|
Plagegeister aller Art und deren Bekämpfung: Browser total langsamWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
22.06.2016, 10:04 | #1 |
| Browser total langsam Hey Leute, seit ca. 5 Tagen ist mein Browser total langsam bzw. die Seiten werden langsam geladen. Habe den Cache schon gelöscht, benutze zurzeit den Morzilla Firfox Browser aber bei Google Chrome ist es genauso langsam. Am Handy funktioniert es problemlos und auch bei Spielen macht es sich nicht bemerkbar. Vielen Dank im Voraus! Mfg Lars FRST Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2016 01 durchgeführt von Lars (Administrator) auf LARS-PC (22-06-2016 10:56:22) Gestartet von C:\Users\Lars\Desktop Geladene Profile: Lars (Verfügbare Profile: Lars & DefaultAppPool) Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Internet Security\a2service.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe (Connectify) C:\Program Files (x86)\Connectify\ConnectifyService.exe (GGS) C:\Users\Lars\AppData\Local\THORN\Thorn.exe () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe (Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (GGS) C:\Users\Lars\AppData\Local\THORN\ThornHelper.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Internet Security\a2guard.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Internet Security\a2start.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_192.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_192.exe (VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Connectify Hotspot] => C:\Program Files (x86)\Connectify\Connectify.exe [4188408 2015-07-21] (Connectify) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-09-04] (Adobe Systems Incorporated) HKLM\...\Run: [emsisoft anti-malware] => c:\program files (x86)\emsisoft internet security\a2guard.exe [9501040 2016-06-15] (Emsisoft Ltd) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-05-11] (Apple Inc.) HKLM\...\Run: [Windows Mobile Device Center] => C:\Windows\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation) HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [6603520 2016-06-02] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-05-23] (Raptr, Inc) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKLM-x32\...\Run: [emsisoft anti-malware] => c:\program files (x86)\emsisoft internet security\a2guard.exe [9501040 2016-06-15] (Emsisoft Ltd) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2292912 2015-09-17] (Adobe Systems Incorporated) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-08-06] (Apple Inc.) HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [71440 2016-06-07] (Plays.tv, LLC) HKLM-x32\...\Run: [WSHelperSetup.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-06-08] (LogMeIn Inc.) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Run: [Spotify Web Helper] => C:\Users\Lars\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1552496 2016-06-10] (Spotify Ltd) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Policies\system: [] 0 HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\MountPoints2: {06c6463e-c90e-11e5-9c15-d0509956a297} - "D:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\MountPoints2: {94210b89-9b41-11e5-9c08-d0509956a297} - "D:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\MountPoints2: {b146edf9-b580-11e5-9c10-d0509956a297} - "E:\AUTOSTARTER.EXE" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\MountPoints2: {f1e88110-11b4-11e5-aba8-d0509956a297} - "D:\SETUP.EXE" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Mystify.scr [150528 2015-10-30] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] () ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () Startup: C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2016-06-21] ShortcutTarget: Curse.lnk -> C:\Users\Lars\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc) CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2 Tcpip\..\Interfaces\{5702e92a-f6ca-4cf4-b600-a9f672948569}: [DhcpNameServer] 192.168.0.1 192.168.0.2 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2016-05-27] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-21] (Oracle Corporation) BHO: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2015-11-15] (LastPass) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-21] (Oracle Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-07] (Oracle Corporation) BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar.dll [2015-11-15] (LastPass) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-07] (Oracle Corporation) Toolbar: HKLM - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2015-11-15] (LastPass) Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll [2015-11-15] (LastPass) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-05-20] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-04-12] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-05-20] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-04-12] (Microsoft Corporation) Edge: ====== Edge Session Restore: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000 -> ist aktiviert. FireFox: ======== FF ProfilePath: C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default FF Homepage: hxxps://www.google.de/ FF Session Restore: -> ist aktiviert. FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-18] () FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-21] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-21] (Oracle Corporation) FF Plugin: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll [2015-11-15] (LastPass) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-09-17] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-18] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-12-18] () FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-07] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-07] (Oracle Corporation) FF Plugin-x32: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll [2015-11-15] (LastPass) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-12-08] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-15] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-09-17] (Adobe Systems) FF user.js: detected! => C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\user.js [2016-03-04] FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-12-08] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-05-27] (Adobe Systems Inc.) FF Extension: Black Youtube Theme - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\extensions\{2c93446d-612b-416d-9af0-b7355797b611}.xpi [2016-03-01] FF Extension: BetterTTV - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\firefox@betterttv.net.xpi [2015-12-28] FF Extension: LastPass - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\support@lastpass.com [2016-03-09] FF Extension: DivX Extension Plus - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\{0345e546-3336-4a52-ae1e-9eed64728492}.xpi [2016-05-22] [ist nicht signiert] FF Extension: HTML5 Updater - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\{ba2c8f60-66cf-4745-9e00-f16a9757a8e6}.xpi [2015-12-19] [ist nicht signiert] FF Extension: Adblock Plus - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-06-21] FF Extension: Tab Mix Plus - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2016-06-05] Chrome: ======= CHR DefaultSearchKeyword: Default -> lp CHR Session Restore: Default -> ist aktiviert. CHR Profile: C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-31] CHR Extension: (BetterTTV) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2016-06-21] CHR Extension: (Google Docs) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-31] CHR Extension: (Google Drive) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-05] CHR Extension: (YouTube) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-05] CHR Extension: (Adblock Plus) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-06-21] CHR Extension: (Google-Suche) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-05] CHR Extension: (PanicButton) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm [2015-05-31] CHR Extension: (Google Tabellen) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-31] CHR Extension: (Google Docs Offline) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-21] CHR Extension: (Adblock Plus) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgdbbfekflnbhfbejkkhfoplikipmfei [2015-05-31] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-06-21] CHR Extension: (AdF.ly Skipper ★WORKING★) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\obnfifcganohemahpomajbhocfkdgmjb [2015-08-03] CHR Extension: (Google Mail) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-31] CHR HKLM\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] - hxxp://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Internet Security\a2service.exe [11439280 2016-06-15] (Emsisoft Ltd) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [669872 2015-09-15] (Adobe Systems Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated) R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2016-06-02] (Advanced Micro Devices) [Datei ist nicht signiert] R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1860616 2016-04-09] () S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [433784 2015-06-16] (BlueStack Systems, Inc.) S3 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [413304 2015-06-16] (BlueStack Systems, Inc.) R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [831096 2015-07-21] (BlueStack Systems, Inc.) R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [217088 2015-07-21] (Connectify) [Datei ist nicht signiert] R2 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [216576 2015-09-09] () [Datei ist nicht signiert] S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1272560 2015-05-21] (Disc Soft Ltd) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [419248 2016-06-07] (LogMeIn, Inc.) S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3685968 2015-07-22] (INCA Internet Co., Ltd.) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-20] (Electronic Arts) R2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-06-07] (Plays.tv, LLC) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2015-12-02] () R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH) R2 Thorn; C:\Users\Lars\AppData\Local\THORN\Thorn.exe [56824 2015-10-01] (GGS) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.2.0.5\WsAppService.exe [411648 2016-03-31] (Wondershare) [Datei ist nicht signiert] S3 WsDrvInst; C:\Program Files (x86)\Wondershare\Dr.Fone for iOS\DriverInstall.exe [98304 2016-06-02] (Wondershare) [Datei ist nicht signiert] R2 WSWNA3100; C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe [316120 2014-08-18] () ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 amdacpksd; C:\WINDOWS\system32\drivers\amdacpksd.sys [297216 2016-06-02] (Advanced Micro Devices) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [23240 2016-03-21] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [101376 2016-05-11] (Advanced Micro Devices) R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2016-01-11] () S3 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1600512 2016-01-05] (BitDefender) R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [282000 2016-01-05] (BitDefender) S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [775424 2016-01-05] (BitDefender) R1 BdfNdisf; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfndisf6.sys [97816 2015-01-06] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfwfpf.sys [107080 2015-01-06] (BitDefender LLC) S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [145528 2015-06-16] (BlueStack Systems) R1 cnnctfy3; C:\Windows\system32\DRIVERS\cnnctfy3.sys [42152 2015-10-04] (Connectify) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-06-13] (Disc Soft Ltd) R1 epp; C:\PROGRAM FILES (X86)\EMSISOFT INTERNET SECURITY\epp.sys [126280 2016-05-26] (Emsisoft Ltd) R1 FWNDIS_LWF; C:\Windows\system32\DRIVERS\fwndislwf64.sys [204688 2016-06-15] () R1 fwwfp; C:\Program Files (x86)\Emsisoft Internet Security\fwwfp764.sys [145416 2016-06-15] () S3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.99.0\gzflt.sys [155912 2015-12-09] (BitDefender LLC) R3 Hamachi; C:\Windows\System32\drivers\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2016-01-11] () S3 ManyCam; C:\Windows\system32\DRIVERS\mcvidrv.sys [49304 2014-12-29] (Visicom Media Inc.) S3 mcaudrv_simple; C:\Windows\system32\drivers\mcaudrv_x64.sys [35992 2014-12-29] (Visicom Media Inc.) S3 NPF; C:\Windows\system32\DRIVERS\npf.sys [47632 2010-02-03] (CACE Technologies, Inc.) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [221824 2016-04-25] (Samsung Electronics Co., Ltd.) S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [452040 2015-12-09] (BitDefender S.R.L.) U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [39936 2015-10-30] (Microsoft Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [36904 2016-02-19] (Wellbia.com Co., Ltd.) U3 idsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-06-22 10:56 - 2016-06-22 10:57 - 00025931 _____ C:\Users\Lars\Desktop\FRST.txt 2016-06-22 10:55 - 2016-06-22 10:55 - 02387456 _____ (Farbar) C:\Users\Lars\Desktop\FRST64.exe 2016-06-21 23:28 - 2016-06-21 23:28 - 00000000 ____D C:\Users\Lars\AppData\Local\CrashRpt 2016-06-21 16:33 - 2016-06-21 16:33 - 00000000 ____D C:\Users\Lars\Documents\Curse 2016-06-21 16:32 - 2016-06-22 10:51 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Curse Client 2016-06-21 16:32 - 2016-06-21 16:32 - 80549888 _____ (Curse) C:\Users\Lars\Downloads\CurseClientSetup_[plugin-Minecraft].exe 2016-06-21 16:32 - 2016-06-21 16:32 - 00001123 _____ C:\Users\Lars\Desktop\Curse.lnk 2016-06-21 16:32 - 2016-06-21 16:32 - 00001109 _____ C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse.lnk 2016-06-21 16:32 - 2016-06-21 16:32 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Curse 2016-06-21 16:31 - 2016-06-21 16:31 - 36655160 _____ C:\Users\Lars\Downloads\FTBInfinity-2.5.0-1.7.10.zip 2016-06-21 14:51 - 2016-06-21 23:14 - 00000022 _____ C:\WINDOWS\S.dirmngr 2016-06-21 14:22 - 2016-06-21 14:22 - 00000000 ____D C:\Users\Lars\Downloads\backups 2016-06-21 14:07 - 2016-06-21 14:07 - 00001183 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-06-21 14:06 - 2016-06-21 14:06 - 22851472 _____ (Malwarebytes ) C:\Users\Lars\Downloads\mbam-setup-chipde.13595-2.2.1.1043.exe 2016-06-21 00:14 - 2016-06-21 00:14 - 06893008 _____ (Piriform Ltd) C:\Users\Lars\Downloads\ccsetup518.exe 2016-06-21 00:14 - 2016-06-21 00:14 - 00002852 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2016-06-21 00:14 - 2016-06-21 00:14 - 00000871 _____ C:\Users\Public\Desktop\CCleaner.lnk 2016-06-21 00:14 - 2016-06-21 00:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2016-06-21 00:14 - 2016-06-21 00:14 - 00000000 ____D C:\Program Files\CCleaner 2016-06-18 01:18 - 2016-06-18 01:18 - 20461248 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe 2016-06-15 21:32 - 2016-06-15 21:39 - 00000000 ____D C:\Users\Lars\Documents\DayZ 2016-06-15 21:32 - 2016-06-15 21:39 - 00000000 ____D C:\Users\Lars\AppData\Local\DayZ 2016-06-15 18:02 - 2016-06-15 18:02 - 00000000 ____D C:\Users\Lars\Desktop\Gta V Mods 2016-06-14 22:21 - 2016-05-28 08:13 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 00290496 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-06-14 22:21 - 2016-05-28 07:25 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll 2016-06-14 22:21 - 2016-05-28 07:23 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll 2016-06-14 22:21 - 2016-05-28 07:23 - 00312160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll 2016-06-14 22:21 - 2016-05-28 07:22 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-06-14 22:21 - 2016-05-28 07:22 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll 2016-06-14 22:21 - 2016-05-28 07:22 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-06-14 22:21 - 2016-05-28 07:22 - 00211296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-06-14 22:21 - 2016-05-28 07:22 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-06-14 22:21 - 2016-05-28 07:20 - 00430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2016-06-14 22:21 - 2016-05-28 07:18 - 00357216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll 2016-06-14 22:21 - 2016-05-28 07:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-06-14 22:21 - 2016-05-28 07:09 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-06-14 22:21 - 2016-05-28 07:09 - 00170848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe 2016-06-14 22:21 - 2016-05-28 07:09 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-06-14 22:21 - 2016-05-28 07:08 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-06-14 22:21 - 2016-05-28 07:08 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys 2016-06-14 22:21 - 2016-05-28 07:08 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-06-14 22:21 - 2016-05-28 07:07 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2016-06-14 22:21 - 2016-05-28 07:07 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-06-14 22:21 - 2016-05-28 07:06 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-06-14 22:21 - 2016-05-28 07:06 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-06-14 22:21 - 2016-05-28 07:06 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2016-06-14 22:21 - 2016-05-28 07:06 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-06-14 22:21 - 2016-05-28 07:06 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-06-14 22:21 - 2016-05-28 07:05 - 04515264 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-06-14 22:21 - 2016-05-28 07:04 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-06-14 22:21 - 2016-05-28 07:04 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2016-06-14 22:21 - 2016-05-28 07:04 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2016-06-14 22:21 - 2016-05-28 07:04 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-06-14 22:21 - 2016-05-28 07:04 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2016-06-14 22:21 - 2016-05-28 07:04 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2016-06-14 22:21 - 2016-05-28 07:03 - 00131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2016-06-14 22:21 - 2016-05-28 06:58 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-06-14 22:21 - 2016-05-28 06:58 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 02548944 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 01594416 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 01372312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 00649792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-06-14 22:21 - 2016-05-28 06:57 - 00577376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-06-14 22:21 - 2016-05-28 06:57 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-06-14 22:21 - 2016-05-28 06:57 - 00521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2016-06-14 22:21 - 2016-05-28 06:35 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe 2016-06-14 22:21 - 2016-05-28 06:35 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-06-14 22:21 - 2016-05-28 06:35 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys 2016-06-14 22:21 - 2016-05-28 06:31 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe 2016-06-14 22:21 - 2016-05-28 06:31 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-06-14 22:21 - 2016-05-28 06:31 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-06-14 22:21 - 2016-05-28 06:29 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-06-14 22:21 - 2016-05-28 06:29 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll 2016-06-14 22:21 - 2016-05-28 06:29 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-06-14 22:21 - 2016-05-28 06:29 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll 2016-06-14 22:21 - 2016-05-28 06:28 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2016-06-14 22:21 - 2016-05-28 06:28 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2016-06-14 22:21 - 2016-05-28 06:28 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll 2016-06-14 22:21 - 2016-05-28 06:27 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-06-14 22:21 - 2016-05-28 06:27 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-06-14 22:21 - 2016-05-28 06:26 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-06-14 22:21 - 2016-05-28 06:26 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2016-06-14 22:21 - 2016-05-28 06:26 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2016-06-14 22:21 - 2016-05-28 06:26 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-06-14 22:21 - 2016-05-28 06:26 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-06-14 22:21 - 2016-05-28 06:25 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.dll 2016-06-14 22:21 - 2016-05-28 06:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys 2016-06-14 22:21 - 2016-05-28 06:24 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll 2016-06-14 22:21 - 2016-05-28 06:23 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-06-14 22:21 - 2016-05-28 06:23 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys 2016-06-14 22:21 - 2016-05-28 06:22 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-06-14 22:21 - 2016-05-28 06:22 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpscript.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 24605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-06-14 22:21 - 2016-05-28 06:19 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL 2016-06-14 22:21 - 2016-05-28 06:18 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-06-14 22:21 - 2016-05-28 06:16 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2016-06-14 22:21 - 2016-05-28 06:16 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\polstore.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2016-06-14 22:21 - 2016-05-28 06:14 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-06-14 22:21 - 2016-05-28 06:13 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-06-14 22:21 - 2016-05-28 06:12 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-06-14 22:21 - 2016-05-28 06:12 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2016-06-14 22:21 - 2016-05-28 06:12 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll 2016-06-14 22:21 - 2016-05-28 06:09 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-06-14 22:21 - 2016-05-28 06:08 - 13385728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-06-14 22:21 - 2016-05-28 06:08 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-06-14 22:21 - 2016-05-28 06:06 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-06-14 22:21 - 2016-05-28 06:06 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-06-14 22:21 - 2016-05-28 06:06 - 01339904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-06-14 22:21 - 2016-05-28 06:05 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-06-14 22:21 - 2016-05-28 06:05 - 03664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-06-14 22:21 - 2016-05-28 06:05 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-06-14 22:21 - 2016-05-28 06:05 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-06-14 22:21 - 2016-05-28 06:04 - 06973952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-06-14 22:21 - 2016-05-28 06:04 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-06-14 22:21 - 2016-05-28 06:04 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 02609664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFramework.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 00693760 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-06-14 22:21 - 2016-05-28 06:02 - 03590144 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-06-14 22:21 - 2016-05-28 06:02 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-06-14 22:21 - 2016-05-28 06:02 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2016-06-14 22:21 - 2016-05-28 06:02 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2016-06-14 22:21 - 2016-05-28 06:01 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-06-14 22:21 - 2016-05-28 06:01 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2016-06-14 22:21 - 2016-05-28 06:01 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-06-14 22:21 - 2016-05-28 06:01 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 02230272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 01730560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2016-06-14 22:21 - 2016-05-28 05:59 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 04896256 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-06-14 22:21 - 2016-05-28 05:57 - 02281472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-06-14 22:21 - 2016-05-28 05:55 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-06-14 22:21 - 2016-05-28 05:53 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-06-13 21:33 - 2016-06-13 21:33 - 00000000 ____D C:\Users\Lars\Documents\Wondershare Dr.Fone for iOS 2016-06-13 21:28 - 2016-06-13 21:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare 2016-06-13 21:28 - 2016-06-13 21:28 - 00001392 _____ C:\Users\Public\Desktop\Wondershare Dr.Fone für iOS.lnk 2016-06-13 21:28 - 2016-06-13 21:28 - 00000000 ___HD C:\Program Files (x86)\Dr.Fone_Temp 2016-06-13 21:28 - 2016-06-13 21:28 - 00000000 ____D C:\Program Files (x86)\Wondershare 2016-06-13 21:28 - 2015-10-27 09:45 - 00076384 _____ (hxxp://libusb-win32.sourceforge.net) C:\WINDOWS\SysWOW64\libusb0.dll 2016-06-13 21:28 - 2015-10-27 09:45 - 00052832 _____ (hxxp://libusb-win32.sourceforge.net) C:\WINDOWS\SysWOW64\Drivers\libusb0.sys 2016-06-13 21:28 - 2015-02-27 10:35 - 00000232 _____ C:\WINDOWS\SysWOW64\dllhost.exe.config 2016-06-13 21:26 - 2016-06-13 21:28 - 00000000 ____D C:\Users\Public\Documents\Wondershare 2016-06-13 21:26 - 2016-06-13 21:26 - 01016464 _____ C:\Users\Lars\Downloads\drfone_setup_full1284.exe 2016-06-13 21:19 - 2016-06-13 21:20 - 38419192 _____ (Reincubate Ltd) C:\Users\Lars\Downloads\iphonebackupextractor615-latest.exe 2016-06-13 14:44 - 2016-06-13 14:44 - 00159047 _____ C:\Users\Lars\Downloads\Versicherungsschein.pdf 2016-06-13 14:44 - 2016-06-13 14:44 - 00083920 _____ C:\Users\Lars\Downloads\Rechnung_13_6_2016_100406387.pdf.pdf 2016-06-12 16:47 - 2016-06-22 00:54 - 00001981 _____ C:\Users\Lars\Desktop\Archeage.lnk 2016-06-12 16:46 - 2016-06-22 00:54 - 00001078 _____ C:\Users\Lars\Desktop\Glyph.lnk 2016-06-12 16:46 - 2016-06-15 22:45 - 00000000 ____D C:\Users\Lars\AppData\Local\Glyph 2016-06-12 16:46 - 2016-06-15 22:16 - 00000000 ____D C:\Program Files (x86)\Glyph 2016-06-12 16:46 - 2016-06-12 16:47 - 00000000 ____D C:\ProgramData\Glyph 2016-06-12 16:46 - 2016-06-12 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glyph 2016-06-12 12:12 - 2016-06-12 16:46 - 81587680 _____ (Trion Worlds Inc.) C:\Users\Lars\Downloads\GlyphInstall-0-150.exe 2016-06-11 09:53 - 2016-06-11 09:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2016-06-11 09:53 - 2016-06-11 09:53 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2016-06-11 00:01 - 2016-06-11 00:01 - 00000000 ____D C:\Users\Lars\AppData\LocalLow\Unity 2016-06-11 00:01 - 2016-06-11 00:01 - 00000000 ____D C:\Users\Lars\AppData\LocalLow\Hyper Hippo Productions Ltd_ 2016-06-11 00:00 - 2016-06-11 00:00 - 00000202 _____ C:\Users\Lars\Desktop\AdVenture Capitalist.url 2016-06-10 15:50 - 2016-06-10 15:50 - 00000000 ____D C:\ProgramData\Brother 2016-06-10 15:49 - 2016-06-10 15:50 - 00000000 ____D C:\Users\Lars\Downloads\install 2016-06-10 15:48 - 2016-06-10 15:49 - 151108968 _____ (A.I.SOFT,INC.) C:\Users\Lars\Downloads\MFC-J470DW-inst-A1-OCE.EXE 2016-06-10 15:19 - 2016-06-10 15:19 - 00753112 _____ C:\Users\Lars\Downloads\message-rfc822-attachment 2016-06-08 17:44 - 2016-06-08 17:44 - 00000000 ____D C:\Users\Lars\AppData\Local\Reincubate Temporary Files 2016-06-08 17:41 - 2016-06-08 17:41 - 37623544 _____ (Reincubate Ltd) C:\Users\Lars\Downloads\iphonebackupextractor612-latest.exe 2016-06-08 17:38 - 2016-06-08 17:38 - 00000000 ____D C:\Users\Lars\AppData\Roaming\HMYGSetting 2016-06-08 17:29 - 2016-06-08 17:35 - 47436640 _____ (Wondershare ) C:\Users\Lars\Downloads\mobiletrans-bing_full1687.exe 2016-06-08 17:21 - 2016-06-08 17:22 - 00000000 ____D C:\Users\Lars\Desktop\100APPLE 2016-06-08 17:13 - 2016-06-08 17:15 - 189502778 _____ C:\Users\Lars\Downloads\IMG_0136.mov 2016-06-08 16:29 - 2016-06-08 16:30 - 00000000 ____D C:\Users\Public\Documents\Daossoft iTunes Password Rescuer 2016-06-08 16:29 - 2016-06-08 16:29 - 03633477 _____ C:\Users\Lars\Downloads\itunes-password-recovery.exe 2016-06-08 16:21 - 2016-06-09 22:58 - 00000025 _____ C:\Users\Lars\Desktop\Neues Textdokument.txt 2016-06-07 21:16 - 2016-06-07 21:16 - 32362403 _____ C:\Users\Lars\Downloads\16015c-1299.rar 2016-06-07 21:15 - 2016-06-07 21:15 - 34709631 _____ C:\Users\Lars\Downloads\fba8c1-Suzuki Srad 750 By BetoPHGames.rar 2016-06-07 21:15 - 2016-06-07 21:15 - 28316326 _____ C:\Users\Lars\Downloads\fe11cf-NinjaH2r.rar 2016-06-07 21:14 - 2016-06-07 21:14 - 02270291 _____ C:\Users\Lars\Downloads\Bati2 Files.rar 2016-06-06 16:49 - 2016-06-06 16:49 - 00000000 ____D C:\Program Files (x86)\AMD 2016-06-06 16:21 - 2016-06-07 22:05 - 00000055 _____ C:\Users\Lars\Desktop\IMEI.txt 2016-06-05 20:57 - 2016-06-05 20:57 - 00000000 ____D C:\Users\Lars\AppData\Local\Team_ELAN_Launcher 2016-06-05 20:54 - 2016-06-05 20:54 - 00002589 _____ C:\Users\Public\Desktop\Team-ELAN Launcher.lnk 2016-06-05 20:54 - 2016-06-05 20:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team ELAN 2016-06-05 20:54 - 2016-06-05 20:54 - 00000000 ____D C:\Program Files (x86)\Team-ELAN Launcher 2016-06-05 20:53 - 2016-06-05 20:53 - 00000000 ____D C:\Users\Lars\AppData\Local\Downloaded Installations 2016-06-05 20:23 - 2016-06-05 20:53 - 04872351 _____ C:\Users\Lars\Downloads\Team-ELAN Launcher Setup.exe 2016-06-05 13:32 - 2016-06-05 13:32 - 01116565 _____ C:\Users\Lars\Downloads\4d4fd7-bati2.rar 2016-06-05 13:29 - 2016-06-05 13:29 - 31668903 _____ C:\Users\Lars\Downloads\5572be-z4i.rar 2016-06-05 13:26 - 2016-06-05 13:26 - 82070250 _____ C:\Users\Lars\Downloads\820066-Audi Rs7 Sportback 2015.rar 2016-06-05 13:23 - 2016-06-05 13:23 - 51845594 _____ C:\Users\Lars\Downloads\80c721-2014 Tesla model S V1.0 by Dreamsky.rar 2016-06-05 13:21 - 2016-06-05 13:21 - 08492389 _____ C:\Users\Lars\Downloads\688dc7-Mercedes-Benz S550 W221.rar 2016-06-05 13:20 - 2016-06-05 13:20 - 25718366 _____ C:\Users\Lars\Downloads\e7517e-2013 Audi R8 V10 + PPI Razor GT Spyder Tuning 1.2(2).rar 2016-06-05 13:18 - 2016-06-05 13:18 - 14243031 _____ C:\Users\Lars\Downloads\5fe580-Bentley Continental GT 2012 v.1.1.rar 2016-06-05 13:17 - 2016-06-05 13:17 - 13177336 _____ C:\Users\Lars\Downloads\8f58fc-SLR V2.0.rar 2016-06-05 13:16 - 2016-06-05 13:16 - 38858204 _____ C:\Users\Lars\Downloads\85baef-C63.zip 2016-06-05 13:07 - 2016-06-05 13:07 - 22585379 _____ C:\Users\Lars\Downloads\eb3bd1-2016 Mercedes-Benz AMG GT Add-on v2.2(1).zip 2016-06-02 23:14 - 2016-06-02 23:14 - 00462080 _____ C:\WINDOWS\system32\amdmiracast.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00150544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00141280 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00141280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00125288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00123776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00122704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00109856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00109856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00092328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00092328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2016-06-02 23:13 - 2016-06-02 23:13 - 08865344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2016-06-02 23:13 - 2016-06-02 23:13 - 08577456 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2016-06-02 23:13 - 2016-06-02 23:13 - 06999496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2016-06-02 23:11 - 2016-06-02 23:11 - 00297216 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys 2016-06-02 23:02 - 2016-06-02 23:02 - 48616960 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2016-06-02 23:02 - 2016-06-02 23:02 - 00252928 _____ C:\WINDOWS\system32\clinfo.exe 2016-06-02 23:01 - 2016-06-02 23:01 - 38098432 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2016-06-02 23:00 - 2016-06-02 23:00 - 00096256 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2016-06-02 23:00 - 2016-06-02 23:00 - 00087040 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2016-06-02 22:58 - 2016-06-02 22:58 - 27433472 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll 2016-06-02 22:58 - 2016-06-02 22:58 - 21600768 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll 2016-06-02 22:58 - 2016-06-02 22:58 - 08699904 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll 2016-06-02 22:54 - 2016-06-02 22:54 - 06952448 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll 2016-06-02 22:43 - 2016-06-02 22:43 - 00184320 _____ C:\WINDOWS\system32\amdhdl64.dll 2016-06-02 22:43 - 2016-06-02 22:43 - 00164352 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 30188032 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 00732160 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 00607744 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 00117760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll 2016-06-02 22:41 - 2016-06-02 22:41 - 06965248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll 2016-06-02 22:38 - 2016-06-02 22:38 - 05643776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll 2016-06-02 22:38 - 2016-06-02 22:38 - 00717520 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb 2016-06-02 22:38 - 2016-06-02 22:38 - 00717520 _____ C:\WINDOWS\system32\atiapfxx.blb 2016-06-02 22:37 - 2016-06-02 22:37 - 15711744 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2016-06-02 22:37 - 2016-06-02 22:37 - 00385536 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2016-06-02 22:37 - 2016-06-02 22:37 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2016-06-02 22:37 - 2016-06-02 22:37 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2016-06-02 22:37 - 2016-06-02 22:37 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2016-06-02 22:37 - 2016-06-02 22:37 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2016-06-02 22:36 - 2016-06-02 22:36 - 14302720 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2016-06-02 22:35 - 2016-06-02 22:35 - 24836096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2016-06-02 22:35 - 2016-06-02 22:35 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll 2016-06-02 22:35 - 2016-06-02 22:35 - 00038400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll 2016-06-02 22:34 - 2016-06-02 22:34 - 00113152 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll 2016-06-02 22:34 - 2016-06-02 22:34 - 00092160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll 2016-06-02 22:33 - 2016-06-02 22:33 - 08750592 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll 2016-06-02 22:32 - 2016-06-02 22:32 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap 2016-06-02 22:31 - 2016-06-02 22:31 - 07160832 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll 2016-06-02 22:31 - 2016-06-02 22:31 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2016-06-02 22:31 - 2016-06-02 22:31 - 00274432 _____ C:\WINDOWS\system32\dgtrayicon.exe 2016-06-02 22:31 - 2016-06-02 22:31 - 00258560 _____ C:\WINDOWS\system32\GameManager64.dll 2016-06-02 22:31 - 2016-06-02 22:31 - 00212480 _____ C:\WINDOWS\system32\atieah64.exe 2016-06-02 22:30 - 2016-06-02 22:30 - 00588288 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2016-06-02 22:30 - 2016-06-02 22:30 - 00306688 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2016-06-02 22:30 - 2016-06-02 22:30 - 00270336 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2016-06-02 22:30 - 2016-06-02 22:30 - 00230912 _____ C:\WINDOWS\system32\amdgfxinfo64.dll 2016-06-02 22:30 - 2016-06-02 22:30 - 00202752 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll 2016-06-02 22:30 - 2016-06-02 22:30 - 00190464 _____ C:\WINDOWS\SysWOW64\atieah32.exe 2016-06-02 22:30 - 2016-06-02 22:30 - 00093696 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2016-06-02 22:28 - 2016-06-02 22:28 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap 2016-06-02 22:26 - 2016-06-02 22:26 - 01304576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00973824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00973824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00185344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00159232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00106496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2016-06-02 22:25 - 2016-06-02 22:25 - 00119808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll 2016-06-02 22:25 - 2016-06-02 22:25 - 00101376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll 2016-06-02 22:25 - 2016-06-02 22:25 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2016-06-02 22:23 - 2016-06-02 22:23 - 00251392 _____ C:\WINDOWS\system32\hsa-thunk64.dll 2016-06-02 22:23 - 2016-06-02 22:23 - 00217088 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll 2016-06-02 16:50 - 2016-06-02 16:50 - 02412544 _____ C:\WINDOWS\system32\amdacpusl.pdb 2016-06-02 16:41 - 2016-06-02 16:41 - 00364544 _____ (Advanced Micro Devices) C:\WINDOWS\system32\amdacpusl.dll 2016-06-02 16:41 - 2016-06-02 16:41 - 00306176 _____ C:\WINDOWS\system32\amdacpusl.pdb.pub 2016-06-02 16:41 - 2016-06-02 16:41 - 00248832 _____ (Advanced Micro Devices) C:\WINDOWS\SysWOW64\amdacpusl.dll 2016-05-27 21:19 - 2016-05-27 21:19 - 17141991 _____ (The qBittorrent project) C:\Users\Lars\Downloads\qbittorrent_3.3.4_setup.exe 2016-05-27 20:01 - 2016-05-27 20:01 - 00000233 _____ C:\Users\Lars\Desktop\Tom Clancy's The Division.url 2016-05-27 19:59 - 2016-06-22 00:54 - 00001286 _____ C:\Users\Lars\Desktop\Uplay.lnk 2016-05-27 19:59 - 2016-05-28 10:30 - 00000000 ____D C:\Users\Lars\AppData\Local\Ubisoft Game Launcher 2016-05-27 19:59 - 2016-05-27 19:59 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2016-05-27 19:59 - 2016-05-27 19:59 - 00000000 ____D C:\Program Files (x86)\Ubisoft 2016-05-27 19:58 - 2016-05-27 19:59 - 66465792 _____ (Ubisoft) C:\Users\Lars\Downloads\UplayInstaller.exe 2016-05-27 15:17 - 2016-05-27 15:17 - 42900584 _____ (Foxit Software Inc. ) C:\Users\Lars\Downloads\FoxitReader734_enu_Setup_clean.exe 2016-05-27 15:17 - 2016-05-27 15:17 - 00000000 ____D C:\Users\Public\Documents\sun ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-06-22 10:56 - 2015-08-07 21:36 - 00000000 ____D C:\Program Files (x86)\Emsisoft Internet Security 2016-06-22 10:56 - 2015-07-31 03:38 - 00000000 ____D C:\FRST 2016-06-22 10:55 - 2015-08-03 01:43 - 00000000 ____D C:\JDownload-Downloads 2016-06-22 10:48 - 2016-04-16 11:33 - 00000000 ____D C:\Users\Lars\AppData\Roaming\PlaysTV 2016-06-22 10:47 - 2015-11-27 02:01 - 00000000 ____D C:\Users\Lars 2016-06-22 10:47 - 2015-05-31 19:29 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-06-22 01:13 - 2015-01-22 14:22 - 00000000 ____D C:\Steam 2016-06-22 01:03 - 2015-10-11 23:03 - 00000935 _____ C:\WINDOWS\Tasks\EPSON WF-2660 Series Update {9081683F-A5C0-48D1-BA85-6F574D141488}.job 2016-06-22 01:03 - 2015-05-31 20:51 - 00000000 ____D C:\Users\Lars\AppData\Local\Battle.net 2016-06-22 00:54 - 2016-03-27 23:46 - 00001348 _____ C:\Users\Lars\Desktop\OpenIV.lnk 2016-06-22 00:54 - 2015-10-13 01:35 - 00001996 _____ C:\Users\Lars\Desktop\Cyperia.lnk 2016-06-22 00:54 - 2015-10-12 01:40 - 00002074 _____ C:\Users\Lars\Desktop\RuneScape.lnk 2016-06-22 00:54 - 2015-10-06 21:22 - 00001338 _____ C:\Users\Lars\Desktop\Photoshop - Shortcut.lnk 2016-06-22 00:54 - 2015-06-03 14:42 - 00000000 ____D C:\Users\Lars\AppData\Roaming\TS3Client 2016-06-22 00:54 - 2015-06-03 10:35 - 00001132 _____ C:\Users\Lars\Desktop\TeamSpeak 3 Client.lnk 2016-06-22 00:26 - 2015-08-07 17:30 - 00004154 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{263812E1-84DF-4E9B-A71A-F4F8B17732A4} 2016-06-22 00:24 - 2015-10-18 23:24 - 00000935 _____ C:\WINDOWS\Tasks\EPSON WF-2660 Series Update {C157D075-AB90-45F7-B1BC-861FFF09E749}.job 2016-06-22 00:18 - 2015-06-23 14:32 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-06-22 00:17 - 2015-05-31 19:29 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-06-21 23:20 - 2015-11-27 02:00 - 02113474 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-06-21 23:20 - 2015-10-30 20:35 - 00898182 _____ C:\WINDOWS\system32\perfh007.dat 2016-06-21 23:20 - 2015-10-30 20:35 - 00201668 _____ C:\WINDOWS\system32\perfc007.dat 2016-06-21 23:20 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF 2016-06-21 23:15 - 2015-08-13 18:18 - 00000437 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2016-06-21 23:14 - 2016-02-09 09:15 - 00000000 ____D C:\Users\Lars\AppData\Local\THORN 2016-06-21 23:14 - 2015-11-27 02:15 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-06-21 22:54 - 2015-05-31 20:18 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Skype 2016-06-21 22:45 - 2015-05-31 20:08 - 00000000 ____D C:\Users\Lars\AppData\Local\Spotify 2016-06-21 22:45 - 2015-05-31 20:07 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Spotify 2016-06-21 22:03 - 2015-06-18 17:19 - 00000000 ____D C:\Users\Lars\Documents\Euro Truck Simulator 2 2016-06-21 20:31 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-06-21 20:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-06-21 16:53 - 2015-07-04 23:19 - 00000000 ____D C:\Users\Lars\AppData\Local\LogMeIn Hamachi 2016-06-21 14:50 - 2015-11-27 01:57 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin 2016-06-21 14:50 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-06-21 14:20 - 2015-05-31 18:12 - 00000000 ____D C:\Users\Lars\AppData\Local\VirtualStore 2016-06-21 14:07 - 2015-08-02 22:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-06-21 14:07 - 2015-08-02 22:19 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-06-21 14:07 - 2015-07-31 12:23 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-06-21 11:42 - 2015-06-06 10:33 - 00000000 ____D C:\Users\Lars\AppData\Local\Adobe 2016-06-21 00:16 - 2015-09-11 23:27 - 00000000 ____D C:\Program Files (x86)\Connectify 2016-06-21 00:16 - 2015-08-07 20:39 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2016-06-21 00:16 - 2015-06-13 17:21 - 00000000 ____D C:\Users\Lars\AppData\Roaming\DAEMON Tools Lite 2016-06-21 00:16 - 2015-06-02 23:07 - 00000000 ____D C:\Users\Lars\AppData\Roaming\TeamViewer 2016-06-21 00:15 - 2015-12-27 14:58 - 00000000 ____D C:\WINDOWS\Minidump 2016-06-21 00:15 - 2015-11-27 01:52 - 00000000 ___DC C:\WINDOWS\Panther 2016-06-20 19:37 - 2015-08-07 02:47 - 00000000 ____D C:\Program Files\Rockstar Games 2016-06-20 19:37 - 2015-06-13 18:30 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2016-06-19 20:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache 2016-06-18 22:57 - 2015-06-23 14:32 - 00000946 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job 2016-06-18 22:34 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-06-18 01:18 - 2015-06-23 14:32 - 00004006 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier 2016-06-18 01:18 - 2015-06-23 14:32 - 00003858 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-06-18 00:18 - 2015-05-31 19:31 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-06-16 15:04 - 2015-08-07 01:15 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-06-16 14:57 - 2015-11-27 01:53 - 00385528 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-06-15 22:47 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2016-06-15 22:47 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-06-15 22:47 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-06-15 20:57 - 2015-10-05 23:50 - 00000000 ____D C:\Users\Lars\AppData\Roaming\.minecraft 2016-06-15 19:40 - 2015-08-07 21:36 - 00204688 _____ C:\WINDOWS\system32\Drivers\fwndislwf64.sys 2016-06-15 18:07 - 2015-10-03 14:26 - 00000000 ____D C:\Users\Lars\AppData\Local\AMD 2016-06-15 18:03 - 2016-01-17 20:30 - 00002209 _____ C:\Users\Public\Desktop\Grand Theft Auto V.lnk 2016-06-15 12:00 - 2015-06-02 00:56 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-06-15 11:54 - 2015-06-02 00:56 - 142482544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-06-14 20:33 - 2015-10-30 09:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-06-14 20:33 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-06-13 21:33 - 2016-05-17 12:09 - 00000000 ____D C:\Program Files (x86)\iTunes 2016-06-13 21:28 - 2015-11-23 22:05 - 00000000 ____D C:\ProgramData\Wondershare 2016-06-13 21:28 - 2015-11-23 21:57 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Wondershare 2016-06-13 19:16 - 2015-11-15 14:04 - 00000000 ____D C:\Users\Lars\AppData\LocalLow\LastPass 2016-06-11 10:10 - 2015-07-23 09:43 - 00000000 ____D C:\Users\Lars\AppData\Local\Arma 3 2016-06-11 09:53 - 2015-11-26 01:13 - 00001003 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2016-06-11 09:35 - 2015-05-31 19:49 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Raptr 2016-06-11 09:34 - 2015-11-28 10:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings 2016-06-11 09:29 - 2015-11-27 01:57 - 00000000 ____D C:\Program Files\AMD 2016-06-11 09:24 - 2015-05-31 19:45 - 00000000 ____D C:\AMD 2016-06-10 10:56 - 2016-01-10 19:09 - 00000000 ____D C:\Program Files (x86)\BEWERBUNGSMASTER 2016-06-10 10:55 - 2016-04-09 13:36 - 00000000 ____D C:\Program Files (x86)\Crossout 2016-06-10 10:55 - 2015-08-13 17:40 - 00000000 ____D C:\Users\Lars\.android 2016-06-08 18:29 - 2015-06-07 23:35 - 00000000 ____D C:\Users\Lars\AppData\Roaming\vlc 2016-06-08 17:11 - 2015-12-05 13:22 - 00000000 ___RD C:\Users\Lars\iCloudDrive 2016-06-08 16:59 - 2015-11-23 23:44 - 00000000 ____D C:\Users\Lars\Desktop\Handy Backup 2016-06-06 21:57 - 2015-05-31 20:18 - 00000000 ____D C:\ProgramData\Skype 2016-06-05 20:21 - 2015-07-23 20:39 - 00000000 ____D C:\Users\Lars\Documents\Arma 3 - Other Profiles 2016-06-04 20:45 - 2015-06-03 10:35 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2016-06-04 00:47 - 2015-07-04 10:13 - 00000000 ____D C:\Program Files (x86)\SpeedFan 2016-06-02 23:14 - 2015-11-13 23:38 - 01512192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2016-06-02 23:14 - 2015-11-13 23:38 - 01243344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2016-06-02 23:14 - 2015-11-13 23:38 - 00166488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2016-06-02 23:14 - 2015-11-13 23:38 - 00137136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2016-06-02 23:13 - 2015-11-13 23:38 - 10700864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2016-06-02 23:13 - 2015-11-13 23:37 - 09798560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2016-06-02 23:13 - 2015-11-13 23:37 - 08883384 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2016-06-02 23:08 - 2015-11-13 23:26 - 26990080 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2016-06-02 22:39 - 2016-05-11 00:36 - 00865280 _____ (AMD) C:\WINDOWS\system32\coinst_16.20.dll 2016-06-02 22:31 - 2016-05-20 23:02 - 00223744 _____ C:\WINDOWS\SysWOW64\GameManager32.dll 2016-06-02 22:25 - 2015-11-13 22:32 - 00497664 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys 2016-06-02 14:53 - 2015-06-06 10:39 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-05-28 10:21 - 2015-05-31 20:41 - 00000000 ____D C:\Users\Lars\Documents\My Games 2016-05-28 10:20 - 2015-05-31 19:45 - 00000000 ____D C:\ProgramData\Package Cache 2016-05-28 07:55 - 2015-11-27 01:56 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-11-15 14:04 - 2015-11-15 14:04 - 20320792 _____ (LastPass) C:\Program Files (x86)\Common Files\lpuninstall.exe 2015-10-15 01:48 - 2015-10-15 01:48 - 0000034 _____ () C:\Users\Lars\AppData\Roaming\AdobeWLCMCache.dat 2015-06-16 21:36 - 2015-08-13 22:26 - 0007599 _____ () C:\Users\Lars\AppData\Local\Resmon.ResmonCfg 2016-04-03 17:32 - 2016-04-03 17:32 - 0000017 _____ () C:\ProgramData\adaware-installer-reboot-required.tmp ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-06-18 22:31 ==================== Ende von FRST.txt ============================ |
22.06.2016, 10:05 | #2 |
| Browser total langsam Addition:
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 20-06-2016 01 durchgeführt von Lars (2016-06-22 10:57:31) Gestartet von C:\Users\Lars\Desktop Windows 10 Pro Version 1511 (X64) (2015-11-27 00:21:11) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3765219005-2896119444-2935634367-500 - Administrator - Disabled) ASPNET (S-1-5-21-3765219005-2896119444-2935634367-1004 - Limited - Enabled) DefaultAccount (S-1-5-21-3765219005-2896119444-2935634367-503 - Limited - Disabled) Gast (S-1-5-21-3765219005-2896119444-2935634367-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3765219005-2896119444-2935634367-1003 - Limited - Enabled) Lars (S-1-5-21-3765219005-2896119444-2935634367-1000 - Administrator - Enabled) => C:\Users\Lars ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Emsisoft Internet Security (Enabled - Up to date) {15510D9D-6530-DA29-224F-7BA1BDD1CB58} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Emsisoft Internet Security (Enabled - Up to date) {AE30EC79-430A-D5A7-18FF-40D3C65681E5} FW: Emsisoft Internet Security (Enabled) {2D6A8CB8-2F5F-DB71-0910-D29443028C23} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 9.38 beta (HKLM-x32\...\7-Zip) (Version: - ) ACP Application (Version: 2016.0602.1640.44 - Advanced Micro Devices, Inc.) Hidden Ad-Aware Antivirus (HKLM\...\{50E2E8FE-1F8B-4F21-BE9F-F9152D3EA5B1}_AdAwareUpdater) (Version: 11.10.767.8917 - Lavasoft) AdAwareUpdater (Version: 11.10.767.8917 - Lavasoft) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.3.0.151 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated) Adobe Flash Player 22 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated) Adobe Illustrator CC 2015 (HKLM-x32\...\ILST_19_1_0) (Version: 19.1.0 - Adobe Systems Incorporated) Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.2.2 - Adobe Systems Incorporated) AdVenture Capitalist (HKLM\...\Steam App 346900) (Version: - Hyper Hippo Games) Akamai NetSession Interface (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Akamai) (Version: - Akamai Technologies, Inc) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.) AntimalwareEngine (Version: 3.0.99.0 - Lavasoft) Hidden AntispamEngine (Version: 2.4.4244.0 - Lavasoft) Hidden Apple Application Support (32-Bit) (HKLM-x32\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{C2651553-6CA3-4822-B2E6-BC4ACA6E0EA2}) (Version: 4.3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) ARK: Survival Evolved (HKLM\...\Steam App 346110) (Version: - Studio Wildcard) ArmA3Sync 1.5.72 (HKLM-x32\...\{F097E7D7-D093-4394-9EED-43AFCCD12B7A}_is1) (Version: 1.5.72 - The [S.o.E] team) Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team) AutoHotkey 1.1.23.05 (HKLM\...\AutoHotkey) (Version: 1.1.23.05 - Lexikos) AvcEngine (Version: 3.11.12293.0 - Lavasoft) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB) BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.9.30.9239 - BlueStack Systems, Inc.) BlueStacks Notification Center (HKLM-x32\...\{3792811C-832F-4392-B44A-24092901EDDC}) (Version: 0.9.30.9239 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Bus Simulator 16 Version 0.0.754.6956 (HKLM-x32\...\{5E3BD2FB-C004-4760-814A-A04C7A14D47C}_is1) (Version: 0.0.754.6956 - astragon Entertainment) Call of Duty: Black Ops III (HKLM-x32\...\Steam App 311210) (Version: - Treyarch) Camtasia Studio 8 (HKLM-x32\...\{A79B26D7-D6CB-408A-90CF-51508A4B62AB}) (Version: 8.5.2.1999 - TechSmith Corporation) Catalyst Control Center Next Localization BR (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.0602.1651.28487 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.18 - Piriform) Connectify 2015 (HKLM\...\Connectify) (Version: 2015.1.0.35473 - Connectify) CopyTrans Control Center deinstallieren (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\CopyTrans Suite) (Version: 4.002 - WindSolutions) Curse (HKLM-x32\...\{1F2611FB-6F69-4AA8-BECD-243BD8CB45F3}) (Version: 6.0.0.0 - Curse) Curse Client (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse) Cyperia (HKLM-x32\...\{CA9F6B5A-2C32-4CB3-8635-390AB45A8C49}) (Version: 2.0 - Cyperia) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.0.0.0054 - Disc Soft Ltd) Dark Souls II Scholar of the First Sin Version 1.02 (HKLM-x32\...\{8A6B7869-8A1F-4E25-B781-E2826805E183}_is1) (Version: 1.02 - From Software) Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform) Die Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.13.104.1010 - Electronic Arts Inc.) Drakonia Configurator (HKLM-x32\...\{2EAD3327-2F92-455F-A675-E5CC4980B67A}}_is1) (Version: - ) Emsisoft Internet Security (HKLM-x32\...\{5502032C-88C1-4303-99FE-B5CBD7684CEA}_is1) (Version: 10.0 - Emsisoft Ltd.) EPSON WF-2660 Series Printer Uninstall (HKLM\...\EPSON WF-2660 Series) (Version: - SEIKO EPSON Corporation) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) Euro Truck Simulator 2 Multiplayer 0.1.9.2 Alpha (HKLM-x32\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.1.9.2 Alpha - ETS2MP Team) FirewallEngine (Version: 1.6.0.0 - Lavasoft) Hidden Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Führerschein Trainer Version 2015.04 (HKLM-x32\...\Führerschein Trainer_is1) (Version: 2015.04 - theorie24 GmbH) Gameforge Live 2.0.10 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.10 - Gameforge) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.) Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden Gpg4win (2.2.6) (HKLM-x32\...\GPG4Win) (Version: 2.2.6 - The Gpg4win Project) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden Happy Cloud Client (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\HappyCloud) (Version: 5.88 - Happy Cloud, Inc.) iCloud (HKLM\...\{ADFDB647-35C0-4254-9EE6-2D9C3B7104BD}) (Version: 5.2.1.69 - Apple Inc.) ICQ 8.4 (build 7786) (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\ICQ) (Version: 8.4.7786.0 - ICQ) Intel(R) Network Connections 18.7.28.0 (HKLM\...\PROSetDX) (Version: 18.7.28.0 - Intel) iTunes (HKLM\...\{58D7E5F7-BAD1-49C5-93C8-B655736EDA00}) (Version: 12.4.0.119 - Apple Inc.) Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) KeePass Password Safe 1.29 (HKLM-x32\...\KeePass Password Safe_is1) (Version: 1.29 - Dominik Reichl) Kits Configuration Installer (x32 Version: 8.59.25584 - Microsoft) Hidden LastPass (Nur deinstallieren) (HKLM-x32\...\LastPass) (Version: - LastPass) Livestreamer 1.12.2 (HKLM-x32\...\Livestreamer) (Version: - ) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.472 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.472 - LogMeIn, Inc.) Hidden Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{D285FC5F-3021-32E9-9C59-24CA325BDC5C}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 42.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 de)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0 - Mozilla) Mozilla Thunderbird 45.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 45.0 (x86 de)) (Version: 45.0 - Mozilla) NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version: - NCSOFT) NETGEAR WNA3100 wireless USB 2.0 driver (HKLM-x32\...\{C2425F91-1F7B-4037-9A05-9F290184798D}) (Version: 2.2.0.2 - NETGEAR) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.8 - Notepad++ Team) NVIDIA PhysX (HKLM-x32\...\{E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6}) (Version: 9.09.1112 - NVIDIA Corporation) OnlineThreatsEngine (Version: 3.0.1.23 - Lavasoft) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenIV (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\OpenIV) (Version: 2.8.703 - .black/OpenIV Team) OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.10.2.4863 - Electronic Arts, Inc.) Outils de vérification linguistique 2016 de Microsoft Office*- Français (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Path of Exile (HKLM-x32\...\{b05517a5-78c9-4c02-86f4-5ad4db5b469d}) (Version: 2.2.1.53862 - Grinding Gear Games) Path of Exile (x32 Version: 2.2.1.53862 - Grinding Gear Games) Hidden PlanetSide 2 (HKLM\...\Steam App 218230) (Version: - Daybreak Games) PlanetSide 2 (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.11.2-r113542-release - Plays.tv, LLC) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.) Python 3.3.5 (HKLM-x32\...\{d5a55e9f-237f-302f-a8e9-d01eb292a741}) (Version: 3.3.5150 - Python Software Foundation) QuickTime 7 (HKLM-x32\...\{80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC}) (Version: 7.78.80.95 - Apple Inc.) Raptr (HKLM-x32\...\Raptr) (Version: 5.2.1-r113066-release - Raptr, Inc) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.76.1028.2013 - Realtek) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.9.6 - Rockstar Games) RuneScape Launcher 1.2.7 (HKLM-x32\...\{FA52A2D0-298E-4D40-8BB7-39928627EA6A}) (Version: 1.2.7 - Jagex Ltd) Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.) SleepTimer Ultimate 1.3 (HKLM-x32\...\{0EE56463-49B2-45E1-B74F-3E0139DBC986}_is1) (Version: - Christian Handorf) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Spotify) (Version: 1.0.31.56.g526cfefe - Spotify AB) Strumenti di correzione di Microsoft Office 2016 - Italiano (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) Team-ELAN Launcher (HKLM-x32\...\{02E71465-AFE4-4A68-B0A5-3C3691C879C0}) (Version: 1.00.0000 - Team ELAN) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.56083 - TeamViewer) Tom Clancy's The Division (HKLM-x32\...\Uplay Install 568) (Version: - Ubisoft) Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft) Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-00C1-0000-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft) Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-012B-0407-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 19.1 - Ubisoft) USB Vibration Joystick (HKLM-x32\...\{4999B2F1-3E74-409A-B8B5-E94448AA9EA6}) (Version: 2007.08.17 - ) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Vulkan Run Time Libraries 1.0.11.0 (HKLM\...\VulkanRT1.0.11.0-3) (Version: 1.0.11.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.11.0 (Version: 1.0.11.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1-3) (Version: 1.0.3.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.1 (Version: 1.0.3.1 - LunarG, Inc.) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Mobile-Gerätecenter (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) Windows Software Development Kit (HKLM-x32\...\{363a2c1e-637f-45ce-933b-5a5463efd945}) (Version: 8.59.29750 - Microsoft Corporation) WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Wondershare Dr.Fone für iOS(Build 7.2.1.2) (HKLM-x32\...\{A26F8BBD-EC10-4bdc-8AD8-F146825A8A63}_is1) (Version: 7.2.1.2 - Wondershare Software Co.,Ltd.) World of Tanks (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) WPT Redistributables (x32 Version: 8.59.29750 - Microsoft) Hidden WPTx64 (x32 Version: 8.59.29722 - Microsoft) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-384998528E03}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Lars\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {08417DD2-15DE-427C-B280-BA174E4BBA91} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {116BB508-0403-4175-9E54-D956DC8B9543} - System32\Tasks\AdobeAAMUpdater-1.0-Lars-PC-Lars => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-09-04] (Adobe Systems Incorporated) Task: {13C0DE9A-4E43-4779-8777-8E4EB3EB0475} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {171FE729-2610-45D0-9957-6EA26070E4EA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {1D59F681-179B-4B92-B9E8-2B2C0A80791C} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {23BAD6A6-6C4A-4B20-B12B-018B4E9DB6D8} - System32\Tasks\GameNet => C:\Program Files (x86)\QGNA\qGNA.exe Task: {31B4C235-C77F-4FDB-A2DC-A731EC8E7B6D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {3A5E383E-1040-427E-B43A-B59A5E4F8FCC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-31] (Google Inc.) Task: {402F999D-A69E-4891-985F-121FA8854D48} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {43D73F10-61EE-46E9-B663-2757792C8220} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {4AB7E195-2EA1-4240-BBA9-3B152FA7FEE6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {4EF4D540-13BD-421B-B329-2538EC75CA93} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation) Task: {55165D1F-0F94-4ABD-B51E-4405F51383F0} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {5C1C12ED-7584-49C8-87AC-CAA05B28C94E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-31] (Google Inc.) Task: {5E7FA2A7-F775-445B-8E07-7F94ECB783DE} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {63C36B24-B825-42C0-A9F8-6D816B46142E} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {69BEEE76-DED9-4872-89DC-D3869B1BE5E2} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {6A3BAEE8-CA5C-4C87-9FE5-B9FD8A73619E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {6F8FD10D-A257-4DCF-A444-EF69997FD4E5} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {71A4DA3B-7483-4318-9AFE-75C929963D67} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {7BCA5EB0-F10A-4FAE-A751-8EE31AE781C0} - System32\Tasks\EPSON WF-2660 Series Update {C157D075-AB90-45F7-B1BC-861FFF09E749} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSMAE.EXE [2013-11-22] (SEIKO EPSON CORPORATION) Task: {7DB8AE80-6CD6-42A7-B1E0-EF66F092396F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated) Task: {90FBEA6F-3713-4470-9626-45118A823DC5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {93B8EAD6-2F3A-4802-BF27-3B86A2A29D5D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {9D4C94FA-3941-474D-9520-C329B0F2347E} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {A4B1492E-471E-445C-AA10-6380794AE556} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {A732C129-6AF3-4886-922D-EF2FB2860DB1} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {A88559B9-01BD-42A0-ABF7-67DBB5A330DC} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {B456AAD6-F57C-466D-9F74-E2509B75A9E3} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {B4AA0C3F-E120-42AF-9B83-C1918AD66ADF} - System32\Tasks\EPSON WF-2660 Series Update {9081683F-A5C0-48D1-BA85-6F574D141488} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSMAE.EXE [2013-11-22] (SEIKO EPSON CORPORATION) Task: {B5A26F31-CFC9-443F-ABF5-97FAC3F78C0A} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {B6AA6970-8F89-49E4-BFD2-C5986877C312} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-06-18] (Adobe Systems Incorporated) Task: {B7D5295A-6111-498E-BF22-572282634F86} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-06-02] (Advanced Micro Devices, Inc.) Task: {BF1763C4-3531-4862-A0FE-179581D2F3FA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {BFC3155E-4434-40D8-B107-B3374203BC63} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-06-01] (Piriform Ltd) Task: {C6583B87-0390-49B0-AE3B-B893093F2DBE} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {C9512245-D71E-4A9A-8653-43CD5480E98A} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {C9ECEA67-1BE2-43EF-BFB6-DDCF96A44AB4} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-06-15] (Microsoft Corporation) Task: {CB103F14-A66A-44A8-89CF-9F06E7E0822E} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {CDD8D4E9-420A-460F-903B-0A2196FD8D8E} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {D0F1739F-B29F-4AB0-8F10-33C22A12EDAF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {DBB6A431-8154-4838-9019-AC925C723D34} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {DEF197D0-39BE-442D-98CA-E5B4ADCC3E08} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {DFAB144B-8B2C-43CD-A264-3E0F7B334CE6} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {E15FF773-36F1-4CF8-904A-CF326C99CF80} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {F1F4EE9F-5DE7-4714-98E7-A5EC83911775} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {F3C68566-313D-4378-A40D-A342D4265DA8} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {FC233190-40E2-4E26-8D7F-7754064D2D60} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {FCDC0BC5-4765-4812-96E3-47640988889B} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {FDF28603-DC9E-48D7-BC75-867521383223} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_192_pepper.exe [2016-06-18] (Adobe Systems Incorporated) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_192_pepper.exe Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\EPSON WF-2660 Series Update {9081683F-A5C0-48D1-BA85-6F574D141488}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSMAE.EXE:/EXE:{9081683F-A5C0-48D1-BA85-6F574D141488} /F:UpdateWORKGROUP\LARS-PC$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON WF-2660 Series Update {C157D075-AB90-45F7-B1BC-861FFF09E749}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSMAE.EXE:/EXE:{C157D075-AB90-45F7-B1BC-861FFF09E749} /F:UpdateWORKGROUP\LARS-PC$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Adblock Plus.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=kgdbbfekflnbhfbejkkhfoplikipmfei ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-08-07 21:36 - 2016-06-15 19:40 - 01043568 _____ () C:\Program Files (x86)\Emsisoft Internet Security\fw64.dll 2016-03-18 22:56 - 2016-03-18 22:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-04-22 01:07 - 2016-04-22 01:07 - 01337144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-09-09 12:52 - 2015-09-09 12:52 - 00216576 _____ () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe 2015-11-07 04:19 - 2015-12-02 23:06 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2015-09-11 23:20 - 2014-08-18 17:50 - 00316120 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-04-15 22:36 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-04-15 22:36 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-09-11 19:02 - 2015-09-11 19:02 - 00803488 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2015-12-18 19:25 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-05-15 14:02 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-06-14 22:21 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-06-14 22:21 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-06-14 22:21 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-06-14 22:21 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-06-25 17:34 - 2015-06-25 17:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2015-06-25 17:37 - 2015-06-25 17:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-06-25 17:35 - 2015-06-25 17:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2015-06-25 17:38 - 2015-06-25 17:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-06-25 16:53 - 2015-06-25 16:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2015-06-25 16:51 - 2015-06-25 16:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2015-09-09 12:40 - 2015-09-09 12:40 - 00221696 _____ () C:\Program Files (x86)\GNU\GnuPG\libksba-8.dll 2015-09-09 12:39 - 2015-09-09 12:39 - 00072192 _____ () C:\Program Files (x86)\GNU\GnuPG\libassuan-0.dll 2015-09-09 12:28 - 2015-09-09 12:28 - 00050176 _____ () C:\Program Files (x86)\GNU\GnuPG\libw32pth-0.dll 2015-09-09 12:42 - 2015-09-09 12:42 - 00744448 _____ () C:\Program Files (x86)\GNU\GnuPG\libgcrypt-20.dll 2015-09-09 12:34 - 2015-09-09 12:34 - 00087040 _____ () C:\Program Files (x86)\GNU\GnuPG\libgpg-error-0.dll 2015-11-24 22:48 - 2015-11-24 22:48 - 00028160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\servicemanager.pyd 2015-11-24 22:46 - 2015-11-24 22:46 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes26.dll 2015-11-24 22:48 - 2015-11-24 22:48 - 00041472 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32service.pyd 2015-11-24 22:48 - 2015-11-24 22:48 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_hashlib.pyd 2015-11-24 22:48 - 2015-11-24 22:48 - 00017920 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd 2015-11-24 22:48 - 2015-11-24 22:48 - 00019968 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32evtlog.pyd 2015-11-24 22:48 - 2015-11-24 22:48 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_socket.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ssl.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ctypes.pyd 2015-11-24 22:46 - 2015-11-24 22:46 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom26.dll 2015-11-24 22:48 - 2015-11-24 22:48 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 01980928 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd 2015-12-07 22:57 - 2015-12-07 22:57 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 01862144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 00516608 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 04060160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\select.pyd 2015-10-04 00:34 - 2015-07-21 18:13 - 00715000 _____ () C:\Program Files (x86)\Connectify\log4cplus.dll 2016-02-09 09:15 - 2015-04-24 17:40 - 00043520 _____ () C:\Users\Lars\AppData\Local\THORN\QtSolutions_Service-head.dll 2015-09-11 23:20 - 2015-02-26 20:19 - 00380928 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiLib.dll 2016-02-09 09:15 - 2014-08-28 11:36 - 00732160 _____ () C:\Users\Lars\AppData\Local\THORN\libGLESv2.dll 2016-02-09 09:15 - 2014-08-28 11:41 - 00856576 _____ () C:\Users\Lars\AppData\Local\THORN\platforms\qwindows.dll 2016-02-09 09:15 - 2014-08-28 11:36 - 00047104 _____ () C:\Users\Lars\AppData\Local\THORN\libEGL.dll 2015-11-23 21:58 - 2014-05-19 18:19 - 00137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll 2015-11-23 21:58 - 2014-10-31 17:37 - 01498112 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00143296 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 02631616 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00554944 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00041920 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libdirectsound_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00039872 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll 2015-04-13 15:58 - 2015-04-13 15:58 - 00086464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirect3d_plugin.dll 2015-04-13 15:56 - 2015-04-13 15:56 - 00070675 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectdraw_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 02158528 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00114112 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00245184 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00089536 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libvdr_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00055744 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00072128 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libsmooth_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00593344 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libhttplive_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00771520 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libdash_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00131520 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libzip_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00052672 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\librar_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00023488 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\librecord_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00145856 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 01566656 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00332736 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\lua\liblua_plugin.dll 2015-04-13 15:58 - 2015-04-13 15:58 - 01264064 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libxml_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libwin_msg_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00069568 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00048576 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libwin_hotkeys_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00036800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libes_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00344512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libtheora_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 12001728 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\librawvideo_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00157632 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspeex_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00754624 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libvorbis_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaes3_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00031680 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblpcm_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00089024 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_h264_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00032192 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_flac_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00040384 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_dirac_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00030144 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mlp_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00078272 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4audio_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00044992 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_vc1_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00026048 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libsvcdsub_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00028608 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspudec_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00035264 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4video_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00037312 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpegvideo_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libcvdsub_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00025536 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_hevc_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00127936 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libhttp_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 13522368 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libavcodec_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libmpeg_audio_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00242112 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmp4_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00108992 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libavi_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00096704 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libasf_plugin.dll 2015-04-13 15:57 - 2015-04-13 15:57 - 00091584 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libflacsys_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00261056 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libjpeg_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00027072 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libcdg_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00304576 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libpng_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 01291200 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libschroedinger_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00028608 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libdts_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00036800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaraw_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00052160 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libsubstx3g_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00456128 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libflac_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00035776 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libg711_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 01549248 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblibass_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00356288 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libfaad_plugin.dll 2015-04-13 16:00 - 2015-04-13 16:00 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liba52_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00022464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_mixer\libfloat_mixer_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00027072 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00140224 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libmpgatofixed32_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00176576 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdtstofloat32_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00067520 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\liba52tofloat32_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 01504704 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsimple_channel_mixer_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00022464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\liba52tospdif_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00022976 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdtstospdif_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00029632 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdolby_surround_decoder_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00022464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libugly_resampler_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libtrivial_channel_mixer_plugin.dll 2015-04-13 15:59 - 2015-04-13 15:59 - 00034240 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libaudio_format_plugin.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\Software\Classes\.exe: => <===== ACHTUNG ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\aeriagames.com -> hxxps://aeriagames.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-08-01 12:51 - 2015-09-26 17:29 - 00000974 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img13.jpg DNS Servers: 192.168.0.1 - 192.168.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist deaktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: Aeria Ignite => "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Lars\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: ApplePhotoStreams => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: iCloudDrive => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe MSCONFIG\startupreg: iCloudServices => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: NetWorx => "C:\Program Files\NetWorx\networx.exe" /auto MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent MSCONFIG\startupreg: Raptr => "C:\Program Files (x86)\Raptr\raptrstub.exe" --startup MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Spotify => "C:\Users\Lars\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Lars\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" HKLM\...\StartupApproved\StartupFolder: => "NETGEAR WNA3100 Genie.lnk" HKLM\...\StartupApproved\Run: => "Connectify Hotspot" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Raptr" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "NCUpdateHelper" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000000" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000001" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "pamela.exe" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "icq" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "iCloudDrive" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "iCloudPhotos" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "iCloudServices" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{CE7924C7-6731-4D2F-A579-FB25D28754CC}] => (Allow) C:\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{024A78A5-CBDA-4A11-8A47-299BADD9143B}] => (Allow) C:\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{30018106-5CA5-493D-BA40-3F36F4F66CCF}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{2F34CF64-3ECF-4C87-9E22-F8B34CFA874A}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{E3C379BD-5592-4985-8A01-90AA28E490D3}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{B8B5A244-090B-48FE-9E26-7E25AB91AA9E}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{48315EA6-0BF3-4756-BA3C-DC84E4D5F40E}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{C2A809B1-6666-4659-92D7-BBB82CD96B5C}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{75FFA364-20FF-447B-BFB7-AB5FE3DA3693}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{1B5D27E7-20E0-4E6D-ACA5-D52914B79242}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{40B87362-D8C0-46D5-B9B3-B353CE23EE99}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{62038C5D-2503-4213-A2FD-482A30AE086B}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{7AA09037-BCCA-478D-98A5-D91BC0BE5898}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{46D85CC8-A998-441F-B6A0-5C1B5F8732FF}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{2036CF32-0BCA-48C4-9767-FADC542F60FC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CB0AC557-EDD6-4DB9-945F-7BCFAD79B458}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{07EDC545-D4EA-4062-895F-2DF21B3B2D5B}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{2975FE69-D61A-4DB5-B17E-7ECD83C08BA0}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{BEB61260-3307-4B24-96CB-5EB4AE6B92C8}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{F9404294-C5D6-4CB6-BCC3-AFA2240DDF67}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{546800FF-52E3-4182-A58D-262EC2FB9854}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{17A1A088-01BC-49AF-A5AE-D67987093B55}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{8ADE5938-5896-47E1-A2ED-354C10DD13B5}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{78CF26C2-5031-4B34-9062-98AA4612971D}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{E521AEAA-12F1-496F-AEB1-A6A54A746DEF}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{F31788BD-3A9B-4115-AB4D-72495BE0ECC9}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{11FD84A9-60E5-4064-9C92-0A4FAA52CC6B}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{09496F3C-B7AE-479C-8982-FA494AD0F78B}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{18FE1D26-BE44-445F-9EC4-67ECA849E5A5}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{56F73693-9724-4354-B56B-DED02A11AA91}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{D44C6B31-775F-4BB3-8E29-043B08C0486D}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{1876F35C-6180-4C72-B190-573B8EB50AF5}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{4CB1A060-C22E-4FCE-A043-E27267CF1E7A}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{9FE75676-2A20-4BAC-82BC-FDBB55C9EE1E}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{31D3349C-B645-4D06-A9CA-31E5328A3EBF}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{94AFA5EF-A433-4F0A-8A98-1A8AC515DC1D}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{C08D872D-64A0-40E6-B351-33145AF2BC90}] => (Allow) C:\Program Files (x86)\Connectify\Connectify.exe FirewallRules: [{8E07ADED-99C9-4F9E-849D-F76D215B92F7}] => (Block) C:\jdownload-downloads\igg-train simulator\igg-train.simulator.2016\railworks\railworks.exe FirewallRules: [{7574393A-CFB1-401C-BFC7-E1FECF871715}] => (Block) C:\jdownload-downloads\igg-train simulator\igg-train.simulator.2016\railworks\railworks.exe FirewallRules: [UDP Query User{637B3056-23B3-43FA-A724-FE04667DE888}C:\jdownload-downloads\igg-train simulator\igg-train.simulator.2016\railworks\railworks.exe] => (Allow) C:\jdownload-downloads\igg-train simulator\igg-train.simulator.2016\railworks\railworks.exe FirewallRules: [TCP Query User{F63C781B-0211-4859-A239-9C989DE5BD15}C:\jdownload-downloads\igg-train simulator\igg-train.simulator.2016\railworks\railworks.exe] => (Allow) C:\jdownload-downloads\igg-train simulator\igg-train.simulator.2016\railworks\railworks.exe FirewallRules: [{62D996CD-B76E-4FF4-8EA5-8BC66C52DE6E}] => (Block) %ProgramFiles%\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{115D63F6-99A0-4EC8-9127-C1944DDCA783}] => (Block) %ProgramFiles%\Rockstar Games\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{EFF2987F-258B-427E-9F5A-533F40BBF8F5}] => (Block) %ProgramFiles%\Rockstar Games\Grand Theft Auto V\PlayGTAV.exe FirewallRules: [{AEC0F460-45F3-424A-B19B-67240A938FDD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{19979628-A4C5-4E0A-B93C-F529F00AA814}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B6341CA0-8853-45C5-8E4C-F2A7E165BC3E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{0517EA9E-420F-4650-A767-A9B40707DFB5}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\131\tencentdl.exe FirewallRules: [{43649AC0-81E4-4102-B6A1-990179AA8E8A}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{8F66AE67-9D40-4D37-9CCC-9A8DEF7BB24D}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{39DDBA3F-3DCA-45F9-8E75-E9E437BC5EB1}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{E835AF0E-D07F-4271-B793-3D137BD83CF9}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{5296E645-B509-498D-81BA-28CE6306E25C}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{23342D7B-3001-46C1-81C1-AD7B52AD7D09}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [UDP Query User{52B117D5-5173-4E2E-A38B-D273D53284D3}C:\users\lars\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\lars\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{CCC909B6-AA09-407E-95B9-6D9837DA0DBF}C:\users\lars\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\lars\appdata\roaming\spotify\spotify.exe FirewallRules: [{FF0EC7EE-D393-428F-8371-C778D6C7B47D}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{2B64E529-5069-4FA3-B44E-831BBFF6E803}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{137D9B53-97EA-4DBB-882A-A3B31696E06F}] => (Allow) C:\Steam\bin\steamwebhelper.exe FirewallRules: [{BC82D8FF-0282-4EFC-BB16-43663CA5E1EB}] => (Allow) C:\Steam\bin\steamwebhelper.exe FirewallRules: [{7AF82323-8D5C-4484-858C-601815BB9446}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{E57A51AA-1928-43A4-B89F-7406E47EB113}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C089D124-DD21-41AE-B92A-3473BFDFD473}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{B81199A2-24ED-40AF-96DA-72C2FFE4B5EF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{EC4CBB69-E596-47D1-8A0C-7C69E6AE90C1}] => (Allow) C:\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe FirewallRules: [{2FD7D19E-6026-426B-AADA-F3353E2E9079}] => (Allow) C:\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe FirewallRules: [{99E3DEAC-B77B-4384-979E-32C35DD1C448}] => (Allow) C:\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe FirewallRules: [{B657AF3D-3083-43B3-9952-6F5784279311}] => (Allow) C:\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe FirewallRules: [{70C5B41F-CEAA-435C-AD75-554DFD223905}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{CE6FF1B8-5381-4399-A70D-E2BA3FF9DECF}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{B12916BF-98AB-4F55-B611-4D4423FB9BE8}] => (Allow) LPort=8317 FirewallRules: [{F1139318-4F73-4535-B7B8-A39E634F1B35}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{ED4A67C5-B89C-48C4-A0F3-5C29BE8ED415}] => (Allow) C:\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{E765B9F4-CAEF-432B-8F8F-F10364422ED0}] => (Allow) C:\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{C86DC137-46D5-437F-97F9-2FF01FB4185D}] => (Allow) C:\Steam\steamapps\common\DayZ\DayZ_BE.exe FirewallRules: [{A3224FFD-4431-4FF7-A3AD-D42C3E440300}] => (Allow) C:\Steam\steamapps\common\DayZ\DayZ_BE.exe FirewallRules: [{D43EB3A7-170B-4F01-88BC-31D4B55E226B}] => (Allow) C:\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe FirewallRules: [{36532757-5C01-4F86-8C45-07F090DBF003}] => (Allow) C:\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe FirewallRules: [{9FE13949-7397-4171-A876-D0169A22260D}] => (Allow) C:\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe FirewallRules: [{92DB1F6E-5947-4C1C-8D4C-A49A74F93FE7}] => (Allow) C:\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe FirewallRules: [{96225C40-BA12-4E08-AF16-8829EF255166}] => (Allow) C:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{DBB78537-8595-4963-AC8F-B7FEBCFA5287}] => (Allow) C:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [TCP Query User{B99E5ACD-6B10-47BE-82D0-7712FB851264}C:\users\lars\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\lars\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{E8F4C737-88B9-49C8-972C-4520375429E0}C:\users\lars\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\lars\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{AE540779-6D0C-4D3A-A670-6634AA4AFE2A}C:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [UDP Query User{3FE0B1BB-4E09-4D29-900B-CD9D7B1214D8}C:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{9E634C61-4CA2-44FF-B229-05827901C288}] => (Block) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{F9F32486-4E5C-46A1-AF03-0BBBD0A57720}] => (Block) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [TCP Query User{5DCA3CEA-0941-4B25-BFCA-B44849681A6C}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe FirewallRules: [UDP Query User{19A1276E-39F3-49E3-971C-F370EB501CF8}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe FirewallRules: [{7C0EE0B4-78FB-4797-A397-8F60E7AA3A4E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{6BC3024A-252B-40AA-856B-27788895E9EB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{735ADD48-7119-4806-B862-F81A2BCD2343}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{8B6880E6-9499-48DA-856F-A82F8E0C40F8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [TCP Query User{DA9FBD2F-24C3-43C9-B946-7B5B137B4E8F}C:\program files (x86)\origin games\bfh\bfh.exe] => (Allow) C:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [UDP Query User{F50ED99C-BB35-441F-B2F4-96014FC9F64D}C:\program files (x86)\origin games\bfh\bfh.exe] => (Allow) C:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{3B158594-8F81-48C4-B2B7-151767F5BD6B}] => (Block) C:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{571C107A-8A75-48C7-87D4-05FBA8F120F8}] => (Block) C:\program files (x86)\origin games\bfh\bfh.exe FirewallRules: [{3F2E1B5E-1766-4B15-8526-1E1CE9BF34A8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{4DF203A2-7672-43BA-B9EB-D06A3D114C9D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{D2DF6C20-9430-4CC0-84A0-DF0D131DE114}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{65B4BC9D-60D3-4678-8E26-180F7FD6195C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{CAC39096-4158-4936-8D06-5021AFE2449C}] => (Allow) C:\Steam\steamapps\common\Arma 2\arma2.exe FirewallRules: [{AE6F6F92-3A59-4F55-BDC6-93F1B8375992}] => (Allow) C:\Steam\steamapps\common\Arma 2\arma2.exe FirewallRules: [{5A40747E-EC7F-473C-B290-A3AACB0FA86F}] => (Allow) C:\Program Files (x86)\Die Sims 4\Game\Bin\TS4.exe FirewallRules: [{EDFEB981-A509-43BF-A493-EB5721CCC812}] => (Allow) C:\Program Files (x86)\Die Sims 4\Game\Bin\TS4.exe FirewallRules: [{B436C1BD-24AF-4059-BAC4-3F9A0CB87E5F}] => (Allow) C:\Program Files (x86)\Die Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{AE052301-7AC1-45B2-952E-9E00D03722ED}] => (Allow) C:\Program Files (x86)\Die Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{E2393D5F-DBBC-4F90-A39C-3D15127A85CF}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{536DEA72-3F8A-4C07-9668-542B7205002D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{74EAB6E0-B733-4441-B709-8E6385D259EF}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{B0C02FB2-633C-4622-AB71-7BA695567C35}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{0690452B-FF85-46B6-A1EE-93A925DF5D2D}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{67AF31B4-E8B6-4B4F-82A6-A0F872B131FC}] => (Allow) LPort=2869 FirewallRules: [{768BE65C-DFF7-4F93-80A7-F0B870E4CB56}] => (Allow) LPort=1900 FirewallRules: [{A785C447-D07A-4017-8D0B-AEC34325E8B3}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{51967A30-B626-40DE-A2B9-29387F8FADE6}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{5C184C66-91A2-42EA-A4C3-133A2F0070BB}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{7492E648-681F-49F3-9979-CE356900E5B4}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{37BABB00-4CFB-404C-B21B-FE3E4F315ACB}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{86C9D120-ABF7-4245-8F55-0CA298A9772F}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{42CBEFE2-BCAB-44EC-9647-2B2DD46A7F20}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{214C2417-B186-4627-8961-3FCF11C14DC1}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{9BD6D9F4-6295-43B1-BA9C-4D2A95A77768}] => (Allow) C:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{40D81835-34AC-4338-8783-DDE1C6656ABF}] => (Allow) C:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{79C28DB0-DB04-41BD-82F3-611BFE6D103C}] => (Allow) C:\Users\Lars\Downloads\PlayBlackDesert.exe FirewallRules: [{0CD0698B-F99A-430C-8CC1-08F62ED32990}] => (Allow) C:\Users\Lars\Downloads\PlayBlackDesert.exe FirewallRules: [{06333201-0C02-43BD-A9D6-A89D56324F20}] => (Allow) C:\Users\Lars\AppData\Local\Temp\is-5T7NQ.tmp\ggs9075.tmp FirewallRules: [{C17E51FC-C0E1-4DE4-9124-25B78B028B91}] => (Allow) C:\Users\Lars\AppData\Local\Temp\is-5T7NQ.tmp\ggs9075.tmp FirewallRules: [{90151D15-A6BE-4AE1-B992-1C3DB21C2CCA}] => (Allow) C:\Users\Lars\AppData\Local\Temp\is-RLJL4.tmp\setup4701.tmp FirewallRules: [{1ACE3EF2-1BF5-4D63-BDBB-F9D5FC33FD73}] => (Allow) C:\Users\Lars\AppData\Local\Temp\is-RLJL4.tmp\setup4701.tmp FirewallRules: [{ECDFB02B-036F-4AE5-B126-5A6EFBF57CD8}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{81DC46DB-733A-4FA2-B4D3-D192085787C4}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{3026E536-FB9D-4CCD-97BD-7753BFD0B658}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{2B009F52-6626-4807-BCED-13BC7199721E}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{538D75ED-4ED3-4D1B-A644-FDEB6AE01BDA}] => (Allow) C:\Users\Lars\Downloads\bin\BlackDesert32.exe FirewallRules: [{63A488F5-3045-4C2C-8FB9-D876EF9FA5DF}] => (Allow) C:\Users\Lars\Downloads\bin64\BlackDesert64.exe FirewallRules: [{8AE51A92-3248-4BDD-ACBB-296734F74BCE}] => (Allow) C:\Users\Lars\Downloads\BlackDesert_Launcher.exe FirewallRules: [{A3907541-358D-4C6C-A1CA-CC1863C03173}] => (Allow) C:\Users\Lars\Downloads\BlackDesert_Downloader.exe FirewallRules: [{3A4632B8-B4A7-43D6-8C71-ACA8B3A91E11}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [{7F418CE2-2820-4AFA-9AAA-692DEBF7D763}] => (Allow) C:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{6778EC99-F9FD-4A80-8F5C-D040FA3F1224}] => (Allow) C:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{6C71D029-A4C7-46C8-8B31-29193F5A59AC}] => (Allow) C:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{AE159D36-C3F0-41BF-823B-989BA5056F23}] => (Allow) C:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{E39F4458-0BC2-49A9-AA97-D4D0684F2126}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{06FD814F-1B58-4A8E-98A6-E6AFFC63404A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{F1558540-3A41-479B-ABBE-AF6649DFC718}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{5645F079-9FC1-4EAE-9DBF-4826CC98C5E2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{441F8B9C-DE06-409B-BD72-ABC4D5C3AEFE}] => (Allow) C:\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{7E0E16CA-616C-4581-9AFC-D94F8684161C}] => (Allow) C:\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{42DF7017-7E54-41AD-9872-A6C34ECCE8DF}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{F122B0A7-B30D-4DE3-814F-CF36AC8D849D}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe FirewallRules: [{F7D99F26-EEA6-490F-A528-EAB5CD575B6F}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe FirewallRules: [{775028BA-164E-4BC4-B934-C071B989160C}] => (Allow) LPort=26675 FirewallRules: [{6BE22CE2-9258-4837-B844-34C64A1D0F29}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's The Division\TheDivision.exe FirewallRules: [{720AED73-561D-4E36-A7CB-A8889DA0B4E6}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{AEB8EC66-9DEE-4213-B33B-9F118B163746}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{63B45F8D-A3F4-435D-BA50-AD4F96FEBF2E}] => (Allow) C:\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe FirewallRules: [{9F673253-BB71-4A28-BCEF-A5C7F1A56A80}] => (Allow) C:\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe FirewallRules: [{41CFA0E2-EADA-4F08-BBD1-0A4BC724DDF6}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{13EB31E6-7854-48EF-88B4-13580118A078}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{E1976599-D8CA-4F71-AB53-362A2F026593}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{6024691B-1B53-4B45-BA8F-E64A01448554}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{C912D6C4-F644-41E6-8F1D-0F355C1A3F2F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{6397DCA3-D794-461D-8CFE-2C58B2661FC8}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{AD8F9F8E-F22C-4EAD-9055-2D56E49A4B45}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{1002633D-42ED-498E-BD2E-F88A30BD8F07}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{DF693AF2-A9B0-4229-AD5E-DB3E94AC717C}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe ==================== Wiederherstellungspunkte ========================= 18-06-2016 22:32:30 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (06/22/2016 10:54:08 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/22/2016 01:13:20 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (06/21/2016 11:15:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: WsAppService.exe, Version: 2.2.0.5, Zeitstempel: 0x56fce241 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.2.10586.306, Zeitstempel: 0x571af331 Ausnahmecode: 0xe053534f Fehleroffset: 0x0000000000071f28 ID des fehlerhaften Prozesses: 0x%9 Startzeit der fehlerhaften Anwendung: 0xWsAppService.exe0 Pfad der fehlerhaften Anwendung: WsAppService.exe1 Pfad des fehlerhaften Moduls: WsAppService.exe2 Berichtskennung: WsAppService.exe3 Vollständiger Name des fehlerhaften Pakets: WsAppService.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: WsAppService.exe5 Error: (06/21/2016 07:43:36 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LARS-PC) Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (06/21/2016 04:52:45 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm javaw.exe, Version 8.0.25.18 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1f40 Startzeit: 01d1cbcbc1943ae2 Beendigungszeit: 26 Anwendungspfad: C:\Users\Lars\Documents\Curse\Minecraft\Install\runtime\jre-x64\1.8.0_25\bin\javaw.exe Berichts-ID: ce3a0bde-37bf-11e6-9c33-d0509956a297 Vollständiger Name des fehlerhaften Pakets: Auf das fehlerhafte Paket bezogene Anwendungs-ID: Error: (06/21/2016 04:43:57 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm javaw.exe, Version 8.0.25.18 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 804 Startzeit: 01d1cbca6846a7d0 Beendigungszeit: 26 Anwendungspfad: C:\Users\Lars\Documents\Curse\Minecraft\Install\runtime\jre-x64\1.8.0_25\bin\javaw.exe Berichts-ID: 93f2a144-37be-11e6-9c33-d0509956a297 Vollständiger Name des fehlerhaften Pakets: Auf das fehlerhafte Paket bezogene Anwendungs-ID: Error: (06/21/2016 02:50:15 PM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (06/21/2016 11:49:31 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/21/2016 12:31:42 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (06/20/2016 07:44:33 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Systemfehler: ============= Error: (06/22/2016 10:44:13 AM) (Source: NetBT) (EventID: 4307) (User: ) Description: Initialisierung fehlgeschlagen, da die Transportschicht das Öffnen der Anfangsadressen verweigerte. Error: (06/22/2016 10:44:13 AM) (Source: NetBT) (EventID: 4307) (User: ) Description: Initialisierung fehlgeschlagen, da die Transportschicht das Öffnen der Anfangsadressen verweigerte. Error: (06/22/2016 10:44:10 AM) (Source: NetBT) (EventID: 4307) (User: ) Description: Initialisierung fehlgeschlagen, da die Transportschicht das Öffnen der Anfangsadressen verweigerte. Error: (06/22/2016 10:44:10 AM) (Source: NetBT) (EventID: 4307) (User: ) Description: Initialisierung fehlgeschlagen, da die Transportschicht das Öffnen der Anfangsadressen verweigerte. Error: (06/22/2016 10:44:10 AM) (Source: NetBT) (EventID: 4307) (User: ) Description: Initialisierung fehlgeschlagen, da die Transportschicht das Öffnen der Anfangsadressen verweigerte. Error: (06/22/2016 10:44:10 AM) (Source: NetBT) (EventID: 4307) (User: ) Description: Initialisierung fehlgeschlagen, da die Transportschicht das Öffnen der Anfangsadressen verweigerte. Error: (06/22/2016 01:13:13 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenzugriff_551df" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/22/2016 01:13:13 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenspeicher _551df" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/22/2016 01:13:13 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Kontaktdaten_551df" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/22/2016 01:13:13 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Synchronisierungshost_551df" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. CodeIntegrity: =================================== Date: 2016-06-19 21:30:45.539 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-19 19:10:21.991 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-16 14:59:25.568 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-15 13:41:37.764 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-16 21:22:15.583 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-15 21:09:08.077 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-15 14:29:18.017 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-17 16:08:51.940 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-17 14:08:12.028 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-16 16:26:52.335 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Xeon(R) CPU E3-1231 v3 @ 3.40GHz Prozentuale Nutzung des RAM: 33% Installierter physikalischer RAM: 8111.05 MB Verfügbarer physikalischer RAM: 5367.99 MB Summe virtueller Speicher: 16303.05 MB Verfügbarer virtueller Speicher: 12968.86 MB ==================== Laufwerke ================================ Drive c: (Sekundär) (Fixed) (Total:931.07 GB) (Free:185.5 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: F7150527) Partition 1: (Active) - (Size=931.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) ==================== Ende von Addition.txt ============================ |
28.06.2016, 23:30 | #3 |
| Browser total langsam push
__________________ |
01.07.2016, 12:49 | #4 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Browser total langsamZitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
01.07.2016, 22:29 | #5 |
| Browser total langsam Guten Tag, nein kein gewerblich genutztes System waren Testversionen von Adobe sind schon längst abgelaufen. Microsoft Office Prof habe ich nicht installiert bzw. ich finde es nicht unter der normalen "Start-Suche" nutze es aber auch nicht. MfG |
02.07.2016, 00:38 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Browser total langsam Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ --> Browser total langsam |
03.07.2016, 13:14 | #7 |
| Browser total langsamCode:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2016.07.03.05 rootkit: v2016.05.27.01 Windows 10 x64 NTFS Internet Explorer 11.420.10586.0 Lars :: LARS-PC [administrator] 03.07.2016 13:35:23 mbar-log-2016-07-03 (13-35-23).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 423756 Time elapsed: 25 minute(s), 2 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) |
04.07.2016, 09:24 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Browser total langsam Adware/Junkware/Toolbars entfernen Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop! Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren! 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
__________________ Logfiles bitte immer in CODE-Tags posten |
04.07.2016, 10:36 | #9 |
| Browser total langsam Vielen Dank für die schnelle Antwort! AdAware hat nichts gefunden und auch keine LogDatei erstellt. Das hat JRT ausgespuckt: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.6 (04.25.2016) Operating System: Windows 10 Pro x64 Ran by Lars (Administrator) on 04.07.2016 at 11:32:56,78 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 9 Successfully deleted: C:\ProgramData\1466893451.bdinstall.bin (File) Successfully deleted: C:\Users\Lars\AppData\Local\crashrpt (Folder) Successfully deleted: C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\user.js (File) Successfully deleted: C:\WINDOWS\prefetch\AVIRA_FREE_ANTIVIRUS_15017DE.-A8A8356F.pf (File) Successfully deleted: C:\WINDOWS\prefetch\BOOTOPTIMIZER.EXE-A80177E5.pf (File) Successfully deleted: C:\WINDOWS\system32\RENB07E.tmp (File) Successfully deleted: C:\WINDOWS\SysWOW64\REN73A4.tmp (File) Successfully deleted: C:\WINDOWS\SysWOW64\RENE98B.tmp (File) Successfully deleted: C:\WINDOWS\SysWOW64\RENF5B3.tmp (File) Deleted the following from C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\prefs.js user_pref(browser.newtabpage.pinned, [null,{\url\:\hxxps://www.google.de/\,\title\:\Google\,\frecency\:65559,\lastVisitDate\:1447533888034000,\type\:\history user_pref(extensions.lastpass.loginusers, lars_mueller%40mail.ru); Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 04.07.2016 at 11:35:23,75 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
04.07.2016, 10:58 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Browser total langsam Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken
__________________ Logfiles bitte immer in CODE-Tags posten |
04.07.2016, 11:13 | #11 |
| Browser total langsam FRST: FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 02-07-2016 durchgeführt von Lars (Administrator) auf LARS-PC (04-07-2016 12:02:36) Gestartet von C:\Users\Lars\Desktop Geladene Profile: Lars (Verfügbare Profile: Lars & DefaultAppPool) Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2016\vsserv.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2016\updatesrv.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe (Connectify) C:\Program Files (x86)\Connectify\ConnectifyService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe (Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2016\bdagent.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2016\bdwtxag.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Raptr, Inc) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe (Raptr, Inc) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe (Raptr Inc.) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_ep64.exe (Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe (Raptr Inc.) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_ep64.exe (AppWork GmbH) C:\Users\Lars\AppData\Local\JDownloader 2.0\JDownloader2.exe (Advanced Micro Devices, Inc.) C:\AMD\Radeon-Crimson-16.6.2-Win10-64Bit\Bin64\InstallManagerApp.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Microsoft Corporation) C:\Windows\SysWOW64\wowreg32.exe (Microsoft Corporation) C:\Windows\SysWOW64\wowreg32.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Connectify Hotspot] => C:\Program Files (x86)\Connectify\Connectify.exe [4188408 2015-07-21] (Connectify) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-09-04] (Adobe Systems Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-05-11] (Apple Inc.) HKLM\...\Run: [Windows Mobile Device Center] => C:\Windows\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-05-23] (Raptr, Inc) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2292912 2015-09-17] (Adobe Systems Incorporated) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-08-06] (Apple Inc.) HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [71440 2016-06-07] (Plays.tv, LLC) HKLM-x32\...\Run: [WSHelperSetup.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-06-08] (LogMeIn Inc.) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Run: [Spotify Web Helper] => C:\Users\Lars\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1553520 2016-06-29] (Spotify Ltd) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8722136 2016-06-01] (Piriform Ltd) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Policies\system: [] 0 HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\MountPoints2: {06c6463e-c90e-11e5-9c15-d0509956a297} - "D:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\MountPoints2: {94210b89-9b41-11e5-9c08-d0509956a297} - "D:\HTC_Sync_Manager_PC.exe" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\MountPoints2: {b146edf9-b580-11e5-9c10-d0509956a297} - "E:\AUTOSTARTER.EXE" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\MountPoints2: {f1e88110-11b4-11e5-aba8-d0509956a297} - "D:\SETUP.EXE" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Mystify.scr [150528 2015-10-30] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] () ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lars\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () Startup: C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2016-06-21] ShortcutTarget: Curse.lnk -> C:\Users\Lars\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc) CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\..\Interfaces\{5702e92a-f6ca-4cf4-b600-a9f672948569}: [DhcpNameServer] 192.168.0.1 192.168.0.2 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2016-05-27] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-21] (Oracle Corporation) BHO: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2015-11-15] (LastPass) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-21] (Oracle Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-07] (Oracle Corporation) BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar.dll [2015-11-15] (LastPass) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-07] (Oracle Corporation) Toolbar: HKLM - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2015-11-15] (LastPass) Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll [2015-11-15] (LastPass) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-05-20] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-04-12] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-05-20] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-04-12] (Microsoft Corporation) Edge: ====== Edge Session Restore: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000 -> ist aktiviert. FireFox: ======== FF ProfilePath: C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default FF Homepage: hxxps://www.google.de/ FF Session Restore: -> ist aktiviert. FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-18] () FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-21] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-21] (Oracle Corporation) FF Plugin: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll [2015-11-15] (LastPass) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-09-17] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-18] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-12-18] () FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-07] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-07] (Oracle Corporation) FF Plugin-x32: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll [2015-11-15] (LastPass) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-12-08] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-15] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-09-17] (Adobe Systems) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-12-08] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-05-27] (Adobe Systems Inc.) FF Extension: Black Youtube Theme - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\extensions\{2c93446d-612b-416d-9af0-b7355797b611}.xpi [2016-03-01] FF Extension: NoScript - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-06-26] FF Extension: BetterTTV - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\firefox@betterttv.net.xpi [2015-12-28] FF Extension: ProxTube - Gesperrte YouTube Videos entsperren - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\ich@maltegoetz.de.xpi [2016-06-29] FF Extension: LastPass - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\support@lastpass.com [2016-03-09] FF Extension: DivX Extension Plus - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\{0345e546-3336-4a52-ae1e-9eed64728492}.xpi [2016-05-22] [ist nicht signiert] FF Extension: HTML5 Updater - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\{ba2c8f60-66cf-4745-9e00-f16a9757a8e6}.xpi [2015-12-19] [ist nicht signiert] FF Extension: Adblock Plus - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-06-21] FF Extension: Tab Mix Plus - C:\Users\Lars\AppData\Roaming\Mozilla\Firefox\Profiles\ey2x3ow3.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2016-06-05] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2016\bdtbext FF Extension: Bitdefender Antispam Toolbar - C:\Program Files\Bitdefender\Bitdefender 2016\bdtbext [2016-05-12] [ist nicht signiert] FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2016\bdtbext Chrome: ======= CHR DefaultSearchKeyword: Default -> lp CHR Session Restore: Default -> ist aktiviert. CHR Profile: C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-31] CHR Extension: (BetterTTV) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2016-07-02] CHR Extension: (Google Docs) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-31] CHR Extension: (Google Drive) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-05] CHR Extension: (YouTube) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-05] CHR Extension: (Adblock Plus) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-07-04] CHR Extension: (Google-Suche) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-05] CHR Extension: (PanicButton) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm [2015-05-31] CHR Extension: (Google Tabellen) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-31] CHR Extension: (Google Docs Offline) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-07-02] CHR Extension: (Adblock Plus) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgdbbfekflnbhfbejkkhfoplikipmfei [2015-05-31] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-07-02] CHR Extension: (AdF.ly Skipper ★WORKING★) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\obnfifcganohemahpomajbhocfkdgmjb [2015-08-03] CHR Extension: (Google Mail) - C:\Users\Lars\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-31] CHR HKLM\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] - hxxp://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [669872 2015-09-15] (Adobe Systems Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated) R4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) S4 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1860616 2016-04-09] () S4 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [433784 2015-06-16] (BlueStack Systems, Inc.) S4 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [413304 2015-06-16] (BlueStack Systems, Inc.) R4 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [831096 2015-07-21] (BlueStack Systems, Inc.) R4 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [217088 2015-07-21] (Connectify) [Datei ist nicht signiert] R4 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [216576 2015-09-09] () [Datei ist nicht signiert] S4 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1272560 2015-05-21] (Disc Soft Ltd) R4 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [419248 2016-06-07] (LogMeIn, Inc.) S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3685968 2015-07-22] (INCA Internet Co., Ltd.) S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-20] (Electronic Arts) R4 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-06-07] (Plays.tv, LLC) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2015-12-02] () R4 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [950200 2016-05-24] (Bitdefender) R4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2016\updatesrv.exe [156016 2016-04-25] (Bitdefender) R2 vsserv; C:\Program Files\Bitdefender\Bitdefender 2016\vsserv.exe [1693104 2016-05-11] (Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.2.0.5\WsAppService.exe [411648 2016-03-31] (Wondershare) [Datei ist nicht signiert] S4 WsDrvInst; C:\Program Files (x86)\Wondershare\Dr.Fone for iOS\DriverInstall.exe [98304 2016-06-02] (Wondershare) [Datei ist nicht signiert] R4 WSWNA3100; C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe [316120 2014-08-18] () ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [101376 2016-05-11] (Advanced Micro Devices) R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2016-01-11] () R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1623536 2016-03-18] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [842152 2016-03-18] (BitDefender) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender) R1 BdfNdisf; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfndisf6.sys [97816 2015-01-06] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [128400 2016-06-28] (BitDefender LLC) R1 BDVEDISK; C:\Windows\system32\DRIVERS\bdvedisk.sys [87912 2015-12-04] (BitDefender) S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [145528 2015-06-16] (BlueStack Systems) R1 cnnctfy3; C:\Windows\system32\DRIVERS\cnnctfy3.sys [42152 2015-10-04] (Connectify) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-06-13] (Disc Soft Ltd) R3 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [182936 2015-12-16] (BitDefender LLC) R3 Hamachi; C:\Windows\System32\drivers\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.) R0 ignis; C:\Windows\system32\DRIVERS\ignis.sys [299816 2016-06-28] (Bitdefender) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2016-01-11] () S3 ManyCam; C:\Windows\system32\DRIVERS\mcvidrv.sys [49304 2014-12-29] (Visicom Media Inc.) S3 mcaudrv_simple; C:\Windows\system32\drivers\mcaudrv_x64.sys [35992 2014-12-29] (Visicom Media Inc.) S3 NPF; C:\Windows\system32\DRIVERS\npf.sys [47632 2010-02-03] (CACE Technologies, Inc.) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [221824 2016-04-25] (Samsung Electronics Co., Ltd.) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [520032 2016-06-28] (BitDefender S.R.L.) U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [39936 2015-10-30] (Microsoft Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [36904 2016-02-19] (Wellbia.com Co., Ltd.) S1 epp; \??\C:\PROGRAM FILES (X86)\EMSISOFT INTERNET SECURITY\epp.sys [X] U3 idsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-07-04 12:02 - 2016-07-04 12:04 - 00026057 _____ C:\Users\Lars\Desktop\FRST.txt 2016-07-04 12:02 - 2016-07-04 12:02 - 02390016 _____ (Farbar) C:\Users\Lars\Desktop\FRST64.exe 2016-07-04 12:01 - 2016-07-04 12:02 - 00000000 ____D C:\WINDOWS\LastGood 2016-07-04 11:58 - 2016-07-04 11:59 - 330070928 _____ (AMD Inc.) C:\Users\Lars\Desktop\radeon-crimson-16.6.2-win10-64bit.exe 2016-07-04 11:35 - 2016-07-04 11:35 - 00001561 _____ C:\Users\Lars\Desktop\JRT.txt 2016-07-04 11:32 - 2016-07-04 11:32 - 01610816 _____ (Malwarebytes) C:\Users\Lars\Desktop\JRT.exe 2016-07-04 11:28 - 2016-07-04 11:28 - 03712064 _____ C:\Users\Lars\Desktop\AdwCleaner_5.201.exe 2016-07-03 16:22 - 2016-07-04 01:05 - 00002164 _____ C:\Users\Lars\Desktop\Nexon Launcher.lnk 2016-07-03 16:22 - 2016-07-03 16:26 - 00000000 ____D C:\Users\Lars\AppData\Roaming\NexonLauncher 2016-07-03 16:22 - 2016-07-03 16:22 - 00000000 ____D C:\Users\Lars\AppData\Local\NexonLauncher 2016-07-03 16:22 - 2016-07-03 16:22 - 00000000 ____D C:\Users\Lars\AppData\Local\Crashpad 2016-07-03 16:17 - 2016-07-03 16:17 - 00000000 ____D C:\Program Files (x86)\Nexon 2016-07-03 16:16 - 2016-07-03 16:17 - 10274904 _____ C:\Users\Lars\Downloads\NexonLauncherSetup.exe 2016-07-03 13:35 - 2016-07-03 13:35 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-07-03 13:34 - 2016-07-03 13:34 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-07-03 13:33 - 2016-07-03 13:34 - 00000000 ____D C:\Users\Lars\Desktop\mbar 2016-06-29 00:33 - 2016-06-29 00:33 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2016-06-29 00:28 - 2016-06-29 00:28 - 00000202 _____ C:\Users\Lars\Desktop\Rocket League.url 2016-06-26 05:56 - 2016-06-26 05:56 - 08661312 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2016-06-26 05:56 - 2016-06-26 05:56 - 00160792 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2016-06-26 05:56 - 2016-06-26 05:56 - 00119744 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2016-06-26 05:56 - 2016-06-26 05:56 - 00102032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2016-06-26 05:55 - 2016-06-26 05:55 - 08550888 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll 2016-06-26 05:55 - 2016-06-26 05:55 - 06947072 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll 2016-06-26 05:55 - 2016-06-26 05:55 - 00474992 _____ C:\WINDOWS\system32\amdmiracast.dll 2016-06-26 05:55 - 2016-06-26 05:55 - 00151456 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll 2016-06-26 05:55 - 2016-06-26 05:55 - 00151456 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll 2016-06-26 05:55 - 2016-06-26 05:55 - 00135288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll 2016-06-26 05:55 - 2016-06-26 05:55 - 00119744 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2016-06-26 05:55 - 2016-06-26 05:55 - 00102040 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2016-06-26 05:54 - 2016-06-26 05:54 - 00267288 _____ C:\WINDOWS\system32\GameManager64.dll 2016-06-26 05:54 - 2016-06-26 05:54 - 00260120 _____ C:\WINDOWS\system32\hsa-thunk64.dll 2016-06-26 05:54 - 2016-06-26 05:54 - 00232472 _____ C:\WINDOWS\SysWOW64\GameManager32.dll 2016-06-26 05:54 - 2016-06-26 05:54 - 00225816 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll 2016-06-26 05:54 - 2016-06-26 05:54 - 00151064 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll 2016-06-26 05:54 - 2016-06-26 05:54 - 00126480 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll 2016-06-26 05:54 - 2016-06-26 05:54 - 00121880 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll 2016-06-26 05:54 - 2016-06-26 05:54 - 00100888 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll 2016-06-26 05:53 - 2016-06-26 05:53 - 24844824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2016-06-26 05:53 - 2016-06-26 05:53 - 00341528 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe 2016-06-26 05:53 - 2016-06-26 05:53 - 00279064 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2016-06-26 05:53 - 2016-06-26 05:53 - 00261656 _____ C:\WINDOWS\system32\clinfo.exe 2016-06-26 05:53 - 2016-06-26 05:53 - 00128536 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll 2016-06-26 05:53 - 2016-06-26 05:53 - 00110104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll 2016-06-26 05:53 - 2016-06-26 05:53 - 00059928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe 2016-06-26 05:53 - 2016-06-26 05:53 - 00012824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll 2016-06-26 05:53 - 2016-06-26 05:53 - 00012816 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 15720464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 00597016 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2016-06-26 05:52 - 2016-06-26 05:52 - 00451096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 00221208 _____ C:\WINDOWS\system32\atieah64.exe 2016-06-26 05:52 - 2016-06-26 05:52 - 00199192 _____ C:\WINDOWS\SysWOW64\atieah32.exe 2016-06-26 05:52 - 2016-06-26 05:52 - 00194072 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 00115224 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 00102424 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 00099864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 00099864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 00071192 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2016-06-26 05:52 - 2016-06-26 05:52 - 00060952 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 48625688 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 14311440 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 08823832 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 07068696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 01315352 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 00983064 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 00394264 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2016-06-26 05:51 - 2016-06-26 05:51 - 00064528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 00057880 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2016-06-26 05:51 - 2016-06-26 05:51 - 00052248 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2016-06-26 05:50 - 2016-06-26 05:50 - 06973976 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll 2016-06-26 05:50 - 2016-06-26 05:50 - 05652504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll 2016-06-26 05:50 - 2016-06-26 05:50 - 00740888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll 2016-06-26 05:50 - 2016-06-26 05:50 - 00059416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll 2016-06-26 05:50 - 2016-06-26 05:50 - 00047128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll 2016-06-26 05:49 - 2016-06-26 05:49 - 00616472 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll 2016-06-26 05:49 - 2016-06-26 05:49 - 00313760 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys 2016-06-26 05:49 - 2016-06-26 05:49 - 00239640 _____ C:\WINDOWS\system32\amdgfxinfo64.dll 2016-06-26 05:49 - 2016-06-26 05:49 - 00211480 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll 2016-06-26 05:49 - 2016-06-26 05:49 - 00193048 _____ C:\WINDOWS\system32\amdhdl64.dll 2016-06-26 05:49 - 2016-06-26 05:49 - 00173080 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll 2016-06-26 05:49 - 2016-06-26 05:49 - 00104984 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2016-06-26 05:49 - 2016-06-26 05:49 - 00095768 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2016-06-26 05:44 - 2016-06-26 05:44 - 30196760 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2016-06-26 05:44 - 2016-06-26 05:44 - 27442200 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll 2016-06-26 05:44 - 2016-06-26 05:44 - 00315416 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2016-06-26 05:44 - 2016-06-26 05:44 - 00283160 _____ C:\WINDOWS\system32\dgtrayicon.exe 2016-06-26 03:14 - 2016-06-26 03:14 - 00000022 _____ C:\WINDOWS\S.dirmngr 2016-06-26 03:13 - 2016-06-26 03:13 - 00000785 _____ C:\bdlog.txt 2016-06-26 01:40 - 2016-06-26 01:40 - 00242344 _____ C:\Users\Lars\Downloads\Firefox Setup Stub 47.0.exe 2016-06-26 01:38 - 2016-06-26 01:38 - 00000000 ____D C:\Users\Lars\AppData\Temp 2016-06-26 00:34 - 2016-06-26 00:34 - 00000385 _____ C:\Users\Lars\AppData\Roaminguser_gensett.xml 2016-06-26 00:30 - 2016-06-26 00:30 - 00000385 _____ C:\WINDOWS\system32\user_gensett.xml 2016-06-26 00:29 - 2016-06-26 00:29 - 00000684 ____H C:\bdr-cf01 2016-06-26 00:28 - 2016-06-26 00:28 - 00002282 _____ C:\Users\Public\Desktop\Bitdefender 2016.lnk 2016-06-26 00:28 - 2016-06-26 00:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2016 2016-06-26 00:28 - 2016-06-26 00:28 - 00000000 ____D C:\ProgramData\BDLogging 2016-06-26 00:28 - 2016-03-18 06:58 - 00842152 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avckf.sys 2016-06-26 00:28 - 2016-03-18 06:56 - 01623536 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys 2016-06-26 00:28 - 2015-12-04 19:27 - 00087912 _____ (BitDefender) C:\WINDOWS\system32\Drivers\bdvedisk.sys 2016-06-26 00:28 - 2013-09-08 20:04 - 00023568 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys 2016-06-26 00:28 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\capicom.dll 2016-06-26 00:27 - 2016-06-28 23:04 - 00299816 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\ignis.sys 2016-06-26 00:27 - 2016-06-26 00:39 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Bitdefender 2016-06-26 00:27 - 2016-06-26 00:29 - 00253404 ____H C:\bdr-ld01 2016-06-26 00:27 - 2016-06-26 00:29 - 00009216 ____H C:\bdr-ld01.mbr 2016-06-26 00:27 - 2015-12-15 21:35 - 49760229 ____H C:\bdr-im01.gz 2016-06-26 00:27 - 2013-08-13 13:38 - 03271472 ____H C:\bdr-bz01 2016-06-26 00:24 - 2016-06-28 23:04 - 00520032 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys 2016-06-26 00:24 - 2015-12-16 05:53 - 00182936 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys 2016-06-26 00:16 - 2016-06-26 00:16 - 00003794 _____ C:\WINDOWS\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 2016-06-26 00:15 - 2016-06-26 00:24 - 00000000 ____D C:\Program Files\Common Files\Bitdefender 2016-06-26 00:15 - 2016-06-26 00:15 - 00000000 ____D C:\Program Files\Bitdefender 2016-06-26 00:14 - 2016-07-04 11:26 - 00000000 ____D C:\Program Files\Bitdefender Agent 2016-06-26 00:13 - 2016-06-26 00:13 - 00651202 _____ C:\Users\Lars\Documents\cc_20160626_001337.reg 2016-06-26 00:08 - 2016-06-26 00:08 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap 2016-06-26 00:08 - 2016-06-26 00:08 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap 2016-06-26 00:08 - 2016-06-26 00:08 - 00720104 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb 2016-06-26 00:08 - 2016-06-26 00:08 - 00720104 _____ C:\WINDOWS\system32\atiapfxx.blb 2016-06-26 00:08 - 2016-06-26 00:08 - 00368416 _____ C:\WINDOWS\system32\ativvaxy_el_nd.dat 2016-06-26 00:08 - 2016-06-26 00:08 - 00270784 _____ C:\WINDOWS\system32\ativvaxy_stn_nd.dat 2016-06-26 00:07 - 2016-06-26 00:07 - 00875613 _____ C:\WINDOWS\system32\amdicdxx.dat 2016-06-25 16:53 - 2016-06-25 23:52 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Avira 2016-06-25 16:52 - 2016-06-26 00:03 - 00000000 ____D C:\ProgramData\Avira 2016-06-25 16:52 - 2016-06-25 16:52 - 165283560 _____ C:\Users\Lars\Downloads\avira_free_antivirus_15017de.exe 2016-06-25 16:52 - 2015-03-17 13:01 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys.tmp 2016-06-24 00:20 - 2016-06-24 00:20 - 10539128 _____ C:\Users\Lars\Downloads\bitdefender_tsecurity.exe 2016-06-23 18:12 - 2016-06-23 18:12 - 00000000 ____D C:\ProgramData\Dumps 2016-06-23 15:30 - 2016-06-23 15:30 - 00000000 ____D C:\ProgramData\Bitdefender Agent 2016-06-23 15:29 - 2016-06-23 15:30 - 10539088 _____ C:\Users\Lars\Downloads\bitdefender_windows_96884350-2cf3-4ccb-ab7f-c504a8712950.exe 2016-06-23 00:18 - 2016-06-23 00:19 - 00000000 ____D C:\Users\Lars\AppData\Local\PAYDAY 2 2016-06-22 21:13 - 2016-07-04 11:29 - 00000000 ____D C:\AdwCleaner 2016-06-22 21:13 - 2016-06-22 21:13 - 03703360 _____ C:\Users\Lars\Downloads\AdwCleaner_5.200.exe 2016-06-21 17:39 - 2016-06-21 17:39 - 02412544 _____ C:\WINDOWS\system32\amdacpusl.pdb 2016-06-21 17:30 - 2016-06-21 17:30 - 00364544 _____ (Advanced Micro Devices) C:\WINDOWS\system32\amdacpusl.dll 2016-06-21 17:30 - 2016-06-21 17:30 - 00306176 _____ C:\WINDOWS\system32\amdacpusl.pdb.pub 2016-06-21 17:30 - 2016-06-21 17:30 - 00248832 _____ (Advanced Micro Devices) C:\WINDOWS\SysWOW64\amdacpusl.dll 2016-06-21 16:33 - 2016-06-21 16:33 - 00000000 ____D C:\Users\Lars\Documents\Curse 2016-06-21 16:32 - 2016-06-26 00:24 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Curse Client 2016-06-21 16:32 - 2016-06-21 16:32 - 80549888 _____ (Curse) C:\Users\Lars\Downloads\CurseClientSetup_[plugin-Minecraft].exe 2016-06-21 16:32 - 2016-06-21 16:32 - 00001123 _____ C:\Users\Lars\Desktop\Curse.lnk 2016-06-21 16:32 - 2016-06-21 16:32 - 00001109 _____ C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse.lnk 2016-06-21 16:32 - 2016-06-21 16:32 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Curse 2016-06-21 16:31 - 2016-06-21 16:31 - 36655160 _____ C:\Users\Lars\Downloads\FTBInfinity-2.5.0-1.7.10.zip 2016-06-21 14:22 - 2016-06-21 14:22 - 00000000 ____D C:\Users\Lars\Downloads\backups 2016-06-21 14:06 - 2016-06-21 14:06 - 22851472 _____ (Malwarebytes ) C:\Users\Lars\Downloads\mbam-setup-chipde.13595-2.2.1.1043.exe 2016-06-21 00:14 - 2016-06-21 00:14 - 06893008 _____ (Piriform Ltd) C:\Users\Lars\Downloads\ccsetup518.exe 2016-06-21 00:14 - 2016-06-21 00:14 - 00002852 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2016-06-21 00:14 - 2016-06-21 00:14 - 00000871 _____ C:\Users\Public\Desktop\CCleaner.lnk 2016-06-21 00:14 - 2016-06-21 00:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2016-06-21 00:14 - 2016-06-21 00:14 - 00000000 ____D C:\Program Files\CCleaner 2016-06-18 01:18 - 2016-06-18 01:18 - 20461248 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe 2016-06-15 21:32 - 2016-06-15 21:39 - 00000000 ____D C:\Users\Lars\Documents\DayZ 2016-06-15 21:32 - 2016-06-15 21:39 - 00000000 ____D C:\Users\Lars\AppData\Local\DayZ 2016-06-15 18:02 - 2016-06-15 18:02 - 00000000 ____D C:\Users\Lars\Desktop\Gta V Mods 2016-06-14 22:21 - 2016-05-28 08:13 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 00290496 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-06-14 22:21 - 2016-05-28 08:13 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-06-14 22:21 - 2016-05-28 07:25 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll 2016-06-14 22:21 - 2016-05-28 07:23 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll 2016-06-14 22:21 - 2016-05-28 07:23 - 00312160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll 2016-06-14 22:21 - 2016-05-28 07:22 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-06-14 22:21 - 2016-05-28 07:22 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll 2016-06-14 22:21 - 2016-05-28 07:22 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-06-14 22:21 - 2016-05-28 07:22 - 00211296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-06-14 22:21 - 2016-05-28 07:22 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-06-14 22:21 - 2016-05-28 07:20 - 00430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2016-06-14 22:21 - 2016-05-28 07:18 - 00357216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll 2016-06-14 22:21 - 2016-05-28 07:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-06-14 22:21 - 2016-05-28 07:09 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-06-14 22:21 - 2016-05-28 07:09 - 00170848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe 2016-06-14 22:21 - 2016-05-28 07:09 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-06-14 22:21 - 2016-05-28 07:08 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-06-14 22:21 - 2016-05-28 07:08 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys 2016-06-14 22:21 - 2016-05-28 07:08 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-06-14 22:21 - 2016-05-28 07:07 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-06-14 22:21 - 2016-05-28 07:07 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2016-06-14 22:21 - 2016-05-28 07:07 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-06-14 22:21 - 2016-05-28 07:06 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-06-14 22:21 - 2016-05-28 07:06 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-06-14 22:21 - 2016-05-28 07:06 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2016-06-14 22:21 - 2016-05-28 07:06 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-06-14 22:21 - 2016-05-28 07:06 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-06-14 22:21 - 2016-05-28 07:05 - 04515264 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-06-14 22:21 - 2016-05-28 07:04 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-06-14 22:21 - 2016-05-28 07:04 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2016-06-14 22:21 - 2016-05-28 07:04 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2016-06-14 22:21 - 2016-05-28 07:04 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-06-14 22:21 - 2016-05-28 07:04 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2016-06-14 22:21 - 2016-05-28 07:04 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2016-06-14 22:21 - 2016-05-28 07:03 - 00131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2016-06-14 22:21 - 2016-05-28 06:58 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-06-14 22:21 - 2016-05-28 06:58 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 02548944 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 01594416 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 01372312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 00649792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-06-14 22:21 - 2016-05-28 06:57 - 00577376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-06-14 22:21 - 2016-05-28 06:57 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-06-14 22:21 - 2016-05-28 06:57 - 00521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2016-06-14 22:21 - 2016-05-28 06:57 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2016-06-14 22:21 - 2016-05-28 06:35 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe 2016-06-14 22:21 - 2016-05-28 06:35 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-06-14 22:21 - 2016-05-28 06:35 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys 2016-06-14 22:21 - 2016-05-28 06:31 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe 2016-06-14 22:21 - 2016-05-28 06:31 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-06-14 22:21 - 2016-05-28 06:31 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-06-14 22:21 - 2016-05-28 06:29 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-06-14 22:21 - 2016-05-28 06:29 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll 2016-06-14 22:21 - 2016-05-28 06:29 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-06-14 22:21 - 2016-05-28 06:29 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll 2016-06-14 22:21 - 2016-05-28 06:28 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2016-06-14 22:21 - 2016-05-28 06:28 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2016-06-14 22:21 - 2016-05-28 06:28 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll 2016-06-14 22:21 - 2016-05-28 06:27 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-06-14 22:21 - 2016-05-28 06:27 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-06-14 22:21 - 2016-05-28 06:26 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-06-14 22:21 - 2016-05-28 06:26 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2016-06-14 22:21 - 2016-05-28 06:26 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2016-06-14 22:21 - 2016-05-28 06:26 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-06-14 22:21 - 2016-05-28 06:26 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-06-14 22:21 - 2016-05-28 06:25 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.dll 2016-06-14 22:21 - 2016-05-28 06:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys 2016-06-14 22:21 - 2016-05-28 06:24 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll 2016-06-14 22:21 - 2016-05-28 06:24 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll 2016-06-14 22:21 - 2016-05-28 06:23 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-06-14 22:21 - 2016-05-28 06:23 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys 2016-06-14 22:21 - 2016-05-28 06:22 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-06-14 22:21 - 2016-05-28 06:22 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll 2016-06-14 22:21 - 2016-05-28 06:22 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2016-06-14 22:21 - 2016-05-28 06:21 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpscript.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll 2016-06-14 22:21 - 2016-05-28 06:20 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 24605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-06-14 22:21 - 2016-05-28 06:19 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll 2016-06-14 22:21 - 2016-05-28 06:19 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL 2016-06-14 22:21 - 2016-05-28 06:18 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2016-06-14 22:21 - 2016-05-28 06:18 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-06-14 22:21 - 2016-05-28 06:17 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-06-14 22:21 - 2016-05-28 06:16 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2016-06-14 22:21 - 2016-05-28 06:16 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\polstore.dll 2016-06-14 22:21 - 2016-05-28 06:16 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll 2016-06-14 22:21 - 2016-05-28 06:15 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2016-06-14 22:21 - 2016-05-28 06:14 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2016-06-14 22:21 - 2016-05-28 06:14 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-06-14 22:21 - 2016-05-28 06:13 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-06-14 22:21 - 2016-05-28 06:13 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-06-14 22:21 - 2016-05-28 06:12 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-06-14 22:21 - 2016-05-28 06:12 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2016-06-14 22:21 - 2016-05-28 06:12 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-06-14 22:21 - 2016-05-28 06:11 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll 2016-06-14 22:21 - 2016-05-28 06:09 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-06-14 22:21 - 2016-05-28 06:08 - 13385728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-06-14 22:21 - 2016-05-28 06:08 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-06-14 22:21 - 2016-05-28 06:06 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-06-14 22:21 - 2016-05-28 06:06 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-06-14 22:21 - 2016-05-28 06:06 - 01339904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-06-14 22:21 - 2016-05-28 06:05 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-06-14 22:21 - 2016-05-28 06:05 - 03664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-06-14 22:21 - 2016-05-28 06:05 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-06-14 22:21 - 2016-05-28 06:05 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-06-14 22:21 - 2016-05-28 06:04 - 06973952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-06-14 22:21 - 2016-05-28 06:04 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-06-14 22:21 - 2016-05-28 06:04 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 02609664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFramework.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 00693760 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll 2016-06-14 22:21 - 2016-05-28 06:03 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-06-14 22:21 - 2016-05-28 06:02 - 03590144 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-06-14 22:21 - 2016-05-28 06:02 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-06-14 22:21 - 2016-05-28 06:02 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2016-06-14 22:21 - 2016-05-28 06:02 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2016-06-14 22:21 - 2016-05-28 06:01 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-06-14 22:21 - 2016-05-28 06:01 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2016-06-14 22:21 - 2016-05-28 06:01 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-06-14 22:21 - 2016-05-28 06:01 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 02230272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 01730560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2016-06-14 22:21 - 2016-05-28 06:00 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2016-06-14 22:21 - 2016-05-28 05:59 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 04896256 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-06-14 22:21 - 2016-05-28 05:58 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-06-14 22:21 - 2016-05-28 05:57 - 02281472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-06-14 22:21 - 2016-05-28 05:55 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-06-14 22:21 - 2016-05-28 05:53 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-06-13 21:33 - 2016-06-13 21:33 - 00000000 ____D C:\Users\Lars\Documents\Wondershare Dr.Fone for iOS 2016-06-13 21:28 - 2016-06-13 21:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare 2016-06-13 21:28 - 2016-06-13 21:28 - 00001392 _____ C:\Users\Public\Desktop\Wondershare Dr.Fone für iOS.lnk 2016-06-13 21:28 - 2016-06-13 21:28 - 00000000 ___HD C:\Program Files (x86)\Dr.Fone_Temp 2016-06-13 21:28 - 2016-06-13 21:28 - 00000000 ____D C:\Program Files (x86)\Wondershare 2016-06-13 21:28 - 2015-10-27 09:45 - 00076384 _____ (hxxp://libusb-win32.sourceforge.net) C:\WINDOWS\SysWOW64\libusb0.dll 2016-06-13 21:28 - 2015-10-27 09:45 - 00052832 _____ (hxxp://libusb-win32.sourceforge.net) C:\WINDOWS\SysWOW64\Drivers\libusb0.sys 2016-06-13 21:28 - 2015-02-27 10:35 - 00000232 _____ C:\WINDOWS\SysWOW64\dllhost.exe.config 2016-06-13 21:26 - 2016-06-13 21:28 - 00000000 ____D C:\Users\Public\Documents\Wondershare 2016-06-13 21:26 - 2016-06-13 21:26 - 01016464 _____ C:\Users\Lars\Downloads\drfone_setup_full1284.exe 2016-06-13 21:19 - 2016-06-13 21:20 - 38419192 _____ (Reincubate Ltd) C:\Users\Lars\Downloads\iphonebackupextractor615-latest.exe 2016-06-13 14:44 - 2016-06-13 14:44 - 00159047 _____ C:\Users\Lars\Downloads\Versicherungsschein.pdf 2016-06-13 14:44 - 2016-06-13 14:44 - 00083920 _____ C:\Users\Lars\Downloads\Rechnung_13_6_2016_100406387.pdf.pdf 2016-06-12 16:47 - 2016-07-04 01:05 - 00001981 _____ C:\Users\Lars\Desktop\Archeage.lnk 2016-06-12 16:46 - 2016-07-04 01:05 - 00001078 _____ C:\Users\Lars\Desktop\Glyph.lnk 2016-06-12 16:46 - 2016-06-15 22:45 - 00000000 ____D C:\Users\Lars\AppData\Local\Glyph 2016-06-12 16:46 - 2016-06-15 22:16 - 00000000 ____D C:\Program Files (x86)\Glyph 2016-06-12 16:46 - 2016-06-12 16:47 - 00000000 ____D C:\ProgramData\Glyph 2016-06-12 16:46 - 2016-06-12 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glyph 2016-06-12 12:12 - 2016-06-12 16:46 - 81587680 _____ (Trion Worlds Inc.) C:\Users\Lars\Downloads\GlyphInstall-0-150.exe 2016-06-11 09:53 - 2016-06-11 09:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2016-06-11 09:53 - 2016-06-11 09:53 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2016-06-11 00:01 - 2016-06-11 00:01 - 00000000 ____D C:\Users\Lars\AppData\LocalLow\Unity 2016-06-11 00:01 - 2016-06-11 00:01 - 00000000 ____D C:\Users\Lars\AppData\LocalLow\Hyper Hippo Productions Ltd_ 2016-06-11 00:00 - 2016-06-11 00:00 - 00000202 _____ C:\Users\Lars\Desktop\AdVenture Capitalist.url 2016-06-10 15:50 - 2016-06-10 15:50 - 00000000 ____D C:\ProgramData\Brother 2016-06-10 15:49 - 2016-06-10 15:50 - 00000000 ____D C:\Users\Lars\Downloads\install 2016-06-10 15:48 - 2016-06-10 15:49 - 151108968 _____ (A.I.SOFT,INC.) C:\Users\Lars\Downloads\MFC-J470DW-inst-A1-OCE.EXE 2016-06-10 15:19 - 2016-06-10 15:19 - 00753112 _____ C:\Users\Lars\Downloads\message-rfc822-attachment 2016-06-08 17:44 - 2016-06-08 17:44 - 00000000 ____D C:\Users\Lars\AppData\Local\Reincubate Temporary Files 2016-06-08 17:41 - 2016-06-08 17:41 - 37623544 _____ (Reincubate Ltd) C:\Users\Lars\Downloads\iphonebackupextractor612-latest.exe 2016-06-08 17:38 - 2016-06-08 17:38 - 00000000 ____D C:\Users\Lars\AppData\Roaming\HMYGSetting 2016-06-08 17:29 - 2016-06-08 17:35 - 47436640 _____ (Wondershare ) C:\Users\Lars\Downloads\mobiletrans-bing_full1687.exe 2016-06-08 17:21 - 2016-06-08 17:22 - 00000000 ____D C:\Users\Lars\Desktop\100APPLE 2016-06-08 17:13 - 2016-06-08 17:15 - 189502778 _____ C:\Users\Lars\Downloads\IMG_0136.mov 2016-06-08 16:29 - 2016-06-08 16:30 - 00000000 ____D C:\Users\Public\Documents\Daossoft iTunes Password Rescuer 2016-06-08 16:29 - 2016-06-08 16:29 - 03633477 _____ C:\Users\Lars\Downloads\itunes-password-recovery.exe 2016-06-08 16:21 - 2016-06-09 22:58 - 00000025 _____ C:\Users\Lars\Desktop\Neues Textdokument.txt 2016-06-07 21:15 - 2016-06-07 21:15 - 34709631 _____ C:\Users\Lars\Downloads\fba8c1-Suzuki Srad 750 By BetoPHGames.rar 2016-06-07 21:15 - 2016-06-07 21:15 - 28316326 _____ C:\Users\Lars\Downloads\fe11cf-NinjaH2r.rar 2016-06-07 21:14 - 2016-06-07 21:14 - 02270291 _____ C:\Users\Lars\Downloads\Bati2 Files.rar 2016-06-06 16:49 - 2016-06-06 16:49 - 00000000 ____D C:\Program Files (x86)\AMD 2016-06-06 16:21 - 2016-06-26 03:12 - 00000227 _____ C:\Users\Lars\Desktop\IMEI.txt 2016-06-05 20:57 - 2016-06-05 20:57 - 00000000 ____D C:\Users\Lars\AppData\Local\Team_ELAN_Launcher 2016-06-05 20:54 - 2016-06-05 20:54 - 00002589 _____ C:\Users\Public\Desktop\Team-ELAN Launcher.lnk 2016-06-05 20:54 - 2016-06-05 20:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team ELAN 2016-06-05 20:54 - 2016-06-05 20:54 - 00000000 ____D C:\Program Files (x86)\Team-ELAN Launcher 2016-06-05 20:53 - 2016-06-05 20:53 - 00000000 ____D C:\Users\Lars\AppData\Local\Downloaded Installations 2016-06-05 20:23 - 2016-06-05 20:53 - 04872351 _____ C:\Users\Lars\Downloads\Team-ELAN Launcher Setup.exe 2016-06-05 13:20 - 2016-06-05 13:20 - 25718366 _____ C:\Users\Lars\Downloads\e7517e-2013 Audi R8 V10 + PPI Razor GT Spyder Tuning 1.2(2).rar 2016-06-05 13:07 - 2016-06-05 13:07 - 22585379 _____ C:\Users\Lars\Downloads\eb3bd1-2016 Mercedes-Benz AMG GT Add-on v2.2(1).zip ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-07-04 12:03 - 2016-04-16 11:31 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2016-07-04 12:03 - 2015-11-27 01:57 - 00000000 ____D C:\Program Files\AMD 2016-07-04 12:03 - 2015-10-11 23:03 - 00000935 _____ C:\WINDOWS\Tasks\EPSON WF-2660 Series Update {9081683F-A5C0-48D1-BA85-6F574D141488}.job 2016-07-04 12:02 - 2015-11-28 10:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings 2016-07-04 12:02 - 2015-07-31 03:38 - 00000000 ____D C:\FRST 2016-07-04 12:01 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF 2016-07-04 12:01 - 2015-10-03 14:26 - 00000000 ____D C:\Users\Lars\AppData\Local\AMD 2016-07-04 11:59 - 2015-05-31 19:45 - 00000000 ____D C:\AMD 2016-07-04 11:45 - 2015-06-07 23:35 - 00000000 ____D C:\Users\Lars\AppData\Roaming\vlc 2016-07-04 11:41 - 2015-06-12 14:46 - 00000000 ____D C:\Users\Lars\AppData\Local\JDownloader 2.0 2016-07-04 11:38 - 2016-04-16 11:33 - 00000000 ____D C:\Users\Lars\AppData\Roaming\PlaysTV 2016-07-04 11:38 - 2015-05-31 19:49 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Raptr 2016-07-04 11:29 - 2015-08-07 17:30 - 00004154 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{263812E1-84DF-4E9B-A71A-F4F8B17732A4} 2016-07-04 11:29 - 2015-06-06 10:33 - 00000000 ____D C:\Users\Lars\AppData\Local\Adobe 2016-07-04 11:27 - 2015-05-31 19:29 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-07-04 01:24 - 2015-10-18 23:24 - 00000935 _____ C:\WINDOWS\Tasks\EPSON WF-2660 Series Update {C157D075-AB90-45F7-B1BC-861FFF09E749}.job 2016-07-04 01:18 - 2015-06-23 14:32 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-07-04 01:17 - 2015-05-31 19:29 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-07-04 01:13 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2016-07-04 01:05 - 2016-05-27 19:59 - 00001286 _____ C:\Users\Lars\Desktop\Uplay.lnk 2016-07-04 01:05 - 2016-03-27 23:46 - 00001348 _____ C:\Users\Lars\Desktop\OpenIV.lnk 2016-07-04 01:05 - 2015-10-13 01:35 - 00001996 _____ C:\Users\Lars\Desktop\Cyperia.lnk 2016-07-04 01:05 - 2015-10-12 01:40 - 00002074 _____ C:\Users\Lars\Desktop\RuneScape.lnk 2016-07-04 01:05 - 2015-10-06 21:22 - 00001338 _____ C:\Users\Lars\Desktop\Photoshop - Shortcut.lnk 2016-07-04 01:05 - 2015-06-03 10:35 - 00001132 _____ C:\Users\Lars\Desktop\TeamSpeak 3 Client.lnk 2016-07-04 00:35 - 2015-08-03 01:43 - 00000000 ____D C:\JDownload-Downloads 2016-07-03 23:15 - 2015-05-31 20:18 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Skype 2016-07-03 23:15 - 2015-05-31 20:08 - 00000000 ____D C:\Users\Lars\AppData\Local\Spotify 2016-07-03 23:15 - 2015-01-22 14:22 - 00000000 ____D C:\Steam 2016-07-03 23:03 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-07-03 16:56 - 2015-05-31 20:07 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Spotify 2016-07-03 14:14 - 2015-07-31 12:23 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2016-07-03 00:57 - 2015-06-23 14:32 - 00000946 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job 2016-07-03 00:54 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-06-30 00:28 - 2015-11-27 02:01 - 00000000 ____D C:\Users\Lars 2016-06-29 22:32 - 2015-10-05 23:50 - 00000000 ____D C:\Users\Lars\AppData\Roaming\.minecraft 2016-06-29 19:12 - 2015-07-04 23:19 - 00000000 ____D C:\Users\Lars\AppData\Local\LogMeIn Hamachi 2016-06-29 19:12 - 2015-06-03 14:42 - 00000000 ____D C:\Users\Lars\AppData\Roaming\TS3Client 2016-06-29 00:33 - 2015-05-31 20:41 - 00000000 ____D C:\Users\Lars\Documents\My Games 2016-06-29 00:21 - 2015-05-31 20:40 - 00000861 _____ C:\Users\Lars\Desktop\Steam.lnk 2016-06-26 05:56 - 2016-06-02 23:14 - 00133808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2016-06-26 05:56 - 2016-06-02 23:13 - 08951720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2016-06-26 05:56 - 2016-06-02 23:13 - 07070576 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2016-06-26 05:56 - 2015-11-13 23:38 - 10809000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2016-06-26 05:56 - 2015-11-13 23:38 - 00176840 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2016-06-26 05:56 - 2015-11-13 23:38 - 00147240 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2016-06-26 05:56 - 2015-11-13 23:37 - 09893144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2016-06-26 05:55 - 2016-06-02 23:14 - 00132664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll 2016-06-26 05:55 - 2015-11-13 23:38 - 01537512 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2016-06-26 05:55 - 2015-11-13 23:38 - 01265208 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2016-06-26 05:55 - 2015-11-13 23:37 - 08974608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2016-06-26 05:53 - 2016-05-11 00:36 - 00874008 _____ (AMD) C:\WINDOWS\system32\coinst_16.20.dll 2016-06-26 05:52 - 2016-06-02 22:26 - 00167960 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2016-06-26 05:52 - 2015-11-13 23:26 - 27012624 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2016-06-26 05:52 - 2015-11-13 22:32 - 00506904 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys 2016-06-26 05:51 - 2016-06-02 22:26 - 00983064 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2016-06-26 05:50 - 2016-06-02 23:01 - 38107672 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2016-06-26 05:50 - 2016-06-02 22:58 - 21609496 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll 2016-06-26 03:20 - 2015-11-27 02:00 - 02113474 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-06-26 03:20 - 2015-10-30 20:35 - 00898182 _____ C:\WINDOWS\system32\perfh007.dat 2016-06-26 03:20 - 2015-10-30 20:35 - 00201668 _____ C:\WINDOWS\system32\perfc007.dat 2016-06-26 03:14 - 2015-11-27 02:15 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-06-26 03:14 - 2015-08-13 18:18 - 00000437 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2016-06-26 03:14 - 2015-06-03 14:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-06-26 03:13 - 2015-11-27 01:57 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin 2016-06-26 03:13 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-06-26 02:34 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2016-06-26 02:34 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\Offline Web Pages 2016-06-26 02:29 - 2015-07-04 10:13 - 00000000 ____D C:\Program Files (x86)\SpeedFan 2016-06-26 01:54 - 2016-03-05 23:30 - 00000000 ____D C:\Games 2016-06-26 01:40 - 2015-11-04 00:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-06-26 01:40 - 2015-08-28 12:30 - 00001240 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-06-26 01:40 - 2015-08-28 12:30 - 00001228 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2016-06-26 00:39 - 2016-04-03 17:43 - 00000000 ____D C:\ProgramData\BitDefender 2016-06-26 00:13 - 2016-04-03 18:25 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Lavasoft 2016-06-26 00:10 - 2016-04-03 17:31 - 00000000 ____D C:\Program Files\Common Files\Lavasoft 2016-06-26 00:03 - 2015-05-31 19:45 - 00000000 ____D C:\ProgramData\Package Cache 2016-06-25 23:48 - 2015-06-03 10:35 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2016-06-23 15:32 - 2015-11-02 17:33 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2016-06-23 15:32 - 2015-11-02 17:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2016-06-23 15:32 - 2015-08-07 21:36 - 00000000 ____D C:\Program Files (x86)\Emsisoft Internet Security 2016-06-23 15:23 - 2015-05-31 20:51 - 00000000 ____D C:\Users\Lars\AppData\Local\Battle.net 2016-06-23 15:05 - 2015-11-02 17:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-06-22 14:38 - 2015-05-31 20:51 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Battle.net 2016-06-21 22:03 - 2015-06-18 17:19 - 00000000 ____D C:\Users\Lars\Documents\Euro Truck Simulator 2 2016-06-21 14:20 - 2015-05-31 18:12 - 00000000 ____D C:\Users\Lars\AppData\Local\VirtualStore 2016-06-21 00:16 - 2015-09-11 23:27 - 00000000 ____D C:\Program Files (x86)\Connectify 2016-06-21 00:16 - 2015-08-07 20:39 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2016-06-21 00:16 - 2015-06-13 17:21 - 00000000 ____D C:\Users\Lars\AppData\Roaming\DAEMON Tools Lite 2016-06-21 00:16 - 2015-06-02 23:07 - 00000000 ____D C:\Users\Lars\AppData\Roaming\TeamViewer 2016-06-21 00:15 - 2015-12-27 14:58 - 00000000 ____D C:\WINDOWS\Minidump 2016-06-21 00:15 - 2015-11-27 01:52 - 00000000 ___DC C:\WINDOWS\Panther 2016-06-20 19:37 - 2015-08-07 02:47 - 00000000 ____D C:\Program Files\Rockstar Games 2016-06-20 19:37 - 2015-06-13 18:30 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2016-06-19 20:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache 2016-06-18 22:34 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-06-18 01:18 - 2015-06-23 14:32 - 00004006 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier 2016-06-18 01:18 - 2015-06-23 14:32 - 00003858 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-06-18 00:18 - 2015-05-31 19:31 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-06-16 15:04 - 2015-08-07 01:15 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-06-16 14:57 - 2015-11-27 01:53 - 00385528 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-06-15 22:47 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2016-06-15 22:47 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-06-15 22:47 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-06-15 19:40 - 2015-08-07 21:36 - 00204688 _____ C:\WINDOWS\system32\Drivers\fwndislwf64.sys 2016-06-15 18:03 - 2016-01-17 20:30 - 00002209 _____ C:\Users\Public\Desktop\Grand Theft Auto V.lnk 2016-06-15 12:00 - 2015-06-02 00:56 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-06-15 11:54 - 2015-06-02 00:56 - 142482544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-06-14 20:33 - 2015-10-30 09:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-06-14 20:33 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-06-13 21:33 - 2016-05-17 12:09 - 00000000 ____D C:\Program Files (x86)\iTunes 2016-06-13 21:28 - 2015-11-23 22:05 - 00000000 ____D C:\ProgramData\Wondershare 2016-06-13 21:28 - 2015-11-23 21:57 - 00000000 ____D C:\Users\Lars\AppData\Roaming\Wondershare 2016-06-13 19:16 - 2015-11-15 14:04 - 00000000 ____D C:\Users\Lars\AppData\LocalLow\LastPass 2016-06-11 10:10 - 2015-07-23 09:43 - 00000000 ____D C:\Users\Lars\AppData\Local\Arma 3 2016-06-11 09:53 - 2015-11-26 01:13 - 00001003 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2016-06-10 10:56 - 2016-01-10 19:09 - 00000000 ____D C:\Program Files (x86)\BEWERBUNGSMASTER 2016-06-10 10:55 - 2016-04-09 13:36 - 00000000 ____D C:\Program Files (x86)\Crossout 2016-06-10 10:55 - 2015-08-13 17:40 - 00000000 ____D C:\Users\Lars\.android 2016-06-08 17:11 - 2015-12-05 13:22 - 00000000 ___RD C:\Users\Lars\iCloudDrive 2016-06-08 16:59 - 2015-11-23 23:44 - 00000000 ____D C:\Users\Lars\Desktop\Handy Backup 2016-06-06 21:57 - 2015-05-31 20:18 - 00000000 ____D C:\ProgramData\Skype 2016-06-05 20:21 - 2015-07-23 20:39 - 00000000 ____D C:\Users\Lars\Documents\Arma 3 - Other Profiles ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-11-15 14:04 - 2015-11-15 14:04 - 20320792 _____ (LastPass) C:\Program Files (x86)\Common Files\lpuninstall.exe 2015-10-15 01:48 - 2015-10-15 01:48 - 0000034 _____ () C:\Users\Lars\AppData\Roaming\AdobeWLCMCache.dat 2015-06-16 21:36 - 2015-08-13 22:26 - 0007599 _____ () C:\Users\Lars\AppData\Local\Resmon.ResmonCfg 2016-04-03 17:32 - 2016-04-03 17:32 - 0000017 _____ () C:\ProgramData\adaware-installer-reboot-required.tmp Einige Dateien in TEMP: ==================== C:\Users\Lars\AppData\Local\Temp\proxy_vole2611164182280674132.dll C:\Users\Lars\AppData\Local\Temp\proxy_vole2964131237863345305.dll C:\Users\Lars\AppData\Local\Temp\proxy_vole5004977382407872559.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-06-26 14:10 ==================== Ende von FRST.txt ============================ |
04.07.2016, 11:14 | #12 |
| Browser total langsam Addition: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-07-2016 durchgeführt von Lars (2016-07-04 12:04:17) Gestartet von C:\Users\Lars\Desktop Windows 10 Pro Version 1511 (X64) (2015-11-27 00:21:11) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3765219005-2896119444-2935634367-500 - Administrator - Disabled) ASPNET (S-1-5-21-3765219005-2896119444-2935634367-1004 - Limited - Enabled) DefaultAccount (S-1-5-21-3765219005-2896119444-2935634367-503 - Limited - Disabled) Gast (S-1-5-21-3765219005-2896119444-2935634367-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3765219005-2896119444-2935634367-1003 - Limited - Enabled) Lars (S-1-5-21-3765219005-2896119444-2935634367-1000 - Administrator - Enabled) => C:\Users\Lars ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Bitdefender Antivirus (Enabled - Up to date) {3FB17364-4FCC-0FA7-6BBF-973897395371} AS: Bitdefender Antispyware (Enabled - Up to date) {84D09280-69F6-0029-510F-AC4AECBE19CC} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Firewall (Enabled) {078AF241-05A3-0EFF-40E0-3E0D69EA140A} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 9.38 beta (HKLM-x32\...\7-Zip) (Version: - ) ACP Application (Version: 2016.0621.1729.59 - Advanced Micro Devices, Inc.) Hidden AdAwareUpdater (Version: 11.10.767.8917 - Lavasoft) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.3.0.151 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated) Adobe Flash Player 22 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated) Adobe Illustrator CC 2015 (HKLM-x32\...\ILST_19_1_0) (Version: 19.1.0 - Adobe Systems Incorporated) Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.2.2 - Adobe Systems Incorporated) AdVenture Capitalist (HKLM\...\Steam App 346900) (Version: - Hyper Hippo Games) Akamai NetSession Interface (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Akamai) (Version: - Akamai Technologies, Inc) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.) AntimalwareEngine (Version: 3.0.99.0 - Lavasoft) Hidden AntispamEngine (Version: 2.4.4244.0 - Lavasoft) Hidden Apple Application Support (32-Bit) (HKLM-x32\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{C2651553-6CA3-4822-B2E6-BC4ACA6E0EA2}) (Version: 4.3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) ARK: Survival Evolved (HKLM\...\Steam App 346110) (Version: - Studio Wildcard) ArmA3Sync 1.5.72 (HKLM-x32\...\{F097E7D7-D093-4394-9EED-43AFCCD12B7A}_is1) (Version: 1.5.72 - The [S.o.E] team) Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team) AutoHotkey 1.1.23.05 (HKLM\...\AutoHotkey) (Version: 1.1.23.05 - Lexikos) AvcEngine (Version: 3.11.12293.0 - Lavasoft) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 20.0.28.1503 - Bitdefender) Bitdefender Total Security 2016 (HKLM\...\Bitdefender) (Version: 20.0.28.1478 - Bitdefender) BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.9.30.9239 - BlueStack Systems, Inc.) BlueStacks Notification Center (HKLM-x32\...\{3792811C-832F-4392-B44A-24092901EDDC}) (Version: 0.9.30.9239 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Call of Duty: Black Ops III (HKLM-x32\...\Steam App 311210) (Version: - Treyarch) Camtasia Studio 8 (HKLM-x32\...\{A79B26D7-D6CB-408A-90CF-51508A4B62AB}) (Version: 8.5.2.1999 - TechSmith Corporation) Catalyst Control Center Next Localization BR (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.0621.1741.29990 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.18 - Piriform) Connectify 2015 (HKLM\...\Connectify) (Version: 2015.1.0.35473 - Connectify) CopyTrans Control Center deinstallieren (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\CopyTrans Suite) (Version: 4.002 - WindSolutions) Curse (HKLM-x32\...\{1F2611FB-6F69-4AA8-BECD-243BD8CB45F3}) (Version: 6.0.0.0 - Curse) Curse Client (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse) Cyperia (HKLM-x32\...\{CA9F6B5A-2C32-4CB3-8635-390AB45A8C49}) (Version: 2.0 - Cyperia) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.0.0.0054 - Disc Soft Ltd) Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform) Drakonia Configurator (HKLM-x32\...\{2EAD3327-2F92-455F-A675-E5CC4980B67A}}_is1) (Version: - ) EPSON WF-2660 Series Printer Uninstall (HKLM\...\EPSON WF-2660 Series) (Version: - SEIKO EPSON Corporation) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) Euro Truck Simulator 2 Multiplayer 0.1.9.2 Alpha (HKLM-x32\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.1.9.2 Alpha - ETS2MP Team) FirewallEngine (Version: 1.6.0.0 - Lavasoft) Hidden Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Führerschein Trainer Version 2015.04 (HKLM-x32\...\Führerschein Trainer_is1) (Version: 2015.04 - theorie24 GmbH) Gameforge Live 2.0.10 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.10 - Gameforge) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.) Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden Gpg4win (2.2.6) (HKLM-x32\...\GPG4Win) (Version: 2.2.6 - The Gpg4win Project) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden Happy Cloud Client (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\HappyCloud) (Version: 5.88 - Happy Cloud, Inc.) iCloud (HKLM\...\{ADFDB647-35C0-4254-9EE6-2D9C3B7104BD}) (Version: 5.2.1.69 - Apple Inc.) ICQ 8.4 (build 7786) (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\ICQ) (Version: 8.4.7786.0 - ICQ) Intel(R) Network Connections 18.7.28.0 (HKLM\...\PROSetDX) (Version: 18.7.28.0 - Intel) iTunes (HKLM\...\{58D7E5F7-BAD1-49C5-93C8-B655736EDA00}) (Version: 12.4.0.119 - Apple Inc.) Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) KeePass Password Safe 1.29 (HKLM-x32\...\KeePass Password Safe_is1) (Version: 1.29 - Dominik Reichl) Kits Configuration Installer (x32 Version: 8.59.25584 - Microsoft) Hidden LastPass (Nur deinstallieren) (HKLM-x32\...\LastPass) (Version: - LastPass) Livestreamer 1.12.2 (HKLM-x32\...\Livestreamer) (Version: - ) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.472 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.472 - LogMeIn, Inc.) Hidden MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{D285FC5F-3021-32E9-9C59-24CA325BDC5C}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 47.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 de)) (Version: 47.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0 - Mozilla) Mozilla Thunderbird 45.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 45.0 (x86 de)) (Version: 45.0 - Mozilla) NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version: - NCSOFT) NETGEAR WNA3100 wireless USB 2.0 driver (HKLM-x32\...\{C2425F91-1F7B-4037-9A05-9F290184798D}) (Version: 2.2.0.2 - NETGEAR) Nexon Launcher (HKLM-x32\...\Nexon Nexon Launcher) (Version: 1.3.0 - Nexon) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.8 - Notepad++ Team) NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation) OnlineThreatsEngine (Version: 3.0.1.23 - Lavasoft) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenIV (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\OpenIV) (Version: 2.8.703 - .black/OpenIV Team) OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.10.2.4863 - Electronic Arts, Inc.) Outils de vérification linguistique 2016 de Microsoft Office*- Français (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Path of Exile (HKLM-x32\...\{b05517a5-78c9-4c02-86f4-5ad4db5b469d}) (Version: 2.2.1.53862 - Grinding Gear Games) Path of Exile (x32 Version: 2.2.1.53862 - Grinding Gear Games) Hidden PlanetSide 2 (HKLM\...\Steam App 218230) (Version: - Daybreak Games) PlanetSide 2 (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.11.2-r113542-release - Plays.tv, LLC) Python 3.3.5 (HKLM-x32\...\{d5a55e9f-237f-302f-a8e9-d01eb292a741}) (Version: 3.3.5150 - Python Software Foundation) QuickTime 7 (HKLM-x32\...\{80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC}) (Version: 7.78.80.95 - Apple Inc.) Raptr (HKLM-x32\...\Raptr) (Version: 5.2.1-r113066-release - Raptr, Inc) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.76.1028.2013 - Realtek) Rocket League (HKLM\...\Steam App 252950) (Version: - Psyonix, Inc.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.9.6 - Rockstar Games) RuneScape Launcher 1.2.7 (HKLM-x32\...\{FA52A2D0-298E-4D40-8BB7-39928627EA6A}) (Version: 1.2.7 - Jagex Ltd) Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.) SleepTimer Ultimate 1.3 (HKLM-x32\...\{0EE56463-49B2-45E1-B74F-3E0139DBC986}_is1) (Version: - Christian Handorf) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Spotify) (Version: 1.0.32.96.g3c8a06e6 - Spotify AB) Strumenti di correzione di Microsoft Office 2016 - Italiano (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) Team-ELAN Launcher (HKLM-x32\...\{02E71465-AFE4-4A68-B0A5-3C3691C879C0}) (Version: 1.00.0000 - Team ELAN) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.56083 - TeamViewer) Tom Clancy's The Division (HKLM-x32\...\Uplay Install 568) (Version: - Ubisoft) Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft) Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-00C1-0000-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft) Update for Skype for Business 2016 (KB3115087) 64-Bit Edition (HKLM\...\{90160000-012B-0407-1000-0000000FF1CE}_Office16.PROPLUS_{C48D0508-2A21-42EA-8BC9-D387768F54F4}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 19.1 - Ubisoft) USB Vibration Joystick (HKLM-x32\...\{4999B2F1-3E74-409A-B8B5-E94448AA9EA6}) (Version: 2007.08.17 - ) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Vulkan Run Time Libraries 1.0.11.0 (HKLM\...\VulkanRT1.0.11.0-3) (Version: 1.0.11.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.11.0 (Version: 1.0.11.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.13.0 (HKLM\...\VulkanRT1.0.13.0) (Version: 1.0.13.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1-3) (Version: 1.0.3.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.1 (Version: 1.0.3.1 - LunarG, Inc.) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Mobile-Gerätecenter (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) Windows Software Development Kit (HKLM-x32\...\{363a2c1e-637f-45ce-933b-5a5463efd945}) (Version: 8.59.29750 - Microsoft Corporation) WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Wondershare Dr.Fone für iOS(Build 7.2.1.2) (HKLM-x32\...\{A26F8BBD-EC10-4bdc-8AD8-F146825A8A63}_is1) (Version: 7.2.1.2 - Wondershare Software Co.,Ltd.) World of Tanks (HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) WPT Redistributables (x32 Version: 8.59.29750 - Microsoft) Hidden WPTx64 (x32 Version: 8.59.29722 - Microsoft) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-384998528E03}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Lars\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {02D78664-9D9D-41F6-A4F8-BECB83E6056D} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [2016-04-18] (Bitdefender) Task: {08417DD2-15DE-427C-B280-BA174E4BBA91} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {116BB508-0403-4175-9E54-D956DC8B9543} - System32\Tasks\AdobeAAMUpdater-1.0-Lars-PC-Lars => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-09-04] (Adobe Systems Incorporated) Task: {13C0DE9A-4E43-4779-8777-8E4EB3EB0475} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {171FE729-2610-45D0-9957-6EA26070E4EA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {1D59F681-179B-4B92-B9E8-2B2C0A80791C} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {31B4C235-C77F-4FDB-A2DC-A731EC8E7B6D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {3A5E383E-1040-427E-B43A-B59A5E4F8FCC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-31] (Google Inc.) Task: {402F999D-A69E-4891-985F-121FA8854D48} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {43D73F10-61EE-46E9-B663-2757792C8220} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {4AB7E195-2EA1-4240-BBA9-3B152FA7FEE6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {4EF4D540-13BD-421B-B329-2538EC75CA93} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation) Task: {55165D1F-0F94-4ABD-B51E-4405F51383F0} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {5C1C12ED-7584-49C8-87AC-CAA05B28C94E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-31] (Google Inc.) Task: {5E7FA2A7-F775-445B-8E07-7F94ECB783DE} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {63C36B24-B825-42C0-A9F8-6D816B46142E} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {69BEEE76-DED9-4872-89DC-D3869B1BE5E2} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {6A3BAEE8-CA5C-4C87-9FE5-B9FD8A73619E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {6F8FD10D-A257-4DCF-A444-EF69997FD4E5} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {71A4DA3B-7483-4318-9AFE-75C929963D67} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {7BCA5EB0-F10A-4FAE-A751-8EE31AE781C0} - System32\Tasks\EPSON WF-2660 Series Update {C157D075-AB90-45F7-B1BC-861FFF09E749} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSMAE.EXE [2013-11-22] (SEIKO EPSON CORPORATION) Task: {7DB8AE80-6CD6-42A7-B1E0-EF66F092396F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated) Task: {90FBEA6F-3713-4470-9626-45118A823DC5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {93B8EAD6-2F3A-4802-BF27-3B86A2A29D5D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {9D4C94FA-3941-474D-9520-C329B0F2347E} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {A4B1492E-471E-445C-AA10-6380794AE556} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {A732C129-6AF3-4886-922D-EF2FB2860DB1} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {A88559B9-01BD-42A0-ABF7-67DBB5A330DC} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {B456AAD6-F57C-466D-9F74-E2509B75A9E3} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {B4AA0C3F-E120-42AF-9B83-C1918AD66ADF} - System32\Tasks\EPSON WF-2660 Series Update {9081683F-A5C0-48D1-BA85-6F574D141488} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSMAE.EXE [2013-11-22] (SEIKO EPSON CORPORATION) Task: {B5A26F31-CFC9-443F-ABF5-97FAC3F78C0A} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {B6AA6970-8F89-49E4-BFD2-C5986877C312} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-06-18] (Adobe Systems Incorporated) Task: {B7D5295A-6111-498E-BF22-572282634F86} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-06-21] (Advanced Micro Devices, Inc.) Task: {BF1763C4-3531-4862-A0FE-179581D2F3FA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {BFC3155E-4434-40D8-B107-B3374203BC63} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-06-01] (Piriform Ltd) Task: {C6583B87-0390-49B0-AE3B-B893093F2DBE} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {C9512245-D71E-4A9A-8653-43CD5480E98A} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {C9ECEA67-1BE2-43EF-BFB6-DDCF96A44AB4} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-06-15] (Microsoft Corporation) Task: {CB103F14-A66A-44A8-89CF-9F06E7E0822E} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {CDD8D4E9-420A-460F-903B-0A2196FD8D8E} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {D0F1739F-B29F-4AB0-8F10-33C22A12EDAF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {DBB6A431-8154-4838-9019-AC925C723D34} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {DEF197D0-39BE-442D-98CA-E5B4ADCC3E08} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {DFAB144B-8B2C-43CD-A264-3E0F7B334CE6} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {E15FF773-36F1-4CF8-904A-CF326C99CF80} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {F1F4EE9F-5DE7-4714-98E7-A5EC83911775} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {F3C68566-313D-4378-A40D-A342D4265DA8} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {FC233190-40E2-4E26-8D7F-7754064D2D60} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {FCDC0BC5-4765-4812-96E3-47640988889B} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {FDF28603-DC9E-48D7-BC75-867521383223} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_192_pepper.exe [2016-06-18] (Adobe Systems Incorporated) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_192_pepper.exe Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\EPSON WF-2660 Series Update {9081683F-A5C0-48D1-BA85-6F574D141488}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSMAE.EXE:/EXE:{9081683F-A5C0-48D1-BA85-6F574D141488} /F:UpdateWORKGROUP\LARS-PC$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON WF-2660 Series Update {C157D075-AB90-45F7-B1BC-861FFF09E749}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSMAE.EXE:/EXE:{C157D075-AB90-45F7-B1BC-861FFF09E749} /F:UpdateWORKGROUP\LARS-PC$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenIV\Go to OpenIV web site.lnk -> hxxp://openiv.com/ (Keine Datei) Shortcut: C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ICQ\icq.com.lnk -> hxxp://www.icq.com/ (Keine Datei) Shortcut: C:\Users\Lars\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cyperia\Cyperia Homepage.lnk -> hxxp://cyperia.org/ (Keine Datei) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-06-26 00:28 - 2013-09-03 14:29 - 00101328 _____ () C:\Program Files\Bitdefender\Bitdefender 2016\bdmetrics.dll 2016-06-26 00:28 - 2016-05-09 11:29 - 01006336 _____ () C:\Program Files\Bitdefender\Bitdefender 2016\otengines_001_001\ashttpbr.mdl 2016-06-26 00:28 - 2016-05-09 11:29 - 00541952 _____ () C:\Program Files\Bitdefender\Bitdefender 2016\otengines_001_001\ashttpdsp.mdl 2016-06-26 00:28 - 2016-05-09 11:29 - 03035488 _____ () C:\Program Files\Bitdefender\Bitdefender 2016\otengines_001_001\ashttpph.mdl 2016-06-26 00:28 - 2016-05-09 11:29 - 01541440 _____ () C:\Program Files\Bitdefender\Bitdefender 2016\otengines_001_001\ashttprbl.mdl 2016-03-18 22:56 - 2016-03-18 22:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-04-22 01:07 - 2016-04-22 01:07 - 01337144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-09-09 12:52 - 2015-09-09 12:52 - 00216576 _____ () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe 2015-11-07 04:19 - 2015-12-02 23:06 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2015-09-11 23:20 - 2014-08-18 17:50 - 00316120 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe 2016-04-15 22:36 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-04-15 22:36 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-09-11 19:02 - 2015-09-11 19:02 - 00803488 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2015-12-18 19:25 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-05-15 14:02 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-05-15 14:02 - 2016-04-23 06:25 - 00674816 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\MtcUvc.dll 2016-07-04 11:40 - 2016-07-04 11:40 - 00566439 _____ () C:\Users\Lars\AppData\Local\JDownloader 2.0\tmp\7zip\SevenZipJBinding-FKPz9\libgcc_s_sjlj-1.dll 2016-07-04 11:40 - 2016-07-04 11:40 - 04078962 _____ () C:\Users\Lars\AppData\Local\JDownloader 2.0\tmp\7zip\SevenZipJBinding-FKPz9\lib7-Zip-JBinding.dll 2016-06-21 23:26 - 2016-06-21 23:26 - 00116736 _____ () C:\AMD\Radeon-Crimson-16.6.2-Win10-64Bit\Bin64\atiLog.dll 2015-10-30 09:18 - 2015-10-30 09:18 - 00218456 _____ () c:\windows\system32\WerEtw.dll 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-06-14 22:21 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-06-14 22:21 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-06-14 22:21 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-06-14 22:21 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-09-09 12:40 - 2015-09-09 12:40 - 00221696 _____ () C:\Program Files (x86)\GNU\GnuPG\libksba-8.dll 2015-09-09 12:28 - 2015-09-09 12:28 - 00050176 _____ () C:\Program Files (x86)\GNU\GnuPG\libw32pth-0.dll 2015-09-09 12:39 - 2015-09-09 12:39 - 00072192 _____ () C:\Program Files (x86)\GNU\GnuPG\libassuan-0.dll 2015-09-09 12:42 - 2015-09-09 12:42 - 00744448 _____ () C:\Program Files (x86)\GNU\GnuPG\libgcrypt-20.dll 2015-09-09 12:34 - 2015-09-09 12:34 - 00087040 _____ () C:\Program Files (x86)\GNU\GnuPG\libgpg-error-0.dll 2015-11-24 22:48 - 2015-11-24 22:48 - 00028160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\servicemanager.pyd 2015-11-24 22:46 - 2015-11-24 22:46 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes26.dll 2015-11-24 22:48 - 2015-11-24 22:48 - 00041472 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32service.pyd 2015-11-24 22:48 - 2015-11-24 22:48 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_hashlib.pyd 2015-11-24 22:48 - 2015-11-24 22:48 - 00017920 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd 2015-11-24 22:48 - 2015-11-24 22:48 - 00019968 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32evtlog.pyd 2015-11-24 22:48 - 2015-11-24 22:48 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_socket.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ssl.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ctypes.pyd 2015-11-24 22:46 - 2015-11-24 22:46 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom26.dll 2015-11-24 22:48 - 2015-11-24 22:48 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 01980928 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd 2015-12-07 22:57 - 2015-12-07 22:57 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 01862144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 00516608 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 04060160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\select.pyd 2015-09-11 23:20 - 2015-02-26 20:19 - 00380928 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiLib.dll 2015-10-04 00:34 - 2015-07-21 18:13 - 00715000 _____ () C:\Program Files (x86)\Connectify\log4cplus.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_ctypes.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_socket.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_ssl.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 05812736 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtGui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00067584 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\sip.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 01662464 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtCore.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00494592 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtNetwork.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32api.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pywintypes26.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\select.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_hashlib.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32process.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00111104 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32file.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00044544 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_sqlite3.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 00417501 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\sqlite3.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32gui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00313856 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtWebKit.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00127488 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pyexpat.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00009216 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\winsound.pyd 2015-10-21 22:29 - 2015-10-21 22:29 - 00113171 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libvlc.dll 2015-10-21 22:29 - 2015-10-21 22:29 - 02396691 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libvlccore.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00583680 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\unicodedata.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00324608 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PIL._imaging.pyd 2015-06-27 01:09 - 2015-06-27 01:09 - 00271872 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\amd_ags.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00024064 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32pipe.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pythoncom26.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00263168 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32com.shell.shell.pyd 2016-05-17 01:50 - 2016-05-17 01:50 - 02619136 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\ltc_host_ex.DLL 2010-11-23 00:57 - 2010-11-23 00:57 - 00141312 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\gobject._gobject.pyd 2016-04-19 19:08 - 2016-04-19 19:08 - 02717595 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\heliotrope._purple.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 01213633 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libxml2-2.dll 2010-11-23 01:06 - 2010-11-23 01:06 - 00055808 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\zlib1.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00495680 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libaim.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 01183699 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\liboscar.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00483306 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libicq.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00655356 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libirc.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 01306387 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libmsn.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00565461 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libxmpp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01640221 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libjabber.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00506276 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libyahoo.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01053730 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libymsg.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00497782 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libyahoojp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00603326 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\ssl-nss.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00474199 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\ssl.dll 2015-11-24 22:43 - 2015-11-24 22:43 - 00044544 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_sqlite3.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00387072 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sqlite3.dll 2015-10-21 22:29 - 2015-10-21 22:29 - 00113171 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libvlc.dll 2015-10-21 22:29 - 2015-10-21 22:29 - 02396691 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libvlccore.dll 2015-11-24 22:48 - 2015-11-24 22:48 - 00111104 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32file.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 00216064 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebKitWidgets.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 00118784 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebKit.pyd 2015-11-24 22:47 - 2015-11-24 22:47 - 00199680 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtPrintSupport.pyd 2015-06-27 01:09 - 2015-06-27 01:09 - 00271872 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\amd_ags.dll 2015-11-24 22:47 - 2015-11-24 22:47 - 00263168 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32com.shell.shell.pyd 2015-11-24 22:43 - 2015-11-24 22:43 - 00583680 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\unicodedata.pyd 2015-10-21 22:29 - 2015-10-21 22:29 - 00027667 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\audio_output\libdirectsound_plugin.dll 2015-10-21 22:29 - 2015-10-21 22:29 - 00031251 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\audio_output\libwaveout_plugin.dll 2015-10-21 22:29 - 2015-10-21 22:29 - 00066579 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\video_output\libdirectdraw_plugin.dll 2016-05-27 00:50 - 2016-05-27 00:50 - 02619144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\ltc_host_ex.DLL 2015-05-31 20:08 - 2016-06-29 19:12 - 52042352 _____ () C:\Users\Lars\AppData\Roaming\Spotify\libcef.dll 2015-05-31 20:08 - 2016-06-29 19:12 - 01741936 _____ () C:\Users\Lars\AppData\Roaming\Spotify\libglesv2.dll 2015-05-31 20:08 - 2016-06-29 19:12 - 00087664 _____ () C:\Users\Lars\AppData\Roaming\Spotify\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Users\Lars\Desktop\AdwCleaner_5.201.exe:BDU [0] AlternateDataStreams: C:\Users\Lars\Desktop\FRST64.exe:BDU [0] AlternateDataStreams: C:\Users\Lars\Desktop\JRT.exe:BDU [0] AlternateDataStreams: C:\Users\Lars\Desktop\radeon-crimson-16.6.2-win10-64bit.exe:BDU [0] AlternateDataStreams: C:\Users\Lars\Downloads\Firefox Setup Stub 47.0.exe:BDU [0] AlternateDataStreams: C:\Users\Lars\Downloads\NexonLauncherSetup.exe:BDU [0] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\Software\Classes\.exe: => <===== ACHTUNG ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\aeriagames.com -> hxxps://aeriagames.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-08-01 12:51 - 2016-07-04 11:26 - 00000974 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img13.jpg DNS Servers: 192.168.0.1 - 192.168.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\Services: amdacpusrsvc => 2 MSCONFIG\Services: Apple Mobile Device Service => 2 MSCONFIG\Services: BEService => 3 MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: BstHdAndroidSvc => 3 MSCONFIG\Services: BstHdLogRotatorSvc => 3 MSCONFIG\Services: BstHdUpdaterSvc => 2 MSCONFIG\Services: Connectify => 2 MSCONFIG\Services: DirMngr => 2 MSCONFIG\Services: Disc Soft Lite Bus Service => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: Hamachi2Svc => 2 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: LMIGuardianSvc => 2 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: Origin Client Service => 3 MSCONFIG\Services: PlaysService => 2 MSCONFIG\Services: ProductAgentService => 2 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\Services: TeamViewer => 2 MSCONFIG\Services: WsAppService => 2 MSCONFIG\Services: WsDrvInst => 3 MSCONFIG\Services: WSWNA3100 => 2 MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: Aeria Ignite => MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Lars\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: ApplePhotoStreams => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: iCloudDrive => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe MSCONFIG\startupreg: iCloudServices => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: NetWorx => MSCONFIG\startupreg: Overwolf => MSCONFIG\startupreg: Raptr => MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Spotify => "C:\Users\Lars\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Lars\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" HKLM\...\StartupApproved\StartupFolder: => "NETGEAR WNA3100 Genie.lnk" HKLM\...\StartupApproved\Run: => "Connectify Hotspot" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "Windows Mobile Device Center" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Raptr" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "NCUpdateHelper" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKLM\...\StartupApproved\Run32: => "PlaysTV" HKLM\...\StartupApproved\Run32: => "WSHelperSetup.exe" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\StartupFolder: => "Curse.lnk" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000000" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000001" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "pamela.exe" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "icq" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "iCloudDrive" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "iCloudPhotos" HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\StartupApproved\Run: => "iCloudServices" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{CE7924C7-6731-4D2F-A579-FB25D28754CC}] => (Allow) C:\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{024A78A5-CBDA-4A11-8A47-299BADD9143B}] => (Allow) C:\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{30018106-5CA5-493D-BA40-3F36F4F66CCF}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{2F34CF64-3ECF-4C87-9E22-F8B34CFA874A}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{E3C379BD-5592-4985-8A01-90AA28E490D3}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{B8B5A244-090B-48FE-9E26-7E25AB91AA9E}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{48315EA6-0BF3-4756-BA3C-DC84E4D5F40E}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{C2A809B1-6666-4659-92D7-BBB82CD96B5C}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{75FFA364-20FF-447B-BFB7-AB5FE3DA3693}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{1B5D27E7-20E0-4E6D-ACA5-D52914B79242}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{40B87362-D8C0-46D5-B9B3-B353CE23EE99}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{62038C5D-2503-4213-A2FD-482A30AE086B}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{7AA09037-BCCA-478D-98A5-D91BC0BE5898}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{46D85CC8-A998-441F-B6A0-5C1B5F8732FF}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{2036CF32-0BCA-48C4-9767-FADC542F60FC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CB0AC557-EDD6-4DB9-945F-7BCFAD79B458}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{07EDC545-D4EA-4062-895F-2DF21B3B2D5B}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{2975FE69-D61A-4DB5-B17E-7ECD83C08BA0}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{BEB61260-3307-4B24-96CB-5EB4AE6B92C8}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{F9404294-C5D6-4CB6-BCC3-AFA2240DDF67}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{546800FF-52E3-4182-A58D-262EC2FB9854}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{17A1A088-01BC-49AF-A5AE-D67987093B55}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{8ADE5938-5896-47E1-A2ED-354C10DD13B5}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{78CF26C2-5031-4B34-9062-98AA4612971D}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{E521AEAA-12F1-496F-AEB1-A6A54A746DEF}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{F31788BD-3A9B-4115-AB4D-72495BE0ECC9}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{11FD84A9-60E5-4064-9C92-0A4FAA52CC6B}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{09496F3C-B7AE-479C-8982-FA494AD0F78B}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{18FE1D26-BE44-445F-9EC4-67ECA849E5A5}] => (Allow) C:\Program Files (x86)\Connectify\Connectifyd.exe FirewallRules: [{56F73693-9724-4354-B56B-DED02A11AA91}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{D44C6B31-775F-4BB3-8E29-043B08C0486D}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{1876F35C-6180-4C72-B190-573B8EB50AF5}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{4CB1A060-C22E-4FCE-A043-E27267CF1E7A}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{9FE75676-2A20-4BAC-82BC-FDBB55C9EE1E}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{31D3349C-B645-4D06-A9CA-31E5328A3EBF}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{94AFA5EF-A433-4F0A-8A98-1A8AC515DC1D}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{C08D872D-64A0-40E6-B351-33145AF2BC90}] => (Allow) C:\Program Files (x86)\Connectify\Connectify.exe FirewallRules: [{62D996CD-B76E-4FF4-8EA5-8BC66C52DE6E}] => (Block) %ProgramFiles%\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{115D63F6-99A0-4EC8-9127-C1944DDCA783}] => (Block) %ProgramFiles%\Rockstar Games\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{EFF2987F-258B-427E-9F5A-533F40BBF8F5}] => (Block) %ProgramFiles%\Rockstar Games\Grand Theft Auto V\PlayGTAV.exe FirewallRules: [{AEC0F460-45F3-424A-B19B-67240A938FDD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{19979628-A4C5-4E0A-B93C-F529F00AA814}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B6341CA0-8853-45C5-8E4C-F2A7E165BC3E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{43649AC0-81E4-4102-B6A1-990179AA8E8A}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{8F66AE67-9D40-4D37-9CCC-9A8DEF7BB24D}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [UDP Query User{52B117D5-5173-4E2E-A38B-D273D53284D3}C:\users\lars\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\lars\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{CCC909B6-AA09-407E-95B9-6D9837DA0DBF}C:\users\lars\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\lars\appdata\roaming\spotify\spotify.exe FirewallRules: [{FF0EC7EE-D393-428F-8371-C778D6C7B47D}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{2B64E529-5069-4FA3-B44E-831BBFF6E803}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{137D9B53-97EA-4DBB-882A-A3B31696E06F}] => (Allow) C:\Steam\bin\steamwebhelper.exe FirewallRules: [{BC82D8FF-0282-4EFC-BB16-43663CA5E1EB}] => (Allow) C:\Steam\bin\steamwebhelper.exe FirewallRules: [{7AF82323-8D5C-4484-858C-601815BB9446}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{E57A51AA-1928-43A4-B89F-7406E47EB113}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C089D124-DD21-41AE-B92A-3473BFDFD473}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{B81199A2-24ED-40AF-96DA-72C2FFE4B5EF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{EC4CBB69-E596-47D1-8A0C-7C69E6AE90C1}] => (Allow) C:\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe FirewallRules: [{2FD7D19E-6026-426B-AADA-F3353E2E9079}] => (Allow) C:\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe FirewallRules: [{99E3DEAC-B77B-4384-979E-32C35DD1C448}] => (Allow) C:\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe FirewallRules: [{B657AF3D-3083-43B3-9952-6F5784279311}] => (Allow) C:\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe FirewallRules: [{70C5B41F-CEAA-435C-AD75-554DFD223905}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{CE6FF1B8-5381-4399-A70D-E2BA3FF9DECF}] => (Allow) C:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{B12916BF-98AB-4F55-B611-4D4423FB9BE8}] => (Allow) LPort=8317 FirewallRules: [{F1139318-4F73-4535-B7B8-A39E634F1B35}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{ED4A67C5-B89C-48C4-A0F3-5C29BE8ED415}] => (Allow) C:\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{E765B9F4-CAEF-432B-8F8F-F10364422ED0}] => (Allow) C:\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{C86DC137-46D5-437F-97F9-2FF01FB4185D}] => (Allow) C:\Steam\steamapps\common\DayZ\DayZ_BE.exe FirewallRules: [{A3224FFD-4431-4FF7-A3AD-D42C3E440300}] => (Allow) C:\Steam\steamapps\common\DayZ\DayZ_BE.exe FirewallRules: [{96225C40-BA12-4E08-AF16-8829EF255166}] => (Allow) C:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{DBB78537-8595-4963-AC8F-B7FEBCFA5287}] => (Allow) C:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [TCP Query User{B99E5ACD-6B10-47BE-82D0-7712FB851264}C:\users\lars\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\lars\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{E8F4C737-88B9-49C8-972C-4520375429E0}C:\users\lars\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\lars\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{AE540779-6D0C-4D3A-A670-6634AA4AFE2A}C:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [UDP Query User{3FE0B1BB-4E09-4D29-900B-CD9D7B1214D8}C:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{9E634C61-4CA2-44FF-B229-05827901C288}] => (Block) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{F9F32486-4E5C-46A1-AF03-0BBBD0A57720}] => (Block) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [TCP Query User{5DCA3CEA-0941-4B25-BFCA-B44849681A6C}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe FirewallRules: [UDP Query User{19A1276E-39F3-49E3-971C-F370EB501CF8}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe FirewallRules: [{7C0EE0B4-78FB-4797-A397-8F60E7AA3A4E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{6BC3024A-252B-40AA-856B-27788895E9EB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{735ADD48-7119-4806-B862-F81A2BCD2343}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{8B6880E6-9499-48DA-856F-A82F8E0C40F8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{3F2E1B5E-1766-4B15-8526-1E1CE9BF34A8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{4DF203A2-7672-43BA-B9EB-D06A3D114C9D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{D2DF6C20-9430-4CC0-84A0-DF0D131DE114}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{65B4BC9D-60D3-4678-8E26-180F7FD6195C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{CAC39096-4158-4936-8D06-5021AFE2449C}] => (Allow) C:\Steam\steamapps\common\Arma 2\arma2.exe FirewallRules: [{AE6F6F92-3A59-4F55-BDC6-93F1B8375992}] => (Allow) C:\Steam\steamapps\common\Arma 2\arma2.exe FirewallRules: [{0690452B-FF85-46B6-A1EE-93A925DF5D2D}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{67AF31B4-E8B6-4B4F-82A6-A0F872B131FC}] => (Allow) LPort=2869 FirewallRules: [{768BE65C-DFF7-4F93-80A7-F0B870E4CB56}] => (Allow) LPort=1900 FirewallRules: [{A785C447-D07A-4017-8D0B-AEC34325E8B3}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{51967A30-B626-40DE-A2B9-29387F8FADE6}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{5C184C66-91A2-42EA-A4C3-133A2F0070BB}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{7492E648-681F-49F3-9979-CE356900E5B4}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{37BABB00-4CFB-404C-B21B-FE3E4F315ACB}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{86C9D120-ABF7-4245-8F55-0CA298A9772F}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{42CBEFE2-BCAB-44EC-9647-2B2DD46A7F20}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{214C2417-B186-4627-8961-3FCF11C14DC1}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{9BD6D9F4-6295-43B1-BA9C-4D2A95A77768}] => (Allow) C:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{40D81835-34AC-4338-8783-DDE1C6656ABF}] => (Allow) C:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{ECDFB02B-036F-4AE5-B126-5A6EFBF57CD8}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{81DC46DB-733A-4FA2-B4D3-D192085787C4}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{3026E536-FB9D-4CCD-97BD-7753BFD0B658}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{2B009F52-6626-4807-BCED-13BC7199721E}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{3A4632B8-B4A7-43D6-8C71-ACA8B3A91E11}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [{7F418CE2-2820-4AFA-9AAA-692DEBF7D763}] => (Allow) C:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{6778EC99-F9FD-4A80-8F5C-D040FA3F1224}] => (Allow) C:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{6C71D029-A4C7-46C8-8B31-29193F5A59AC}] => (Allow) C:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{AE159D36-C3F0-41BF-823B-989BA5056F23}] => (Allow) C:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{E39F4458-0BC2-49A9-AA97-D4D0684F2126}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{06FD814F-1B58-4A8E-98A6-E6AFFC63404A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{F1558540-3A41-479B-ABBE-AF6649DFC718}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{5645F079-9FC1-4EAE-9DBF-4826CC98C5E2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{441F8B9C-DE06-409B-BD72-ABC4D5C3AEFE}] => (Allow) C:\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{7E0E16CA-616C-4581-9AFC-D94F8684161C}] => (Allow) C:\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{42DF7017-7E54-41AD-9872-A6C34ECCE8DF}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{F122B0A7-B30D-4DE3-814F-CF36AC8D849D}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe FirewallRules: [{F7D99F26-EEA6-490F-A528-EAB5CD575B6F}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe FirewallRules: [{775028BA-164E-4BC4-B934-C071B989160C}] => (Allow) LPort=26675 FirewallRules: [{6BE22CE2-9258-4837-B844-34C64A1D0F29}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's The Division\TheDivision.exe FirewallRules: [{720AED73-561D-4E36-A7CB-A8889DA0B4E6}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{AEB8EC66-9DEE-4213-B33B-9F118B163746}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{63B45F8D-A3F4-435D-BA50-AD4F96FEBF2E}] => (Allow) C:\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe FirewallRules: [{9F673253-BB71-4A28-BCEF-A5C7F1A56A80}] => (Allow) C:\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe FirewallRules: [{41CFA0E2-EADA-4F08-BBD1-0A4BC724DDF6}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{13EB31E6-7854-48EF-88B4-13580118A078}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{E1976599-D8CA-4F71-AB53-362A2F026593}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{6024691B-1B53-4B45-BA8F-E64A01448554}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{C912D6C4-F644-41E6-8F1D-0F355C1A3F2F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{677270BB-28D2-4A7F-A716-D68D9C079B86}] => (Allow) C:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{4B5DAC4C-9BCA-4941-97F1-B23426AA2435}] => (Allow) C:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{C6043315-51FF-4CD0-A3CE-E6C9F13B6029}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{509850FA-93EB-4E1A-BCF0-B198CAD2E056}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{3D7819D7-7DE2-47BE-9350-03AC4D7D0B4A}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{9249AD64-C092-4062-9A67-2B5F102E1F8F}] => (Allow) C:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe ==================== Wiederherstellungspunkte ========================= 23-06-2016 15:03:44 Windows Update 03-07-2016 01:00:53 Geplanter Prüfpunkt 04-07-2016 01:03:14 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 04-07-2016 01:03:58 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 04-07-2016 11:32:57 JRT Pre-Junkware Removal ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (07/04/2016 12:02:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: dwm.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d756 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 10.0.10586.306, Zeitstempel: 0x571af331 Ausnahmecode: 0xe0464645 Fehleroffset: 0x0000000000071f28 ID des fehlerhaften Prozesses: 0x2860 Startzeit der fehlerhaften Anwendung: 0xdwm.exe0 Pfad der fehlerhaften Anwendung: dwm.exe1 Pfad des fehlerhaften Moduls: dwm.exe2 Berichtskennung: dwm.exe3 Vollständiger Name des fehlerhaften Pakets: dwm.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: dwm.exe5 Error: (07/04/2016 12:00:40 PM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (07/04/2016 12:00:35 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10007) (User: LARS-PC) Description: Die Anwendung oder der Dienst "ACP User Service" konnte nicht neu gestartet werden. Error: (07/04/2016 11:59:32 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (07/04/2016 11:58:22 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (07/04/2016 11:49:26 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (07/04/2016 11:46:04 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (07/04/2016 11:45:48 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (07/04/2016 11:45:42 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Error: (07/04/2016 11:40:16 AM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: ATI EEU Service event error Systemfehler: ============= Error: (07/04/2016 12:01:05 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst AMD External Events Utility erreicht. Error: (07/04/2016 01:24:23 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenzugriff_4f38688" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/04/2016 01:24:23 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenspeicher _4f38688" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/04/2016 01:24:23 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Kontaktdaten_4f38688" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/04/2016 01:24:23 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Synchronisierungshost_4f38688" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/04/2016 01:04:16 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{135FD325-45B7-4C30-89F8-4386961669F0}{135FD325-45B7-4C30-89F8-4386961669F0}NT-AUTORITÄTNetzwerkdienstS-1-5-20LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/04/2016 12:27:21 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{135FD325-45B7-4C30-89F8-4386961669F0}{135FD325-45B7-4C30-89F8-4386961669F0}NT-AUTORITÄTNetzwerkdienstS-1-5-20LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (07/03/2016 01:01:35 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenzugriff_4c2eeab" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/03/2016 01:01:35 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenspeicher _4c2eeab" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/03/2016 01:01:35 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Kontaktdaten_4c2eeab" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. CodeIntegrity: =================================== Date: 2016-07-03 18:13:45.006 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-19 21:30:45.539 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-19 19:10:21.991 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-16 14:59:25.568 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-15 13:41:37.764 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-16 21:22:15.583 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-15 21:09:08.077 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-15 14:29:18.017 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-17 16:08:51.940 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-17 14:08:12.028 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Xeon(R) CPU E3-1231 v3 @ 3.40GHz Prozentuale Nutzung des RAM: 41% Installierter physikalischer RAM: 8111.05 MB Verfügbarer physikalischer RAM: 4739.63 MB Summe virtueller Speicher: 16303.05 MB Verfügbarer virtueller Speicher: 12129.61 MB ==================== Laufwerke ================================ Drive c: (Sekundär) (Fixed) (Total:931.07 GB) (Free:105.63 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: F7150527) Partition 1: (Active) - (Size=931.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) ==================== Ende von Addition.txt ============================ |
04.07.2016, 11:34 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Browser total langsam FRST-Fix Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft! Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Policies\system: [] 0 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG C:\Users\Lars\AppData\Roaming\Avira C:\ProgramData\Avira Task: {13C0DE9A-4E43-4779-8777-8E4EB3EB0475} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {43D73F10-61EE-46E9-B663-2757792C8220} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {4AB7E195-2EA1-4240-BBA9-3B152FA7FEE6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {6A3BAEE8-CA5C-4C87-9FE5-B9FD8A73619E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {90FBEA6F-3713-4470-9626-45118A823DC5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {BF1763C4-3531-4862-A0FE-179581D2F3FA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {D0F1739F-B29F-4AB0-8F10-33C22A12EDAF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {DEF197D0-39BE-442D-98CA-E5B4ADCC3E08} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {F1F4EE9F-5DE7-4714-98E7-A5EC83911775} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {F3C68566-313D-4378-A40D-A342D4265DA8} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {FCDC0BC5-4765-4812-96E3-47640988889B} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
04.07.2016, 12:00 | #14 |
| Browser total langsam Fixlog: Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-07-2016 durchgeführt von Lars (2016-07-04 12:57:03) Run:1 Gestartet von C:\Users\Lars\Desktop Geladene Profile: Lars (Verfügbare Profile: Lars & DefaultAppPool) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\...\Policies\system: [] 0 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG C:\Users\Lars\AppData\Roaming\Avira C:\ProgramData\Avira Task: {13C0DE9A-4E43-4779-8777-8E4EB3EB0475} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {43D73F10-61EE-46E9-B663-2757792C8220} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {4AB7E195-2EA1-4240-BBA9-3B152FA7FEE6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {6A3BAEE8-CA5C-4C87-9FE5-B9FD8A73619E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {90FBEA6F-3713-4470-9626-45118A823DC5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {BF1763C4-3531-4862-A0FE-179581D2F3FA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {D0F1739F-B29F-4AB0-8F10-33C22A12EDAF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {DEF197D0-39BE-442D-98CA-E5B4ADCC3E08} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {F1F4EE9F-5DE7-4714-98E7-A5EC83911775} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {F3C68566-313D-4378-A40D-A342D4265DA8} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {FCDC0BC5-4765-4812-96E3-47640988889B} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG emptytemp: ***************** "HKLM\SOFTWARE\Policies\Google" => Schlüssel erfolgreich entfernt HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\ => Wert erfolgreich entfernt "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Schlüssel erfolgreich entfernt "HKU\S-1-5-21-3765219005-2896119444-2935634367-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Schlüssel erfolgreich entfernt C:\Users\Lars\AppData\Roaming\Avira => erfolgreich verschoben C:\ProgramData\Avira => erfolgreich verschoben "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{13C0DE9A-4E43-4779-8777-8E4EB3EB0475}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{13C0DE9A-4E43-4779-8777-8E4EB3EB0475}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{43D73F10-61EE-46E9-B663-2757792C8220}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{43D73F10-61EE-46E9-B663-2757792C8220}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4AB7E195-2EA1-4240-BBA9-3B152FA7FEE6}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4AB7E195-2EA1-4240-BBA9-3B152FA7FEE6}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6A3BAEE8-CA5C-4C87-9FE5-B9FD8A73619E}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6A3BAEE8-CA5C-4C87-9FE5-B9FD8A73619E}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{90FBEA6F-3713-4470-9626-45118A823DC5}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90FBEA6F-3713-4470-9626-45118A823DC5}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BF1763C4-3531-4862-A0FE-179581D2F3FA}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BF1763C4-3531-4862-A0FE-179581D2F3FA}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0F1739F-B29F-4AB0-8F10-33C22A12EDAF}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0F1739F-B29F-4AB0-8F10-33C22A12EDAF}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DEF197D0-39BE-442D-98CA-E5B4ADCC3E08}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DEF197D0-39BE-442D-98CA-E5B4ADCC3E08}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F1F4EE9F-5DE7-4714-98E7-A5EC83911775}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F1F4EE9F-5DE7-4714-98E7-A5EC83911775}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3C68566-313D-4378-A40D-A342D4265DA8}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3C68566-313D-4378-A40D-A342D4265DA8}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FCDC0BC5-4765-4812-96E3-47640988889B}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FCDC0BC5-4765-4812-96E3-47640988889B}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => Schlüssel erfolgreich entfernt =========== EmptyTemp: ========== BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 20503524 B Java, Flash, Steam htmlcache => 103816621 B Windows/system/drivers => 4368 B Edge => 0 B Chrome => 118585773 B Firefox => 391355059 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 24394 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 4630 B NetworkService => 0 B Lars => 20353934 B DefaultAppPool => 22858 B RecycleBin => 0 B EmptyTemp: => 624.3 MB temporäre Dateien entfernt. ================================ Das System musste neu gestartet werden. ==== Ende von Fixlog 12:57:18 ==== |
04.07.2016, 12:58 | #15 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Browser total langsam Okay, dann Kontrollscans mit (1) MBAM, (2) ESET und (3) SecurityCheck bitte: 1. Schritt: MBAM Downloade Dir bitte Malwarebytes Anti-Malware
2. Schritt: ESET ESET Online Scanner
3. Schritt: SecurityCheck Downloade Dir bitte SecurityCheck und:
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Browser total langsam |
ad-aware, adobe, antivirus, bonjour, browser, ccsetup, defender, dnsapi.dll, euro, explorer, firefox, flash player, google, homepage, langsam, mozilla, netgear, photoshop, prozesse, registry, scan, security, services.exe, software, system, teamspeak, windows |