|
Plagegeister aller Art und deren Bekämpfung: 2 registryeinträge lassen sich nicht entfernenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
28.11.2016, 11:16 | #1 |
| 2 registryeinträge lassen sich nicht entfernen Hallo, ich habe 2 registryreinträge mit adw cleaner gefunden die ich nicht entfernen kann. Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 28/11/2016 um 09:01:56 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-11-28.1 [Lokal] # Betriebssystem : Windows 10 Home (X64) # Benutzername : Simala - DESKTOP-A4CPB1B # Gestartet von : C:\Users\Simala\Desktop\Tools\adwcleaner_6.030.exe # Modus: Suchlauf # Unterstützung : https://www.malwarebytes.com/support ***** [ Dienste ] ***** Keine schädlichen Dienste gefunden. ***** [ Ordner ] ***** Keine schädlichen Ordner gefunden. ***** [ Dateien ] ***** Keine schädlichen Dateien gefunden. ***** [ DLL ] ***** Keine infizierten DLLs gefunden. ***** [ WMI ] ***** Keine schädlichen Schlüssel gefunden. ***** [ Verknüpfungen ] ***** Keine infizierten Verknüpfungen gefunden. ***** [ Aufgabenplanung ] ***** Keine schädlichen Aufgaben gefunden. ***** [ Registrierungsdatenbank ] ***** Schlüssel Gefunden: KLM\SOFTWARE\CLASSES\APPID\{93469602-4134-4012-A6BC-3E73B9855F90} Schlüssel Gefunden: KLM\SOFTWARE\CLASSES\APPID\WinZipSmartMonitorService.exe ***** [ Internetbrowser ] ***** Keine schädlichen Elemente in Firefox basierten Browsern gefunden. Keine schädlichen Elemente in Chrome basierten Browsern gefunden. ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [1821 Bytes] - [29/03/2016 23:53:47] C:\AdwCleaner\AdwCleaner[C2].txt - [2981 Bytes] - [22/05/2016 08:08:03] C:\AdwCleaner\AdwCleaner[C3].txt - [2703 Bytes] - [20/08/2016 00:09:12] C:\AdwCleaner\AdwCleaner[C4].txt - [3747 Bytes] - [25/09/2016 09:25:30] C:\AdwCleaner\AdwCleaner[C5].txt - [4162 Bytes] - [19/10/2016 06:16:49] C:\AdwCleaner\AdwCleaner[C6].txt - [4966 Bytes] - [31/10/2016 20:56:37] C:\AdwCleaner\AdwCleaner[C7].txt - [5977 Bytes] - [28/11/2016 09:00:06] C:\AdwCleaner\AdwCleaner[S10].txt - [3102 Bytes] - [22/05/2016 08:07:13] C:\AdwCleaner\AdwCleaner[S11].txt - [2033 Bytes] - [22/05/2016 08:09:43] C:\AdwCleaner\AdwCleaner[S12].txt - [2107 Bytes] - [24/05/2016 11:07:32] C:\AdwCleaner\AdwCleaner[S13].txt - [2182 Bytes] - [30/05/2016 22:58:20] C:\AdwCleaner\AdwCleaner[S14].txt - [2259 Bytes] - [16/06/2016 18:01:59] C:\AdwCleaner\AdwCleaner[S15].txt - [2333 Bytes] - [27/06/2016 14:46:41] C:\AdwCleaner\AdwCleaner[S16].txt - [3042 Bytes] - [17/01/2016 16:45:39] C:\AdwCleaner\AdwCleaner[S17].txt - [3047 Bytes] - [18/01/2016 16:10:26] C:\AdwCleaner\AdwCleaner[S18].txt - [3048 Bytes] - [21/01/2016 16:07:20] C:\AdwCleaner\AdwCleaner[S19].txt - [3049 Bytes] - [28/01/2016 09:59:35] C:\AdwCleaner\AdwCleaner[S1].txt - [2203 Bytes] - [02/02/2016 22:19:19] C:\AdwCleaner\AdwCleaner[S20].txt - [3050 Bytes] - [29/01/2016 12:06:13] C:\AdwCleaner\AdwCleaner[S21].txt - [10173 Bytes] - [20/08/2016 00:06:23] C:\AdwCleaner\AdwCleaner[S22].txt - [10248 Bytes] - [20/08/2016 00:09:03] C:\AdwCleaner\AdwCleaner[S23].txt - [2985 Bytes] - [20/08/2016 00:12:18] C:\AdwCleaner\AdwCleaner[S24].txt - [3254 Bytes] - [22/08/2016 08:09:01] C:\AdwCleaner\AdwCleaner[S25].txt - [3330 Bytes] - [26/08/2016 15:54:47] C:\AdwCleaner\AdwCleaner[S26].txt - [3404 Bytes] - [27/08/2016 15:30:58] C:\AdwCleaner\AdwCleaner[S27].txt - [3478 Bytes] - [01/09/2016 13:06:51] C:\AdwCleaner\AdwCleaner[S28].txt - [3552 Bytes] - [06/09/2016 08:37:04] C:\AdwCleaner\AdwCleaner[S29].txt - [3626 Bytes] - [10/09/2016 22:09:03] C:\AdwCleaner\AdwCleaner[S2].txt - [2204 Bytes] - [06/02/2016 22:14:57] C:\AdwCleaner\AdwCleaner[S30].txt - [3700 Bytes] - [19/09/2016 23:36:09] C:\AdwCleaner\AdwCleaner[S31].txt - [3774 Bytes] - [25/09/2016 08:35:32] C:\AdwCleaner\AdwCleaner[S32].txt - [4658 Bytes] - [25/09/2016 09:19:15] C:\AdwCleaner\AdwCleaner[S33].txt - [4005 Bytes] - [25/09/2016 09:25:16] C:\AdwCleaner\AdwCleaner[S34].txt - [4068 Bytes] - [25/09/2016 09:27:21] C:\AdwCleaner\AdwCleaner[S35].txt - [4143 Bytes] - [25/09/2016 10:48:36] C:\AdwCleaner\AdwCleaner[S36].txt - [4217 Bytes] - [25/09/2016 12:31:41] C:\AdwCleaner\AdwCleaner[S37].txt - [4291 Bytes] - [12/10/2016 08:38:36] C:\AdwCleaner\AdwCleaner[S38].txt - [4365 Bytes] - [17/10/2016 15:15:42] C:\AdwCleaner\AdwCleaner[S39].txt - [4424 Bytes] - [19/10/2016 06:16:37] C:\AdwCleaner\AdwCleaner[S3].txt - [2365 Bytes] - [09/02/2016 14:37:44] C:\AdwCleaner\AdwCleaner[S40].txt - [4585 Bytes] - [19/10/2016 06:19:02] C:\AdwCleaner\AdwCleaner[S41].txt - [4659 Bytes] - [19/10/2016 06:23:07] C:\AdwCleaner\AdwCleaner[S42].txt - [4734 Bytes] - [19/10/2016 06:28:51] C:\AdwCleaner\AdwCleaner[S43].txt - [4808 Bytes] - [19/10/2016 15:09:31] C:\AdwCleaner\AdwCleaner[S44].txt - [4896 Bytes] - [22/10/2016 22:49:29] C:\AdwCleaner\AdwCleaner[S45].txt - [4970 Bytes] - [28/10/2016 00:04:08] C:\AdwCleaner\AdwCleaner[S46].txt - [5160 Bytes] - [31/10/2016 20:51:51] C:\AdwCleaner\AdwCleaner[S47].txt - [5190 Bytes] - [31/10/2016 20:58:52] C:\AdwCleaner\AdwCleaner[S48].txt - [5265 Bytes] - [01/11/2016 11:53:04] C:\AdwCleaner\AdwCleaner[S49].txt - [5339 Bytes] - [02/11/2016 11:04:24] C:\AdwCleaner\AdwCleaner[S4].txt - [2279 Bytes] - [15/02/2016 01:33:14] C:\AdwCleaner\AdwCleaner[S50].txt - [5413 Bytes] - [03/11/2016 00:45:27] C:\AdwCleaner\AdwCleaner[S51].txt - [5487 Bytes] - [04/11/2016 09:07:08] C:\AdwCleaner\AdwCleaner[S52].txt - [5561 Bytes] - [08/11/2016 01:24:42] C:\AdwCleaner\AdwCleaner[S53].txt - [5635 Bytes] - [08/11/2016 02:37:42] C:\AdwCleaner\AdwCleaner[S54].txt - [5709 Bytes] - [09/11/2016 11:43:57] C:\AdwCleaner\AdwCleaner[S55].txt - [5783 Bytes] - [09/11/2016 13:54:08] C:\AdwCleaner\AdwCleaner[S56].txt - [5857 Bytes] - [10/11/2016 16:08:57] C:\AdwCleaner\AdwCleaner[S57].txt - [5931 Bytes] - [16/11/2016 18:43:47] C:\AdwCleaner\AdwCleaner[S58].txt - [6005 Bytes] - [26/11/2016 03:30:42] C:\AdwCleaner\AdwCleaner[S59].txt - [6176 Bytes] - [28/11/2016 08:59:45] C:\AdwCleaner\AdwCleaner[S5].txt - [3037 Bytes] - [24/02/2016 09:00:09] C:\AdwCleaner\AdwCleaner[S60].txt - [5876 Bytes] - [28/11/2016 09:01:56] C:\AdwCleaner\AdwCleaner[S6].txt - [4751 Bytes] - [26/02/2016 01:06:22] C:\AdwCleaner\AdwCleaner[S7].txt - [3307 Bytes] - [17/04/2016 16:59:33] C:\AdwCleaner\AdwCleaner[S8].txt - [1739 Bytes] - [11/05/2016 22:46:13] C:\AdwCleaner\AdwCleaner[S9].txt - [1812 Bytes] - [21/05/2016 04:20:50] ########## EOF - C:\AdwCleaner\AdwCleaner[S60].txt - [6242 Bytes] ########## Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 27-11-2016 durchgeführt von Simala (Administrator) auf DESKTOP-A4CPB1B (28-11-2016 11:03:20) Gestartet von C:\Users\Simala\Desktop Geladene Profile: Simala (Verfügbare Profile: Simala) Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienFXWindowsService.exe (MSI) C:\Program Files (x86)\MSI\ODD Monitor\ODD_Monitor.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Alienware) C:\Program Files\Alienware\Graphics Amplifier\GraphicsAmplifierWindowsService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Ready Mode Technology\IRMTService.exe (MSI) C:\Program Files\Alienware\OC Controls\MSIControlService.exe (Alienware) C:\Program Files\Alienware\Command Center\ThermalsWindowsService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (MSI) C:\Program Files\Alienware\OC Controls\ClockGen\MSIClockService.exe (MSI) C:\Program Files\Alienware\OC Controls\SMBus\MSISMBService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe (Electronic Arts) D:\origin\OriginWebHelperService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (MSI) C:\Program Files\Alienware\OC Controls\ClockGen\CPU_Frequency\CPU_Frequency.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCServiceController.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (Alienware) C:\Program Files\Alienware\Command Center\ThermalController.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienFusionController.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher32.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher64.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienFusionService.exe (Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe (Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Dell Inc.) C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe (Microsoft) C:\Program Files\WindowsApps\Microsoft.BingNews_4.17.74.0_x86__8wekyb3d8bbwe\Microsoft.Msn.News.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Inc.) C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.12.11142.0_x64__8wekyb3d8bbwe\Solitaire.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8498392 2015-07-14] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-24] (Intel Corporation) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [] => [X] HKLM\...\Run: [Command Center Controllers] => C:\Program Files\Alienware\Command Center\AWCCStartupOrchestrator.exe [35576 2015-09-15] (Alienware) HKLM-x32\...\Run: [OC Controls] => C:\Program Files\Alienware\OC Controls\StartCommandCenter.exe [801744 2015-02-09] (MSI) HKLM-x32\...\Run: [RoccatKone+] => D:\Tools\Maus\Kone[+]Monitor.EXE [557056 2013-10-26] (ROCCAT GmbH) HKLM-x32\...\Run: [PowerDVD16Agent] => D:\Tools\dvd\PowerDVD16\PowerDVD16Agent.exe [516296 2016-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation) HKU\S-1-5-21-2678688967-2304268255-594235407-1001\...\Run: [World of Warships] => D:\Games\World_of_Warships\WargamingGameUpdater.exe [3134216 2016-09-08] (Wargaming.net) HKU\S-1-5-21-2678688967-2304268255-594235407-1001\...\RunOnce: [Uninstall C:\Users\Simala\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Simala\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64" HKU\S-1-5-21-2678688967-2304268255-594235407-1001\...\MountPoints2: {80282159-219b-11e6-9bf2-44a842fbf9bf} - "E:\autorun.exe" HKU\S-1-5-21-2678688967-2304268255-594235407-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\scrnsave.scr [37376 2016-07-16] (Microsoft Corporation) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{26dd9851-d8b5-47b2-90a2-4b669802a028}: [DhcpNameServer] 10.72.0.72 10.72.0.73 Tcpip\..\Interfaces\{53f5f670-4e77-4f48-84dc-54df3500c76f}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{a55fef16-e384-4d37-8015-e02dfc758378}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKU\S-1-5-21-2678688967-2304268255-594235407-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell15.msn.com/?pc=DCTE HKU\S-1-5-21-2678688967-2304268255-594235407-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell15.msn.com/?pc=DCTE HKU\S-1-5-21-2678688967-2304268255-594235407-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.alienwarearena.com/welcome-de SearchScopes: HKLM -> {fcd9f10e-0daa-405f-bca0-0dd3f37c59d9} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-1c1986f5&q={searchTerms} SearchScopes: HKU\S-1-5-21-2678688967-2304268255-594235407-1001 -> {2EE9BAD9-5AD4-43EC-BF37-A0B6E8A12C04} URL = SearchScopes: HKU\S-1-5-21-2678688967-2304268255-594235407-1001 -> {fcd9f10e-0daa-405f-bca0-0dd3f37c59d9} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-1c1986f5&q={searchTerms} BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-19] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-19] (Oracle Corporation) FireFox: ======== FF DefaultProfile: c2prw49m.default FF ProfilePath: C:\Users\Simala\AppData\Roaming\Mozilla\Firefox\Profiles\c2prw49m.default [2016-11-28] FF Homepage: Mozilla\Firefox\Profiles\c2prw49m.default -> startpage.de FF NetworkProxy: Mozilla\Firefox\Profiles\c2prw49m.default -> type", 0 FF Extension: (MEGA) - C:\Users\Simala\AppData\Roaming\Mozilla\Firefox\Profiles\c2prw49m.default\Extensions\firefox@mega.co.nz.xpi [2016-11-23] FF Extension: (NoScript) - C:\Users\Simala\AppData\Roaming\Mozilla\Firefox\Profiles\c2prw49m.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-11-23] FF Extension: (Playit.pk Official) - C:\Users\Simala\AppData\Roaming\Mozilla\Firefox\Profiles\c2prw49m.default\Extensions\{7c644fdd-66eb-40c1-a507-7a938c106a83}.xpi [2016-10-06] FF Extension: (Adblock Plus) - C:\Users\Simala\AppData\Roaming\Mozilla\Firefox\Profiles\c2prw49m.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-24] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-11] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-11] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-10-06] (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-19] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-19] (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-10-19] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-10-19] (Google Inc.) ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AlienFXWindowsService; C:\Program Files\Alienware\Command Center\AlienFXWindowsService.exe [36088 2015-09-15] (Alienware) S3 cplspcon; C:\WINDOWS\system32\IntelCpHDCPSvc.exe [606112 2016-01-17] (Intel Corporation) R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [137968 2015-09-23] (Dell Inc.) R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [153960 2016-04-29] (Dell) R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2572024 2016-06-23] (Dell Inc.) R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [202488 2016-06-23] (Dell Inc.) R2 GraphicsAmplifierWindowsService; C:\Program Files\Alienware\Graphics Amplifier\GraphicsAmplifierWindowsService.exe [36112 2015-07-02] (Alienware) U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2016-08-30] (Hi-Rez Studios) [Datei ist nicht signiert] R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-24] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [359856 2016-01-17] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert] S3 ioloEnergyBooster; C:\Program Files\Alienware\Command Center\ioloEnergyBooster.exe [6145872 2012-11-01] (iolo technologies, LLC) R2 IRMTService; c:\Program Files\Intel\Intel(R) Ready Mode Technology\IRMTService.exe [181544 2015-04-30] (Intel Corporation) S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert] S3 iumsvc; c:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-11] (Intel Corporation) R2 MSIClock_CC; C:\Program Files\Alienware\OC Controls\ClockGen\MSIClockService.exe [4012496 2015-07-01] (MSI) S3 MSICOMM_CC; C:\Program Files\Alienware\OC Controls\MSICommService.exe [2122704 2015-07-01] (MSI) S3 MSICPU_CC; C:\Program Files\Alienware\OC Controls\CPU\MSICPUService.exe [4173264 2015-07-01] (MSI) R2 MSICTL_CC; C:\Program Files\Alienware\OC Controls\MSIControlService.exe [2008016 2015-06-02] (MSI) S3 MSISaveLoad_CC; C:\Program Files\Alienware\OC Controls\MSISaveLoadService.exe [3964368 2015-02-09] (MSI) R2 MSISMB_CC; C:\Program Files\Alienware\OC Controls\SMBus\MSISMBService.exe [2066384 2015-07-01] (MSI) S3 MSIWMI_CC; C:\Program Files\Alienware\OC Controls\MSIWMIService.exe [189904 2015-02-09] (MSI) R2 MSI_ODD_Service; c:\Program Files (x86)\MSI\ODD Monitor\ODD_Monitor.exe [84432 2014-12-24] (MSI) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-10-28] () R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2016-11-17] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2016-11-17] (NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-11-17] (NVIDIA Corporation) R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712 2016-11-17] (NVIDIA Corporation) S3 Origin Client Service; D:\origin\OriginClientService.exe [2119688 2016-11-25] (Electronic Arts) R2 Origin Web Helper Service; D:\origin\OriginWebHelperService.exe [2180624 2016-11-25] (Electronic Arts) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [294616 2015-05-22] (Realtek Semiconductor) R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [31704 2016-09-09] (Dell Inc.) R2 ThermalsWindowsService; C:\Program Files\Alienware\Command Center\ThermalsWindowsService.exe [36088 2015-09-15] (Alienware) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831712 2015-10-28] (Intel® Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [23760 2015-05-22] (Dell Computer Corporation) R3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [24240 2015-05-22] (Dell Computer Corporation) R3 iaLPSS2_UART2; C:\WINDOWS\System32\drivers\iaLPSS2_UART2.sys [281896 2015-06-16] (Intel Corporation) S3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation) R3 IntelReadyModeDriver; C:\WINDOWS\System32\drivers\IntelReadyModeDriver.sys [24776 2014-01-23] (Intel Corporation) S3 LGJoyHidFilter; C:\WINDOWS\system32\drivers\LGJoyHidFilter.sys [58144 2015-06-11] (Logitech Inc.) S3 LGJoyHidLo; C:\WINDOWS\system32\drivers\LGJoyHidLo.sys [47656 2015-06-11] (Logitech Inc.) S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) S3 LGSHidFilt; C:\WINDOWS\System32\drivers\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 Netwtw04; C:\WINDOWS\System32\drivers\Netwtw04.sys [7116288 2016-07-16] (Intel Corporation) R3 NTIOLib_MSICEN; C:\Program Files\Alienware\Command Center\NTIOLib_Thermals_X64.sys [13808 2015-02-04] (MSI) S3 NTIOLib_MSICOMM_CC; C:\Program Files\Alienware\OC Controls\NTIOLib_X64.sys [13368 2012-11-19] (MSI) S3 NTIOLib_MSICPU_CC; C:\Program Files\Alienware\OC Controls\CPU\NTIOLib_X64.sys [13368 2012-11-21] (MSI) R3 NTIOLib_MSIFrequency_CC; C:\Program Files\Alienware\OC Controls\ClockGen\CPU_Frequency\NTIOLib_X64.sys [13368 2012-11-21] (MSI) S3 NTIOLib_MSIRatio_CC; C:\Program Files\Alienware\OC Controls\CPU\CPU_Ratio\NTIOLib_X64.sys [13368 2012-11-21] (MSI) R3 NTIOLib_MSISMB_CC; C:\Program Files\Alienware\OC Controls\SMBus\NTIOLib_X64.sys [13368 2012-11-19] (MSI) R3 NTIOLib_ODD_Monitor; C:\Program Files (x86)\MSI\ODD Monitor\NTIOLib_X64.sys [13776 2014-12-24] (MSI) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_desktop_ref4i.inf_amd64_8c7771910f9a20f5\nvlddmkm.sys [14174256 2016-11-18] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2016-11-17] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46016 2016-11-17] (NVIDIA Corporation) S3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [888064 2016-01-17] (Realtek ) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) R2 {41E8078B-96D9-42DC-8789-A1CF102CD880}; D:\Tools\dvd\PowerDVD16\Common\NavFilter\000.fcl [29624 2016-03-28] (CyberLink Corp.) S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-28 11:03 - 2016-11-28 11:03 - 00020299 _____ C:\Users\Simala\Desktop\FRST.txt 2016-11-28 11:00 - 2016-11-28 11:03 - 00000000 ____D C:\FRST 2016-11-28 09:35 - 2016-11-28 11:00 - 02411520 _____ (Farbar) C:\Users\Simala\Desktop\FRST64.exe 2016-11-28 09:16 - 2016-11-28 09:16 - 00001193 _____ C:\Users\Simala\Desktop\koi.txt 2016-11-28 09:08 - 2016-11-28 09:10 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-11-28 09:08 - 2016-11-28 09:08 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-11-28 09:08 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-11-28 09:08 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-11-28 09:08 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-11-28 09:07 - 2016-11-28 09:07 - 22851472 _____ (Malwarebytes ) C:\Users\Simala\Downloads\mbam-setup-2.2.1.1043.exe 2016-11-28 09:03 - 2016-11-28 09:03 - 00006325 _____ C:\Users\Simala\Desktop\AdwCleaner[S60].txt 2016-11-25 01:09 - 2016-11-17 14:45 - 00101824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2016-11-25 01:09 - 2016-11-17 14:45 - 00091584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2016-11-21 18:07 - 2016-11-21 18:07 - 00000000 ____D C:\Users\Simala\Documents\Klei 2016-11-19 05:20 - 2016-11-17 03:06 - 40123840 _____ C:\WINDOWS\system32\nvcompiler.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 35224632 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 34711096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 28203576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 10912232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 10803880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 10354800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 09158432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 08913328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 08761376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 02953152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 02586048 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 01953336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6437595.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 01585088 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6437595.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 01038904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00975296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00943552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00897080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00802768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00801560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00683640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00644112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00642576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00617880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00572888 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00438208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00394888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00390200 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00384448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00347072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2016-11-19 05:20 - 2016-11-17 03:06 - 00327408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2016-11-18 19:07 - 2016-11-18 19:07 - 00043116 _____ C:\Users\Simala\Desktop\Gruum.html 2016-11-18 07:09 - 2016-11-18 07:09 - 00002424 _____ C:\Users\Simala\Documents\cc_20161118_070907.reg 2016-11-18 07:05 - 2016-11-18 07:05 - 08576448 _____ (Piriform Ltd) C:\Users\Simala\Downloads\ccsetup524.exe 2016-11-18 06:59 - 2016-11-28 11:00 - 00000000 ____D C:\Users\Simala\AppData\LocalLow\Mozilla 2016-11-18 06:56 - 2016-11-26 00:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-11-15 23:23 - 2016-11-25 01:09 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2016-11-15 23:22 - 2016-11-11 00:51 - 01951680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6437586.dll 2016-11-15 23:22 - 2016-11-11 00:51 - 01586744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6437586.dll 2016-11-09 16:56 - 2016-11-02 13:01 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-11-09 16:56 - 2016-11-02 13:01 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2016-11-09 16:56 - 2016-11-02 12:22 - 01570672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-11-09 16:56 - 2016-11-02 12:13 - 00773720 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2016-11-09 16:56 - 2016-11-02 12:12 - 00376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2016-11-09 16:56 - 2016-11-02 12:12 - 00341344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-11-09 16:56 - 2016-11-02 12:10 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2016-11-09 16:56 - 2016-11-02 12:09 - 02257104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-11-09 16:56 - 2016-11-02 12:08 - 00576408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2016-11-09 16:56 - 2016-11-02 12:08 - 00186424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2016-11-09 16:56 - 2016-11-02 12:05 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-11-09 16:56 - 2016-11-02 12:05 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-11-09 16:56 - 2016-11-02 12:05 - 00951904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-11-09 16:56 - 2016-11-02 12:04 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-11-09 16:56 - 2016-11-02 12:03 - 00714592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2016-11-09 16:56 - 2016-11-02 12:02 - 00682816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2016-11-09 16:56 - 2016-11-02 12:02 - 00238056 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2016-11-09 16:56 - 2016-11-02 12:01 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-11-09 16:56 - 2016-11-02 12:01 - 00545936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-11-09 16:56 - 2016-11-02 12:00 - 08156080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-11-09 16:56 - 2016-11-02 12:00 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-11-09 16:56 - 2016-11-02 11:50 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-11-09 16:56 - 2016-11-02 11:49 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2016-11-09 16:56 - 2016-11-02 11:49 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2016-11-09 16:56 - 2016-11-02 11:47 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2016-11-09 16:56 - 2016-11-02 11:46 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2016-11-09 16:56 - 2016-11-02 11:44 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthExt.dll 2016-11-09 16:56 - 2016-11-02 11:42 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll 2016-11-09 16:56 - 2016-11-02 11:42 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll 2016-11-09 16:56 - 2016-11-02 11:40 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll 2016-11-09 16:56 - 2016-11-02 11:39 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll 2016-11-09 16:56 - 2016-11-02 11:38 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2016-11-09 16:56 - 2016-11-02 11:36 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-11-09 16:56 - 2016-11-02 11:33 - 12349952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-11-09 16:56 - 2016-11-02 11:33 - 03307520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-11-09 16:56 - 2016-11-02 11:32 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll 2016-11-09 16:56 - 2016-11-02 11:31 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe 2016-11-09 16:56 - 2016-11-02 11:31 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll 2016-11-09 16:56 - 2016-11-02 11:30 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll 2016-11-09 16:56 - 2016-11-02 11:30 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2016-11-09 16:56 - 2016-11-02 11:29 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2016-11-09 16:56 - 2016-11-02 11:29 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll 2016-11-09 16:56 - 2016-11-02 11:29 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll 2016-11-09 16:56 - 2016-11-02 11:28 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2016-11-09 16:56 - 2016-11-02 11:28 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll 2016-11-09 16:56 - 2016-11-02 11:28 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2016-11-09 16:56 - 2016-11-02 11:28 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2016-11-09 16:56 - 2016-11-02 11:28 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll 2016-11-09 16:56 - 2016-11-02 11:28 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2016-11-09 16:56 - 2016-11-02 11:28 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chartv.dll 2016-11-09 16:56 - 2016-11-02 11:27 - 02458112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll 2016-11-09 16:56 - 2016-11-02 11:27 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2016-11-09 16:56 - 2016-11-02 11:27 - 00580608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll 2016-11-09 16:56 - 2016-11-02 11:27 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2016-11-09 16:56 - 2016-11-02 11:27 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll 2016-11-09 16:56 - 2016-11-02 11:26 - 02747392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2016-11-09 16:56 - 2016-11-02 11:26 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll 2016-11-09 16:56 - 2016-11-02 11:26 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2016-11-09 16:56 - 2016-11-02 11:26 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-11-09 16:56 - 2016-11-02 11:26 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll 2016-11-09 16:56 - 2016-11-02 11:26 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll 2016-11-09 16:56 - 2016-11-02 11:26 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll 2016-11-09 16:56 - 2016-11-02 11:25 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-11-09 16:56 - 2016-11-02 11:25 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2016-11-09 16:56 - 2016-11-02 11:23 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys 2016-11-09 16:56 - 2016-11-02 11:22 - 13441024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-11-09 16:56 - 2016-11-02 11:19 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll 2016-11-09 16:56 - 2016-11-02 11:19 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2016-11-09 16:56 - 2016-11-02 11:18 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2016-11-09 16:56 - 2016-11-02 11:18 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll 2016-11-09 16:56 - 2016-11-02 11:17 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-11-09 16:56 - 2016-11-02 11:17 - 00909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-11-09 16:56 - 2016-11-02 11:16 - 03133440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2016-11-09 16:56 - 2016-11-02 11:16 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2016-11-09 16:56 - 2016-11-02 11:16 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2016-11-09 16:56 - 2016-11-02 11:16 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll 2016-11-09 16:56 - 2016-11-02 11:15 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll 2016-11-09 16:56 - 2016-11-02 11:14 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-11-09 16:56 - 2016-11-02 09:20 - 00446896 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-11-09 16:55 - 2016-11-02 12:22 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2016-11-09 16:55 - 2016-11-02 12:20 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-11-09 16:55 - 2016-11-02 12:20 - 00378720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-11-09 16:55 - 2016-11-02 12:15 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-11-09 16:55 - 2016-11-02 12:15 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-11-09 16:55 - 2016-11-02 12:14 - 07816544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-11-09 16:55 - 2016-11-02 12:13 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-11-09 16:55 - 2016-11-02 12:13 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-11-09 16:55 - 2016-11-02 12:13 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-11-09 16:55 - 2016-11-02 12:13 - 00423776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-11-09 16:55 - 2016-11-02 12:12 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-11-09 16:55 - 2016-11-02 12:08 - 00602464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-11-09 16:55 - 2016-11-02 12:08 - 00111968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-11-09 16:55 - 2016-11-02 12:05 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-11-09 16:55 - 2016-11-02 12:05 - 06657176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-11-09 16:55 - 2016-11-02 12:05 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-11-09 16:55 - 2016-11-02 12:04 - 02678056 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2016-11-09 16:55 - 2016-11-02 12:04 - 00596832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2016-11-09 16:55 - 2016-11-02 12:03 - 02750936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-11-09 16:55 - 2016-11-02 12:02 - 00848736 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-11-09 16:55 - 2016-11-02 12:02 - 00148832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-11-09 16:55 - 2016-11-02 12:01 - 01425000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2016-11-09 16:55 - 2016-11-02 12:01 - 01415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2016-11-09 16:55 - 2016-11-02 12:01 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll 2016-11-09 16:55 - 2016-11-02 12:01 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2016-11-09 16:55 - 2016-11-02 12:00 - 22223968 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-11-09 16:55 - 2016-11-02 12:00 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-11-09 16:55 - 2016-11-02 12:00 - 01061968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-11-09 16:55 - 2016-11-02 12:00 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2016-11-09 16:55 - 2016-11-02 11:59 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-11-09 16:55 - 2016-11-02 11:56 - 01609920 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2016-11-09 16:55 - 2016-11-02 11:56 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2016-11-09 16:55 - 2016-11-02 11:56 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-11-09 16:55 - 2016-11-02 11:56 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-11-09 16:55 - 2016-11-02 11:56 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll 2016-11-09 16:55 - 2016-11-02 11:55 - 00048992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys 2016-11-09 16:55 - 2016-11-02 11:48 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll 2016-11-09 16:55 - 2016-11-02 11:48 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2016-11-09 16:55 - 2016-11-02 11:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll 2016-11-09 16:55 - 2016-11-02 11:47 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2016-11-09 16:55 - 2016-11-02 11:47 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll 2016-11-09 16:55 - 2016-11-02 11:46 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll 2016-11-09 16:55 - 2016-11-02 11:45 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2016-11-09 16:55 - 2016-11-02 11:45 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2016-11-09 16:55 - 2016-11-02 11:45 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll 2016-11-09 16:55 - 2016-11-02 11:44 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2016-11-09 16:55 - 2016-11-02 11:44 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-11-09 16:55 - 2016-11-02 11:43 - 00731136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll 2016-11-09 16:55 - 2016-11-02 11:43 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-11-09 16:55 - 2016-11-02 11:43 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2016-11-09 16:55 - 2016-11-02 11:43 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll 2016-11-09 16:55 - 2016-11-02 11:43 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2016-11-09 16:55 - 2016-11-02 11:42 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2016-11-09 16:55 - 2016-11-02 11:42 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenterCPL.dll 2016-11-09 16:55 - 2016-11-02 11:42 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-11-09 16:55 - 2016-11-02 11:42 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2016-11-09 16:55 - 2016-11-02 11:42 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2016-11-09 16:55 - 2016-11-02 11:41 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2016-11-09 16:55 - 2016-11-02 11:40 - 00548352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll 2016-11-09 16:55 - 2016-11-02 11:40 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-11-09 16:55 - 2016-11-02 11:39 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2016-11-09 16:55 - 2016-11-02 11:39 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll 2016-11-09 16:55 - 2016-11-02 11:38 - 22563840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-11-09 16:55 - 2016-11-02 11:37 - 19415040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-11-09 16:55 - 2016-11-02 11:36 - 19415552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-11-09 16:55 - 2016-11-02 11:36 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetailsUpdate.dll 2016-11-09 16:55 - 2016-11-02 11:35 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe 2016-11-09 16:55 - 2016-11-02 11:34 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2016-11-09 16:55 - 2016-11-02 11:34 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-11-09 16:55 - 2016-11-02 11:33 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-11-09 16:55 - 2016-11-02 11:32 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-11-09 16:55 - 2016-11-02 11:31 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2016-11-09 16:55 - 2016-11-02 11:31 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2016-11-09 16:55 - 2016-11-02 11:31 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll 2016-11-09 16:55 - 2016-11-02 11:31 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-11-09 16:55 - 2016-11-02 11:31 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2016-11-09 16:55 - 2016-11-02 11:31 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-11-09 16:55 - 2016-11-02 11:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-11-09 16:55 - 2016-11-02 11:31 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-11-09 16:55 - 2016-11-02 11:30 - 12175360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-11-09 16:55 - 2016-11-02 11:30 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-11-09 16:55 - 2016-11-02 11:30 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll 2016-11-09 16:55 - 2016-11-02 11:30 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll 2016-11-09 16:55 - 2016-11-02 11:30 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2016-11-09 16:55 - 2016-11-02 11:30 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-11-09 16:55 - 2016-11-02 11:30 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll 2016-11-09 16:55 - 2016-11-02 11:29 - 07469056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-11-09 16:55 - 2016-11-02 11:29 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-11-09 16:55 - 2016-11-02 11:29 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2016-11-09 16:55 - 2016-11-02 11:29 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2016-11-09 16:55 - 2016-11-02 11:29 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll 2016-11-09 16:55 - 2016-11-02 11:29 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2016-11-09 16:55 - 2016-11-02 11:29 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2016-11-09 16:55 - 2016-11-02 11:29 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-11-09 16:55 - 2016-11-02 11:29 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2016-11-09 16:55 - 2016-11-02 11:28 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2016-11-09 16:55 - 2016-11-02 11:28 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2016-11-09 16:55 - 2016-11-02 11:27 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-11-09 16:55 - 2016-11-02 11:27 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll 2016-11-09 16:55 - 2016-11-02 11:27 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-11-09 16:55 - 2016-11-02 11:27 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-11-09 16:55 - 2016-11-02 11:27 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-11-09 16:55 - 2016-11-02 11:26 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-11-09 16:55 - 2016-11-02 11:26 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-11-09 16:55 - 2016-11-02 11:26 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2016-11-09 16:55 - 2016-11-02 11:26 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2016-11-09 16:55 - 2016-11-02 11:26 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll 2016-11-09 16:55 - 2016-11-02 11:26 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll 2016-11-09 16:55 - 2016-11-02 11:26 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-11-09 16:55 - 2016-11-02 11:25 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-11-09 16:55 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2016-11-09 16:55 - 2016-11-02 11:25 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll 2016-11-09 16:55 - 2016-11-02 11:25 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll 2016-11-09 16:55 - 2016-11-02 11:25 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-11-09 16:55 - 2016-11-02 11:25 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll 2016-11-09 16:55 - 2016-11-02 11:24 - 03778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-11-09 16:55 - 2016-11-02 11:24 - 00940032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll 2016-11-09 16:55 - 2016-11-02 11:23 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2016-11-09 16:55 - 2016-11-02 11:23 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2016-11-09 16:55 - 2016-11-02 11:23 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2016-11-09 16:55 - 2016-11-02 11:23 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll 2016-11-09 16:55 - 2016-11-02 11:23 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetailsUpdate.dll 2016-11-09 16:55 - 2016-11-02 11:22 - 13081600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-11-09 16:55 - 2016-11-02 11:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-11-09 16:55 - 2016-11-02 11:22 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe 2016-11-09 16:55 - 2016-11-02 11:22 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-11-09 16:55 - 2016-11-02 11:21 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2016-11-09 16:55 - 2016-11-02 11:21 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-11-09 16:55 - 2016-11-02 11:20 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-11-09 16:55 - 2016-11-02 11:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll 2016-11-09 16:55 - 2016-11-02 11:19 - 08127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-11-09 16:55 - 2016-11-02 11:19 - 08075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-11-09 16:55 - 2016-11-02 11:19 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2016-11-09 16:55 - 2016-11-02 11:19 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2016-11-09 16:55 - 2016-11-02 11:19 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2016-11-09 16:55 - 2016-11-02 11:19 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll 2016-11-09 16:55 - 2016-11-02 11:18 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2016-11-09 16:55 - 2016-11-02 11:18 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll 2016-11-09 16:55 - 2016-11-02 11:17 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-11-09 16:55 - 2016-11-02 11:17 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2016-11-09 16:55 - 2016-11-02 11:17 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2016-11-09 16:55 - 2016-11-02 11:17 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 04148736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 02512384 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-11-09 16:55 - 2016-11-02 11:15 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2016-11-09 16:55 - 2016-11-02 11:15 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-11-09 16:55 - 2016-11-02 11:15 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll 2016-11-09 16:55 - 2016-11-02 11:15 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-11-09 16:55 - 2016-11-02 11:15 - 01348608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-11-09 16:55 - 2016-11-02 11:15 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2016-11-09 16:55 - 2016-11-02 11:13 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2016-11-09 16:55 - 2016-11-02 11:13 - 03299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2016-11-09 16:55 - 2016-11-02 11:13 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll 2016-11-09 16:55 - 2016-11-02 10:11 - 00788624 _____ C:\WINDOWS\SysWOW64\locale.nls 2016-11-09 16:55 - 2016-11-02 10:11 - 00788624 _____ C:\WINDOWS\system32\locale.nls 2016-11-09 16:55 - 2016-08-02 05:30 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-11-05 08:36 - 2016-11-05 08:37 - 00000022 _____ C:\Users\Simala\Downloads\CA Enhanced Main Menu 1.0.zip 2016-11-02 11:06 - 2016-11-02 11:06 - 00011534 _____ C:\Users\Simala\Documents\cc_20161102_110639.reg 2016-11-01 01:14 - 2016-11-01 10:05 - 00000000 ____D C:\Users\Simala\Downloads\Estern2014 2016-10-31 10:46 - 2016-10-31 16:57 - 00000000 ____D C:\Users\Simala\Downloads\Von Toten und Untoten Handouts 2016-10-31 10:41 - 2016-10-31 16:57 - 00000000 ____D C:\Users\Simala\Downloads\vontotenunduntoten 2016-10-31 10:13 - 2016-10-31 16:57 - 00000000 ____D C:\Users\Simala\Downloads\tractcontradaem 2016-10-31 08:46 - 2016-11-02 11:01 - 00000000 ____D C:\Users\Simala\Downloads\Aventurische Rüstkammer 2016-10-31 08:38 - 2016-11-05 08:38 - 00000000 ____D C:\Users\Simala\Desktop\Verträge ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-28 10:56 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF 2016-11-28 09:17 - 2015-11-30 16:01 - 00000000 ___RD C:\Users\Simala\Desktop\Tools 2016-11-28 09:07 - 2016-07-16 23:51 - 00967992 _____ C:\WINDOWS\system32\perfh007.dat 2016-11-28 09:07 - 2016-07-16 23:51 - 00224352 _____ C:\WINDOWS\system32\perfc007.dat 2016-11-28 09:07 - 2015-10-13 20:36 - 02346582 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-11-28 09:06 - 2015-12-03 02:35 - 00000000 ____D C:\AdwCleaner 2016-11-28 09:04 - 2016-08-09 10:46 - 00000000 ____D C:\ProgramData\NVIDIA 2016-11-28 09:04 - 2015-12-25 08:04 - 00000000 ____D C:\Users\Simala\AppData\Local\CrashDumps 2016-11-28 09:04 - 2015-10-13 20:47 - 00000000 ____D C:\Program Files (x86)\Steam 2016-11-28 09:04 - 2015-10-13 20:47 - 00000000 ____D C:\MSI 2016-11-28 09:03 - 2016-09-07 15:16 - 00000000 ____D C:\Program Files (x86)\Hi-Rez Studios 2016-11-28 09:03 - 2016-08-09 10:50 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-11-28 09:03 - 2016-08-09 10:45 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-11-28 09:03 - 2016-07-16 07:04 - 00262144 _____ C:\WINDOWS\system32\config\BBI 2016-11-28 09:03 - 2015-11-30 15:15 - 00000000 __SHD C:\Users\Simala\IntelGraphicsProfiles 2016-11-28 09:00 - 2016-08-09 10:46 - 00000000 ____D C:\Users\Simala 2016-11-28 02:18 - 2016-02-14 19:47 - 00000000 ____D C:\ProgramData\Origin 2016-11-28 02:14 - 2016-02-14 19:48 - 00000000 ____D C:\Users\Simala\AppData\Roaming\Origin 2016-11-27 22:58 - 2016-08-09 10:45 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-11-27 12:50 - 2015-11-30 17:56 - 00000000 ____D C:\Users\Simala\AppData\Local\Battle.net 2016-11-27 01:30 - 2016-01-01 09:52 - 00000000 ____D C:\Users\Simala\AppData\Roaming\vlc 2016-11-26 03:31 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2016-11-26 02:11 - 2015-12-20 10:34 - 00000000 ____D C:\Users\Simala\AppData\Local\JDownloader v2.0 2016-11-26 00:38 - 2016-03-19 09:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-25 01:10 - 2016-09-09 23:59 - 00003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-11-25 01:10 - 2016-08-09 10:46 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-11-25 01:09 - 2016-09-20 17:57 - 00003752 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-11-25 01:09 - 2016-09-09 23:59 - 00004004 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-11-25 01:09 - 2016-09-09 23:59 - 00003976 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-11-25 01:09 - 2016-09-09 23:59 - 00003914 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-11-25 01:09 - 2016-09-09 23:59 - 00003710 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2016-11-25 01:09 - 2016-08-09 10:45 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2016-11-25 01:09 - 2016-08-09 10:45 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2016-11-24 09:26 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-11-23 06:37 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-11-21 18:04 - 2015-11-30 16:01 - 00000000 ____D C:\Users\Simala\Desktop\Games 2016-11-19 05:21 - 2016-03-10 21:30 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2016-11-18 19:06 - 2016-08-30 13:55 - 00000265 _____ C:\Users\Simala\.dsa4.properties 2016-11-18 19:06 - 2016-08-30 13:55 - 00000000 ____D C:\Users\Simala\helden 2016-11-17 23:26 - 2016-08-30 13:55 - 00054550 _____ C:\Users\Simala\.heldEinstellungen4_1.xml 2016-11-17 14:45 - 2016-09-09 23:59 - 01854400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2016-11-17 14:45 - 2016-09-09 23:59 - 01755072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2016-11-17 14:45 - 2016-09-09 23:59 - 01452480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2016-11-17 14:45 - 2016-09-09 23:59 - 01317312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2016-11-17 14:45 - 2016-09-09 23:59 - 00120256 _____ C:\WINDOWS\system32\NvRtmpStreamer64.dll 2016-11-17 14:45 - 2016-05-12 22:34 - 00046016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2016-11-17 03:06 - 2016-07-14 23:05 - 03934504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2016-11-17 03:06 - 2016-07-14 23:05 - 03474064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2016-11-17 03:06 - 2016-07-14 23:05 - 00042296 _____ C:\WINDOWS\system32\nvinfo.pb 2016-11-17 02:03 - 2016-08-09 10:46 - 06384576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2016-11-17 02:03 - 2016-08-09 10:46 - 02477624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2016-11-17 02:03 - 2016-08-09 10:46 - 01762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2016-11-17 02:03 - 2016-08-09 10:46 - 00546752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2016-11-17 02:03 - 2016-08-09 10:46 - 00392128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2016-11-17 02:03 - 2016-08-09 10:46 - 00083512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2016-11-17 02:03 - 2016-08-09 10:46 - 00069568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2016-11-16 17:42 - 2016-09-09 23:59 - 00001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2016-11-16 10:52 - 2016-08-09 10:46 - 07529957 _____ C:\WINDOWS\system32\nvcoproc.bin 2016-11-15 23:22 - 2016-09-09 23:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-11-11 09:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-11-11 09:06 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-11-11 09:06 - 2015-11-30 15:37 - 00000000 ____D C:\Users\Simala\AppData\Local\Adobe 2016-11-10 17:24 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache 2016-11-09 17:15 - 2016-04-27 06:56 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-11-09 17:14 - 2016-08-09 10:45 - 00230264 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-11-09 17:12 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-11-09 17:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-11-09 17:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-11-09 17:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\migwiz 2016-11-09 17:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-11-09 17:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-11-09 17:10 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-11-09 17:09 - 2015-11-30 15:52 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-11-09 17:08 - 2015-11-30 15:52 - 141011376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-11-08 12:57 - 2016-01-05 09:12 - 00000000 ____D C:\Users\Simala\AppData\Local\ElevatedDiagnostics 2016-11-05 07:43 - 2016-08-31 06:30 - 00000000 ____D C:\Users\Simala\Desktop\Neuer Ordner 2016-11-04 07:18 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-10-29 00:56 - 2016-07-16 12:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-10-29 00:56 - 2016-07-16 12:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-08-03 10:16 - 2016-08-03 10:16 - 0007631 _____ () C:\Users\Simala\AppData\Local\Resmon.ResmonCfg 2016-08-09 10:45 - 2016-08-09 10:45 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-23 12:26 ==================== Ende von FRST.txt ============================ |
28.11.2016, 11:17 | #2 |
| 2 registryeinträge lassen sich nicht entfernen Hier noch Addition.txt
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 27-11-2016 durchgeführt von Simala (28-11-2016 11:03:40) Gestartet von C:\Users\Simala\Desktop Windows 10 Home Version 1607 (X64) (2016-08-09 09:52:00) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2678688967-2304268255-594235407-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2678688967-2304268255-594235407-503 - Limited - Disabled) Gast (S-1-5-21-2678688967-2304268255-594235407-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2678688967-2304268255-594235407-1003 - Limited - Enabled) Simala (S-1-5-21-2678688967-2304268255-594235407-1001 - Administrator - Enabled) => C:\Users\Simala ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Alienware Command Center (HKLM-x32\...\InstallShield_{F97191DE-E6BC-47C5-A6EB-BE11AFAE1EBF}) (Version: 4.5.18.0 - Alienware Corp.) Alienware Command Center (Version: 4.5.18.0 - Alienware Corp.) Hidden Alienware Customer Connect (HKLM-x32\...\{124DE80C-9BFE-4D04-A8D9-69C5019DEEBF}) (Version: 1.3.28.0 - Dell Inc.) Alienware Digital Delivery (HKLM-x32\...\{AB7F2792-2ED1-4C5C-9F28-680E5110BF72}) (Version: 3.1.1018.0 - Dell Products, LP) Alienware Graphics Amplifier Software Installer (HKLM-x32\...\InstallShield_{F809C4F2-42B0-4E0F-B693-FE4516040093}) (Version: 2.0.15.0 - Dell Inc.) Alienware Graphics Amplifier Software Installer (Version: 2.0.15.0 - Dell Inc.) Hidden Ansel (Version: 375.95 - NVIDIA Corporation) Hidden Aslain's WoWs Modpack Version 5.11.1.01 (HKLM-x32\...\ASLAINSWARSHIPSTEST_is1) (Version: 5.11.1.01 - Aslain) Banished (HKLM-x32\...\Steam App 242920) (Version: - Shining Rock Software LLC) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) CCleaner (HKLM\...\CCleaner) (Version: 5.24 - Piriform) Cheat Engine 6.5 (HKLM-x32\...\Cheat Engine 6.5_is1) (Version: - Cheat Engine) CyberLink PowerDVD 16 (HKLM-x32\...\{7CD1ACC0-3DD0-4894-90C7-BF2A136C074D}) (Version: 16.0.1510.60 - CyberLink Corp.) Dell Data Vault (Version: 4.3.9.0 - Dell Inc.) Hidden Dell Foundation Services (HKLM\...\{C1C53DA1-9497-4ABB-A3D6-A63039820B37}) (Version: 3.3.7200.0 - Dell Inc.) Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.1.6664.10 - Dell) Dell SupportAssistAgent (HKLM-x32\...\{27130E51-9555-408B-8134-7BFF54EDE27B}) (Version: 1.3.0.72 - Dell) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Die Siedler II - Die nächste Generation (HKLM-x32\...\S2TNG) (Version: - ) Die Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.24.112.1010 - Electronic Arts Inc.) Divinity: Original Sin Enhanced Edition (HKLM-x32\...\Steam App 373420) (Version: - Larian Studios) Don't Starve Together (HKLM\...\Steam App 322330) (Version: - Klei Entertainment) Dota 2 (HKLM\...\Steam App 570) (Version: - Valve) DSC/AA Factory Installer (Version: 1.1.6664.10 - PC-Doctor, Inc.) Hidden Dungeon Keeper (HKLM-x32\...\{B9E79070-56B6-4980-A7E9-C28D6480D050}) (Version: 1.0.0.1 - Electronic Arts) Evolve (HKLM-x32\...\Steam App 273350) (Version: - Turtle Rock Studios) Google Earth (HKLM-x32\...\{A0C18B96-AB79-46BD-8321-6FA83E6D25B9}) (Version: 7.1.7.2606 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.0.5.1 - Hi-Rez Studios) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4278 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel(R) Ready Mode Technology (HKLM\...\{42BA3E8F-EFF8-4A1C-97D6-B82D80980E4B}) (Version: 1.1.60.502 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{7224B7CE-196C-4E2A-A1AE-1D7BF259FD36}) (Version: 3.4.1942 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{1A51AA9E-D4BC-4318-9419-B55EA4C95B3C}) (Version: 17.1.1525.1443 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.8 - Intel(R) Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{a2733506-e526-4bae-bc12-b2d37e2016ec}) (Version: 18.30.0 - Intel Corporation) Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Mozilla Firefox 50.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 50.0 (x86 de)) (Version: 50.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.0.6152 - Mozilla) MSI ODD Monitor (HKLM-x32\...\InstallShield_{B7D9BAAA-F068-4BF8-B929-462C3A8AB677}) (Version: 1.0.0.8 - MSI) MSI ODD Monitor (x32 Version: 1.0.0.8 - MSI) Hidden Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.8 - Notepad++ Team) NVIDIA GeForce Experience 3.1.2.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.1.2.31 - NVIDIA Corporation) NVIDIA Grafiktreiber 375.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 375.95 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NvNodejs (Version: 3.1.2.31 - NVIDIA Corporation) Hidden NvTelemetry (Version: 1.2.0.0 - NVIDIA Corporation) Hidden OC Controls (HKLM-x32\...\{909172C6-7934-4B52-9D2E-BE030C17D4C3}_is1) (Version: 2.0.0.05 - MSI) OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation) Orcs Must Die! Unchained (HKLM\...\Steam App 427270) (Version: - Robot Entertainment) Origin (HKLM-x32\...\Origin) (Version: 10.3.2.64935 - Electronic Arts, Inc.) Passing Pineview Forest (HKLM\...\Steam App 331120) (Version: - VIS - Visual Imagination Software) Planetbase (HKLM-x32\...\Steam App 403190) (Version: - Madruga Works) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7560 - Realtek Semiconductor Corp.) ROCCAT Kone[+] Mouse Driver (HKLM-x32\...\{B99CB207-4704-4C51-9309-0FA90AA26DD4}) (Version: - Roccat GmbH) SHIELD Streaming (Version: 7.1.0340 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.1.2.31 - NVIDIA Corporation) Hidden Sid Meier's Civilization VI (HKLM\...\Steam App 289070) (Version: - Firaxis) SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.96.5684 - Electronic Arts) SMITE (HKLM\...\Steam App 386360) (Version: - Hi-Rez Studios) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) Total War: ATTILA (HKLM-x32\...\Steam App 325610) (Version: - Creative Assembly) Total War™: WARHAMMER® (HKLM\...\Steam App 364360) (Version: - Creative Assembly) Trine 2 (HKLM\...\Steam App 35720) (Version: - Frozenbyte) Valhalla Hills (HKLM-x32\...\Steam App 351910) (Version: - Funatics Software) VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) World of Warships (HKU\S-1-5-21-2678688967-2304268255-594235407-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version: - Wargaming.net) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {09B43991-406C-46B9-B8B4-634142481324} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-19] (Google Inc.) Task: {1712C352-0DC2-4477-AD3D-7A417D2DBAC9} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssist.exe [2016-09-09] (Dell Inc.) Task: {28C2EA36-68E6-4239-8431-B4FE92C17496} - System32\Tasks\{9268D0E0-5C5C-4551-94E5-214858D3622B} => pcalua.exe -a D:\Games\lol.launcher.exe -d D:\Games\ Task: {2AF4BC37-B964-49BD-8144-4B2D09330076} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2016-11-17] (NVIDIA Corporation) Task: {3C5A0491-B223-4BC1-8F2A-A806D4513C57} - \RunDFS -> Keine Datei <==== ACHTUNG Task: {4083BB21-CD9F-489F-9D28-05DCC23951C1} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {6040866F-467F-4686-A177-93AA0B067D9C} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-11-17] (NVIDIA Corporation) Task: {665CC84E-51B5-4461-95C5-65C4EE22DAC4} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Alienware\SupportAssist\uaclauncher.exe [2015-05-20] (PC-Doctor, Inc.) Task: {6DBFC2F0-7AC9-42A3-B900-30B27B37C7EE} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-11-17] (NVIDIA Corporation) Task: {81296975-EF9C-4ED6-8BD0-3F9E5C5A2DA0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-11-17] (NVIDIA Corporation) Task: {94FCBBE5-8694-4926-A2D4-C05B4D943DD5} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-11-17] (NVIDIA Corporation) Task: {9FBB21C2-0EB9-4CDF-AB02-80F835C56BC3} - System32\Tasks\CCleanerSkipUAC => D:\Tools\ccleaner\CCleaner.exe [2016-11-15] (Piriform Ltd) Task: {B3407447-103B-41F3-9385-F68F5632868C} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\Alienware\SupportAssist\sessionchecker.exe [2015-05-20] (PC-Doctor, Inc.) Task: {B60575FD-B643-4CB7-BD7C-632ED12AC658} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-19] (Google Inc.) Task: {C60057FE-073A-41C3-906D-BE683D4D2812} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-11-09] (Microsoft Corporation) Task: {C7443C46-43AE-4F0E-91E6-30987AC31867} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-11-17] (NVIDIA Corporation) Task: {D68ABBD2-4FEB-4822-9175-02E79CDCE084} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => c:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation) Task: {FB12E14C-B44F-4270-9446-12E6CC54D89C} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-09-30 06:35 - 2016-09-15 18:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-09-09 23:59 - 2016-11-17 14:45 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-09-09 23:59 - 2016-11-17 14:45 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll 2016-09-09 23:59 - 2016-11-17 14:45 - 00418752 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\_nvspserviceplugin64.dll 2016-08-09 10:46 - 2016-11-17 02:03 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-09-30 06:35 - 2016-09-15 18:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-08-09 10:53 - 2016-08-09 10:53 - 00959168 _____ () C:\Users\Simala\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\amd64\ClientTelemetry.dll 2015-04-15 21:13 - 2015-04-15 21:13 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2016-09-17 18:09 - 2016-09-07 05:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-11-09 16:55 - 2016-11-02 11:30 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-11-09 16:55 - 2016-11-02 11:21 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-11-09 16:55 - 2016-11-02 11:15 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-11-09 16:55 - 2016-11-02 11:14 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-11-09 16:55 - 2016-11-02 11:16 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-11-09 16:55 - 2016-11-02 11:17 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-11-23 06:37 - 2016-11-23 06:37 - 00019456 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2016-11-23 06:37 - 2016-11-23 06:37 - 20433408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2016-06-03 05:37 - 2016-06-03 05:37 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll 2016-11-23 06:37 - 2016-11-23 06:37 - 01046528 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Sharing.dll 2016-11-23 06:37 - 2016-11-23 06:37 - 00353792 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Photos.Inking.dll 2016-11-22 06:22 - 2016-11-22 06:22 - 00176640 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.12.11142.0_x64__8wekyb3d8bbwe\CellNativeClientUniversal.dll 2015-10-13 20:47 - 2010-09-20 11:52 - 00094208 _____ () C:\Program Files\Alienware\OC Controls\ClockGen\IccLibDll.dll 2016-11-25 01:37 - 2016-11-25 01:36 - 02493440 _____ () D:\origin\libGLESv2.dll 2015-12-03 18:50 - 2016-11-17 14:45 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-09-09 23:59 - 2016-11-17 14:45 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll 2016-09-09 23:59 - 2016-11-17 14:45 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-09-09 23:59 - 2016-11-17 11:20 - 00506424 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node 2016-09-09 23:59 - 2016-11-17 11:20 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node 2016-09-09 23:59 - 2016-11-17 11:20 - 02809912 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node 2016-09-09 23:59 - 2016-11-17 11:20 - 00245184 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node 2016-09-09 23:59 - 2016-11-17 11:20 - 00436792 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node 2016-09-09 23:59 - 2016-11-17 11:20 - 00338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node 2016-09-09 23:59 - 2016-11-17 11:20 - 00968248 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node 2016-09-09 23:59 - 2016-11-17 14:44 - 60817344 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2015-07-11 07:37 - 2015-07-11 07:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-11-22 06:21 - 2016-11-22 06:21 - 00958464 _____ () C:\Program Files\WindowsApps\Microsoft.BingNews_4.17.74.0_x86__8wekyb3d8bbwe\SQLite3Wrapper.dll 2015-11-30 15:44 - 2015-11-30 15:44 - 00645120 _____ () C:\Program Files\WindowsApps\Microsoft.BingNews_4.17.74.0_x86__8wekyb3d8bbwe\Microsoft.Aria.ClientTelemetry.dll 2016-08-24 08:03 - 2016-08-24 08:06 - 03312024 _____ () C:\Program Files\WindowsApps\Microsoft.BingNews_4.17.74.0_x86__8wekyb3d8bbwe\Microsoft.Advertising.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-10 12:04 - 2015-07-10 12:02 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2678688967-2304268255-594235407-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Simala\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{a9856f01-e2ec-478e-80ec-bc6a0e079624}.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "Logitech Download Assistant" HKLM\...\StartupApproved\Run32: => "RoccatKone+" HKLM\...\StartupApproved\Run32: => "PowerDVD16Agent" HKU\S-1-5-21-2678688967-2304268255-594235407-1001\...\StartupApproved\Run: => "World of Warships" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{94AEC1FD-0182-486C-AEF5-FEE8CD6C8DA2}D:\blizz\d3\diablo iii\diablo iii.exe] => (Allow) D:\blizz\d3\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{057B298F-2585-4C0B-AF29-9B350227FBE7}D:\blizz\d3\diablo iii\diablo iii.exe] => (Allow) D:\blizz\d3\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{CB78935F-4E9A-4B79-BBBB-400A5857CB7A}D:\steamlibrary\steamapps\common\divinity original sin enhanced edition\shipping\eocapp.exe] => (Allow) D:\steamlibrary\steamapps\common\divinity original sin enhanced edition\shipping\eocapp.exe FirewallRules: [TCP Query User{3A4C8AEF-D67D-405C-A1B3-51D112E0CE0E}D:\steamlibrary\steamapps\common\divinity original sin enhanced edition\shipping\eocapp.exe] => (Allow) D:\steamlibrary\steamapps\common\divinity original sin enhanced edition\shipping\eocapp.exe FirewallRules: [{7B7FDF78-C432-4E2C-AAB9-4E91F50163D8}] => (Allow) D:\SteamLibrary\SteamApps\common\Total War Attila\launcher\launcher.exe FirewallRules: [{2851C736-B31E-47C3-B897-9FBBF1872AAA}] => (Allow) D:\SteamLibrary\SteamApps\common\Total War Attila\launcher\launcher.exe FirewallRules: [{79B36C84-6468-4C04-9390-A691B101A258}] => (Allow) D:\Tools\dvd\PowerDVD16\CastingStation.exe FirewallRules: [{F3445882-6044-41F6-B3D8-22694B869AA1}] => (Allow) D:\Tools\dvd\PowerDVD16\Movie\PowerDVDMovie.exe FirewallRules: [{63F183C7-CA4F-4827-AAF0-E0D80E3FAC2A}] => (Allow) D:\Tools\dvd\PowerDVD16\PowerDVD16Agent.exe FirewallRules: [{47A2C499-6A2E-461D-83DA-85EB9C0F73DB}] => (Allow) D:\Tools\dvd\PowerDVD16\Kernel\DMS\CLMSServerPDVD16.exe FirewallRules: [{389F7AFB-3817-4B08-9F8A-650B14C84E07}] => (Allow) D:\Tools\dvd\PowerDVD16\PowerDVD.exe FirewallRules: [{3A44439B-F888-47D0-82EF-9DD0C748E891}] => (Allow) D:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{8CE3CAA7-1A13-442B-BCEE-627651A01FCA}] => (Allow) D:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{C53163D3-1E48-4C33-B753-24E652C6D353}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{A5D5C5E6-1600-4561-9523-613568EF7D79}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{FE8DF3D4-EEA0-489B-97C7-00AFE00CFD88}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{7333A5BE-2DC2-4FBE-9C16-89C6BE98C444}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E81EA397-2A9B-45FA-A381-4AB72DE5FAF2}] => (Allow) D:\SteamLibrary\SteamApps\common\Banished\Application-steam-x64.exe FirewallRules: [{F34E8BBB-4EF9-4CD4-89F1-314995F432DA}] => (Allow) D:\SteamLibrary\SteamApps\common\Banished\Application-steam-x64.exe FirewallRules: [TCP Query User{5B6908F5-6C41-483A-BC56-CA51B9D94D36}D:\blizz\d3\diablo iii\diablo iii.exe] => (Allow) D:\blizz\d3\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{930EF2B5-7616-463D-91A2-79009D3356F1}D:\blizz\d3\diablo iii\diablo iii.exe] => (Allow) D:\blizz\d3\diablo iii\diablo iii.exe FirewallRules: [{131C1914-060C-4086-9914-3C1EB0F63312}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{7AA1A346-8DAA-49B6-AD73-7E33682667B2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{1D5B61F2-44B9-4770-8342-4B16EDBA171F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{955EDE85-A478-4679-9221-A0A14E5F6E77}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{9E2F8A47-BCE6-4236-BA87-58102F451FDB}] => (Allow) D:\SteamLibrary\SteamApps\common\ValhallaHills\ValhallaHills.exe FirewallRules: [{6249F8FD-EC53-4CE6-87BC-43C49D801331}] => (Allow) D:\SteamLibrary\SteamApps\common\ValhallaHills\ValhallaHills.exe FirewallRules: [TCP Query User{B563B579-9263-494C-880A-FE3ED75F0B94}D:\steamlibrary\steamapps\common\valhallahills\valhallahills\binaries\win64\valhallahills-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\valhallahills\valhallahills\binaries\win64\valhallahills-win64-shipping.exe FirewallRules: [UDP Query User{7139BBC2-395C-4F7E-ADA2-CC2838A6653D}D:\steamlibrary\steamapps\common\valhallahills\valhallahills\binaries\win64\valhallahills-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\valhallahills\valhallahills\binaries\win64\valhallahills-win64-shipping.exe FirewallRules: [{EF0DEA3F-5A66-4C0C-9561-B60B391ABE73}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E7F7FE04-7A74-40B5-888A-675CC56D3978}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{75D97A5A-349B-40E8-B988-0B34E3CC03AD}] => (Allow) D:\SteamLibrary\SteamApps\common\Planetbase\Planetbase.exe FirewallRules: [{39DA1387-6461-4A46-B6A6-5E13F0F472A0}] => (Allow) D:\SteamLibrary\SteamApps\common\Planetbase\Planetbase.exe FirewallRules: [{2DD185E3-0D58-4204-BF27-61424831AD67}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{92D971A9-5BE9-4B83-9770-FFFE6FA5CCE3}] => (Allow) D:\SteamLibrary\SteamApps\common\EvolveGame\Bin64_SteamRetail\Evolve.exe FirewallRules: [{F1B65A24-4D5C-423B-82ED-88B03E68AF4D}] => (Allow) D:\SteamLibrary\SteamApps\common\EvolveGame\Bin64_SteamRetail\Evolve.exe FirewallRules: [{C6D74436-8803-485E-8C3F-BE4EECF8DF25}] => (Allow) D:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{72345D47-D853-42D8-80E2-5539B8D84791}] => (Allow) D:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [TCP Query User{7D9F4CED-6D19-4EA4-B774-3E5A7DFEB086}D:\steamlibrary\steamapps\common\total war attila\attila.exe] => (Allow) D:\steamlibrary\steamapps\common\total war attila\attila.exe FirewallRules: [UDP Query User{469128EC-0462-411F-90DC-559C958FC667}D:\steamlibrary\steamapps\common\total war attila\attila.exe] => (Allow) D:\steamlibrary\steamapps\common\total war attila\attila.exe FirewallRules: [{23129704-B2F0-4C0A-A9E3-C8F733F78356}] => (Allow) D:\SteamLibrary\SteamApps\common\Total War Attila\launcher\launcher.exe FirewallRules: [{599755C9-3F23-4CBF-BB2D-BCB9F242D510}] => (Allow) D:\SteamLibrary\SteamApps\common\Total War Attila\launcher\launcher.exe FirewallRules: [{88289256-7546-4A25-8C58-005558476C3E}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{37343AC1-72EF-47A5-AA1A-B4C5B344DE7A}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{44E13B7B-2E8F-4E5A-AD81-1CB98D7A632D}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{DE75E129-EAFD-429B-BE65-D0A4B28D6306}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{4CF51BB1-4E38-4DA4-94C6-C1782BAAC32F}] => (Allow) D:\SteamLibrary\SteamApps\common\OrcsMustDieUnchained\Dashboard\Bin\SpitfireDashboard.exe FirewallRules: [{54C4E61C-F989-4A08-822B-4CBA118EEC14}] => (Allow) D:\SteamLibrary\SteamApps\common\OrcsMustDieUnchained\Dashboard\Bin\SpitfireDashboard.exe FirewallRules: [{6161C52D-E0AC-4973-827C-7EF6F7ED49A2}] => (Allow) D:\SteamLibrary\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe FirewallRules: [{6171AEF0-80FE-4DBF-A8BD-90B901F40323}] => (Allow) D:\SteamLibrary\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe FirewallRules: [TCP Query User{889B3404-B831-4C18-A3CE-78AC5C4CE8D0}D:\steamlibrary\steamapps\common\total war attila\attila.exe] => (Allow) D:\steamlibrary\steamapps\common\total war attila\attila.exe FirewallRules: [UDP Query User{294B9085-1E05-420A-AB55-7C933E690D02}D:\steamlibrary\steamapps\common\total war attila\attila.exe] => (Allow) D:\steamlibrary\steamapps\common\total war attila\attila.exe FirewallRules: [TCP Query User{20D415D6-C9CE-4604-BC6F-4E62DAA20218}D:\steamlibrary\steamapps\common\total war warhammer\warhammer.exe] => (Allow) D:\steamlibrary\steamapps\common\total war warhammer\warhammer.exe FirewallRules: [UDP Query User{DCBA2728-0173-445E-AE72-7B6796B28488}D:\steamlibrary\steamapps\common\total war warhammer\warhammer.exe] => (Allow) D:\steamlibrary\steamapps\common\total war warhammer\warhammer.exe FirewallRules: [{A1E68571-580F-4FF4-8783-CEBCA48A0942}] => (Allow) D:\SteamLibrary\SteamApps\common\Trine 2\trine2_launcher.exe FirewallRules: [{679042B6-CCF1-451C-A996-FCE417BB615E}] => (Allow) D:\SteamLibrary\SteamApps\common\Trine 2\trine2_launcher.exe FirewallRules: [TCP Query User{2192CBC7-7A41-411F-A0FB-7F44BECF9E22}D:\steamlibrary\steamapps\common\trine 2\trine2_32bit.exe] => (Allow) D:\steamlibrary\steamapps\common\trine 2\trine2_32bit.exe FirewallRules: [UDP Query User{0D594B5B-9F3E-4D81-BFE3-96B851E4C1B0}D:\steamlibrary\steamapps\common\trine 2\trine2_32bit.exe] => (Allow) D:\steamlibrary\steamapps\common\trine 2\trine2_32bit.exe FirewallRules: [{9561E042-40FF-4097-8A5F-1EDF0AD5D2DA}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7BA42CAA-0AAD-4D21-99F5-60E3C33E03F6}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F567D786-DA5C-4FF2-B70D-FBEBA67714DF}] => (Allow) D:\SteamLibrary\SteamApps\common\Passing Pineview Forest\.autorun\autorun.exe FirewallRules: [{9C7D6D4C-C023-405F-B989-17F608CE26F4}] => (Allow) D:\SteamLibrary\SteamApps\common\Passing Pineview Forest\.autorun\autorun.exe FirewallRules: [{B55427BB-7686-498F-9848-127A9ADCE11D}] => (Allow) D:\SteamLibrary\SteamApps\common\SMITE\Binaries\Win32\HirezBridge.exe FirewallRules: [{6A00534A-8460-4901-8E26-E09D70E11916}] => (Allow) D:\SteamLibrary\SteamApps\common\SMITE\Binaries\Win32\HirezBridge.exe FirewallRules: [TCP Query User{BDC1605C-2345-4534-8408-536BF5428E83}D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe FirewallRules: [UDP Query User{DC4D3E4D-6099-4856-BC2A-D5C1EA91DCA1}D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe FirewallRules: [TCP Query User{F8432E86-7A5C-42D2-B9C7-3E5B11FFFFEE}D:\games\world_of_warships\wowslauncher.exe] => (Allow) D:\games\world_of_warships\wowslauncher.exe FirewallRules: [UDP Query User{70C0781C-5E6A-4E69-91F8-6879A1A16A50}D:\games\world_of_warships\wowslauncher.exe] => (Allow) D:\games\world_of_warships\wowslauncher.exe FirewallRules: [{84A68327-192E-4AC6-949C-C44724B0D2FC}] => (Allow) D:\Program Files (x86)\Origin Games\Dungeon Keeper\DATA\DOSBox\DOSBox.exe FirewallRules: [{97242C44-AB47-40EE-8B4A-D998E2423DB9}] => (Allow) D:\Program Files (x86)\Origin Games\Dungeon Keeper\DATA\DOSBox\DOSBox.exe FirewallRules: [TCP Query User{30E0AF3E-2679-46B6-A2BC-581CFEB86234}D:\games\s2\die siedler ii - die nächste generation\bin\s2dng_addon.exe] => (Allow) D:\games\s2\die siedler ii - die nächste generation\bin\s2dng_addon.exe FirewallRules: [UDP Query User{0F77E1AD-6ED4-4480-88E4-6265BD519553}D:\games\s2\die siedler ii - die nächste generation\bin\s2dng_addon.exe] => (Allow) D:\games\s2\die siedler ii - die nächste generation\bin\s2dng_addon.exe FirewallRules: [{7FCBBAE6-4791-4170-8077-38EB921AD812}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{BC99CBDD-F0D6-4357-87E9-751E40885FA8}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{95FFF366-EB23-44E0-BC23-A7F711304B81}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{565AF600-E073-4753-9707-D518556C8DCA}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2B2606EC-5B4F-4E7D-8DAD-E231F82C2455}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{92FDFEFF-E2C0-4E86-82FF-E46266852214}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A4463F08-7F0B-4DFC-BF0A-5F9EDC610AEA}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5E0D810C-DA12-4546-8B78-2AE5D0763C20}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{FBCB5BA0-F43A-4DBD-B939-307D8ACCBE20}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E611C7A2-E741-4F0F-B08F-B96CEAAF2485}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1B2894F3-1E12-4389-BD3B-BE802F58CC75}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0983E1F8-8450-4B92-922F-A4202982AEE8}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{90695886-BC36-4560-BA0F-4FDF601F8F7B}] => (Allow) D:\SteamLibrary\SteamApps\common\EvolveGame\Bin64_SteamRetail\Evolve.exe FirewallRules: [{7D7BE774-4F25-40C3-9A78-83E5F2BB4940}] => (Allow) D:\SteamLibrary\SteamApps\common\EvolveGame\Bin64_SteamRetail\Evolve.exe FirewallRules: [{4B035D10-875D-41D1-8810-82C98069FA6E}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C8180E04-3101-48C6-B246-0D1FF257295A}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{123723B7-960E-4317-ACCC-CDB28A92B21B}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D1F16C46-4294-4726-8E28-734E47E3D43D}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3441933C-4153-4DAE-9A04-2E42AD9ECA13}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{371FFCFF-22A4-4275-81AE-A9AB2A470316}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2D9A3EA4-A093-4800-A6C9-E2920133E974}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4E661CC2-DDD9-4B1E-895A-12065C2BC8C9}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A0E6966B-D432-42AB-AC4A-14C34B06A93A}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{92BC3492-C3E8-41BF-8D31-8D4D15E5727E}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{81FC5119-CE1F-439D-9FFA-C275164404BA}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4BA8FA6B-D93F-424C-B102-41DE1AF1B060}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5198809C-71C3-4701-92AE-B3805E37AC12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{16D7DB49-F208-4EC2-B351-2276F614CDEC}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4AB36EF5-B08F-4E91-AA08-C6EB12544F95}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{21310C3A-D904-4E8F-A7AC-CE63068A395E}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E2AA9426-2792-493A-8ED6-6A580353755B}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E5B38C4B-3470-4AE1-8165-D6AB9A174413}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{62C9B088-958F-49D1-A12C-729F1C8DA6E5}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F137CC0F-EAF2-49E2-A6F4-929FF0C53CAB}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{820496FF-9753-4645-BE56-684F368C15F5}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{688DE5DE-656E-4AB8-AEDE-FB3CCE37A804}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{575F7264-1E8B-4BD9-A52B-2F695C849ED6}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{22EBFDAF-9769-45C8-B1EB-15D9411F8F1B}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{31B242AE-862C-446F-86AA-6CEFB8637FF7}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6A32B802-CCA1-401C-BB1C-21C68EDB3686}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4F848A59-3228-481A-8842-1C36FD3D908B}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A7A04BE5-8BAB-471B-8D43-2975C71B48E6}] => (Allow) D:\SteamLibrary\SteamApps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe FirewallRules: [{B2E97B89-BABF-4AB1-8252-0FC934FC3CEA}] => (Allow) D:\SteamLibrary\SteamApps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe FirewallRules: [{336477E5-7649-44CA-A22B-8E653B29FDC8}] => (Allow) D:\SteamLibrary\SteamApps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe FirewallRules: [{D39A0919-CEC2-4E53-8193-B7E62F4CD810}] => (Allow) D:\SteamLibrary\SteamApps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe FirewallRules: [{8948D758-F465-4D96-A0AB-1911E0CC593B}] => (Allow) D:\SteamLibrary\SteamApps\common\Total War WARHAMMER\launcher\launcher.exe FirewallRules: [{CB35CA78-CDB3-4E76-88AB-EE5BE1AA9C5D}] => (Allow) D:\SteamLibrary\SteamApps\common\Total War WARHAMMER\launcher\launcher.exe FirewallRules: [{391D133C-1F53-44D2-8A86-41AE93CDF4F9}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{78E3FD1C-D742-446C-B87D-D2550C6087BE}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{54E1F177-E763-4221-BD7A-5C70BCD09FCA}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{AA4F70EE-AE51-477E-B4E0-000823FAB82F}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{DBDB73DE-3104-4ACB-9EA9-02F726B22E3A}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{3B42C947-441B-43D2-B653-D9106F97AF6A}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{1C01852F-3AFF-49AB-BB4A-899CD4B4F668}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E76F9991-0D08-4D8D-8863-0C3EFC4DCB66}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{AEFBC0F9-6915-4D96-86C5-1AB074245DB8}D:\steamlibrary\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) D:\steamlibrary\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe FirewallRules: [UDP Query User{DE9CE637-8D70-4C97-8717-AFFEC3FEFD0C}D:\steamlibrary\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) D:\steamlibrary\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe FirewallRules: [{4B5BFB07-4E9C-42FA-ABF9-AA21C9A260C9}] => (Allow) D:\SteamLibrary\SteamApps\common\Don't Starve Together\bin\dontstarve_steam.exe FirewallRules: [{13266920-DBBC-4C7A-B5ED-7D9D66C6F828}] => (Allow) D:\SteamLibrary\SteamApps\common\Don't Starve Together\bin\dontstarve_steam.exe ==================== Wiederherstellungspunkte ========================= 09-11-2016 17:08:10 Windows Update 20-11-2016 09:30:48 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 20-11-2016 09:30:54 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 28-11-2016 10:57:40 Geplanter Prüfpunkt ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Intel(R) Wireless Bluetooth(R) Description: Intel(R) Wireless Bluetooth(R) Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Intel Corporation Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Realtek PCIe GBE Family Controller Description: Realtek PCIe GBE Family Controller Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Realtek Service: rt640x64 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/28/2016 10:57:40 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (11/28/2016 09:38:29 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Error: (11/28/2016 09:03:48 AM) (Source: CertEnroll) (EventID: 86) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung der SCEP-Zertifikatregistrierung für WORKGROUP\DESKTOP-A4CPB1B$ über https://INTC-KeyId-5e73c89aa3e902b272b9f0741f7d8730e3ec724a.microsoftaik.azure.net/templates/Aik/scep: GetCACaps Methode: GET(94ms) Phase: GetCACaps Der Servername oder die Serveradresse konnte nicht verarbeitet werden. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED) Error: (11/28/2016 09:00:42 AM) (Source: CertEnroll) (EventID: 86) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung der SCEP-Zertifikatregistrierung für WORKGROUP\DESKTOP-A4CPB1B$ über https://INTC-KeyId-5e73c89aa3e902b272b9f0741f7d8730e3ec724a.microsoftaik.azure.net/templates/Aik/scep: GetCACaps Methode: GET(94ms) Phase: GetCACaps Der Servername oder die Serveradresse konnte nicht verarbeitet werden. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED) Error: (11/28/2016 01:58:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: dontstarve_steam.exe, Version: 0.0.0.0, Zeitstempel: 0x58377a64 Name des fehlerhaften Moduls: dontstarve_steam.exe, Version: 0.0.0.0, Zeitstempel: 0x58377a64 Ausnahmecode: 0x80000003 Fehleroffset: 0x000e56fa ID des fehlerhaften Prozesses: 0x2200 Startzeit der fehlerhaften Anwendung: 0x01d249114b96326c Pfad der fehlerhaften Anwendung: D:\SteamLibrary\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe Pfad des fehlerhaften Moduls: D:\SteamLibrary\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe Berichtskennung: a33ca359-55d7-4e72-910a-9003d0a54f36 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/27/2016 09:58:00 PM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe Error: (11/27/2016 09:32:27 AM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe Error: (11/27/2016 09:25:54 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Error: (11/26/2016 09:36:08 AM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe Error: (11/26/2016 09:23:09 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Systemfehler: ============= Error: (11/28/2016 09:03:54 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} und der APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (11/28/2016 09:03:25 AM) (Source: Application Popup) (EventID: 56) (User: ) Description: ACPI5 Error: (11/28/2016 09:03:15 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet. Modulpfad: C:\WINDOWS\System32\IWMSSvc.dll Error: (11/28/2016 09:03:15 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet. Modulpfad: C:\WINDOWS\System32\IWMSSvc.dll Error: (11/28/2016 09:03:14 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet. Modulpfad: C:\WINDOWS\System32\IWMSSvc.dll Error: (11/28/2016 09:03:10 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "WMI-Leistungsadapter" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/28/2016 09:03:10 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Dell Data Vault" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/28/2016 09:03:10 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/28/2016 09:03:10 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/28/2016 09:03:10 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Dell Data Vault Wizard" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. CodeIntegrity: =================================== Date: 2016-10-30 09:17:47.065 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz Prozentuale Nutzung des RAM: 22% Installierter physikalischer RAM: 16287.96 MB Verfügbarer physikalischer RAM: 12586.45 MB Summe virtueller Speicher: 18719.96 MB Verfügbarer virtueller Speicher: 14584 MB ==================== Laufwerke ================================ Drive c: (OS) (Fixed) (Total:463.74 GB) (Free:374.83 GB) NTFS Drive d: (Volume) (Fixed) (Total:1862.89 GB) (Free:910.14 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 476.9 GB) (Disk ID: 232674FC) Partition: GPT. ======================================================== Disk: 1 (Size: 1863 GB) (Disk ID: 232674CD) Partition: GPT. ==================== Ende von Addition.txt ============================ |
28.11.2016, 13:46 | #3 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | 2 registryeinträge lassen sich nicht entfernenZitat:
__________________ |
28.11.2016, 19:09 | #4 |
| 2 registryeinträge lassen sich nicht entfernen oki danke lg Simala |
Themen zu 2 registryeinträge lassen sich nicht entfernen |
.dll, browser, ccsetup, computer, cpu, defender, entfernen, explorer, firefox, home, homepage, infizierte, maus, mozilla, node.js, nvcontainer, prozesse, realtek, rundll, scan, security, services.exe, software, svchost.exe, usb, windows, windowsapps, winlogon.exe, wmi |