Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Malwarebytes Dauermeldung bösartige Webseite

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

 
Alt 21.06.2016, 17:55   #5
Genotheone
 
Malwarebytes Dauermeldung bösartige Webseite - Standard

Malwarebytes Dauermeldung bösartige Webseite



erstmal vielen dank für das engagement matthias. ein dokument von admcleaner war nicht zusätzlich verfügbar.. wurde vorher keins angelegt



Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 19-06-2016 01
durchgeführt von Geno (2016-06-21 17:04:26)
Gestartet von C:\Users\Geno\Desktop
Windows 10 Pro Version 1511 (X64) (2015-12-12 17:54:29)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-2348534689-2675003789-707375039-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2348534689-2675003789-707375039-503 - Limited - Disabled)
Gast (S-1-5-21-2348534689-2675003789-707375039-501 - Limited - Disabled)
Geno (S-1-5-21-2348534689-2675003789-707375039-1001 - Administrator - Enabled) => C:\Users\Geno

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: 360 Total Security (Enabled - Up to date) {2B66EE1E-E5C8-C2F7-648F-4E55AC68D37D}
AS: 360 Total Security (Enabled - Up to date) {90070FFA-C3F2-CD79-5E3F-7527D7EF99C0}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

360 Total Security (HKLM-x32\...\360TotalSecurity) (Version: 8.2.0.1039 - 360 Security Center)
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.16) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.16 - Adobe Systems Incorporated)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.)
Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team)
Autodesk 3ds Max 2014 (HKLM\...\Autodesk 3ds Max 2014) (Version: 16.0.420.0 - Autodesk)
Autodesk 3ds Max 2014 (Version: 16.0.420.0 - Autodesk) Hidden
Autodesk 3ds Max 2014 64-bit Populate Data (HKLM\...\{7491836B-659E-47DD-ABBF-F875AD48FD10}) (Version: 1.0.0.1 - Autodesk)
Autodesk Backburner 2014 (HKLM-x32\...\{3D347E6D-5A03-4342-B5BA-6A771885F379}) (Version: 14.0.0.0 - Autodesk, Inc.)
Autodesk Composite 2014 (HKLM\...\Autodesk Composite 2014) (Version: 9.0.0.0 - Autodesk)
Autodesk Composite 2014 (Version: 9.0.0.0 - Autodesk) Hidden
Autodesk DirectConnect 2014 64-bit (HKLM\...\Autodesk DirectConnect 2014 64-bit) (Version: 8.0.56.1 - Autodesk)
Autodesk DirectConnect 2014 64-bit (Version: 8.0.56.1 - Autodesk) Hidden
Autodesk Essential Skills Movies for 3ds Max 2014 64-bit (HKLM\...\{E8814D63-BB76-4C89-A25E-264ECF11D00D}) (Version: 1.2.0.0 - Autodesk)
Autodesk Inventor Server Engine for 3ds Max 2014 64-bit (HKLM\...\{009751C6-22D7-4548-A313-AD48FA57076F}) (Version: 16.0 - Autodesk)
Autodesk Material Library 2014 (HKLM-x32\...\{644F9B19-A462-499C-BF4D-300ABC2A28B1}) (Version: 4.0.32.600 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2014 (HKLM-x32\...\{51BF3210-B825-4092-8E0D-66D689916E02}) (Version: 4.0.32.600 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2014 (HKLM-x32\...\{A0633D4E-5AF2-4E3E-A70A-FE9C2BD8A958}) (Version: 4.0.32.600 - Autodesk)
Autodesk Revit Interoperability for 3ds Max 2014 (HKLM\...\Autodesk Revit Interoperability for 3ds Max 2014) (Version: 13.02.15161 - Autodesk)
Autodesk Revit Interoperability for 3ds Max 2014 (Version: 13.02.15161 - Autodesk) Hidden
B110 (x32 Version: 140.0.353.000 - Hewlett-Packard) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlefleet Gothic: Armada (HKLM\...\Steam App 363680) (Version:  - Tindalos Interactive)
Blender (HKLM\...\{D593042C-8739-488D-93B8-E6B202013E57}) (Version: 2.76.1 - Blender Foundation)
Blu-ray Copy 1.0.28 (HKLM-x32\...\{EE56B531-B655-4afa-9664-0C0970E5798B}_is1) (Version:  - )
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
Catalyst Control Center Next Localization BR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.5306 - CDBurnerXP)
Creatures of Darkness (HKLM-x32\...\{573F9269-A022-4C6F-97BD-CF1316A76369}) (Version: 3.3.1 - Screaming Bee)
CrystalDiskInfo 6.5.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0406 - Disc Soft Ltd)
Deep Space Voices (HKLM-x32\...\{67CEC218-B250-4B4C-B23F-A597EC8DB153}) (Version: 3.3.1 - Screaming Bee)
Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
DVAG Online-System (HKLM-x32\...\DVAG Online System) (Version: 1.2 - Deutsche Vermögensberatung AG)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
EVE Online (HKU\S-1-5-21-2348534689-2675003789-707375039-1001\...\{02df3a8f-a085-454b-8343-37a044990866}) (Version: 1.0.0 - CCP)
Fallout 4 (HKLM-x32\...\Steam App 377160) (Version:  - Bethesda Game Studios)
Fallout Mod Manager 0.13.21 (HKLM-x32\...\Generic Mod Manager_is1) (Version:  - Q, Timeslip)
Fantasy Voice Pack (HKLM-x32\...\{5F4C3E1F-87FC-41BD-B219-E4156BBD8AE5}) (Version: 1.3.2 - Screaming Bee)
Far Cry Primal (HKLM-x32\...\Uplay Install 2010) (Version:  - Ubisoft)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
Furry Voices for Second Life (HKLM-x32\...\{2032DA39-C844-43AE-B638-6A4F7496686E}) (Version: 1.3.1 - Screaming Bee)
Geeks3D FurMark 1.15.2.2 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version:  - Geeks3D)
GetFLV 9.6.2.9 (HKLM-x32\...\GetFLV_is1) (Version:  - GetFLV, Inc.)
GhostMouse (HKLM-x32\...\GhostMouse_is1) (Version: Free V3.2.3 - ghost-mouse.com)
GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Dropbox Plugin (HKLM-x32\...\{45B18FC7-3ECE-4F2B-99A8-370886AB8238}) (Version: 36.0.31.53050 - Hewlett-Packard Co.)
HP ENVY 5540 series - Grundlegende Software für das Gerät (HKLM\...\{26091B15-0184-4CE5-A4CD-8828750473C4}) (Version: 36.0.72.54013 - Hewlett-Packard Co.)
HP ENVY 5540 series Hilfe (HKLM-x32\...\{77CC15A9-308D-4ED4-AD21-D28937F196C1}) (Version: 35.0.0 - Hewlett Packard)
HP Google Drive Plugin (HKLM-x32\...\{1502BB1F-7870-4DC9-9178-65CFE00D070C}) (Version: 36.0.31.53050 - Hewlett-Packard Co.)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP)
HP Photosmart Wireless B110 All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{C63184F3-8343-408F-A948-DDB0AC969A99}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPAppStudio (x32 Version: 140.0.95.000 - Hewlett-Packard) Hidden
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4331 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.0.3.1001 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden
Java 8 Update 77 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418077F0}) (Version: 8.0.770.3 - Oracle Corporation)
Java 8 Update 77 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
LibreCAD (HKLM-x32\...\LibreCAD) (Version: 2.0.5 - LibreCAD Team)
Logitech Gaming Software 8.53 (HKLM\...\Logitech Gaming Software) (Version: 8.53.154 - Logitech Inc.)
Male Voice Pack (HKLM-x32\...\{2CC32E0E-9A10-4BCC-94F0-614F85375F59}) (Version: 1.3.1 - Screaming Bee)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Mass Effect (HKLM-x32\...\Steam App 17460) (Version:  - BioWare)
Mass Effect™ 3 (HKLM-x32\...\{534A31BD-20F4-46b0-85CE-09778379663C}) (Version: 1.05.0.0 - Electronic Arts)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
MorphVOX Pro (HKLM-x32\...\{75B956F9-D72D-4929-B695-120D70E8AEE1}) (Version: 4.4.7 - Screaming Bee)
Mozilla Firefox 47.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 de)) (Version: 47.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.0.5999 - Mozilla)
Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.1 - Notepad++ Team)
NVIDIA PhysX (HKLM-x32\...\{9530AE42-DAE1-4619-9594-B23487285D17}) (Version: 9.11.1107 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PDF24 Creator 7.0.6 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.308.1 - Tracker Software Products Ltd)
Personality Voices (HKLM-x32\...\{4B886E97-AF5B-46F0-9F48-6BE03149D972}) (Version: 1.0.1 - Screaming Bee)
PlanetSide 2 (HKU\S-1-5-21-2348534689-2675003789-707375039-1001\...\SOE-PlanetSide 2 PSG) (Version:  - Sony Online Entertainment)
PlanetSide 2 (HKU\S-1-5-21-2348534689-2675003789-707375039-1001\...\SOE-PlanetSide 2) (Version: 1.0.3.183 - Sony Online Entertainment)
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.8.11-r110387-release - Plays.tv, LLC)
PS_AIO_07_B110_SW_Min (x32 Version: 140.0.365.000 - Hewlett-Packard) Hidden
Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.0.30.1259 - Qualcomm Atheros) Hidden
Qualcomm Atheros Killer E220x Drivers (Version: 1.0.30.1259 - Qualcomm Atheros) Hidden
Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{FE5DFB80-6937-4154-A2C7-EF845C1301F8}) (Version: 1.0.30.1259 - Qualcomm Atheros)
Qualcomm Atheros Network Manager (Version: 1.0.30.1259 - Qualcomm Atheros) Hidden
QuickTransfer (x32 Version: 140.0.98.000 - Hewlett-Packard) Hidden
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.0-r112326-release - Raptr, Inc)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7200 - Realtek Semiconductor Corp.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.6 - Samsung Electronics)
Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
Sci-Fi 2 Sound Pack (HKLM-x32\...\{62DC2D57-7AB8-4181-994B-C62D55FCE6F4}) (Version: 1.3.1 - Screaming Bee)
Sci-Fi Sound Pack (HKLM-x32\...\{D16C611D-CA6F-402B-9EDA-9862CF4A701B}) (Version: 1.1.1 - Screaming Bee)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation)
Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.)
SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Star Citizen Launcher (HKU\S-1-5-21-2348534689-2675003789-707375039-1001\...\Star Citizen Launcher) (Version: 00.01.00.00 - Cloud Imperium Games)
StarCraft II - Legacy of the Void Beta (HKLM-x32\...\StarCraft II - Legacy of the Void Beta) (Version:  - Blizzard Entertainment)
StarCraft II (HKLM-x32\...\StarCraft II) (Version:  - Blizzard Entertainment)
Stardock Start8 (HKLM-x32\...\Stardock Start8) (Version: 1.41 - Stardock Software, Inc.)
Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
Studie zur Verbesserung von HP ENVY 5540 series (HKLM\...\{CF292110-1F39-487D-8327-928B5ABD61EA}) (Version: 36.0.72.54013 - Hewlett-Packard Co.)
Sweet Home 3D version 4.4 (HKLM\...\Sweet Home 3D_is1) (Version:  - eTeks)
SWFPlayer 2.6.2.0 (HKLM-x32\...\SWFPlayer_is1) (Version: 2.6.2.0 - Michael Faust, Alpha Interactive)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18.2 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com)
Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden
Total War Battles: KINGDOM (HKLM\...\Steam App 300080) (Version:  - Creative Assembly)
Total War™: WARHAMMER® (HKLM\...\Steam App 364360) (Version:  - Creative Assembly)
TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Update for Skype for Business 2015 (KB3039776) 64-Bit Edition (HKLM\...\{90150000-012B-0407-1000-0000000FF1CE}_Office15.PROPLUS_{5D2260D6-DB16-41DC-915B-A39BF4F66362}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3115033) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F258B6E3-BF41-4FEE-BE45-D7518C3B7FC1}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3115033) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F258B6E3-BF41-4FEE-BE45-D7518C3B7FC1}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3115033) 64-Bit Edition (HKLM\...\{90150000-012B-0407-1000-0000000FF1CE}_Office15.PROPLUS_{F258B6E3-BF41-4FEE-BE45-D7518C3B7FC1}) (Version:  - Microsoft)
Uplay (HKLM-x32\...\Uplay) (Version: 17.0 - Ubisoft)
Vector Magic (HKLM-x32\...\Vector Magic) (Version: 1.15 - Vector Magic, Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VoiceAttack (HKLM-x32\...\{FBABC026-02F7-46D5-A0F9-3D355D3C3133}) (Version: 1.5.7 - VoiceAttack.com)
WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden
WhoCrashed 5.02 (HKLM\...\WhoCrashed_is1) (Version:  - Resplendence Software Projects Sp.)
XCOM 2 (HKLM-x32\...\Steam App 268500) (Version:  - Firaxis)
XCOM: Enemy Unknown (HKLM-x32\...\Steam App 200510) (Version:  - Firaxis Games)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-2348534689-2675003789-707375039-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Geno\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {040C01B9-817E-41F7-866B-F48C61BB283E} - System32\Tasks\HP AR Program Upload - a2b989e67a6540dc867a9fe783034a5143d594d97cd045d8903c5b93d5e16437 => C:\Program Files\HP\HP ENVY 5540 series\bin\HPRewards.exe [2015-03-09] (Hewlett-Packard Development Company, LP)
Task: {09970CDA-C829-42BB-998A-862DA118A227} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {0D27FED7-D208-4758-BC9F-613FCC273B3A} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2015-04-10] (Samsung Electronics.)
Task: {1D0D587C-D0CE-49EE-93CC-26C5E8236769} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated)
Task: {209C5249-1706-421C-8D1C-0045BE8656E6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {2719DE26-FD56-44E2-9F72-3B3D50C47D52} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {2DDC4199-E0BE-4FAC-A1CB-6F4F94EAF4AE} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {2FB8A5E2-DC38-49DF-9868-D4A9DAF25CAE} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-06-15] (Microsoft Corporation)
Task: {587BE83E-8BC4-406E-8B12-3BDD0A300804} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {59B5B6B6-CC87-4DDE-A8C3-8F1F2307FA01} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {5BA53F4A-C43F-4DDD-B278-05F0664DB649} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {5DDCD3EB-5D04-4C3C-83F7-7058FAF54A13} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {5F57E86E-DD5B-432A-92D2-BA1180FCAC6F} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK
Task: {A238FAF3-0C36-46BA-8FEF-AEAFFC21A05F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {A6A28F05-7B2B-40FE-81C0-89D79EB8341F} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {AD9A6ABE-9E4C-40C8-A795-611222E6FC58} - System32\Tasks\HPCustParticipation HP ENVY 5540 series => C:\Program Files\HP\HP ENVY 5540 series\Bin\HPCustPartic.exe [2015-03-09] (Hewlett-Packard Development Company, LP)
Task: {C00156F7-343C-4D13-B0AA-37B5924254E3} - System32\Tasks\{18BD2935-3B87-4BAD-8286-5EF089774BCA} => pcalua.exe -a C:\Users\Geno\Downloads\Range_RAT7_SD7_0_20_0_64Bit_Drivers.exe -d C:\Users\Geno\Downloads
Task: {C246CA00-5C0D-482B-9222-556ACA1AAE7C} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {C68B2B92-7921-45ED-824E-A1246C2E576A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {CBB765B1-E286-4EC0-B48E-889711401EDF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-06-19] (Adobe Systems Incorporated)
Task: {D27CD651-5488-4FC2-9D04-3288C12F8D2C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {DEA42223-2815-4618-AD09-82366831E32B} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {F4DFE6F3-FE55-4A96-AF13-9756745C4214} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {F4FBD750-05F4-4E05-865E-F1591CAFA3E8} - System32\Tasks\HP AR Program Upload - 88cd568e15b64d609bf6501cba1e70647c20226f7bb2465ea2417cb2434bf075 => C:\Program Files\HP\HP ENVY 5540 series\bin\HPRewards.exe [2015-03-09] (Hewlett-Packard Development Company, LP)
Task: {FF753815-0383-429C-A6F1-ADDE7EA4EF01} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2011-09-15 07:19 - 2011-09-15 07:19 - 00086016 _____ () C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
2016-04-13 16:33 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 16:33 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-05-19 18:43 - 2016-05-19 18:43 - 00959168 _____ () C:\Users\Geno\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2015-07-17 13:08 - 2016-05-09 11:27 - 00614480 _____ () C:\Program Files (x86)\360\Total Security\MenuEx64.dll
2015-04-15 22:13 - 2015-04-15 22:13 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2016-04-19 16:22 - 2016-04-19 16:22 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-06-15 15:18 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-18 18:40 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-05-11 17:34 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-06-15 15:18 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-06-15 15:18 - 2016-05-28 05:55 - 00936960 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-06-15 15:18 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-06-15 15:18 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-17 13:08 - 2016-05-09 11:27 - 00088184 _____ () C:\Program Files (x86)\360\Total Security\deepscan\qutmload.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00028160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\servicemanager.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00041472 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32service.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_hashlib.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00017920 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00019968 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32evtlog.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_socket.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ssl.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ctypes.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01980928 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
2015-12-07 22:57 - 2015-12-07 22:57 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01862144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 00516608 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 04060160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\select.pyd
2016-04-19 16:22 - 2016-04-19 16:22 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-04-19 16:22 - 2016-04-19 16:22 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\Users\Geno\Desktop\April DPFA.jpeg:3or4kl4x13tuuug3Byamue2s4b [81]
AlternateDataStreams: C:\Users\Geno\Desktop\April DPFA.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0]
AlternateDataStreams: C:\Users\Geno\Desktop\Stornozahlungsbeglaubigung.jpeg:3or4kl4x13tuuug3Byamue2s4b [81]
AlternateDataStreams: C:\Users\Geno\Desktop\Stornozahlungsbeglaubigung.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0]
AlternateDataStreams: C:\Users\Geno\Desktop\vxch.jpeg:3or4kl4x13tuuug3Byamue2s4b [81]
AlternateDataStreams: C:\Users\Geno\Desktop\vxch.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0]

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\S-1-5-21-2348534689-2675003789-707375039-1001\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-2348534689-2675003789-707375039-1001\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-2348534689-2675003789-707375039-1001\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-2348534689-2675003789-707375039-1001\...\sony.com -> sony.com

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-2348534689-2675003789-707375039-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Geno\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dokument0.tiff
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{8D3251D9-1608-4A59-AEC2-8E69DE2EB25A}] => (Allow) LPort=1689
FirewallRules: [{127C62CB-3557-447B-9962-CB895296E330}] => (Allow) H:\games\SteamApps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{CB40E657-8353-48BD-8B34-61C7818BC0DC}] => (Allow) H:\games\SteamApps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{765BEBA4-4A19-4400-917E-2021F04E08DA}] => (Block) F:\star citizen\starcitizen\starcitizen\public\bin64\starcitizen.exe
FirewallRules: [{D4CC3307-B896-431B-B694-CD7125AD801E}] => (Block) F:\star citizen\starcitizen\starcitizen\public\bin64\starcitizen.exe
FirewallRules: [UDP Query User{26265ED4-A995-46E7-A9D2-C87F06BCFA97}F:\star citizen\starcitizen\starcitizen\public\bin64\starcitizen.exe] => (Allow) F:\star citizen\starcitizen\starcitizen\public\bin64\starcitizen.exe
FirewallRules: [TCP Query User{E04FF8FF-1E0C-423A-B406-002F65257358}F:\star citizen\starcitizen\starcitizen\public\bin64\starcitizen.exe] => (Allow) F:\star citizen\starcitizen\starcitizen\public\bin64\starcitizen.exe
FirewallRules: [{18659D82-EF7D-4BC5-B4C5-2D7089FFFF5C}] => (Block) F:\star citizen\starcitizen\patcher\cigpatcher.exe
FirewallRules: [{FF1BD92A-8646-4B80-964A-60264E6F9A7D}] => (Block) F:\star citizen\starcitizen\patcher\cigpatcher.exe
FirewallRules: [UDP Query User{F9489D34-D4DB-4AC7-87BE-EFC08143FDA1}F:\star citizen\starcitizen\patcher\cigpatcher.exe] => (Allow) F:\star citizen\starcitizen\patcher\cigpatcher.exe
FirewallRules: [TCP Query User{7C5027C7-CEEF-4993-B09B-82FA41965908}F:\star citizen\starcitizen\patcher\cigpatcher.exe] => (Allow) F:\star citizen\starcitizen\patcher\cigpatcher.exe
FirewallRules: [{8A62BEF5-2461-40C3-BF95-6D073206938F}] => (Block) H:\games\starcraft ii - legacy of the void beta\versions\base37164\sc2_x64.exe
FirewallRules: [{3AB07F8C-0555-44B7-BC13-BFAAF2483821}] => (Block) H:\games\starcraft ii - legacy of the void beta\versions\base37164\sc2_x64.exe
FirewallRules: [UDP Query User{D71D8807-686C-488D-BED8-D4CD7FE83B17}H:\games\starcraft ii - legacy of the void beta\versions\base37164\sc2_x64.exe] => (Allow) H:\games\starcraft ii - legacy of the void beta\versions\base37164\sc2_x64.exe
FirewallRules: [TCP Query User{1600BB57-3D5D-47A1-BC17-83AA38CA56AD}H:\games\starcraft ii - legacy of the void beta\versions\base37164\sc2_x64.exe] => (Allow) H:\games\starcraft ii - legacy of the void beta\versions\base37164\sc2_x64.exe
FirewallRules: [{F8168945-6A04-4EF5-93C2-20AB1D4342DD}] => (Block) C:\program files\cloud imperium games\starcitizen\test\bin64\starcitizen.exe
FirewallRules: [{2B2743ED-C702-43A6-BC6C-3FF677B58983}] => (Block) C:\program files\cloud imperium games\starcitizen\test\bin64\starcitizen.exe
FirewallRules: [UDP Query User{4132C461-3C3D-49C0-A753-FE314B90A157}C:\program files\cloud imperium games\starcitizen\test\bin64\starcitizen.exe] => (Allow) C:\program files\cloud imperium games\starcitizen\test\bin64\starcitizen.exe
FirewallRules: [TCP Query User{5D6C74C1-AFC2-488A-8BAA-79852BF73351}C:\program files\cloud imperium games\starcitizen\test\bin64\starcitizen.exe] => (Allow) C:\program files\cloud imperium games\starcitizen\test\bin64\starcitizen.exe
FirewallRules: [{8390E595-D7F8-4920-854C-B3706984F2E0}] => (Block) C:\program files\java\jdk1.7.0_79\bin\java.exe
FirewallRules: [{94B0D26E-8268-427B-94B7-113755B10C56}] => (Block) C:\program files\java\jdk1.7.0_79\bin\java.exe
FirewallRules: [UDP Query User{7F01DDA3-6A18-4BD5-9BD7-46F845AEBD19}C:\program files\java\jdk1.7.0_79\bin\java.exe] => (Allow) C:\program files\java\jdk1.7.0_79\bin\java.exe
FirewallRules: [TCP Query User{29010C6D-C4AF-4A67-A3D4-621B56215857}C:\program files\java\jdk1.7.0_79\bin\java.exe] => (Allow) C:\program files\java\jdk1.7.0_79\bin\java.exe
FirewallRules: [{C506FFA9-9ABA-4BFC-9876-92B5A9F14CBC}] => (Block) C:\program files\android\android studio\bin\studio64.exe
FirewallRules: [{4826017C-77B9-4ED8-8D6B-4103E2921038}] => (Block) C:\program files\android\android studio\bin\studio64.exe
FirewallRules: [UDP Query User{DB15487D-DC72-4F49-BB7E-9B64A32EB3EA}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe
FirewallRules: [TCP Query User{6988E9E6-F99D-4735-B362-B09571D4A9B9}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe
FirewallRules: [{9084874D-B45B-4673-9AB5-D1D6FD55A598}] => (Block) C:\program files\andy\andy.exe
FirewallRules: [{8200E85F-5CE6-47DF-8445-B1320D90A71F}] => (Block) C:\program files\andy\andy.exe
FirewallRules: [UDP Query User{624A8239-94D4-496D-AE46-1835480C5069}C:\program files\andy\andy.exe] => (Allow) C:\program files\andy\andy.exe
FirewallRules: [TCP Query User{5DDE63FB-F7FF-429B-99A9-7C37FB89ACC9}C:\program files\andy\andy.exe] => (Allow) C:\program files\andy\andy.exe
FirewallRules: [{E9658C3A-4BA3-4E14-AA70-D4F16B5C5F39}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{5D18A4F0-9321-4910-A179-EEC018F5D785}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1C4E9E84-CF1E-4231-B8D9-3CE509B73E63}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E283B47C-2B41-4689-9439-9BCDD82D4E5F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{75A7ACE9-AC1C-4124-80C4-5A03592C639C}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe
FirewallRules: [{7A73BD5A-358C-4154-9CB4-1F7DB90ED826}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe
FirewallRules: [{6C380F92-7B9E-4F47-9C0A-63E207602755}] => (Block) C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe
FirewallRules: [{AE316D19-F6DC-41CA-A0C0-7DB4AEE06003}] => (Block) C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe
FirewallRules: [UDP Query User{BA468894-F884-4F14-B3A4-1F8100674699}C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe] => (Allow) C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe
FirewallRules: [TCP Query User{8F3634EA-6E9F-4579-B410-B1C343C4265F}C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe] => (Allow) C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe
FirewallRules: [{32A302EB-5104-40DF-90B8-93B1B9D9AF54}] => (Block) C:\program files\cloud imperium games\patcher\cigpatcher.exe
FirewallRules: [{407B17C1-B0DE-416F-947C-1861D56F5AA9}] => (Block) C:\program files\cloud imperium games\patcher\cigpatcher.exe
FirewallRules: [UDP Query User{2E4D3B95-DE15-4D4F-B4B6-FC55AA99BE79}C:\program files\cloud imperium games\patcher\cigpatcher.exe] => (Allow) C:\program files\cloud imperium games\patcher\cigpatcher.exe
FirewallRules: [TCP Query User{1DC69B6F-CC8D-4883-97E7-6B1E8DD4E2AC}C:\program files\cloud imperium games\patcher\cigpatcher.exe] => (Allow) C:\program files\cloud imperium games\patcher\cigpatcher.exe
FirewallRules: [{B45B2F7B-7808-43D5-B4CC-F3B4F548BB24}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{83C637AE-8C2D-4A48-A023-1377AE42CE3A}] => (Allow) H:\games\SteamApps\common\Dragon Age Origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{F814AB18-F75A-4A9F-BAC4-705D104BAEEC}] => (Allow) H:\games\SteamApps\common\Dragon Age Origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{38BD757A-1104-4FF5-BD01-AE80768614B4}] => (Allow) C:\Program Files\360\360 Internet Security\UpTip.exe
FirewallRules: [{E4F41C41-24FC-4C11-95C3-C9167DC016F5}] => (Allow) C:\Program Files\360\360 Internet Security\UpTip.exe
FirewallRules: [UDP Query User{5DA50DD4-A994-4125-B217-7A3E38A67CFD}C:\program files\360\360 internet security\360sdupd.exe] => (Allow) C:\program files\360\360 internet security\360sdupd.exe
FirewallRules: [TCP Query User{1DAA84F6-B731-4BE5-9471-042203097139}C:\program files\360\360 internet security\360sdupd.exe] => (Allow) C:\program files\360\360 internet security\360sdupd.exe
FirewallRules: [{09ABD960-DA04-45A4-8A8A-0C9788A83927}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{6505D34F-A407-4130-B2F2-AE20A51CE399}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{D72F747D-1BE1-4266-90DC-EEA9B1AFD104}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{E847C1B6-867A-407F-B827-73DA48F2AB74}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{D2039552-A1AF-4FB6-A9CE-6240CB758E08}] => (Block) H:\games\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [{C779B292-E139-45DB-92FD-6867161C0D80}] => (Block) H:\games\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [UDP Query User{CD4CEEB8-2031-4562-8A43-CBD909B930E0}H:\games\starcraft ii\versions\base32283\sc2.exe] => (Allow) H:\games\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [TCP Query User{81863D45-5D59-45C4-A0B6-F2E8AC783682}H:\games\starcraft ii\versions\base32283\sc2.exe] => (Allow) H:\games\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [{DC44E23C-D085-4A45-9535-3D8A46EB34AE}] => (Allow) H:\games\StarCraft II\StarCraft II.exe
FirewallRules: [{2F5C52E2-2C9C-43E4-B1DA-07BB47D0AC0B}] => (Allow) H:\games\StarCraft II\StarCraft II.exe
FirewallRules: [{5F34AC00-0F52-4D6C-A5A3-8DC5733575CE}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{5466CFF7-9D80-4B2F-BF11-4B7C7F7240A5}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{BB9C3CAB-7F18-4315-80D5-0114CF8C9767}] => (Allow) H:\games\SteamApps\common\Divinity - Original Sin\Shipping\EoCApp.exe
FirewallRules: [{5AFA5E05-C7E5-4492-9C44-DDE0922C0488}] => (Allow) H:\games\SteamApps\common\Divinity - Original Sin\Shipping\EoCApp.exe
FirewallRules: [{B516428B-0ED8-44FC-B5CA-79E3B9F936E0}] => (Block) C:\program files\starcitizen\citizenclient\bin64\starcitizen.exe
FirewallRules: [{0546C199-5695-40A5-AA4B-8518406C5CEF}] => (Block) C:\program files\starcitizen\citizenclient\bin64\starcitizen.exe
FirewallRules: [UDP Query User{89E7DE43-FF30-412B-A6B4-111B5E8A64CC}C:\program files\starcitizen\citizenclient\bin64\starcitizen.exe] => (Allow) C:\program files\starcitizen\citizenclient\bin64\starcitizen.exe
FirewallRules: [TCP Query User{1E5B95C1-E2B4-46CD-8C4E-D0019C59A87C}C:\program files\starcitizen\citizenclient\bin64\starcitizen.exe] => (Allow) C:\program files\starcitizen\citizenclient\bin64\starcitizen.exe
FirewallRules: [{5EA266D3-14BB-452E-A355-980C026E063E}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{E3FA0B9B-345D-4F02-90A3-B27E9DC37C79}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{A4C5190D-3629-49D1-A2A7-DE4B41B70B91}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{5F8FB35D-2D39-4EE4-92F0-E7A8677731C2}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{EA170FF4-6749-414B-B88F-92226A826AD5}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{1D2E88B7-2D9D-4DD5-AB3F-A999EF8349B0}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{42BF7BFA-CA69-4A2B-BA4E-115B8F8B88C7}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64.exe
FirewallRules: [{5F984E11-9E4D-414B-9834-02836A55C911}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64.exe
FirewallRules: [{84A805A3-CDCE-4A78-BC94-CDB63FFC7F7B}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
FirewallRules: [{427C1530-6C8E-472C-8748-CCC6FA6DF6CA}] => (Allow) C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe
FirewallRules: [{2A199BB0-69CF-462D-80BF-39AB741E8145}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{93B99D23-0CF7-4D2A-8EF1-7CB5E28FBAA3}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{C647E1C6-7549-412E-AECD-F839556A2D9D}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{F7272C63-A43D-4B97-A42B-98BBA7571FB0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{B34477A9-1CFD-4DDD-950E-5C70485C011C}] => (Allow) H:\games\SteamApps\common\Firefall\system\bin\FirefallClient.exe
FirewallRules: [{2B4F455A-75A2-488A-AD13-8DB577C23968}] => (Allow) H:\games\SteamApps\common\Firefall\system\bin\FirefallClient.exe
FirewallRules: [{D701DFBD-18CD-405B-B11E-12D0134ACD63}] => (Block) H:\games\steamapps\common\the witcher 2\bin\witcher2.exe
FirewallRules: [{0D2CB87B-8CC1-4465-8C61-A0EB1821F58C}] => (Block) H:\games\steamapps\common\the witcher 2\bin\witcher2.exe
FirewallRules: [UDP Query User{2031A522-8F67-4D78-9C29-719B756B56B4}H:\games\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) H:\games\steamapps\common\the witcher 2\bin\witcher2.exe
FirewallRules: [TCP Query User{26B86A12-AE4A-41C1-A428-F70631E7491E}H:\games\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) H:\games\steamapps\common\the witcher 2\bin\witcher2.exe
FirewallRules: [{8BEF87A6-8178-4640-8F89-2D3C89A963C4}] => (Block) C:\users\public\sony online entertainment\installed games\planetside 2\planetside2_x64.exe
FirewallRules: [{F3FCE118-776A-4717-96F8-378E4CD4CA0A}] => (Block) C:\users\public\sony online entertainment\installed games\planetside 2\planetside2_x64.exe
FirewallRules: [UDP Query User{8D816AF1-DD51-4CE7-B5A1-64AAC1EDF9C3}C:\users\public\sony online entertainment\installed games\planetside 2\planetside2_x64.exe] => (Allow) C:\users\public\sony online entertainment\installed games\planetside 2\planetside2_x64.exe
FirewallRules: [TCP Query User{7A9528C0-B6B9-45FA-8A7F-39F1ADC85D5E}C:\users\public\sony online entertainment\installed games\planetside 2\planetside2_x64.exe] => (Allow) C:\users\public\sony online entertainment\installed games\planetside 2\planetside2_x64.exe
FirewallRules: [{A1DC60E8-412B-45EF-A276-80AF568CF01F}] => (Block) H:\games\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [{39C6193A-4400-4B47-A2F9-AE3B3D83A094}] => (Block) H:\games\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [UDP Query User{567635C0-2683-4EAA-8D3D-CF54F8361908}H:\games\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) H:\games\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [TCP Query User{CAF3FDCA-45D4-429C-B788-E207B90EFA88}H:\games\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) H:\games\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [{24CEBF3C-3F7B-43EC-9DBB-AB714F1915CB}] => (Block) C:\program files\wondershare\allmytube\allmytube.exe
FirewallRules: [{77E991AC-5F52-4904-8A0F-2283C1048087}] => (Block) C:\program files\wondershare\allmytube\allmytube.exe
FirewallRules: [UDP Query User{C753F91C-015F-450D-839A-2D815800776C}C:\program files\wondershare\allmytube\allmytube.exe] => (Allow) C:\program files\wondershare\allmytube\allmytube.exe
FirewallRules: [TCP Query User{E2CE56A8-5144-41D7-9A22-02A08522D8EC}C:\program files\wondershare\allmytube\allmytube.exe] => (Allow) C:\program files\wondershare\allmytube\allmytube.exe
FirewallRules: [{333D8B2D-8658-4935-BD1A-E966D928E976}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{726E8FCA-60A1-499A-856C-2C1A5AA7A8F1}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{84C2EB8D-76F5-4E2C-B316-7EF6B75BBDA7}] => (Allow) H:\Program Files (x86)\Origin Games\Mass Effect 3\Binaries\Win32\MassEffect3.exe
FirewallRules: [{100210E6-7ADA-4F88-93F9-D4934D2D71A1}] => (Allow) H:\Program Files (x86)\Origin Games\Mass Effect 3\Binaries\Win32\MassEffect3.exe
FirewallRules: [{695181A0-9A1A-4447-BD46-A9C86FBE3CCA}] => (Block) C:\users\geno\downloads\skypekit.exe
FirewallRules: [{13F5741A-A95A-44AC-8656-C05F49AA092A}] => (Block) C:\users\geno\downloads\skypekit.exe
FirewallRules: [UDP Query User{74297BD7-017A-45A2-AB1A-CB59E842E1CA}C:\users\geno\downloads\skypekit.exe] => (Allow) C:\users\geno\downloads\skypekit.exe
FirewallRules: [TCP Query User{61F63B79-A0B1-4C8F-A0D5-2269C2AC1ABE}C:\users\geno\downloads\skypekit.exe] => (Allow) C:\users\geno\downloads\skypekit.exe
FirewallRules: [{66ED3475-23F5-4E63-BE45-EBD689B76FBE}] => (Allow) C:\Users\Geno\AppData\Local\Temp\7zS2C07\setup\hpznui40.exe
FirewallRules: [{8E6CBFF5-EC62-40C3-9414-30F94C830666}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect\Binaries\MassEffect.exe
FirewallRules: [{AB586EEA-6FD3-40CA-A5EE-0975E53BBC98}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect\Binaries\MassEffect.exe
FirewallRules: [{67A84723-44BD-40B2-9B77-E06B02456C53}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{0FAC81A8-B082-4016-9560-D5D2C185D64D}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{D449B9DE-BBC6-4AED-BCFF-71102D95F5B4}] => (Block) D:\planetside\planetside2_x64.exe
FirewallRules: [{D2FF0AB2-0A32-47FC-B3C1-942C2C80AB91}] => (Block) D:\planetside\planetside2_x64.exe
FirewallRules: [UDP Query User{507BD155-244E-4372-A554-E3947F848BD3}D:\planetside\planetside2_x64.exe] => (Allow) D:\planetside\planetside2_x64.exe
FirewallRules: [TCP Query User{D6CA4A41-EE7C-4735-8096-47733D1C6C0E}D:\planetside\planetside2_x64.exe] => (Allow) D:\planetside\planetside2_x64.exe
FirewallRules: [{393C2765-A69B-4843-A40A-57F2E1ED1792}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{0C91F8EB-E6EE-4DD4-91E8-32AE71491ED2}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{2BC6CE89-1C6E-40A8-A3DC-2CC34545232F}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{8D3800DF-809F-421C-81B0-E54D11DA54F9}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{24F33D8C-5A13-416C-A42F-B411A9C601B0}] => (Block) C:\users\geno\documents\starcitizen\citizenclient\bin64\starcitizen.exe
FirewallRules: [{C4AEF59A-16AC-4A55-AA3E-0AF154BCCB9D}] => (Block) C:\users\geno\documents\starcitizen\citizenclient\bin64\starcitizen.exe
FirewallRules: [UDP Query User{B18318BF-4B8C-4CB5-968A-9A102D672EA1}C:\users\geno\documents\starcitizen\citizenclient\bin64\starcitizen.exe] => (Allow) C:\users\geno\documents\starcitizen\citizenclient\bin64\starcitizen.exe
FirewallRules: [TCP Query User{D5CDFEB2-C9F2-42C7-8CFB-32474AA13E70}C:\users\geno\documents\starcitizen\citizenclient\bin64\starcitizen.exe] => (Allow) C:\users\geno\documents\starcitizen\citizenclient\bin64\starcitizen.exe
FirewallRules: [{4B6815F4-1E91-4A13-9825-AD54D70AF9CC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{6FCFD842-00D4-46F5-8F24-9ED0B12789FF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{2AD174AF-D9F1-429B-8E2C-AC9C0E9970EC}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{C17587FB-F184-4BC0-996F-6C076379BB87}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{086083F9-48E8-4056-BAB5-1330FEEC4D10}] => (Block) C:\program files (x86)\trillian\plugins\skypekit.exe
FirewallRules: [{D9F80ADD-EE93-4495-ACE4-010B7992D356}] => (Block) C:\program files (x86)\trillian\plugins\skypekit.exe
FirewallRules: [UDP Query User{D0C540A3-DFF8-4CBB-98A7-B24E67B9A9E2}C:\program files (x86)\trillian\plugins\skypekit.exe] => (Allow) C:\program files (x86)\trillian\plugins\skypekit.exe
FirewallRules: [TCP Query User{D051B8B4-9949-4951-8C14-B5BE9C06A024}C:\program files (x86)\trillian\plugins\skypekit.exe] => (Allow) C:\program files (x86)\trillian\plugins\skypekit.exe
FirewallRules: [{65021E9C-190D-42EA-87CE-CF2514B7719F}] => (Block) C:\program files (x86)\trillian\trillian.exe
FirewallRules: [{65500665-DFD6-41ED-8D9A-1AC19345E357}] => (Block) C:\program files (x86)\trillian\trillian.exe
FirewallRules: [UDP Query User{D977A83E-D428-4427-BEE3-365E4AE63112}C:\program files (x86)\trillian\trillian.exe] => (Allow) C:\program files (x86)\trillian\trillian.exe
FirewallRules: [TCP Query User{644FA5D7-3264-49F9-88FC-AC4E52EB1BC9}C:\program files (x86)\trillian\trillian.exe] => (Allow) C:\program files (x86)\trillian\trillian.exe
FirewallRules: [{140ED0B7-D793-4C23-B49A-CACF7181925F}] => (Allow) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe
FirewallRules: [{1F6F00D7-C467-415C-9106-4968418E6159}] => (Allow) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe
FirewallRules: [{11113742-6F38-4555-A8B1-B7C1FAF2D4F7}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{7344F98B-34E2-494F-A209-0918FBA12CE7}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{D73CC546-3C54-4F33-82E0-E60AC46D29DA}] => (Allow) LPort=1689
FirewallRules: [{751950AA-2452-4778-961D-1C10DC7C74AA}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{24B12A3E-BE45-4B37-8315-D7F0D72B60D9}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{4299B871-0170-4BFB-855A-E9FF4C845459}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{F77F183D-1583-4601-91A4-8B5CFD568A8B}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{2BC2C762-4290-42DE-892A-12134874EEE9}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{BA2FCD66-8778-45FE-A76F-A43E90076F01}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{A8EDBC6D-34A7-46DC-A438-F7126CEA135A}] => (Allow) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe
FirewallRules: [{4E6063E8-0EE6-483D-817F-275F972E0CCD}] => (Allow) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe
FirewallRules: [{BEAEF4FE-9B97-45B4-8561-4FFA10ACBDEA}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
FirewallRules: [{364E850C-C5CE-4394-8C57-919CE6FBE419}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
FirewallRules: [{465385A8-6287-4AD2-ABC8-A1FB542E9D3E}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe
FirewallRules: [{ECFCFE67-CA50-4676-94F4-4B6665605FC1}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe
FirewallRules: [{9D7AF01E-16C3-4B31-BB8D-B7C9BC876F3D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{5ED78EC7-BC6A-438B-9945-1F9162F3750C}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{0CC2629C-461E-432A-BAFF-318ED4BCDD74}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{18BF4C1F-7672-46A0-9206-76C9077A9356}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [TCP Query User{D9D3F07A-E159-4D28-82E7-069FA1FF4787}H:\games\starcraft ii\versions\base39576\sc2_x64.exe] => (Allow) H:\games\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [UDP Query User{7CB2277A-24FE-4E72-8EF8-ED465E266CF5}H:\games\starcraft ii\versions\base39576\sc2_x64.exe] => (Allow) H:\games\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [{C4F877B6-41F5-453E-A221-D8ACD059473B}] => (Allow) H:\games\SteamApps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{E7EABBF9-F33D-401F-913D-A4271D2259BA}] => (Allow) H:\games\SteamApps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [TCP Query User{16875564-D2AA-4422-A39A-44CA57B90D57}H:\games\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe] => (Allow) H:\games\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe
FirewallRules: [UDP Query User{21E60BFF-2CCF-47BE-A334-402348B4682F}H:\games\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe] => (Allow) H:\games\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe
FirewallRules: [{AC4F88CC-32FF-4860-8D0B-78B4132B6465}] => (Allow) H:\games\SteamApps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [{C0C9BA7D-DCA3-4612-8502-D58DC63744B3}] => (Allow) H:\games\SteamApps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [TCP Query User{F301D568-A9D2-4FAC-881F-A95F9F5CB105}H:\games\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) H:\games\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [UDP Query User{9CA96151-3B04-4E2C-A0EF-B86C018DDEB7}H:\games\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) H:\games\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [{BED34980-1DC6-41E7-9A0D-AF29C523DE87}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{31107829-F425-485A-8B31-1921B4120C13}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{18EF5FFD-5258-464B-86E2-27867399799B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{48F96536-AC54-40F0-BC70-469BBD4B31F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{7291D432-86ED-462B-9236-64F10EA40481}] => (Allow) C:\Users\Geno\AppData\Local\Temp\7zS235F\HP.EasyStart.exe
FirewallRules: [{3C803A21-0DEE-4A63-8E7F-9001FC33114C}] => (Allow) C:\Program Files\HP\HP ENVY 5540 series\Bin\DeviceSetup.exe
FirewallRules: [{CDE48DD7-5639-438D-B9E5-A234C2F4E521}] => (Allow) LPort=5357
FirewallRules: [{C596562A-420C-4D1D-9F0B-1F58D049475C}] => (Allow) C:\Program Files\HP\HP ENVY 5540 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{E91AB226-4FBF-4DAC-965E-9EDB88328BE1}] => (Allow) H:\Ubisoft Game Launcher\games\Far Cry Primal\bin\FCPrimal.exe
FirewallRules: [{B8E92E9C-4D10-4AB0-9CDC-45B76BA999C8}] => (Allow) H:\games\SteamApps\common\Battlefleet Gothic Armada\BattleFleetGothic.exe
FirewallRules: [{70E40AE9-1D40-441A-AFF3-337F9B04EBAB}] => (Allow) H:\games\SteamApps\common\Battlefleet Gothic Armada\BattleFleetGothic.exe
FirewallRules: [TCP Query User{7C159D2B-983F-48A6-9860-9550440FF1F7}H:\games\steamapps\common\battlefleet gothic armada\battlefleetgothic\binaries\win64\battlefleetgothic-win64-shipping.exe] => (Allow) H:\games\steamapps\common\battlefleet gothic armada\battlefleetgothic\binaries\win64\battlefleetgothic-win64-shipping.exe
FirewallRules: [UDP Query User{B6E69749-BFB8-4C17-B80B-CB9A238CF789}H:\games\steamapps\common\battlefleet gothic armada\battlefleetgothic\binaries\win64\battlefleetgothic-win64-shipping.exe] => (Allow) H:\games\steamapps\common\battlefleet gothic armada\battlefleetgothic\binaries\win64\battlefleetgothic-win64-shipping.exe
FirewallRules: [{BA9F1DA3-D0E6-4850-BB1A-18780244DB5F}] => (Allow) LPort=1688
FirewallRules: [{EFE58259-9DBF-4908-8432-9624033A564F}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{6C10C676-8E02-43B8-B61F-CAA136F83AFA}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{D759C373-3778-4BC4-84EC-B6754AA4D69E}] => (Allow) H:\games\SteamApps\common\Total War Battles KINGDOM\TWB_Kingdom.exe
FirewallRules: [{B2104AA5-70CF-467F-AC64-BD50E104FC48}] => (Allow) H:\games\SteamApps\common\Total War Battles KINGDOM\TWB_Kingdom.exe
FirewallRules: [{1A9895B3-4253-4735-8A8E-B2106E9999DD}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{0B404F9C-1301-4C48-929C-5D0BB2C423EB}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{A95E9BF8-A915-4232-AE04-CD0E14F9208F}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{B7C3F7AE-CB4A-4A57-BCDB-35A1FABFD059}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [TCP Query User{A0ABFC4B-72C3-480B-93AC-EB67D0285289}H:\games\steamapps\common\total war warhammer\warhammer.exe] => (Allow) H:\games\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [UDP Query User{89228BC6-6DED-4316-8850-C7AC9DAD6F47}H:\games\steamapps\common\total war warhammer\warhammer.exe] => (Allow) H:\games\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [{2A7D2C88-0FAC-4DC7-8CD1-B2C6F2E7905C}] => (Allow) H:\games\SteamApps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{7B491200-1AF8-4868-A8D5-3E6E8E4FF7C0}] => (Allow) H:\games\SteamApps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{EB18F46E-E9D8-40E5-90E2-4DE5A54DC0C9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{C55F61D4-3F6D-485F-BF7E-591FC94AF98A}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
FirewallRules: [{B2F6E9E8-DD0F-4132-88A0-0EF557B732F2}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe

==================== Wiederherstellungspunkte =========================

21-06-2016 17:01:44 JRT Pre-Junkware Removal

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (06/21/2016 05:01:45 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (06/21/2016 04:28:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f0
Name des fehlerhaften Moduls: Cortana.Core.dll, Version: 0.0.0.0, Zeitstempel: 0x57491642
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000001325d
ID des fehlerhaften Prozesses: 0x1b94
Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0
Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1
Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2
Berichtskennung: backgroundTaskHost.exe3
Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5

Error: (06/21/2016 04:24:03 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest.

Error: (06/21/2016 07:17:34 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: GENOTHEONE)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (06/20/2016 08:32:15 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest.

Error: (06/20/2016 08:25:11 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest.

Error: (06/20/2016 08:25:09 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest.

Error: (06/20/2016 08:20:03 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (06/20/2016 07:39:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: GENOTHEONE)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (06/20/2016 07:30:42 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.


Systemfehler:
=============
Error: (06/21/2016 04:49:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069 = Der Dienst konnte wegen einer fehlerhaften Anmeldung nicht gestartet werden.


Error: (06/21/2016 04:49:25 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "WSearch" konnte sich nicht als "NT AUTHORITY\SYSTEM" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%50 = Die Anforderung wird nicht unterstützt.


Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (06/21/2016 04:49:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_59624" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (06/21/2016 04:49:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _59624" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (06/21/2016 04:49:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kontaktdaten_59624" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (06/21/2016 04:49:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_59624" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (06/21/2016 04:49:18 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (06/21/2016 04:48:56 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (06/21/2016 04:48:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Disc Soft Lite Bus Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (06/21/2016 04:48:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.


CodeIntegrity:
===================================
  Date: 2016-06-21 11:11:54.581
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-112298.dll that did not meet the Store signing level requirements.

  Date: 2016-06-21 11:10:46.895
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-112298.dll that did not meet the Store signing level requirements.

  Date: 2016-06-20 22:21:28.500
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-20 17:24:37.315
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-19 17:29:03.528
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-16 14:09:53.407
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-112298.dll that did not meet the Store signing level requirements.

  Date: 2016-06-16 14:09:22.570
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-112298.dll that did not meet the Store signing level requirements.

  Date: 2016-06-15 17:29:04.862
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-14 20:58:05.634
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-112298.dll that did not meet the Store signing level requirements.

  Date: 2016-06-09 15:43:05.278
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-112298.dll that did not meet the Store signing level requirements.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz
Prozentuale Nutzung des RAM: 13%
Installierter physikalischer RAM: 16252.43 MB
Verfügbarer physikalischer RAM: 13995.93 MB
Summe virtueller Speicher: 19196.43 MB
Verfügbarer virtueller Speicher: 17017.19 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:232.1 GB) (Free:6.7 GB) NTFS
Drive d: (Volume) (Fixed) (Total:232.88 GB) (Free:228.53 GB) NTFS
Drive e: (20140617_2226) (CDROM) (Total:10.66 GB) (Free:0 GB) CDFS
Drive h: (Datengrab) (Fixed) (Total:931.51 GB) (Free:532.91 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 2AEB3F27)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 9B5300B0)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 79EF99AF)
Partition 1: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         
kann derzeit keine aktivität feststellen.. ich glaube es ist schon zeit für einen dank

merci


 

Themen zu Malwarebytes Dauermeldung bösartige Webseite
beitrag, blieb, bösartige, ebenfalls, ergebnisse, erstell, erstellt, forum, guten, link, malwarebytes, malwarebytes bösartige webseite, melde, meldet, neue, problem, scan, schei, schöne, schönen, seite, seiten, trotz, versucht, webseite, ähnliches




Ähnliche Themen: Malwarebytes Dauermeldung bösartige Webseite


  1. Firefox Öffnet Unerwünschte Seiten, MalwareBytes Blockt - NewPopTab. Webseite
    Log-Analyse und Auswertung - 25.12.2015 (3)
  2. Malwarebytes blockiert ständig "Bösartige Website"
    Log-Analyse und Auswertung - 18.11.2015 (29)
  3. windows7 bösartige webseite blokiert
    Plagegeister aller Art und deren Bekämpfung - 27.10.2015 (41)
  4. Malwarebytes Anti-Malware meldet als bösartige Website blockiert
    Plagegeister aller Art und deren Bekämpfung - 21.10.2015 (13)
  5. Malwarebytes blockiert beim Start von Firefox eine bösartige Website
    Plagegeister aller Art und deren Bekämpfung - 31.03.2015 (64)
  6. Malwarebytes zeigt mir über 500 bösartige Objekte.
    Plagegeister aller Art und deren Bekämpfung - 19.08.2013 (17)
  7. 19 bösartige Risiken gefunden!..bin hilflos
    Log-Analyse und Auswertung - 08.08.2013 (21)
  8. bösartige referrer in emails
    Diskussionsforum - 19.06.2013 (6)
  9. Malwarebytes: Zugang zu einer potenziell gefärlichen webseite gestoppt
    Log-Analyse und Auswertung - 30.04.2013 (3)
  10. Sehr häufige Warnung: Bösartige Webseite Blockiet von Avast
    Log-Analyse und Auswertung - 11.04.2013 (18)
  11. Avast bösartige Webseite geblockt! URL:Mal
    Plagegeister aller Art und deren Bekämpfung - 02.11.2012 (2)
  12. Avast meldet "Bösartige Webseite blockiert"
    Log-Analyse und Auswertung - 05.10.2012 (7)
  13. Malwarebytes findet bösartige Programme ! Wie kann ich sie dauerhaft enfernen?
    Log-Analyse und Auswertung - 13.09.2012 (15)
  14. Malwarebytes stoppt nach Neuinstallation ständig zugang zu einer potenziell gefährlichen Webseite
    Antiviren-, Firewall- und andere Schutzprogramme - 17.08.2012 (2)
  15. Bösartige Webseite blockiert - Problem mit Antivirenprogramm AVAST!
    Log-Analyse und Auswertung - 18.06.2012 (1)
  16. Trojaner Dauermeldung bei Grafiktreiberupdate
    Log-Analyse und Auswertung - 08.08.2010 (3)
  17. Bösartige Einträge ?
    Log-Analyse und Auswertung - 31.12.2005 (1)

Zum Thema Malwarebytes Dauermeldung bösartige Webseite - erstmal vielen dank für das engagement matthias. ein dokument von admcleaner war nicht zusätzlich verfügbar.. wurde vorher keins angelegt Code: Alles auswählen Aufklappen ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan - Malwarebytes Dauermeldung bösartige Webseite...

Alle Zeitangaben in WEZ +1. Es ist jetzt 04:05 Uhr.


Copyright ©2000-2025, Trojaner-Board
Archiv
Du betrachtest: Malwarebytes Dauermeldung bösartige Webseite auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.