|
Plagegeister aller Art und deren Bekämpfung: Windows 7 Rechner ist sehr langsamWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
25.11.2016, 22:06 | #1 |
| Windows 7 Rechner ist sehr langsam Hallo Forum, mein Laptop mit Windows 7 ist seit einiger Zeit sehr langsam. Das Hochlaufen dauert deutlich länger, Programme starten sehr langsam und teilweise ist auch die Eingabe über die Tastatur verlangsamt. Im Ressourcenmanager habe ich gesehen, das svchost.exe (netsvcs) lastet die CPU zu 25% aus und belegt auch viel Arbeitsspeicher. Ein Virenscan mit Avira Antivir hat kein Ergebnis gebracht. Könnt ihr mir helfen? Vielen Dank! |
25.11.2016, 22:34 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 Rechner ist sehr langsam Hallo und
__________________+++ WICHTIGER HINWEIS +++ Während der Analyse und Bereinigung nimmst du KEINERLEI Änderungen auf eigene Faust vor, d.h. du installierst oder deinstallierst keine Software ohne Absprache. Auch veränderst du keine Systemeinstellungen, solange wir deinen Fall bearbeiten. Änderungen, Installationen oder Deinstallationen machst du AUSSCHLIESSLICH nur auf Anweisung! Es wird erforderlich sein, deinen Virenscanner zu deaktivieren und in bestimmten Fällen auch zu deinstallieren, damit vernünftig bereinigt werden kann. Dein System ist daher erst wenn wir hier fertig sind wieder für den alltäglichen Gebrauch wie surfen oder mailen von mir freigegeben. Gelesen und verstanden? Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
25.11.2016, 22:57 | #3 |
| Windows 7 Rechner ist sehr langsam Hallo cosinus, viele Dank schon einmal für die Hilfe.
__________________Weitere Scans habe ich nicht, hier die Logs von FRST: FRST.txt: FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 23-11-2016 durchgeführt von Christian (Administrator) auf TRAVELMATE (25-11-2016 22:48:23) Gestartet von C:\Users\Christian\Downloads Geladene Profile: Christian (Verfügbare Profile: Christian) Platform: Windows 7 Professional Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Egis Technology Inc. ) C:\Program Files\Common Files\EgisTec\Services\EgisTicketService.exe (Egis Technology Inc. ) C:\Program Files\Acer ProShield\x86\EgisService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe () C:\Program Files\Acer ProShield\EMBASSY Client Core\EmbassyServer.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (SafeNet Inc.) C:\Windows\System32\hasplms.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.KNXETS4\MSSQL\Binn\sqlservr.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe () C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe () C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe () C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe (Wave Systems Corp.) C:\Program Files\Acer ProShield\Authentication Manager\WaveAMService.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (STMicroelectronics) C:\Program Files (x86)\ST Microelectronics\ST_ACCEL\FFP_Token.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\UI\IntelSmallBusinessAdvantage.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (InterVideo) C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\perfmon.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [563840 2011-12-02] (Conexant Systems, Inc.) HKLM\...\Run: [BLEServicesCtrl] => C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [178960 2012-03-15] (Intel Corporation) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2868496 2012-01-13] (Synaptics Incorporated) HKLM\...\Run: [Acer MotionProtect Tray Application] => C:\Program Files (x86)\ST Microelectronics\ST_ACCEL\FFP_Token.exe [211608 2012-05-25] (STMicroelectronics) HKLM\...\Run: [Power Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1829768 2012-02-07] (Acer Incorporated) HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2779024 2011-04-07] (CANON INC.) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133400 2012-03-07] (Intel Corporation) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [IntelSBA] => C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\UI\IntelSmallBusinessAdvantage.exe [4243168 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1111632 2012-04-18] (Dritek System Inc.) HKLM-x32\...\Run: [CanonSolutionMenuEx] => C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1611160 2011-03-28] (CANON INC.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452016 2011-01-15] (CANON INC.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [916072 2016-11-02] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-11-15] (Avira Operations GmbH & Co. KG) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\...\MountPoints2: E - E:\AutoRun.exe HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\...\MountPoints2: {a36d0a8f-b3c7-11e2-940d-206a8a91b67f} - E:\AutoRun.exe HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\...\MountPoints2: {a36d0a9b-b3c7-11e2-940d-206a8a91b67f} - E:\AutoRun.exe HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\...\MountPoints2: {e1665c83-ee4b-11e2-bbce-806e6f6e6963} - E:\AutoRun.exe HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\...\MountPoints2: {e1665c9e-ee4b-11e2-bbce-000000e90300} - E:\AutoRun.exe HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Corporation) Lsa: [Authentication Packages] msv1_0 wvauth Lsa: [Notification Packages] scecli EgisPwdFilter EgisDSPwdFilter ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-09-27] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-09-27] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-09-27] (Microsoft Corporation) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll Keine Datei ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll Keine Datei ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll Keine Datei ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll Keine Datei ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2014-01-03] ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2016-05-17] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2 Tcpip\..\Interfaces\{9E6FAAC8-F0A9-4256-BA85-C8E4F028C112}: [DhcpNameServer] 192.168.0.1 192.168.0.2 Tcpip\..\Interfaces\{D078E083-0AFB-4172-AA46-D53B8E7FAEC4}: [DhcpNameServer] 192.168.0.1 192.168.0.2 Internet Explorer: ================== HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.de HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2014-07-30] (RealDownloader) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-10-11] (Microsoft Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-09-20] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-09-27] (Microsoft Corporation) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2014-07-30] (RealDownloader) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2016-07-26] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-01-17] (Oracle Corporation) BHO-x32: EgisPBIE Sign-in Helper -> {7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9} -> C:\Program Files\Acer ProShield\x86\EgisPBIE.dll [2012-02-02] (Egis Technology Inc.) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\URLREDIR.DLL [2016-09-20] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2016-09-27] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-01-17] (Oracle Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\t9gwkpwz.default [2016-11-25] FF SearchEngineOrder.3: Mozilla\Firefox\Profiles\t9gwkpwz.default -> Bing FF Homepage: Mozilla\Firefox\Profiles\t9gwkpwz.default -> about:home FF Extension: (Avira Browser Safety) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\t9gwkpwz.default\Extensions\abs@avira.com.xpi [2016-11-25] FF Extension: (NoScript) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\t9gwkpwz.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-11-25] FF Extension: (WOT) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\t9gwkpwz.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-12-11] FF Extension: (Adblock Edge) - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\t9gwkpwz.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2016-04-27] FF SearchPlugin: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\t9gwkpwz.default\searchplugins\google-auf-gut-glck.xml [2015-09-02] FF SearchPlugin: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\t9gwkpwz.default\searchplugins\{1088880A-106D-4CA4-8156-63073328B966}.xml [2012-12-29] FF HKLM-x32\...\Firefox\Extensions: [{41ecbc0b-34d5-4cd4-935f-253a30e2cb7e}] - C:\Program Files\Acer ProShield\FFExt FF Extension: ( Online Accounts Extension ) - C:\Program Files\Acer ProShield\FFExt [2013-01-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{d4da7309-b89a-45ec-8ebb-cfb2ae13618b}] - C:\Program Files\Acer ProShield\FFExt20 FF Extension: ( Online Accounts Extension ) - C:\Program Files\Acer ProShield\FFExt20 [2013-01-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: (RealDownloader) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-09-01] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{9D2AA73B-6049-4799-B8AC-925723370070}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-08] () FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-07-18] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-08] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2013-10-01] () FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2011-04-20] (CANON INC.) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-10-06] (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-01-07] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-01-07] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-01-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-01-17] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-12] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL [2013-07-18] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=17.0.13.2 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2014-09-01] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=17.0.13 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2014-07-30] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=17.0.13.2 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2014-09-01] (RealPlayer Cloud) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-05] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-05] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) Chrome: ======= CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [ladimmjldcgbeamniagencjbodhnmgen] - C:\Program Files\Acer ProShield\ChromeEx\EgisPBChromeExt.crx [2012-02-02] ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1089088 2016-11-02] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [475232 2016-11-02] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [475232 2016-11-02] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1488240 2016-11-02] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [349512 2016-11-15] (Avira Operations GmbH & Co. KG) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3040496 2016-10-04] (Microsoft Corporation) R2 EgisTec Service; C:\Program Files\Acer ProShield\x86\EgisService.exe [195632 2012-02-02] (Egis Technology Inc. ) R2 EgisTec Ticket Service; C:\Program Files\Common Files\EgisTec\Services\EgisTicketService.exe [218160 2012-02-02] (Egis Technology Inc. ) R2 EmbassyService; C:\Program Files\Acer ProShield\EMBASSY Client Core\EmbassyServer.exe [218504 2011-12-02] () R2 hasplms; C:\Windows\system32\hasplms.exe [4683144 2014-07-17] (SafeNet Inc.) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-03-07] () R2 Intel(R) Small Business Advantage; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [49376 2012-02-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [163608 2012-03-07] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 MSSQL$KNXETS4; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.KNXETS4\MSSQL\Binn\sqlservr.exe [62382256 2015-03-29] (Microsoft Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] () R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256536 2012-01-05] (NTI Corporation) R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39568 2014-07-30] () R2 RealPlayer Cloud Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [1141848 2014-09-01] (RealNetworks, Inc.) R2 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [23552 2014-07-30] () [Datei ist nicht signiert] R2 RS_Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [260640 2010-01-29] (Acer Incorporated) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) S3 SecureStorageService; C:\Program Files\Acer ProShield\Secure Storage Manager\SecureStorageService.exe [2167176 2011-11-11] (Wave Systems Corp.) S4 SQLAgent$KNXETS4; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.KNXETS4\MSSQL\Binn\SQLAGENT.EXE [442536 2015-03-29] (Microsoft Corporation) R2 SynoDrService; C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe [381312 2013-04-24] () [Datei ist nicht signiert] S2 tcsd_win32.exe; C:\Program Files (x86)\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe [1637888 2011-10-08] () [Datei ist nicht signiert] R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248704 2013-04-30] () [Datei ist nicht signiert] R2 Wave Authentication Manager Service; C:\Program Files\Acer ProShield\Authentication Manager\WaveAMService.exe [1678848 2011-12-01] (Wave Systems Corp.) [Datei ist nicht signiert] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S3 WMZuneComm; C:\Program Files\WMZuneComm.exe [306400 2011-08-05] (Microsoft Corporation) S3 WvPCR; C:\Program Files\Acer ProShield\Common\WvPCR.exe [165888 2011-11-14] (Wave Systems Corp.) [Datei ist nicht signiert] R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation) S3 ZuneNetworkSvc; C:\Program Files\ZuneNss.exe [8277728 2011-08-05] (Microsoft Corporation) S3 ZuneWlanCfgSvc; C:\Program Files\ZuneWlanCfgSvc.exe [467680 2011-08-05] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 akshasp; C:\Windows\System32\DRIVERS\akshasp.sys [60488 2014-07-17] (SafeNet Inc.) S3 akshhl; C:\Windows\System32\DRIVERS\akshhl.sys [63944 2014-07-17] (SafeNet Inc.) S3 aksusb; C:\Windows\System32\DRIVERS\aksusb.sys [303624 2014-07-17] (SafeNet Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [177432 2016-11-02] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [145536 2016-10-15] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2015-04-16] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [79696 2016-06-03] (Avira Operations GmbH & Co. KG) R0 FPWinIo; C:\Windows\System32\DRIVERS\FPWinIo.sys [84784 2012-03-27] (Egis Technology Inc.) R3 GemCCID; C:\Windows\System32\Drivers\GemCCID.sys [130944 2014-11-10] (Gemalto) R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [331608 2014-07-17] (SafeNet Inc.) R3 hhdusbh64; C:\Windows\System32\DRIVERS\hhdusbh64.sys [45152 2016-09-06] (HHD Software Ltd.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation) R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia) S4 RsFx0153; C:\Windows\System32\DRIVERS\RsFx0153.sys [322736 2015-03-29] (Microsoft Corporation) R3 SmbDrv; C:\Windows\System32\DRIVERS\Smb_driver.sys [22800 2012-01-13] (Synaptics Incorporated) R3 ST_ACCEL; C:\Windows\System32\DRIVERS\ST_ACCEL.sys [67184 2012-03-14] (STMicroelectronics) R3 USBPcap; C:\Windows\System32\DRIVERS\USBPcap.sys [38888 2014-02-19] (USBPcap) S3 vNICdrv; C:\Windows\System32\DRIVERS\vNICdrv.sys [20048 2012-09-09] (Iomega Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-25 22:48 - 2016-11-25 22:49 - 00030180 _____ C:\Users\Christian\Downloads\FRST.txt 2016-11-25 22:47 - 2016-11-25 22:47 - 02412032 _____ (Farbar) C:\Users\Christian\Downloads\FRST64.exe 2016-11-25 20:57 - 2016-11-25 20:57 - 00827112 _____ C:\Users\Christian\Downloads\468849_intl_x64_zip.exe 2016-11-23 22:04 - 2016-11-23 22:04 - 00001100 _____ C:\Users\Public\Desktop\Avira Connect.lnk 2016-11-18 07:35 - 2016-11-25 21:51 - 00000000 ____D C:\Users\Christian\AppData\LocalLow\Mozilla 2016-11-17 21:46 - 2016-11-21 12:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-11-17 20:36 - 2016-11-25 21:34 - 00007596 _____ C:\Users\Christian\AppData\Local\Resmon.ResmonCfg 2016-11-14 20:07 - 2016-11-14 20:07 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2016-11-02 22:33 - 2016-11-02 22:33 - 00002002 _____ C:\Users\Christian\Downloads\config.bin 2016-11-02 22:30 - 2015-06-01 13:41 - 00955966 _____ C:\Users\Christian\Documents\Anleitung zur Installation der FirmwareB1B2.pdf 2016-11-02 22:19 - 2016-11-02 22:19 - 07915283 _____ C:\Users\Christian\Downloads\DIR-600_fw_revb1b2_218b01_ALL_de_20150424.zip 2016-11-02 22:02 - 2016-11-08 22:01 - 05610688 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-25 22:48 - 2014-01-03 08:49 - 00000000 ____D C:\FRST 2016-11-25 22:39 - 2013-03-06 20:05 - 00000000 ____D C:\Users\Christian\Documents\Outlook-Dateien 2016-11-25 22:21 - 2013-02-15 15:04 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-11-25 22:17 - 2015-06-17 19:57 - 00001240 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2846701696-1810182265-2142001758-1000UA.job 2016-11-25 22:01 - 2013-02-19 20:10 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-11-25 21:44 - 2009-07-14 05:45 - 00024432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-11-25 21:44 - 2009-07-14 05:45 - 00024432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-11-25 21:39 - 2015-07-21 21:17 - 00000435 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2016-11-25 21:39 - 2014-01-02 17:07 - 00225280 ___SH C:\Users\Christian\Desktop\Thumbs.db 2016-11-25 21:39 - 2013-08-14 16:50 - 00000000 ____D C:\ProgramData\Package Cache 2016-11-25 21:38 - 2013-02-15 15:04 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-11-25 21:38 - 2013-01-17 00:58 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job 2016-11-25 21:38 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-11-25 21:27 - 2013-12-08 14:51 - 00000000 ____D C:\Windows\Minidump 2016-11-25 20:58 - 2013-06-20 20:12 - 00000000 ____D C:\Users\Christian\Documents\temp 2016-11-25 20:51 - 2015-06-17 19:57 - 00001188 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2846701696-1810182265-2142001758-1000Core.job 2016-11-25 20:44 - 2013-01-17 00:58 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job 2016-11-23 22:04 - 2015-05-20 20:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-11-21 12:10 - 2013-01-17 09:21 - 00767748 _____ C:\Windows\system32\perfh007.dat 2016-11-21 12:10 - 2013-01-17 09:21 - 00175466 _____ C:\Windows\system32\perfc007.dat 2016-11-21 12:10 - 2009-07-14 06:13 - 01806918 _____ C:\Windows\system32\PerfStringBackup.INI 2016-11-21 12:10 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-11-21 12:01 - 2013-01-17 20:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-18 07:35 - 2013-11-17 19:39 - 00007396 _____ C:\Windows\wininit.ini 2016-11-17 20:47 - 2013-02-09 10:07 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-11-17 20:43 - 2013-02-09 09:58 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-11-17 20:40 - 2016-06-27 19:17 - 00003374 _____ C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2846701696-1810182265-2142001758-1000 2016-11-17 20:40 - 2016-06-27 19:17 - 00003248 _____ C:\Windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2846701696-1810182265-2142001758-1000 2016-11-16 21:31 - 2013-01-26 20:20 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Skype 2016-11-14 20:22 - 2016-09-05 20:09 - 00000000 ____D C:\Users\Christian\Desktop\2016-07_Kindergarten-Fine 2016-11-14 20:07 - 2013-11-17 19:38 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Dropbox 2016-11-13 12:12 - 2015-06-17 19:57 - 00004218 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2846701696-1810182265-2142001758-1000UA 2016-11-13 12:12 - 2015-06-17 19:57 - 00003822 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2846701696-1810182265-2142001758-1000Core 2016-11-08 22:01 - 2013-02-19 20:10 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-11-08 22:01 - 2012-04-10 06:59 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-11-08 22:01 - 2012-04-10 06:59 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-11-08 22:01 - 2012-04-10 06:59 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2016-11-08 22:01 - 2012-04-10 06:59 - 00000000 ____D C:\Windows\system32\Macromed 2016-11-08 21:15 - 2015-12-05 15:40 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-11-08 21:14 - 2015-01-15 03:34 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2016-11-02 22:06 - 2015-05-20 21:12 - 00177432 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2011-06-06 13:50 - 2011-06-06 13:50 - 0000054 _____ () C:\Program Files\Arrow.gif 2011-06-06 13:50 - 2011-06-06 13:50 - 0000631 _____ () C:\Program Files\Background.jpg 2011-08-05 12:31 - 2011-08-05 12:31 - 0182784 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Program Files\l3codecp.acm 2011-06-21 23:45 - 2011-06-21 23:45 - 9532452 _____ () C:\Program Files\Meiryoz.ttc 2011-06-06 13:48 - 2011-06-06 13:48 - 0001859 _____ () C:\Program Files\Microsoft.VC90.CRT.manifest 2007-10-02 14:12 - 2007-10-02 14:12 - 1642568 _____ (Microsoft Corporation) C:\Program Files\msidcrl40.dll 2011-06-06 13:48 - 2011-06-06 13:48 - 0245760 _____ (Microsoft Corporation) C:\Program Files\msvcm90.dll 2011-06-06 13:48 - 2011-06-06 13:48 - 0856576 _____ (Microsoft Corporation) C:\Program Files\msvcp90.dll 2011-06-06 13:48 - 2011-06-06 13:48 - 0626688 _____ (Microsoft Corporation) C:\Program Files\msvcr90.dll 2011-06-06 13:50 - 2011-06-06 13:50 - 0122458 _____ () C:\Program Files\quickplaymap.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121358 _____ () C:\Program Files\quickplaymap_chs.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121162 _____ () C:\Program Files\quickplaymap_cht.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0122068 _____ () C:\Program Files\quickplaymap_csy.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121489 _____ () C:\Program Files\quickplaymap_dan.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121837 _____ () C:\Program Files\quickplaymap_deu.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0122620 _____ () C:\Program Files\quickplaymap_ell.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121952 _____ () C:\Program Files\quickplaymap_esp.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121257 _____ () C:\Program Files\quickplaymap_fin.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121403 _____ () C:\Program Files\quickplaymap_fra.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121834 _____ () C:\Program Files\quickplaymap_hun.png 2011-06-21 23:45 - 2011-06-21 23:45 - 0122210 _____ () C:\Program Files\quickplaymap_ind.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121621 _____ () C:\Program Files\quickplaymap_ita.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0122060 _____ () C:\Program Files\quickplaymap_jpn.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0120995 _____ () C:\Program Files\quickplaymap_kor.png 2011-06-21 23:45 - 2011-06-21 23:45 - 0122484 _____ () C:\Program Files\quickplaymap_msl.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0122053 _____ () C:\Program Files\quickplaymap_nld.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121155 _____ () C:\Program Files\quickplaymap_nor.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0122414 _____ () C:\Program Files\quickplaymap_plk.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0122134 _____ () C:\Program Files\quickplaymap_ptb.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121635 _____ () C:\Program Files\quickplaymap_ptg.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0122790 _____ () C:\Program Files\quickplaymap_rus.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0121558 _____ () C:\Program Files\quickplaymap_sve.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0251333 _____ () C:\Program Files\softwaremap.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0095912 _____ () C:\Program Files\softwaremap_chs.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0096751 _____ () C:\Program Files\softwaremap_cht.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0097298 _____ () C:\Program Files\softwaremap_csy.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0096323 _____ () C:\Program Files\softwaremap_dan.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0097580 _____ () C:\Program Files\softwaremap_deu.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0100499 _____ () C:\Program Files\softwaremap_ell.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0097782 _____ () C:\Program Files\softwaremap_esp.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0096441 _____ () C:\Program Files\softwaremap_fin.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0097435 _____ () C:\Program Files\softwaremap_fra.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0096737 _____ () C:\Program Files\softwaremap_hun.png 2011-06-21 23:45 - 2011-06-21 23:45 - 0092713 _____ () C:\Program Files\softwaremap_ind.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0098431 _____ () C:\Program Files\softwaremap_ita.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0096603 _____ () C:\Program Files\softwaremap_jpn.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0093267 _____ () C:\Program Files\softwaremap_kor.png 2011-06-21 23:45 - 2011-06-21 23:45 - 0093248 _____ () C:\Program Files\softwaremap_msl.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0096513 _____ () C:\Program Files\softwaremap_nld.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0094750 _____ () C:\Program Files\softwaremap_nor.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0098663 _____ () C:\Program Files\softwaremap_plk.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0098102 _____ () C:\Program Files\softwaremap_ptb.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0097716 _____ () C:\Program Files\softwaremap_ptg.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0099979 _____ () C:\Program Files\softwaremap_rus.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0094597 _____ () C:\Program Files\softwaremap_sve.png 2011-06-06 13:50 - 2011-06-06 13:50 - 0001922 _____ () C:\Program Files\TopBar.gif 2011-08-05 12:56 - 2011-08-05 12:56 - 1530592 _____ (Microsoft Corporation) C:\Program Files\UIX.dll 2011-08-05 12:56 - 2011-08-05 12:56 - 0645856 _____ (Microsoft Corporation) C:\Program Files\UIX.renderapi.dll 2011-08-05 12:56 - 2011-08-05 12:56 - 1288928 _____ (Microsoft Corporation) C:\Program Files\UIXcontrols.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 1752288 _____ (Microsoft Corporation) C:\Program Files\UIXrender.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0035552 _____ (Microsoft Corporation) C:\Program Files\UIXsup.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0306400 _____ (Microsoft Corporation) C:\Program Files\WMZuneComm.exe 2011-08-05 12:53 - 2011-08-05 12:53 - 0018656 _____ (Microsoft Corporation) C:\Program Files\WMZuneCommProxyStub.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0021216 _____ (Microsoft Corporation) C:\Program Files\WMZuneDTPTDNS.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0027872 _____ (Microsoft Corporation) C:\Program Files\WMZuneTCP2UDP.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0223968 _____ (Microsoft Corporation) C:\Program Files\Zune.exe 2011-06-06 13:50 - 2011-06-06 13:50 - 0000659 _____ () C:\Program Files\Zune.exe.config 2011-08-05 12:53 - 2011-08-05 12:53 - 0121056 _____ (Microsoft Corporation) C:\Program Files\ZuneAACDec.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0061664 _____ (Microsoft Corporation) C:\Program Files\ZuneCfg.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0056544 _____ (Microsoft Corporation) C:\Program Files\ZuneConfig.exe 2011-08-05 12:53 - 2011-08-05 12:53 - 1481440 _____ (Microsoft Corporation) C:\Program Files\ZuneCore.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0212192 _____ (Microsoft Corporation) C:\Program Files\ZuneDB.dll 2011-08-05 12:56 - 2011-08-05 12:56 - 1175264 _____ (Microsoft Corporation) C:\Program Files\ZuneDBApi.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0072928 _____ (Microsoft Corporation) C:\Program Files\ZuneDXVA2.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0129248 _____ (Microsoft Corporation) C:\Program Files\ZuneEffects.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0038624 _____ (Microsoft Corporation) C:\Program Files\ZuneEnc.exe 2011-08-05 12:53 - 2011-08-05 12:53 - 2110176 _____ (Microsoft Corporation) C:\Program Files\ZuneEncEng.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0376544 _____ (Microsoft Corporation) C:\Program Files\ZuneEvr.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 1184480 _____ (Microsoft Corporation) C:\Program Files\ZuneH264Dec.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0218848 _____ (Microsoft Corporation) C:\Program Files\ZuneHost.exe 2011-08-05 12:53 - 2011-08-05 12:53 - 0163552 _____ (Microsoft Corporation) C:\Program Files\ZuneLauncher.exe 2011-06-06 13:50 - 2011-06-06 13:50 - 0000988 _____ () C:\Program Files\ZuneLogo.gif 2011-08-05 12:53 - 2011-08-05 12:53 - 1096928 _____ (Microsoft Corporation) C:\Program Files\ZuneMarketplaceResources.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0879328 _____ (Microsoft Corporation) C:\Program Files\ZuneMBR.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 1161440 _____ (Microsoft Corporation) C:\Program Files\ZuneMde.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0707808 _____ (Microsoft Corporation) C:\Program Files\ZUNEMP4SDECD.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 10061536 _____ (Microsoft Corporation) C:\Program Files\ZuneNativeLib.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 8277728 _____ (Microsoft Corporation) C:\Program Files\ZuneNss.exe 2011-08-05 12:53 - 2011-08-05 12:53 - 0347872 _____ (Microsoft Corporation) C:\Program Files\ZuneNssci.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0131296 _____ (Microsoft Corporation) C:\Program Files\ZunePresenter.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0020704 _____ (Microsoft Corporation) C:\Program Files\ZunePS.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0916704 _____ (Microsoft Corporation) C:\Program Files\ZuneQP.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 3889376 _____ (Microsoft Corporation) C:\Program Files\ZuneResources.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0155872 _____ (Microsoft Corporation) C:\Program Files\ZuneSA.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0514272 _____ (Microsoft Corporation) C:\Program Files\ZuneSE.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 1257184 _____ (Microsoft Corporation) C:\Program Files\ZuneService.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 4020448 _____ (Microsoft Corporation) C:\Program Files\ZuneSetup.exe 2011-08-05 12:53 - 2011-08-05 12:53 - 0683744 _____ (Microsoft Corporation) C:\Program Files\ZuneSH.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0017632 _____ (Microsoft Corporation) C:\Program Files\ZuneShare.exe 2011-08-05 12:56 - 2011-08-05 12:56 - 1272544 _____ (Microsoft Corporation) C:\Program Files\ZuneShell.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0074464 _____ (Microsoft Corporation) C:\Program Files\ZuneShellExt.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 16921312 _____ (Microsoft Corporation) C:\Program Files\ZuneShellResources.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0507104 _____ (Microsoft Corporation) C:\Program Files\ZuneSP.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0366816 _____ (Microsoft Corporation) C:\Program Files\ZuneSrcWrp.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0100064 _____ (Microsoft Corporation) C:\Program Files\ZuneTaskbar.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0467680 _____ (Microsoft Corporation) C:\Program Files\ZuneWlanCfgSvc.exe 2011-08-05 12:53 - 2011-08-05 12:53 - 0863968 _____ (Microsoft Corporation) C:\Program Files\ZuneWmdu.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0009440 _____ (Microsoft Corporation) C:\Program Files\ZuneWmduResources.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0152288 _____ (Microsoft Corporation) C:\Program Files\ZuneZMDB.Classic.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0157920 _____ (Microsoft Corporation) C:\Program Files\ZuneZMDB.Library.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0196832 _____ (Microsoft Corporation) C:\Program Files\ZuneZMDB.Mobile.dll 2011-08-05 12:53 - 2011-08-05 12:53 - 0157408 _____ (Microsoft Corporation) C:\Program Files\ZuneZMDB.ZuneHD.dll 2016-08-05 09:51 - 2016-08-05 09:51 - 7065600 _____ () C:\Program Files (x86)\GUT22AD.tmp 2013-01-17 07:31 - 2013-01-26 20:49 - 0000138 _____ () C:\Users\Christian\AppData\Roaming\AbsoluteReminder.xml 2013-09-22 22:18 - 2015-04-13 19:48 - 0027958 _____ () C:\Users\Christian\AppData\Roaming\Durch Trennzeichen getrennte Werte.ADR 2013-01-26 22:23 - 2013-01-26 22:23 - 0003584 _____ () C:\Users\Christian\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2016-04-19 10:43 - 2016-04-19 10:43 - 0003274 _____ () C:\Users\Christian\AppData\Local\recently-used.xbel 2016-11-17 20:36 - 2016-11-25 21:34 - 0007596 _____ () C:\Users\Christian\AppData\Local\Resmon.ResmonCfg 2015-06-02 13:57 - 2015-06-02 13:57 - 0000287 _____ () C:\Users\Christian\AppData\Local\VersionChecker_20.xml ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-07-10 14:57 ==================== Ende von FRST.txt ============================ Addition.txt: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 23-11-2016 durchgeführt von Christian (25-11-2016 22:50:24) Gestartet von C:\Users\Christian\Downloads Windows 7 Professional Service Pack 1 (X64) (2013-01-17 06:29:41) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2846701696-1810182265-2142001758-500 - Administrator - Disabled) Christian (S-1-5-21-2846701696-1810182265-2142001758-1000 - Administrator - Enabled) => C:\Users\Christian Gast (S-1-5-21-2846701696-1810182265-2142001758-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2846701696-1810182265-2142001758-1006 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.100 - NTI Corporation) Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.2728.00 - CyberLink Corp.) Acer Crystal Eye Webcam (x32 Version: 1.5.2728.00 - CyberLink Corp.) Hidden Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3010 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3507 - Acer Incorporated) Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3506 - Acer Incorporated) Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3501 - Acer Incorporated) Acer VCM (HKLM-x32\...\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}) (Version: 4.05.3501 - Acer Incorporated) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 19.0.0.241 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.23.58 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM-x32\...\{e7f56494-d786-472e-aba2-1b93089e06cd}) (Version: 1.2.76.20506 - Avira Operations GmbH & Co. KG) Avira Connect (x32 Version: 1.2.76.20506 - Avira Operations GmbH & Co. KG) Hidden Backup Manager V3 (x32 Version: 3.0.0.100 - NTI Corporation) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Broadcom Gigabit Integrated Controller (HKLM\...\{394E442A-637D-43EF-B402-4CFD88263CF0}) (Version: 15.0.5.1 - Broadcom Corporation) Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: - ) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - ) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: - ) Canon MG5300 series Benutzerregistrierung (HKLM-x32\...\Canon MG5300 series Benutzerregistrierung) (Version: - ) Canon MG5300 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series) (Version: - ) Canon MG5300 series On-screen Manual (HKLM-x32\...\Canon MG5300 series On-screen Manual) (Version: - ) Canon MP Navigator EX 5.0 (HKLM-x32\...\MP Navigator EX 5.0) (Version: - ) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: - ) Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - ) Chart Navigator Standard (HKLM-x32\...\Chart Navigator Standard) (Version: - ) Cinebook (HKLM-x32\...\Cinebook) (Version: 3.2.24 - SSW Software GmbH) Cinebook (x32 Version: 3.2.24 - SSW Software GmbH) Hidden Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.30.0 - Conexant) Corel WinDVD (HKLM-x32\...\{5C1F18D2-F6B7-4242-B803-B5A78648185D}) (Version: 10.0.6.381 - Corel Inc.) Custom (Version: 01.00.00.000 - Wave Systems Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dropbox (HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\...\Dropbox) (Version: 14.4.19 - Dropbox, Inc.) eBay Worldwide (HKLM-x32\...\{D3E5A972-9A15-427D-AE78-8181A5FD943C}) (Version: 2.2.0409 - OEM) EgisTec ES603 WDM Driver (HKLM-x32\...\InstallShield_{AE4167B0-F589-4D2A-BF05-E181D543C49F}) (Version: 3.1.14.0 - Egis Technology Inc.) EMBASSY Client Core (Version: 01.01.00.034 - Wave Systems Corp.) Hidden Embassy Trust Suite - Acer Edition (Version: 01.04.00.009 - Wave Systems Corp) Hidden ES603 WDM Driver (x32 Version: 3.1.14.0 - Egis Technology Inc.) Hidden Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden FreeMind (HKLM-x32\...\B991B020-2968-11D8-AF23-444553540000_is1) (Version: 1.0.0 - ) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Garmin MapSource (HKLM-x32\...\{AFBAB9A0-DDE8-49AE-8C17-A01B61BEE64B}) (Version: 6.16.3 - Garmin Ltd or its subsidiaries) Garmin USB Drivers (HKLM-x32\...\{510D2239-6C2E-457B-9590-485EC552D94D}) (Version: 2.3.0.0 - Garmin Ltd or its subsidiaries) GDR 4033 für SQL Server 2008 R2 (KB2977320) (64-bit) (HKLM\...\KB2977320) (Version: 10.52.4033.0 - Microsoft Corporation) GDR 4042 für SQL Server 2008 R2 (KB3045313) (64-bit) (HKLM\...\KB3045313) (Version: 10.52.4042.0 - Microsoft Corporation) GemPcCCID (HKLM\...\{7567A068-2F02-40D1-A34C-16D79ECD35A6}) (Version: 2.0.1 - Gemalto) GIMP 2.8.8 (HKLM\...\GIMP-2_is1) (Version: 2.8.8 - The GIMP Team) Google Earth (HKLM-x32\...\{A0C18B96-AB79-46BD-8321-6FA83E6D25B9}) (Version: 7.1.7.2606 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden HHD Software Free USB Analyzer 7.70 (HKLM\...\HHD Device Monitoring Studio 5.01) (Version: 7.70.0.7246 - HHD Software, Ltd.) Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated) Install Absolute Data Protect (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 1.0.0.42 - Absolute Software) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.35342 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.4.1441 - Intel Corporation) Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2712 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{2C0E6BD4-65B1-4E82-B2AC-43EFFC8F100C}) (Version: 15.0.0.0083 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{3015F546-6C3E-4E6A-B564-BCDF88C0BA2A}) (Version: 2.1.1.0153 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.1.0.1006 - Intel Corporation) Intel(R) Small Business Advantage (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: - Intel(R) Corporation) Intel(R) Update Manager (x32 Version: 1.0.0.34813 - Intel Corporation) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.220 - Intel Corporation) Intel(R) WiDi (HKLM\...\{4E4282C3-F66E-4852-837A-7675527178C2}) (Version: 3.1.26.0 - Intel Corporation) Intel(R) Wireless Display (HKLM\...\{28EF7372-9087-4AC3-9B9F-D9751FCDF830}) (Version: - ) Intel® PROSet/Wireless WiFi-Software (HKLM\...\{DF7756DD-656A-45C3-BA71-74673E8259A9}) (Version: 15.00.0000.0708 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) iTunes (HKLM\...\{37D0157F-45C6-4DB2-9AE5-489DD98CE169}) (Version: 11.1.2.31 - Apple Inc.) Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kalender-Excel-8.9 (HKLM-x32\...\Kalender-Excel-8.9_is1) (Version: 8.9 - MSDatec) KNX eteC Falcon Runtime v2.1 (x32 Version: 2.1.5431.49892 - KNX Association cvba) Hidden KNX ETS4 (HKLM-x32\...\KNX ETS4) (Version: 4.2.3884.50021 - KNX Association cvba) KNX ETS4 (x32 Version: 4.2.3884.50021 - KNX Association cvba) Hidden KNX ETS4 Additional Runtime (x32 Version: 4.0.0.0 - KNX Association cvba) Hidden Launch Manager (HKLM-x32\...\LManager) (Version: 6.0.17 - Acer Inc.) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) MapSource - Trip & Waypoint Manager v2 (HKLM-x32\...\InstallShield_{A0F584A7-B0C2-4D90-9580-15456B9CF63C}) (Version: 2.00 - Garmin Ltd. and its subsidiaries) MapSource - Trip & Waypoint Manager v2 (x32 Version: 2.00 - Garmin Ltd. and its subsidiaries) Hidden MapSource (HKLM-x32\...\{5E3CFCA6-C95A-47CB-A822-7FA80D423AF2}) (Version: 6.0 - Garmin Ltd. and its subsidiaries) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Network Monitor 3.4 (HKLM\...\{8C5B5A11-CBF8-451B-B201-77FAB0D0B77D}) (Version: 3.4.2350.0 - Microsoft Corporation) Microsoft Network Monitor: NetworkMonitor Parsers 3.4 (HKLM\...\{963E5FEB-1367-46B9-851D-A957F1A3747F}) (Version: 3.4.2350.0 - Microsoft Corporation) Microsoft Office Professional Plus 2013 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 15.0.4875.1001 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2008 R2 (64-bit) (HKLM\...\Microsoft SQL Server 2008 R2) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{49860BCD-24D6-44C1-922E-AC12FE32234E}) (Version: 10.52.4042.0 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Setup (English) (HKLM\...\{B2213E4E-F502-4D36-BE95-9293C866EF3F}) (Version: 10.52.4042.0 - Microsoft Corporation) Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation) Microsoft SQL Server Browser (HKLM-x32\...\{BF9BF038-FE03-429D-9B26-2FA0FD756052}) (Version: 10.52.4000.0 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{288D79EE-A2D1-42AF-9597-B0ADCC23A8ED}) (Version: 10.52.4000.0 - Microsoft Corporation) Microsoft Visio Professional 2013 - de-de (HKLM\...\VisioProRetail - de-de) (Version: 15.0.4875.1001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 11.030.01.04.03 - Huawei Technologies Co.,Ltd) Mozilla Firefox 50.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 50.0 (x86 de)) (Version: 50.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.0.6152 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Notepad++ (HKLM\...\Notepad++) (Version: 7 - Notepad++ Team) Notepad++ (HKLM-x32\...\Notepad++) (Version: 7 - Notepad++ Team) NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.9006 - NTI Corporation) NTI Media Maker 9 (x32 Version: 9.0.2.9006 - NTI Corporation) Hidden NTRU TCG Software Stack (Version: 2.1.37 - Security Innovation, Inc.) Hidden nv.digital (HKLM-x32\...\{E6601849-7CD7-4426-BB04-4F0BEDB481C7}) (Version: - Nautische Veröffentlichung) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4875.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4875.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (Version: 15.0.4875.1001 - Microsoft Corporation) Hidden PDF24 Creator 6.9.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ProShield (HKLM-x32\...\InstallShield_{08CCD7B4-9EED-4926-805D-C4FFF869989A}) (Version: 1.1.20.0 - Egis Technology Inc.) ProShield (Version: 1.1.20.0 - Egis Technology Inc.) Hidden ProShield TPM (Version: 01.03.00.004 - Wave Systems Corp) Hidden PxMergeModule (x32 Version: 1.00.0000 - Your Company Name) Hidden QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden RealDownloader (x32 Version: 17.0.13 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer Cloud (HKLM-x32\...\RealPlayer 17.0) (Version: 17.0.13 - RealNetworks) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7600.69 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden Saal Design Software (HKLM-x32\...\SaalDesignSoftware) (Version: 4.0 - Saal Digital Fotoservice GmbH) Saal Design Software (x32 Version: 4.0 - Saal Digital Fotoservice GmbH) Hidden Secunia PSI (3.0.0.9016) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia) Service Pack 2 for SQL Server 2008 R2 (KB2630458) (64-bit) (HKLM\...\KB2630458) (Version: 10.52.4000.0 - Microsoft Corporation) Skype™ 7.10 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.10.101 - Skype Technologies S.A.) sPlan 7.0 (HKLM-x32\...\sPlan_70_is1) (Version: - ) SQL Server 2008 R2 SP2 Common Files (Version: 10.52.4000.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP2 Database Engine Services (Version: 10.52.4000.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP2 Database Engine Shared (Version: 10.52.4000.0 - Microsoft Corporation) Hidden Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1 - Microsoft Corporation) Hidden ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.06.0026 - ST Microelectronics) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.41.0 - Synaptics Incorporated) Synology Assistant (remove only) (HKLM-x32\...\Synology Assistant) (Version: - ) Synology Data Replicator 3 (HKLM-x32\...\{8E310838-457C-4269-B177-3EFB300CBDDC}) (Version: 1.0.0.0 - Synology Inc.) toolkit32for64bit (x32 Version: 7.67.47.0000 - Wave Systems Corp) Hidden Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH) Überwachungstool für die Intel® Turbo-Boost-Technik 2.5 (HKLM\...\{6C9365EB-1F9E-4893-9196-3EC77C88D0C5}) (Version: 2.5.1.0 - Intel) UpdateService (x32 Version: 1.0.0 - RealNetworks, Inc.) Hidden USBPcap 1.0.0.7 (HKLM\...\USBPcap) (Version: - ) Wave Crypto Runtime 2.0.7.0 x86 (x32 Version: 02.00.07.0000 - Wave Systems Corp) Hidden Wave Infrastructure Installer (Version: 07.67.60.0005 - Wave Systems Corp) Hidden Wave Support Software Installer (Version: 05.13.00.051 - Wave Systems Corp) Hidden Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3507 - Acer Incorporated) Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (HKLM\...\49CF605F02C7954F4E139D18828DE298CD59217C) (Version: 06/03/2009 2.3.0.0 - Garmin) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation) Windows Phone app for desktop (HKLM-x32\...\{19773614-FC22-4ACC-AAA3-E6BDA81ACF92}) (Version: 1.1.2726.0 - Microsoft Corporation) WinRAR 4.20 (32-Bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) WISO steuer:Sparbuch 2016 (HKLM-x32\...\{C3AAF380-215E-4B36-9342-E091881FA8F8}) (Version: 23.00.1146 - Buhl Data Service GmbH) WISO Steuer-Sparbuch 2015 (HKLM-x32\...\{25B2C0D3-530D-4B87-9884-3F0DE4038721}) (Version: 22.00.8811 - Buhl Data Service GmbH) Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2846701696-1810182265-2142001758-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll => Keine Datei ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {05E2FBD5-1F79-4033-85EF-EC68268E9C9C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-10-04] (Microsoft Corporation) Task: {0CFD25A4-1075-49E3-883F-632E6D8C1777} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2846701696-1810182265-2142001758-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.) Task: {0F246F0E-05F2-4197-BA6B-F5E1B0157E70} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2846701696-1810182265-2142001758-1000UA => C:\Users\Christian\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-08] (Dropbox, Inc.) Task: {11160461-6C4D-4E10-8419-88176CE3BC21} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-08] (Adobe Systems Incorporated) Task: {1B1D83C1-9E2D-4A91-8D07-BF4FC4D19651} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-26] (Apple Inc.) Task: {1F6A850A-7D98-484B-966E-679362D1F66D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-09-20] (Microsoft Corporation) Task: {37E1DBA1-44A1-4FF5-BCE9-3A62793D9193} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {494FF507-E2B6-44DA-BEAA-99B9DE780063} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2846701696-1810182265-2142001758-1000Core => C:\Users\Christian\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-08] (Dropbox, Inc.) Task: {4E96938F-A6C5-4DDB-AC58-156C2A1EFE20} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2846701696-1810182265-2142001758-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2014-07-30] (RealNetworks, Inc.) Task: {605976B0-A972-4B02-8627-3E244E5EBF80} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-09-20] (Microsoft Corporation) Task: {6D951291-24C9-42CF-B79E-33FFEE7F38C7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {7999FAD6-DFE9-4B28-B9AB-615C17274176} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {7DC791B0-7AFA-459E-B15F-9A9AD0E674AD} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2846701696-1810182265-2142001758-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2014-07-30] (RealNetworks, Inc.) Task: {83C32CCC-9E83-4692-A20A-C37E9272C9BA} - System32\Tasks\UALU notificatin => C:\Program Files\Acer\Acer Updater\UALU.exe [2012-02-07] (Acer Incorporated) Task: {8497A7DD-0024-47EF-B980-D3F362BEC39F} - System32\Tasks\AdobeAAMUpdater-1.0-Travelmate-Christian => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated) Task: {89A8156A-EA2B-4B01-970B-CDB1E50DDF63} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2846701696-1810182265-2142001758-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-07-30] (RealNetworks, Inc.) Task: {8CBEAE55-0CCC-4ACA-AA29-84865EF466FD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {949491B5-7EDB-4DDA-9900-CA4642FB55A9} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {E67EF71A-2FD3-4DFA-9FEB-703A21549FAD} - System32\Tasks\Temporäre Files löschen => C:\Users\Christian\Desktop\TFC.exe [2014-01-03] (OldTimer Tools) Task: {FCC7CAEA-AFEE-4290-9F38-3F808D8A9408} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-10-04] (Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2846701696-1810182265-2142001758-1000Core.job => C:\Users\Christian\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2846701696-1810182265-2142001758-1000UA.job => C:\Users\Christian\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Christian\Desktop\startnetwork.bat - Verknüpfung.lnk -> C:\Users\Christian\Desktop\startnetwork.bat () ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2014-04-13 12:51 - 2016-05-24 09:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2011-12-02 15:13 - 2011-12-02 15:13 - 00218504 _____ () C:\Program Files\Acer ProShield\EMBASSY Client Core\EmbassyServer.exe 2011-12-02 15:12 - 2011-12-02 15:12 - 00038792 _____ () C:\Program Files\Acer ProShield\EMBASSY Client Core\DeviceStatus.dll 2011-10-08 22:57 - 2011-10-08 22:57 - 00003072 _____ () C:\Program Files (x86)\NTRU Cryptosystems\NTRU TCG Software Stack\bin\TspPopup_DEU.dll 2011-11-07 07:55 - 2011-11-07 07:55 - 00094720 _____ () C:\Windows\system32\Wavx_ESC_Logging.dll 2013-01-17 00:57 - 2012-03-07 15:49 - 00128280 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 2014-07-30 01:17 - 2014-07-30 01:17 - 00039568 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 2014-07-30 04:04 - 2014-07-30 04:04 - 00023552 _____ () C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe 2013-04-24 13:01 - 2013-04-24 13:01 - 00381312 _____ () C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe 2013-04-30 04:47 - 2013-04-30 04:47 - 00248704 _____ () C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe 2013-01-17 09:01 - 2012-03-27 02:33 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-01-17 01:01 - 2012-05-25 09:55 - 00250008 _____ () C:\Program Files (x86)\ST Microelectronics\ST_ACCEL\FFP_DT.dll 2016-09-20 20:09 - 2016-09-20 20:09 - 00402624 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream64.dll 2013-01-28 13:08 - 2013-01-28 13:08 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-01-28 13:08 - 2013-01-28 13:08 - 01242512 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-01-05 22:22 - 2012-01-05 22:22 - 00465344 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll 2012-01-05 22:22 - 2012-01-05 22:22 - 01081368 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll 2012-01-05 22:22 - 2012-01-05 22:22 - 00125464 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll 2014-09-01 21:49 - 2014-09-01 21:49 - 00864856 _____ () c:\program files (x86)\real\realplayer\RPDS\Plugins\cldplin.dll 2013-01-17 01:10 - 2012-02-27 13:02 - 00215264 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\UI\System.ComponentModel.Composition.dll 2013-01-17 01:10 - 2012-02-27 13:02 - 00051424 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\UI\Interop.TaskScheduler.dll 2013-01-17 00:57 - 2012-03-07 15:27 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-01-17 01:10 - 2012-02-27 13:00 - 00030432 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\ProcessPrivileges.dll 2013-01-17 01:10 - 2012-02-27 13:00 - 00215264 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\System.ComponentModel.Composition.dll 2013-01-17 01:10 - 2012-02-27 13:00 - 00051424 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Interop.TaskScheduler.dll 2013-01-17 01:10 - 2012-02-27 13:00 - 00076000 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Interop.WUApiLib.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2846701696-1810182265-2142001758-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 - 192.168.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Acer VCM.lnk => C:\Windows\pss\Acer VCM.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^RealPlayer Cloud Service UI.lnk => C:\Windows\pss\RealPlayer Cloud Service UI.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Christian^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: BackupManagerTray => "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k MSCONFIG\startupreg: Dropbox Update => "C:\Users\Christian\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c MSCONFIG\startupreg: EgisTecPMMUpdate => "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe" MSCONFIG\startupreg: EgisUpdate => "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Norton Online Backup => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe MSCONFIG\startupreg: PDFPrint => C:\Program Files (x86)\PDF24\pdf24.exe MSCONFIG\startupreg: ProShieldTSR => "C:\Program Files\Acer ProShield\EgisTSR.exe" /run MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: TkBellExe => "c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot MSCONFIG\startupreg: Zune Launcher => "C:\Program Files\ZuneLauncher.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [VirtualPC-In-UDP-1] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [VirtualPC-In-UDP-2] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [VirtualPC-In-TCP-1] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [{19452488-88A5-405F-8414-53F7F8613E9A}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{A20B186E-F1DE-4599-83ED-C55866D00A16}] => (Allow) LPort=2869 FirewallRules: [{838B10B8-8C09-4858-A0AE-6C05E8105BFA}] => (Allow) LPort=1900 FirewallRules: [{9D0C81FC-A72D-4DCB-BF07-CD6B7B9EB701}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{F858E3AA-F2B0-4CBF-9A48-AE928FBBA79F}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{4B51573D-5790-46AA-B664-E8E4EF033591}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{CAFEDC0A-335D-4CAE-BF0B-B891C93F5290}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{3455600D-B0BB-4375-A884-0D4027A27305}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe FirewallRules: [{4028D040-BDC9-4B2B-B107-8C68E493835A}] => (Allow) C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe FirewallRules: [{61D59475-C8E5-42E8-8A60-7B9530FEA82B}] => (Allow) C:\Program Files (x86)\Acer\Acer VCM\VC.exe FirewallRules: [{F7E70017-6A52-454A-8A7C-3E0DF86DFF27}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{5F27182E-063F-4BD4-8A29-33EA8CF406CD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{20FD10C5-7D94-4D70-9B77-60B7ABA7FA6A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{8A171A0A-99F2-48BA-A666-9EB389F4E9CE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{2EF5D817-36F2-4FCD-974D-C8E73D03CD03}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{180FFCB1-F7E2-4EB2-AF0D-3F26E2C6C0B6}] => (Allow) C:\Windows\System32\hasplms.exe FirewallRules: [{A553105C-6AAB-478C-80EE-26AAFB65595F}] => (Allow) C:\Windows\System32\hasplms.exe FirewallRules: [{98CC7F44-B44A-470D-9F42-20CBD8D40401}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [TCP Query User{EAFB27B4-E6D3-4D7E-85E6-B0A3C025E0B6}C:\program files (x86)\vectorworks arch 2008\vectorworks2008.exe] => (Allow) C:\program files (x86)\vectorworks arch 2008\vectorworks2008.exe FirewallRules: [UDP Query User{A47A4A8D-9763-4164-B67B-CBC950D80BB8}C:\program files (x86)\vectorworks arch 2008\vectorworks2008.exe] => (Allow) C:\program files (x86)\vectorworks arch 2008\vectorworks2008.exe FirewallRules: [{16CDEFBD-CE84-4AC6-BBFA-E7707DBDC087}] => (Allow) C:\Users\Christian\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{73CAC8DC-64BE-4CE8-865C-D8341A309939}] => (Allow) C:\Users\Christian\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{23135BE1-137E-4C12-92D8-15A3D3E217D5}C:\users\christian\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\christian\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{0C480B74-9C7E-48FB-9C99-9E36347EE1D0}C:\users\christian\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\christian\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{44AD2CED-1E5A-49FA-AAF1-ADE635267D94}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe FirewallRules: [UDP Query User{B73AE853-8A26-4E81-9758-69F028183730}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe FirewallRules: [{52B2E38C-ACD0-405E-8D7C-86C390A1371C}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [TCP Query User{4687796D-6B1A-4B8F-8533-13F220F41BA7}C:\program files (x86)\ets4\ets4.exe] => (Allow) C:\program files (x86)\ets4\ets4.exe FirewallRules: [UDP Query User{1D26F8CC-9856-4873-941C-DCFEAA83C55A}C:\program files (x86)\ets4\ets4.exe] => (Allow) C:\program files (x86)\ets4\ets4.exe FirewallRules: [{44A79311-B132-4AC2-9646-FDABA49F9260}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [TCP Query User{86F54B5B-22B7-4191-BE47-9DB6E019B7A3}C:\program files (x86)\look@lan\lookathost.exe] => (Allow) C:\program files (x86)\look@lan\lookathost.exe FirewallRules: [UDP Query User{5A7E40A4-B46E-4093-9B61-24CC0BCCF8BB}C:\program files (x86)\look@lan\lookathost.exe] => (Allow) C:\program files (x86)\look@lan\lookathost.exe FirewallRules: [TCP Query User{A52119F4-3A45-49C7-80C6-22A9D6F8D555}C:\program files (x86)\look@lan\lookatlan.exe] => (Allow) C:\program files (x86)\look@lan\lookatlan.exe FirewallRules: [UDP Query User{09589297-7619-4C26-8ED6-F19F3F29101D}C:\program files (x86)\look@lan\lookatlan.exe] => (Allow) C:\program files (x86)\look@lan\lookatlan.exe FirewallRules: [{F68F83B6-0D5D-4039-936E-9407E8F454E3}] => (Allow) c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe FirewallRules: [TCP Query User{EB956C05-F306-48E6-A461-4572FA06B11D}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe FirewallRules: [UDP Query User{D9D9A77E-9C70-406C-990A-9B74535A3F3D}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe FirewallRules: [{AD5B3E41-FD15-4210-BF73-5B59A7198C53}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{44EAA74C-0E19-4469-894D-9E33F4B9E05B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{5F875E6C-84F5-4878-A7DB-AD77C366ACF5}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{13D46B97-D438-4472-A2D3-6933319F91E5}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{3E423BDF-9570-43CB-8FBF-78C41DEB23EF}C:\program files (x86)\common files\eiba sc\falcon\falcon.exe] => (Allow) C:\program files (x86)\common files\eiba sc\falcon\falcon.exe FirewallRules: [UDP Query User{4A05ABDD-D21F-48E3-90C0-BC7C3E59CCF0}C:\program files (x86)\common files\eiba sc\falcon\falcon.exe] => (Allow) C:\program files (x86)\common files\eiba sc\falcon\falcon.exe FirewallRules: [TCP Query User{EDC1A7FF-0995-4552-AEB7-B7122F39C2AD}C:\program files (x86)\common files\eiba sc\falcon\falcon.exe] => (Block) C:\program files (x86)\common files\eiba sc\falcon\falcon.exe FirewallRules: [UDP Query User{1F85C02A-F95F-47D9-AEE4-805CB905F153}C:\program files (x86)\common files\eiba sc\falcon\falcon.exe] => (Block) C:\program files (x86)\common files\eiba sc\falcon\falcon.exe FirewallRules: [{C2EDDA15-5A48-4997-96A8-908361279BE5}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [TCP Query User{1E8A6B56-9CE2-451C-BC65-FEC40BB45749}C:\program files\vectorworks2015\vectorworks2015.exe] => (Allow) C:\program files\vectorworks2015\vectorworks2015.exe FirewallRules: [UDP Query User{B619957E-6A49-4E79-84F2-38CE8025F5A7}C:\program files\vectorworks2015\vectorworks2015.exe] => (Allow) C:\program files\vectorworks2015\vectorworks2015.exe FirewallRules: [TCP Query User{75086052-505D-41A3-BAA4-1A2C1BC17716}C:\program files\vectorworks2015\renderworks\cinerender 64bit.exe] => (Allow) C:\program files\vectorworks2015\renderworks\cinerender 64bit.exe FirewallRules: [UDP Query User{D97A28E3-7ECE-4BCA-BA1F-290F5512C2B0}C:\program files\vectorworks2015\renderworks\cinerender 64bit.exe] => (Allow) C:\program files\vectorworks2015\renderworks\cinerender 64bit.exe FirewallRules: [{47B88D32-5014-4760-BD2A-7DF5A63D5D4A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{01C9AC19-F30E-4E7A-97AC-4081984EA8A8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C8300204-9922-427C-884A-53F695931905}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{FAF16AD6-57E9-4524-9350-8717134FD2F8}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{87A8BDE9-4DDA-404F-847D-B8DA8399BE06}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [{7CE6B3D7-26BE-4B0F-8F5C-6A7D3345BB3C}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe ==================== Wiederherstellungspunkte ========================= 01-10-2016 20:32:21 Installed HHD Software Free USB Analyzer 7.70 ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/25/2016 10:38:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 490576 Error: (11/25/2016 10:38:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 490576 Error: (11/25/2016 10:38:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (11/25/2016 10:38:05 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 489547 Error: (11/25/2016 10:38:05 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 489547 Error: (11/25/2016 10:38:05 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (11/25/2016 10:30:13 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 17347 Error: (11/25/2016 10:30:13 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 17347 Error: (11/25/2016 10:30:13 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (11/25/2016 10:30:12 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 16302 Systemfehler: ============= Error: (11/25/2016 10:38:32 PM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: 0 Bytes Speicher konnten durch den DNS-Proxy-Agent nicht zugeordnet werden. Möglicherweise ist nicht genügend Speicher vorhanden oder ein interner Fehler ist im Speicher-Manager aufgetreten. Error: (11/25/2016 10:38:29 PM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: 0 Bytes Speicher konnten durch den DNS-Proxy-Agent nicht zugeordnet werden. Möglicherweise ist nicht genügend Speicher vorhanden oder ein interner Fehler ist im Speicher-Manager aufgetreten. Error: (11/25/2016 09:38:01 PM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "NTRU TSS v1.2.1.37 TCS" ist von folgendem Dienst abhängig: TBS. Dieser Dienst ist eventuell nicht installiert. Error: (11/25/2016 08:43:59 PM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: 0 Bytes Speicher konnten durch den DNS-Proxy-Agent nicht zugeordnet werden. Möglicherweise ist nicht genügend Speicher vorhanden oder ein interner Fehler ist im Speicher-Manager aufgetreten. Error: (11/24/2016 01:49:36 AM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: 0 Bytes Speicher konnten durch den DNS-Proxy-Agent nicht zugeordnet werden. Möglicherweise ist nicht genügend Speicher vorhanden oder ein interner Fehler ist im Speicher-Manager aufgetreten. Error: (11/23/2016 08:02:37 PM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: 0 Bytes Speicher konnten durch den DNS-Proxy-Agent nicht zugeordnet werden. Möglicherweise ist nicht genügend Speicher vorhanden oder ein interner Fehler ist im Speicher-Manager aufgetreten. Error: (11/21/2016 06:29:29 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst AntiVirSchedulerService erreicht. Error: (11/21/2016 12:03:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "SQL Server (KNXETS4)" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (11/21/2016 12:03:55 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst SQL Server (KNXETS4) erreicht. Error: (11/21/2016 12:02:23 PM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "NTRU TSS v1.2.1.37 TCS" ist von folgendem Dienst abhängig: TBS. Dieser Dienst ist eventuell nicht installiert. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz Prozentuale Nutzung des RAM: 68% Installierter physikalischer RAM: 3875.6 MB Verfügbarer physikalischer RAM: 1210 MB Summe virtueller Speicher: 7749.38 MB Verfügbarer virtueller Speicher: 4316.58 MB ==================== Laufwerke ================================ Drive c: (ACER) (Fixed) (Total:451.01 GB) (Free:291.2 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: BCEAEE5A) Partition 1: (Not Active) - (Size=14.6 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=451 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
26.11.2016, 00:42 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 Rechner ist sehr langsam Wann wurden zuletzt WindowsUpdates eingespielt?
__________________ Logfiles bitte immer in CODE-Tags posten |
26.11.2016, 08:42 | #5 |
| Windows 7 Rechner ist sehr langsam Ich habe das automatische Installieren von Updates aktivitert, daher weiß ich das nicht genau. Wenn ich allerdings manuell nach Updates suchen lasse, passiert nichts. Es wird nach Updates gesucht, allerdings passiert dann garnichts mehr. |
27.11.2016, 14:25 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 Rechner ist sehr langsam Windows zeigt an, wann zuletzt Updates installiert wurden, aber egal. Jedenfalls ist das WU Problem in Windows 7 wahrlich nichts neues. Entweder musst du damit leben, auf W10 umsteigen oder versuchen es zu beheben => Suche nach Windows Updates dauert ewig? - Eine mögliche Lösung
__________________ --> Windows 7 Rechner ist sehr langsam |
27.11.2016, 17:40 | #7 |
| Windows 7 Rechner ist sehr langsam Ok, das heißt ich habe keine Schadsoftware außer Windows auf dem Rechner? 🙂 |
Themen zu Windows 7 Rechner ist sehr langsam |
antivir, avira, avira antivir, belegt, cpu, dauert, eingabe, einiger, ergebnis, forum, langsam, laptop, lastet, länger, manager, programme, rechner, scan, starte, starten, svchost.exe, tastatur, virenscan, windows, windows 7 |