|
Plagegeister aller Art und deren Bekämpfung: puo.Optional.youndoo läst sich nicht entfernenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
14.07.2016, 13:00 | #16 |
| puo.Optional.youndoo läst sich nicht entfernenCode:
ATTFilter Untersuchungsergebnis der Verknüpfungen des Benutzers (x64) Version: 13-07-2016 02 durchgeführt von T510a (2016-07-14 13:53:50) Gestartet von C:\Users\T510a\Downloads Start-Modus: Normal ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\MinGW Shell.lnk -> C:\MinGW\msys\1.0\msys.bat () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\START.bat - Verknüpfung.lnk -> C:\Files\VerrückteRally\START.bat () Shortcut: C:\Users\Administrator\Desktop\Anki.lnk -> C:\Program Files (x86)\Anki\anki.exe () Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\MinGW Installation Manager.lnk -> C:\MinGW\libexec\mingw-get\guimain.exe (MinGW.org Project) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrodist.exe (Adobe Systems Incorporated.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk -> C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-000000000006}\_SC_Acrobat.ico () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk -> C:\Program Files (x86)\Adobe\Acrobat 11.0\FormsCentral\FormsCentralForAcrobat.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anki.lnk -> C:\Program Files (x86)\Anki\anki.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EmEditor.lnk -> C:\Program Files\EmEditor\EmEditor.exe (Emurasoft, Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk -> C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Punch Club.lnk -> C:\Spiele\Punch Club\Punch Club.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Benutzerhandbuch für die Konsolenversion von RAR.lnk -> C:\Programme\WinRAR\Rar.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Hilfe zu WinRAR.lnk -> C:\Programme\WinRAR\WinRAR.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Was ist neu in dieser Version.lnk -> C:\Programme\WinRAR\WhatsNew.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack\Documentation.lnk -> C:\Program Files\WinHTTrack\httrack-doc.html () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack\WinHTTrack Website Copier.lnk -> C:\Program Files\WinHTTrack\WinHTTrack.exe (HTTrack) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAce\Bestellassistent.lnk -> C:\Program Files (x86)\WinAce\order.exe (e-merge GmbH) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAce\deutsche Hilfe.lnk -> C:\Program Files (x86)\WinAce\winace.hlp () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAce\englische Hilfe.lnk -> C:\Program Files (x86)\WinAce\winace_enu.hlp () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAce\Register.txt.lnk -> C:\Program Files (x86)\WinAce\register.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAce\WinAce WebSite.lnk -> C:\Program Files (x86)\WinAce\winace.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webocton - Scriptly\Webocton - Scriptly - Website.lnk -> C:\Program Files (x86)\Webocton - Scriptly\scriptly.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webocton - Scriptly\Webocton - Scriptly deinstallieren.lnk -> C:\Program Files (x86)\Webocton - Scriptly\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webocton - Scriptly\Webocton - Website.lnk -> C:\Program Files (x86)\Webocton - Scriptly\webocton.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk -> C:\Program Files (x86)\VideoLAN\VLC\Documentation.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk -> C:\Program Files (x86)\VideoLAN\VLC\NEWS.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk -> C:\Program Files (x86)\VideoLAN\VLC\VideoLAN Website.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK\TP-LINK-Konfigurationstool.lnk -> C:\Program Files (x86)\TP-LINK\TP-LINK-Konfigurationstool\TWCU.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TIPP10\Uninstall.lnk -> C:\Program Files (x86)\Tipp10\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Alternate Start.lnk -> C:\Program Files\SUPERAntiSpyware\RUNSAS.EXE (SUPERAdBlocker.com and SUPERAntiSpyware.com) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Free Edition.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Sound Forge Pro 11.0\Sound Forge Pro 11.0 Readme.lnk -> C:\Program Files (x86)\Sony\Sound Forge Pro 11.0\Readme\forge_readme.htm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Sound Forge Pro 11.0\Sound Forge Pro 11.0.lnk -> C:\Program Files (x86)\Sony\Sound Forge Pro 11.0\Forge110.exe (Sony) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RapidTyping 5\Help.lnk -> C:\Program Files (x86)\RapidTyping 5\RapidTyping.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RapidTyping 5\Lizenz.lnk -> C:\Program Files (x86)\RapidTyping 5\Lizenz.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RapidTyping 5\Readme.lnk -> C:\Program Files (x86)\RapidTyping 5\Readme.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RapidTyping 5\Uninstall.lnk -> C:\Program Files (x86)\RapidTyping 5\Uninstall.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7\Python (command line).lnk -> C:\Windows\Installer\{16E52445-1392-469F-9ADB-FC03AF00CD62}\python_icon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7\Python Manuals.lnk -> C:\Python27\Doc\python2711.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Assistant.lnk -> C:\Python27\Lib\site-packages\PyQt4\assistant.exe (The Qt Company Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Designer.lnk -> C:\Python27\Lib\site-packages\PyQt4\designer.exe (The Qt Company Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Linguist.lnk -> C:\Python27\Lib\site-packages\PyQt4\linguist.exe (The Qt Company Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Uninstall PyQt.lnk -> C:\Python27\Lib\site-packages\PyQt4\Uninstall.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Links\eric Homepage.lnk -> hxxp://eric-ide.python-projects.org/index.html (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Links\PyQt Book.lnk -> hxxp://www.qtrac.eu/pyqtbook.html (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Links\PyQt Homepage.lnk -> hxxp://www.riverbankcomputing.com/software/pyqt/ (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Links\PyQwt Homepage.lnk -> hxxp://pyqwt.sourceforge.net/ (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Links\QScintilla Homepage.lnk -> hxxp://www.riverbankcomputing.com/software/qscintilla/ (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Links\Qt Homepage.lnk -> hxxp://qt.digia.com/ (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Links\Qwt Homepage.lnk -> hxxp://qwt.sourceforge.net/ (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Examples\PyQt Examples and Demos.lnk -> C:\Python27\Lib\site-packages\PyQt4\examples\demos\qtdemo\qtdemo.pyw () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Examples\PyQt Examples Source.lnk -> C:\Python27\Lib\site-packages\PyQt4\examples () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Documentation\PyQt Class Reference.lnk -> C:\Python27\Lib\site-packages\PyQt4\doc\html\classes.html () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Documentation\PyQt Reference Guide.lnk -> C:\Python27\Lib\site-packages\PyQt4\doc\html\index.html () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PyQt GPL v4.11.4 for Python v2.7 (x64)\Documentation\Qt Documentation.lnk -> hxxp://qt-project.org/doc/qt-4.8/ (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO\PowerISO Help.lnk -> C:\Program Files (x86)\PowerISO\PowerISO.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO\Uninstall PowerISO.lnk -> C:\Program Files (x86)\PowerISO\uninstall.exe (Power Software Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Native Instruments Homepage.lnk -> C:\Windows\Installer\{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}\et20Explorer5ciexplore.exe0.ico (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Service Center.lnk -> C:\Program Files\Native Instruments\Service Center\ServiceCenter.exe (Native Instruments GmbH) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\More Documentation.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Readme.txt.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Readme.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual English.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual English.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual French.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual French.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual German.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual German.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual Japanese.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual Japanese.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual Spanish.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual Spanish.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Native Instruments Homepage.lnk -> C:\Windows\Installer\{E9EA5F38-6299-45A1-9D23-F21729A19357}\et20Explorer5ciexplore.exe0.ico (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Documentation\More Documentation.lnk -> C:\Program Files\Native Instruments\Reaktor 5\Documentation () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Documentation\Readme.txt.lnk -> C:\Program Files\Native Instruments\Reaktor 5\Documentation\Readme.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started English.pdf.lnk -> C:\Program Files\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started English.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started French.pdf.lnk -> C:\Program Files\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started French.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started German.pdf.lnk -> C:\Program Files\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started German.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started Japanese.pdf.lnk -> C:\Program Files\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started Japanese.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started Spanish.pdf.lnk -> C:\Program Files\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Getting Started Spanish.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Manual Addendum English.pdf.lnk -> C:\Program Files\Native Instruments\Reaktor 5\Documentation\Reaktor 5 Manual Addendum English.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Massive\Massive.lnk -> C:\Program Files\Native Instruments\Massive\Massive.exe (Native Instruments GmbH) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\DVI Previewer (Yap).lnk -> C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\yap.exe (MiKTeX.org) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\TeXworks.lnk -> C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\miktex-texworks.exe (TeX Users Group) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\Maintenance (Admin)\MiKTeX Package Manager (Admin).lnk -> C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\mpm_mfc_admin.exe (MiKTeX.org) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\Maintenance (Admin)\MiKTeX Settings (Admin).lnk -> C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\mo_admin.exe (MiKTeX.org) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\Maintenance\MiKTeX Package Manager.lnk -> C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\mpm_mfc.exe (MiKTeX.org) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\Maintenance\MiKTeX Settings.lnk -> C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\mo.exe (MiKTeX.org) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\Help\MiKTeX FAQ.lnk -> C:\Program Files (x86)\MiKTeX 2.9\doc\miktex\faq.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\Help\MiKTeX Manual.lnk -> C:\Program Files (x86)\MiKTeX 2.9\doc\miktex\miktex.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk -> C:\Program Files\Microsoft Silverlight\5.1.50428.0\Silverlight.Configuration.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in\Office Live Workspace.lnk -> C:\Windows\Installer\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}\ProductIcon () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in\Office Live-Add-In-Hilfe.lnk -> C:\Windows\Installer\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}\ProductShortcutIcon () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013-Tools\Office 2013 Upload Center.lnk -> C:\Program Files\Microsoft Office 15\root\office15\MSOUC.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013-Tools\Office 2013-Spracheinstellungen.lnk -> C:\Program Files\Microsoft Office 15\root\office15\SETLANG.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013-Tools\Skype for Business-Aufzeichnungs-Manager.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ocpubmgr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Outlook 2007.lnk -> C:\Windows\Installer\{90120000-0012-0000-0000-0000000FF1CE}\outicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Digitales Zertifikat für VBA-Projekte.lnk -> C:\Windows\Installer\{90120000-0012-0000-0000-0000000FF1CE}\misc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Clip Organizer.lnk -> C:\Windows\Installer\{90120000-0012-0000-0000-0000000FF1CE}\cagicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office 2007 Spracheinstellungen.lnk -> C:\Windows\Installer\{90120000-0012-0000-0000-0000000FF1CE}\misc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office Picture Manager.lnk -> C:\Windows\Installer\{90120000-0012-0000-0000-0000000FF1CE}\oisicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office-Diagnose.lnk -> C:\Windows\Installer\{90120000-0012-0000-0000-0000000FF1CE}\misc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware \Malwarebytes Anti-Malware entfernen.lnk -> C:\Program Files (x86)\ Malwarebytes Anti-Malware \unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware \ Malwarebytes Anti-Malware .lnk -> C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Malwarebytes) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware \Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\ Malwarebytes Anti-Malware \Chameleon\Windows\chameleon.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools\Energie-Manager.lnk -> C:\Program Files (x86)\ThinkPad\Utilities\PWMUI.EXE (Lenovo Group Limited) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools\GPS Enabler.lnk -> C:\Program Files (x86)\Lenovo\GPS Enabler\TvGpsApp.exe (Lenovo) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools\System Update.lnk -> C:\Program Files (x86)\Lenovo\System Update\tvsu.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LearnKey\MasterExam\LearnKey MasterExam.lnk -> C:\LearnKey\MasterExam\MasterExam.exe (LearnKey, Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Codec Tweak Tool.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Media Player Classic.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe (MPC-HC Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Uninstall\Uninstall K-Lite Codec Pack.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\GraphStudioNext (x64).lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\GraphStudioNext64.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\MediaInfo.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java-Editor\Java-Editor.lnk -> C:\Program Files (x86)\JavaEditor\javaeditor.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit\Java Mission Control.lnk -> C:\Program Files\Java\jdk1.8.0_92\bin\jmc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Java konfigurieren.lnk -> C:\Program Files\Java\jre1.8.0_92\bin\javacpl.exe (Oracle Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haskell Platform 7.10.2-a\GHC Documentation.lnk -> C:\Program Files\Haskell Platform\7.10.2-a\doc\html\index.html () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haskell Platform 7.10.2-a\GHC Flag Reference.lnk -> C:\Program Files\Haskell Platform\7.10.2-a\doc\html\users_guide\flag-reference.html () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haskell Platform 7.10.2-a\GHCi.lnk -> C:\Program Files\Haskell Platform\7.10.2-a\bin\ghci.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haskell Platform 7.10.2-a\Library Documentation.lnk -> C:\Program Files\Haskell Platform\7.10.2-a\lib\extralibs\doc\frames.html () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haskell Platform 7.10.2-a\WinGHCi.lnk -> C:\Program Files\Haskell Platform\7.10.2-a\winghci\winghci.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Alarm Clock\Free Alarm Clock entfernen.lnk -> C:\Program Files (x86)\FreeAlarmClock\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Alarm Clock\Free Alarm Clock im Internet.lnk -> C:\Program Files (x86)\FreeAlarmClock\FreeAlarmClock.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Alarm Clock\Free Alarm Clock.lnk -> C:\Program Files (x86)\FreeAlarmClock\FreeAlarmClock.exe (Comfort Software Group) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla Server\FileZilla Server Interface.lnk -> C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe (FileZilla Project) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla Server\Uninstall.lnk -> C:\Program Files (x86)\FileZilla Server\Uninstall.exe (FileZilla Project) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client\FileZilla.lnk -> C:\Program Files (x86)\FileZilla FTP Client\filezilla.exe (FileZilla Project) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client\Uninstall.lnk -> C:\Program Files (x86)\FileZilla FTP Client\uninstall.exe (Tim Kosse) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emu8086\documentation.lnk -> C:\emu8086\documentation\index.html () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emu8086\emu8086.lnk -> C:\emu8086\emu8086.exe (www.emu8086.com) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emu8086\read me.lnk -> C:\emu8086\ReadMe.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emu8086\uninstall.lnk -> C:\emu8086\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emu8086\what's new.lnk -> C:\emu8086\version.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery\Proactive Password Auditor.lnk -> C:\Program Files (x86)\Elcomsoft Password Recovery\Proactive Password Auditor\PPA.exe (ElcomSoft Co. Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery\Documentation\Advanced Archive Password Recovery Help.lnk -> C:\Program Files (x86)\Elcomsoft Password Recovery\Advanced Archive Password Recovery\ARCHPR.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery\Documentation\License Agreement.lnk -> C:\Program Files (x86)\Elcomsoft Password Recovery\License.rtf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery\Documentation\Proactive Password Auditor Help.lnk -> C:\Program Files (x86)\Elcomsoft Password Recovery\Proactive Password Auditor\PPA.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\DOSBox 0.74 Manual.lnk -> C:\Program Files (x86)\DOSBox-0.74\Documentation\README.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\Extras\Uninstall.lnk -> C:\Program Files (x86)\DOSBox-0.74\uninstall.exe (DOSBox Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\Extras\Video\Video instructions.lnk -> C:\Program Files (x86)\DOSBox-0.74\Video Codec\Video Instructions.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOS Games\Die Siedler.lnk -> C:\Spiele\Die Siedler\dosbox.exe (DOSBox Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOS Games\Deinstallieren\Die Siedler Deinstallieren.lnk -> C:\Spiele\Die Siedler\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digitale Bibliothek 5\Digitale Bibliothek 5.lnk -> C:\Program Files (x86)\Digitale Bibliothek 5\Digibib5.exe (Directmedia Publishing GmbH, Brasov, Rumänien) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digitale Bibliothek 5\Handbuch Digitale Bibliothek 4.lnk -> C:\Program Files (x86)\Digitale Bibliothek 5\Digibib4.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digitale Bibliothek 5\Handbuch Digitale Bibliothek 5.lnk -> C:\Program Files (x86)\Digitale Bibliothek 5\Digibib5.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo - Hellfire\Diablo - Hellfire.lnk -> C:\Program Files (x86)\Diablo - Hellfire\hellfire.exe (Synergistic Software) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo - Hellfire\Uninstall Diablo - Hellfire.lnk -> C:\Program Files (x86)\Diablo - Hellfire\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo\Diablo.lnk -> C:\Spiele\Diablo\diablo.exe (Blizzard Entertainment) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo\Readme.lnk -> C:\Spiele\Diablo\readme.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo\Uninstall.lnk -> C:\Windows\diabunin.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco\Cisco AnyConnect Secure Mobility Client\Cisco AnyConnect Secure Mobility Client.lnk -> C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (Cisco Systems, Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management\E-book viewer 64bit.lnk -> C:\Program Files\Calibre2\ebook-viewer.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management\Edit E-book 64bit.lnk -> C:\Program Files\Calibre2\ebook-edit.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management\LRF viewer 64bit.lnk -> C:\Program Files\Calibre2\lrfviewer.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Bluetooth File Transfer Wizard.lnk -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\NetworkProjection.lnk -> C:\Windows\System32\NetProj.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\Windowspowershell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip Help.lnk -> C:\Program Files\7-Zip\7-zip.chm () Shortcut: C:\ProgramData\Intel.sav\ExtremeGraphics\CUI\Resource\Intel® HD-Grafik.lnk -> C:\Windows\System32\GfxUI.exe (Intel Corporation) Shortcut: C:\ProgramData\Intel\ExtremeGraphics\CUI\Resource\Intel® HD-Grafik.lnk -> C:\Windows\System32\GfxUI.exe (Intel Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Public\Desktop\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd) Shortcut: C:\Users\T510a\Links\Creative Cloud Files.lnk -> C:\Users\T510a\Creative Cloud Files () Shortcut: C:\Users\T510a\Links\Desktop.lnk -> C:\Users\T510a\Desktop () Shortcut: C:\Users\T510a\Links\Downloads.lnk -> C:\Users\T510a\Downloads () Shortcut: C:\Users\T510a\Links\RecentPlaces.lnk -> LáÃäÂèç©*âã¡äë�ê¹é¦¼Ä êzå±åï°ë¥ä¯áï¥æéºê³«1 á¼áå¨çæ°æçç¨çâææççææ*çâ´Ð SystemordnerÂå±å檦⡣é½áíµì�íeá¼â¤ã¨ã¨ç¬ããã*ããäãäâ´ããäãâ´ãããäâ´ã¤ãäãâ´ääääãäääääã¤ã¤ç´ (Keine Datei) Shortcut: C:\Users\T510a\Desktop\jvisualvm.exe - Verknüpfung.lnk -> C:\Program Files\Java\jdk1.6.0_45\bin\jvisualvm.exe (Oracle Corporation) Shortcut: C:\Users\T510a\Desktop\Skype for Business 2015.lnk -> C:\Program Files\Microsoft Office 15\root\office15\lync.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\Creative Cloud Files\RecentPlaces.lnk -> LáÃäÂèç©*âã¡äë�ê¹é¦¼Ä êzå±åï°ë¥ä¯áï¥æéºê³«1 á¼áå¨çæ°æçç¨çâææççææ*çâ´Ð SystemordnerÂå±å檦⡣é½áíµì�íeá¼â¤ã¨ã¨ç¬ããã*ããäãäâ´ããäãâ´ãããäâ´ã¤ãäãâ´ääääãäääääã¤ã¤ç´ (Keine Datei) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\MinGW Installation Manager.lnk -> C:\MinGW\libexec\mingw-get\guimain.exe (MinGW.org Project) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Benutzerhandbuch für die Konsolenversion von RAR.lnk -> C:\Programme\WinRAR\Rar.txt () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Hilfe zu WinRAR.lnk -> C:\Programme\WinRAR\WinRAR.chm () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Was ist neu in dieser Version.lnk -> C:\Programme\WinRAR\WhatsNew.txt () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Programme\WinRAR\WinRAR.exe (Alexander Roshal) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinISO\WinISO Web Site.lnk -> C:\Program Files (x86)\WinISO Computing\WinISO\website.url () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.5\Python 3.5 Manuals (64-bit).lnk -> C:\Users\T510a\AppData\Local\Programs\Python\Python35\Doc\python351.chm () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Diabloâ¢.lnk -> 0x4C0000000114020000000000C0000000000000468500000000000000000000000000000000000000000000000000000000000000000000000000000001000000000000000000000000000000360014001F80DF8F22EDA89E704883B196B02CFE0D5220000000474653496022D7B7BA1EDC4D8DB6385432BCAF1800000000000000000000070044006900610062006C006F00222128000000090000A01C00000031535053E28A5846BC4C3843BBFC139326986DCE000000000000000000000000 (Keine Datei) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything\Everything deinstallieren.lnk -> C:\Program Files\Everything\Uninstall.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eclipse\Eclipse Jee Mars.lnk -> C:\Users\T510a\eclipse\jee-mars\eclipse\eclipse.exe (Keine Datei) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CB Share Config.lnk -> C:\Program Files (x86)\CodeBlocks\cb_share_config.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Code Snippets.lnk -> C:\Program Files (x86)\CodeBlocks\codesnippets.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Uninstall CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\uninstall.exe (The Code::Blocks Team) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Tor (Vidalia).lnk -> C:\Users\T510a\AppData\Local\BlackBeltPrivacy\Runtimes\BlackBeltPrivacyVidalia.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\VoIP Call.lnk -> C:\Users\T510a\AppData\Local\BlackBeltPrivacy\MicroSip\BlackBeltPrivacyMicroSip.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\WASTE.lnk -> C:\Users\T510a\AppData\Local\BlackBeltPrivacy\DarkNet\BlackBeltPrivacyWASTE.exe (GNU) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Uninstall\Remove BlackBelt Privacy.lnk -> C:\Users\T510a\AppData\Local\BlackBeltPrivacy\unins000.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Documentation\Change Log.lnk -> C:\Users\T510a\AppData\Local\BlackBeltPrivacy\Docs\changeLog.pdf () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Documentation\Read Me First !.lnk -> C:\Users\T510a\AppData\Local\BlackBeltPrivacy\Docs\readme.pdf () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apache Friends\XAMPP\Uninstall.lnk -> C:\xampp\Uninstall.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apache Friends\XAMPP\XAMPP Control Panel.lnk -> C:\xampp\xampp-control.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apache Friends\XAMPP\XAMPP httpdoc folder.lnk -> C:\xampp\htdocs () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\SendTo\EmEditor.lnk -> C:\Program Files\EmEditor\EmEditor.exe (Emurasoft, Inc.) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\SendTo\emu8086.lnk -> C:\emu8086\emu8086.exe (www.emu8086.com) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\age2_x1.exe - Verknüpfung.lnk -> C:\Spiele\Age of Empires II\Age of Empires II\Age2_x1\age2_x1.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\BS5.exe - Verknüpfung.lnk -> C:\Spiele\Baphomets Fluch - Complete German Edition\Baphomets Fluch 5 - Der Sündenfall\BS5.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Diablo - Hellfire.lnk -> C:\Program Files (x86)\Diablo - Hellfire\hellfire.exe (Synergistic Software) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\diablo.exe - Verknüpfung.lnk -> C:\Spiele\Diablo\diablo.exe (Blizzard Entertainment) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Die Siedler IV Platin Edition.exe - Verknüpfung.lnk -> C:\Users\T510a\Downloads\Die Siedler IV Portable\Die Siedler IV Platin Edition.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Die Siedler.lnk -> C:\Spiele\Die Siedler\dosbox.exe (DOSBox Team) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\empires2.exe - Verknüpfung.lnk -> C:\Spiele\Age of Empires II\Age of Empires II\empires2.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\gta2 manager.exe - Verknüpfung.lnk -> C:\Spiele\GTA2\gta2 manager.exe (DMA Design Ltd) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\gta2.exe - Verknüpfung.lnk -> C:\Spiele\GTA2\gta2.exe (Rockstar North) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Punch Club.lnk -> C:\Spiele\Punch Club\Punch Club.exe () Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\StarCraft.exe - Verknüpfung.lnk -> C:\Spiele\StarCraft Gold Edition\StarCraft.exe (Blizzard Entertainment) Shortcut: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{B7D72260-1EBA-4DDC-8DB6-385432BCAF18}\SupportTasks\0\Support.lnk -> hxxp://www.blizzard.com/ (Keine Datei) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{B7D72260-1EBA-4DDC-8DB6-385432BCAF18}\PlayTasks\0\Spielen.lnk -> C:\Spiele\Diablo\diablo.exe (Blizzard Entertainment) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{8B051021-9524-4F27-B189-A00A8CD2FBBE}\SupportTasks\0\Weitere Spiele von Microsoft.lnk -> hxxp://www.blizzard.com/star/star.htm/ (Keine Datei) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{8B051021-9524-4F27-B189-A00A8CD2FBBE}\PlayTasks\0\Spielen.lnk -> C:\Spiele\StarCraft Gold Edition\StarCraft.exe (Blizzard Entertainment) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{6ADF8D6F-A0F1-4D01-B359-710F015CFBE6}\SupportTasks\1\Support.lnk -> hxxp://support.microsoft.com/directory/ (Keine Datei) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{6ADF8D6F-A0F1-4D01-B359-710F015CFBE6}\SupportTasks\0\Weitere Spiele von Microsoft.lnk -> hxxp://www.ensemblestudios.com/aoeiix/index.shtml/ (Keine Datei) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{6ADF8D6F-A0F1-4D01-B359-710F015CFBE6}\PlayTasks\0\Spielen.lnk -> C:\Spiele\Age of Empires II\Age of Empires II\Age2_x1\age2_x1.exe (Microsoft Corporation) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{69A13EC9-D554-4BDD-A45C-AC7EB6275C71}\SupportTasks\1\Support.lnk -> hxxp://support.microsoft.com/directory/ (Keine Datei) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{69A13EC9-D554-4BDD-A45C-AC7EB6275C71}\SupportTasks\0\Weitere Spiele von Microsoft.lnk -> hxxp://www.microsoft.com/games/age2/ (Keine Datei) Shortcut: C:\Users\T510a\AppData\Local\Microsoft\Windows\GameExplorer\{69A13EC9-D554-4BDD-A45C-AC7EB6275C71}\PlayTasks\0\Spielen.lnk -> C:\Spiele\Age of Empires II\Age of Empires II\empires2.exe (Microsoft Corporation) ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack\copying.lnk -> C:\Windows\notepad.exe (Microsoft Corporation) -> C:\Program Files\WinHTTrack\copying ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack\greetings.txt.lnk -> C:\Windows\notepad.exe (Microsoft Corporation) -> C:\Program Files\WinHTTrack\greetings.txt ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack\history.txt.lnk -> C:\Windows\notepad.exe (Microsoft Corporation) -> C:\Program Files\WinHTTrack\history.txt ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack\license.txt.lnk -> C:\Windows\notepad.exe (Microsoft Corporation) -> C:\Program Files\WinHTTrack\license.txt ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack\readme.lnk -> C:\Windows\notepad.exe (Microsoft Corporation) -> C:\Program Files\WinHTTrack\readme ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAce\WinAce deinstallieren.lnk -> C:\Program Files (x86)\WinAce\sxuninst.exe (e-merge GmbH) -> C:\Program Files (x86)\WinAce\SXUNINST.INI ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAce\WinAce Sprache wechseln.lnk -> C:\Program Files (x86)\WinAce\winace.exe (e-merge GmbH) -> PL ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk -> C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN) -> -Iskins ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK\Deinstallation - TP-LINK TL-WN8200ND Treiber.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{FDA7E907-6539-42C1-9721-0239C281B336}\setup.exe (Macrovision Corporation) -> -runfromtemp -removeonly DriverOnly ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK\Deinstallation - TP-LINK-Konfigurationstool.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{319D91C6-3D44-436C-9F79-36C0D22372DC}\setup.exe (Macrovision Corporation) -> -runfromtemp -removeonly ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Registration-Activation.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware) -> /register ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK-Konfigurationstool.lnk -> C:\Program Files (x86)\TP-LINK\TP-LINK-Konfigurationstool\TWCU.exe () -> -nogui ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7\IDLE (Python GUI).lnk -> C:\Windows\Installer\{16E52445-1392-469F-9ADB-FC03AF00CD62}\python_icon.exe () -> "C:\Python27\Lib\idlelib\idle.pyw" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7\Module Docs.lnk -> C:\Windows\Installer\{16E52445-1392-469F-9ADB-FC03AF00CD62}\python_icon.exe () -> "C:\Python27\Tools\scripts\pydocgui.pyw" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7\Uninstall Python.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x{16E52445-1392-469F-9ADB-FC03AF00CD62} ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\Maintenance (Admin)\MiKTeX Update (Admin).lnk -> C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\internal\copystart_admin.exe () -> "C:\Program Files (x86)\MiKTeX 2.9\miktex/bin/internal\miktex-update_admin.exe" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\Maintenance\MiKTeX Update.lnk -> C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\internal\copystart.exe () -> "C:\Program Files (x86)\MiKTeX 2.9\miktex/bin/internal\miktex-update.exe" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LearnKey\Uninstall\Uninstall LearnKey MasterExam.lnk -> C:\Windows\LkMEUninst.exe (LearnKey, Inc.) -> -u masterexam.ini ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\DirectVobSub.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\DirectVobSub64\vsfilter.dll",DirectVobSub ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow audio decoder (x64).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow64\ffdshow.ax",configureAudio ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow video decoder (x64).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow64\ffdshow.ax",configure ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Audio.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavaudio.ax",OpenConfiguration ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Splitter.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavsplitter.ax",OpenConfiguration ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Video.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavvideo.ax",OpenConfiguration ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\madVR.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Filters\madVR\madHcCtrl.exe (madshi.net) -> editLocalSettingsDontWait ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Auf Updates prüfen.lnk -> C:\Program Files\Java\jre1.8.0_92\bin\javacpl.exe (Oracle Corporation) -> -tab update ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Info zu Java.lnk -> C:\Program Files\Java\jre1.8.0_92\bin\javacpl.exe (Oracle Corporation) -> -tab about ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla Server\Start FileZilla Server.lnk -> C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe (FileZilla Project) -> /start ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla Server\Stop FileZilla Server.lnk -> C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe (FileZilla Project) -> /stop ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery\Uninstall\Advanced Archive Password Recovery.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /i {01011662-76A8-41E8-B1A8-4F8821570AC5} ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery\Uninstall\Proactive Password Auditor.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /i {A903E167-3258-47D5-AE83-798FBB342F92} ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\Options\DOSBox 0.74 Options.lnk -> C:\Program Files (x86)\DOSBox-0.74\DOSBox.exe (DOSBox Team) -> -editconf notepad.exe -editconf "%SystemRoot%\system32\notepad.exe" -editconf "%WINDIR%\notepad.exe" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\Options\Reset KeyMapper.lnk -> C:\Program Files (x86)\DOSBox-0.74\DOSBox.exe (DOSBox Team) -> -erasemapper ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\Options\Reset Options.lnk -> C:\Program Files (x86)\DOSBox-0.74\DOSBox.exe (DOSBox Team) -> -eraseconf ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\Extras\DOSBox 0.74 (noconsole).lnk -> C:\Program Files (x86)\DOSBox-0.74\DOSBox.exe (DOSBox Team) -> -noconsole -userconf ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\Extras\Screenshots & Recordings.lnk -> C:\Program Files (x86)\DOSBox-0.74\DOSBox.exe (DOSBox Team) -> -opencaptures explorer.exe ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74\Extras\Video\Install movie codec.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> setupapi,InstallHinfSection DefaultInstall 128 C:\Program Files (x86)\DOSBox-0.74\Video Codec\zmbv.inf ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter ShortcutWithArgument: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.5\Python 3.5 Module Docs (64-bit).lnk -> C:\Users\T510a\AppData\Local\Programs\Python\Python35\python.exe (Python Software Foundation) -> -m pydoc -b ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender\Uninstall Blender.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {D593042C-8739-488D-93B8-E6B202013E57} ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Tor Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\T510a\AppData\Local\BlackBeltPrivacy\Runtimes\BlackBeltPrivacyTor.exe" --help&echo # &echo # Examples: &echo # Type: BlackBeltPrivacyTor --help&&echo # Type: BlackBeltPrivacyTor --hash-password "yourpassword" &echo #" ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Unlock Firefox Profile.lnk -> C:\Windows\System32\taskkill.exe (Microsoft Corporation) -> /F /IM "firefox.exe" ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> -extoff ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto: ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\SendTo\WinAce Archiver.lnk -> C:\Program Files (x86)\WinAce\winace.exe (e-merge GmbH) -> a ? ShortcutWithArgument: C:\Users\T510a\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5d696d521de238c3\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --disable-quic InternetURL: C:\Users\Administrator\Favorites\Links\Vorgeschlagene Sites.url -> URL: hxxps://ieonline.microsoft.com/#ieslice InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RapidTyping 5\Program site.url -> URL: hxxp://www.rapidtyping.com/en InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\MiKTeX on the Web\Give back.url -> URL: hxxp://miktex.org/giveback InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\MiKTeX on the Web\Known Issues.url -> URL: hxxp://miktex.org/2.9/issues InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\MiKTeX on the Web\MiKTeX Project Page.url -> URL: hxxp://miktex.org/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9\MiKTeX on the Web\MiKTeX Support.url -> URL: hxxp://miktex.org/support InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Help\Online Codec Help.url -> URL: hxxp://www.codecguide.com/help.htm InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit\Referenzdokumentation.url -> URL: hxxp://docs.oracle.com/javase/8/docs InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Besuchen Sie Java.com.url -> URL: hxxp://java.com/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Hilfe aufrufen.url -> URL: hxxp://java.com/help InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haskell Platform 7.10.2-a\HackageDB - Haskell Software Repository.url -> URL: hxxp://hackage.haskell.org InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery\Documentation\ElcomSoft on the Web.url -> URL: hxxp://www.elcomsoft.com InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo - Hellfire\Diablo - Hellfire on the Web.url -> URL: hxxp://www.segabandonware.com/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> URL: hxxp://www.piriform.com/ccleaner InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management\Get Involved.url -> URL: hxxp://calibre-ebook.com/get-involved InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management\User Manual.url -> URL: hxxp://manual.calibre-ebook.com/ InternetURL: C:\Users\T510a\Favorites\The NeoSmart Files.url -> URL: hxxp://neosmart.net/blog/feed/ InternetURL: C:\Users\T510a\Favorites\Windows Live\Windows Live Gallery.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=70742 InternetURL: C:\Users\T510a\Favorites\Windows Live\Windows Live Ideas.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72700 InternetURL: C:\Users\T510a\Favorites\Windows Live\Windows Live Mail.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72681 InternetURL: C:\Users\T510a\Favorites\Windows Live\Windows Live Spaces.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72682 InternetURL: C:\Users\T510a\Favorites\MSN-Websites\MSN Auto.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72680 InternetURL: C:\Users\T510a\Favorites\MSN-Websites\MSN Fernsehen.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72659 InternetURL: C:\Users\T510a\Favorites\MSN-Websites\MSN Money.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72640 InternetURL: C:\Users\T510a\Favorites\MSN-Websites\MSN Nachrichten.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72636 InternetURL: C:\Users\T510a\Favorites\MSN-Websites\MSN Sport.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72635 InternetURL: C:\Users\T510a\Favorites\MSN-Websites\MSN.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72630 InternetURL: C:\Users\T510a\Favorites\Microsoft-Websites\IE-Site auf Microsoft.com.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72186 InternetURL: C:\Users\T510a\Favorites\Microsoft-Websites\Microsoft Deutschland GmbH.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72520 InternetURL: C:\Users\T510a\Favorites\Microsoft-Websites\Microsoft Store.url -> URL: hxxp://go.microsoft.com/fwlink/?linkid=140813 InternetURL: C:\Users\T510a\Favorites\Microsoft-Websites\Microsoft Windows - Start.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72629 InternetURL: C:\Users\T510a\Favorites\Microsoft-Websites\Microsoft zu Hause.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72406 InternetURL: C:\Users\T510a\Favorites\Microsoft-Websites\Microsoft.com durchsuchen.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=72893 InternetURL: C:\Users\T510a\Favorites\Microsoft-Websites\Site für IE Add-Ons.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=50893 InternetURL: C:\Users\T510a\Favorites\Links\Web Slice-Katalog.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=121315 InternetURL: C:\Users\T510a\Desktop\Vangelis - 1492 Conquest Of Paradise (1992)\Covers\Visit My Website! Best Music in Lossless-Ape-Flac-Wav.url -> URL: hxxp://lossless24.pl/ InternetURL: C:\Users\T510a\Desktop\Programmieren\PHP, HTML, Flash, Batch\SELFHTML 8.1.2\html\verweise\anzeige\buch.url -> URL: hxxp://aktuell.de.selfhtml.org/extras/buch.htm InternetURL: C:\Users\T510a\Desktop\ComCave\CC-Portal ..URL -> URL: hxxps://portal.cc-student.com/ InternetURL: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Project News.url -> URL: hxxp://sourceforge.net/p/blackbeltpriv/news/?source=navbar InternetURL: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Update 6.2016.01.2\Beta.url -> URL: hxxps://sourceforge.net/projects/blackbeltpriv/files/beta/ InternetURL: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Update 6.2016.01.2\Stable (MajorGeeks).url -> URL: hxxp://www.majorgeeks.com/BlackBeltPrivacy_TorWASTE_d7658.html InternetURL: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Update 6.2016.01.2\Stable.url -> URL: hxxps://sourceforge.net/projects/blackbeltpriv/files/stable/ InternetURL: C:\Users\T510a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlackBelt Privacy\Documentation\Online Help.url -> URL: hxxp://sourceforge.net/projects/blackbeltpriv/files/docs/ ==================== Ende von Shortcut.txt ============================= |
14.07.2016, 13:20 | #17 |
/// Winkelfunktion /// TB-Süch-Tiger™ | puo.Optional.youndoo läst sich nicht entfernen FRST-Fix
__________________Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft! Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM-x32\...\Run: [] => [X] HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [ZoneAlarm Windows 10 Upgrader] => "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay HKU\S-1-5-18\...\Run: [ZoneAlarm Windows 10 Upgrader] => "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay ShellExecuteHooks: - {6710C780-E20E-4C49-A87D-321850ED3D7C} - Keine Datei [ ] ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Keine Datei HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-2303069943-3088590432-2005193176-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-2303069943-3088590432-2005193176-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= U3 afhgl287; C:\Windows\System32\Drivers\afhgl287.sys [0 ] (Intel Corporation) <==== ACHTUNG (Null Byte Datei/Ordner) Task: {F253DA01-D63C-49A2-AC20-74173882FD69} - \{0E0E7A47-7A0B-7E0A-7A11-0979050A117D} -> Keine Datei <==== ACHTUNG S1 btqlafon; \??\C:\Windows\system32\drivers\btqlafon.sys [X] C:\ProgramData\CheckPoint C:\Windows\System32\Drivers\afhgl287.sys C:\Windows\system32\drivers\btqlafon.sys C:\Program Files (x86)\{516D9F5A-D8E3-485A-838A-AE688ED07E5C} C:\Users\T510a\AppData\Local\levispmenoycazuk C:\Windows\System32\Tasks\{005D3982-7634-4116-B342-FDC17EDC865B} C:\Windows\bfe712c0621c73c0632b6ed11549e0b6.exe hosts: emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ |
14.07.2016, 14:28 | #18 |
| puo.Optional.youndoo läst sich nicht entfernenCode:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 13-07-2016 02 durchgeführt von T510a (2016-07-14 15:24:20) Run:1 Gestartet von C:\Users\T510a\Downloads Geladene Profile: T510a (Verfügbare Profile: T510a & Administrator) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** HKLM-x32\...\Run: [] => [X] HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [ZoneAlarm Windows 10 Upgrader] => "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay HKU\S-1-5-18\...\Run: [ZoneAlarm Windows 10 Upgrader] => "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay ShellExecuteHooks: - {6710C780-E20E-4C49-A87D-321850ED3D7C} - Keine Datei [ ] ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Keine Datei HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-2303069943-3088590432-2005193176-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-2303069943-3088590432-2005193176-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= U3 afhgl287; C:\Windows\System32\Drivers\afhgl287.sys [0 ] (Intel Corporation) <==== ACHTUNG (Null Byte Datei/Ordner) Task: {F253DA01-D63C-49A2-AC20-74173882FD69} - \{0E0E7A47-7A0B-7E0A-7A11-0979050A117D} -> Keine Datei <==== ACHTUNG S1 btqlafon; \??\C:\Windows\system32\drivers\btqlafon.sys [X] C:\ProgramData\CheckPoint C:\Windows\System32\Drivers\afhgl287.sys C:\Windows\system32\drivers\btqlafon.sys C:\Program Files (x86)\{516D9F5A-D8E3-485A-838A-AE688ED07E5C} C:\Users\T510a\AppData\Local\levispmenoycazuk C:\Windows\System32\Tasks\{005D3982-7634-4116-B342-FDC17EDC865B} C:\Windows\bfe712c0621c73c0632b6ed11549e0b6.exe hosts: emptytemp: ***************** HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Wert erfolgreich entfernt HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run\\ZoneAlarm Windows 10 Upgrader => Wert nicht gefunden. HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\ZoneAlarm Windows 10 Upgrader => Wert erfolgreich entfernt HKLM\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{6710C780-E20E-4C49-A87D-321850ED3D7C} => Wert erfolgreich entfernt HKCR\CLSID\{6710C780-E20E-4C49-A87D-321850ED3D7C} => Schlüssel nicht gefunden. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => Schlüssel erfolgreich entfernt HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => Schlüssel nicht gefunden. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wert erfolgreich wiederhergestellt HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Wert erfolgreich wiederhergestellt HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wert erfolgreich wiederhergestellt HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wert erfolgreich wiederhergestellt HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wert erfolgreich wiederhergestellt HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wert erfolgreich wiederhergestellt HKU\S-1-5-21-2303069943-3088590432-2005193176-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Fehler beim Setzen des Wertes HKU\S-1-5-21-2303069943-3088590432-2005193176-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Fehler beim Setzen des Wertes afhgl287 => Dienst erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F253DA01-D63C-49A2-AC20-74173882FD69}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F253DA01-D63C-49A2-AC20-74173882FD69}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{0E0E7A47-7A0B-7E0A-7A11-0979050A117D}" => Schlüssel erfolgreich entfernt btqlafon => Dienst erfolgreich entfernt C:\ProgramData\CheckPoint => erfolgreich verschoben Konnte nicht verschoben werden "C:\Windows\System32\Drivers\afhgl287.sys" => ist geplant bei Neustart verschoben zu werden. "C:\Windows\system32\drivers\btqlafon.sys" => nicht gefunden. C:\Program Files (x86)\{516D9F5A-D8E3-485A-838A-AE688ED07E5C} => erfolgreich verschoben C:\Users\T510a\AppData\Local\levispmenoycazuk => erfolgreich verschoben C:\Windows\System32\Tasks\{005D3982-7634-4116-B342-FDC17EDC865B} => erfolgreich verschoben C:\Windows\bfe712c0621c73c0632b6ed11549e0b6.exe => erfolgreich verschoben C:\Windows\System32\Drivers\etc\hosts => erfolgreich verschoben Hosts erfolgreich wiederhergestellt. =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 9931383 B Java, Flash, Steam htmlcache => 2074 B Windows/system/drivers => 993377 B Edge => 0 B Chrome => 184320 B Firefox => 245349523 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 4265 B Public => 0 B ProgramData => 0 B systemprofile => 33186 B systemprofile32 => 1167075 B LocalService => 0 B NetworkService => 19407878 B T510a => 4523631 B Administrator => 102484 B RecycleBin => 0 B EmptyTemp: => 276.6 MB temporäre Dateien entfernt. ================================ Ergebnis der geplanten Datei-Verschiebungen (Start-Modus: Normal) (Datum&Uhrzeit: 2016-07-14 15:26:27) C:\Windows\System32\Drivers\afhgl287.sys => ist erfolgreich verschoben ==== Ende von Fixlog 15:26:27 ==== |
14.07.2016, 14:51 | #19 |
/// Winkelfunktion /// TB-Süch-Tiger™ | puo.Optional.youndoo läst sich nicht entfernen Okay, dann Kontrollscans mit (1) MBAM, (2) ESET und (3) SecurityCheck bitte: 1. Schritt: MBAM Downloade Dir bitte Malwarebytes Anti-Malware
2. Schritt: ESET ESET Online Scanner
3. Schritt: SecurityCheck Downloade Dir bitte SecurityCheck und:
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu puo.Optional.youndoo läst sich nicht entfernen |
antwort, browser, bösartiger, downloadlinks, entferne, entfernen, erneut, funktionieren, funktionieren nicht, geholfen, glaube, hilfreiche, hoffe, manipuliert, melde, meldet, scan, scanner, software, superantispyware, taucht, vermutung, weiterhelfen, win, windows |