FirewallRules: [{C6CE6C7B-4F0C-40E2-AE20-F570AAF306B1}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Unity\ACU.exe FirewallRules: [{6C1732E5-48BD-43A8-AADB-6E3DA385760A}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Syndicate\ACS.exe FirewallRules: [{6CBD96DC-C298-4B71-83C1-9840EEFF8118}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{DC25CEF3-6993-4E12-92E1-EF1B927293B8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{F517306C-4347-4D2A-AC0F-C8C0B4377261}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{570AD0C8-721F-4BF8-9C67-9C3D00C4FA8F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{B4FF6DEB-E7A0-4E09-A18D-19468DD492EA}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{6B00B379-99D5-495B-9FA5-B070B3DFFC52}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{705BC38A-3644-4DB4-8F8E-6BBF83D82D6B}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe FirewallRules: [{6A121E39-A2B5-4045-935A-669848D221DC}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe FirewallRules: [{0B65F213-3BB3-4821-B9B8-44ADCFD669B6}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe FirewallRules: [{96900227-9E95-4C92-8FA1-C9AAA2201F64}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe FirewallRules: [UDP Query User{D649DB51-FF9B-4B17-8DC2-EC1B87B70E98}C:\users\manju\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\manju\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{5BBF1208-46A4-4F2D-8137-17AF6DC9725B}C:\users\manju\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\manju\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{255BF94D-D832-4FAC-9CFC-5B3A505352EF}F:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) F:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe FirewallRules: [TCP Query User{5A5B7579-BA52-4F38-AB95-A0E8A6A9E199}F:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) F:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe FirewallRules: [{C9F17517-F36E-41D0-A638-5E7EE795A768}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\Benchmark.exe FirewallRules: [{7D52BC6F-8FB0-4698-A1FE-8570EE70883D}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\Benchmark.exe FirewallRules: [{A412DF6A-BD52-4354-B0C7-D60DD0445320}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\AddonWeb.exe FirewallRules: [{7FCA4201-92CA-437B-AD86-3C00FA2182EE}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\AddonWeb.exe FirewallRules: [{36FB968D-CBE8-4E83-B6C2-997F3427CF08}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\Anno4Web.exe FirewallRules: [{601A4000-D74E-4183-A8B1-4FE6E5FBEC19}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\Anno4Web.exe FirewallRules: [{200284F8-C014-41EC-9CBC-B83424F3A6A6}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\Addon.exe FirewallRules: [{5A89227D-EABF-43B1-86CD-1DE3AEFBA503}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\Addon.exe FirewallRules: [{D2200968-7215-4707-9A82-C225757F7825}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\Anno4.exe FirewallRules: [{2F282B48-C68D-4C5A-A737-E0E32D65691A}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\Anno4.exe FirewallRules: [UDP Query User{D91E9441-644B-43B1-A100-F25A1B9EB39F}F:\program files (x86)\steam\steamapps\common\fallout 4\fallout4.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\fallout 4\fallout4.exe FirewallRules: [TCP Query User{71B7F994-766D-4320-9080-C8DE8BB7C0C0}F:\program files (x86)\steam\steamapps\common\fallout 4\fallout4.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\fallout 4\fallout4.exe FirewallRules: [{1C6F154B-1DE1-406E-ABE0-D40F90F02146}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{F321A0D1-C848-4183-AC72-774DE441B3AF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{FDBA679D-CAFA-40EA-9ADB-5830D67FA3CF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [UDP Query User{01C5FED2-562D-4807-8F7C-F463DDEBEF31}F:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) F:\program files (x86)\origin games\battlefield 4\bf4.exe FirewallRules: [TCP Query User{8E4932E0-4883-43BF-9002-D4B662FE8566}F:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) F:\program files (x86)\origin games\battlefield 4\bf4.exe FirewallRules: [{BD4067D9-3734-4DBA-A37F-43DDD6256A76}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{45F87A48-A68E-4AAF-800F-2D25DA7B3B28}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{6C5E7F68-8A9F-4BC4-BF9D-50E86063C074}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{372716F6-8313-4B6C-9AB4-F594671EBD33}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{554B72D7-3844-4ABF-A51E-D8B18DD5F15C}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{928A8E07-D02C-470F-98FF-E858BC14C5F5}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{F57C3991-1317-4F6B-8CB3-ADBCAE5282AF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Sniper Elite 3\Launcher\Sniper3Launcher.exe FirewallRules: [{BF727255-28AE-4164-9111-07531D4899AF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Sniper Elite 3\Launcher\Sniper3Launcher.exe FirewallRules: [{C4D3DD93-5F2B-4894-A2DE-9758064C4853}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Metro Last Light Redux\metro.exe FirewallRules: [{E9EC8678-252D-4C36-83D6-53C1FBCD1A25}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Metro Last Light Redux\metro.exe FirewallRules: [{1D2ABD60-6597-4A27-9622-25A95CD5B494}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{F694A2F6-0F25-41E8-BF05-3B4010D3765B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{45E81DFA-8CAA-43AB-9A15-3CDD43F7F1EC}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Hitman Absolution\HMA.exe FirewallRules: [{A2EF2561-9DB1-4BDD-BE33-D87A868711B3}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Hitman Absolution\HMA.exe FirewallRules: [{F22A319E-2410-45A4-A78F-4E70758BE648}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{EE8A7FB3-3FF7-42FF-B23E-46FD405E8127}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{F821CCE8-4055-4FBB-B572-C06900AEE871}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{DE602223-F5A6-46CB-AFCD-CCAB47F1F976}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{B44E94B8-C0CD-484A-80AB-9EE47AEDAB44}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{74880F94-E3C0-413D-B8A6-24DEE73457C5}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{22ED603D-56D4-421D-B03C-C757B852F8C3}] => (Allow) F:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{1BB9F160-132F-4F6D-ACB7-56F5DF064B8B}] => (Allow) F:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{3CD957BC-0ADA-4520-8BDC-B9EA922AC26D}] => (Allow) F:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{4B5F8BBE-F50C-4FF9-85CB-3321E6B62D03}] => (Allow) F:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{0D2E71F6-E4F0-4A88-AE89-3D94C5F93B35}] => (Allow) D:\Spiele\Steam\bin\steamwebhelper.exe FirewallRules: [{F7BC8775-082D-4019-8397-9051D71DEC0C}] => (Allow) D:\Spiele\Steam\bin\steamwebhelper.exe FirewallRules: [{35BAB6B6-B9B6-421F-ADC4-77A1C4F65861}] => (Allow) D:\Spiele\Steam\Steam.exe FirewallRules: [{CDF77893-4A79-426B-9858-9AF23333CB02}] => (Allow) D:\Spiele\Steam\Steam.exe FirewallRules: [{E025CAF6-1CAC-4843-B3C4-4DAC19725B8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E6346382-9EBC-43A0-9D9F-E49232B47EC7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E65A3F25-1217-4A21-B075-75525A18E97C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{202AE731-026A-4F0F-8D59-D6AB27547FC2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{D68F9378-F77F-4D69-A121-A873FB90D725}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{DF1C1802-7974-4A12-9154-70AAD6AEF63B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{9410168B-6750-4EFF-B1E0-1F76D3B062FA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [TCP Query User{1602E783-889E-4006-9979-EDB8F335DFA8}F:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) F:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{1EB4189C-7498-410F-A8FF-3B3C7735A6F5}F:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) F:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [{F2779016-2C24-4DBB-BE4E-E4AA9C135CCF}] => (Block) F:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [{D046A3CE-0C05-4DA7-9436-E6E374224E1C}] => (Block) F:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{26980ECA-CAA3-47DD-B5AA-9A6EC4274CA7}D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe] => (Allow) D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe FirewallRules: [UDP Query User{E795839A-4DD3-441A-8E95-24AA38CA87CA}D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe] => (Allow) D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe FirewallRules: [{224DAF00-D72C-43DC-912F-6BB8DBA2C1D6}] => (Block) D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe FirewallRules: [{2201F378-0885-42C0-B88F-BD56BE88DC73}] => (Block) D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe FirewallRules: [{0357CE78-59E8-40EC-8F2E-68EBC84381F5}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\DiRT Showdown\showdown.exe FirewallRules: [{CE27647C-0B1F-4AF6-84DC-5EC8C0463ED0}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\DiRT Showdown\showdown.exe FirewallRules: [{FAEC1E17-B63F-4856-B8AD-C13B1B3BE668}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [{F1B8967B-1497-4C05-8F39-49456C6CBAE3}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [TCP Query User{40CD54D5-9D39-4EBD-A951-B7CFDF685CDA}D:\users\manju\desktop\factorio - cracked-hoster.com\factorio - cracked-hoster.com\bin\win32\factorio.exe] => (Allow) D:\users\manju\desktop\factorio - cracked-hoster.com\factorio - cracked-hoster.com\bin\win32\factorio.exe FirewallRules: [UDP Query User{E13FA047-3F47-4655-B56D-1686D5104C8C}D:\users\manju\desktop\factorio - cracked-hoster.com\factorio - cracked-hoster.com\bin\win32\factorio.exe] => (Allow) D:\users\manju\desktop\factorio - cracked-hoster.com\factorio - cracked-hoster.com\bin\win32\factorio.exe FirewallRules: [TCP Query User{A1C0B63A-3F60-459A-BBA4-4A62B9B8C90D}F:\program files (x86)\origin games\bfh\bfh.exe] => (Allow) F:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [UDP Query User{7EE08D35-89D5-4E3B-9B2F-3ECB958384EE}F:\program files (x86)\origin games\bfh\bfh.exe] => (Allow) F:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{F35F054F-83EC-4D3B-AD9A-2F1CF9D75AE4}] => (Block) F:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{C80741A0-113F-4006-9920-519835AFAFCE}] => (Block) F:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{BE333B89-9FC0-4DC6-A813-00955ECA41CA}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe FirewallRules: [{BDA9C5A0-5324-4749-810A-87F63E0900A4}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe FirewallRules: [{FB516AD9-8259-446C-98F2-27B06653D53F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe FirewallRules: [{3550AC2D-2BC0-4305-B195-0D76E8024F15}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe FirewallRules: [{A87D0583-F259-4401-A011-5E6ACC4B0984}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe FirewallRules: [{9CF4DB5B-0B17-4C53-8C70-00E6740B9D76}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe FirewallRules: [{2F320BBF-6C2B-476D-A329-A63DEFA3E998}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{50FE6AB0-390D-4BC1-935E-F7FEA740A32F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{52FD7FA8-FD65-44B7-9780-D595FD674455}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\tbs\win32\The Banner Saga.exe FirewallRules: [{61B311B8-C7D2-43D2-9C1A-DEDE5E4E837E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\tbs\win32\The Banner Saga.exe FirewallRules: [{073B8087-279F-4BCF-952F-ABE1ECCC59BA}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Battleborn Open Beta\Binaries\Win64\Battleborn.exe FirewallRules: [{8536412E-8298-46F6-86CD-F920FEB2259E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Battleborn Open Beta\Binaries\Win64\Battleborn.exe FirewallRules: [TCP Query User{A7DFE4DF-D949-4B09-B821-26D9CAB46701}F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [UDP Query User{9011C41D-BEB7-443B-AF03-4FD00C3EB21C}F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{47AF2C5C-F946-4F90-9EE5-6A85D1E0BDB8}] => (Block) F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{5895D70A-4CD3-4853-BFCB-A6AA1EC12C72}] => (Block) F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{6AED48A8-3DCD-4BBD-BD25-CB1B5EA9894D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Battleborn\Binaries\Win64\Battleborn.exe FirewallRules: [{2DE597D8-3EAE-4D3A-8320-454F252C3993}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Battleborn\Binaries\Win64\Battleborn.exe FirewallRules: [TCP Query User{C0A8178A-D6AB-4BFB-96E8-B41006CBF69B}F:\program files (x86)\overwatch\overwatch.exe] => (Allow) F:\program files (x86)\overwatch\overwatch.exe FirewallRules: [UDP Query User{CF2E8246-BDCF-44FE-B4F4-4C9DE9443C31}F:\program files (x86)\overwatch\overwatch.exe] => (Allow) F:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{85EF2B50-7F09-41A6-A019-C16B2B429138}] => (Block) F:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{38C9F9FA-CDF2-42EE-9918-24D2961144AF}] => (Block) F:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{E3FB4FF0-48EF-459A-910E-D312706A1AD7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{2565F2BA-D987-46E0-A177-FDDAA9253B38}C:\users\manju\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\manju\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{7BD3B878-8D47-40AB-ADDE-EF3087FFAB62}C:\users\manju\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\manju\appdata\roaming\spotify\spotify.exe FirewallRules: [{F738AF88-154E-4C3E-AB64-7437B66952CC}] => (Block) C:\users\manju\appdata\roaming\spotify\spotify.exe FirewallRules: [{F7ABCA20-919A-4619-B9B0-10A1E85675D1}] => (Block) C:\users\manju\appdata\roaming\spotify\spotify.exe FirewallRules: [{21D1218D-6B58-494D-8A7F-A78DE9844DE4}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe FirewallRules: [{42DE016A-2FEC-4BA0-9EAD-4F9A6E1E4390}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe FirewallRules: [{D41A1512-AEF7-49A2-92B8-150BC0BAFFA2}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe FirewallRules: [{3A389627-F79B-48E2-9A70-E0E4517A0808}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare 2\GW2.Main_Win64_Retail.exe FirewallRules: [{27A12578-BEB1-4448-8147-15F24E3394DF}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare 2\GW2.Main_Win64_Retail.exe FirewallRules: [{0868F378-11C6-450D-9709-F3FC67C44F01}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare 2\GW2.Trial_Win64_Retail.exe FirewallRules: [{168A28F6-E4FC-433C-ADEB-28E8339CDD65}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare 2\GW2.Trial_Win64_Retail.exe FirewallRules: [{E191CD5D-6FC6-4DA6-B538-1A9C5BBA0C4E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{752EE4C8-0229-4ACC-B983-C7F48B6307A8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{B4C7D704-2466-4F90-920E-D23D48038AE7}] => (Allow) F:\Program Files (x86)\Origin Games\FIFA 15\fifasetup\fifaconfig.exe FirewallRules: [{88A35CB5-AE4E-43D9-B50D-75B3C4D5DB9B}] => (Allow) F:\Program Files (x86)\Origin Games\FIFA 15\fifasetup\fifaconfig.exe ==================== Wiederherstellungspunkte ========================= 21-05-2016 02:00:55 Geplanter Prüfpunkt 23-05-2016 21:53:17 Installed Splashtop Streamer. 29-05-2016 18:11:39 Removed CSR Harmony Wireless Software Stack. 31-05-2016 20:54:14 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 06-06-2016 19:45:48 JRT Pre-Junkware Removal ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (06/06/2016 08:24:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NvStreamUserAgent.exe, Version: 7.1.2071.1338, Zeitstempel: 0x5726e1d3 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.306, Zeitstempel: 0x571af2eb Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000002e909 ID des fehlerhaften Prozesses: 0x910 Startzeit der fehlerhaften Anwendung: 0xNvStreamUserAgent.exe0 Pfad der fehlerhaften Anwendung: NvStreamUserAgent.exe1 Pfad des fehlerhaften Moduls: NvStreamUserAgent.exe2 Berichtskennung: NvStreamUserAgent.exe3 Vollständiger Name des fehlerhaften Pakets: NvStreamUserAgent.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NvStreamUserAgent.exe5 Error: (06/06/2016 07:45:49 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (06/02/2016 09:19:56 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (05/31/2016 09:46:33 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: MANJU) Description: Das Paket „Microsoft.Windows.ShellExperienceHost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy+App“ wurde beendet, da das Anhalten zu lange dauerte. Error: (05/31/2016 08:54:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (05/29/2016 06:11:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (05/26/2016 08:43:34 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (05/26/2016 12:30:32 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm explorer.exe, Version 10.0.10586.306 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 160c Startzeit: 01d1b737ca32eaa5 Beendigungszeit: 0 Anwendungspfad: C:\Windows\explorer.exe Berichts-ID: d2daa1a2-232c-11e6-8db1-d05099717cf0 Vollständiger Name des fehlerhaften Pakets: Auf das fehlerhafte Paket bezogene Anwendungs-ID: Error: (05/26/2016 01:40:59 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Steam.exe, Version 3.42.16.13 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 2228 Startzeit: 01d1b6d654c96a88 Beendigungszeit: 4294967295 Anwendungspfad: F:\Program Files (x86)\Steam\Steam.exe Berichts-ID: 218cfc3e-22d2-11e6-8db1-d05099717cf0 Vollständiger Name des fehlerhaften Pakets: Auf das fehlerhafte Paket bezogene Anwendungs-ID: Error: (05/25/2016 09:25:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Battle.net.exe, Version: 1.4.1.7348, Zeitstempel: 0x573cdf89 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.306, Zeitstempel: 0x571afb7f Ausnahmecode: 0xc0000374 Fehleroffset: 0x000dc7c9 ID des fehlerhaften Prozesses: 0x2130 Startzeit der fehlerhaften Anwendung: 0xBattle.net.exe0 Pfad der fehlerhaften Anwendung: Battle.net.exe1 Pfad des fehlerhaften Moduls: Battle.net.exe2 Berichtskennung: Battle.net.exe3 Vollständiger Name des fehlerhaften Pakets: Battle.net.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Battle.net.exe5 Systemfehler: ============= Error: (06/06/2016 08:24:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (06/06/2016 07:43:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenzugriff_8cee45865" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/06/2016 07:43:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenspeicher _8cee45865" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/06/2016 07:43:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Kontaktdaten_8cee45865" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/06/2016 07:43:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Synchronisierungshost_8cee45865" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/06/2016 07:43:20 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (06/06/2016 07:43:07 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Search" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: %%1056 Error: (06/06/2016 07:42:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/06/2016 07:42:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Adobe Genuine Software Integrity Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (06/06/2016 07:42:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA Stereoscopic 3D Driver Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. CodeIntegrity: =================================== Date: 2016-06-06 19:57:40.398 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 19:57:40.372 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-05-29 19:57:17.479 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-28 21:09:06.480 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-05-28 21:09:06.419 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-05-28 21:09:05.908 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-05-28 21:09:05.848 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-05-28 21:09:05.395 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-05-28 21:09:05.335 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-05-28 21:09:04.808 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz Prozentuale Nutzung des RAM: 15% Installierter physikalischer RAM: 24527.21 MB Verfügbarer physikalischer RAM: 20651.51 MB Summe virtueller Speicher: 28111.21 MB Verfügbarer virtueller Speicher: 23582.49 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:232.4 GB) (Free:63.27 GB) NTFS Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:778.3 GB) NTFS Drive f: (Volume) (Fixed) (Total:1863.01 GB) (Free:710.79 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E5BB659A) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: A770C475) Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: B58054B7) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.4 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ Geändert von Manju1 (06.06.2016 um 19:52 Uhr) |
06.06.2016, 19:47 | #2 |
| Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel! Frst:
__________________Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-06-2016 02 durchgeführt von Manju (Administrator) auf MANJU (06-06-2016 20:35:10) Gestartet von D:\Users\Manju\Desktop\hammel Geladene Profile: Manju (Verfügbare Profile: Manju) Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe () C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\nacl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\nacl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13636824 2013-07-26] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-05-02] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated) HKLM\...\Run: [GamecomSound] => C:\Program Files\ASUS Xonar U7 Audio\CPL\ASUSXonarU7_x64.exe [2454528 2015-10-05] () HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2312896 2016-02-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [RoccatKonePure] => C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.EXE [561152 2014-01-20] (ROCCAT GmbH) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565448 2016-04-05] (LogMeIn Inc.) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [Steam] => F:\Program Files (x86)\Steam\steam.exe [3077712 2016-04-30] (Valve Corporation) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [GalaxyClient] => F:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [3985976 2016-05-26] (GOG.com) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [EADM] => F:\Program Files (x86)\Origin\Origin.exe [3639280 2016-05-08] (Electronic Arts) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [NvLedServiceHost] => C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe [86904 2016-05-02] () HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4179288 2015-11-18] (Disc Soft Ltd) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53130368 2016-05-17] (Skype Technologies S.A.) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [Spotify Web Helper] => C:\Users\Manju\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1554032 2016-06-01] (Spotify Ltd) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [Spotify] => C:\Users\Manju\AppData\Roaming\Spotify\Spotify.exe [6859888 2016-06-01] (Spotify Ltd) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\MountPoints2: {4cadf984-d178-11e5-8d98-d05099717cf0} - "G:\setup.exe" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\MountPoints2: {897d514a-f46e-11e5-8da2-d05099717cf0} - "I:\Setup.exe" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\MountPoints2: {e67fe4de-93aa-11e5-8d83-d05099717cf0} - "H:\setup\rsrc\Autorun.exe" ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-01-22] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-01-22] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-01-22] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2015-11-07] ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{3A435941-E398-438A-9CAF-31D8996CF7C8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Ryos Driver.lnk [2015-11-07] ShortcutTarget: Ryos Driver.lnk -> C:\Program Files (x86)\ROCCAT\Ryos Keyboard\Ryos MK Monitor.exe (ROCCAT GmbH Co., Ltd.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\..\Interfaces\{1dfdf5cc-641c-4d8d-ad68-801994e40fcc}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1906051270-1771474172-258770257-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_77\bin\ssv.dll [2016-03-25] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-25] (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-03-25] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-25] (Oracle Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\Manju\AppData\Roaming\Mozilla\Firefox\Profiles\nugoi3Ip.default FF Plugin: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-25] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-25] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-02-12] (Adobe Systems) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-03-20] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-03-20] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-25] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-25] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-05-20] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-05-20] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-02-12] (Adobe Systems) FF Extension: Avira Browser Safety - C:\Users\Manju\AppData\Roaming\Mozilla\Firefox\Profiles\nugoi3Ip.default\Extensions\abs@avira.com.xpi [2016-04-01] Chrome: ======= CHR StartupUrls: Default -> "hxxps://www.google.de/","hxxp://www.google.com","hxxp://www.mystartsearch.com/?type=hp&ts=1425656354&from=fun&uid=ST1000DM003-1ER162_W4Y13HMXXXXXW4Y13HMX" CHR Session Restore: Default -> ist aktiviert. CHR Profile: C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2016-05-05] CHR Extension: (Magic Actions for YouTube™) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2016-05-30] CHR Extension: (Google Drive) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-07] CHR Extension: (YouTube) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-07] CHR Extension: (Google Cast) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2016-03-24] CHR Extension: (Pushbullet) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd [2016-05-11] CHR Extension: (Google-Suche) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-07] CHR Extension: (Subscriptions Grid For YouTube™) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcnjhgnfnmijfkmcddcmffeamphmmeed [2016-04-25] CHR Extension: (Netflix) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\deceagebecbceejblnlcjooeohmmeldh [2015-11-07] CHR Extension: (Google Play Musik) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2016-05-25] CHR Extension: (AdBlock) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-06-02] CHR Extension: (Google Play Music) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2015-11-07] CHR Extension: (Turbo for YouTube) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhgnmngkgolhffjjdaipkkjbmbnpefef [2016-04-01] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02] CHR Extension: (Click&Clean App) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2016-06-05] CHR Extension: (Google Mail) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-07] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [693440 2016-01-28] (Adobe Systems Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated) R2 ASRockIOMon; C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe [454656 2013-07-25] () [Datei ist nicht signiert] S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1863688 2016-04-09] () R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-01-19] (Digital Wave Ltd.) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1369432 2015-11-18] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [243984 2016-03-17] (EasyAntiCheat Ltd) S3 GalaxyClientService; F:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [246328 2016-05-26] (GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6167096 2016-05-26] (GOG.com) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1165368 2016-05-02] (NVIDIA Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-03-20] (Intel Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-03-20] (Intel Corporation) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2016-04-05] (LogMeIn, Inc.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-05-02] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-05-02] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-05-02] (NVIDIA Corporation) S3 Origin Client Service; F:\Program Files (x86)\Origin\OriginClientService.exe [2120712 2016-05-08] (Electronic Arts) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-11-07] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-11-29] () R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-04-17] (Qualcomm Atheros) [Datei ist nicht signiert] S3 Survarium-Steam Update Service; F:\Program Files (x86)\Steam\steamapps\common\Survarium\game\binaries\x86\survarium_service.exe [97880 2015-12-09] () R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 AsrDrv101; C:\Windows\SysWOW64\Drivers\AsrDrv101.sys [22280 2015-11-07] (ASRock Incorporation) S3 AsrHidFilter; C:\Windows\system32\DRIVERS\AsrHidFilter.sys [20232 2013-09-09] (ASRock Inc.) R0 AsrRamDisk; C:\Windows\System32\drivers\AsrRamDisk.sys [40200 2013-08-02] (ASRock Inc.) R3 ASUSU7; C:\Windows\system32\DRIVERS\ASUSU7.SYS [406016 2015-10-05] (C-Media Inc.) R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [82608 2014-04-10] (Qualcomm Atheros, Inc.) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-11-28] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47160 2015-11-28] (Disc Soft Ltd) R3 Hamachi; C:\Windows\System32\drivers\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.) R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [22216 2014-02-03] () R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [22728 2014-02-03] () R2 IntelHaxm; C:\Windows\system32\DRIVERS\IntelHaxm.sys [84992 2015-01-30] (Intel Corporation) R3 ISCT; C:\Windows\System32\drivers\ISCTD.sys [44744 2014-02-03] () R3 Ke2200; C:\Windows\System32\drivers\e22w8x64.sys [130224 2014-03-12] (Qualcomm Atheros, Inc.) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2016-03-04] (Intel Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-05-02] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13536 2015-05-27] () R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions) R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [127456 2016-03-04] (Oracle Corporation) R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [205784 2016-03-04] (Oracle Corporation) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-06-06 19:48 - 2016-06-06 19:48 - 00001171 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-06-06 19:48 - 2016-06-06 19:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-06-06 19:48 - 2016-06-06 19:48 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-06-06 19:48 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-06-06 19:48 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-06-06 19:46 - 2016-06-06 19:46 - 00000705 _____ C:\Users\Manju\Desktop\JRT.txt 2016-06-06 19:36 - 2016-06-06 19:42 - 00000000 ____D C:\AdwCleaner 2016-06-06 19:35 - 2016-06-06 20:35 - 00000000 ____D C:\FRST 2016-06-06 19:17 - 2016-06-06 19:50 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-06-06 19:17 - 2016-06-06 19:48 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-06-06 19:17 - 2016-06-06 19:34 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2016-06-06 19:16 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-06-06 17:21 - 2016-06-06 17:21 - 00007105 _____ C:\Users\Manju\AppData\Local\recently-used.xbel 2016-06-02 23:27 - 2016-06-06 20:22 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2016-05-31 21:46 - 2016-05-20 03:57 - 00113208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2016-05-31 21:45 - 2016-05-21 23:09 - 01581624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco64.dll 2016-05-31 21:45 - 2016-05-21 23:09 - 00046024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 39977920 _____ C:\WINDOWS\system32\nvcompiler.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 35117112 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 31639096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 25401280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 21802816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 21346520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 18145256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 17740664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 10642912 _____ C:\WINDOWS\system32\nvptxJitCompiler.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 08733280 _____ C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 02791360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 02419768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 01922496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6436822.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 01573432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6436822.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00909760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00787200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00786360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00772152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00708032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00669952 _____ C:\WINDOWS\system32\nvfatbinaryLoader.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00632664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00631104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00601936 _____ C:\WINDOWS\system32\nvmcumd.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00565208 _____ C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00549240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00452616 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00423360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00385080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00377792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00346560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00315936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00178136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00155952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00153416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00131768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00000594 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2016-05-31 21:45 - 2016-05-20 10:03 - 00000594 _____ C:\WINDOWS\system32\nv-vk64.json 2016-05-31 21:26 - 2016-05-31 21:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher® 3 - Wild Hunt [GOG.com] 2016-05-31 21:21 - 2016-05-31 21:46 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2016-05-31 21:21 - 2016-04-14 07:38 - 00102976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2016-05-30 20:44 - 2016-05-30 20:44 - 00000000 ___DL C:\Users\Manju\AppData\LocalLow\PlayReady 2016-05-28 21:10 - 2016-05-28 21:10 - 00066728 _____ (Eugene V. Muzychenko) C:\WINDOWS\system32\Drivers\vrtaucbl.sys 2016-05-28 21:10 - 2016-05-28 21:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable 2016-05-28 21:10 - 2016-05-28 21:10 - 00000000 ____D C:\Program Files\Virtual Audio Cable 2016-05-27 16:31 - 2016-06-02 20:21 - 00000000 ____D C:\Users\Manju\AppData\Local\gtk-2.0 2016-05-27 16:31 - 2016-05-27 16:31 - 00000000 ____D C:\Users\Manju\.thumbnails 2016-05-27 16:06 - 2016-06-06 19:42 - 00000000 ____D C:\Users\Manju\.gimp-2.8 2016-05-27 16:06 - 2016-05-27 16:06 - 00000939 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2016-05-27 16:06 - 2016-05-27 16:06 - 00000000 ____D C:\Users\Manju\AppData\Local\gegl-0.2 2016-05-27 16:06 - 2016-05-27 16:06 - 00000000 ____D C:\Users\Manju\AppData\Local\fontconfig 2016-05-27 16:06 - 2016-05-27 16:06 - 00000000 ____D C:\Program Files\GIMP 2 2016-05-26 12:23 - 2016-05-26 12:23 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2016-05-26 12:23 - 2016-05-26 12:23 - 00000000 ____D C:\ProgramData\Battle.net 2016-05-23 21:55 - 2016-05-23 21:55 - 00000000 ____D C:\Users\Manju\AppData\Local\Splashtop 2016-05-23 21:53 - 2016-05-23 21:53 - 00000000 ____D C:\ProgramData\Splashtop 2016-05-23 21:53 - 2016-05-23 21:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Splashtop Remote 2016-05-23 21:53 - 2016-05-23 21:53 - 00000000 ____D C:\Program Files (x86)\Splashtop 2016-05-21 13:34 - 2016-05-21 13:34 - 00000931 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk 2016-05-21 13:34 - 2016-05-21 13:34 - 00000000 ____D C:\Users\Manju\AppData\Local\Black_Tree_Gaming 2016-05-21 13:34 - 2016-05-21 13:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager 2016-05-21 13:34 - 2016-05-21 13:34 - 00000000 ____D C:\Program Files\Nexus Mod Manager 2016-05-13 17:15 - 2016-06-06 19:44 - 00000000 ____D C:\Users\Manju\AppData\Local\Spotify 2016-05-13 17:15 - 2016-05-13 17:15 - 00001836 _____ C:\Users\Manju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2016-05-13 17:14 - 2016-06-06 19:44 - 00000000 ____D C:\Users\Manju\AppData\Roaming\Spotify 2016-05-11 20:43 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys 2016-05-11 20:43 - 2016-05-06 06:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-05-11 20:43 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-05-11 20:43 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2016-05-11 20:43 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-05-11 20:43 - 2016-05-06 05:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-05-11 20:43 - 2016-04-30 08:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-05-11 20:43 - 2016-04-30 08:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-05-11 20:43 - 2016-04-23 08:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-05-11 20:43 - 2016-04-23 08:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-05-11 20:43 - 2016-04-23 07:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-05-11 20:43 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-05-11 20:43 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2016-05-11 20:43 - 2016-04-23 07:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-05-11 20:43 - 2016-04-23 07:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-05-11 20:43 - 2016-04-23 07:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-05-11 20:43 - 2016-04-23 07:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-05-11 20:43 - 2016-04-23 07:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-05-11 20:43 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2016-05-11 20:43 - 2016-04-23 07:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2016-05-11 20:43 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2016-05-11 20:43 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-05-11 20:43 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2016-05-11 20:43 - 2016-04-23 07:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-05-11 20:43 - 2016-04-23 07:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-05-11 20:43 - 2016-04-23 07:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-05-11 20:43 - 2016-04-23 07:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-05-11 20:43 - 2016-04-23 07:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-05-11 20:43 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-05-11 20:43 - 2016-04-23 07:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-05-11 20:43 - 2016-04-23 07:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-05-11 20:43 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-05-11 20:43 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-05-11 20:43 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-05-11 20:43 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2016-05-11 20:43 - 2016-04-23 07:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-05-11 20:43 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2016-05-11 20:43 - 2016-04-23 07:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-05-11 20:43 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-05-11 20:43 - 2016-04-23 07:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-05-11 20:43 - 2016-04-23 07:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-05-11 20:43 - 2016-04-23 07:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2016-05-11 20:43 - 2016-04-23 07:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2016-05-11 20:43 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2016-05-11 20:43 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll 2016-05-11 20:43 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll 2016-05-11 20:43 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2016-05-11 20:43 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-05-11 20:43 - 2016-04-23 07:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-05-11 20:43 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-05-11 20:43 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll 2016-05-11 20:43 - 2016-04-23 06:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2016-05-11 20:43 - 2016-04-23 06:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-05-11 20:43 - 2016-04-23 06:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-05-11 20:43 - 2016-04-23 06:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2016-05-11 20:43 - 2016-04-23 06:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-05-11 20:43 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-05-11 20:43 - 2016-04-23 06:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-05-11 20:43 - 2016-04-23 06:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-05-11 20:43 - 2016-04-23 06:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-05-11 20:43 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-05-11 20:43 - 2016-04-23 06:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-05-11 20:43 - 2016-04-23 06:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-05-11 20:43 - 2016-04-23 06:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-05-11 20:43 - 2016-04-23 06:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2016-05-11 20:43 - 2016-04-23 06:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2016-05-11 20:43 - 2016-04-23 06:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-05-11 20:43 - 2016-04-23 06:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-05-11 20:43 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll 2016-05-11 20:43 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-05-11 20:43 - 2016-04-23 06:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-05-11 20:43 - 2016-04-23 06:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-05-11 20:43 - 2016-04-23 06:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2016-05-11 20:43 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2016-05-11 20:43 - 2016-04-23 06:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-05-11 20:43 - 2016-04-23 06:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll 2016-05-11 20:43 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-05-11 20:43 - 2016-04-23 06:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-05-11 20:43 - 2016-04-23 06:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-05-11 20:43 - 2016-04-23 06:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-05-11 20:43 - 2016-04-23 06:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-05-11 20:43 - 2016-04-23 06:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-05-11 20:43 - 2016-04-23 06:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-05-11 20:43 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2016-05-11 20:43 - 2016-04-23 06:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-05-11 20:43 - 2016-04-23 06:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-05-11 20:43 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-05-11 20:43 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-05-11 20:43 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-05-11 20:43 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-05-11 20:43 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-05-11 20:43 - 2016-04-23 06:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-05-11 20:43 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-05-11 20:43 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-05-11 20:43 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-05-11 20:43 - 2016-04-23 06:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-05-11 20:43 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-05-11 20:43 - 2016-04-23 06:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-05-11 20:43 - 2016-04-23 06:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-05-11 20:43 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-05-11 20:43 - 2016-04-23 06:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2016-05-11 20:43 - 2016-04-23 06:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-05-11 20:43 - 2016-04-23 06:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-05-11 20:43 - 2016-04-23 06:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2016-05-11 20:43 - 2016-04-23 06:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-05-11 20:43 - 2016-04-23 06:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-05-11 20:43 - 2016-04-23 05:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2016-05-11 20:43 - 2016-04-23 04:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2016-05-11 20:42 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-05-11 20:42 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2016-05-11 20:42 - 2016-04-23 07:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2016-05-11 20:42 - 2016-04-23 07:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-05-11 20:42 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-05-11 20:42 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-05-11 20:42 - 2016-04-23 07:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-05-11 20:42 - 2016-04-23 07:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys 2016-05-11 20:42 - 2016-04-23 07:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-05-11 20:42 - 2016-04-23 06:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2016-05-11 20:42 - 2016-04-23 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2016-05-11 20:42 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2016-05-11 20:42 - 2016-04-23 06:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2016-05-11 20:42 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll 2016-05-11 20:42 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys 2016-05-11 20:42 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe 2016-05-11 20:42 - 2016-04-23 06:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-05-11 20:42 - 2016-04-23 06:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2016-05-11 20:42 - 2016-04-23 06:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2016-05-11 20:42 - 2016-04-23 06:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys 2016-05-11 20:42 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll 2016-05-11 20:42 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe 2016-05-11 20:42 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2016-05-11 20:42 - 2016-04-23 06:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2016-05-11 20:42 - 2016-04-23 06:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-05-11 20:42 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll 2016-05-11 20:42 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2016-05-11 20:42 - 2016-04-23 06:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-05-11 20:42 - 2016-04-23 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-05-11 20:42 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2016-05-11 20:42 - 2016-04-23 06:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-05-11 20:42 - 2016-04-23 06:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll 2016-05-11 20:42 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll 2016-05-11 20:42 - 2016-04-23 06:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-05-11 20:42 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll 2016-05-11 20:42 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll 2016-05-11 20:42 - 2016-04-23 06:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-05-11 20:42 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2016-05-11 20:42 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2016-05-11 20:42 - 2016-04-23 06:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-05-11 20:42 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2016-05-11 20:42 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2016-05-11 20:42 - 2016-04-23 04:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml 2016-05-11 20:42 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-06-06 20:34 - 2015-11-07 02:13 - 00001126 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-06-06 20:27 - 2015-11-10 20:46 - 00000000 ____D C:\Users\Manju\AppData\Roaming\Skype 2016-06-06 20:04 - 2015-11-07 18:42 - 00103736 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe 2016-06-06 19:49 - 2015-11-07 01:26 - 01802588 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-06-06 19:49 - 2015-10-30 20:35 - 00776562 _____ C:\WINDOWS\system32\perfh007.dat 2016-06-06 19:49 - 2015-10-30 20:35 - 00155874 _____ C:\WINDOWS\system32\perfc007.dat 2016-06-06 19:49 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF 2016-06-06 19:44 - 2016-03-19 10:13 - 00003032 _____ C:\WINDOWS\System32\Tasks\AsrSP.exe 2016-06-06 19:44 - 2015-11-28 19:35 - 00000000 ____D C:\Users\Manju\AppData\Local\LogMeIn Hamachi 2016-06-06 19:44 - 2015-11-07 03:15 - 00003080 _____ C:\WINDOWS\System32\Tasks\AsrKM 2016-06-06 19:43 - 2016-03-19 04:43 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-06-06 19:43 - 2016-03-19 04:40 - 00000000 ____D C:\ProgramData\NVIDIA 2016-06-06 19:43 - 2016-02-22 19:11 - 00000091 _____ C:\HaxLogs.txt 2016-06-06 19:43 - 2015-11-07 02:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-06-06 19:43 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-06-06 18:56 - 2015-12-13 20:36 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-06-06 18:56 - 2015-11-10 20:45 - 00000000 ____D C:\ProgramData\Skype 2016-06-06 18:03 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-06-06 17:26 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-06-06 17:23 - 2015-12-25 15:16 - 00000000 ____D C:\Users\Manju\AppData\Local\Adobe 2016-06-05 20:47 - 2015-11-07 03:01 - 00000000 ____D C:\Users\Manju\AppData\Local\Battle.net 2016-06-05 20:25 - 2015-11-07 02:37 - 00000000 ____D C:\Users\Manju\AppData\Roaming\TS3Client 2016-06-05 17:33 - 2015-12-25 15:17 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-06-03 02:15 - 2016-03-19 04:40 - 00000000 ____D C:\Users\Manju 2016-06-01 22:11 - 2015-11-07 02:49 - 00000000 ____D C:\ProgramData\Origin 2016-06-01 20:55 - 2015-11-07 03:15 - 00000080 _____ C:\Users\Manju\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦 2016-06-01 20:51 - 2015-12-19 18:06 - 00000000 ____D C:\Users\Manju\AppData\Roaming\MuseScore 2016-05-31 21:47 - 2016-03-19 04:40 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-05-31 21:47 - 2015-11-07 02:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-05-31 21:46 - 2016-03-28 04:50 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2016-05-31 21:22 - 2015-11-07 02:17 - 00000000 ____D C:\Users\Manju\AppData\Local\NVIDIA 2016-05-26 12:23 - 2016-05-05 03:29 - 00000850 _____ C:\Users\Public\Desktop\Overwatch.lnk 2016-05-25 21:25 - 2015-12-25 22:23 - 00000000 ____D C:\Users\Manju\AppData\Local\CrashDumps 2016-05-23 19:06 - 2015-11-07 01:23 - 00000000 ____D C:\Users\Manju\AppData\Local\Packages 2016-05-22 23:02 - 2016-02-19 17:13 - 13509184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2016-05-21 23:09 - 2016-03-09 12:30 - 00141256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2016-05-21 13:36 - 2015-11-10 16:19 - 00000000 ____D C:\Users\Manju\AppData\Local\Fallout4 2016-05-20 10:03 - 2016-02-19 17:13 - 20305768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 17662432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 17379520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 14410024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 03811440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 03371648 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 00985024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 00379480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 00040084 _____ C:\WINDOWS\system32\nvinfo.pb 2016-05-20 04:08 - 2016-03-19 04:40 - 06348344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 02454976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 01762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 01352760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2016-05-20 04:08 - 2016-03-19 04:40 - 00533560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 00392128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 00081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 00069568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2016-05-18 10:37 - 2016-03-19 04:40 - 06448223 _____ C:\WINDOWS\system32\nvcoproc.bin 2016-05-14 01:30 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache 2016-05-14 01:18 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-05-13 15:57 - 2015-09-10 07:44 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-05-13 15:56 - 2015-11-07 02:14 - 00002264 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-05-12 22:09 - 2015-10-30 20:47 - 00000000 ____D C:\Program Files\Windows Journal 2016-05-12 22:09 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2016-05-12 22:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-05-12 22:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-05-12 22:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning 2016-05-12 22:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-05-12 18:33 - 2015-11-07 05:48 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-05-12 18:28 - 2015-11-07 05:48 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-05-11 21:57 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-05-11 21:57 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-05-11 20:43 - 2015-12-25 15:17 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-05-11 20:29 - 2015-11-07 02:13 - 00004188 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2016-05-11 20:29 - 2015-11-07 02:13 - 00003956 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2016-05-11 20:29 - 2015-11-07 02:13 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-01-08 20:20 - 2016-03-29 21:21 - 0001456 _____ () C:\Users\Manju\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2016-06-06 17:21 - 2016-06-06 17:21 - 0007105 _____ () C:\Users\Manju\AppData\Local\recently-used.xbel 2016-03-24 18:54 - 2016-03-24 18:54 - 0007605 _____ () C:\Users\Manju\AppData\Local\Resmon.ResmonCfg 2016-03-19 04:40 - 2016-03-19 04:40 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Manju\AppData\Local\Temp\avgnt.exe C:\Users\Manju\AppData\Local\Temp\libeay32.dll C:\Users\Manju\AppData\Local\Temp\McCSPInstall.dll C:\Users\Manju\AppData\Local\Temp\mccspuninstall.exe C:\Users\Manju\AppData\Local\Temp\msvcr120.dll C:\Users\Manju\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Manju\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Manju\AppData\Local\Temp\nvStInst.exe C:\Users\Manju\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-06-05 18:04 ==================== Ende von FRST.txt ============================ |
08.06.2016, 10:09 | #3 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel!Zitat:
Lesestoff: Illegale Software: Cracks, Keygens und Co Bitte lesen => http://www.trojaner-board.de/95393-c...-software.html Es geht weiter wenn du alles Illegale entfernt hast. Bei wiederholten Crack/Keygen Verstößen behalte ich es mir vor, den Support einzustellen, d.h. Hilfe nur noch bei der Datensicherung und Neuinstallation des Betriebssystems.
__________________ |
08.06.2016, 17:06 | #4 |
| Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel! Das tut mir leid hatte ganz vergessen das ich das noch drauf habe. Es müsste alle derartige Software nun gelöscht sein. Hier Addition: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:07-06-2016 durchgeführt von Manju (2016-06-08 18:08:13) Gestartet von D:\Users\Manju\Desktop Windows 10 Pro Version 1511 (X64) (2016-03-19 02:45:02) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1906051270-1771474172-258770257-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1906051270-1771474172-258770257-503 - Limited - Disabled) Gast (S-1-5-21-1906051270-1771474172-258770257-501 - Limited - Disabled) Manju (S-1-5-21-1906051270-1771474172-258770257-1001 - Administrator - Enabled) => C:\Users\Manju ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 3DMark (HKLM-x32\...\{12d6e0d7-21d5-4755-9da2-70352c6f7558}) (Version: 1.5.915.0 - Futuremark) 3DMark (Version: 1.5.915.0 - Futuremark) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) A Virus Named TOM (HKLM-x32\...\Steam App 207650) (Version: - Misfits Attic) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.5.1.209 - Adobe Systems Incorporated) Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.1.1 - Adobe Systems Incorporated) Alien: Isolation (HKLM-x32\...\Steam App 214490) (Version: - Creative Assembly) Android Studio (HKLM\...\Android Studio) (Version: 1.0 - Google Inc.) ANNO 1404 - Königsedition (HKLM-x32\...\{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}) (Version: 3.10.0000 - Ubisoft) Anno 2070 (HKLM-x32\...\Uplay Install 22) (Version: - Ubisoft) ARK: Survival Evolved (HKLM-x32\...\Steam App 346110) (Version: - Studio Wildcard) Arma 3 (HKLM\...\Steam App 107410) (Version: - Bohemia Interactive) Assassin's Creed Syndicate (HKLM-x32\...\Uplay Install 1875) (Version: 1.12 - Ubisoft) Assassin's Creed Unity (HKLM-x32\...\Uplay Install 720) (Version: - Ubisoft) ASUS Xonar U7 Audio (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F39206632A}) (Version: - ASUSTeK Computer Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battleborn (HKLM\...\Steam App 394230) (Version: - Gearbox Software) Battleborn Open Beta (HKLM\...\Steam App 451070) (Version: - ) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.7.2.45672 - Electronic Arts) Battlefield™ Hardline (HKLM-x32\...\{CB4AC3DA-8CC1-4516-86DA-4078B57DB229}) (Version: 1.4.0.10 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Borderlands: The Pre-Sequel (HKLM-x32\...\Steam App 261640) (Version: - 2K Australia) Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty: Black Ops III (HKLM-x32\...\Steam App 311210) (Version: - Treyarch) Call of Duty: Modern Warfare 2 - Multiplayer (HKLM-x32\...\Steam App 10190) (Version: - Infinity Ward) Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cities in Motion 2 (HKLM-x32\...\Steam App 225420) (Version: - Colossal Order Ltd.) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) Crystals of Time (HKLM-x32\...\Steam App 306410) (Version: - RVL Games) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0112 - Disc Soft Ltd) DARK SOULS III (HKLM\...\Steam App 374320) (Version: - FromSoftware, Inc.) DARK SOULS™ II: Scholar of the First Sin (HKLM-x32\...\Steam App 335300) (Version: - FromSoftware, Inc) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Deus Ex: Human Revolution - Director's Cut (HKLM-x32\...\Steam App 238010) (Version: - Eidos Montreal) DiRT Showdown (HKLM\...\Steam App 201700) (Version: - Codemasters Racing Studio) Dishonored (HKLM-x32\...\Steam App 205100) (Version: 1.0 - Bethesda Softworks) Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) Dr. Langeskov, The Tiger, and The Terribly Cursed Emerald: A Whirlwind Heist (HKLM-x32\...\Steam App 409160) (Version: - Crows Crows Crows) EA SPORTS™ FIFA 15 (HKLM-x32\...\{3D4ADA2B-F028-4307-ADF4-6F9AA44725DA}) (Version: 1.8.0.0 - Electronic Arts) Elite: Dangerous (HKLM-x32\...\Steam App 359320) (Version: - Frontier Developments) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Fallout 4 (HKLM-x32\...\Steam App 377160) (Version: - Bethesda Game Studios) Far Cry 4 (HKLM-x32\...\Uplay Install 420) (Version: - Ubisoft) Farming Simulator 15 (HKLM-x32\...\Steam App 313160) (Version: - Giants Software) Game of Thrones (HKLM-x32\...\Steam App 208730) (Version: - Cyanide Studios) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.102 - Google Inc.) Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) H1Z1: King of the Kill (HKLM\...\Steam App 433850) (Version: - Daybreak Game Company) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Hitman: Absolution (HKLM-x32\...\Steam App 203140) (Version: - IO Interactive) Hyper Fighters (HKLM-x32\...\Steam App 267960) (Version: - Team 6 Studios) Image Composite Editor (HKLM\...\{92AB5708-1AAA-4B1B-A8D5-45CF3AD77519}) (Version: 2.0.3 - Microsoft Corporation) InputMapper (HKLM-x32\...\{1A44056A-C7D8-4561-BC43-A0AA7D7AAA64}) (Version: 1.5.31.0 - DSDCS) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1204 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.1.0.1058 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{7228EFBA-512B-4EB3-B8A7-E2C331475DF4}) (Version: 5.0.10.2808 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden Intel® Hardware Accelerated Execution Manager (HKLM\...\{ECCB31F5-435D-4F37-A98D-5854D3C62718}) (Version: 1.1.1 - Intel Corporation) IP Camera Adapter (HKLM-x32\...\{6D140BFF-7CC5-4BFE-AD6D-47035FFE5F14}) (Version: 2.0.0.0 - Pavel Khlebovich) Java 8 Update 77 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418077F0}) (Version: 8.0.770.3 - Oracle Corporation) Java 8 Update 77 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation) Java SE Development Kit 8 Update 73 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180730}) (Version: 8.0.730.2 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) LEGO Racers (HKLM-x32\...\LEGO Racers) (Version: - ) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.422 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.422 - LogMeIn, Inc.) Hidden McAfee® AntiVirus Plus (HKLM-x32\...\MSC) (Version: 14.0.9042 - McAfee, Inc.) METAL GEAR SOLID V: THE PHANTOM PAIN (HKLM-x32\...\Steam App 287700) (Version: - Konami Digital Entertainment) Metro: Last Light Redux (HKLM-x32\...\Steam App 287390) (Version: - 4A Games) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.1.1.5990 - Mozilla) Mozilla Thunderbird 45.1.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 45.1.1 (x86 de)) (Version: 45.1.1 - Mozilla) MSI Afterburner 4.1.1 (HKLM-x32\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD) MURDERED: SOUL SUSPECT™ (HKLM-x32\...\Steam App 233290) (Version: - Airtight Games) MuseScore 2 (HKLM-x32\...\{D0969A82-E79E-45D9-95D2-B2824880F780}) (Version: 2.0.2 - Werner Schweer and Others) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.61.23 - Black Tree Gaming) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.8 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 368.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.22 - NVIDIA Corporation) NVIDIA GeForce Experience 2.11.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.3.5 - NVIDIA Corporation) NVIDIA Grafiktreiber 368.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.22 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.14 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) One Finger Death Punch (HKLM-x32\...\Steam App 264200) (Version: - Silver Dollar Games) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation) Oracle VM VirtualBox 5.0.16 (HKLM\...\{F2E958A1-9215-4C7D-9A2E-F0740B8CA5B7}) (Version: 5.0.16 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.10.1.1501 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Plants vs Zombies GW2 (HKLM-x32\...\{C4F00C98-13B4-4313-8152-50EE0B04ABE2}) (Version: 1.0.4.0 - Electronic Arts) Psychonauts (HKLM-x32\...\Steam App 3830) (Version: - Double Fine Productions) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.) PVZ Garden Warfare (HKLM-x32\...\{A5AC7D7B-C1D5-4AF9-8829-993DA335BE1B}) (Version: 1.0.3.0 - Electronic Arts) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.1.42.1291 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.1.42.1291 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{00D4DA5D-EA32-4A7C-A855-A7FDC372049B}) (Version: 1.1.42.1291 - Qualcomm Atheros) Qualcomm Atheros Network Manager (Version: 1.1.42.1291 - Qualcomm Atheros) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.) Reign Of Kings (HKLM-x32\...\Steam App 344760) (Version: - Code}{atch) Rise of the Tomb Raider (HKLM-x32\...\Steam App 391220) (Version: - Crystal Dynamics) RivaTuner Statistics Server 6.3.0 (HKLM-x32\...\RTSS) (Version: 6.3.0 - Unwinder) ROCCAT Kone Pure Mouse Driver (HKLM-x32\...\{4905245D-56E7-4176-BE68-962728B803D6}) (Version: - Roccat GmbH) ROCCAT Ryos Keyboard Driver (HKLM-x32\...\{70F3EF93-44F4-446A-90B8-33DAB2799AF1}) (Version: 1.29.0006 - Roccat GmbH) Rocket League (HKLM-x32\...\Steam App 252950) (Version: - Psyonix) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.8 - Rockstar Games) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - Firaxis Games) Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.) Sniper Elite 3 (HKLM-x32\...\Steam App 238090) (Version: - Rebellion) South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment) SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games) Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.) Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 3.0.8.2 - Splashtop Inc.) Spotify (HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Spotify) (Version: 1.0.29.92.g67727800 - Spotify AB) STAR WARS™ Battlefront™ (HKLM-x32\...\{E402D891-4E45-4ce9-B41F-DD35864EF170}) (Version: 1.0.5.13082 - Electronic Arts) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Stardew Valley (HKLM\...\Steam App 413150) (Version: - ConcernedApe) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Super 3-D Noah's Ark (HKLM-x32\...\Steam App 371180) (Version: - Wisdom Tree, Inc.) Survarium (HKLM-x32\...\Steam App 355840) (Version: - Vostok Games) Sweet Home 3D version 5.2 (HKLM\...\Sweet Home 3D_is1) (Version: 5.2 - eTeks) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) The Banner Saga (HKLM-x32\...\Steam App 237990) (Version: - Stoic) The Beginner's Guide (HKLM-x32\...\Steam App 303210) (Version: - Everything Unlimited Ltd.) The Binding of Isaac: Rebirth (HKLM-x32\...\Steam App 250900) (Version: - Nicalis, Inc.) The Culling (HKLM\...\Steam App 437220) (Version: - Xaviant) The Forest (HKLM-x32\...\Steam App 242760) (Version: - Endnight Games Ltd) The Mean Greens - Plastic Warfare (HKLM-x32\...\Steam App 360940) (Version: - Virtual Basement LLC) The Stanley Parable (HKLM-x32\...\Steam App 221910) (Version: - Galactic Cafe) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.21.0.0 - GOG.com) Titan Souls (HKLM-x32\...\Steam App 297130) (Version: - Acid Nerve) Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version: - Ubisoft) Tom Clancy's The Division (HKLM-x32\...\Uplay Install 568) (Version: - Ubisoft) Tom Clancy's The Division Beta (HKLM-x32\...\Uplay Install 2036) (Version: - Ubisoft) Tomb Raider (HKLM-x32\...\Steam App 203160) (Version: - Crystal Dynamics) Trackmania Turbo (HKLM-x32\...\Uplay Install 2070) (Version: - Ubisoft) TrackMania² Stadium (HKLM\...\Steam App 232910) (Version: - Nadeo) Undertale (HKLM-x32\...\Steam App 391540) (Version: - tobyfox) Uplay (HKLM-x32\...\Uplay) (Version: 12.1 - Ubisoft) Virtual Audio Cable 4.10 (HKLM\...\Virtual Audio Cable 4.10) (Version: - ) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1906051270-1771474172-258770257-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-0E72D206E73E}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1906051270-1771474172-258770257-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Manju\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1906051270-1771474172-258770257-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0D2CA988-1FF4-48AB-ABF9-03F1A526C0F9} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent Task: {0E1279C0-F3E7-45A4-AD2C-573FA6059EBA} - System32\Tasks\McAfee\McAfee Idle Detection Task Task: {2D9B89E8-5B51-4B5B-A69A-3971AAA3C05F} - System32\Tasks\AsrSP.exe => C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\AsrSP.exe [2014-04-15] () Task: {3163BEA4-CD5D-4455-B613-AA6844A03D66} - System32\Tasks\Dolby Selector => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.) Task: {68215E4A-5C23-4ED3-8A2D-26F7F895CFC0} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {7A583AA9-0424-41D3-83F1-5982193C0DC8} - System32\Tasks\{D181A0C1-4E75-47CC-81D6-B1AEA51AC273} => pcalua.exe -a E:\AR_KeyRun.exe -d E:\ Task: {7B598923-F264-4F0A-9CC3-D7B6677F577A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-07] (Google Inc.) Task: {7B6FDE8E-979C-4BA2-B1C3-AE10942C3B64} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [2016-04-23] (McAfee, Inc.) Task: {7E51C029-7D23-4EA7-894B-00BB4C309737} - System32\Tasks\AsrKM => C:\Program Files (x86)\ASRock Utility\Key Master\AsrKM.exe [2013-09-11] () Task: {8A3620EA-A4F9-4412-9FC1-D9F1D17EBDA0} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-05-12] (Microsoft Corporation) Task: {C5B19965-BED1-4E3B-92CE-BB893E0A4664} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {C7257144-03C9-4C9D-B09D-E00E18BFBB93} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-07] (Google Inc.) Task: {E17D7C8E-8D77-40D9-B845-B6E4174EBCE4} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-david.stiel@t-online.de => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-01-07] (Adobe Systems Incorporated) Task: {EFA59DEF-DC19-4240-96E5-1848E30D4703} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\Manju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\GeForce Experience Stream Client.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gjljknijpnfibppaijefibndmiabonep ShortcutWithArgument: C:\Users\Manju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Google Play Musik.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=fahmaaghhglfmonjliepjlchgpgfmobi ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-11-07 02:07 - 2013-07-25 16:04 - 00454656 _____ () C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe 2016-02-28 02:25 - 2016-05-02 07:54 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2015-12-25 15:14 - 2016-05-02 07:55 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-04-01 17:51 - 2016-05-02 07:54 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2016-02-28 02:25 - 2016-05-02 07:55 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2015-11-07 18:42 - 2015-11-29 14:34 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2016-04-01 17:51 - 2016-05-02 07:55 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2016-04-01 17:51 - 2016-05-02 07:55 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2016-04-01 17:51 - 2016-05-02 07:55 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2016-01-17 00:58 - 2016-05-02 07:55 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-03-19 04:40 - 2016-05-20 04:08 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-04-13 17:57 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-04-13 17:57 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-02-14 11:27 - 2016-01-22 14:55 - 00553136 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2016-03-19 04:37 - 2016-03-19 04:37 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-05-11 20:42 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-03-19 11:59 - 2015-10-05 08:36 - 02454528 ____N () C:\Program Files\ASUS Xonar U7 Audio\CPL\ASUSXonarU7_x64.exe 2015-11-07 02:17 - 2016-05-02 07:38 - 00086904 _____ () C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe 2015-11-07 02:17 - 2016-05-02 08:00 - 00167480 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll 2015-11-07 02:17 - 2016-05-02 08:01 - 00862776 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll 2014-04-17 11:27 - 2014-04-17 11:27 - 00300544 _____ () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe 2016-04-01 17:51 - 2016-05-02 07:54 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2016-04-01 17:51 - 2016-05-02 07:54 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2016-04-19 17:32 - 2016-04-19 17:32 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2016-04-29 20:35 - 2016-04-29 20:35 - 01334760 _____ () F:\Program Files (x86)\Battlenet\Battle.net\Battle.net.7208\Battle.net Helper.exe 2016-05-11 20:43 - 2016-04-23 06:02 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-05-11 20:43 - 2016-04-23 05:58 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-05-11 20:43 - 2016-04-23 05:58 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-05-11 20:43 - 2016-04-23 06:01 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2016-02-27 17:15 - 2016-01-19 05:02 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll 2014-03-20 12:43 - 2014-03-20 12:43 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-11-07 02:17 - 2016-05-02 08:02 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-11-07 02:17 - 2016-05-02 07:38 - 00621104 _____ () C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvGpuInterface.dll 2016-01-13 18:25 - 2012-06-23 15:54 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\hiddriver.dll 2016-05-13 15:56 - 2016-05-11 13:48 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libglesv2.dll 2016-05-13 15:56 - 2016-05-11 13:48 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libegl.dll 2016-04-19 17:32 - 2016-04-19 17:32 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-04-19 17:32 - 2016-04-19 17:32 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2016-04-29 20:35 - 2016-04-29 20:35 - 37241856 _____ () F:\Program Files (x86)\Battlenet\Battle.net\Battle.net.7208\libcef.dll 2016-04-29 20:35 - 2016-04-29 20:35 - 00293040 _____ () F:\Program Files (x86)\Battlenet\Battle.net\Battle.net.7208\ortp.dll 2016-04-29 20:35 - 2016-04-29 20:35 - 03384832 _____ () F:\Program Files (x86)\Battlenet\Battle.net\Battle.net.7208\libglesv2.dll 2016-04-29 20:35 - 2016-04-29 20:35 - 00133632 _____ () F:\Program Files (x86)\Battlenet\Battle.net\Battle.net.7208\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McNaiAnn => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-31 00:42 - 2015-07-31 00:39 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\Control Panel\Desktop\\Wallpaper -> D:\Users\Manju\Desktop\ws_Norway_2560x1440.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\...\StartupApproved\Run: => "CsrHCRPServer" HKLM\...\StartupApproved\Run: => "CsrAudioguiCtrl" HKLM\...\StartupApproved\Run: => "CsrSyncMLServer" HKLM\...\StartupApproved\Run: => "CSRHarmonySkypePlugin" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "GalaxyClient" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "EADM" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\StartupApproved\Run: => "Steam" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{3C90EFF0-8E03-44FE-8574-07D7F6115E08}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\Orcs Must Die! Unchained\Binaries\Win64\SpitfireGame.exe FirewallRules: [{1D466387-CD36-4E18-B87C-A1630F55E85A}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\Orcs Must Die! Unchained\Dashboard\Bin\SpitfireDashboard.exe FirewallRules: [{061E7DAF-C1A5-4D7F-AAE6-25B46E09718D}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\Orcs Must Die! Unchained\OMDU.exe FirewallRules: [{92BE6A94-4A11-4097-987B-702A2D11172B}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [{5A888EA8-6198-46D6-9C5C-337EBF8CFF2E}] => (Block) D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe FirewallRules: [{324618A9-A5AC-4D8C-8C1B-A66477061956}] => (Block) D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe FirewallRules: [UDP Query User{3B0F329F-4547-4495-9211-8BDED11F9E23}D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe] => (Allow) D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe FirewallRules: [TCP Query User{6A45FE93-4A6C-48B0-BBE8-AABE5489041E}D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe] => (Allow) D:\users\manju\desktop\aoe gold\age2_x1\age2_x2.exe FirewallRules: [{780BDB54-8AC9-42E5-8FCE-FA27BA8FBE3C}] => (Block) C:\windows\syswow64\dplaysvr.exe FirewallRules: [{49E41104-2D1C-479B-8D2F-1AB6108AFD41}] => (Block) C:\windows\syswow64\dplaysvr.exe FirewallRules: [UDP Query User{E8723480-E55C-47E3-808A-DE2BEF20ACF7}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [TCP Query User{4D72BB11-3232-4CBB-A1AC-A9AB35AD4E30}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [{75B2B020-978E-4F73-B385-C0DAC6D5BC49}] => (Block) D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe FirewallRules: [{FE0C7DEB-FB64-45F8-B39B-4DE002C7DC87}] => (Block) D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe FirewallRules: [UDP Query User{E9219D28-0058-4F54-9515-ACD666382CD3}D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe] => (Allow) D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe FirewallRules: [TCP Query User{2EBA6E4E-274E-48DC-91E2-C6D30A16B141}D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe] => (Allow) D:\users\manju\desktop\stuff\cracks etc\age of empires ii\empires2.exe FirewallRules: [{036B3CE9-75E4-490E-869D-7A736724F97C}] => (Block) C:\program files\java\jdk1.8.0_73\bin\java.exe FirewallRules: [{0684C8B0-FED8-4F57-A149-4EB040D744DB}] => (Block) C:\program files\java\jdk1.8.0_73\bin\java.exe FirewallRules: [{B453BF0F-11AF-428E-8C5E-1D319B0BF50C}] => (Block) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [{84CB6595-DC9C-4C59-BA95-EB077A19DFBF}] => (Block) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [UDP Query User{601978E8-A9AB-42E7-9475-624B8D8479BF}C:\program files\java\jdk1.8.0_73\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_73\bin\java.exe FirewallRules: [TCP Query User{AF6AE225-F88F-42C0-8A45-3D371657B169}C:\program files\java\jdk1.8.0_73\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_73\bin\java.exe FirewallRules: [UDP Query User{D1389CCB-485B-409C-AB08-EB326348F326}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [TCP Query User{1C5B36FD-AF49-4FAE-AAC7-03852EEE9270}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe FirewallRules: [{F3E63183-4D49-4829-BB6B-796365E6D2F2}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{52840EB9-0CF6-402C-88B5-8AF7BAFFFB1D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [UDP Query User{58CB2B92-E90F-41DB-8ADF-58E52FA69CEB}F:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe FirewallRules: [TCP Query User{F72E7C10-6D49-4990-8AAE-0D33964817C9}F:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe FirewallRules: [{8B389583-FBD2-46A7-BFBB-38F89ECC5D34}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\TheCulling\TheCulling_Launcher.exe FirewallRules: [{50323A14-C194-4DC5-812A-9E83E240DC09}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\TheCulling\TheCulling_Launcher.exe FirewallRules: [{1B85D517-B59E-4AC6-8A3F-921CF5A26C5A}] => (Allow) F:\Program Files (x86)\Origin Games\BFH\BFHWebHelper.exe FirewallRules: [{B4CD5204-F350-44B0-A28F-F717C393EC5F}] => (Allow) F:\Program Files (x86)\Origin Games\BFH\BFHWebHelper.exe FirewallRules: [{A27F04B4-04DC-47B2-B395-B66C87738341}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's The Division\TheDivision.exe FirewallRules: [{18A21E7B-4248-4E04-89B3-72013C52CA98}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{3FDCFEA6-8AB7-421E-BEDE-29CF0D3C2249}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{DD4764D8-5607-4DE2-916A-09E3EEB51B19}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{EDB0C366-8E33-4798-9DBB-51E818FAE13D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{9A831F0F-1BAF-494F-8437-B9BC8748A00A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{210B7662-550A-454C-8EBC-818D714A8B41}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{2BC0C070-1025-48D8-95B3-55BB95E42887}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dr Langeskov The Tiger and The Terribly Cursed Emerald A Whirlwind Heist\DrLangeskov.exe FirewallRules: [{171755A4-C547-4A57-AE20-AD3CE71E9E34}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dr Langeskov The Tiger and The Terribly Cursed Emerald A Whirlwind Heist\DrLangeskov.exe FirewallRules: [{45C61530-49A0-415A-BE91-7B10EF629FBA}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Rise of the Tomb Raider\ROTTR.exe FirewallRules: [{D4B53B83-0DE5-428B-A639-3A42DB0BAA47}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Rise of the Tomb Raider\ROTTR.exe FirewallRules: [{19BD4715-893B-464D-B920-3D13FE652BC6}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Hyper Fighters\Game.exe FirewallRules: [{945B4FFC-0C3E-4087-A44E-40363AEDDEE6}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Hyper Fighters\Game.exe FirewallRules: [{70BAC34F-EDB7-4299-AE21-A19C0F6DD7B3}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Crystals of Time\Crystals of Time.exe FirewallRules: [{A4D7E53C-339A-493C-A0DE-ABCB6DFBD472}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Crystals of Time\Crystals of Time.exe FirewallRules: [{35D9F060-F787-4780-9765-6674CB5326A8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Cities in Motion 2\CIM2.exe FirewallRules: [{BDFD94C7-AD96-4ECC-B6A9-40615EFFB0C0}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Cities in Motion 2\CIM2.exe FirewallRules: [{3C0F7E2D-F2E6-4344-B260-8551F0DCE9A9}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\A Virus Named TOM\AVNT.exe FirewallRules: [{75999081-4B15-4EA1-9D8B-19EBE345D633}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\A Virus Named TOM\AVNT.exe FirewallRules: [{2E443887-A2D3-4B45-A75E-4CB463125C97}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe FirewallRules: [{E0EC5389-6B8B-4C62-9814-55D02BBC0902}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe FirewallRules: [{838CD2E4-062F-49FD-A79D-2B63B426A6CE}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{FFA50430-2DD6-4F69-A1FE-2DDD9192EA67}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{B740DA22-42F3-4775-BEE8-B6A9F4704848}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Psychonauts\Psychonauts.exe FirewallRules: [{A4F2CCCB-0359-4C3B-9ADD-6A8A6298AFCA}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Psychonauts\Psychonauts.exe FirewallRules: [{090F51D8-FAB2-4451-B895-2D6C17CDE64C}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Elite Dangerous\EDLaunch.exe FirewallRules: [{5590F03B-A339-4B93-BFFD-DD907953ED1B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Elite Dangerous\EDLaunch.exe FirewallRules: [{007EAE7F-D6EB-401D-AB88-477342EAD0E4}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare\PVZ.Main_Win64_Retail.exe FirewallRules: [{4E8C08CE-7C11-4AD2-9FD4-193DD42F6AAF}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare\PVZ.Main_Win64_Retail.exe FirewallRules: [{A101DDC5-40EB-4CFF-A73C-B217089EC147}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Alien Isolation\AI.exe FirewallRules: [{C3B61434-4036-42D7-998E-54EA69AB7043}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Alien Isolation\AI.exe FirewallRules: [{A90E7774-886D-4CC5-B42C-DBF18B90B47F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Beginners Guide\beginnersguide.exe FirewallRules: [{475BE081-B120-4076-8875-C7DC5ABD646A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Beginners Guide\beginnersguide.exe FirewallRules: [{DA416742-1950-40F1-9410-12E6448639AC}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Undertale\UNDERTALE.exe FirewallRules: [{9679E6B8-C29F-4BA9-AE19-E91D01332735}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Undertale\UNDERTALE.exe FirewallRules: [{F06BF579-BAE7-4F42-B538-9490D4CA9228}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{F1E63541-386C-459A-8010-C4B3570D46AD}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{3AB03EFA-D1BA-49E4-8D34-6F452D6F7E99}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{CBBE630C-FA64-4BB6-BBF7-4476C768CA42}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{744D65C5-034A-43FD-A2C7-6CE464F68E3A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{4BC24E26-56F9-4285-B63A-A7192FA7722B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{20827E84-4193-4502-B975-68B31CA4BD41}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\game\binaries\x86\survarium.exe FirewallRules: [{EFF8C965-1FFB-49E0-B45C-19BBD05B86A8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\game\binaries\x86\survarium.exe FirewallRules: [{7E06B994-4AA1-457B-86BC-50EC7399F150}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_updater.exe FirewallRules: [{DB5B65D1-FCE7-444E-A800-1340AFF5401A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_updater.exe FirewallRules: [{8FE33849-7134-4F76-99CA-DC66D190CEDE}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_updater.exe FirewallRules: [{EE45F628-2FB6-456D-AFBA-E7A9E61AC282}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_updater.exe FirewallRules: [{8C4AE2B3-E98F-41DD-B1EC-508D11B903A8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Survarium\temp\survarium_launcher.exe FirewallRules: [{F10D96E3-75F0-495D-8567-24A63B459F38}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForest.exe FirewallRules: [{FBEB0BCA-096A-4C21-98B7-2CF47AF18744}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Forest\TheForest.exe FirewallRules: [{6A7FE8EA-DA2C-4150-B955-3FF72B7B124E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Mean Greens - Plastic Warfare\TheMeanGreens\Binaries\Win64\TheMeanGreens-Win64-Shipping.exe FirewallRules: [{3450E849-2E0B-45ED-99B3-CE9D7BEB2F88}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Mean Greens - Plastic Warfare\TheMeanGreens\Binaries\Win64\TheMeanGreens-Win64-Shipping.exe FirewallRules: [{652EA373-212F-4029-B56F-4BD62F45CE4E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe FirewallRules: [{F533214A-FEE4-4AF7-91FE-ACB8CD751307}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe FirewallRules: [{3AA1135F-AA49-4E67-AD4D-EC405C50AE8F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Reign Of Kings\Reign of Kings.exe FirewallRules: [{17BD5ED4-518C-4515-8CA0-F481C70549F9}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Reign Of Kings\Reign of Kings.exe FirewallRules: [{AF1BB054-A1A2-437B-8235-C4051F7CE08C}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe FirewallRules: [{F0178BB6-48BB-4AB0-9D87-F21B120C2E2B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe FirewallRules: [{E2C092CA-9B6C-40A7-A41C-C99AB34522F4}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe FirewallRules: [{0D166841-C43E-492C-B215-904EE95AAB25}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe FirewallRules: [{F907BC11-3F66-4AE7-9E0C-A4D02260200F}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{36E68249-281C-4377-9A13-4AC9AB2824EE}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{0ECA9805-B718-4955-A9E8-844F6C9DCE69}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{17EC919A-0FA5-44CB-A702-8EED4FDB3DB1}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{36418998-E708-4005-B1E6-D3E2035C1D84}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe FirewallRules: [{F58BC699-5FB0-4E6C-B81E-3F7F316D2528}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe FirewallRules: [{93465E08-A922-4781-AAE0-1E15BF04B98D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{C0304AF8-976C-48A0-8518-36BAEE645347}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{8385A206-2B05-4766-A163-13F0212D96AC}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Super 3-D Noah's Ark\noah3d.exe FirewallRules: [{8A258FA6-5790-4D2C-AC09-BD32DE4AA263}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Super 3-D Noah's Ark\noah3d.exe FirewallRules: [{94F5D089-45BF-48C6-9FB9-A7C9B42CAFD4}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{E53B3281-6C8F-4B22-B8A6-44726E22D32B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{C370D024-9016-4848-866F-E5ACAA00BBA6}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{743691EE-6AF3-4AA3-928D-A7F135584358}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{CF813E8D-1037-440F-AACB-79379C998C85}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{08AC72D2-BB4B-49CE-AA49-66BA196C27FF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{364B8CF9-B9DD-4C6A-9FCB-93813DD7BC1B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Stanley Parable\stanley.exe FirewallRules: [{C6C4FFD0-A66A-4F9A-9D7E-B3EFC58AE389}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\The Stanley Parable\stanley.exe FirewallRules: [{29E1B492-4044-4B58-B88C-6A11138776DD}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Game of Thrones\Binaries\Win32\ShippingPC-AGOTGame.exe FirewallRules: [{4D5212A5-B5E0-4877-8BC8-217537153E9D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Game of Thrones\Binaries\Win32\ShippingPC-AGOTGame.exe FirewallRules: [{1C3A7854-B97E-4476-8F14-CAB76672E09A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{26F3EC11-A978-4A71-B79B-D11E0BA6C3D8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{D5501BD4-9241-46EB-B3B2-9ABC5A6A6743}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Tomb Raider\TombRaider.exe FirewallRules: [{BE5281FD-433F-4C70-9A74-2BA0CC7BE7A2}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Tomb Raider\TombRaider.exe FirewallRules: [{029CADB9-4EDD-410A-B7F5-6DD4675D9FA4}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Titan Souls\TITAN.exe FirewallRules: [{0D67FE43-210B-46A0-BB52-4EC14A1BD751}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Titan Souls\TITAN.exe FirewallRules: [{814D7E78-A9DE-4F9B-BA0B-5D3AD673961D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\ChivLauncher.exe FirewallRules: [{658A91C8-D286-4A7E-8949-25F449FAE776}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\ChivLauncher.exe FirewallRules: [{EBC16B50-046C-47AD-84C9-02D8800F064C}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe FirewallRules: [{BB61A339-34B5-499F-89C5-F00468212AC0}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe FirewallRules: [{A62825F8-10E9-49E0-B6F2-210A784A8587}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe FirewallRules: [{6C604F05-EDB5-47BE-95A3-CBC98FC67856}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe FirewallRules: [{5E9144AC-547E-4A72-BDEE-F0453393B08A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{0A422458-CA16-4121-8838-6D74A7989430}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{A570EE0C-E524-47D5-A496-63C611ED453F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{554F1C53-795B-4ACD-8813-0BAA0F4909C8}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{A9802445-76F6-4FD6-9044-E65D7D2DE4EC}] => (Block) F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe FirewallRules: [{186B13E8-91F8-459A-BB7B-15C000A36CFD}] => (Block) F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe FirewallRules: [UDP Query User{36F9BB3D-13B6-4674-A1BC-22589A018C6C}F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe FirewallRules: [TCP Query User{4B6F32BA-8D19-4133-AAF2-30557F9EDED3}F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4m.exe FirewallRules: [{5B895A57-D5CA-47B3-A5CA-EF65932CF2D2}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe FirewallRules: [{C46DCB7A-B9EF-4D57-8563-466E07FD9C2C}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe FirewallRules: [{9A0639E9-2FAC-4A21-90AA-7F48C357E47F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{88CB1A78-849A-439C-86E8-219AC82E1CF1}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{FE437640-B646-4CE2-9486-D3C060CF1A19}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{7C13880C-E49A-4AD9-BDA8-CD461A85D0F8}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [UDP Query User{E51995AB-6BF7-49B1-9AA2-B84CE7DE7F5C}F:\program files (x86)\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe] => (Allow) F:\program files (x86)\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{B62FE74C-76AB-4346-BE40-675C2B400AB8}F:\program files (x86)\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe] => (Allow) F:\program files (x86)\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe FirewallRules: [{B8E8467F-C4B6-4982-A41E-85DCDA661CE3}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{099BD97F-7FE3-41DC-91E2-19A332ED07E8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{0D37ED60-46CF-49E5-80E6-C29461924136}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{EB44B25C-AC1F-4EA7-8190-E2B96C5C9C3F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{FF62D608-C673-472B-B009-46BA1961A087}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Unity\ACU.exe FirewallRules: [{C6CE6C7B-4F0C-40E2-AE20-F570AAF306B1}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Unity\ACU.exe FirewallRules: [{6C1732E5-48BD-43A8-AADB-6E3DA385760A}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Syndicate\ACS.exe FirewallRules: [{6CBD96DC-C298-4B71-83C1-9840EEFF8118}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{DC25CEF3-6993-4E12-92E1-EF1B927293B8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{F517306C-4347-4D2A-AC0F-C8C0B4377261}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{570AD0C8-721F-4BF8-9C67-9C3D00C4FA8F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{B4FF6DEB-E7A0-4E09-A18D-19468DD492EA}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{6B00B379-99D5-495B-9FA5-B070B3DFFC52}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{705BC38A-3644-4DB4-8F8E-6BBF83D82D6B}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe FirewallRules: [{6A121E39-A2B5-4045-935A-669848D221DC}] => (Allow) F:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe FirewallRules: [{0B65F213-3BB3-4821-B9B8-44ADCFD669B6}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe FirewallRules: [{96900227-9E95-4C92-8FA1-C9AAA2201F64}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe FirewallRules: [UDP Query User{D649DB51-FF9B-4B17-8DC2-EC1B87B70E98}C:\users\manju\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\manju\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{5BBF1208-46A4-4F2D-8137-17AF6DC9725B}C:\users\manju\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\manju\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{255BF94D-D832-4FAC-9CFC-5B3A505352EF}F:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) F:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe FirewallRules: [TCP Query User{5A5B7579-BA52-4F38-AB95-A0E8A6A9E199}F:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) F:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe FirewallRules: [{C9F17517-F36E-41D0-A638-5E7EE795A768}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\Benchmark.exe FirewallRules: [{7D52BC6F-8FB0-4698-A1FE-8570EE70883D}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\Benchmark.exe FirewallRules: [{A412DF6A-BD52-4354-B0C7-D60DD0445320}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\AddonWeb.exe FirewallRules: [{7FCA4201-92CA-437B-AD86-3C00FA2182EE}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\AddonWeb.exe FirewallRules: [{36FB968D-CBE8-4E83-B6C2-997F3427CF08}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\Anno4Web.exe FirewallRules: [{601A4000-D74E-4183-A8B1-4FE6E5FBEC19}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\tools\Anno4Web.exe FirewallRules: [{200284F8-C014-41EC-9CBC-B83424F3A6A6}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\Addon.exe FirewallRules: [{5A89227D-EABF-43B1-86CD-1DE3AEFBA503}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\Addon.exe FirewallRules: [{D2200968-7215-4707-9A82-C225757F7825}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\Anno4.exe FirewallRules: [{2F282B48-C68D-4C5A-A737-E0E32D65691A}] => (Allow) F:\Program Files (x86)\Ubisoft\Related Designs\ANNO 1404 - Königsedition\Anno4.exe FirewallRules: [UDP Query User{D91E9441-644B-43B1-A100-F25A1B9EB39F}F:\program files (x86)\steam\steamapps\common\fallout 4\fallout4.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\fallout 4\fallout4.exe FirewallRules: [TCP Query User{71B7F994-766D-4320-9080-C8DE8BB7C0C0}F:\program files (x86)\steam\steamapps\common\fallout 4\fallout4.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\fallout 4\fallout4.exe FirewallRules: [{1C6F154B-1DE1-406E-ABE0-D40F90F02146}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{F321A0D1-C848-4183-AC72-774DE441B3AF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{FDBA679D-CAFA-40EA-9ADB-5830D67FA3CF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [UDP Query User{01C5FED2-562D-4807-8F7C-F463DDEBEF31}F:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) F:\program files (x86)\origin games\battlefield 4\bf4.exe FirewallRules: [TCP Query User{8E4932E0-4883-43BF-9002-D4B662FE8566}F:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) F:\program files (x86)\origin games\battlefield 4\bf4.exe FirewallRules: [{BD4067D9-3734-4DBA-A37F-43DDD6256A76}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{45F87A48-A68E-4AAF-800F-2D25DA7B3B28}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{6C5E7F68-8A9F-4BC4-BF9D-50E86063C074}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{372716F6-8313-4B6C-9AB4-F594671EBD33}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{554B72D7-3844-4ABF-A51E-D8B18DD5F15C}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{928A8E07-D02C-470F-98FF-E858BC14C5F5}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{F57C3991-1317-4F6B-8CB3-ADBCAE5282AF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Sniper Elite 3\Launcher\Sniper3Launcher.exe FirewallRules: [{BF727255-28AE-4164-9111-07531D4899AF}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Sniper Elite 3\Launcher\Sniper3Launcher.exe FirewallRules: [{C4D3DD93-5F2B-4894-A2DE-9758064C4853}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Metro Last Light Redux\metro.exe FirewallRules: [{E9EC8678-252D-4C36-83D6-53C1FBCD1A25}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Metro Last Light Redux\metro.exe FirewallRules: [{1D2ABD60-6597-4A27-9622-25A95CD5B494}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{F694A2F6-0F25-41E8-BF05-3B4010D3765B}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{45E81DFA-8CAA-43AB-9A15-3CDD43F7F1EC}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Hitman Absolution\HMA.exe FirewallRules: [{A2EF2561-9DB1-4BDD-BE33-D87A868711B3}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Hitman Absolution\HMA.exe FirewallRules: [{F22A319E-2410-45A4-A78F-4E70758BE648}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{EE8A7FB3-3FF7-42FF-B23E-46FD405E8127}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{F821CCE8-4055-4FBB-B572-C06900AEE871}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{DE602223-F5A6-46CB-AFCD-CCAB47F1F976}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{B44E94B8-C0CD-484A-80AB-9EE47AEDAB44}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{74880F94-E3C0-413D-B8A6-24DEE73457C5}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{22ED603D-56D4-421D-B03C-C757B852F8C3}] => (Allow) F:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{1BB9F160-132F-4F6D-ACB7-56F5DF064B8B}] => (Allow) F:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{3CD957BC-0ADA-4520-8BDC-B9EA922AC26D}] => (Allow) F:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{4B5F8BBE-F50C-4FF9-85CB-3321E6B62D03}] => (Allow) F:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{0D2E71F6-E4F0-4A88-AE89-3D94C5F93B35}] => (Allow) D:\Spiele\Steam\bin\steamwebhelper.exe FirewallRules: [{F7BC8775-082D-4019-8397-9051D71DEC0C}] => (Allow) D:\Spiele\Steam\bin\steamwebhelper.exe FirewallRules: [{35BAB6B6-B9B6-421F-ADC4-77A1C4F65861}] => (Allow) D:\Spiele\Steam\Steam.exe FirewallRules: [{CDF77893-4A79-426B-9858-9AF23333CB02}] => (Allow) D:\Spiele\Steam\Steam.exe FirewallRules: [{E025CAF6-1CAC-4843-B3C4-4DAC19725B8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E6346382-9EBC-43A0-9D9F-E49232B47EC7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E65A3F25-1217-4A21-B075-75525A18E97C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{202AE731-026A-4F0F-8D59-D6AB27547FC2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{D68F9378-F77F-4D69-A121-A873FB90D725}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{DF1C1802-7974-4A12-9154-70AAD6AEF63B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{9410168B-6750-4EFF-B1E0-1F76D3B062FA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [TCP Query User{1602E783-889E-4006-9979-EDB8F335DFA8}F:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) F:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{1EB4189C-7498-410F-A8FF-3B3C7735A6F5}F:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) F:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [{F2779016-2C24-4DBB-BE4E-E4AA9C135CCF}] => (Block) F:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [{D046A3CE-0C05-4DA7-9436-E6E374224E1C}] => (Block) F:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{26980ECA-CAA3-47DD-B5AA-9A6EC4274CA7}D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe] => (Allow) D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe FirewallRules: [UDP Query User{E795839A-4DD3-441A-8E95-24AA38CA87CA}D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe] => (Allow) D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe FirewallRules: [{224DAF00-D72C-43DC-912F-6BB8DBA2C1D6}] => (Block) D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe FirewallRules: [{2201F378-0885-42C0-B88F-BD56BE88DC73}] => (Block) D:\users\manju\desktop\stuff\cracks etc\flat out 2\flatout2.exe FirewallRules: [{0357CE78-59E8-40EC-8F2E-68EBC84381F5}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\DiRT Showdown\showdown.exe FirewallRules: [{CE27647C-0B1F-4AF6-84DC-5EC8C0463ED0}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\DiRT Showdown\showdown.exe FirewallRules: [{FAEC1E17-B63F-4856-B8AD-C13B1B3BE668}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [{F1B8967B-1497-4C05-8F39-49456C6CBAE3}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [TCP Query User{40CD54D5-9D39-4EBD-A951-B7CFDF685CDA}D:\users\manju\desktop\factorio - cracked-hoster.com\factorio - cracked-hoster.com\bin\win32\factorio.exe] => (Allow) D:\users\manju\desktop\factorio - cracked-hoster.com\factorio - cracked-hoster.com\bin\win32\factorio.exe FirewallRules: [UDP Query User{E13FA047-3F47-4655-B56D-1686D5104C8C}D:\users\manju\desktop\factorio - cracked-hoster.com\factorio - cracked-hoster.com\bin\win32\factorio.exe] => (Allow) D:\users\manju\desktop\factorio - cracked-hoster.com\factorio - cracked-hoster.com\bin\win32\factorio.exe FirewallRules: [TCP Query User{A1C0B63A-3F60-459A-BBA4-4A62B9B8C90D}F:\program files (x86)\origin games\bfh\bfh.exe] => (Allow) F:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [UDP Query User{7EE08D35-89D5-4E3B-9B2F-3ECB958384EE}F:\program files (x86)\origin games\bfh\bfh.exe] => (Allow) F:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{F35F054F-83EC-4D3B-AD9A-2F1CF9D75AE4}] => (Block) F:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{C80741A0-113F-4006-9920-519835AFAFCE}] => (Block) F:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{BE333B89-9FC0-4DC6-A813-00955ECA41CA}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe FirewallRules: [{BDA9C5A0-5324-4749-810A-87F63E0900A4}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe FirewallRules: [{FB516AD9-8259-446C-98F2-27B06653D53F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe FirewallRules: [{3550AC2D-2BC0-4305-B195-0D76E8024F15}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe FirewallRules: [{A87D0583-F259-4401-A011-5E6ACC4B0984}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe FirewallRules: [{9CF4DB5B-0B17-4C53-8C70-00E6740B9D76}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe FirewallRules: [{2F320BBF-6C2B-476D-A329-A63DEFA3E998}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{50FE6AB0-390D-4BC1-935E-F7FEA740A32F}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{52FD7FA8-FD65-44B7-9780-D595FD674455}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\tbs\win32\The Banner Saga.exe FirewallRules: [{61B311B8-C7D2-43D2-9C1A-DEDE5E4E837E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\tbs\win32\The Banner Saga.exe FirewallRules: [{073B8087-279F-4BCF-952F-ABE1ECCC59BA}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Battleborn Open Beta\Binaries\Win64\Battleborn.exe FirewallRules: [{8536412E-8298-46F6-86CD-F920FEB2259E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Battleborn Open Beta\Binaries\Win64\Battleborn.exe FirewallRules: [TCP Query User{A7DFE4DF-D949-4B09-B821-26D9CAB46701}F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [UDP Query User{9011C41D-BEB7-443B-AF03-4FD00C3EB21C}F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{47AF2C5C-F946-4F90-9EE5-6A85D1E0BDB8}] => (Block) F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{5895D70A-4CD3-4853-BFCB-A6AA1EC12C72}] => (Block) F:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{6AED48A8-3DCD-4BBD-BD25-CB1B5EA9894D}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Battleborn\Binaries\Win64\Battleborn.exe FirewallRules: [{2DE597D8-3EAE-4D3A-8320-454F252C3993}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\Battleborn\Binaries\Win64\Battleborn.exe FirewallRules: [TCP Query User{C0A8178A-D6AB-4BFB-96E8-B41006CBF69B}F:\program files (x86)\overwatch\overwatch.exe] => (Allow) F:\program files (x86)\overwatch\overwatch.exe FirewallRules: [UDP Query User{CF2E8246-BDCF-44FE-B4F4-4C9DE9443C31}F:\program files (x86)\overwatch\overwatch.exe] => (Allow) F:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{85EF2B50-7F09-41A6-A019-C16B2B429138}] => (Block) F:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{38C9F9FA-CDF2-42EE-9918-24D2961144AF}] => (Block) F:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{E3FB4FF0-48EF-459A-910E-D312706A1AD7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{2565F2BA-D987-46E0-A177-FDDAA9253B38}C:\users\manju\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\manju\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{7BD3B878-8D47-40AB-ADDE-EF3087FFAB62}C:\users\manju\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\manju\appdata\roaming\spotify\spotify.exe FirewallRules: [{F738AF88-154E-4C3E-AB64-7437B66952CC}] => (Block) C:\users\manju\appdata\roaming\spotify\spotify.exe FirewallRules: [{F7ABCA20-919A-4619-B9B0-10A1E85675D1}] => (Block) C:\users\manju\appdata\roaming\spotify\spotify.exe FirewallRules: [{21D1218D-6B58-494D-8A7F-A78DE9844DE4}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe FirewallRules: [{42DE016A-2FEC-4BA0-9EAD-4F9A6E1E4390}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe FirewallRules: [{3A389627-F79B-48E2-9A70-E0E4517A0808}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare 2\GW2.Main_Win64_Retail.exe FirewallRules: [{27A12578-BEB1-4448-8147-15F24E3394DF}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare 2\GW2.Main_Win64_Retail.exe FirewallRules: [{0868F378-11C6-450D-9709-F3FC67C44F01}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare 2\GW2.Trial_Win64_Retail.exe FirewallRules: [{168A28F6-E4FC-433C-ADEB-28E8339CDD65}] => (Allow) F:\Program Files (x86)\Origin Games\Plants vs Zombies Garden Warfare 2\GW2.Trial_Win64_Retail.exe FirewallRules: [{E191CD5D-6FC6-4DA6-B538-1A9C5BBA0C4E}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{752EE4C8-0229-4ACC-B983-C7F48B6307A8}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{B4C7D704-2466-4F90-920E-D23D48038AE7}] => (Allow) F:\Program Files (x86)\Origin Games\FIFA 15\fifasetup\fifaconfig.exe FirewallRules: [{88A35CB5-AE4E-43D9-B50D-75B3C4D5DB9B}] => (Allow) F:\Program Files (x86)\Origin Games\FIFA 15\fifasetup\fifaconfig.exe FirewallRules: [{3D5D4D4C-0794-4EDA-84B7-AE0E22463839}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{E0F86BF9-EC82-4BEF-B164-529E13A1037E}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe ==================== Wiederherstellungspunkte ========================= 29-05-2016 18:11:39 Removed CSR Harmony Wireless Software Stack. 31-05-2016 20:54:14 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 06-06-2016 19:45:48 JRT Pre-Junkware Removal 08-06-2016 17:51:10 Removed Vegas Pro 13.0 (64-bit) ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (06/08/2016 05:51:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (06/07/2016 10:19:45 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (06/06/2016 11:34:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MANJU) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (06/06/2016 08:24:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NvStreamUserAgent.exe, Version: 7.1.2071.1338, Zeitstempel: 0x5726e1d3 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.306, Zeitstempel: 0x571af2eb Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000002e909 ID des fehlerhaften Prozesses: 0x910 Startzeit der fehlerhaften Anwendung: 0xNvStreamUserAgent.exe0 Pfad der fehlerhaften Anwendung: NvStreamUserAgent.exe1 Pfad des fehlerhaften Moduls: NvStreamUserAgent.exe2 Berichtskennung: NvStreamUserAgent.exe3 Vollständiger Name des fehlerhaften Pakets: NvStreamUserAgent.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NvStreamUserAgent.exe5 Error: (06/06/2016 07:45:49 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (06/02/2016 09:19:56 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (05/31/2016 09:46:33 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: MANJU) Description: Das Paket „Microsoft.Windows.ShellExperienceHost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy+App“ wurde beendet, da das Anhalten zu lange dauerte. Error: (05/31/2016 08:54:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (05/29/2016 06:11:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (05/26/2016 08:43:34 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Systemfehler: ============= Error: (06/08/2016 05:15:09 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet: %%1 Error: (06/07/2016 11:42:04 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenzugriff_36aebed" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/07/2016 11:42:04 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenspeicher _36aebed" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/07/2016 11:42:04 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Kontaktdaten_36aebed" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/07/2016 11:42:04 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Synchronisierungshost_36aebed" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/07/2016 11:42:04 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (06/07/2016 04:11:27 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet: %%1 Error: (06/07/2016 04:08:46 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet: %%1 Error: (06/07/2016 04:03:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "McAfee Validation Trust Protection Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/07/2016 04:03:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "McAfee Validation Trust Protection Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 CodeIntegrity: =================================== Date: 2016-06-06 22:34:07.893 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:34:07.884 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:34:07.855 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:34:03.168 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:34:03.090 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:33:55.862 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:33:55.778 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:33:55.120 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:33:55.040 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-06-06 22:33:54.464 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz Prozentuale Nutzung des RAM: 48% Installierter physikalischer RAM: 24527.21 MB Verfügbarer physikalischer RAM: 12562.14 MB Summe virtueller Speicher: 28111.21 MB Verfügbarer virtueller Speicher: 14760.59 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:232.4 GB) (Free:76.32 GB) NTFS Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:812.36 GB) NTFS Drive f: (Volume) (Fixed) (Total:1863.01 GB) (Free:723.99 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E5BB659A) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: A770C475) Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: B58054B7) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.4 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
08.06.2016, 17:11 | #5 |
| Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel! FRst: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:07-06-2016 durchgeführt von Manju (Administrator) auf MANJU (08-06-2016 18:07:48) Gestartet von D:\Users\Manju\Desktop Geladene Profile: Manju (Verfügbare Profile: Manju) Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe () C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.9.741.0\McCSPServiceHost.exe (Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRServer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Program Files\ASUS Xonar U7 Audio\CPL\ASUSXonarU7_x64.exe () C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (Spotify Ltd) C:\Users\Manju\AppData\Roaming\Spotify\SpotifyWebHelper.exe () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe (ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.exe (ROCCAT GmbH Co., Ltd.) C:\Program Files (x86)\ROCCAT\Ryos Keyboard\Ryos MK Monitor.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\nacl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\nacl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Blizzard Entertainment) F:\Program Files (x86)\Battlenet\Battle.net\Battle.net.7208\Battle.net.exe () F:\Program Files (x86)\Battlenet\Battle.net\Battle.net.7208\Battle.net Helper.exe (Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.4949\Agent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Security) C:\Program Files\Common Files\McAfee\ClientAnalytics\McClientAnalytics.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13636824 2013-07-26] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-05-02] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated) HKLM\...\Run: [GamecomSound] => C:\Program Files\ASUS Xonar U7 Audio\CPL\ASUSXonarU7_x64.exe [2454528 2015-10-05] () HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2312896 2016-02-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [RoccatKonePure] => C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.EXE [561152 2014-01-20] (ROCCAT GmbH) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565448 2016-04-05] (LogMeIn Inc.) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [Steam] => F:\Program Files (x86)\Steam\steam.exe [3077712 2016-04-30] (Valve Corporation) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [GalaxyClient] => F:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [3985976 2016-05-26] (GOG.com) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [EADM] => F:\Program Files (x86)\Origin\Origin.exe [3639280 2016-05-08] (Electronic Arts) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [NvLedServiceHost] => C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe [86904 2016-05-02] () HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4179288 2015-11-18] (Disc Soft Ltd) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53130368 2016-05-17] (Skype Technologies S.A.) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [Spotify Web Helper] => C:\Users\Manju\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1554032 2016-06-01] (Spotify Ltd) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\Run: [Spotify] => C:\Users\Manju\AppData\Roaming\Spotify\Spotify.exe [6859888 2016-06-01] (Spotify Ltd) HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\MountPoints2: {4cadf984-d178-11e5-8d98-d05099717cf0} - "G:\setup.exe" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\MountPoints2: {897d514a-f46e-11e5-8da2-d05099717cf0} - "I:\Setup.exe" HKU\S-1-5-21-1906051270-1771474172-258770257-1001\...\MountPoints2: {e67fe4de-93aa-11e5-8d83-d05099717cf0} - "H:\setup\rsrc\Autorun.exe" ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-01-22] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-01-22] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-01-22] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2015-11-07] ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{3A435941-E398-438A-9CAF-31D8996CF7C8}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Ryos Driver.lnk [2015-11-07] ShortcutTarget: Ryos Driver.lnk -> C:\Program Files (x86)\ROCCAT\Ryos Keyboard\Ryos MK Monitor.exe (ROCCAT GmbH Co., Ltd.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\..\Interfaces\{1dfdf5cc-641c-4d8d-ad68-801994e40fcc}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1906051270-1771474172-258770257-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_77\bin\ssv.dll [2016-03-25] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-25] (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-03-25] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-25] (Oracle Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2016-05-24] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2016-05-24] (McAfee, Inc.) FireFox: ======== FF ProfilePath: C:\Users\Manju\AppData\Roaming\Mozilla\Firefox\Profiles\nugoi3Ip.default FF Plugin: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-25] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-25] (Oracle Corporation) FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-05-24] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-02-12] (Adobe Systems) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-03-20] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-03-20] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-25] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-25] (Oracle Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-05-24] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-05-20] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-05-20] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-02-12] (Adobe Systems) FF Extension: Avira Browser Safety - C:\Users\Manju\AppData\Roaming\Mozilla\Firefox\Profiles\nugoi3Ip.default\Extensions\abs@avira.com.xpi [2016-04-01] Chrome: ======= CHR StartupUrls: Default -> "hxxps://www.google.de/","hxxp://www.google.com","hxxp://www.mystartsearch.com/?type=hp&ts=1425656354&from=fun&uid=ST1000DM003-1ER162_W4Y13HMXXXXXW4Y13HMX" CHR Session Restore: Default -> ist aktiviert. CHR Profile: C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2016-05-05] CHR Extension: (Magic Actions for YouTube™) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2016-05-30] CHR Extension: (Google Drive) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-07] CHR Extension: (YouTube) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-07] CHR Extension: (Google Cast) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2016-03-24] CHR Extension: (Pushbullet) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd [2016-05-11] CHR Extension: (Google-Suche) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-07] CHR Extension: (Subscriptions Grid For YouTube™) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcnjhgnfnmijfkmcddcmffeamphmmeed [2016-04-25] CHR Extension: (Netflix) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\deceagebecbceejblnlcjooeohmmeldh [2015-11-07] CHR Extension: (Google Play Musik) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2016-05-25] CHR Extension: (AdBlock) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-06-02] CHR Extension: (GeForce Experience Stream Client) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjljknijpnfibppaijefibndmiabonep [2016-06-07] CHR Extension: (Google Play Music) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2016-06-07] CHR Extension: (Turbo for YouTube) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhgnmngkgolhffjjdaipkkjbmbnpefef [2016-04-01] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02] CHR Extension: (Click&Clean App) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2016-06-05] CHR Extension: (Google Mail) - C:\Users\Manju\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-07] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 0021821465308323mcinstcleanup; C:\Users\Manju\AppData\Local\Temp\002182~1.EXE [962400 2016-04-12] (McAfee, Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [693440 2016-01-28] (Adobe Systems Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated) R2 ASRockIOMon; C:\Program Files (x86)\Fatal1ty Utility\F-Stream Tuning\Bin\IOMonitorSrv.exe [454656 2013-07-25] () [Datei ist nicht signiert] S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1863688 2016-04-09] () R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-01-19] (Digital Wave Ltd.) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1369432 2015-11-18] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [243984 2016-03-17] (EasyAntiCheat Ltd) S3 GalaxyClientService; F:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [246328 2016-05-26] (GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6167096 2016-05-26] (GOG.com) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1165368 2016-05-02] (NVIDIA Corporation) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-03-20] (Intel Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-03-20] (Intel Corporation) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2016-04-05] (LogMeIn, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [989192 2016-05-24] (McAfee, Inc.) R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.9.741.0\\McCSPServiceHost.exe [1903320 2016-04-18] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [795528 2016-04-20] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-03-07] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-04-01] (McAfee, Inc.) R3 mfevtp; C:\WINDOWS\system32\mfevtps.exe [277744 2016-03-07] (McAfee, Inc.) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1424352 2016-04-21] (McAfee, Inc.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-05-02] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-05-02] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-05-02] (NVIDIA Corporation) S3 Origin Client Service; F:\Program Files (x86)\Origin\OriginClientService.exe [2120712 2016-05-08] (Electronic Arts) R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1029856 2016-04-21] (Intel Security, Inc.) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-11-07] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-11-29] () R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [344576 2014-04-17] (Qualcomm Atheros) [Datei ist nicht signiert] S3 Survarium-Steam Update Service; F:\Program Files (x86)\Steam\steamapps\common\Survarium\game\binaries\x86\survarium_service.exe [97880 2015-12-09] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 AsrDrv101; C:\Windows\SysWOW64\Drivers\AsrDrv101.sys [22280 2015-11-07] (ASRock Incorporation) S3 AsrHidFilter; C:\Windows\system32\DRIVERS\AsrHidFilter.sys [20232 2013-09-09] (ASRock Inc.) R0 AsrRamDisk; C:\Windows\System32\drivers\AsrRamDisk.sys [40200 2013-08-02] (ASRock Inc.) R3 ASUSU7; C:\Windows\system32\DRIVERS\ASUSU7.SYS [406016 2015-10-05] (C-Media Inc.) R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [82608 2014-04-10] (Qualcomm Atheros, Inc.) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [78632 2016-03-11] (McAfee, Inc.) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-11-28] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47160 2015-11-28] (Disc Soft Ltd) R3 Hamachi; C:\Windows\System32\drivers\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207968 2016-02-24] (McAfee, Inc.) R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [22216 2014-02-03] () R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [22728 2014-02-03] () R2 IntelHaxm; C:\Windows\system32\DRIVERS\IntelHaxm.sys [84992 2015-01-30] (Intel Corporation) R3 ISCT; C:\Windows\System32\drivers\ISCTD.sys [44744 2014-02-03] () R3 Ke2200; C:\Windows\System32\drivers\e22w8x64.sys [130224 2014-03-12] (Qualcomm Atheros, Inc.) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2016-03-04] (Intel Corporation) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [419624 2016-03-11] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [349480 2016-03-11] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [83608 2016-03-11] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [493352 2016-03-11] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [842536 2016-03-11] (McAfee, Inc.) R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [543488 2016-02-10] (McAfee, Inc.) S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [109480 2016-02-10] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [243496 2016-03-11] (McAfee, Inc.) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-05-02] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13536 2015-05-27] () R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions) R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [127456 2016-03-04] (Oracle Corporation) R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [205784 2016-03-04] (Oracle Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-06-07 20:14 - 2016-06-08 17:49 - 00000000 ____D C:\Users\Manju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin 2016-06-07 16:54 - 2016-06-07 16:54 - 00019995 _____ C:\Users\Manju\AppData\Local\recently-used.xbel 2016-06-07 16:08 - 2016-06-07 16:08 - 00001989 _____ C:\Users\Public\Desktop\McAfee® AntiVirus Plus.lnk 2016-06-07 16:08 - 2016-06-07 16:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2016-06-07 16:08 - 2016-02-24 21:07 - 00207968 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\HipShieldK.sys 2016-06-07 16:07 - 2016-06-07 16:07 - 00003142 _____ C:\WINDOWS\System32\Tasks\McAfeeLogon 2016-06-07 16:07 - 2016-06-07 16:07 - 00000000 ____D C:\WINDOWS\System32\Tasks\McAfee 2016-06-07 16:07 - 2016-06-07 16:07 - 00000000 ____D C:\ProgramData\Intel Security 2016-06-07 16:05 - 2016-06-07 16:08 - 00000000 ____D C:\Program Files\McAfee 2016-06-07 16:05 - 2016-06-07 16:08 - 00000000 ____D C:\Program Files (x86)\McAfee 2016-06-07 16:05 - 2016-06-07 16:05 - 00000000 ____D C:\Program Files\McAfee.com 2016-06-07 16:05 - 2016-06-07 16:05 - 00000000 ____D C:\Program Files\Common Files\Intel Security 2016-06-07 16:05 - 2016-06-07 16:05 - 00000000 ____D C:\Program Files\Common Files\AV 2016-06-07 16:03 - 2016-03-07 15:38 - 00277744 _____ (McAfee, Inc.) C:\WINDOWS\system32\mfevtps.exe 2016-06-07 16:02 - 2016-06-07 22:37 - 00000000 ____D C:\ProgramData\McAfee 2016-06-07 16:02 - 2016-06-07 16:07 - 00000000 ____D C:\Program Files\Common Files\McAfee 2016-06-06 22:12 - 2016-06-06 22:12 - 00000000 ____D C:\Users\Manju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image Composite Editor 2016-06-06 22:12 - 2016-06-06 22:12 - 00000000 ____D C:\Users\Manju\AppData\Local\Image Composite Editor 2016-06-06 22:12 - 2016-06-06 22:12 - 00000000 ____D C:\Program Files\Microsoft Research 2016-06-06 20:22 - 2016-06-07 15:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2016-06-06 19:46 - 2016-06-06 19:46 - 00000705 _____ C:\Users\Manju\Desktop\JRT.txt 2016-06-06 19:36 - 2016-06-06 19:42 - 00000000 ____D C:\AdwCleaner 2016-06-06 19:35 - 2016-06-08 18:07 - 00000000 ____D C:\FRST 2016-06-06 19:17 - 2016-06-06 19:48 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-06-06 19:17 - 2016-06-06 19:34 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2016-05-31 21:46 - 2016-05-20 03:57 - 00113208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2016-05-31 21:45 - 2016-05-21 23:09 - 01581624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco64.dll 2016-05-31 21:45 - 2016-05-21 23:09 - 00046024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 39977920 _____ C:\WINDOWS\system32\nvcompiler.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 35117112 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 31639096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 25401280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 21802816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 21346520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 18145256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 17740664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 10642912 _____ C:\WINDOWS\system32\nvptxJitCompiler.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 08733280 _____ C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 02791360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 02419768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 01922496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6436822.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 01573432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6436822.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00909760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00787200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00786360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00772152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00708032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00669952 _____ C:\WINDOWS\system32\nvfatbinaryLoader.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00632664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00631104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00601936 _____ C:\WINDOWS\system32\nvmcumd.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00565208 _____ C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00549240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00452616 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00423360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00385080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00377792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00346560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00315936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00178136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00155952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00153416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00131768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2016-05-31 21:45 - 2016-05-20 10:03 - 00000594 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2016-05-31 21:45 - 2016-05-20 10:03 - 00000594 _____ C:\WINDOWS\system32\nv-vk64.json 2016-05-31 21:26 - 2016-05-31 21:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher® 3 - Wild Hunt [GOG.com] 2016-05-31 21:21 - 2016-05-31 21:46 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2016-05-31 21:21 - 2016-04-14 07:38 - 00102976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2016-05-30 20:44 - 2016-05-30 20:44 - 00000000 ___DL C:\Users\Manju\AppData\LocalLow\PlayReady 2016-05-28 21:10 - 2016-05-28 21:10 - 00066728 _____ (Eugene V. Muzychenko) C:\WINDOWS\system32\Drivers\vrtaucbl.sys 2016-05-28 21:10 - 2016-05-28 21:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable 2016-05-28 21:10 - 2016-05-28 21:10 - 00000000 ____D C:\Program Files\Virtual Audio Cable 2016-05-27 16:31 - 2016-06-07 16:54 - 00000000 ____D C:\Users\Manju\AppData\Local\gtk-2.0 2016-05-27 16:31 - 2016-05-27 16:31 - 00000000 ____D C:\Users\Manju\.thumbnails 2016-05-27 16:06 - 2016-06-07 16:54 - 00000000 ____D C:\Users\Manju\.gimp-2.8 2016-05-27 16:06 - 2016-05-27 16:06 - 00000939 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2016-05-27 16:06 - 2016-05-27 16:06 - 00000000 ____D C:\Users\Manju\AppData\Local\gegl-0.2 2016-05-27 16:06 - 2016-05-27 16:06 - 00000000 ____D C:\Users\Manju\AppData\Local\fontconfig 2016-05-27 16:06 - 2016-05-27 16:06 - 00000000 ____D C:\Program Files\GIMP 2 2016-05-26 12:23 - 2016-05-26 12:23 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2016-05-26 12:23 - 2016-05-26 12:23 - 00000000 ____D C:\ProgramData\Battle.net 2016-05-23 21:55 - 2016-05-23 21:55 - 00000000 ____D C:\Users\Manju\AppData\Local\Splashtop 2016-05-23 21:53 - 2016-05-23 21:53 - 00000000 ____D C:\ProgramData\Splashtop 2016-05-23 21:53 - 2016-05-23 21:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Splashtop Remote 2016-05-23 21:53 - 2016-05-23 21:53 - 00000000 ____D C:\Program Files (x86)\Splashtop 2016-05-21 13:34 - 2016-05-21 13:34 - 00000931 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk 2016-05-21 13:34 - 2016-05-21 13:34 - 00000000 ____D C:\Users\Manju\AppData\Local\Black_Tree_Gaming 2016-05-21 13:34 - 2016-05-21 13:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager 2016-05-21 13:34 - 2016-05-21 13:34 - 00000000 ____D C:\Program Files\Nexus Mod Manager 2016-05-13 17:15 - 2016-06-08 17:46 - 00000000 ____D C:\Users\Manju\AppData\Local\Spotify 2016-05-13 17:15 - 2016-05-13 17:15 - 00001836 _____ C:\Users\Manju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2016-05-13 17:14 - 2016-06-08 17:36 - 00000000 ____D C:\Users\Manju\AppData\Roaming\Spotify 2016-05-11 20:43 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys 2016-05-11 20:43 - 2016-05-06 06:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-05-11 20:43 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-05-11 20:43 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2016-05-11 20:43 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-05-11 20:43 - 2016-05-06 05:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-05-11 20:43 - 2016-04-30 08:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-05-11 20:43 - 2016-04-30 08:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-05-11 20:43 - 2016-04-23 08:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-05-11 20:43 - 2016-04-23 08:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-05-11 20:43 - 2016-04-23 08:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-05-11 20:43 - 2016-04-23 07:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-05-11 20:43 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-05-11 20:43 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2016-05-11 20:43 - 2016-04-23 07:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-05-11 20:43 - 2016-04-23 07:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-05-11 20:43 - 2016-04-23 07:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-05-11 20:43 - 2016-04-23 07:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-05-11 20:43 - 2016-04-23 07:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-05-11 20:43 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2016-05-11 20:43 - 2016-04-23 07:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2016-05-11 20:43 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2016-05-11 20:43 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-05-11 20:43 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2016-05-11 20:43 - 2016-04-23 07:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-05-11 20:43 - 2016-04-23 07:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-05-11 20:43 - 2016-04-23 07:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-05-11 20:43 - 2016-04-23 07:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-05-11 20:43 - 2016-04-23 07:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-05-11 20:43 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-05-11 20:43 - 2016-04-23 07:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-05-11 20:43 - 2016-04-23 07:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-05-11 20:43 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-05-11 20:43 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-05-11 20:43 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-05-11 20:43 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2016-05-11 20:43 - 2016-04-23 07:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-05-11 20:43 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2016-05-11 20:43 - 2016-04-23 07:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-05-11 20:43 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-05-11 20:43 - 2016-04-23 07:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-05-11 20:43 - 2016-04-23 07:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-05-11 20:43 - 2016-04-23 07:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2016-05-11 20:43 - 2016-04-23 07:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2016-05-11 20:43 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2016-05-11 20:43 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll 2016-05-11 20:43 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll 2016-05-11 20:43 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2016-05-11 20:43 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-05-11 20:43 - 2016-04-23 07:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-05-11 20:43 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2016-05-11 20:43 - 2016-04-23 07:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-05-11 20:43 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2016-05-11 20:43 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll 2016-05-11 20:43 - 2016-04-23 06:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2016-05-11 20:43 - 2016-04-23 06:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-05-11 20:43 - 2016-04-23 06:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-05-11 20:43 - 2016-04-23 06:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2016-05-11 20:43 - 2016-04-23 06:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-05-11 20:43 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-05-11 20:43 - 2016-04-23 06:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-05-11 20:43 - 2016-04-23 06:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-05-11 20:43 - 2016-04-23 06:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-05-11 20:43 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-05-11 20:43 - 2016-04-23 06:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-05-11 20:43 - 2016-04-23 06:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-05-11 20:43 - 2016-04-23 06:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-05-11 20:43 - 2016-04-23 06:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2016-05-11 20:43 - 2016-04-23 06:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2016-05-11 20:43 - 2016-04-23 06:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-05-11 20:43 - 2016-04-23 06:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-05-11 20:43 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll 2016-05-11 20:43 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-05-11 20:43 - 2016-04-23 06:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-05-11 20:43 - 2016-04-23 06:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-05-11 20:43 - 2016-04-23 06:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2016-05-11 20:43 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2016-05-11 20:43 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2016-05-11 20:43 - 2016-04-23 06:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-05-11 20:43 - 2016-04-23 06:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll 2016-05-11 20:43 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-05-11 20:43 - 2016-04-23 06:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-05-11 20:43 - 2016-04-23 06:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-05-11 20:43 - 2016-04-23 06:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-05-11 20:43 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-05-11 20:43 - 2016-04-23 06:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-05-11 20:43 - 2016-04-23 06:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2016-05-11 20:43 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-05-11 20:43 - 2016-04-23 06:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-05-11 20:43 - 2016-04-23 06:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-05-11 20:43 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2016-05-11 20:43 - 2016-04-23 06:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-05-11 20:43 - 2016-04-23 06:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-05-11 20:43 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2016-05-11 20:43 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2016-05-11 20:43 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-05-11 20:43 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-05-11 20:43 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-05-11 20:43 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-05-11 20:43 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-05-11 20:43 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-05-11 20:43 - 2016-04-23 06:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-05-11 20:43 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-05-11 20:43 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-05-11 20:43 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-05-11 20:43 - 2016-04-23 06:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-05-11 20:43 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-05-11 20:43 - 2016-04-23 06:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-05-11 20:43 - 2016-04-23 06:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-05-11 20:43 - 2016-04-23 06:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-05-11 20:43 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-05-11 20:43 - 2016-04-23 06:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-05-11 20:43 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2016-05-11 20:43 - 2016-04-23 06:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-05-11 20:43 - 2016-04-23 06:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-05-11 20:43 - 2016-04-23 06:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2016-05-11 20:43 - 2016-04-23 06:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-05-11 20:43 - 2016-04-23 06:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-05-11 20:43 - 2016-04-23 05:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2016-05-11 20:43 - 2016-04-23 04:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2016-05-11 20:42 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-05-11 20:42 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2016-05-11 20:42 - 2016-04-23 07:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2016-05-11 20:42 - 2016-04-23 07:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-05-11 20:42 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-05-11 20:42 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-05-11 20:42 - 2016-04-23 07:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-05-11 20:42 - 2016-04-23 07:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys 2016-05-11 20:42 - 2016-04-23 07:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-05-11 20:42 - 2016-04-23 06:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2016-05-11 20:42 - 2016-04-23 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2016-05-11 20:42 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2016-05-11 20:42 - 2016-04-23 06:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2016-05-11 20:42 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll 2016-05-11 20:42 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys 2016-05-11 20:42 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe 2016-05-11 20:42 - 2016-04-23 06:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-05-11 20:42 - 2016-04-23 06:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2016-05-11 20:42 - 2016-04-23 06:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2016-05-11 20:42 - 2016-04-23 06:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys 2016-05-11 20:42 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll 2016-05-11 20:42 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe 2016-05-11 20:42 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2016-05-11 20:42 - 2016-04-23 06:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2016-05-11 20:42 - 2016-04-23 06:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-05-11 20:42 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll 2016-05-11 20:42 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2016-05-11 20:42 - 2016-04-23 06:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-05-11 20:42 - 2016-04-23 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-05-11 20:42 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2016-05-11 20:42 - 2016-04-23 06:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-05-11 20:42 - 2016-04-23 06:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll 2016-05-11 20:42 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll 2016-05-11 20:42 - 2016-04-23 06:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-05-11 20:42 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll 2016-05-11 20:42 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll 2016-05-11 20:42 - 2016-04-23 06:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-05-11 20:42 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2016-05-11 20:42 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2016-05-11 20:42 - 2016-04-23 06:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-05-11 20:42 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2016-05-11 20:42 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2016-05-11 20:42 - 2016-04-23 04:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml 2016-05-11 20:42 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-06-08 17:57 - 2015-11-07 01:26 - 01802588 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-06-08 17:57 - 2015-10-30 20:35 - 00776562 _____ C:\WINDOWS\system32\perfh007.dat 2016-06-08 17:57 - 2015-10-30 20:35 - 00155874 _____ C:\WINDOWS\system32\perfc007.dat 2016-06-08 17:57 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF 2016-06-08 17:51 - 2015-12-25 18:08 - 00007660 _____ C:\WINDOWS\system32\--traceoff 2016-06-08 17:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-06-08 17:22 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-06-08 17:16 - 2016-03-19 10:13 - 00003032 _____ C:\WINDOWS\System32\Tasks\AsrSP.exe 2016-06-08 17:16 - 2015-11-07 03:15 - 00003080 _____ C:\WINDOWS\System32\Tasks\AsrKM 2016-06-08 17:16 - 2015-11-07 02:13 - 00001126 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-06-07 22:47 - 2015-11-10 20:46 - 00000000 ____D C:\Users\Manju\AppData\Roaming\Skype 2016-06-07 16:08 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2016-06-07 16:07 - 2015-10-30 09:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP 2016-06-07 15:52 - 2015-11-07 02:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-06-07 15:49 - 2015-12-25 15:16 - 00000000 ____D C:\Users\Manju\AppData\Local\Adobe 2016-06-06 20:04 - 2015-11-07 18:42 - 00103736 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe 2016-06-06 19:44 - 2015-11-28 19:35 - 00000000 ____D C:\Users\Manju\AppData\Local\LogMeIn Hamachi 2016-06-06 19:43 - 2016-03-19 04:43 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-06-06 19:43 - 2016-03-19 04:40 - 00000000 ____D C:\ProgramData\NVIDIA 2016-06-06 19:43 - 2016-02-22 19:11 - 00000091 _____ C:\HaxLogs.txt 2016-06-06 19:43 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-06-06 18:56 - 2015-12-13 20:36 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-06-06 18:56 - 2015-11-10 20:45 - 00000000 ____D C:\ProgramData\Skype 2016-06-05 20:47 - 2015-11-07 03:01 - 00000000 ____D C:\Users\Manju\AppData\Local\Battle.net 2016-06-05 20:25 - 2015-11-07 02:37 - 00000000 ____D C:\Users\Manju\AppData\Roaming\TS3Client 2016-06-05 17:33 - 2015-12-25 15:17 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-06-03 02:15 - 2016-03-19 04:40 - 00000000 ____D C:\Users\Manju 2016-06-01 22:11 - 2015-11-07 02:49 - 00000000 ____D C:\ProgramData\Origin 2016-06-01 20:55 - 2015-11-07 03:15 - 00000080 _____ C:\Users\Manju\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦 2016-06-01 20:51 - 2015-12-19 18:06 - 00000000 ____D C:\Users\Manju\AppData\Roaming\MuseScore 2016-05-31 21:47 - 2016-03-19 04:40 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-05-31 21:47 - 2015-11-07 02:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-05-31 21:46 - 2016-03-28 04:50 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2016-05-31 21:22 - 2015-11-07 02:17 - 00000000 ____D C:\Users\Manju\AppData\Local\NVIDIA 2016-05-26 12:23 - 2016-05-05 03:29 - 00000850 _____ C:\Users\Public\Desktop\Overwatch.lnk 2016-05-25 21:25 - 2015-12-25 22:23 - 00000000 ____D C:\Users\Manju\AppData\Local\CrashDumps 2016-05-23 19:06 - 2015-11-07 01:23 - 00000000 ____D C:\Users\Manju\AppData\Local\Packages 2016-05-22 23:02 - 2016-02-19 17:13 - 13509184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2016-05-21 23:09 - 2016-03-09 12:30 - 00141256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2016-05-21 13:36 - 2015-11-10 16:19 - 00000000 ____D C:\Users\Manju\AppData\Local\Fallout4 2016-05-20 10:03 - 2016-02-19 17:13 - 20305768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 17662432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 17379520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 14410024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 03811440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 03371648 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 00985024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 00379480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2016-05-20 10:03 - 2016-02-19 17:13 - 00040084 _____ C:\WINDOWS\system32\nvinfo.pb 2016-05-20 04:08 - 2016-03-19 04:40 - 06348344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 02454976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 01762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 01352760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2016-05-20 04:08 - 2016-03-19 04:40 - 00533560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 00392128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 00081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2016-05-20 04:08 - 2016-03-19 04:40 - 00069568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2016-05-18 10:37 - 2016-03-19 04:40 - 06448223 _____ C:\WINDOWS\system32\nvcoproc.bin 2016-05-14 01:30 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache 2016-05-14 01:18 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-05-13 15:57 - 2015-09-10 07:44 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-05-13 15:56 - 2015-11-07 02:14 - 00002264 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-05-12 22:09 - 2015-10-30 20:47 - 00000000 ____D C:\Program Files\Windows Journal 2016-05-12 22:09 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2016-05-12 22:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-05-12 22:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-05-12 22:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning 2016-05-12 22:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-05-12 18:33 - 2015-11-07 05:48 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-05-12 18:28 - 2015-11-07 05:48 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-05-11 21:57 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-05-11 21:57 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-05-11 20:43 - 2015-12-25 15:17 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-05-11 20:29 - 2015-11-07 02:13 - 00004188 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2016-05-11 20:29 - 2015-11-07 02:13 - 00003956 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2016-05-11 20:29 - 2015-11-07 02:13 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-01-08 20:20 - 2016-03-29 21:21 - 0001456 _____ () C:\Users\Manju\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2016-06-07 16:54 - 2016-06-07 16:54 - 0019995 _____ () C:\Users\Manju\AppData\Local\recently-used.xbel 2016-03-24 18:54 - 2016-03-24 18:54 - 0007605 _____ () C:\Users\Manju\AppData\Local\Resmon.ResmonCfg 2016-03-19 04:40 - 2016-03-19 04:40 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Manju\AppData\Local\Temp\0021821465308323mcinst.exe C:\Users\Manju\AppData\Local\Temp\avgnt.exe C:\Users\Manju\AppData\Local\Temp\libeay32.dll C:\Users\Manju\AppData\Local\Temp\McCSPInstall.dll C:\Users\Manju\AppData\Local\Temp\mccspuninstall.exe C:\Users\Manju\AppData\Local\Temp\msvcr120.dll C:\Users\Manju\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Manju\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Manju\AppData\Local\Temp\nvStInst.exe C:\Users\Manju\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-06-05 18:04 ==================== Ende von FRST.txt ============================ |
08.06.2016, 22:15 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel! Hau mal diesen McAfee Murks runter. Der Kram ist nicht zu empfehlen...
__________________ --> Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel! |
Themen zu Win 10: Skype sendet link an Kontakte. Anscheinend auch nach pw wechsel! |
angemeldet, bereits, erneute, erscheint, festgestellt, gemeldet, gesendet, gestern, geändert, guten, kennwort, link, links, nachricht, natürlich, nicht mehr, schei, sendet, skype, start, uplay, virtualbox, visual c++ 2015, wechsel, win, windowsapps, woche, würde, zusammen |