|
Log-Analyse und Auswertung: Windows Firewall - Fehlercode 0x8007042c und kein Internet mehrWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
03.12.2016, 19:06 | #1 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Hallo Leute, ich hatte vor kurzem das exakt selbe Problem wie dieser User: http://www.trojaner-board.de/162114-...x8007042c.html - die Firewall ließ sich nicht mehr aktivieren (Fehlercode 0x8007042c) - Mein PC hat zwar umliegende WLAN-Netzwerke erkannt, konnte jedoch keine Verbindung herstellen Da ich dadurch ziemlich in Panik geraten bin und schnellstmöglich handeln wollte, habe ich auf eigene Gefahr einfach alle Schritte, die dem Threadersteller angeordnet wurden, einfach nachgemacht: - Malwarebytes Anti-Malware Scan (ist fündig geworden aber brachte keine Problemlösung) - Junkware Removal Tool - Anti Root Kit - Adw Cleaner - usw.. - anschließend Combofix & Windows System Repair Tool (Ich weiß, dass man ComboFix eigentlich nur auf Anordnung verwenden soll, ich bin aber einfach mal das Risiko eingegangen. Ich hatte vorher auch meinen PC mit sämtlichen Antivirenprogrammen bereinigt.) Das Interessante ist, dass mein ''Reparaturverfahren'' exakt den selben Verlauf wie beim oben genannten User nahm: Zuerst mit sämtlichen Antivirenprogrammen den PC bereinigt (es gab einige Funde), jedoch ohne Erfolg in Hinsicht auf Firewall und Internet. Durch Combofix ging dann zunächst die Firewall wieder, jedoch noch kein Internet. Durch das Windows Repair Tool ging dieses anschließend auch wieder. So weit, so gut. Allerdings muss ich jetzt nach einiger Zeit feststellen, dass das Internet wesentlich langsamer als vorher ist, Seiten bauen sich langsam auf und Videos laden sehr sehr langsam. Von daher befürchte ich, dass sich eventuell noch Schädlinge auf meinem PC befinden. Es könnte natürlich auch sein, dass man einfach mal den Router neu starten müsste, jedoch bin ich beim Nachbarn im WLAN und der ist zur Zeit nicht daheim. Aktuelle FRST: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 02-12-2016 durchgeführt von Yanik (Administrator) auf YANIK-PC (03-12-2016 18:54:19) Gestartet von C:\Users\Yanik\Desktop\Anti Vir\FRST Geladene Profile: Yanik (Verfügbare Profile: Yanik) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Akamai Technologies, Inc.) C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (Akamai Technologies, Inc.) C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.17\aaHMSvc.exe () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.17\AsusFanControlService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Borland Software Corporation) C:\Program Files (x86)\Borland\InterBase\bin\ibguard.exe (Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe (Rocket Division Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (X10) C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Borland Software Corporation) C:\Program Files (x86)\Borland\InterBase\bin\ibserver.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-12-13] (Realtek Semiconductor) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-11-01] (Apple Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-11-15] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [916072 2016-10-17] (Avira Operations GmbH & Co. KG) HKLM\...\Policies\Explorer: [AllowLegacyWebView] 1 HKLM\...\Policies\Explorer: [AllowUnhashedWebView] 1 HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2011-10-03] (AMD) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8641240 2016-02-12] (Piriform Ltd) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{70FA10B7-ACD3-4F7E-9907-98EA2FC7C6EA}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{A577E35A-9298-4D12-BFDB-853AD0E1CDC8}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{B26E3F9E-3621-4CAE-9453-60D5A400404C}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope Wert fehlt SearchScopes: HKU\S-1-5-21-3404717819-833408578-2882030763-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Kein Name -> {41564952-412D-5637-00A7-7A786E7484D7} -> Keine Datei BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll [2014-09-25] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll [2014-09-25] (Oracle Corporation) BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22] (Hewlett-Packard Co.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22] (Hewlett-Packard Co.) Toolbar: HKU\S-1-5-21-3404717819-833408578-2882030763-1000 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei DPF: HKLM-x32 {6E718D87-6909-4FCE-92D4-EDCB2F725727} hxxp://navigram.com/engine/v1026/Navigram.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler-x32: http - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: http - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: https - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: https - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: ipp - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: msdaipp - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: msdaipp - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: wddldjwh.default-1385910868748 FF ProfilePath: C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748 [2016-12-03] FF Homepage: Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748 -> google.de FF Extension: (ProxTube - Gesperrte YouTube Videos entsperren) - C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748\Extensions\ich@maltegoetz.de.xpi [2014-09-11] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: (PDF Architect Converter For Firefox) - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-08-18] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: (HP Smart Web Printing) - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2016-06-09] [ist nicht signiert] FF HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-19] () FF Plugin: @java.com/DTPlugin,version=10.4.0 -> C:\Windows\system32\npDeployJava1.dll [2012-04-10] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll [2014-09-25] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-12-15] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-19] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [Keine Datei] FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.10.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2014-09-25] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll [Keine Datei] FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2011-10-15] (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-12-15] (Adobe Systems) FF Plugin HKU\S-1-5-21-3404717819-833408578-2882030763-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Yanik\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF Plugin HKU\S-1-5-21-3404717819-833408578-2882030763-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2011-10-15] (Pando Networks) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2015-03-24] (Apple Inc.) Chrome: ======= CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1089088 2016-10-17] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [475232 2016-10-17] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [475232 2016-10-17] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1488240 2016-10-17] (Avira Operations GmbH & Co. KG) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe [918448 2011-10-29] () [Datei ist nicht signiert] R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.17\aaHMSvc.exe [947328 2011-12-09] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] () R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.17\AsusFanControlService.exe [1464752 2011-12-09] (ASUSTeK Computer Inc.) [Datei ist nicht signiert] R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [349512 2016-11-15] (Avira Operations GmbH & Co. KG) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [389480 2016-03-17] (Digital Wave Ltd.) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.) S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160768 2011-05-27] (Intel Corporation) [Datei ist nicht signiert] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Datei ist nicht signiert] R2 InterBaseGuardian; C:\Program Files (x86)\Borland\InterBase\bin\ibguard.exe [32768 2001-11-29] (Borland Software Corporation) [Datei ist nicht signiert] R3 InterBaseServer; C:\Program Files (x86)\Borland\InterBase\bin\ibserver.exe [1769472 2001-11-29] (Borland Software Corporation) [Datei ist nicht signiert] S3 MSCSPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [Datei ist nicht signiert] S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [Datei ist nicht signiert] R2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [5352960 2011-04-07] (Native Instruments GmbH) [Datei ist nicht signiert] S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4909600 2013-09-02] (INCA Internet Co., Ltd.) S3 PACSPTISVR; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [Datei ist nicht signiert] R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [Datei ist nicht signiert] S3 SonicStage Back-End Service; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SsBeSvc.exe [112184 2007-02-05] (Sony Corporation) S3 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) [Datei ist nicht signiert] S3 SPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [Datei ist nicht signiert] S3 SSScsiSV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SSScsiSV.exe [75320 2007-02-05] (Sony Corporation) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) [Datei ist nicht signiert] S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 x10nets; C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) [Datei ist nicht signiert] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [177432 2016-10-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [145536 2016-10-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2016-10-17] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [79696 2016-10-17] (Avira Operations GmbH & Co. KG) R0 avusbflt; C:\Windows\System32\Drivers\avusbflt.sys [31720 2016-10-17] (Avira Operations GmbH & Co. KG) S3 camfilt2; C:\Windows\System32\Drivers\camfilt2.sys [52736 2007-06-01] (Guillemot Corporation) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-05-28] (Disc Soft Ltd) S3 ffusb2audio; C:\Windows\System32\DRIVERS\ffusb2audio.sys [127280 2013-09-25] (Focusrite Audio Engineering Limited.) R3 FocusriteUSB; C:\Windows\System32\DRIVERS\FocusriteUSB.sys [86544 2016-09-01] (Focusrite Audio Engineering Ltd.) R3 FocusriteUSBAudio; C:\Windows\System32\drivers\FocusriteUSBAudio.sys [45072 2016-09-01] (Focusrite Audio Engineering Ltd.) R3 FocusriteUSBSwRoot; C:\Windows\System32\DRIVERS\FocusriteUSBSwRoot.sys [92688 2016-09-01] (Focusrite Audio Engineering Ltd.) S3 hxctlflt; C:\Windows\System32\Drivers\hxctlflt.sys [111104 2009-02-08] (Guillemot Corporation) S3 libusb0; C:\Windows\System32\drivers\libusb0.sys [52320 2012-04-20] (hxxp://libusb-win32.sourceforge.net) S3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [33792 2005-03-09] () [Datei ist nicht signiert] S3 NPPTNT2; C:\Windows\SysWOW64\npptNT2.sys [4682 2004-12-31] (INCA Internet Co., Ltd.) [Datei ist nicht signiert] S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [9631360 2007-05-16] () S0 sptd; kein ImagePath R3 teVirtualMIDI64; C:\Windows\System32\DRIVERS\teVirtualMIDI64.sys [41016 2015-07-12] (Tobias Erichsen) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 X6va003; \??\C:\Users\Yanik\AppData\Local\Temp\00379B2.tmp [X] S3 X6va005; \??\C:\Users\Yanik\AppData\Local\Temp\005BEA4.tmp [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-03 18:53 - 2016-12-03 18:54 - 00000000 ____D C:\FRST 2016-11-30 01:14 - 2016-11-30 16:24 - 00000704 _____ C:\Users\Yanik\Desktop\codeine.txt 2016-11-29 18:22 - 2016-11-29 18:31 - 199363987 _____ C:\Users\Yanik\Downloads\kkk.zip 2016-11-28 21:39 - 2016-11-28 21:39 - 00000000 _____ C:\Users\Yanik\Desktop\Neues Textdokument.txt 2016-11-28 18:34 - 2016-11-28 18:49 - 00001324 _____ C:\Users\Yanik\Desktop\Trojaner Board.txt 2016-11-28 18:19 - 2016-11-28 18:19 - 00000000 ____D C:\Program Files (x86)\ESET 2016-11-28 04:23 - 2016-11-28 04:23 - 00000000 _____ C:\Users\Yanik\Desktop\CRANK.txt 2016-11-27 03:09 - 2016-11-27 03:09 - 00179067 _____ C:\Users\Yanik\Downloads\L%F6sung%20Einf%FChrungsfall%205.pdf 2016-11-27 03:09 - 2016-11-27 03:09 - 00168499 _____ C:\Users\Yanik\Downloads\L%F6sung%20Einf%FChrungsfall%204.pdf 2016-11-26 16:11 - 2016-11-26 16:28 - 374235158 _____ C:\Users\Yanik\Downloads\wetransfer-de80e3.zip 2016-11-26 05:09 - 2016-11-26 05:09 - 00065816 _____ C:\Users\Yanik\Desktop\dragonrage.flp 2016-11-25 06:22 - 2016-11-25 06:22 - 00270888 _____ C:\Users\Yanik\Downloads\BGB Allgemeiner Teil.pdf 2016-11-25 06:22 - 2016-11-25 06:22 - 00200350 _____ C:\Users\Yanik\Downloads\%DCbung%20PrivatR%20-%20L%F6sung%20Einf%FChrungsfall%201.pdf 2016-11-25 06:22 - 2016-11-25 06:22 - 00169922 _____ C:\Users\Yanik\Downloads\%DCbung%20PrivatR%20-%20L%F6sungen%20Einf%FChrungsf%E4lle%202-3.pdf 2016-11-25 06:22 - 2016-11-25 06:22 - 00126638 _____ C:\Users\Yanik\Downloads\%DCbung%20PrivatR%20-%20Einf%FChrungsf%E4lle%204-5.pdf 2016-11-25 06:22 - 2016-11-25 06:22 - 00114455 _____ C:\Users\Yanik\Downloads\%DCbung%20PrivatR%20-%20Einf%FChrungsf%E4lle%201-3.pdf 2016-11-25 06:03 - 2016-11-25 06:03 - 00325920 _____ C:\Users\Yanik\Downloads\London - On - Part_1.wav 2016-11-24 23:32 - 2016-11-24 23:40 - 34249275 _____ C:\Users\Yanik\Documents\slowmo that bag.mp4 2016-11-24 23:30 - 2016-11-24 23:42 - 00224568 _____ C:\Users\Yanik\Downloads\Rich The Kid - That Bag (Instrumental).mp3.sfk 2016-11-24 22:42 - 2016-11-24 22:42 - 02231481 _____ C:\Users\Yanik\Downloads\Twixtor for Vegas Pro 12.zip 2016-11-24 22:39 - 2016-11-24 22:42 - 14544990 _____ C:\Users\Yanik\Downloads\Twixtor Pro Sony Vegas -Drips-.zip 2016-11-23 12:26 - 2016-11-26 01:49 - 00000000 ____D C:\Users\Yanik\Downloads\InsanityFlyFF 2016-11-23 00:41 - 2016-08-17 07:56 - 01551248 _____ (Alexander Roshal) C:\Program Files (x86)\WinRAR.exe 2016-11-23 00:41 - 2016-08-17 07:53 - 00236944 _____ (Alexander Roshal) C:\Program Files (x86)\Uninstall.exe 2016-11-23 00:41 - 2016-08-16 17:05 - 00001777 _____ C:\Program Files (x86)\ReadMe.txt 2016-11-23 00:41 - 2016-08-14 23:16 - 00102288 _____ C:\Program Files (x86)\Ace32Loader.exe 2016-11-23 00:41 - 2016-05-21 12:36 - 00192000 _____ (Igor Pavlov) C:\Program Files (x86)\7zxa.dll 2016-11-23 00:41 - 2005-08-26 00:50 - 00077312 _____ C:\Program Files (x86)\UNACEV2.DLL 2016-11-22 23:19 - 2016-11-22 23:19 - 00001753 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-11-22 23:19 - 2016-11-22 23:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-11-22 23:19 - 2016-11-22 23:19 - 00000000 ____D C:\Program Files\iPod 2016-11-22 23:18 - 2016-11-22 23:18 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2016-11-22 23:18 - 2016-11-22 23:18 - 00000000 ____D C:\Program Files\Bonjour 2016-11-22 23:18 - 2016-11-22 23:18 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-11-22 23:18 - 2016-11-22 23:18 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2016-11-22 03:51 - 2016-11-22 03:51 - 04608081 _____ C:\Users\Yanik\Desktop\EKG ohne Background.psd 2016-11-22 03:44 - 2016-11-22 03:44 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 2016-11-20 22:54 - 2016-11-22 19:57 - 00000565 _____ C:\Users\Yanik\Desktop\Pisdez.txt 2016-11-19 04:47 - 2016-11-19 04:48 - 21108412 _____ C:\Users\Yanik\Documents\Ohne Titel.mp4 2016-11-19 00:22 - 2016-11-19 00:22 - 07340882 _____ C:\Users\Yanik\Downloads\makroI16-1.pdf 2016-11-18 20:06 - 2016-12-03 16:53 - 00000000 ____D C:\Users\Yanik\AppData\LocalLow\Mozilla 2016-11-18 06:39 - 2016-12-02 01:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-11-18 04:02 - 2015-12-20 19:50 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2016-11-18 04:02 - 2015-12-20 19:50 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2016-11-18 04:02 - 2015-12-20 15:08 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2016-11-18 04:01 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2016-11-18 02:59 - 2016-11-18 02:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Focusrite Audio Engineering Ltd 2016-11-18 02:59 - 2016-11-18 02:59 - 00000000 ____D C:\Program Files\FocusriteUSB 2016-11-18 02:59 - 2016-09-01 13:24 - 00092688 _____ (Focusrite Audio Engineering Ltd.) C:\Windows\system32\Drivers\FocusriteUSBSwRoot.sys 2016-11-18 02:59 - 2016-09-01 13:24 - 00086544 _____ (Focusrite Audio Engineering Ltd.) C:\Windows\system32\Drivers\FocusriteUSB.sys 2016-11-18 02:59 - 2016-09-01 13:24 - 00045072 _____ (Focusrite Audio Engineering Ltd.) C:\Windows\system32\Drivers\FocusriteUSBAudio.sys 2016-11-18 02:47 - 2016-11-18 02:47 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf 2016-11-18 02:47 - 2016-10-17 11:18 - 00177432 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2016-11-18 02:47 - 2016-10-17 11:18 - 00145536 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2016-11-18 02:47 - 2016-10-17 11:18 - 00079696 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2016-11-18 02:47 - 2016-10-17 11:18 - 00031720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avusbflt.sys 2016-11-18 02:47 - 2016-10-17 11:18 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2016-11-18 02:32 - 2016-11-18 02:32 - 00001208 _____ C:\Users\Public\Desktop\Avira Connect.lnk 2016-11-18 02:31 - 2016-11-18 02:31 - 04520336 _____ (Avira Operations GmbH & Co. KG) C:\Users\Yanik\Downloads\avira_de_av_582e56a1046e2__adw.exe 2016-11-18 02:18 - 2016-11-28 23:42 - 00000653 _____ C:\DelFix.txt 2016-11-18 02:18 - 2016-11-18 02:18 - 00000000 ____D C:\Windows\ERUNT 2016-11-18 01:11 - 2016-11-18 01:11 - 00000207 _____ C:\Windows\tweaking.com-regbackup-YANIK-PC-Windows-7-Home-Premium-(64-bit).dat 2016-11-18 00:36 - 2016-11-18 00:36 - 00003654 _____ C:\Windows\System32\Tasks\Tweaking.com - Windows Repair Tray Icon 2016-11-18 00:36 - 2016-11-18 00:36 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tweaking.com 2016-11-18 00:00 - 2016-11-18 02:14 - 00000000 ____D C:\Windows\erdnt 2016-11-17 20:50 - 2016-11-17 23:33 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2016-11-17 20:47 - 2016-11-18 03:07 - 00000000 ____D C:\Users\Yanik\Desktop\Anti Vir 2016-11-17 20:11 - 2016-11-27 18:53 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-11-17 20:11 - 2016-11-17 23:33 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-11-17 20:11 - 2016-11-17 20:11 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-11-17 20:11 - 2016-11-17 20:11 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-11-17 20:11 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-11-17 20:11 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-11-17 19:44 - 2015-07-16 20:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2016-11-17 19:44 - 2015-07-16 20:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2016-11-17 19:44 - 2015-07-16 20:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2016-11-17 19:44 - 2015-07-11 14:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2016-11-17 03:34 - 2016-11-17 03:34 - 00000000 ____D C:\Windows\Options 2016-11-17 03:34 - 2010-01-29 10:06 - 00052790 _____ C:\Windows\system32\athrextx.cat 2016-11-17 03:34 - 2010-01-27 17:25 - 01584640 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys 2016-11-17 03:34 - 2010-01-27 17:25 - 01584640 _____ (Atheros Communications, Inc.) C:\Windows\system32\athrx.sys 2016-11-17 01:48 - 2011-09-29 17:30 - 00646248 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2016-11-17 01:48 - 2011-09-29 17:30 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2016-11-17 01:46 - 2016-11-17 01:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2016-11-17 01:46 - 2011-09-16 15:12 - 00032360 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtVlan620.sys 2016-11-17 01:46 - 2011-06-15 21:11 - 00048416 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtTeam60.sys 2016-11-17 01:46 - 2011-06-15 21:11 - 00032544 _____ (Realtek ) C:\Windows\system32\Drivers\RtNdPt60.sys 2016-11-16 22:08 - 2016-11-16 22:08 - 00714448 _____ C:\Windows\is-TJBLS.exe 2016-11-16 22:08 - 2016-11-16 22:08 - 00011397 _____ C:\Windows\is-TJBLS.msg 2016-11-16 22:08 - 2016-11-16 22:08 - 00000331 _____ C:\Windows\is-TJBLS.lst 2016-11-16 17:01 - 2016-11-17 20:47 - 00000000 ____D C:\Users\Yanik\Desktop\treiber 2016-11-15 21:43 - 2016-11-15 21:46 - 27213252 _____ C:\Users\Yanik\Documents\shuffle.mp4 2016-11-15 03:51 - 2016-11-15 03:51 - 00431704 _____ C:\Users\Yanik\Downloads\MatheWiwi Kapitel 2.pdf 2016-11-15 03:51 - 2016-11-15 03:51 - 00422816 _____ C:\Users\Yanik\Downloads\KU_MatheWiwi2016 Kapitel 5.pdf 2016-11-15 03:51 - 2016-11-15 03:51 - 00392825 _____ C:\Users\Yanik\Downloads\KU_MatheWiwi2016 Kapitel 8.pdf 2016-11-15 03:50 - 2016-11-15 03:50 - 00116560 _____ C:\Users\Yanik\Downloads\MatheWiwi2016_blatt03.pdf 2016-11-15 03:50 - 2016-11-15 03:50 - 00112148 _____ C:\Users\Yanik\Downloads\MatheWiwi2016_blatt02.pdf 2016-11-14 23:17 - 2016-11-14 23:17 - 24619920 _____ C:\Users\Yanik\Desktop\BRAMMINÖS vox.wav 2016-11-14 22:21 - 2016-11-14 22:24 - 28918575 _____ C:\Users\Yanik\Documents\Heat Droppin.mp4 2016-11-14 19:28 - 2016-11-16 02:58 - 12139270 _____ C:\Users\Yanik\Desktop\Steady test.mp4 2016-11-14 16:16 - 2016-11-14 16:31 - 01013984 _____ C:\Windows\PE_File.dll 2016-11-14 16:16 - 2014-05-20 10:03 - 04194304 _____ C:\Users\Yanik\Downloads\P8H67-ASUS-3801.ROM 2016-11-14 16:15 - 2016-11-14 16:31 - 00948448 _____ C:\Windows\PE_Rom.dll 2016-11-14 16:14 - 2016-11-16 18:09 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2016-11-14 16:13 - 2016-11-14 16:13 - 00000000 ____D C:\ProgramData\ASUS OC Profiles 2016-11-14 16:13 - 2011-12-13 18:27 - 04718952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2016-11-14 16:13 - 2011-12-13 16:58 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2016-11-14 16:13 - 2011-12-13 16:25 - 00200468 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2016-11-14 16:13 - 2011-12-12 17:20 - 00100456 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2016-11-14 16:13 - 2011-12-09 16:42 - 02684416 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2016-11-14 16:13 - 2011-12-08 17:28 - 01969768 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2016-11-14 16:13 - 2011-12-08 16:27 - 03744872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2016-11-14 16:13 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2016-11-14 16:13 - 2011-11-22 11:36 - 02615400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2016-11-14 16:13 - 2011-11-18 16:40 - 00219752 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2016-11-14 16:13 - 2011-10-18 13:55 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2016-11-14 16:13 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00527872 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00515584 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00439808 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2016-11-14 16:13 - 2011-07-28 00:55 - 02604376 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll 2016-11-14 16:13 - 2011-07-28 00:55 - 02132824 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2016-11-14 16:13 - 2011-07-22 19:35 - 01247848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2016-11-14 16:13 - 2011-07-08 14:34 - 00065432 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2016-11-14 16:13 - 2011-06-27 14:45 - 03768152 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll 2016-11-14 16:13 - 2011-06-14 11:13 - 00177088 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2016-11-14 16:13 - 2011-05-05 15:24 - 02085440 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 03308376 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00426328 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00136024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00118104 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00074072 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2016-11-14 16:13 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2016-11-14 16:13 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2016-11-14 16:13 - 2010-11-29 14:36 - 00702808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek2.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2016-11-14 16:13 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2016-11-14 16:13 - 2010-10-03 13:46 - 00341336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2016-11-14 16:13 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2016-11-14 16:13 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2016-11-14 16:13 - 2010-07-22 16:37 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2016-11-14 16:13 - 2010-05-06 17:34 - 00334680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2016-11-14 16:13 - 2009-11-17 18:12 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2016-11-14 15:56 - 2010-08-03 13:21 - 00014464 _____ C:\Windows\SysWOW64\Drivers\AsUpIO.sys 2016-11-14 15:55 - 2008-12-02 20:05 - 00184320 _____ (ASUSTeK) C:\Windows\SysWOW64\Drivers\UpdateHelper.dll 2016-11-14 15:54 - 2008-01-04 13:34 - 00011832 ____N C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys 2016-11-14 15:54 - 2008-01-04 13:34 - 00010216 ____N C:\Windows\SysWOW64\Drivers\AsInsHelp32.sys 2016-11-14 15:53 - 2016-11-14 16:51 - 00000000 ____D C:\Program Files (x86)\ASUS 2016-11-14 15:53 - 2016-11-14 15:54 - 00000000 ____D C:\ProgramData\ASUS 2016-11-14 15:53 - 2014-09-09 03:14 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2016-11-14 15:53 - 2014-09-09 03:14 - 00015232 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys 2016-11-14 15:45 - 2016-11-14 15:45 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll 2016-11-14 15:45 - 2016-11-14 15:45 - 00000000 ____D C:\Windows\Intel_Chipset_XPVistaWin7_V9301019 2016-11-14 15:40 - 2016-11-14 15:40 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3 2016-11-14 15:28 - 2016-11-14 15:28 - 00614480 _____ C:\Users\Yanik\Downloads\408256_intl_x64_zip.exe 2016-11-14 15:19 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2016-11-14 15:19 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2016-11-14 15:19 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2016-11-14 15:19 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2016-11-14 15:19 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2016-11-14 15:19 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2016-11-14 15:19 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2016-11-14 15:19 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2016-11-14 15:19 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2016-11-14 15:19 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2016-11-14 15:13 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2016-11-14 15:13 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys 2016-11-14 15:13 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2016-11-14 15:13 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2016-11-14 15:11 - 2016-11-14 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-11-14 15:10 - 2016-11-14 15:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2016-11-14 15:10 - 2016-11-14 15:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2016-11-14 15:09 - 2015-08-05 18:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2016-11-14 15:09 - 2015-08-05 18:06 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2016-11-14 15:05 - 2015-12-16 19:55 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdgeoqw.dll 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZEL.DLL 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZE.DLL 2016-11-14 15:05 - 2015-12-16 19:48 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZE.DLL 2016-11-14 15:05 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdgeoqw.dll 2016-11-14 15:05 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZEL.DLL 2016-11-14 15:05 - 2015-12-16 19:47 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll 2016-11-13 20:15 - 2016-11-13 20:16 - 03123839 _____ C:\Users\Yanik\Downloads\P8H67-ASUS-3801.zip 2016-11-13 03:27 - 2016-11-13 03:27 - 00929768 _____ (Focusrite Audio Engineering Limited. ) C:\Users\Yanik\Downloads\focusrite-usb-2-driver-2.5.1(3).exe 2016-11-13 02:59 - 2016-11-02 16:36 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2016-11-13 02:59 - 2016-11-02 16:22 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2016-11-13 02:59 - 2016-11-02 15:53 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2016-11-13 02:59 - 2016-10-28 04:59 - 00394440 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-11-13 02:59 - 2016-10-28 04:14 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-11-13 02:59 - 2016-10-27 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-11-13 02:59 - 2016-10-27 20:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-11-13 02:59 - 2016-10-27 19:55 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-11-13 02:59 - 2016-10-27 19:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-11-13 02:59 - 2016-10-27 19:54 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-11-13 02:59 - 2016-10-27 19:53 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-11-13 02:59 - 2016-10-27 19:53 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-11-13 02:59 - 2016-10-27 19:51 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-11-13 02:59 - 2016-10-27 19:44 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-11-13 02:59 - 2016-10-27 19:43 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-11-13 02:59 - 2016-10-27 19:38 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-11-13 02:59 - 2016-10-27 19:37 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-11-13 02:59 - 2016-10-27 19:28 - 25763328 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-11-13 02:59 - 2016-10-27 19:28 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-11-13 02:59 - 2016-10-27 19:24 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-11-13 02:59 - 2016-10-27 19:19 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-11-13 02:59 - 2016-10-27 19:15 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-11-13 02:59 - 2016-10-27 19:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-11-13 02:59 - 2016-10-27 19:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-11-13 02:59 - 2016-10-27 19:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-11-13 02:59 - 2016-10-27 19:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-11-13 02:59 - 2016-10-27 19:02 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-11-13 02:59 - 2016-10-27 18:49 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-11-13 02:59 - 2016-10-27 18:46 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-11-13 02:59 - 2016-10-27 18:46 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-11-13 02:59 - 2016-10-27 18:44 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-11-13 02:59 - 2016-10-27 18:44 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-11-13 02:59 - 2016-10-27 18:17 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-11-13 02:59 - 2016-10-27 18:16 - 02920448 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-11-13 02:59 - 2016-10-27 18:03 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-11-13 02:59 - 2016-10-27 17:54 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-11-13 02:59 - 2016-10-27 16:05 - 20304896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-11-13 02:59 - 2016-10-25 16:02 - 03219456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-11-13 02:59 - 2016-10-22 18:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-11-13 02:59 - 2016-10-22 18:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-11-13 02:59 - 2016-10-22 18:36 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-11-13 02:59 - 2016-10-22 18:35 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-11-13 02:59 - 2016-10-22 18:35 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-11-13 02:59 - 2016-10-22 18:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-11-13 02:59 - 2016-10-22 18:27 - 02287616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-11-13 02:59 - 2016-10-22 18:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-11-13 02:59 - 2016-10-22 18:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-11-13 02:59 - 2016-10-22 18:22 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-11-13 02:59 - 2016-10-22 18:21 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-11-13 02:59 - 2016-10-22 18:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-11-13 02:59 - 2016-10-22 18:20 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-11-13 02:59 - 2016-10-22 18:09 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-11-13 02:59 - 2016-10-22 18:04 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-11-13 02:59 - 2016-10-22 18:03 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-11-13 02:59 - 2016-10-22 17:59 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-11-13 02:59 - 2016-10-22 17:58 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-11-13 02:59 - 2016-10-22 17:56 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-11-13 02:59 - 2016-10-22 17:54 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-11-13 02:59 - 2016-10-22 17:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-11-13 02:59 - 2016-10-22 17:45 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-11-13 02:59 - 2016-10-22 17:44 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-11-13 02:59 - 2016-10-22 17:43 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-11-13 02:59 - 2016-10-22 17:43 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-11-13 02:59 - 2016-10-22 17:30 - 13654016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-11-13 02:59 - 2016-10-22 17:12 - 02444800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-11-13 02:59 - 2016-10-22 17:09 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-11-13 02:59 - 2016-10-22 17:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-11-13 02:59 - 2016-10-15 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2016-11-13 02:59 - 2016-10-15 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2016-11-13 02:59 - 2016-10-15 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2016-11-13 02:59 - 2016-10-15 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2016-11-13 02:59 - 2016-10-11 16:37 - 00370920 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2016-11-13 02:59 - 2016-10-11 16:31 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2016-11-13 02:59 - 2016-10-11 16:31 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2016-11-13 02:59 - 2016-10-11 16:31 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2016-11-13 02:59 - 2016-10-11 16:31 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2016-11-13 02:59 - 2016-10-11 16:31 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME 2016-11-13 02:59 - 2016-10-11 16:18 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2016-11-13 02:59 - 2016-10-11 16:18 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2016-11-13 02:59 - 2016-10-11 16:18 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2016-11-13 02:59 - 2016-10-11 16:18 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime 2016-11-13 02:59 - 2016-10-11 14:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2016-11-13 02:59 - 2016-10-11 14:06 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2016-11-13 02:59 - 2016-10-10 16:38 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-11-13 02:59 - 2016-10-10 16:38 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-11-13 02:59 - 2016-10-10 16:34 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 01462272 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-11-13 02:59 - 2016-10-10 16:02 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-11-13 02:59 - 2016-10-10 15:56 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-11-13 02:59 - 2016-10-10 15:54 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-11-13 02:59 - 2016-10-10 15:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-11-13 02:59 - 2016-10-07 16:40 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-11-13 02:59 - 2016-10-07 16:37 - 05547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-11-13 02:59 - 2016-10-07 16:37 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-11-13 02:59 - 2016-10-07 16:35 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 03649536 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00877056 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:18 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-11-13 02:59 - 2016-10-07 16:18 - 03944680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-11-13 02:59 - 2016-10-07 16:15 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:04 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2016-11-13 02:59 - 2016-10-07 16:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2016-11-13 02:59 - 2016-10-07 16:04 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2016-11-13 02:59 - 2016-10-07 16:01 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-11-13 02:59 - 2016-10-07 16:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-11-13 02:59 - 2016-10-07 15:56 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-11-13 02:59 - 2016-10-07 15:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-11-13 02:59 - 2016-10-07 15:50 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-11-13 02:59 - 2016-10-07 15:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-11-13 02:59 - 2016-10-07 15:49 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-11-13 02:59 - 2016-10-05 15:54 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2016-11-13 02:59 - 2016-09-15 15:56 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2016-11-13 02:59 - 2016-09-13 16:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2016-11-13 02:59 - 2016-09-13 16:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2016-11-13 02:59 - 2016-09-09 19:20 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2016-11-13 02:59 - 2016-09-09 19:00 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-11-13 02:58 - 2016-10-07 15:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-11-13 02:58 - 2016-08-22 17:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2016-11-13 01:51 - 2016-11-13 01:51 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_FocusriteUSB_01011.Wdf 2016-11-13 01:36 - 2016-11-13 01:37 - 05145720 _____ (Focusrite Audio Engineering Ltd. ) C:\Users\Yanik\Downloads\focusriteusbinstaller_4.exe 2016-11-12 00:34 - 2016-11-12 00:46 - 43281888 _____ C:\Users\Yanik\Documents\rrraaaah.mp4 2016-11-10 20:58 - 2016-11-10 21:00 - 11174518 _____ C:\Users\Yanik\Downloads\paccbetno808.wav 2016-11-10 20:58 - 2016-11-10 21:00 - 10927342 _____ C:\Users\Yanik\Downloads\ccbetnodrums.wav 2016-11-10 20:42 - 2016-11-10 20:44 - 08443162 _____ C:\Users\Yanik\Downloads\paccbet1.wav 2016-11-10 04:14 - 2016-11-10 04:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2016-11-08 21:21 - 2016-11-08 21:41 - 00000205 _____ C:\Users\Yanik\Desktop\Gutscheine.txt 2016-11-07 18:53 - 2016-11-07 18:58 - 54258693 _____ C:\Users\Yanik\Downloads\Basma4 - Russisches Piva (Beat by LEN Arts).mp4 2016-11-04 07:11 - 2016-11-04 07:11 - 00560372 _____ C:\Users\Yanik\Downloads\FLT_TRT4LT22755_0.pdf 2016-11-04 07:05 - 2016-11-04 07:05 - 00439820 _____ C:\Users\Yanik\Downloads\FLT_9XZWF122754_0.pdf 2016-11-04 06:32 - 2016-11-30 22:37 - 00000000 ____D C:\Users\Yanik\Desktop\Ablehnung 2016-11-03 04:09 - 2016-11-03 04:12 - 08592158 _____ C:\Users\Yanik\Downloads\Trap Hard Sylenth Bank.rar 2016-11-03 04:07 - 2016-11-03 04:08 - 12502244 _____ C:\Users\Yanik\Downloads\The Plug Sylenth Bank.rar 2016-11-03 04:01 - 2016-11-03 04:01 - 41824619 _____ C:\Users\Yanik\Downloads\BK Bangerz Drumkit Squad Edition.zip 2016-11-03 03:58 - 2016-11-03 03:58 - 00000000 ____D C:\Users\Yanik\AppData\LocalLow\uTorrent 2016-11-03 03:57 - 2016-11-03 03:57 - 02375360 _____ (BitTorrent Inc.) C:\Users\Yanik\Downloads\uTorrent.exe 2016-11-03 03:39 - 2016-11-03 03:41 - 100431872 _____ C:\Users\Yanik\Downloads\BK Bangerz Drumkit Squad Edition.part2.rar 2016-11-03 03:36 - 2016-11-03 03:38 - 107471006 _____ C:\Users\Yanik\Downloads\Trapaholic Soundpack XXL.rar 2016-11-03 03:34 - 2016-11-03 03:34 - 01460290 _____ C:\Users\Yanik\Downloads\14s52x_proaudiozone.eu.rar ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-03 18:48 - 2012-07-10 07:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-12-03 18:29 - 2013-09-15 19:28 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-12-03 16:58 - 2013-09-15 19:28 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-12-03 16:49 - 2013-11-27 19:36 - 00000928 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA.job 2016-12-03 09:03 - 2014-08-30 16:33 - 00000000 ____D C:\Users\Yanik\AppData\Local\Adobe 2016-12-03 09:01 - 2009-07-14 05:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-12-03 09:01 - 2009-07-14 05:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-12-03 08:58 - 2011-04-12 08:43 - 00645116 _____ C:\Windows\system32\perfh007.dat 2016-12-03 08:58 - 2011-04-12 08:43 - 00130686 _____ C:\Windows\system32\perfc007.dat 2016-12-03 08:58 - 2009-07-14 06:13 - 01516610 _____ C:\Windows\system32\PerfStringBackup.INI 2016-12-03 08:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-12-03 08:53 - 2014-09-04 21:47 - 00065536 _____ C:\Windows\system32\Ikeext.etl 2016-12-03 08:52 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-12-02 22:15 - 2013-03-30 16:53 - 00000000 ____D C:\Users\Yanik\Desktop\Ultra 2016-12-02 19:41 - 2013-11-27 19:36 - 00000906 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core.job 2016-12-02 01:57 - 2014-10-07 12:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-12-01 02:38 - 2012-04-08 15:10 - 00274944 ___SH C:\Users\Yanik\Desktop\Thumbs.db 2016-12-01 02:32 - 2016-10-01 02:47 - 00000000 ____D C:\Users\Yanik\AppData\Local\LooksBuilder 2016-11-29 18:49 - 2013-06-22 15:54 - 00000000 ____D C:\Users\Yanik\Desktop\3xOsc 2016-11-27 19:33 - 2012-06-02 15:57 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\TS3Client 2016-11-27 19:33 - 2011-10-19 21:04 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\TeamViewer 2016-11-27 19:33 - 2011-10-15 18:33 - 00000000 ____D C:\Program Files (x86)\Steam 2016-11-27 19:28 - 2011-12-23 16:15 - 00000000 ____D C:\Windows\Minidump 2016-11-27 19:28 - 2011-10-21 22:21 - 00000000 ____D C:\Users\Yanik\AppData\Local\CrashDumps 2016-11-24 22:54 - 2016-02-28 14:32 - 00000000 ____D C:\Program Files\SonyVegas13 2016-11-23 00:42 - 2013-01-22 23:58 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-11-23 00:42 - 2013-01-22 23:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-11-23 00:28 - 2012-09-26 21:49 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2016-11-22 23:19 - 2015-03-24 21:01 - 00000000 ____D C:\Program Files\iTunes 2016-11-22 23:19 - 2014-10-10 17:09 - 00000000 ____D C:\Program Files\Common Files\Apple 2016-11-22 23:18 - 2014-10-10 17:09 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-11-22 22:16 - 2015-03-24 21:01 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2016-11-22 03:44 - 2011-10-15 17:47 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Adobe 2016-11-19 22:19 - 2011-10-15 09:49 - 00000000 ____D C:\Users\Yanik\AppData\Local\VirtualStore 2016-11-19 17:55 - 2012-07-10 07:31 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-11-19 17:55 - 2012-04-24 07:26 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-11-19 17:55 - 2011-10-15 17:47 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-11-19 17:55 - 2011-10-15 17:47 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2016-11-19 17:55 - 2011-10-15 17:47 - 00000000 ____D C:\Windows\system32\Macromed 2016-11-18 19:41 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2016-11-18 02:56 - 2011-10-21 21:59 - 00000000 ____D C:\Program Files (x86)\Image-Line 2016-11-18 02:49 - 2014-10-29 12:34 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2016-11-18 02:48 - 2013-08-08 13:16 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Avira 2016-11-18 02:47 - 2013-08-08 13:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-11-18 02:47 - 2013-08-08 13:11 - 00000000 ____D C:\ProgramData\Avira 2016-11-18 02:47 - 2013-08-08 13:11 - 00000000 ____D C:\Program Files (x86)\Avira 2016-11-18 02:32 - 2014-08-07 11:15 - 00000000 ____D C:\ProgramData\Package Cache 2016-11-18 02:21 - 2011-11-26 18:11 - 00000000 ____D C:\Program Files (x86)\VstPlugins 2016-11-18 01:39 - 2011-10-15 10:38 - 00072440 _____ C:\Users\Yanik\AppData\Local\GDIPFONTCACHEV1.DAT 2016-11-18 01:37 - 2009-07-14 05:45 - 04940184 _____ C:\Windows\system32\FNTCACHE.DAT 2016-11-18 01:32 - 2016-04-15 22:12 - 00000000 ____D C:\Users\Yanik\Downloads\STRASILO 2016-11-18 01:32 - 2011-10-31 14:23 - 00000000 ____D C:\Users\Yanik\Desktop\Zeugs 2016-11-18 01:32 - 2009-07-14 03:34 - 00000570 _____ C:\Windows\win.ini 2016-11-18 00:17 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2016-11-18 00:17 - 2009-07-14 03:34 - 00000027 _____ C:\Windows\system32\Drivers\etc\hosts_bak_242 2016-11-17 22:00 - 2012-05-01 21:00 - 00000000 ____D C:\Users\Yanik\Desktop\Anwendungen 2016-11-17 03:34 - 2011-10-15 09:58 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-11-17 03:26 - 2011-10-15 10:28 - 00000000 ____D C:\ProgramData\TP-LINK 2016-11-17 01:48 - 2011-10-15 09:58 - 00000000 ____D C:\Program Files (x86)\Realtek 2016-11-17 01:45 - 2011-10-31 22:38 - 00000000 ____D C:\Users\Yanik\AppData\Local\ElevatedDiagnostics 2016-11-17 01:44 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration 2016-11-17 01:22 - 2011-11-27 16:02 - 00000000 ____D C:\Users\Yanik\AppData\Local\Akamai 2016-11-17 01:22 - 2011-10-15 09:49 - 00000000 ____D C:\Users\Yanik 2016-11-16 18:10 - 2016-11-01 06:51 - 00000000 ____D C:\Users\Yanik\AppData\Local\AutoTonic 2016-11-16 18:10 - 2016-06-09 13:49 - 00000000 ____D C:\ProgramData\HP 2016-11-16 18:10 - 2012-07-22 21:49 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Audacity 2016-11-14 17:05 - 2011-11-28 10:33 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2016-11-14 17:05 - 2011-11-28 10:33 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2 2016-11-14 16:40 - 2012-01-09 00:58 - 00000000 ____D C:\Windows\pss 2016-11-14 16:14 - 2011-10-15 09:58 - 00000000 ___HD C:\Program Files (x86)\Temp 2016-11-14 16:02 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2016-11-14 16:00 - 2011-10-15 09:54 - 00000000 ____D C:\Program Files (x86)\Intel 2016-11-14 15:44 - 2011-10-15 09:52 - 00001769 _____ C:\Windows\Language_trs.ini 2016-11-14 15:16 - 2014-02-25 03:05 - 01594028 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-11-13 03:01 - 2013-08-15 01:25 - 00000000 ____D C:\Windows\system32\MRT 2016-11-13 02:42 - 2011-12-27 21:02 - 141011376 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-11-13 02:26 - 2015-03-24 20:55 - 00000000 ____D C:\Program Files (x86)\QuickTime 2016-11-13 02:26 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\servicing 2016-11-13 02:26 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-11-10 04:27 - 2011-11-08 16:19 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Apple Computer 2016-11-07 16:45 - 2015-01-13 16:13 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2016-11-04 08:45 - 2013-01-22 23:58 - 00107510 _____ C:\Program Files (x86)\winrar.lng ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2011-10-21 19:40 - 2011-10-21 19:40 - 0000443 ____H () C:\Program Files\U_AVA_Setup.exe.bfi 2011-10-21 19:40 - 2011-10-21 19:40 - 0000052 ____H () C:\Program Files\U_AVA_Setup.exe_neobit.fsi 2012-02-20 17:20 - 2012-02-20 17:20 - 0000187 ____H () C:\Program Files (x86)\0x0409.ini.bfi 2016-11-23 00:41 - 2016-05-21 12:36 - 0192000 _____ (Igor Pavlov) C:\Program Files (x86)\7zxa.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0211456 _____ (Aureal Semiconductor) C:\Program Files (x86)\a3dapi.dll 2016-11-23 00:41 - 2016-08-14 23:16 - 0102288 _____ () C:\Program Files (x86)\Ace32Loader.exe 2015-02-02 01:27 - 2011-03-16 14:09 - 0258106 _____ () C:\Program Files (x86)\Core.dll 2015-02-02 01:27 - 2012-04-29 20:25 - 0000077 _____ () C:\Program Files (x86)\Counter-Strike WaRzOnE.bat 2015-02-02 01:27 - 2012-03-04 19:04 - 0294496 _____ (Valve Corporation) C:\Program Files (x86)\crashhandler.dll 2015-02-02 01:27 - 2012-03-04 19:25 - 0000073 _____ () C:\Program Files (x86)\CS Dedicated Server CLI.bat 2015-02-02 01:27 - 2012-05-05 05:40 - 0000035 _____ () C:\Program Files (x86)\CS Dedicated Server GUI.bat 2012-02-20 16:34 - 2012-02-20 16:34 - 0000186 ____H () C:\Program Files (x86)\data1.cab.bfi 2012-02-20 17:20 - 2012-02-20 17:20 - 0000186 ____H () C:\Program Files (x86)\data1.hdr.bfi 2012-02-20 16:34 - 2012-02-20 17:00 - 0000313 ____H () C:\Program Files (x86)\data2.cab.bfi 2012-02-20 17:00 - 2012-02-20 17:19 - 0000313 ____H () C:\Program Files (x86)\data3.cab.bfi 2012-02-20 17:19 - 2012-02-20 17:20 - 0000198 ____H () C:\Program Files (x86)\data4.cab.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0069632 _____ () C:\Program Files (x86)\dbg.dll 2013-01-22 20:12 - 2016-08-16 17:05 - 0260096 _____ () C:\Program Files (x86)\Default.SFX 2013-01-22 20:12 - 2016-08-16 17:05 - 0315856 _____ () C:\Program Files (x86)\Default64.SFX 2015-02-02 01:27 - 2011-03-16 14:09 - 0090112 _____ () C:\Program Files (x86)\DemoPlayer.dll 2013-01-22 20:12 - 2016-08-16 17:05 - 0001333 _____ () C:\Program Files (x86)\Descript.ion 2015-02-02 01:27 - 2011-03-08 12:25 - 0118872 _____ () C:\Program Files (x86)\FileSystem_Stdio.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0122974 _____ () C:\Program Files (x86)\FileSystem_Steam.dll 2013-01-22 20:12 - 2012-06-14 17:35 - 0000616 _____ () C:\Program Files (x86)\File_Id.diz 2015-02-02 01:27 - 2012-04-08 13:16 - 0407336 _____ (Valve) C:\Program Files (x86)\hlds.exe 2015-02-02 01:27 - 2011-03-16 14:09 - 0024705 _____ () C:\Program Files (x86)\HLTV-Readme.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0001569 _____ () C:\Program Files (x86)\hltv.cfg 2015-02-02 01:27 - 2011-03-16 14:09 - 0221184 _____ (Valve) C:\Program Files (x86)\hltv.exe 2015-02-02 01:27 - 2010-01-23 18:48 - 1840440 _____ () C:\Program Files (x86)\hw.dll 2015-02-02 01:27 - 2013-03-11 05:27 - 0070656 _____ () C:\Program Files (x86)\hwpatcher.dll 2012-02-20 17:20 - 2012-02-20 17:20 - 0000188 ____H () C:\Program Files (x86)\ISSetup.dll.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0000063 _____ () C:\Program Files (x86)\language.inf 2012-02-20 17:20 - 2012-02-20 17:20 - 0000187 ____H () C:\Program Files (x86)\layout.bin.bfi 2013-01-22 20:12 - 2016-08-16 17:05 - 0015805 _____ () C:\Program Files (x86)\License.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0125952 _____ () C:\Program Files (x86)\Mp3dec.asi 2015-02-02 01:27 - 2011-03-16 14:09 - 0351744 _____ () C:\Program Files (x86)\Mss32.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0142848 _____ () C:\Program Files (x86)\Mssv12.asi 2015-02-02 01:27 - 2011-03-16 14:09 - 0161792 _____ () C:\Program Files (x86)\Mssv29.asi 2015-02-02 01:27 - 2011-06-10 21:58 - 0773968 _____ (Microsoft Corporation) C:\Program Files (x86)\msvcr100.dll 2013-01-22 20:12 - 2016-08-17 07:51 - 0004016 _____ () C:\Program Files (x86)\Order.htm 2015-02-02 01:27 - 2011-03-08 12:25 - 0254012 _____ () C:\Program Files (x86)\proxy.dll 2013-01-22 23:58 - 2016-08-14 23:16 - 0597392 _____ (Alexander Roshal) C:\Program Files (x86)\Rar.exe 2013-01-22 23:58 - 2016-08-16 17:05 - 0041034 _____ () C:\Program Files (x86)\rar.lng 2013-01-22 20:12 - 2016-08-16 17:05 - 0134249 _____ () C:\Program Files (x86)\Rar.txt 2013-01-21 15:43 - 2016-08-14 23:16 - 0437136 _____ (Alexander Roshal) C:\Program Files (x86)\RarExt.dll 2013-01-22 23:58 - 2016-08-16 17:05 - 0003646 _____ () C:\Program Files (x86)\rarext.lng 2013-01-22 23:58 - 2016-08-14 23:16 - 0368016 _____ (Alexander Roshal) C:\Program Files (x86)\RarExt32.dll 2013-01-22 20:12 - 2016-08-16 17:05 - 0001400 _____ () C:\Program Files (x86)\RarFiles.lst 2013-01-22 20:12 - 2013-01-22 20:12 - 0000020 _____ () C:\Program Files (x86)\rarnew.dat 2013-01-22 20:12 - 2011-05-30 20:01 - 0000469 _____ () C:\Program Files (x86)\rarreg.key 2016-11-23 00:41 - 2016-08-16 17:05 - 0001777 _____ () C:\Program Files (x86)\ReadMe.txt 2015-02-02 01:27 - 2013-03-14 15:21 - 0002361 _____ () C:\Program Files (x86)\release.txt 2015-02-02 01:27 - 2012-04-28 13:52 - 0004061 _____ () C:\Program Files (x86)\rev.ini 2015-02-02 01:27 - 2012-04-28 13:09 - 0147456 _____ () C:\Program Files (x86)\revSrvBrowser.dll 2012-02-20 17:20 - 2012-02-20 17:21 - 0000186 ____H () C:\Program Files (x86)\setup.ini.bfi 2012-02-20 17:21 - 2012-02-20 17:21 - 0000186 ____H () C:\Program Files (x86)\setup.inx.bfi 2015-02-02 01:27 - 2009-05-17 08:38 - 0329728 _____ (Valve Corporation) C:\Program Files (x86)\Steam.dll 2015-02-02 01:27 - 2012-04-30 09:41 - 0392704 _____ () C:\Program Files (x86)\steamclient.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 3377648 _____ (Valve Corporation) C:\Program Files (x86)\steamclient_orig.dll 2015-02-02 20:05 - 2015-02-02 20:05 - 0335316 _____ () C:\Program Files (x86)\Steam_2015_02_02__19_05_58_646.mdmp 2015-02-02 01:27 - 2011-03-16 14:09 - 0067072 _____ (Valve Corporation) C:\Program Files (x86)\steam_api.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0070144 _____ (Valve Corporation) C:\Program Files (x86)\steam_api_c.dll 2015-02-02 01:27 - 2011-03-16 14:12 - 0000002 _____ () C:\Program Files (x86)\steam_appid.txt 2015-02-02 01:27 - 2009-08-29 18:12 - 2888976 _____ (Valve Corporation) C:\Program Files (x86)\Steam_orig.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 1672504 _____ () C:\Program Files (x86)\sw.dll 2015-02-02 01:27 - 2012-02-22 11:15 - 1668968 _____ () C:\Program Files (x86)\swds.dll 2013-01-22 20:12 - 2012-02-26 18:25 - 0009234 _____ () C:\Program Files (x86)\TechNote.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0344064 _____ () C:\Program Files (x86)\tier0.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 0275704 _____ (Valve Corporation) C:\Program Files (x86)\tier0_s.dll 2016-11-23 00:41 - 2005-08-26 00:50 - 0077312 _____ () C:\Program Files (x86)\UNACEV2.DLL 2016-11-23 00:41 - 2016-08-17 07:53 - 0236944 _____ (Alexander Roshal) C:\Program Files (x86)\Uninstall.exe 2013-01-22 23:58 - 2016-08-16 17:05 - 0008582 _____ () C:\Program Files (x86)\uninstall.lng 2013-01-22 20:12 - 2016-08-14 23:16 - 0000443 _____ () C:\Program Files (x86)\Uninstall.lst 2013-01-22 23:58 - 2016-08-14 23:16 - 0401808 _____ (Alexander Roshal) C:\Program Files (x86)\UnRAR.exe 2015-02-02 01:27 - 2010-01-23 18:37 - 0002560 _____ () C:\Program Files (x86)\upatch.dll 2012-02-20 17:20 - 2012-02-20 17:20 - 0000192 ____H () C:\Program Files (x86)\U_AVA_SETUP.exe.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0352256 _____ () C:\Program Files (x86)\vgui.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0245819 _____ () C:\Program Files (x86)\vgui2.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0053248 _____ () C:\Program Files (x86)\voice_miles.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0139264 _____ () C:\Program Files (x86)\voice_speex.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0340480 _____ (Valve Corporation) C:\Program Files (x86)\vstdlib.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 0402680 _____ (Valve Corporation) C:\Program Files (x86)\vstdlib_s.dll 2013-01-22 20:12 - 2016-08-16 17:05 - 0078774 _____ () C:\Program Files (x86)\WhatsNew.txt 2013-01-22 20:12 - 2016-08-16 17:05 - 0302666 _____ (Alexander Roshal) C:\Program Files (x86)\WinCon.SFX 2013-01-22 20:12 - 2016-08-16 17:05 - 0348234 _____ (Alexander Roshal) C:\Program Files (x86)\WinCon64.SFX 2013-01-22 20:12 - 2016-08-16 17:05 - 0373609 _____ () C:\Program Files (x86)\WinRAR.chm 2016-11-23 00:41 - 2016-08-17 07:56 - 1551248 _____ (Alexander Roshal) C:\Program Files (x86)\WinRAR.exe 2013-01-22 23:58 - 2016-11-04 08:45 - 0107510 _____ () C:\Program Files (x86)\winrar.lng 2013-01-22 20:12 - 2016-08-16 17:05 - 0205312 _____ () C:\Program Files (x86)\Zip.SFX 2013-01-22 20:12 - 2016-08-16 17:05 - 0240592 _____ () C:\Program Files (x86)\Zip64.SFX 2013-01-22 20:12 - 2013-01-22 20:12 - 0000022 _____ () C:\Program Files (x86)\zipnew.dat 2012-01-15 23:41 - 2012-07-21 00:16 - 0065606 _____ () C:\Users\Yanik\AppData\Roaming\Camdata.ini 2012-01-15 23:41 - 2012-07-21 00:16 - 0000408 _____ () C:\Users\Yanik\AppData\Roaming\CamLayout.ini 2012-01-15 23:41 - 2012-07-21 00:16 - 0000408 _____ () C:\Users\Yanik\AppData\Roaming\CamShapes.ini 2012-03-08 09:52 - 2012-07-21 00:16 - 0004416 _____ () C:\Users\Yanik\AppData\Roaming\CamStudio.cfg 2013-01-23 00:40 - 2014-10-13 23:11 - 0007597 _____ () C:\Users\Yanik\AppData\Local\Resmon.ResmonCfg 2016-06-09 13:49 - 2016-06-09 13:55 - 0000824 _____ () C:\ProgramData\hpzinstall.log ZeroAccess: C:\Users\Yanik\AppData\Local\94f6548e C:\Users\Yanik\AppData\Local\94f6548e\@ Einige Dateien in TEMP: ==================== C:\Users\Yanik\AppData\Local\Temp\libeay32.dll C:\Users\Yanik\AppData\Local\Temp\msvcr120.dll C:\Users\Yanik\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-24 00:44 ==================== Ende von FRST.txt ============================ Ich hoffe sehr, dass mir hier jemand weiterhelfen kann. MfG, Daniel |
03.12.2016, 19:07 | #2 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Aktuelle Addition.txt:
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-12-2016 durchgeführt von Yanik (03-12-2016 18:56:09) Gestartet von C:\Users\Yanik\Desktop\Anti Vir\FRST Windows 7 Home Premium Service Pack 1 (X64) (2011-10-15 08:49:23) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3404717819-833408578-2882030763-500 - Administrator - Disabled) Gast (S-1-5-21-3404717819-833408578-2882030763-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3404717819-833408578-2882030763-1002 - Limited - Enabled) Yanik (S-1-5-21-3404717819-833408578-2882030763-1000 - Administrator - Enabled) => C:\Users\Yanik ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (Version: 6.2.2 - Hewlett-Packard) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe After Effects CS6 (HKLM-x32\...\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: 11 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.4.0.2540 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.3 - Adobe Systems Incorporated) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Premiere Pro CS6 (HKLM-x32\...\{7176B973-6011-43C1-AEBC-2D73FE7C6982}) (Version: 6.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.18) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.18 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.4.634 - Adobe Systems, Inc.) Akamai NetSession Interface (HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Akamai) (Version: - Akamai Technologies, Inc) AMD Catalyst Install Manager (HKLM\...\{5E03A267-415E-5383-FA8F-3CE4145663B9}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) Antares Auto-Tune 7 VST (HKLM\...\{8E7715AA-E19B-44E8-AE4C-FB5B37B7E2D9}) (Version: 7.05.0002 - Antares Audio Technologies) Antares Auto-Tune Evo VST (HKLM-x32\...\{FFF74EC9-1FF4-4456-99E3-4F05129F4FAB}) (Version: 6.00.0009 - Antares Audio Technologies) Apple Application Support (32-Bit) (HKLM-x32\...\{F2871C89-C8A5-42EE-8D45-0F02506385A6}) (Version: 5.1 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{9BC93467-75D1-4AA4-BD58-D9C51D88DFAB}) (Version: 5.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.14.3.0 - Asmedia Technology) ASUS VGA Driver (x32 Version: 3.0.0.1 - Ihr Firmenname) Hidden ATI AVIVO64 Codecs (Version: 11.6.0.51125 - ATI Technologies Inc.) Hidden AutoTonic (HKLM\...\AutoTonic) (Version: 1.4.212.0 - AutoTonic) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.23.58 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM-x32\...\{e7f56494-d786-472e-aba2-1b93089e06cd}) (Version: 1.2.76.20506 - Avira Operations GmbH & Co. KG) Avira Connect (x32 Version: 1.2.76.20506 - Avira Operations GmbH & Co. KG) Hidden bl (x32 Version: 1.0.0 - Your Company Name) Hidden Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Camel Audio CamelCrusher (HKLM-x32\...\Camel Audio CamelCrusher) (Version: 1.01.0 - Camel Audio) CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform) Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Copy (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Counter-Strike: Condition Zero (HKLM-x32\...\Steam App 80) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Destinations (x32 Version: 140.0.77.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden DJ_AIO_06_F2400_SW_Min (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Edirol HQ Orchestral VSTi v1.03 (HKLM-x32\...\Edirol HQ Orchestral VSTi v1.03) (Version: - ) EPSON ME 530 Series Printer Uninstall (HKLM\...\EPSON ME 530 Series) (Version: - SEIKO EPSON Corporation) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) F2400 (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) Focusrite USB 4.12.0.88 (HKLM\...\Focusrite USB_is1) (Version: 4.12.0.88 - Focusrite Audio Engineering Ltd.) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden Hercules Webcam Station Evolution SE (HKLM-x32\...\{C3C44248-B8F7-4B20-A5C7-994870B60F55}) (Version: 4.1.1.2 - Hercules) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet F2400 All-in-One Driver Software 14.0 Rel. 6 (HKLM\...\{819CA3BC-2FF8-4811-B42F-421F7BFD3559}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Support Solutions Framework (HKLM-x32\...\{3A1CB1B8-8646-41A0-B496-35DC48916904}) (Version: 12.5.32.37 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden HydraVision (x32 Version: 4.2.212.0 - Advanced Micro Devices, Inc.) Hidden IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) InterBase 6.5 (HKLM-x32\...\InterBase) (Version: - ) iTunes (HKLM\...\{554C62C7-E6BB-40F1-892B-F0AE02D3C135}) (Version: 12.5.3.17 - Apple Inc.) Java 8 Update 20 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418020F0}) (Version: 8.0.200 - Oracle Corporation) Java SE Development Kit 7 Update 4 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170040}) (Version: 1.7.0.40 - Oracle) JavaFX 2.1.0 (64-bit) (HKLM\...\{1111706F-666A-4037-7777-210648764D10}) (Version: 2.1.0 - Oracle Corporation) JavaFX 2.1.0 SDK (64-bit) (HKLM\...\{2222706F-666A-4037-7777-210648764D10}) (Version: 2.1.0 - Oracle Corporation) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) KORG Legacy Collection - LegacyCell (HKLM-x32\...\{192FBEA6-74FE-4A98-BF52-D9CA40FBE752}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - M1 (HKLM\...\{AA1D88F2-E75B-4FC3-80C6-9E041D7F4B00}) (Version: 1.7.0 - KORG Inc.) KORG Legacy Collection - MDE-X (HKLM-x32\...\{2EDF016E-8A35-451E-97EE-24760118CA11}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - MonoPoly (HKLM\...\{DA31AE51-AB45-4368-9F4E-6AF05176AEE3}) (Version: 1.1.0 - KORG Inc.) KORG Legacy Collection - MS-20 (HKLM-x32\...\{14BC5947-16C2-4E52-AF6C-72DDBF05E307}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - Polysix (HKLM-x32\...\{F18ADD8D-B710-42B2-841E-E525F7EEFEAF}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - WAVESTATION (HKLM\...\{6C2C56CC-9075-491D-9B29-55147B67B892}) (Version: 1.7.0 - KORG Inc.) loopMIDI (HKLM-x32\...\{55c0d955-4cee-452c-b393-d4c020a967d7}) (Version: 1.0.13.24 - Tobias Erichsen) loopMIDI (x32 Version: 1.0.13.24 - Tobias Erichsen) Hidden loopMIDIBlockLegacy (x32 Version: 9.9.9.9 - Tobias Erichsen) Hidden Magic ISO Maker v5.5 (build 0281) (HKLM-x32\...\Magic ISO Maker v5.5 (build 0281)) (Version: - ) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office XP Professional mit FrontPage (HKLM-x32\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Prerequisites (x64) (HKLM\...\{04BEC103-A388-41EE-BB49-1235FAAF883D}) (Version: 11.0.61030 - Blue Cat Audio) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Miroslav Philharmonik (HKLM-x32\...\{BA0D0121-A3BA-487D-9C78-7AB0E676C722}) (Version: 1.1.2 - IK Multimedia) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 50.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 50.0.2 (x86 de)) (Version: 50.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.2.6177 - Mozilla) Mp3tag v2.75 (HKLM-x32\...\Mp3tag) (Version: v2.75 - Florian Heidenreich) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Native Instruments Absynth 5 (HKLM-x32\...\Native Instruments Absynth 5) (Version: - Native Instruments) Native Instruments Alicias Keys (HKLM-x32\...\Native Instruments Alicias Keys) (Version: - Native Instruments) Native Instruments Balinese Gamelan (HKLM-x32\...\Native Instruments Balinese Gamelan) (Version: - Native Instruments) Native Instruments Battery 3 (HKLM-x32\...\Native Instruments Battery 3) (Version: - Native Instruments) Native Instruments Battery Library Importer for Maschine (HKLM-x32\...\Native Instruments Battery Library Importer for Maschine) (Version: - Native Instruments) Native Instruments Berlin Concert Grand (HKLM-x32\...\Native Instruments Berlin Concert Grand) (Version: - Native Instruments) Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: - Native Instruments) Native Instruments Evolve Mutations (HKLM-x32\...\Native Instruments Evolve Mutations) (Version: - Native Instruments) Native Instruments Evolve Mutations 2 (HKLM-x32\...\Native Instruments Evolve Mutations 2) (Version: - Native Instruments) Native Instruments FM8 (HKLM-x32\...\Native Instruments FM8) (Version: - Native Instruments) Native Instruments George Duke Soul Treasures (HKLM-x32\...\Native Instruments George Duke Soul Treasures) (Version: - Native Instruments) Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: - Native Instruments) Native Instruments Guitar Rig Mobile I/O (HKLM-x32\...\Native Instruments Guitar Rig Mobile I/O) (Version: - Native Instruments) Native Instruments Guitar Rig Mobile IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Mobile IO Driver) (Version: - Native Instruments) Native Instruments Guitar Rig Session I/O (HKLM-x32\...\Native Instruments Guitar Rig Session I/O) (Version: - Native Instruments) Native Instruments Guitar Rig Session IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Session IO Driver) (Version: - Native Instruments) Native Instruments Komplete 8 Ultimate (HKLM-x32\...\Native Instruments Komplete 8 Ultimate) (Version: - Native Instruments) Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.5.2.880 - Native Instruments) Native Instruments Kontakt Factory Library (HKLM-x32\...\Native Instruments Kontakt Factory Library) (Version: - Native Instruments) Native Instruments Maschine Drum Selection (HKLM-x32\...\Native Instruments Maschine Drum Selection) (Version: - Native Instruments) Native Instruments Massive (HKLM-x32\...\Native Instruments Massive) (Version: 1.4.0.292 - Native Instruments) Native Instruments Massive Expansion Vol. 1 (HKLM-x32\...\Native Instruments Massive Expansion Vol. 1) (Version: - ) Native Instruments Massive Expansion Vol. 2 (HKLM-x32\...\Native Instruments Massive Expansion Vol. 2) (Version: - ) Native Instruments Monark (HKLM-x32\...\Native Instruments Monark) (Version: - Native Instruments) Native Instruments New York Concert Grand (HKLM-x32\...\Native Instruments New York Concert Grand) (Version: - Native Instruments) Native Instruments Rammfire (HKLM-x32\...\Native Instruments Rammfire) (Version: - Native Instruments) Native Instruments Razor (HKLM-x32\...\Native Instruments Razor) (Version: - Native Instruments) Native Instruments RC 24 (HKLM-x32\...\Native Instruments RC 24) (Version: 1.1.0.394 - Native Instruments) Native Instruments RC 48 (HKLM-x32\...\Native Instruments RC 48) (Version: 1.1.0.394 - Native Instruments) Native Instruments Reaktor 5 (HKLM-x32\...\Native Instruments Reaktor 5) (Version: - Native Instruments) Native Instruments Reaktor Prism (HKLM-x32\...\Native Instruments Reaktor Prism) (Version: - Native Instruments) Native Instruments Reaktor Spark R2 (HKLM-x32\...\Native Instruments Reaktor Spark R2) (Version: - Native Instruments) Native Instruments Reflektor (HKLM-x32\...\Native Instruments Reflektor) (Version: - Native Instruments) Native Instruments Rig Kontrol 3 (HKLM-x32\...\Native Instruments Rig Kontrol 3) (Version: - Native Instruments) Native Instruments Rig Kontrol 3 Driver (HKLM-x32\...\Native Instruments Rig Kontrol 3 Driver) (Version: - Native Instruments) Native Instruments Scarbee Funk Guitarist (HKLM-x32\...\Native Instruments Scarbee Funk Guitarist) (Version: - Native Instruments) Native Instruments Scarbee Jay-Bass (HKLM-x32\...\Native Instruments Scarbee Jay-Bass) (Version: - Native Instruments) Native Instruments Scarbee MM-Bass (HKLM-x32\...\Native Instruments Scarbee MM-Bass) (Version: - Native Instruments) Native Instruments Scarbee MM-Bass Amped (HKLM-x32\...\Native Instruments Scarbee MM-Bass Amped) (Version: - Native Instruments) Native Instruments Scarbee Pre-Bass (HKLM-x32\...\Native Instruments Scarbee Pre-Bass) (Version: - Native Instruments) Native Instruments Scarbee Pre-Bass Amped (HKLM-x32\...\Native Instruments Scarbee Pre-Bass Amped) (Version: - Native Instruments) Native Instruments Scarbee Vintage Keys (HKLM-x32\...\Native Instruments Scarbee Vintage Keys) (Version: - Native Instruments) Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments) Native Instruments Session Strings Pro (HKLM-x32\...\Native Instruments Session Strings Pro) (Version: - Native Instruments) Native Instruments The Finger R2 (HKLM-x32\...\Native Instruments The Finger R2) (Version: - Native Instruments) Native Instruments The Mouth (HKLM-x32\...\Native Instruments The Mouth) (Version: - Native Instruments) Native Instruments Traktors 12 (HKLM-x32\...\Native Instruments Traktors 12) (Version: - Native Instruments) Native Instruments Transient Master (HKLM-x32\...\Native Instruments Transient Master) (Version: - Native Instruments) Native Instruments Upright Piano (HKLM-x32\...\Native Instruments Upright Piano) (Version: - Native Instruments) Native Instruments VC 160 (HKLM-x32\...\Native Instruments VC 160) (Version: - Native Instruments) Native Instruments VC 2A (HKLM-x32\...\Native Instruments VC 2A) (Version: - Native Instruments) Native Instruments VC 76 (HKLM-x32\...\Native Instruments VC 76) (Version: - Native Instruments) Native Instruments Vienna Concert Grand (HKLM-x32\...\Native Instruments Vienna Concert Grand) (Version: - Native Instruments) Native Instruments Vintage Organs (HKLM-x32\...\Native Instruments Vintage Organs) (Version: - Native Instruments) Native Instruments West Africa (HKLM-x32\...\Native Instruments West Africa) (Version: - Native Instruments) NewBlue 3D Explosions for Windows (HKLM-x32\...\NewBlue 3D Explosions for Windows) (Version: 1.4 - NewBlue) NVIDIA PhysX v8.10.17 (HKLM-x32\...\{E4D15328-8C89-484B-B9AA-F5BE9EA6D01C}) (Version: 8.10.17 - NVIDIA Corporation) OpenMG Limited Patch 4.7-07-14-05-01 (HKLM-x32\...\OpenMG HotFix4.7-07-13-22-01) (Version: - ) OpenMG Secure Module 4.7.00 (HKLM-x32\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation) OpenMG Secure Module 4.7.00 (x32 Version: 4.7.00.12140 - Sony Corporation) Hidden OpenOffice.org 3.3 (HKLM-x32\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.3.6.0 - Pando Networks Inc.) PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.1 - pdfforge) ph (x32 Version: 1.0.0 - Your Company Name) Hidden PoiZone (HKLM-x32\...\PoiZone) (Version: - Image-Line bvba) PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 1.00.0000 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6526 - Realtek Semiconductor Corp.) Recorder (HKLM-x32\...\ST6UNST #1) (Version: - ) ReFX Nexus 2.3.4 Update (HKLM-x32\...\{1BB0C126-7F97-4438-B9CD-8954660474CD}) (Version: 2.3.4 - MAX Team) ReFX Nexus 2.3.4 USB-eLicenser Emulator (HKLM-x32\...\{B1F5E26D-F22E-4DE4-994E-50F51BB3327F}) (Version: 2.3.4 - MAX Team) rtpMIDIBlockLegacy (x32 Version: 9.9.9.9 - Tobias Erichsen) Hidden SAMSUNG Intelli-studio (HKLM-x32\...\Intelli-studio) (Version: - ) Sawer (HKLM-x32\...\Sawer) (Version: - Image-Line) Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Sika-Free (HKLM-x32\...\{166B8F62-E0BD-485A-8770-784BA2C235AC}) (Version: 1.5.0 - Human Touch Technology) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden Sonic Foundry Preset Manager 1.0 (HKLM-x32\...\{7266C898-F9CB-4122-9452-2AA1DACE245E}) (Version: 1.0.73 - Sonic Foundry) SonicStage 4.3 (HKLM-x32\...\{A0EB195B-5876-48E6-879D-33D4B2102610}) (Version: 4.3 - Sony Corporation) Sonik Synth 2 (HKLM-x32\...\Sonik Synth 2) (Version: - ) Sony Ericsson Update Engine (HKLM-x32\...\Update Engine) (Version: 2.12.13.28 - Sony Ericsson Communications AB) Sony PC Companion 2.10.188 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.188 - Sony) Status (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Steinberg VST Classics 1 64bit (HKLM\...\{AA322103-FC2B-4D86-BA6C-67D4DDB4209C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synful Orchestra (HKLM\...\{FB51BBEB-2A5F-4DCE-9CF2-E71DA61D90A2}) (Version: 2.5.2 - Synful) Synth1 (HKLM-x32\...\Synth1) (Version: - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.6 - TeamSpeak Systems GmbH) TeamSpeak 3 Client (HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.66695 - TeamViewer) teVirtualMIDI64 (Version: 1.2.10.38 - Tobias Erichsen) Hidden Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden Toxic Biohazard (HKLM-x32\...\Toxic Biohazard) (Version: - Image-Line bvba) TP-LINK Wireless Client Utility (HKLM-x32\...\{1E58B969-9BB4-4012-8D8B-D06005D1CD24}) (Version: 7.0 - TP-LINK) TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Vegas Pro 13.0 (64-bit) (HKLM\...\{1F8D8040-0BC8-11E5-85C5-F04DA23A5C58}) (Version: 13.0.453 - Sony) Visual C++ 64-bit Redistributables (HKLM-x32\...\InstallShield_{FB03650C-B373-4B20-ACA5-B7BA1A8EEE33}) (Version: 1.1.1.1524 - PACE Anti-Piracy, Inc.) Visual C++ Redistributables (HKLM-x32\...\InstallShield_{F03117FA-9270-46B0-9666-0B4BC2CDEBF5}) (Version: 1.1.1.1524 - PACE Anti-Piracy, Inc.) Waves Mercury Bundle (HKLM-x32\...\Waves Mercury Bundle) (Version: 5.0 - Team AiR) WebReg (x32 Version: 140.0.212.017 - Hewlett-Packard) Hidden Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 1.0.0.0) (HKLM\...\EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 - Texas Instruments Inc.) Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 1.0.0.1) (HKLM\...\7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 - Texas Instruments Inc.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) Windows-Treiberpaket - Focusrite USB 2.0 Audio Driver (09/25/2013 2.5.128.1) (HKLM\...\CF1FC201D237269A9CD51A3A6B14ADBF67175C32) (Version: 09/25/2013 2.5.128.1 - Focusrite) WinRAR 5.40 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) X10 Hardware(TM) (HKLM-x32\...\X10Hardware) (Version: - ) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {003A6885-4EC5-47C7-9296-A04240418BAC} - System32\Tasks\{A21A3340-579E-457E-8055-2254BF309C2C} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {0066CC0E-C2C4-4558-84A2-765087EDE0B4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.) Task: {015FBB19-2E3D-4C26-B657-4A89F13CDB44} - System32\Tasks\{D3AFCEA2-E4BB-46AF-8E8D-7E51BBBF5124} => pcalua.exe -a C:\Users\Yanik\Desktop\flstudio_8.0.exe -d C:\Users\Yanik\Desktop Task: {0DF712EC-4DB0-4526-BAD3-1F8CF910EF9B} - System32\Tasks\{5316EBF1-4C83-4EF4-8314-46B7F209A172} => pcalua.exe -a C:\Users\Yanik\Downloads\mausemu41.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {11980DD9-DA20-439D-B0F0-1864DCFD4DB7} - System32\Tasks\{29158F79-7611-40F9-8E0A-4EF0A70249C7} => pcalua.exe -a C:\Users\Yanik\Downloads\HEXC_v2.8.1.0.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {13210263-874C-46B5-B685-2488524D3147} - System32\Tasks\{4D49754F-ACC1-47C5-927A-183408096F14} => pcalua.exe -a "C:\Users\Yanik\Desktop\JDownload\EW.QL.RA.VSTi.DXi.AU.RTAS.HYBRiD.DVDR.D1\ewql.ra.d01\Ra Setup.exe" -d C:\Users\Yanik\Desktop\JDownload\EW.QL.RA.VSTi.DXi.AU.RTAS.HYBRiD.DVDR.D1\ewql.ra.d01 Task: {1468A753-AC28-4D46-8FC7-8A6D90CFE970} - System32\Tasks\{76CAFB74-DBFF-4A5D-A4C8-952AA96A6C3A} => C:\ijji\ENGLISH\AVA\Binaries\AVA.exe Task: {1DCEA014-5736-4A5B-B067-EE016E9B8808} - System32\Tasks\{D0A9EDE8-EDD6-4FF2-9B0E-1D826A347A23} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {1F6C62B6-44CF-414D-8CB9-F773DED9EE29} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-19] (Adobe Systems Incorporated) Task: {221BD446-3832-40BE-BA41-1F796D453FB9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard) Task: {3EE9CE82-C91D-4C06-8913-E1A2CA6C55BB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {4893E55E-B5AC-4DF8-BC7A-C80DC21EB3F2} - System32\Tasks\{D0B249D2-0B52-48CC-9B2B-650F1CABE45A} => pcalua.exe -a "C:\Users\Yanik\Downloads\Silence of Darkness.exe" -d "C:\Program Files (x86)\Mozilla Firefox" Task: {4A1DEDE8-AAE7-4679-9793-7A5D0E68CE06} - System32\Tasks\{415C7206-FD45-45A9-AE31-29B7AF4C8FCF} => pcalua.exe -a "C:\Users\Yanik\Desktop\Sylenth_Nima_Skin+Lennar.Digital.Sylenth1.VSTi v2.2.1.1 x86\Lennar.Digital.Sylenth1.VSTi.v2.2.1.1.x86\sylenth Setup.exe" -d "C:\Users\Yanik\Desktop\Sylenth_Nima_Skin+Lennar.Digital.Sylenth1.VSTi v2.2.1.1 x86\Lennar.Digital.Sylenth1.VSTi.v2.2.1.1.x86" Task: {4E661CD2-74A6-46A7-A41C-FB1627DF9555} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe Task: {58651FE7-2A39-4953-9022-60520C709F72} - System32\Tasks\{5447B9FA-2056-4CB4-A8B0-0C10B5138441} => pcalua.exe -a "C:\Users\Yanik\Desktop\sheervideo_pro_win_v2_6_4_13\SheerVideo HD Pro 2.6.4.13\Install SheerVideo Pro.exe" -d "C:\Users\Yanik\Desktop\sheervideo_pro_win_v2_6_4_13\SheerVideo HD Pro 2.6.4.13" Task: {5EA408CD-8C54-4E0E-8854-A05023810848} - System32\Tasks\{5B2E60AD-823E-4290-8F26-0DF51751F39A} => pcalua.exe -a C:\Users\Yanik\Downloads\dotnetfx.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {5EF1E478-1E91-41B4-AEDD-5C6A56B1EE8D} - System32\Tasks\{409FE76B-5E9B-4872-8971-72680E9E4D25} => pcalua.exe -a C:\Users\Yanik\Desktop\Delphi_8.msi\setup.exe -d C:\Users\Yanik\Desktop\Delphi_8.msi Task: {6F139614-3DA9-4BCC-83E2-F44429016AC6} - System32\Tasks\Red Giant Link => C:\Program Files (x86)\Red Giant Link\Red Giant Link.exe [2015-12-15] () Task: {6F43FF92-93F3-48DE-8195-419F328C097B} - System32\Tasks\{AE7FADB1-7BF9-4F81-92D7-889B4025EFAD} => pcalua.exe -a C:\Users\Yanik\Downloads\mda_piano.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {726106C0-8879-4843-8F61-758824965B1C} - System32\Tasks\{9B849655-130C-4EC6-8DE3-5D30EEB10134} => pcalua.exe -a C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.03.Update-SKIDROW\splinter_cell_conviction_1.03.exe -d C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.03.Update-SKIDROW Task: {7582B287-C396-4BF3-ACD0-2E4E03CF0EC7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd) Task: {82759235-C9A3-43F0-84BF-5D9CEE0945C4} - System32\Tasks\{C1E5864F-0682-4A3F-824A-DC7841A37D18} => pcalua.exe -a "C:\Users\Yanik\Desktop\Native Instruments Kontakt v3.0.2.004 VSTi RTAS [DYNAMiCS]\NI Kontakt 3.0.2 DYNAMiCS.exe" -d "C:\Users\Yanik\Desktop\Native Instruments Kontakt v3.0.2.004 VSTi RTAS [DYNAMiCS]" Task: {84E5EFC0-7A8A-4978-AE81-67D3179F13DA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {8746E6F1-ACA9-4C2D-BF15-6583F1046A3B} - System32\Tasks\{ADAA1911-1810-4ADB-8AB8-DC554397EE9D} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {8A4BAC12-942B-4CA6-BBAD-ACC4009DF268} - System32\Tasks\{D6C5E1D2-009A-4473-AB2A-701E53B35773} => C:\ijji\ENGLISH\AVA\Binaries\AVA.exe Task: {8E0AF4C7-575E-4DC0-9148-3373835351B8} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-11-27] (Facebook Inc.) Task: {8FB193DE-49D8-4F29-BF5D-CAC701C2F21F} - System32\Tasks\{469E46B3-4D25-45A5-A170-ECE540A835DB} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {94961C4A-8C46-413B-B602-939722271894} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {972B0F66-01C9-4A7B-BFA0-550810F534D9} - System32\Tasks\{50F8E455-8E57-4856-9EBB-F4EEAF26B337} => pcalua.exe -a "C:\Users\Yanik\Desktop\PS1 Emulator\delta201Setup.exe" -d "C:\Users\Yanik\Desktop\PS1 Emulator" Task: {978EB992-935B-4A00-B208-7C74CE8E3C71} - System32\Tasks\{147A41AF-49F8-4BAC-AFD0-42688D09864F} => pcalua.exe -a "C:\Users\Yanik\Desktop\Sonic Ether's Unbelievable Shaders v08 (Windows)\INSTALLER.exe" -d "C:\Users\Yanik\Desktop\Sonic Ether's Unbelievable Shaders v08 (Windows)" Task: {9B3EBD2F-8DE2-4485-AB95-BCFBFF610ED1} - System32\Tasks\{2802E3DF-C263-4ACD-ACB0-D606290E7D99} => pcalua.exe -a C:\Users\Yanik\Desktop\Skyrimnochmal\steambackup2.vmp.EXE -d C:\Users\Yanik\Desktop\Skyrimnochmal Task: {9C1A5785-91D8-424C-919D-31E6F8C52996} - System32\Tasks\{A8ECE7CC-9976-492F-BFEE-C73A729DD547} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {B0FB57E7-265B-4311-8DCC-B9DEB6FB98F3} - System32\Tasks\{B521DC58-814F-43B5-BBED-C0DD9B8BF91B} => pcalua.exe -a "C:\Users\Yanik\Desktop\Neuer Ordner\Install Instruments DVD 1 Win.exe" -d "C:\Users\Yanik\Desktop\Neuer Ordner" Task: {B8C73344-504F-4CFE-A9F4-430A70B44BEB} - System32\Tasks\{653DBCF3-C317-46B2-B155-F0CF610B7931} => pcalua.exe -a C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.02.Update-SKIDROW\splinter_cell_conviction_1.02.exe -d C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.02.Update-SKIDROW Task: {BACD396A-E525-4E9E-9BF6-4AF9AA960458} - System32\Tasks\AdobeAAMUpdater-1.0-Yanik-PC-Yanik => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-12-15] (Adobe Systems Incorporated) Task: {BB181DFE-51EB-4946-896D-922841041D7A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {BF637B51-B756-4582-A898-759E76D5B968} - System32\Tasks\{560B0FF6-65A6-41B1-9136-26814C7681D5} => pcalua.exe -a C:\Users\Yanik\Downloads\superwave_p8.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {CC5BB63E-A7BF-4E53-88B7-53F1B790B5E4} - System32\Tasks\{7A4C65A7-0F65-4F86-ADE6-65994D7B249D} => pcalua.exe -a C:\Users\Yanik\Desktop\Skyrimentpackt\steambackup2.vmp.EXE -d C:\Users\Yanik\Desktop\Skyrimentpackt Task: {CE14BBFA-6A88-4D3C-920D-F26AF81179A6} - System32\Tasks\{5EE0FEFD-725A-474B-A56B-1E64A316C33C} => C:\Program Files (x86)\Bethesda Softworks\RAGE\Rage.exe Task: {DB1AEB85-99D5-4C18-8F78-5B419CD7A2D9} - System32\Tasks\{0FE6474B-36AB-4B46-9826-9CC40FFFBAFB} => pcalua.exe -a "C:\Users\Yanik\Desktop\phila\Install Instruments DVD 2 Win.exe" -d C:\Users\Yanik\Desktop\phila Task: {DB3810BE-1156-4BA6-9962-D10E1FC14B16} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-11-27] (Facebook Inc.) Task: {DC4B0623-427A-4DB0-B28A-886CF5477B4A} - System32\Tasks\{236F8513-C7B0-481C-B123-348EA6F16A9E} => pcalua.exe -a "C:\Users\Yanik\AppData\Local\Temp\Temp1_sheervideo_pro_win_v2_6_4_13.zip\SheerVideo HD Pro 2.6.4.13\Install SheerVideo Pro.exe" <==== ACHTUNG Task: {E752D784-F659-455D-BC33-8D0CE003E07F} - System32\Tasks\{1D761D67-B16B-4535-8E88-040DA93AAB59} => pcalua.exe -a "C:\Program Files\The Elder Scrolls V- Skyrim\VCRedist\vcredist_x86.exe" -d "C:\Program Files\The Elder Scrolls V- Skyrim\VCRedist" Task: {EEAC1AEB-EE84-4FC0-909B-09B22F8C0AFE} - System32\Tasks\{8C82936D-55A2-482D-880B-E400F2629D2B} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {F0ACAF63-1717-4B54-A23F-9671332B2303} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {F30C8233-FBE3-4735-8437-684E7D3C1523} - System32\Tasks\{920E4AAC-582C-40F4-8E72-166554868ADB} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {FB42B57F-A35B-47C0-80E4-0C85ED1F7D4F} - System32\Tasks\{7FBD9C99-80B1-4EBA-99F9-2A379DB4EEE0} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core.job => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA.job => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Yanik\Desktop\Zeugs\Ordner\Minecraft.lnk -> C:\Users\Yanik\Desktop\Zeugs\Ordner\Minecraft.bat () Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Image-Line website.lnk -> hxxp://www.image-line.com/ Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Advanced\Diagnostic.lnk -> hxxp://www.image-line.com/diagnostic Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Additional\Download Deckadance.lnk -> hxxp://www.deckadance.com/ Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Additional\SynthMaker website.lnk -> hxxp://www.synthmaker.co.uk/ ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-06-22 04:24 - 2015-06-22 04:24 - 00022528 _____ () C:\Windows\System32\us005lm.dll 2016-10-26 07:48 - 2016-10-26 07:48 - 00031256 _____ () C:\Windows\System32\us008lm.dll 2016-10-05 18:17 - 2016-10-05 18:17 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-10-05 18:17 - 2016-10-05 18:17 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-11-14 15:54 - 2011-10-29 09:59 - 00918448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe 2016-02-12 22:13 - 2016-02-12 22:13 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2016-11-14 15:55 - 2010-10-21 17:52 - 00586880 _____ () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe 2016-11-14 15:54 - 2016-12-03 08:53 - 00021504 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\PEbiosinterface32.dll 2016-11-14 15:54 - 2010-06-29 10:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\ATKEX.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Microsoft:3mBd74apbUTqThYg6h6oUxa [2382] AlternateDataStreams: C:\ProgramData\Microsoft:e9gz6kgJgqGPDKXWMOdonQ0x [2404] AlternateDataStreams: C:\ProgramData\Microsoft:eNUdzatygwW9dMtBE [1996] AlternateDataStreams: C:\ProgramData\Microsoft:jAt7Svpft1cs5yITVuCn7FizEG [2416] AlternateDataStreams: C:\ProgramData\Microsoft:Kg7hng1GFtWEpn57EjHfXNNmvqb [2100] AlternateDataStreams: C:\ProgramData\Microsoft:KP8wHCUH7mYO3lUbZrBUHy98 [2324] AlternateDataStreams: C:\ProgramData\TEMP:CB0AACC9 [140] AlternateDataStreams: C:\Users\Yanik\AppData\Local\QJiqR1hXGT:ChFTiQIBLE1GT5iTEQcE [2094] AlternateDataStreams: C:\Users\Yanik\AppData\Local\Temp:UL5fG7khxuQnmW3K0KZg3Hy [2308] AlternateDataStreams: C:\Users\Yanik\AppData\Local\Temporary Internet Files:QCYdRRn0ziMGFMUv99IKE [2482] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\Classes\regfile: regedit.exe "%1" <===== ACHTUNG ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2016-11-18 01:32 - 00000855 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk => C:\Windows\pss\Microsoft Office.lnk.CommonStartup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: AutoTonic => C:\Program Files (x86)\AutoTonic\bin\AutoTonic.exe MSCONFIG\startupreg: CamserviceExchange => C:\Program Files (x86)\Hercules\Dualpix Exchange\XtrCtrlEx.exe /startup MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Connectify Dispatch => C:\Program Files (x86)\Connectify\DispatchUI.exe autorun MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: EPSON ME 530 Series => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHKC.EXE /FU "C:\Users\Yanik\AppData\Local\Temp\E_SB0F7.tmp" /EF "HKCU" MSCONFIG\startupreg: Facebook Update => "C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Sony PC Companion => "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{70206243-DF5F-410A-A7FC-E0189A865687}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{7DDC1A1B-82AC-48F8-B097-09F7B3337D5F}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{240A89AB-D29E-46C3-942D-8B038A7AF5BA}] => C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{F1F31C11-9888-4162-866D-D87968569B97}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{4D98C0FC-A2D2-41BA-AC17-4C70AFB4488C}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{814B8AAA-A677-487B-B936-234E15BE878D}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{20703129-F930-45B1-9437-22D98DA81884}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{CC7E80CF-38E1-4D9F-B329-D12B7DBB2315}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [TCP Query User{318E9459-139A-4B2B-B21F-AE968C34DDFB}C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe] => C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe FirewallRules: [UDP Query User{F58401FC-173C-4666-B50A-C3ECFEFC0359}C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe] => C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe FirewallRules: [{47E5F88A-A4AF-4258-80DB-6A2F24523FED}] => C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{B5B7FA68-61BF-4907-828C-5AF54D134817}] => C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe FirewallRules: [TCP Query User{D677EE3E-3A6B-406F-BCF3-171248762D94}C:\users\yanik\appdata\local\akamai\netsession_win.exe] => C:\users\yanik\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{9437557B-5584-4DE9-91D1-6C671CC1B50A}C:\users\yanik\appdata\local\akamai\netsession_win.exe] => C:\users\yanik\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{A0A60E5D-32CC-453F-A8B1-4BC11FE3C06F}C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe] => C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe FirewallRules: [UDP Query User{246637ED-22E1-406E-81CA-5C45C1B6E59D}C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe] => C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe FirewallRules: [{11BF5DB8-3FCA-41FD-9619-97D629B8E0F5}] => LPort=49169 FirewallRules: [{F268FF69-23B4-4FB3-A582-5B1D9D627603}] => LPort=5000 FirewallRules: [{82D1E50D-1493-4A2E-A38C-806B535B0147}] => LPort=49185 FirewallRules: [{F9F06BED-0E77-48F3-8290-4BDD39A08A31}] => LPort=5000 FirewallRules: [TCP Query User{3D9A75BB-D7DB-40D9-8D95-10B865E74B18}C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe] => C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe FirewallRules: [UDP Query User{733D617F-EC5C-4AAE-A2D5-DA5F06D70C71}C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe] => C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe FirewallRules: [{62203193-D365-4E57-A19C-4C8E69F00E16}] => C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{04DF7B59-87C8-4F44-9986-E45B62A71FFB}] => C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{0B593BE1-ED61-4555-91B8-2BC5D2D7FC24}] => C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe FirewallRules: [{D72BFB76-9F24-4D54-9A7E-1A19D7AB7629}] => C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe FirewallRules: [{CA5B403D-0FEE-444B-87D8-6F7C9000164F}] => C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{3CCF3151-7EB8-4C7C-ACE9-1C5355815AF2}] => C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{001A67EF-C1D0-4EFB-8C9F-E77D5A09F200}] => LPort=56346 FirewallRules: [{1DAB6F5B-9995-4F8A-AE4D-3AF4267AD98D}] => C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{2EAE2EDB-C30C-4BB0-A5BF-5D0121273F2D}] => LPort=2869 FirewallRules: [{2E7A8D0A-2189-41C0-B852-27EC67880A3F}] => LPort=1900 FirewallRules: [{0B0779BC-B2BB-4E98-BCAD-66FD4205B47A}] => C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{01A9C7B6-97D1-4166-925A-AEA46F2C5C48}] => C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [TCP Query User{BE89C4B9-333E-4D79-B6BA-59DE4D80F73A}C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe] => C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe FirewallRules: [UDP Query User{CA4339CA-6AF3-447B-B08B-1980CE15BBD4}C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe] => C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe FirewallRules: [{FBDF1C9F-79AA-41FB-9D4D-0DE9CC22F391}] => C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe FirewallRules: [{915F3EE2-2728-441D-948C-F28C741FE637}] => C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe FirewallRules: [{49064CDC-85FF-453B-8066-8E21E95F32C9}] => C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe FirewallRules: [{D64C44B1-A749-426A-88D3-49FCCF2818B9}] => C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe FirewallRules: [{21E46FB7-818B-4866-B822-84533CFE6F1F}] => C:\Users\Yanik\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{A605F8AA-E1DE-40B9-940B-4350BAF7157D}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2F85D76B-1E42-4BB4-A0D4-0C1807E38477}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1354184B-A0D8-4C63-A3A6-9BBEC42F0671}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{79B2E660-5E28-4E35-A946-7A28AF93BDD0}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{613F470D-2B01-4244-B4F8-08D9D7FFB01A}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C0369496-0F1C-4709-92D8-F6F1DA581F5B}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{C7B1CCF4-4DDF-4AF7-94B3-C1B3D1E8FA59}C:\program files (x86)\hlds.exe] => C:\program files (x86)\hlds.exe FirewallRules: [UDP Query User{D1BD5D92-6053-4AE5-84B1-2BE0F2CE249E}C:\program files (x86)\hlds.exe] => C:\program files (x86)\hlds.exe FirewallRules: [{7F6C91A6-E125-4E5E-94C2-C74A234917AE}] => C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{F48AFC4E-2192-4981-97AD-10349D1BBF03}] => C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [TCP Query User{AE82D0C5-4EA3-4FDE-AC99-AFD957BEF7AF}C:\program files (x86)\mozilla firefox\firefox.exe] => C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{4B334020-0C7D-4BE6-87E6-6F9F8BFC8EF3}C:\program files (x86)\mozilla firefox\firefox.exe] => C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{C0527EAB-340A-4ADB-A764-EFA061976287}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B034F45A-7DFE-45E3-B44E-1BE6C3EE77F6}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A73B82BF-B1C1-4E24-92A7-C4DDDEFE5A62}] => C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{7B5342F5-7596-4EE6-BBF3-7806D5C79CF3}] => C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{4D3773C5-F912-45E5-9398-98DDAE32FB64}] => C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{C33B337F-6D5D-4A6F-A933-FEF115585A21}] => C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{C5A3F189-B595-4C1F-AAFA-70FB242723B3}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{CFD01919-E1F4-48D4-96C6-2D796727E142}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{01627A1C-5748-438E-89A3-F34A6D86E79E}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{159F79B3-FB7D-4AFD-8489-C3B44E46F523}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{53CA8640-DAC5-4F37-B326-E363FCA696A0}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{10512B79-035C-4BBD-AB03-027687533B48}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{D08AC4D4-776A-4ADE-84B9-193C224C999F}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{EF8D90C4-C285-4CAA-9BDC-BA04934C135B}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{2E5C928D-4216-4E9B-B09C-AF1004642884}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{032AC4FA-F1E8-4685-9699-F102E9C3D069}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{23B3B924-C15D-4C97-B069-7E7D9360AAB1}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{3C149125-BABA-4B45-A18F-94B089708C45}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{ED618EC5-6C8A-4EDD-B1EC-B56207A999A5}] => C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{60294DAB-7DCF-4DB8-BB20-D313C8DD2B83}] => C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [{B3580005-C07B-4755-9B3C-3BBCEDE8887A}] => C:\Program Files\Red Giant\Offload\Offload.exe FirewallRules: [TCP Query User{761F4D62-444E-4CC8-BDAF-4BF132FBEA1C}C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe] => C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe FirewallRules: [UDP Query User{8B3472BA-B0A3-436E-A57F-5B88000A6070}C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe] => C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe FirewallRules: [TCP Query User{BCD1911B-3361-4235-8990-EFBD70158D81}C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe] => C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe FirewallRules: [UDP Query User{C1289FA9-3AE9-4A06-A022-8E5524AD0BAA}C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe] => C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe FirewallRules: [TCP Query User{08FADF3E-911D-407C-AD25-2F62341B3486}C:\program files\sonyvegas13\vegas130.exe] => C:\program files\sonyvegas13\vegas130.exe FirewallRules: [UDP Query User{D18142F9-002F-47C4-AF54-E543EADED84F}C:\program files\sonyvegas13\vegas130.exe] => C:\program files\sonyvegas13\vegas130.exe FirewallRules: [{5FC859CC-D758-49B3-8B91-A320F1CEC517}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{179CDD17-158D-4E92-89D9-E89A2AF7FFE9}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{D70C9A60-FB67-4AD1-B0FC-9F14F6867DA6}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{61FD5BBC-9E65-4382-A019-C388354FA9D5}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{B65ACE41-893E-418A-BA19-E7E1257C3DBD}C:\program files\sonyvegas13\vegas130.exe] => C:\program files\sonyvegas13\vegas130.exe FirewallRules: [UDP Query User{11ED78E5-F85B-46D0-AE18-88EE2A0E0497}C:\program files\sonyvegas13\vegas130.exe] => C:\program files\sonyvegas13\vegas130.exe FirewallRules: [{8A1EEF68-BB94-41A1-AECA-17E29C6BA492}] => LPort=49164 FirewallRules: [{1ADB00FB-6FF8-4768-A169-9E1D30C333AF}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2FF08989-65E0-4EB5-9DA0-0FD6F1E62BAB}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{048050F7-DD0B-4C9E-B8F5-C41B2F51F724}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{4DDEADEA-2E8E-4BED-85D3-B7A8F97433CE}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{EAC1EFDD-8A60-4B3A-BAB6-59A26E01AD6C}] => C:\Program Files\iTunes\iTunes.exe FirewallRules: [TCP Query User{6B4CA254-B082-4665-9C02-E0113C383582}C:\program files (x86)\adobe\adobe photoshop cs6\photoshop.exe] => C:\program files (x86)\adobe\adobe photoshop cs6\photoshop.exe FirewallRules: [UDP Query User{CB940569-3A51-428B-BDF6-445423A9A4FA}C:\program files (x86)\adobe\adobe photoshop cs6\photoshop.exe] => C:\program files (x86)\adobe\adobe photoshop cs6\photoshop.exe ==================== Wiederherstellungspunkte ========================= 28-11-2016 23:42:06 Ende der Bereinigung ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/03/2016 11:23:22 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15584 Error: (12/03/2016 11:23:22 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15584 Error: (12/03/2016 11:23:22 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (12/03/2016 08:55:03 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (12/03/2016 08:54:16 AM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Error: (12/03/2016 08:54:15 AM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Error: (12/02/2016 06:59:04 PM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (12/02/2016 06:58:52 PM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Error: (12/02/2016 06:58:51 PM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Error: (12/02/2016 06:09:12 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Systemfehler: ============= Error: (12/03/2016 08:55:10 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/02/2016 06:59:24 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/02/2016 06:59:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Avira Service Host erreicht. Error: (12/02/2016 06:09:14 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/02/2016 02:00:20 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (11/30/2016 04:06:52 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (11/29/2016 12:38:35 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (11/29/2016 11:20:51 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (11/28/2016 11:39:49 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (11/28/2016 11:39:50 PM) (Source: WMPNetworkSvc) (EventID: 14332) (User: ) Description: Dienst "WMPNetworkSvc" konnte nicht ordnungsgemäß gestartet werden, da ein Fehler "0x80004005" in "CoCreateInstance(CLSID_UPnPDeviceFinder)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. CodeIntegrity: =================================== Date: 2016-11-18 00:15:27.671 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-18 00:15:27.593 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz Prozentuale Nutzung des RAM: 24% Installierter physikalischer RAM: 8156.89 MB Verfügbarer physikalischer RAM: 6121.59 MB Summe virtueller Speicher: 16311.96 MB Verfügbarer virtueller Speicher: 13511.98 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:698.54 GB) (Free:81.33 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 3901B0E2) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=698.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
03.12.2016, 19:10 | #3 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr FRST von 'damals', bevor jeglicher Behandlung:
__________________FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 16-11-2016 durchgeführt von Yanik (Administrator) auf YANIK-PC (17-11-2016 23:28:00) Gestartet von C:\Users\Yanik\Desktop\Anti Vir Geladene Profile: Yanik (Verfügbare Profile: Yanik) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Akamai Technologies, Inc.) C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Akamai Technologies, Inc.) C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.17\aaHMSvc.exe () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.17\AsusFanControlService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Borland Software Corporation) C:\Program Files (x86)\Borland\InterBase\bin\ibguard.exe (Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Rocket Division Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (X10) C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Borland Software Corporation) C:\Program Files (x86)\Borland\InterBase\bin\ibserver.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-12-13] (Realtek Semiconductor) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [916072 2016-10-28] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-08-19] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642808 2012-12-19] (Advanced Micro Devices, Inc.) HKLM\...\Policies\Explorer: [AllowLegacyWebView] 1 HKLM\...\Policies\Explorer: [AllowUnhashedWebView] 1 HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2011-10-03] (AMD) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8641240 2016-02-12] (Piriform Ltd) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\MountPoints2: {535bc4fc-797f-11e1-85f1-14dae9b57ba8} - F:\Startme.exe HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\MountPoints2: {6b0d3508-0aeb-11e2-b65a-14dae9b57ba8} - F:\iStudio.exe HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\MountPoints2: {83834214-0236-11e1-b076-14dae9b57ba8} - E:\Autorun.exe HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\MountPoints2: {a8904afd-0d2c-11e1-8cbc-14dae9b57ba8} - E:\setup.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{70FA10B7-ACD3-4F7E-9907-98EA2FC7C6EA}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{B26E3F9E-3621-4CAE-9453-60D5A400404C}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE07&ocid=UE07DHP HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?pc=UE07&ocid=UE07DHP SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope Wert fehlt SearchScopes: HKU\S-1-5-21-3404717819-833408578-2882030763-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Kein Name -> {41564952-412D-5637-00A7-7A786E7484D7} -> Keine Datei BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll [2014-09-25] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll [2014-09-25] (Oracle Corporation) BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22] (Hewlett-Packard Co.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22] (Hewlett-Packard Co.) Toolbar: HKU\S-1-5-21-3404717819-833408578-2882030763-1000 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei DPF: HKLM-x32 {6E718D87-6909-4FCE-92D4-EDCB2F725727} hxxp://navigram.com/engine/v1026/Navigram.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab FireFox: ======== FF DefaultProfile: wddldjwh.default-1385910868748 FF ProfilePath: C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748 [2016-11-17] FF Homepage: Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748 -> google.de FF Extension: (ProxTube - Gesperrte YouTube Videos entsperren) - C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748\Extensions\ich@maltegoetz.de.xpi [2014-09-11] [ist nicht signiert] FF Extension: (Asynchronous Plugin Rendering) - C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748\features\{27d7ec33-81c8-4dd9-aaf6-7f463170c3b0}\asyncrendering@mozilla.org.xpi [2016-10-26] FF Extension: (Multi-process staged rollout) - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi [2016-10-21] [ist nicht signiert] FF Extension: (Pocket) - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi [2016-10-21] [ist nicht signiert] FF Extension: (Web Compat) - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi [2016-10-21] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: (PDF Architect Converter For Firefox) - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-08-18] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: (HP Smart Web Printing) - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2016-06-09] [ist nicht signiert] FF HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-09] () FF Plugin: @java.com/DTPlugin,version=10.4.0 -> C:\Windows\system32\npDeployJava1.dll [2012-04-10] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll [2014-09-25] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-12-15] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-09] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [Keine Datei] FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.10.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2014-09-25] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll [Keine Datei] FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2011-10-15] (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-06-23] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-12-15] (Adobe Systems) FF Plugin HKU\S-1-5-21-3404717819-833408578-2882030763-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Yanik\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF Plugin HKU\S-1-5-21-3404717819-833408578-2882030763-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2011-10-15] (Pando Networks) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-06-23] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2015-03-24] (Apple Inc.) ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [1089088 2016-10-28] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [475232 2016-10-28] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [475232 2016-10-28] (Avira Operations GmbH & Co. KG) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe [918448 2011-10-29] () [Datei ist nicht signiert] R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.17\aaHMSvc.exe [947328 2011-12-09] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] () R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.17\AsusFanControlService.exe [1464752 2011-12-09] (ASUSTeK Computer Inc.) [Datei ist nicht signiert] R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [324304 2016-08-19] (Avira Operations GmbH & Co. KG) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [389480 2016-03-17] (Digital Wave Ltd.) R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [253568 2009-11-18] (Hewlett-Packard Co.) [Datei ist nicht signiert] R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [137344 2009-11-18] (Hewlett-Packard Co.) [Datei ist nicht signiert] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.) [Datei ist nicht signiert] S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160768 2011-05-27] (Intel Corporation) [Datei ist nicht signiert] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Datei ist nicht signiert] R2 InterBaseGuardian; C:\Program Files (x86)\Borland\InterBase\bin\ibguard.exe [32768 2001-11-29] (Borland Software Corporation) [Datei ist nicht signiert] R3 InterBaseServer; C:\Program Files (x86)\Borland\InterBase\bin\ibserver.exe [1769472 2001-11-29] (Borland Software Corporation) [Datei ist nicht signiert] S3 MSCSPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [Datei ist nicht signiert] R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [Datei ist nicht signiert] R2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [5352960 2011-04-07] (Native Instruments GmbH) [Datei ist nicht signiert] S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4909600 2013-09-02] (INCA Internet Co., Ltd.) S3 PACSPTISVR; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [Datei ist nicht signiert] R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [Datei ist nicht signiert] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2012-09-01] () S3 SonicStage Back-End Service; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SsBeSvc.exe [112184 2007-02-05] (Sony Corporation) S3 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) [Datei ist nicht signiert] S3 SPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [Datei ist nicht signiert] S3 SSScsiSV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SSScsiSV.exe [75320 2007-02-05] (Sony Corporation) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) [Datei ist nicht signiert] S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 x10nets; C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) [Datei ist nicht signiert] S2 AntiVirWebService; "C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [177432 2016-10-28] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [145536 2016-10-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG) S2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [79696 2016-05-13] (Avira Operations GmbH & Co. KG) S3 camfilt2; C:\Windows\System32\Drivers\camfilt2.sys [52736 2007-06-01] (Guillemot Corporation) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-05-28] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 ffusb2audio; C:\Windows\System32\DRIVERS\ffusb2audio.sys [127280 2013-09-25] (Focusrite Audio Engineering Limited.) R3 FocusriteUSBSwRoot; C:\Windows\System32\DRIVERS\FocusriteUSBSwRoot.sys [92688 2016-09-01] (Focusrite Audio Engineering Ltd.) S3 hxctlflt; C:\Windows\System32\Drivers\hxctlflt.sys [111104 2009-02-08] (Guillemot Corporation) S3 libusb0; C:\Windows\System32\drivers\libusb0.sys [52320 2012-04-20] (hxxp://libusb-win32.sourceforge.net) S3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [33792 2005-03-09] () [Datei ist nicht signiert] S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-11-17] (Malwarebytes) S3 NPPTNT2; C:\Windows\SysWOW64\npptNT2.sys [4682 2004-12-31] (INCA Internet Co., Ltd.) [Datei ist nicht signiert] S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [9631360 2007-05-16] () S0 sptd; kein ImagePath R3 teVirtualMIDI64; C:\Windows\System32\DRIVERS\teVirtualMIDI64.sys [41016 2015-07-12] (Tobias Erichsen) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S3 X6va003; \??\C:\Users\Yanik\AppData\Local\Temp\00379B2.tmp [X] S3 X6va005; \??\C:\Users\Yanik\AppData\Local\Temp\005BEA4.tmp [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-17 23:24 - 2016-11-17 23:28 - 00000000 ____D C:\FRST 2016-11-17 20:50 - 2016-11-17 21:49 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2016-11-17 20:47 - 2016-11-17 23:28 - 00000000 ____D C:\Users\Yanik\Desktop\Anti Vir 2016-11-17 20:11 - 2016-11-17 22:36 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-11-17 20:11 - 2016-11-17 20:49 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-11-17 20:11 - 2016-11-17 20:11 - 00001102 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-11-17 20:11 - 2016-11-17 20:11 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-11-17 20:11 - 2016-11-17 20:11 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-11-17 20:11 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-11-17 20:11 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-11-17 19:44 - 2015-07-16 20:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2016-11-17 19:44 - 2015-07-16 20:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2016-11-17 19:44 - 2015-07-16 20:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2016-11-17 19:44 - 2015-07-11 14:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2016-11-17 03:34 - 2016-11-17 03:34 - 00000000 ____D C:\Windows\Options 2016-11-17 03:34 - 2010-01-29 10:06 - 00052790 _____ C:\Windows\system32\athrextx.cat 2016-11-17 03:34 - 2010-01-27 17:25 - 01584640 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys 2016-11-17 03:34 - 2010-01-27 17:25 - 01584640 _____ (Atheros Communications, Inc.) C:\Windows\system32\athrx.sys 2016-11-17 01:48 - 2011-09-29 17:30 - 00646248 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2016-11-17 01:48 - 2011-09-29 17:30 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2016-11-17 01:46 - 2016-11-17 01:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2016-11-17 01:46 - 2011-09-16 15:12 - 00032360 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtVlan620.sys 2016-11-17 01:46 - 2011-06-15 21:11 - 00048416 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtTeam60.sys 2016-11-17 01:46 - 2011-06-15 21:11 - 00032544 _____ (Realtek ) C:\Windows\system32\Drivers\RtNdPt60.sys 2016-11-16 22:08 - 2016-11-17 01:22 - 00000000 ____D C:\Program Files\FocusriteUSB 2016-11-16 22:08 - 2016-11-16 22:08 - 00714448 _____ C:\Windows\is-TJBLS.exe 2016-11-16 22:08 - 2016-11-16 22:08 - 00011397 _____ C:\Windows\is-TJBLS.msg 2016-11-16 22:08 - 2016-11-16 22:08 - 00000331 _____ C:\Windows\is-TJBLS.lst 2016-11-16 22:08 - 2016-11-16 22:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Focusrite Audio Engineering Ltd 2016-11-16 22:08 - 2016-09-01 13:24 - 00092688 _____ (Focusrite Audio Engineering Ltd.) C:\Windows\system32\Drivers\FocusriteUSBSwRoot.sys 2016-11-16 17:01 - 2016-11-17 20:47 - 00000000 ____D C:\Users\Yanik\Desktop\treiber 2016-11-15 21:43 - 2016-11-15 21:46 - 27213252 _____ C:\Users\Yanik\Documents\shuffle.mp4 2016-11-15 16:45 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2016-11-15 16:45 - 2014-05-08 10:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2016-11-15 03:51 - 2016-11-15 03:51 - 00431704 _____ C:\Users\Yanik\Downloads\MatheWiwi Kapitel 2.pdf 2016-11-15 03:51 - 2016-11-15 03:51 - 00422816 _____ C:\Users\Yanik\Downloads\KU_MatheWiwi2016 Kapitel 5.pdf 2016-11-15 03:51 - 2016-11-15 03:51 - 00392825 _____ C:\Users\Yanik\Downloads\KU_MatheWiwi2016 Kapitel 8.pdf 2016-11-15 03:50 - 2016-11-15 03:50 - 00116560 _____ C:\Users\Yanik\Downloads\MatheWiwi2016_blatt03.pdf 2016-11-15 03:50 - 2016-11-15 03:50 - 00112148 _____ C:\Users\Yanik\Downloads\MatheWiwi2016_blatt02.pdf 2016-11-14 23:17 - 2016-11-14 23:17 - 24619920 _____ C:\Users\Yanik\Desktop\BRAMMINÖS vox.wav 2016-11-14 22:21 - 2016-11-14 22:24 - 28918575 _____ C:\Users\Yanik\Documents\Heat Droppin.mp4 2016-11-14 19:28 - 2016-11-16 02:58 - 12139270 _____ C:\Users\Yanik\Desktop\Steady test.mp4 2016-11-14 16:16 - 2016-11-14 16:31 - 01013984 _____ C:\Windows\PE_File.dll 2016-11-14 16:16 - 2014-05-20 10:03 - 04194304 _____ C:\Users\Yanik\Downloads\P8H67-ASUS-3801.ROM 2016-11-14 16:15 - 2016-11-14 16:31 - 00948448 _____ C:\Windows\PE_Rom.dll 2016-11-14 16:14 - 2016-11-16 18:09 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2016-11-14 16:13 - 2016-11-14 16:13 - 00000000 ____D C:\ProgramData\ASUS OC Profiles 2016-11-14 16:13 - 2011-12-13 18:27 - 04718952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2016-11-14 16:13 - 2011-12-13 16:58 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2016-11-14 16:13 - 2011-12-13 16:25 - 00200468 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2016-11-14 16:13 - 2011-12-12 17:20 - 00100456 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2016-11-14 16:13 - 2011-12-09 16:42 - 02684416 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2016-11-14 16:13 - 2011-12-08 17:28 - 01969768 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2016-11-14 16:13 - 2011-12-08 16:27 - 03744872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2016-11-14 16:13 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2016-11-14 16:13 - 2011-11-22 11:36 - 02615400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2016-11-14 16:13 - 2011-11-18 16:40 - 00219752 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2016-11-14 16:13 - 2011-10-18 13:55 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2016-11-14 16:13 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00527872 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00515584 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00439808 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2016-11-14 16:13 - 2011-07-28 00:55 - 02604376 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll 2016-11-14 16:13 - 2011-07-28 00:55 - 02132824 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2016-11-14 16:13 - 2011-07-22 19:35 - 01247848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2016-11-14 16:13 - 2011-07-08 14:34 - 00065432 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2016-11-14 16:13 - 2011-06-27 14:45 - 03768152 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll 2016-11-14 16:13 - 2011-06-14 11:13 - 00177088 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2016-11-14 16:13 - 2011-05-05 15:24 - 02085440 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 03308376 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00426328 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00136024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00118104 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00074072 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2016-11-14 16:13 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2016-11-14 16:13 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2016-11-14 16:13 - 2010-11-29 14:36 - 00702808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek2.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2016-11-14 16:13 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2016-11-14 16:13 - 2010-10-03 13:46 - 00341336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2016-11-14 16:13 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2016-11-14 16:13 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2016-11-14 16:13 - 2010-07-22 16:37 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2016-11-14 16:13 - 2010-05-06 17:34 - 00334680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2016-11-14 16:13 - 2009-11-17 18:12 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2016-11-14 15:56 - 2010-08-03 13:21 - 00014464 _____ C:\Windows\SysWOW64\Drivers\AsUpIO.sys 2016-11-14 15:55 - 2008-12-02 20:05 - 00184320 _____ (ASUSTeK) C:\Windows\SysWOW64\Drivers\UpdateHelper.dll 2016-11-14 15:54 - 2008-01-04 13:34 - 00011832 ____N C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys 2016-11-14 15:54 - 2008-01-04 13:34 - 00010216 ____N C:\Windows\SysWOW64\Drivers\AsInsHelp32.sys 2016-11-14 15:53 - 2016-11-14 16:51 - 00000000 ____D C:\Program Files (x86)\ASUS 2016-11-14 15:53 - 2016-11-14 15:54 - 00000000 ____D C:\ProgramData\ASUS 2016-11-14 15:53 - 2014-09-09 03:14 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2016-11-14 15:53 - 2014-09-09 03:14 - 00015232 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys 2016-11-14 15:45 - 2016-11-14 15:45 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll 2016-11-14 15:45 - 2016-11-14 15:45 - 00000000 ____D C:\Windows\Intel_Chipset_XPVistaWin7_V9301019 2016-11-14 15:40 - 2016-11-14 15:40 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3 2016-11-14 15:28 - 2016-11-14 15:28 - 00614480 _____ C:\Users\Yanik\Downloads\408256_intl_x64_zip.exe 2016-11-14 15:19 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2016-11-14 15:19 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2016-11-14 15:19 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2016-11-14 15:19 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2016-11-14 15:19 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2016-11-14 15:19 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2016-11-14 15:19 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2016-11-14 15:19 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2016-11-14 15:19 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2016-11-14 15:19 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2016-11-14 15:19 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2016-11-14 15:13 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2016-11-14 15:13 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2016-11-14 15:13 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys 2016-11-14 15:13 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2016-11-14 15:13 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2016-11-14 15:11 - 2016-11-14 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-11-14 15:10 - 2016-11-14 15:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2016-11-14 15:10 - 2016-11-14 15:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2016-11-14 15:09 - 2015-08-05 18:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2016-11-14 15:09 - 2015-08-05 18:06 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2016-11-14 15:05 - 2015-12-16 19:55 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdgeoqw.dll 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZEL.DLL 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZE.DLL 2016-11-14 15:05 - 2015-12-16 19:48 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZE.DLL 2016-11-14 15:05 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdgeoqw.dll 2016-11-14 15:05 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZEL.DLL 2016-11-14 15:05 - 2015-12-16 19:47 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll 2016-11-13 20:15 - 2016-11-13 20:16 - 03123839 _____ C:\Users\Yanik\Downloads\P8H67-ASUS-3801.zip 2016-11-13 03:27 - 2016-11-13 03:27 - 00929768 _____ (Focusrite Audio Engineering Limited. ) C:\Users\Yanik\Downloads\focusrite-usb-2-driver-2.5.1(3).exe 2016-11-13 02:59 - 2016-11-02 16:36 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2016-11-13 02:59 - 2016-11-02 16:22 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2016-11-13 02:59 - 2016-11-02 15:53 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2016-11-13 02:59 - 2016-10-28 04:59 - 00394440 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-11-13 02:59 - 2016-10-28 04:14 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-11-13 02:59 - 2016-10-27 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-11-13 02:59 - 2016-10-27 20:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-11-13 02:59 - 2016-10-27 19:55 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-11-13 02:59 - 2016-10-27 19:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-11-13 02:59 - 2016-10-27 19:54 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-11-13 02:59 - 2016-10-27 19:53 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-11-13 02:59 - 2016-10-27 19:53 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-11-13 02:59 - 2016-10-27 19:51 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-11-13 02:59 - 2016-10-27 19:44 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-11-13 02:59 - 2016-10-27 19:43 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-11-13 02:59 - 2016-10-27 19:38 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-11-13 02:59 - 2016-10-27 19:37 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-11-13 02:59 - 2016-10-27 19:28 - 25763328 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-11-13 02:59 - 2016-10-27 19:28 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-11-13 02:59 - 2016-10-27 19:24 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-11-13 02:59 - 2016-10-27 19:19 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-11-13 02:59 - 2016-10-27 19:15 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-11-13 02:59 - 2016-10-27 19:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-11-13 02:59 - 2016-10-27 19:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-11-13 02:59 - 2016-10-27 19:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-11-13 02:59 - 2016-10-27 19:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-11-13 02:59 - 2016-10-27 19:02 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-11-13 02:59 - 2016-10-27 18:49 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-11-13 02:59 - 2016-10-27 18:46 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-11-13 02:59 - 2016-10-27 18:46 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-11-13 02:59 - 2016-10-27 18:44 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-11-13 02:59 - 2016-10-27 18:44 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-11-13 02:59 - 2016-10-27 18:17 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-11-13 02:59 - 2016-10-27 18:16 - 02920448 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-11-13 02:59 - 2016-10-27 18:03 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-11-13 02:59 - 2016-10-27 17:54 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-11-13 02:59 - 2016-10-27 16:05 - 20304896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-11-13 02:59 - 2016-10-25 16:02 - 03219456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-11-13 02:59 - 2016-10-22 18:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-11-13 02:59 - 2016-10-22 18:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-11-13 02:59 - 2016-10-22 18:36 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-11-13 02:59 - 2016-10-22 18:35 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-11-13 02:59 - 2016-10-22 18:35 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-11-13 02:59 - 2016-10-22 18:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-11-13 02:59 - 2016-10-22 18:27 - 02287616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-11-13 02:59 - 2016-10-22 18:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-11-13 02:59 - 2016-10-22 18:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-11-13 02:59 - 2016-10-22 18:22 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-11-13 02:59 - 2016-10-22 18:21 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-11-13 02:59 - 2016-10-22 18:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-11-13 02:59 - 2016-10-22 18:20 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-11-13 02:59 - 2016-10-22 18:09 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-11-13 02:59 - 2016-10-22 18:04 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-11-13 02:59 - 2016-10-22 18:03 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-11-13 02:59 - 2016-10-22 17:59 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-11-13 02:59 - 2016-10-22 17:58 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-11-13 02:59 - 2016-10-22 17:56 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-11-13 02:59 - 2016-10-22 17:54 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-11-13 02:59 - 2016-10-22 17:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-11-13 02:59 - 2016-10-22 17:45 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-11-13 02:59 - 2016-10-22 17:44 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-11-13 02:59 - 2016-10-22 17:43 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-11-13 02:59 - 2016-10-22 17:43 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-11-13 02:59 - 2016-10-22 17:30 - 13654016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-11-13 02:59 - 2016-10-22 17:12 - 02444800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-11-13 02:59 - 2016-10-22 17:09 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-11-13 02:59 - 2016-10-22 17:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-11-13 02:59 - 2016-10-15 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2016-11-13 02:59 - 2016-10-15 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2016-11-13 02:59 - 2016-10-15 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2016-11-13 02:59 - 2016-10-15 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2016-11-13 02:59 - 2016-10-11 16:37 - 00370920 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2016-11-13 02:59 - 2016-10-11 16:31 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2016-11-13 02:59 - 2016-10-11 16:31 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2016-11-13 02:59 - 2016-10-11 16:31 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2016-11-13 02:59 - 2016-10-11 16:31 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2016-11-13 02:59 - 2016-10-11 16:31 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME 2016-11-13 02:59 - 2016-10-11 16:18 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2016-11-13 02:59 - 2016-10-11 16:18 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2016-11-13 02:59 - 2016-10-11 16:18 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2016-11-13 02:59 - 2016-10-11 16:18 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime 2016-11-13 02:59 - 2016-10-11 14:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2016-11-13 02:59 - 2016-10-11 14:06 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2016-11-13 02:59 - 2016-10-10 16:38 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-11-13 02:59 - 2016-10-10 16:38 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-11-13 02:59 - 2016-10-10 16:34 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 01462272 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-11-13 02:59 - 2016-10-10 16:02 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-11-13 02:59 - 2016-10-10 15:56 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-11-13 02:59 - 2016-10-10 15:54 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-11-13 02:59 - 2016-10-10 15:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-11-13 02:59 - 2016-10-07 16:40 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-11-13 02:59 - 2016-10-07 16:37 - 05547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-11-13 02:59 - 2016-10-07 16:37 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-11-13 02:59 - 2016-10-07 16:35 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 03649536 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00877056 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:18 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-11-13 02:59 - 2016-10-07 16:18 - 03944680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-11-13 02:59 - 2016-10-07 16:15 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:04 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2016-11-13 02:59 - 2016-10-07 16:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2016-11-13 02:59 - 2016-10-07 16:04 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2016-11-13 02:59 - 2016-10-07 16:01 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-11-13 02:59 - 2016-10-07 16:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-11-13 02:59 - 2016-10-07 15:56 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-11-13 02:59 - 2016-10-07 15:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-11-13 02:59 - 2016-10-07 15:50 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-11-13 02:59 - 2016-10-07 15:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-11-13 02:59 - 2016-10-07 15:49 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-11-13 02:59 - 2016-10-05 15:54 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2016-11-13 02:59 - 2016-09-15 15:56 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2016-11-13 02:59 - 2016-09-13 16:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2016-11-13 02:59 - 2016-09-13 16:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2016-11-13 02:59 - 2016-09-09 19:20 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2016-11-13 02:59 - 2016-09-09 19:00 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-11-13 02:58 - 2016-10-07 15:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-11-13 02:58 - 2016-08-22 17:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2016-11-13 01:51 - 2016-11-13 01:51 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_FocusriteUSB_01011.Wdf 2016-11-13 01:36 - 2016-11-13 01:37 - 05145720 _____ (Focusrite Audio Engineering Ltd. ) C:\Users\Yanik\Downloads\focusriteusbinstaller_4.exe 2016-11-12 00:34 - 2016-11-12 00:46 - 43281888 _____ C:\Users\Yanik\Documents\rrraaaah.mp4 2016-11-10 20:58 - 2016-11-10 21:00 - 11174518 _____ C:\Users\Yanik\Downloads\paccbetno808.wav 2016-11-10 20:58 - 2016-11-10 21:00 - 10927342 _____ C:\Users\Yanik\Downloads\ccbetnodrums.wav 2016-11-10 20:42 - 2016-11-10 20:44 - 08443162 _____ C:\Users\Yanik\Downloads\paccbet1.wav 2016-11-10 04:22 - 2016-11-10 04:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-11-10 04:19 - 2016-11-10 04:19 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2016-11-10 04:14 - 2016-11-10 04:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2016-11-08 21:21 - 2016-11-08 21:41 - 00000205 _____ C:\Users\Yanik\Desktop\Gutscheine.txt 2016-11-07 18:53 - 2016-11-07 18:58 - 54258693 _____ C:\Users\Yanik\Downloads\Basma4 - Russisches Piva (Beat by LEN Arts).mp4 2016-11-04 07:11 - 2016-11-04 07:11 - 00560372 _____ C:\Users\Yanik\Downloads\FLT_TRT4LT22755_0.pdf 2016-11-04 07:05 - 2016-11-04 07:05 - 00439820 _____ C:\Users\Yanik\Downloads\FLT_9XZWF122754_0.pdf 2016-11-04 06:32 - 2016-11-09 22:26 - 00000000 ____D C:\Users\Yanik\Desktop\Ablehnung 2016-11-03 04:09 - 2016-11-03 04:12 - 08592158 _____ C:\Users\Yanik\Downloads\Trap Hard Sylenth Bank.rar 2016-11-03 04:07 - 2016-11-03 04:08 - 12502244 _____ C:\Users\Yanik\Downloads\The Plug Sylenth Bank.rar 2016-11-03 04:01 - 2016-11-03 04:01 - 41824619 _____ C:\Users\Yanik\Downloads\BK Bangerz Drumkit Squad Edition.zip 2016-11-03 03:58 - 2016-11-03 03:58 - 00002639 _____ C:\Users\Yanik\Desktop\µTorrent.lnk 2016-11-03 03:58 - 2016-11-03 03:58 - 00000000 ____D C:\Users\Yanik\AppData\LocalLow\uTorrent 2016-11-03 03:57 - 2016-11-03 05:40 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\uTorrent 2016-11-03 03:57 - 2016-11-03 03:57 - 02375360 _____ (BitTorrent Inc.) C:\Users\Yanik\Downloads\uTorrent.exe 2016-11-03 03:39 - 2016-11-03 03:41 - 100431872 _____ C:\Users\Yanik\Downloads\BK Bangerz Drumkit Squad Edition.part2.rar 2016-11-03 03:36 - 2016-11-03 03:38 - 107471006 _____ C:\Users\Yanik\Downloads\Trapaholic Soundpack XXL.rar 2016-11-03 03:34 - 2016-11-03 03:34 - 01460290 _____ C:\Users\Yanik\Downloads\14s52x_proaudiozone.eu.rar 2016-11-01 07:30 - 2016-11-01 07:30 - 00002051 _____ C:\Users\Public\Desktop\loopMIDI.lnk 2016-11-01 07:30 - 2016-11-01 07:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\loopMIDI 2016-11-01 07:30 - 2016-11-01 07:30 - 00000000 ____D C:\Program Files\Tobias Erichsen 2016-11-01 07:30 - 2016-11-01 07:30 - 00000000 ____D C:\Program Files (x86)\Tobias Erichsen 2016-11-01 07:29 - 2016-11-01 07:29 - 08142921 _____ C:\Users\Yanik\Downloads\loopMIDISetup_1_0_13_24.zip 2016-11-01 07:08 - 2016-11-01 07:31 - 00000000 ____D C:\Program Files (x86)\MIDIOX 2016-11-01 07:06 - 2016-11-01 07:06 - 00917504 _____ C:\Users\Yanik\Downloads\midioxse.exe 2016-11-01 06:51 - 2016-11-16 18:10 - 00000000 ____D C:\Users\Yanik\AppData\Local\AutoTonic 2016-11-01 06:51 - 2016-11-01 06:51 - 00001027 _____ C:\Users\Yanik\Desktop\AutoTonic - Verknüpfung.lnk 2016-11-01 06:50 - 2016-11-01 06:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoTonic 2016-11-01 06:50 - 2016-11-01 06:50 - 00000000 ____D C:\Program Files (x86)\AutoTonic 2016-11-01 06:48 - 2016-11-01 06:49 - 27977838 _____ C:\Users\Yanik\Downloads\4g8s52sfb_proaudiozone.eu.rar 2016-10-26 19:53 - 2016-10-26 19:54 - 00000000 ____D C:\Users\Yanik\Desktop\lulu 2016-10-26 19:19 - 2016-10-26 19:29 - 162534557 _____ C:\Users\Yanik\Downloads\Gaucho PT2.zip 2016-10-26 07:49 - 2016-10-26 07:49 - 00166776 _____ C:\Windows\system32\us008ci.exe 2016-10-26 07:48 - 2016-10-26 07:48 - 00098320 _____ (SS) C:\Windows\system32\us008ci.dll 2016-10-26 07:48 - 2016-10-26 07:48 - 00031256 _____ () C:\Windows\system32\us008lm.dll 2016-10-24 23:52 - 2016-10-24 23:52 - 00083390 _____ C:\Users\Yanik\Downloads\MatheWiwi2016_blatt01.pdf 2016-10-21 17:25 - 2016-10-21 17:52 - 313725748 _____ C:\Users\Yanik\Documents\Lurkin 2.mp4 2016-10-21 16:30 - 2016-10-22 14:46 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-10-21 16:26 - 2016-10-21 16:26 - 00042657 _____ C:\Users\Yanik\Desktop\Halbwaisenrente Domi.pdf 2016-10-20 13:49 - 2016-10-20 13:51 - 00013488 _____ C:\Users\Yanik\Desktop\Lurkin 2.veg 2016-10-20 13:49 - 2016-10-20 13:49 - 00015040 _____ C:\Users\Yanik\Desktop\Lurkin 2.veg.bak 2016-10-20 13:24 - 2016-10-20 13:25 - 00290464 _____ C:\Users\Yanik\Documents\Lurkin.mp4.sfk 2016-10-19 22:26 - 2016-10-19 22:39 - 311513257 _____ C:\Users\Yanik\Documents\Lurkin.mp4 2016-10-19 22:24 - 2016-10-19 22:42 - 00017752 _____ C:\Users\Yanik\Desktop\Lurkin.veg 2016-10-19 22:24 - 2016-10-19 22:24 - 00017752 _____ C:\Users\Yanik\Desktop\Lurkin.veg.bak 2016-10-19 21:45 - 2016-10-19 21:47 - 00340128 _____ C:\Users\Yanik\Documents\trip sum.mp4.sfk 2016-10-19 16:54 - 2016-10-19 16:54 - 00008134 _____ C:\Users\Yanik\Desktop\Unbenanntes Projekt.aep 2016-10-19 11:09 - 2016-10-19 16:42 - 381730866 _____ C:\Users\Yanik\Documents\trip sum.mp4 2016-10-18 23:21 - 2016-10-18 23:21 - 00033707 _____ C:\Users\Yanik\Downloads\Report7d265f76-3c3d-4d83-82bc-5a197aad6be6.pdf 2016-10-18 23:21 - 2016-10-18 23:21 - 00033484 _____ C:\Users\Yanik\Downloads\Reporte8c7c4ff-c2c7-4c6e-9e36-56965c2b1162.pdf ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-17 23:29 - 2013-09-15 19:28 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-11-17 22:57 - 2009-07-14 05:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-11-17 22:57 - 2009-07-14 05:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-11-17 22:48 - 2012-07-10 07:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-11-17 22:43 - 2014-09-25 12:37 - 00001684 _____ C:\Windows\Tasks\JZPUYQL.job 2016-11-17 22:43 - 2013-09-15 19:28 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-11-17 22:43 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-11-17 22:41 - 2013-11-27 19:36 - 00000928 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA.job 2016-11-17 22:41 - 2013-10-01 15:59 - 00000000 ____D C:\AdwCleaner 2016-11-17 22:36 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-11-17 22:00 - 2012-05-01 21:00 - 00000000 ____D C:\Users\Yanik\Desktop\Anwendungen 2016-11-17 22:00 - 2012-04-20 11:50 - 00000008 __RSH C:\ProgramData\ntuser.pol 2016-11-17 19:41 - 2013-11-27 19:36 - 00000906 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core.job 2016-11-17 03:34 - 2011-10-15 09:58 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-11-17 03:26 - 2011-10-15 10:28 - 00000000 ____D C:\ProgramData\TP-LINK 2016-11-17 01:48 - 2011-10-15 09:58 - 00000000 ____D C:\Program Files (x86)\Realtek 2016-11-17 01:45 - 2011-10-31 22:38 - 00000000 ____D C:\Users\Yanik\AppData\Local\ElevatedDiagnostics 2016-11-17 01:44 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration 2016-11-17 01:32 - 2013-06-22 15:54 - 00000000 ____D C:\Users\Yanik\Desktop\3xOsc 2016-11-17 01:22 - 2011-11-27 16:02 - 00000000 ____D C:\Users\Yanik\AppData\Local\Akamai 2016-11-17 01:22 - 2011-10-15 09:49 - 00000000 ____D C:\Users\Yanik 2016-11-17 01:04 - 2011-11-26 18:11 - 00000000 ____D C:\Program Files (x86)\VstPlugins 2016-11-16 22:29 - 2013-03-30 16:53 - 00000000 ____D C:\Users\Yanik\Desktop\Ultra 2016-11-16 18:10 - 2016-06-09 13:49 - 00000000 ____D C:\ProgramData\HP 2016-11-16 18:10 - 2012-07-22 21:49 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Audacity 2016-11-16 18:09 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2016-11-16 17:25 - 2011-10-15 17:47 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2016-11-16 03:02 - 2012-04-08 15:10 - 03462144 ___SH C:\Users\Yanik\Desktop\Thumbs.db 2016-11-16 02:00 - 2014-08-30 16:33 - 00000000 ____D C:\Users\Yanik\AppData\Local\Adobe 2016-11-15 22:56 - 2011-10-21 22:21 - 00000000 ____D C:\Users\Yanik\AppData\Local\CrashDumps 2016-11-15 16:29 - 2014-09-04 21:47 - 00065536 _____ C:\Windows\system32\Ikeext.etl 2016-11-14 17:05 - 2011-11-28 10:33 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2016-11-14 17:05 - 2011-11-28 10:33 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2 2016-11-14 16:40 - 2012-01-09 00:58 - 00000000 ____D C:\Windows\pss 2016-11-14 16:23 - 2009-07-14 05:45 - 04940184 _____ C:\Windows\system32\FNTCACHE.DAT 2016-11-14 16:14 - 2011-10-15 09:58 - 00000000 ___HD C:\Program Files (x86)\Temp 2016-11-14 16:02 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2016-11-14 16:00 - 2011-10-15 09:54 - 00000000 ____D C:\Program Files (x86)\Intel 2016-11-14 15:44 - 2011-10-15 09:52 - 00001769 _____ C:\Windows\Language_trs.ini 2016-11-14 15:16 - 2014-02-25 03:05 - 01594028 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-11-14 15:16 - 2011-04-12 08:43 - 00699432 _____ C:\Windows\system32\perfh007.dat 2016-11-14 15:16 - 2011-04-12 08:43 - 00149572 _____ C:\Windows\system32\perfc007.dat 2016-11-14 15:16 - 2009-07-14 06:13 - 01594028 _____ C:\Windows\system32\PerfStringBackup.INI 2016-11-13 03:01 - 2013-08-15 01:25 - 00000000 ____D C:\Windows\system32\MRT 2016-11-13 02:42 - 2011-12-27 21:02 - 141011376 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-11-13 02:26 - 2015-03-24 21:01 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2016-11-13 02:26 - 2015-03-24 21:01 - 00000000 ____D C:\Program Files\iTunes 2016-11-13 02:26 - 2015-03-24 21:01 - 00000000 ____D C:\Program Files (x86)\iTunes 2016-11-13 02:26 - 2015-03-24 20:55 - 00000000 ____D C:\Program Files (x86)\QuickTime 2016-11-13 02:26 - 2014-10-10 17:09 - 00000000 ____D C:\Program Files\Common Files\Apple 2016-11-13 02:26 - 2014-10-10 17:09 - 00000000 ____D C:\Program Files\Bonjour 2016-11-13 02:26 - 2014-10-10 17:09 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-11-13 02:26 - 2014-10-10 17:09 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2016-11-13 02:26 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\servicing 2016-11-13 02:26 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-11-13 01:20 - 2015-03-24 21:01 - 00000000 ____D C:\Program Files\iPod 2016-11-10 04:27 - 2011-11-08 16:19 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Apple Computer 2016-11-10 04:19 - 2014-10-10 17:09 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-11-09 14:48 - 2012-07-10 07:31 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-11-09 14:48 - 2012-04-24 07:26 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-11-09 14:48 - 2011-10-15 17:47 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-11-09 14:48 - 2011-10-15 17:47 - 00000000 ____D C:\Windows\system32\Macromed 2016-11-07 16:45 - 2015-01-13 16:13 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2016-11-01 07:32 - 2014-08-24 17:13 - 00000000 ____D C:\Program Files\Common Files\VST3 2016-11-01 07:29 - 2014-08-07 11:15 - 00000000 ____D C:\ProgramData\Package Cache 2016-10-30 20:38 - 2011-10-19 21:04 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\TeamViewer 2016-10-29 05:13 - 2011-10-15 18:33 - 00000000 ____D C:\Program Files (x86)\Steam 2016-10-28 21:17 - 2013-08-08 13:11 - 00177432 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2016-10-26 16:29 - 2010-11-21 04:27 - 00485032 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2016-10-24 09:43 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2016-10-22 14:46 - 2014-10-07 12:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2011-10-21 19:40 - 2011-10-21 19:40 - 0000443 ____H () C:\Program Files\U_AVA_Setup.exe.bfi 2011-10-21 19:40 - 2011-10-21 19:40 - 0000052 ____H () C:\Program Files\U_AVA_Setup.exe_neobit.fsi 2012-02-20 17:20 - 2012-02-20 17:20 - 0000187 ____H () C:\Program Files (x86)\0x0409.ini.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0211456 _____ (Aureal Semiconductor) C:\Program Files (x86)\a3dapi.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0258106 _____ () C:\Program Files (x86)\Core.dll 2015-02-02 01:27 - 2012-04-29 20:25 - 0000077 _____ () C:\Program Files (x86)\Counter-Strike WaRzOnE.bat 2015-02-02 01:27 - 2012-03-04 19:04 - 0294496 _____ (Valve Corporation) C:\Program Files (x86)\crashhandler.dll 2015-02-02 01:27 - 2012-03-04 19:25 - 0000073 _____ () C:\Program Files (x86)\CS Dedicated Server CLI.bat 2015-02-02 01:27 - 2012-05-05 05:40 - 0000035 _____ () C:\Program Files (x86)\CS Dedicated Server GUI.bat 2012-02-20 16:34 - 2012-02-20 16:34 - 0000186 ____H () C:\Program Files (x86)\data1.cab.bfi 2012-02-20 17:20 - 2012-02-20 17:20 - 0000186 ____H () C:\Program Files (x86)\data1.hdr.bfi 2012-02-20 16:34 - 2012-02-20 17:00 - 0000313 ____H () C:\Program Files (x86)\data2.cab.bfi 2012-02-20 17:00 - 2012-02-20 17:19 - 0000313 ____H () C:\Program Files (x86)\data3.cab.bfi 2012-02-20 17:19 - 2012-02-20 17:20 - 0000198 ____H () C:\Program Files (x86)\data4.cab.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0069632 _____ () C:\Program Files (x86)\dbg.dll 2013-01-22 20:12 - 2012-06-14 17:35 - 0102400 _____ () C:\Program Files (x86)\Default.SFX 2013-01-22 20:12 - 2012-06-14 17:35 - 0140032 _____ () C:\Program Files (x86)\Default64.SFX 2015-02-02 01:27 - 2011-03-16 14:09 - 0090112 _____ () C:\Program Files (x86)\DemoPlayer.dll 2013-01-22 20:12 - 2012-06-14 17:35 - 0001420 _____ () C:\Program Files (x86)\Descript.ion 2015-02-02 01:27 - 2011-03-08 12:25 - 0118872 _____ () C:\Program Files (x86)\FileSystem_Stdio.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0122974 _____ () C:\Program Files (x86)\FileSystem_Steam.dll 2013-01-22 20:12 - 2012-06-14 17:35 - 0000616 _____ () C:\Program Files (x86)\File_Id.diz 2015-02-02 01:27 - 2011-03-16 14:09 - 0086077 _____ (Valve) C:\Program Files (x86)\hl.exe 2015-02-02 01:27 - 2012-04-08 13:16 - 0407336 _____ (Valve) C:\Program Files (x86)\hlds.exe 2015-02-02 01:27 - 2011-03-16 14:09 - 0024705 _____ () C:\Program Files (x86)\HLTV-Readme.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0001569 _____ () C:\Program Files (x86)\hltv.cfg 2015-02-02 01:27 - 2011-03-16 14:09 - 0221184 _____ (Valve) C:\Program Files (x86)\hltv.exe 2015-02-02 01:27 - 2010-01-23 18:48 - 1840440 _____ () C:\Program Files (x86)\hw.dll 2015-02-02 01:27 - 2013-03-11 05:27 - 0070656 _____ () C:\Program Files (x86)\hwpatcher.dll 2012-02-20 17:20 - 2012-02-20 17:20 - 0000188 ____H () C:\Program Files (x86)\ISSetup.dll.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0000063 _____ () C:\Program Files (x86)\language.inf 2012-02-20 17:20 - 2012-02-20 17:20 - 0000187 ____H () C:\Program Files (x86)\layout.bin.bfi 2013-01-22 20:12 - 2012-06-14 17:35 - 0014115 _____ () C:\Program Files (x86)\License.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0125952 _____ () C:\Program Files (x86)\Mp3dec.asi 2015-02-02 01:27 - 2011-03-16 14:09 - 0351744 _____ () C:\Program Files (x86)\Mss32.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0142848 _____ () C:\Program Files (x86)\Mssv12.asi 2015-02-02 01:27 - 2011-03-16 14:09 - 0161792 _____ () C:\Program Files (x86)\Mssv29.asi 2015-02-02 01:27 - 2011-06-10 21:58 - 0773968 _____ (Microsoft Corporation) C:\Program Files (x86)\msvcr100.dll 2013-01-22 20:12 - 2012-06-14 17:35 - 0003973 _____ () C:\Program Files (x86)\Order.htm 2015-02-02 01:27 - 2011-03-08 12:25 - 0254012 _____ () C:\Program Files (x86)\proxy.dll 2013-01-22 23:58 - 2012-06-09 19:19 - 0426496 _____ (Alexander Roshal) C:\Program Files (x86)\Rar.exe 2013-01-22 23:58 - 2012-06-14 17:35 - 0038566 _____ () C:\Program Files (x86)\rar.lng 2013-01-22 20:12 - 2012-06-14 17:35 - 0109431 _____ () C:\Program Files (x86)\Rar.txt 2013-01-21 15:43 - 2012-06-09 19:20 - 0196096 _____ (Alexander Roshal) C:\Program Files (x86)\RarExt.dll 2013-01-22 23:58 - 2012-06-14 17:35 - 0003584 _____ () C:\Program Files (x86)\rarext.lng 2013-01-22 23:58 - 2012-06-09 19:20 - 0167936 _____ (Alexander Roshal) C:\Program Files (x86)\RarExt32.dll 2013-01-22 20:12 - 2012-06-14 17:35 - 0001400 _____ () C:\Program Files (x86)\RarFiles.lst 2013-01-22 20:12 - 2013-01-22 20:12 - 0000020 _____ () C:\Program Files (x86)\rarnew.dat 2013-01-22 20:12 - 2011-05-30 20:01 - 0000469 _____ () C:\Program Files (x86)\rarreg.key 2013-01-22 20:12 - 2011-03-16 14:09 - 0039818 _____ () C:\Program Files (x86)\readme.txt 2015-02-02 01:27 - 2013-03-14 15:21 - 0002361 _____ () C:\Program Files (x86)\release.txt 2015-02-02 01:27 - 2012-04-28 13:52 - 0004061 _____ () C:\Program Files (x86)\rev.ini 2015-02-02 01:27 - 2012-04-28 13:09 - 0147456 _____ () C:\Program Files (x86)\revSrvBrowser.dll 2012-02-20 17:20 - 2012-02-20 17:21 - 0000186 ____H () C:\Program Files (x86)\setup.ini.bfi 2012-02-20 17:21 - 2012-02-20 17:21 - 0000186 ____H () C:\Program Files (x86)\setup.inx.bfi 2015-02-02 01:27 - 2009-05-17 08:38 - 0329728 _____ (Valve Corporation) C:\Program Files (x86)\Steam.dll 2015-02-02 01:27 - 2012-04-30 09:41 - 0392704 _____ () C:\Program Files (x86)\steamclient.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 3377648 _____ (Valve Corporation) C:\Program Files (x86)\steamclient_orig.dll 2015-02-02 20:05 - 2015-02-02 20:05 - 0335316 _____ () C:\Program Files (x86)\Steam_2015_02_02__19_05_58_646.mdmp 2015-02-02 01:27 - 2011-03-16 14:09 - 0067072 _____ (Valve Corporation) C:\Program Files (x86)\steam_api.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0070144 _____ (Valve Corporation) C:\Program Files (x86)\steam_api_c.dll 2015-02-02 01:27 - 2011-03-16 14:12 - 0000002 _____ () C:\Program Files (x86)\steam_appid.txt 2015-02-02 01:27 - 2009-08-29 18:12 - 2888976 _____ (Valve Corporation) C:\Program Files (x86)\Steam_orig.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 1672504 _____ () C:\Program Files (x86)\sw.dll 2015-02-02 01:27 - 2012-02-22 11:15 - 1668968 _____ () C:\Program Files (x86)\swds.dll 2013-01-22 20:12 - 2012-02-26 18:25 - 0009234 _____ () C:\Program Files (x86)\TechNote.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0344064 _____ () C:\Program Files (x86)\tier0.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 0275704 _____ (Valve Corporation) C:\Program Files (x86)\tier0_s.dll 2013-01-22 23:58 - 2012-06-14 17:35 - 0008028 _____ () C:\Program Files (x86)\uninstall.lng 2013-01-22 20:12 - 2012-06-09 19:20 - 0000686 _____ () C:\Program Files (x86)\Uninstall.lst 2013-01-22 23:58 - 2012-06-09 19:19 - 0287744 _____ (Alexander Roshal) C:\Program Files (x86)\UnRAR.exe 2015-02-02 01:27 - 2010-01-23 18:37 - 0002560 _____ () C:\Program Files (x86)\upatch.dll 2012-02-20 17:20 - 2012-02-20 17:20 - 0000192 ____H () C:\Program Files (x86)\U_AVA_SETUP.exe.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0352256 _____ () C:\Program Files (x86)\vgui.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0245819 _____ () C:\Program Files (x86)\vgui2.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0053248 _____ () C:\Program Files (x86)\voice_miles.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0139264 _____ () C:\Program Files (x86)\voice_speex.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0340480 _____ (Valve Corporation) C:\Program Files (x86)\vstdlib.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 0402680 _____ (Valve Corporation) C:\Program Files (x86)\vstdlib_s.dll 2013-01-22 20:12 - 2012-06-14 17:35 - 0041929 _____ () C:\Program Files (x86)\WhatsNew.txt 2013-01-22 20:12 - 2012-06-14 17:35 - 0076288 _____ () C:\Program Files (x86)\WinCon.SFX 2013-01-22 20:12 - 2012-06-14 17:35 - 0106448 _____ () C:\Program Files (x86)\WinCon64.SFX 2013-01-22 20:12 - 2012-06-14 17:35 - 0337657 _____ () C:\Program Files (x86)\WinRAR.chm 2013-01-22 23:58 - 2012-06-09 19:19 - 1230848 _____ (Alexander Roshal) C:\Program Files (x86)\WinRAR.exe 2013-01-22 23:58 - 2012-06-14 17:35 - 0103180 _____ () C:\Program Files (x86)\winrar.lng 2013-01-22 20:12 - 2012-06-14 17:35 - 0082944 _____ () C:\Program Files (x86)\Zip.SFX 2013-01-22 20:12 - 2012-06-14 17:35 - 0109824 _____ () C:\Program Files (x86)\Zip64.SFX 2013-01-22 20:12 - 2013-01-22 20:12 - 0000022 _____ () C:\Program Files (x86)\zipnew.dat 2012-01-15 23:41 - 2012-07-21 00:16 - 0065606 _____ () C:\Users\Yanik\AppData\Roaming\Camdata.ini 2012-01-15 23:41 - 2012-07-21 00:16 - 0000408 _____ () C:\Users\Yanik\AppData\Roaming\CamLayout.ini 2012-01-15 23:41 - 2012-07-21 00:16 - 0000408 _____ () C:\Users\Yanik\AppData\Roaming\CamShapes.ini 2012-03-08 09:52 - 2012-07-21 00:16 - 0004416 _____ () C:\Users\Yanik\AppData\Roaming\CamStudio.cfg 2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\Yanik\AppData\Roaming\JZPUYQL 2013-01-23 00:40 - 2014-10-13 23:11 - 0007597 _____ () C:\Users\Yanik\AppData\Local\Resmon.ResmonCfg 2016-06-09 13:49 - 2016-06-09 13:55 - 0000824 _____ () C:\ProgramData\hpzinstall.log 2012-08-02 23:27 - 2012-08-03 00:15 - 4503728 ____T () C:\ProgramData\ras_0oed.pad ZeroAccess: C:\Users\Yanik\AppData\Local\94f6548e C:\Users\Yanik\AppData\Local\94f6548e\@ Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\ProgramData\ras_0oed.pad Einige Dateien in TEMP: ==================== C:\Users\Yanik\AppData\Local\Temp\avgnt.exe C:\Users\Yanik\AppData\Local\Temp\libeay32.dll C:\Users\Yanik\AppData\Local\Temp\msvcr120.dll C:\Users\Yanik\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-14 20:45 ==================== Ende von FRST.txt ============================ |
03.12.2016, 19:11 | #4 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Addition.txt vor Behandlung: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 16-11-2016 durchgeführt von Yanik (17-11-2016 23:29:33) Gestartet von C:\Users\Yanik\Desktop\Anti Vir Windows 7 Home Premium Service Pack 1 (X64) (2011-10-15 08:49:23) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3404717819-833408578-2882030763-500 - Administrator - Disabled) Gast (S-1-5-21-3404717819-833408578-2882030763-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3404717819-833408578-2882030763-1002 - Limited - Enabled) Yanik (S-1-5-21-3404717819-833408578-2882030763-1000 - Administrator - Enabled) => C:\Users\Yanik ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) µTorrent (HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.) 64 Bit HP CIO Components Installer (Version: 6.2.2 - Hewlett-Packard) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe After Effects CS6 (HKLM-x32\...\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: 11 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.4.0.2540 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.3 - Adobe Systems Incorporated) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Premiere Pro CS6 (HKLM-x32\...\{7176B973-6011-43C1-AEBC-2D73FE7C6982}) (Version: 6.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.17) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.17 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.4.634 - Adobe Systems, Inc.) Akamai NetSession Interface (HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Akamai) (Version: - Akamai Technologies, Inc) AMD Catalyst Install Manager (HKLM\...\{5E03A267-415E-5383-FA8F-3CE4145663B9}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) Antares Auto-Tune 7 VST (HKLM\...\{8E7715AA-E19B-44E8-AE4C-FB5B37B7E2D9}) (Version: 7.05.0002 - Antares Audio Technologies) Antares Auto-Tune Evo VST (HKLM-x32\...\{FFF74EC9-1FF4-4456-99E3-4F05129F4FAB}) (Version: 6.00.0009 - Antares Audio Technologies) Apple Application Support (32-Bit) (HKLM-x32\...\{447CDCE5-F555-429B-BFA6-642C3C6D684F}) (Version: 3.1.2 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{0DF7096B-715A-4233-8633-C7A16ED6D616}) (Version: 3.1.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.14.3.0 - Asmedia Technology) ASUS VGA Driver (x32 Version: 3.0.0.1 - Ihr Firmenname) Hidden ATI AVIVO64 Codecs (Version: 11.6.0.51125 - ATI Technologies Inc.) Hidden AutoTonic (HKLM\...\AutoTonic) (Version: 1.4.212.0 - AutoTonic) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.23.58 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{82dc2ab6-088f-4e0a-8e27-bb829481d3bc}) (Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Hidden bl (x32 Version: 1.0.0 - Your Company Name) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Camel Audio CamelCrusher (HKLM-x32\...\Camel Audio CamelCrusher) (Version: 1.01.0 - Camel Audio) CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform) Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Copy (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Counter-Strike: Condition Zero (HKLM-x32\...\Steam App 80) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Destinations (x32 Version: 140.0.77.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden DJ_AIO_06_F2400_SW_Min (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Edirol HQ Orchestral VSTi v1.03 (HKLM-x32\...\Edirol HQ Orchestral VSTi v1.03) (Version: - ) EPSON ME 530 Series Printer Uninstall (HKLM\...\EPSON ME 530 Series) (Version: - SEIKO EPSON Corporation) F2400 (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) FL Studio 12 (HKLM-x32\...\FL Studio 12) (Version: - Image-Line) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden Hercules Webcam Station Evolution SE (HKLM-x32\...\{C3C44248-B8F7-4B20-A5C7-994870B60F55}) (Version: 4.1.1.2 - Hercules) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet F2400 All-in-One Driver Software 14.0 Rel. 6 (HKLM\...\{819CA3BC-2FF8-4811-B42F-421F7BFD3559}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Support Solutions Framework (HKLM-x32\...\{3A1CB1B8-8646-41A0-B496-35DC48916904}) (Version: 12.5.32.37 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden HydraVision (x32 Version: 4.2.212.0 - Advanced Micro Devices, Inc.) Hidden IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) InterBase 6.5 (HKLM-x32\...\InterBase) (Version: - ) iTunes (HKLM\...\{D227565A-0033-40AD-89BA-653A205CDC11}) (Version: 12.1.1.4 - Apple Inc.) Java 8 Update 20 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418020F0}) (Version: 8.0.200 - Oracle Corporation) Java SE Development Kit 7 Update 4 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170040}) (Version: 1.7.0.40 - Oracle) JavaFX 2.1.0 (64-bit) (HKLM\...\{1111706F-666A-4037-7777-210648764D10}) (Version: 2.1.0 - Oracle Corporation) JavaFX 2.1.0 SDK (64-bit) (HKLM\...\{2222706F-666A-4037-7777-210648764D10}) (Version: 2.1.0 - Oracle Corporation) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) KORG Legacy Collection - LegacyCell (HKLM-x32\...\{192FBEA6-74FE-4A98-BF52-D9CA40FBE752}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - M1 (HKLM\...\{AA1D88F2-E75B-4FC3-80C6-9E041D7F4B00}) (Version: 1.7.0 - KORG Inc.) KORG Legacy Collection - MDE-X (HKLM-x32\...\{2EDF016E-8A35-451E-97EE-24760118CA11}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - MonoPoly (HKLM\...\{DA31AE51-AB45-4368-9F4E-6AF05176AEE3}) (Version: 1.1.0 - KORG Inc.) KORG Legacy Collection - MS-20 (HKLM-x32\...\{14BC5947-16C2-4E52-AF6C-72DDBF05E307}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - Polysix (HKLM-x32\...\{F18ADD8D-B710-42B2-841E-E525F7EEFEAF}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - WAVESTATION (HKLM\...\{6C2C56CC-9075-491D-9B29-55147B67B892}) (Version: 1.7.0 - KORG Inc.) loopMIDI (HKLM-x32\...\{55c0d955-4cee-452c-b393-d4c020a967d7}) (Version: 1.0.13.24 - Tobias Erichsen) loopMIDI (x32 Version: 1.0.13.24 - Tobias Erichsen) Hidden loopMIDIBlockLegacy (x32 Version: 9.9.9.9 - Tobias Erichsen) Hidden Magic ISO Maker v5.5 (build 0281) (HKLM-x32\...\Magic ISO Maker v5.5 (build 0281)) (Version: - ) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office XP Professional mit FrontPage (HKLM-x32\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Prerequisites (x64) (HKLM\...\{04BEC103-A388-41EE-BB49-1235FAAF883D}) (Version: 11.0.61030 - Blue Cat Audio) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Miroslav Philharmonik (HKLM-x32\...\{BA0D0121-A3BA-487D-9C78-7AB0E676C722}) (Version: 1.1.2 - IK Multimedia) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 49.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 49.0.2 (x86 de)) (Version: 49.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.2.6136 - Mozilla) Mp3tag v2.75 (HKLM-x32\...\Mp3tag) (Version: v2.75 - Florian Heidenreich) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Native Instruments Absynth 5 (HKLM-x32\...\Native Instruments Absynth 5) (Version: - Native Instruments) Native Instruments Alicias Keys (HKLM-x32\...\Native Instruments Alicias Keys) (Version: - Native Instruments) Native Instruments Balinese Gamelan (HKLM-x32\...\Native Instruments Balinese Gamelan) (Version: - Native Instruments) Native Instruments Battery 3 (HKLM-x32\...\Native Instruments Battery 3) (Version: - Native Instruments) Native Instruments Battery Library Importer for Maschine (HKLM-x32\...\Native Instruments Battery Library Importer for Maschine) (Version: - Native Instruments) Native Instruments Berlin Concert Grand (HKLM-x32\...\Native Instruments Berlin Concert Grand) (Version: - Native Instruments) Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: - Native Instruments) Native Instruments Evolve Mutations (HKLM-x32\...\Native Instruments Evolve Mutations) (Version: - Native Instruments) Native Instruments Evolve Mutations 2 (HKLM-x32\...\Native Instruments Evolve Mutations 2) (Version: - Native Instruments) Native Instruments FM8 (HKLM-x32\...\Native Instruments FM8) (Version: - Native Instruments) Native Instruments George Duke Soul Treasures (HKLM-x32\...\Native Instruments George Duke Soul Treasures) (Version: - Native Instruments) Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: - Native Instruments) Native Instruments Guitar Rig Mobile I/O (HKLM-x32\...\Native Instruments Guitar Rig Mobile I/O) (Version: - Native Instruments) Native Instruments Guitar Rig Mobile IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Mobile IO Driver) (Version: - Native Instruments) Native Instruments Guitar Rig Session I/O (HKLM-x32\...\Native Instruments Guitar Rig Session I/O) (Version: - Native Instruments) Native Instruments Guitar Rig Session IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Session IO Driver) (Version: - Native Instruments) Native Instruments Komplete 8 Ultimate (HKLM-x32\...\Native Instruments Komplete 8 Ultimate) (Version: - Native Instruments) Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.5.2.880 - Native Instruments) Native Instruments Kontakt Factory Library (HKLM-x32\...\Native Instruments Kontakt Factory Library) (Version: - Native Instruments) Native Instruments Maschine Drum Selection (HKLM-x32\...\Native Instruments Maschine Drum Selection) (Version: - Native Instruments) Native Instruments Massive (HKLM-x32\...\Native Instruments Massive) (Version: 1.4.0.292 - Native Instruments) Native Instruments Massive Expansion Vol. 1 (HKLM-x32\...\Native Instruments Massive Expansion Vol. 1) (Version: - ) Native Instruments Massive Expansion Vol. 2 (HKLM-x32\...\Native Instruments Massive Expansion Vol. 2) (Version: - ) Native Instruments Monark (HKLM-x32\...\Native Instruments Monark) (Version: - Native Instruments) Native Instruments New York Concert Grand (HKLM-x32\...\Native Instruments New York Concert Grand) (Version: - Native Instruments) Native Instruments Rammfire (HKLM-x32\...\Native Instruments Rammfire) (Version: - Native Instruments) Native Instruments Razor (HKLM-x32\...\Native Instruments Razor) (Version: - Native Instruments) Native Instruments RC 24 (HKLM-x32\...\Native Instruments RC 24) (Version: 1.1.0.394 - Native Instruments) Native Instruments RC 48 (HKLM-x32\...\Native Instruments RC 48) (Version: 1.1.0.394 - Native Instruments) Native Instruments Reaktor 5 (HKLM-x32\...\Native Instruments Reaktor 5) (Version: - Native Instruments) Native Instruments Reaktor Prism (HKLM-x32\...\Native Instruments Reaktor Prism) (Version: - Native Instruments) Native Instruments Reaktor Spark R2 (HKLM-x32\...\Native Instruments Reaktor Spark R2) (Version: - Native Instruments) Native Instruments Reflektor (HKLM-x32\...\Native Instruments Reflektor) (Version: - Native Instruments) Native Instruments Rig Kontrol 3 (HKLM-x32\...\Native Instruments Rig Kontrol 3) (Version: - Native Instruments) Native Instruments Rig Kontrol 3 Driver (HKLM-x32\...\Native Instruments Rig Kontrol 3 Driver) (Version: - Native Instruments) Native Instruments Scarbee Funk Guitarist (HKLM-x32\...\Native Instruments Scarbee Funk Guitarist) (Version: - Native Instruments) Native Instruments Scarbee Jay-Bass (HKLM-x32\...\Native Instruments Scarbee Jay-Bass) (Version: - Native Instruments) Native Instruments Scarbee MM-Bass (HKLM-x32\...\Native Instruments Scarbee MM-Bass) (Version: - Native Instruments) Native Instruments Scarbee MM-Bass Amped (HKLM-x32\...\Native Instruments Scarbee MM-Bass Amped) (Version: - Native Instruments) Native Instruments Scarbee Pre-Bass (HKLM-x32\...\Native Instruments Scarbee Pre-Bass) (Version: - Native Instruments) Native Instruments Scarbee Pre-Bass Amped (HKLM-x32\...\Native Instruments Scarbee Pre-Bass Amped) (Version: - Native Instruments) Native Instruments Scarbee Vintage Keys (HKLM-x32\...\Native Instruments Scarbee Vintage Keys) (Version: - Native Instruments) Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments) Native Instruments Session Strings Pro (HKLM-x32\...\Native Instruments Session Strings Pro) (Version: - Native Instruments) Native Instruments The Finger R2 (HKLM-x32\...\Native Instruments The Finger R2) (Version: - Native Instruments) Native Instruments The Mouth (HKLM-x32\...\Native Instruments The Mouth) (Version: - Native Instruments) Native Instruments Traktors 12 (HKLM-x32\...\Native Instruments Traktors 12) (Version: - Native Instruments) Native Instruments Transient Master (HKLM-x32\...\Native Instruments Transient Master) (Version: - Native Instruments) Native Instruments Upright Piano (HKLM-x32\...\Native Instruments Upright Piano) (Version: - Native Instruments) Native Instruments VC 160 (HKLM-x32\...\Native Instruments VC 160) (Version: - Native Instruments) Native Instruments VC 2A (HKLM-x32\...\Native Instruments VC 2A) (Version: - Native Instruments) Native Instruments VC 76 (HKLM-x32\...\Native Instruments VC 76) (Version: - Native Instruments) Native Instruments Vienna Concert Grand (HKLM-x32\...\Native Instruments Vienna Concert Grand) (Version: - Native Instruments) Native Instruments Vintage Organs (HKLM-x32\...\Native Instruments Vintage Organs) (Version: - Native Instruments) Native Instruments West Africa (HKLM-x32\...\Native Instruments West Africa) (Version: - Native Instruments) NewBlue 3D Explosions for Windows (HKLM-x32\...\NewBlue 3D Explosions for Windows) (Version: 1.4 - NewBlue) NVIDIA PhysX v8.10.17 (HKLM-x32\...\{E4D15328-8C89-484B-B9AA-F5BE9EA6D01C}) (Version: 8.10.17 - NVIDIA Corporation) OpenMG Limited Patch 4.7-07-14-05-01 (HKLM-x32\...\OpenMG HotFix4.7-07-13-22-01) (Version: - ) OpenMG Secure Module 4.7.00 (HKLM-x32\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation) OpenMG Secure Module 4.7.00 (x32 Version: 4.7.00.12140 - Sony Corporation) Hidden OpenOffice.org 3.3 (HKLM-x32\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.3.6.0 - Pando Networks Inc.) PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.1 - pdfforge) ph (x32 Version: 1.0.0 - Your Company Name) Hidden PoiZone (HKLM-x32\...\PoiZone) (Version: - Image-Line bvba) PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 1.00.0000 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6526 - Realtek Semiconductor Corp.) Recorder (HKLM-x32\...\ST6UNST #1) (Version: - ) ReFX Nexus 2.3.4 Update (HKLM-x32\...\{1BB0C126-7F97-4438-B9CD-8954660474CD}) (Version: 2.3.4 - MAX Team) ReFX Nexus 2.3.4 USB-eLicenser Emulator (HKLM-x32\...\{B1F5E26D-F22E-4DE4-994E-50F51BB3327F}) (Version: 2.3.4 - MAX Team) rtpMIDIBlockLegacy (x32 Version: 9.9.9.9 - Tobias Erichsen) Hidden SAMSUNG Intelli-studio (HKLM-x32\...\Intelli-studio) (Version: - ) Sawer (HKLM-x32\...\Sawer) (Version: - Image-Line) Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Sika-Free (HKLM-x32\...\{166B8F62-E0BD-485A-8770-784BA2C235AC}) (Version: 1.5.0 - Human Touch Technology) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden Sonic Foundry Preset Manager 1.0 (HKLM-x32\...\{7266C898-F9CB-4122-9452-2AA1DACE245E}) (Version: 1.0.73 - Sonic Foundry) SonicStage 4.3 (HKLM-x32\...\{A0EB195B-5876-48E6-879D-33D4B2102610}) (Version: 4.3 - Sony Corporation) Sonik Synth 2 (HKLM-x32\...\Sonik Synth 2) (Version: - ) Sony Ericsson Update Engine (HKLM-x32\...\Update Engine) (Version: 2.12.13.28 - Sony Ericsson Communications AB) Sony PC Companion 2.10.188 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.188 - Sony) Status (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Steinberg VST Classics 1 64bit (HKLM\...\{AA322103-FC2B-4D86-BA6C-67D4DDB4209C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synful Orchestra (HKLM\...\{FB51BBEB-2A5F-4DCE-9CF2-E71DA61D90A2}) (Version: 2.5.2 - Synful) Synth1 (HKLM-x32\...\Synth1) (Version: - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.6 - TeamSpeak Systems GmbH) TeamSpeak 3 Client (HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.66695 - TeamViewer) teVirtualMIDI64 (Version: 1.2.10.38 - Tobias Erichsen) Hidden Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden Toxic Biohazard (HKLM-x32\...\Toxic Biohazard) (Version: - Image-Line bvba) TP-LINK Wireless Client Utility (HKLM-x32\...\{1E58B969-9BB4-4012-8D8B-D06005D1CD24}) (Version: 7.0 - TP-LINK) TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Vegas Pro 13.0 (64-bit) (HKLM\...\{1F8D8040-0BC8-11E5-85C5-F04DA23A5C58}) (Version: 13.0.453 - Sony) Visual C++ 64-bit Redistributables (HKLM-x32\...\InstallShield_{FB03650C-B373-4B20-ACA5-B7BA1A8EEE33}) (Version: 1.1.1.1524 - PACE Anti-Piracy, Inc.) Visual C++ Redistributables (HKLM-x32\...\InstallShield_{F03117FA-9270-46B0-9666-0B4BC2CDEBF5}) (Version: 1.1.1.1524 - PACE Anti-Piracy, Inc.) Waves Mercury Bundle (HKLM-x32\...\Waves Mercury Bundle) (Version: 5.0 - Team AiR) WebReg (x32 Version: 140.0.212.017 - Hewlett-Packard) Hidden Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 1.0.0.0) (HKLM\...\EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 - Texas Instruments Inc.) Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 1.0.0.1) (HKLM\...\7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 - Texas Instruments Inc.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) Windows-Treiberpaket - Focusrite USB 2.0 Audio Driver (09/25/2013 2.5.128.1) (HKLM\...\CF1FC201D237269A9CD51A3A6B14ADBF67175C32) (Version: 09/25/2013 2.5.128.1 - Focusrite) WordBuilder (HKLM-x32\...\{5DB59CA0-3F1F-4181-8D0B-A294A4EE0CAE}) (Version: 1.0.20 - East West) WordBuilder (HKLM-x32\...\{B7DAD844-34CD-456B-83CC-88065323DD69}) (Version: 1.1.21 - East West) X10 Hardware(TM) (HKLM-x32\...\X10Hardware) (Version: - ) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {002925A9-5E35-46EB-A625-08EB174F6A7E} - \Go for FilesUpdate -> Keine Datei <==== ACHTUNG Task: {003A6885-4EC5-47C7-9296-A04240418BAC} - System32\Tasks\{A21A3340-579E-457E-8055-2254BF309C2C} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {0066CC0E-C2C4-4558-84A2-765087EDE0B4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.) Task: {015FBB19-2E3D-4C26-B657-4A89F13CDB44} - System32\Tasks\{D3AFCEA2-E4BB-46AF-8E8D-7E51BBBF5124} => pcalua.exe -a C:\Users\Yanik\Desktop\flstudio_8.0.exe -d C:\Users\Yanik\Desktop Task: {0DF712EC-4DB0-4526-BAD3-1F8CF910EF9B} - System32\Tasks\{5316EBF1-4C83-4EF4-8314-46B7F209A172} => pcalua.exe -a C:\Users\Yanik\Downloads\mausemu41.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {11980DD9-DA20-439D-B0F0-1864DCFD4DB7} - System32\Tasks\{29158F79-7611-40F9-8E0A-4EF0A70249C7} => pcalua.exe -a C:\Users\Yanik\Downloads\HEXC_v2.8.1.0.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {13210263-874C-46B5-B685-2488524D3147} - System32\Tasks\{4D49754F-ACC1-47C5-927A-183408096F14} => pcalua.exe -a "C:\Users\Yanik\Desktop\JDownload\EW.QL.RA.VSTi.DXi.AU.RTAS.HYBRiD.DVDR.D1\ewql.ra.d01\Ra Setup.exe" -d C:\Users\Yanik\Desktop\JDownload\EW.QL.RA.VSTi.DXi.AU.RTAS.HYBRiD.DVDR.D1\ewql.ra.d01 Task: {13DA3EBE-7406-4DA3-B5CE-FEBA64633C92} - \d59d601d-7389-4769-ab53-b322d00ce1c2-6 -> Keine Datei <==== ACHTUNG Task: {1468A753-AC28-4D46-8FC7-8A6D90CFE970} - System32\Tasks\{76CAFB74-DBFF-4A5D-A4C8-952AA96A6C3A} => C:\ijji\ENGLISH\AVA\Binaries\AVA.exe Task: {156C54FF-F255-419A-8B28-0AE53139DFBC} - System32\Tasks\JZPUYQL => C:\Users\Yanik\AppData\Roaming\JZPUYQL.exe <==== ACHTUNG Task: {1DCEA014-5736-4A5B-B067-EE016E9B8808} - System32\Tasks\{D0A9EDE8-EDD6-4FF2-9B0E-1D826A347A23} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {1F6C62B6-44CF-414D-8CB9-F773DED9EE29} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-09] (Adobe Systems Incorporated) Task: {221BD446-3832-40BE-BA41-1F796D453FB9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard) Task: {2F0367A7-A3AE-4E1D-961F-D81D8261C8C3} - \BonanzaDealsLiveUpdateTaskMachineCore -> Keine Datei <==== ACHTUNG Task: {3DAF4500-5EC4-4894-9311-21F9F37196C9} - \d59d601d-7389-4769-ab53-b322d00ce1c2-3 -> Keine Datei <==== ACHTUNG Task: {4582FE8E-2FFC-4A77-B68A-9A110FE2C500} - \d59d601d-7389-4769-ab53-b322d00ce1c2-2 -> Keine Datei <==== ACHTUNG Task: {4893E55E-B5AC-4DF8-BC7A-C80DC21EB3F2} - System32\Tasks\{D0B249D2-0B52-48CC-9B2B-650F1CABE45A} => pcalua.exe -a "C:\Users\Yanik\Downloads\Silence of Darkness.exe" -d "C:\Program Files (x86)\Mozilla Firefox" Task: {4A1DEDE8-AAE7-4679-9793-7A5D0E68CE06} - System32\Tasks\{415C7206-FD45-45A9-AE31-29B7AF4C8FCF} => pcalua.exe -a "C:\Users\Yanik\Desktop\Sylenth_Nima_Skin+Lennar.Digital.Sylenth1.VSTi v2.2.1.1 x86\Lennar.Digital.Sylenth1.VSTi.v2.2.1.1.x86\sylenth Setup.exe" -d "C:\Users\Yanik\Desktop\Sylenth_Nima_Skin+Lennar.Digital.Sylenth1.VSTi v2.2.1.1 x86\Lennar.Digital.Sylenth1.VSTi.v2.2.1.1.x86" Task: {4CEB9089-4D3B-4B26-B23C-114769E91A48} - \d59d601d-7389-4769-ab53-b322d00ce1c2-4 -> Keine Datei <==== ACHTUNG Task: {58651FE7-2A39-4953-9022-60520C709F72} - System32\Tasks\{5447B9FA-2056-4CB4-A8B0-0C10B5138441} => pcalua.exe -a "C:\Users\Yanik\Desktop\sheervideo_pro_win_v2_6_4_13\SheerVideo HD Pro 2.6.4.13\Install SheerVideo Pro.exe" -d "C:\Users\Yanik\Desktop\sheervideo_pro_win_v2_6_4_13\SheerVideo HD Pro 2.6.4.13" Task: {5EA408CD-8C54-4E0E-8854-A05023810848} - System32\Tasks\{5B2E60AD-823E-4290-8F26-0DF51751F39A} => pcalua.exe -a C:\Users\Yanik\Downloads\dotnetfx.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {5EF1E478-1E91-41B4-AEDD-5C6A56B1EE8D} - System32\Tasks\{409FE76B-5E9B-4872-8971-72680E9E4D25} => pcalua.exe -a C:\Users\Yanik\Desktop\Delphi_8.msi\setup.exe -d C:\Users\Yanik\Desktop\Delphi_8.msi Task: {61105993-99B1-432E-B915-2FF0761E3AE8} - \BonanzaDealsLiveUpdateTaskMachineUA -> Keine Datei <==== ACHTUNG Task: {636435B4-3BA7-4A8F-BF68-1013A6801828} - \d59d601d-7389-4769-ab53-b322d00ce1c2-5 -> Keine Datei <==== ACHTUNG Task: {69A6642C-225B-46AF-B309-B9F050D01481} - \d59d601d-7389-4769-ab53-b322d00ce1c2-1 -> Keine Datei <==== ACHTUNG Task: {6F139614-3DA9-4BCC-83E2-F44429016AC6} - System32\Tasks\Red Giant Link => C:\Program Files (x86)\Red Giant Link\Red Giant Link.exe [2015-12-15] () Task: {6F43FF92-93F3-48DE-8195-419F328C097B} - System32\Tasks\{AE7FADB1-7BF9-4F81-92D7-889B4025EFAD} => pcalua.exe -a C:\Users\Yanik\Downloads\mda_piano.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {726106C0-8879-4843-8F61-758824965B1C} - System32\Tasks\{9B849655-130C-4EC6-8DE3-5D30EEB10134} => pcalua.exe -a C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.03.Update-SKIDROW\splinter_cell_conviction_1.03.exe -d C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.03.Update-SKIDROW Task: {7582B287-C396-4BF3-ACD0-2E4E03CF0EC7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd) Task: {82759235-C9A3-43F0-84BF-5D9CEE0945C4} - System32\Tasks\{C1E5864F-0682-4A3F-824A-DC7841A37D18} => pcalua.exe -a "C:\Users\Yanik\Desktop\Native Instruments Kontakt v3.0.2.004 VSTi RTAS [DYNAMiCS]\NI Kontakt 3.0.2 DYNAMiCS.exe" -d "C:\Users\Yanik\Desktop\Native Instruments Kontakt v3.0.2.004 VSTi RTAS [DYNAMiCS]" Task: {84E5EFC0-7A8A-4978-AE81-67D3179F13DA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {8746E6F1-ACA9-4C2D-BF15-6583F1046A3B} - System32\Tasks\{ADAA1911-1810-4ADB-8AB8-DC554397EE9D} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {8A4BAC12-942B-4CA6-BBAD-ACC4009DF268} - System32\Tasks\{D6C5E1D2-009A-4473-AB2A-701E53B35773} => C:\ijji\ENGLISH\AVA\Binaries\AVA.exe Task: {8E0AF4C7-575E-4DC0-9148-3373835351B8} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-11-27] (Facebook Inc.) Task: {8FB193DE-49D8-4F29-BF5D-CAC701C2F21F} - System32\Tasks\{469E46B3-4D25-45A5-A170-ECE540A835DB} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {91595130-F034-451B-AB02-4202057E9263} - \d59d601d-7389-4769-ab53-b322d00ce1c2-11 -> Keine Datei <==== ACHTUNG Task: {94961C4A-8C46-413B-B602-939722271894} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {972B0F66-01C9-4A7B-BFA0-550810F534D9} - System32\Tasks\{50F8E455-8E57-4856-9EBB-F4EEAF26B337} => pcalua.exe -a "C:\Users\Yanik\Desktop\PS1 Emulator\delta201Setup.exe" -d "C:\Users\Yanik\Desktop\PS1 Emulator" Task: {978EB992-935B-4A00-B208-7C74CE8E3C71} - System32\Tasks\{147A41AF-49F8-4BAC-AFD0-42688D09864F} => pcalua.exe -a "C:\Users\Yanik\Desktop\Sonic Ether's Unbelievable Shaders v08 (Windows)\INSTALLER.exe" -d "C:\Users\Yanik\Desktop\Sonic Ether's Unbelievable Shaders v08 (Windows)" Task: {9B3EBD2F-8DE2-4485-AB95-BCFBFF610ED1} - System32\Tasks\{2802E3DF-C263-4ACD-ACB0-D606290E7D99} => pcalua.exe -a C:\Users\Yanik\Desktop\Skyrimnochmal\steambackup2.vmp.EXE -d C:\Users\Yanik\Desktop\Skyrimnochmal Task: {9C1A5785-91D8-424C-919D-31E6F8C52996} - System32\Tasks\{A8ECE7CC-9976-492F-BFEE-C73A729DD547} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {B004A564-7485-4575-AEAF-466182F822CB} - \d59d601d-7389-4769-ab53-b322d00ce1c2-5_user -> Keine Datei <==== ACHTUNG Task: {B0FB57E7-265B-4311-8DCC-B9DEB6FB98F3} - System32\Tasks\{B521DC58-814F-43B5-BBED-C0DD9B8BF91B} => pcalua.exe -a "C:\Users\Yanik\Desktop\Neuer Ordner\Install Instruments DVD 1 Win.exe" -d "C:\Users\Yanik\Desktop\Neuer Ordner" Task: {B89848AE-00EE-4D97-95FA-706CB9FD9481} - \d59d601d-7389-4769-ab53-b322d00ce1c2-7 -> Keine Datei <==== ACHTUNG Task: {B8C73344-504F-4CFE-A9F4-430A70B44BEB} - System32\Tasks\{653DBCF3-C317-46B2-B155-F0CF610B7931} => pcalua.exe -a C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.02.Update-SKIDROW\splinter_cell_conviction_1.02.exe -d C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.02.Update-SKIDROW Task: {BACD396A-E525-4E9E-9BF6-4AF9AA960458} - System32\Tasks\AdobeAAMUpdater-1.0-Yanik-PC-Yanik => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-12-15] (Adobe Systems Incorporated) Task: {BB181DFE-51EB-4946-896D-922841041D7A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {BF637B51-B756-4582-A898-759E76D5B968} - System32\Tasks\{560B0FF6-65A6-41B1-9136-26814C7681D5} => pcalua.exe -a C:\Users\Yanik\Downloads\superwave_p8.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {CC5BB63E-A7BF-4E53-88B7-53F1B790B5E4} - System32\Tasks\{7A4C65A7-0F65-4F86-ADE6-65994D7B249D} => pcalua.exe -a C:\Users\Yanik\Desktop\Skyrimentpackt\steambackup2.vmp.EXE -d C:\Users\Yanik\Desktop\Skyrimentpackt Task: {CE14BBFA-6A88-4D3C-920D-F26AF81179A6} - System32\Tasks\{5EE0FEFD-725A-474B-A56B-1E64A316C33C} => C:\Program Files (x86)\Bethesda Softworks\RAGE\Rage.exe Task: {DB1AEB85-99D5-4C18-8F78-5B419CD7A2D9} - System32\Tasks\{0FE6474B-36AB-4B46-9826-9CC40FFFBAFB} => pcalua.exe -a "C:\Users\Yanik\Desktop\phila\Install Instruments DVD 2 Win.exe" -d C:\Users\Yanik\Desktop\phila Task: {DB3810BE-1156-4BA6-9962-D10E1FC14B16} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-11-27] (Facebook Inc.) Task: {DC4B0623-427A-4DB0-B28A-886CF5477B4A} - System32\Tasks\{236F8513-C7B0-481C-B123-348EA6F16A9E} => pcalua.exe -a "C:\Users\Yanik\AppData\Local\Temp\Temp1_sheervideo_pro_win_v2_6_4_13.zip\SheerVideo HD Pro 2.6.4.13\Install SheerVideo Pro.exe" <==== ACHTUNG Task: {E752D784-F659-455D-BC33-8D0CE003E07F} - System32\Tasks\{1D761D67-B16B-4535-8E88-040DA93AAB59} => pcalua.exe -a "C:\Program Files\The Elder Scrolls V- Skyrim\VCRedist\vcredist_x86.exe" -d "C:\Program Files\The Elder Scrolls V- Skyrim\VCRedist" Task: {EEAC1AEB-EE84-4FC0-909B-09B22F8C0AFE} - System32\Tasks\{8C82936D-55A2-482D-880B-E400F2629D2B} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {F0ACAF63-1717-4B54-A23F-9671332B2303} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {F30C8233-FBE3-4735-8437-684E7D3C1523} - System32\Tasks\{920E4AAC-582C-40F4-8E72-166554868ADB} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {FB42B57F-A35B-47C0-80E4-0C85ED1F7D4F} - System32\Tasks\{7FBD9C99-80B1-4EBA-99F9-2A379DB4EEE0} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core.job => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA.job => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\JZPUYQL.job => C:\Users\Yanik\AppData\Roaming\JZPUYQL.exe <==== ACHTUNG ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Yanik\Desktop\Zeugs\Ordner\Minecraft.lnk -> C:\Users\Yanik\Desktop\Zeugs\Ordner\Minecraft.bat () Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Image-Line website.lnk -> hxxp://www.image-line.com/ Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Advanced\Diagnostic.lnk -> hxxp://www.image-line.com/diagnostic Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Additional\Download Deckadance.lnk -> hxxp://www.deckadance.com/ Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Additional\SynthMaker website.lnk -> hxxp://www.synthmaker.co.uk/ ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-06-22 04:24 - 2015-06-22 04:24 - 00022528 _____ () C:\Windows\System32\us005lm.dll 2016-10-26 07:48 - 2016-10-26 07:48 - 00031256 _____ () C:\Windows\System32\us008lm.dll 2015-02-13 04:20 - 2015-02-13 04:20 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-02-13 04:20 - 2015-02-13 04:20 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-02-12 22:13 - 2016-02-12 22:13 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2016-11-14 15:54 - 2011-10-29 09:59 - 00918448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe 2016-11-14 15:55 - 2010-10-21 17:52 - 00586880 _____ () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe 2011-10-30 13:35 - 2012-09-01 00:31 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2016-11-14 15:54 - 2016-11-17 22:43 - 00021504 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\PEbiosinterface32.dll 2016-11-14 15:54 - 2010-06-29 10:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\ATKEX.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Microsoft:3mBd74apbUTqThYg6h6oUxa [2382] AlternateDataStreams: C:\ProgramData\Microsoft:e9gz6kgJgqGPDKXWMOdonQ0x [2404] AlternateDataStreams: C:\ProgramData\Microsoft:eNUdzatygwW9dMtBE [1996] AlternateDataStreams: C:\ProgramData\Microsoft:jAt7Svpft1cs5yITVuCn7FizEG [2416] AlternateDataStreams: C:\ProgramData\Microsoft:Kg7hng1GFtWEpn57EjHfXNNmvqb [2100] AlternateDataStreams: C:\ProgramData\Microsoft:KP8wHCUH7mYO3lUbZrBUHy98 [2324] AlternateDataStreams: C:\ProgramData\TEMP:CB0AACC9 [140] AlternateDataStreams: C:\Users\Yanik\AppData\Local\QJiqR1hXGT:ChFTiQIBLE1GT5iTEQcE [2094] AlternateDataStreams: C:\Users\Yanik\AppData\Local\Temp:UL5fG7khxuQnmW3K0KZg3Hy [2308] AlternateDataStreams: C:\Users\Yanik\AppData\Local\Temporary Internet Files:QCYdRRn0ziMGFMUv99IKE [2482] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\Classes\regfile: regedit.exe "%1" <===== ACHTUNG ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2016-09-29 17:06 - 00001028 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: Datenträger ist nicht mit dem Internet verbunden. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) MpsSvc => Firewall Dienst läuft nicht. bfe => Firewall Dienst läuft nicht. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk => C:\Windows\pss\Microsoft Office.lnk.CommonStartup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: AutoTonic => C:\Program Files (x86)\AutoTonic\bin\AutoTonic.exe MSCONFIG\startupreg: CamserviceExchange => C:\Program Files (x86)\Hercules\Dualpix Exchange\XtrCtrlEx.exe /startup MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Connectify Dispatch => C:\Program Files (x86)\Connectify\DispatchUI.exe autorun MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: EPSON ME 530 Series => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHKC.EXE /FU "C:\Users\Yanik\AppData\Local\Temp\E_SB0F7.tmp" /EF "HKCU" MSCONFIG\startupreg: Facebook Update => "C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Sony PC Companion => "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{70206243-DF5F-410A-A7FC-E0189A865687}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{7DDC1A1B-82AC-48F8-B097-09F7B3337D5F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{240A89AB-D29E-46C3-942D-8B038A7AF5BA}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{F1F31C11-9888-4162-866D-D87968569B97}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{4D98C0FC-A2D2-41BA-AC17-4C70AFB4488C}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{814B8AAA-A677-487B-B936-234E15BE878D}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{20703129-F930-45B1-9437-22D98DA81884}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{CC7E80CF-38E1-4D9F-B329-D12B7DBB2315}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [TCP Query User{318E9459-139A-4B2B-B21F-AE968C34DDFB}C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe] => (Allow) C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe FirewallRules: [UDP Query User{F58401FC-173C-4666-B50A-C3ECFEFC0359}C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe] => (Allow) C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe FirewallRules: [{442A659E-B8D2-415C-BB70-3174444A40CA}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{36543644-1950-4FBB-AF8C-095E6E4CAA19}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{51CFB1D9-9476-48E0-971B-AAAF7685E58B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{E4228DB8-EF2A-40F6-BA42-3F170C479310}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{47E5F88A-A4AF-4258-80DB-6A2F24523FED}] => (Allow) C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{B5B7FA68-61BF-4907-828C-5AF54D134817}] => (Allow) C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe FirewallRules: [TCP Query User{D677EE3E-3A6B-406F-BCF3-171248762D94}C:\users\yanik\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\yanik\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{9437557B-5584-4DE9-91D1-6C671CC1B50A}C:\users\yanik\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\yanik\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{A0A60E5D-32CC-453F-A8B1-4BC11FE3C06F}C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe] => (Allow) C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe FirewallRules: [UDP Query User{246637ED-22E1-406E-81CA-5C45C1B6E59D}C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe] => (Allow) C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe FirewallRules: [{11BF5DB8-3FCA-41FD-9619-97D629B8E0F5}] => (Allow) LPort=49169 FirewallRules: [{F268FF69-23B4-4FB3-A582-5B1D9D627603}] => (Allow) LPort=5000 FirewallRules: [{82D1E50D-1493-4A2E-A38C-806B535B0147}] => (Allow) LPort=49185 FirewallRules: [{F9F06BED-0E77-48F3-8290-4BDD39A08A31}] => (Allow) LPort=5000 FirewallRules: [TCP Query User{3D9A75BB-D7DB-40D9-8D95-10B865E74B18}C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe] => (Allow) C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe FirewallRules: [UDP Query User{733D617F-EC5C-4AAE-A2D5-DA5F06D70C71}C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe] => (Allow) C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe FirewallRules: [{62203193-D365-4E57-A19C-4C8E69F00E16}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{04DF7B59-87C8-4F44-9986-E45B62A71FFB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{0B593BE1-ED61-4555-91B8-2BC5D2D7FC24}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe FirewallRules: [{D72BFB76-9F24-4D54-9A7E-1A19D7AB7629}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe FirewallRules: [{CA5B403D-0FEE-444B-87D8-6F7C9000164F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{3CCF3151-7EB8-4C7C-ACE9-1C5355815AF2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{001A67EF-C1D0-4EFB-8C9F-E77D5A09F200}] => (Allow) LPort=56346 FirewallRules: [{1DAB6F5B-9995-4F8A-AE4D-3AF4267AD98D}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{2EAE2EDB-C30C-4BB0-A5BF-5D0121273F2D}] => (Allow) LPort=2869 FirewallRules: [{2E7A8D0A-2189-41C0-B852-27EC67880A3F}] => (Allow) LPort=1900 FirewallRules: [{0B0779BC-B2BB-4E98-BCAD-66FD4205B47A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{01A9C7B6-97D1-4166-925A-AEA46F2C5C48}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [TCP Query User{BE89C4B9-333E-4D79-B6BA-59DE4D80F73A}C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe] => (Allow) C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe FirewallRules: [UDP Query User{CA4339CA-6AF3-447B-B08B-1980CE15BBD4}C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe] => (Allow) C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe FirewallRules: [{FBDF1C9F-79AA-41FB-9D4D-0DE9CC22F391}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe FirewallRules: [{915F3EE2-2728-441D-948C-F28C741FE637}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe FirewallRules: [{49064CDC-85FF-453B-8066-8E21E95F32C9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe FirewallRules: [{D64C44B1-A749-426A-88D3-49FCCF2818B9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe FirewallRules: [{21E46FB7-818B-4866-B822-84533CFE6F1F}] => (Allow) C:\Users\Yanik\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{A605F8AA-E1DE-40B9-940B-4350BAF7157D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2F85D76B-1E42-4BB4-A0D4-0C1807E38477}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1354184B-A0D8-4C63-A3A6-9BBEC42F0671}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{79B2E660-5E28-4E35-A946-7A28AF93BDD0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{613F470D-2B01-4244-B4F8-08D9D7FFB01A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C0369496-0F1C-4709-92D8-F6F1DA581F5B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{B0ADB5EE-6F56-4E20-9B02-88049BE05CEA}C:\program files (x86)\hl.exe] => (Allow) C:\program files (x86)\hl.exe FirewallRules: [UDP Query User{F9A27FB5-E02C-407D-A3A8-BFFD80E453A9}C:\program files (x86)\hl.exe] => (Allow) C:\program files (x86)\hl.exe FirewallRules: [TCP Query User{C7B1CCF4-4DDF-4AF7-94B3-C1B3D1E8FA59}C:\program files (x86)\hlds.exe] => (Allow) C:\program files (x86)\hlds.exe FirewallRules: [UDP Query User{D1BD5D92-6053-4AE5-84B1-2BE0F2CE249E}C:\program files (x86)\hlds.exe] => (Allow) C:\program files (x86)\hlds.exe FirewallRules: [{7F6C91A6-E125-4E5E-94C2-C74A234917AE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{F48AFC4E-2192-4981-97AD-10349D1BBF03}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{15254210-7055-465B-B95A-AA10B17508DA}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [TCP Query User{AE82D0C5-4EA3-4FDE-AC99-AFD957BEF7AF}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{4B334020-0C7D-4BE6-87E6-6F9F8BFC8EF3}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{C0527EAB-340A-4ADB-A764-EFA061976287}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B034F45A-7DFE-45E3-B44E-1BE6C3EE77F6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A73B82BF-B1C1-4E24-92A7-C4DDDEFE5A62}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{7B5342F5-7596-4EE6-BBF3-7806D5C79CF3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{4D3773C5-F912-45E5-9398-98DDAE32FB64}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{C33B337F-6D5D-4A6F-A933-FEF115585A21}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{C5A3F189-B595-4C1F-AAFA-70FB242723B3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{CFD01919-E1F4-48D4-96C6-2D796727E142}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{01627A1C-5748-438E-89A3-F34A6D86E79E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{159F79B3-FB7D-4AFD-8489-C3B44E46F523}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{53CA8640-DAC5-4F37-B326-E363FCA696A0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{10512B79-035C-4BBD-AB03-027687533B48}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{D08AC4D4-776A-4ADE-84B9-193C224C999F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{EF8D90C4-C285-4CAA-9BDC-BA04934C135B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{2E5C928D-4216-4E9B-B09C-AF1004642884}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{032AC4FA-F1E8-4685-9699-F102E9C3D069}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{23B3B924-C15D-4C97-B069-7E7D9360AAB1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{3C149125-BABA-4B45-A18F-94B089708C45}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{ED618EC5-6C8A-4EDD-B1EC-B56207A999A5}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{60294DAB-7DCF-4DB8-BB20-D313C8DD2B83}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [{B3580005-C07B-4755-9B3C-3BBCEDE8887A}] => (Allow) C:\Program Files\Red Giant\Offload\Offload.exe FirewallRules: [TCP Query User{761F4D62-444E-4CC8-BDAF-4BF132FBEA1C}C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe] => (Allow) C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe FirewallRules: [UDP Query User{8B3472BA-B0A3-436E-A57F-5B88000A6070}C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe] => (Allow) C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe FirewallRules: [TCP Query User{BCD1911B-3361-4235-8990-EFBD70158D81}C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe] => (Allow) C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe FirewallRules: [UDP Query User{C1289FA9-3AE9-4A06-A022-8E5524AD0BAA}C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe] => (Allow) C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe FirewallRules: [TCP Query User{08FADF3E-911D-407C-AD25-2F62341B3486}C:\program files\sonyvegas13\vegas130.exe] => (Allow) C:\program files\sonyvegas13\vegas130.exe FirewallRules: [UDP Query User{D18142F9-002F-47C4-AF54-E543EADED84F}C:\program files\sonyvegas13\vegas130.exe] => (Allow) C:\program files\sonyvegas13\vegas130.exe FirewallRules: [{5FC859CC-D758-49B3-8B91-A320F1CEC517}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{179CDD17-158D-4E92-89D9-E89A2AF7FFE9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{D70C9A60-FB67-4AD1-B0FC-9F14F6867DA6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{61FD5BBC-9E65-4382-A019-C388354FA9D5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{B65ACE41-893E-418A-BA19-E7E1257C3DBD}C:\program files\sonyvegas13\vegas130.exe] => (Allow) C:\program files\sonyvegas13\vegas130.exe FirewallRules: [UDP Query User{11ED78E5-F85B-46D0-AE18-88EE2A0E0497}C:\program files\sonyvegas13\vegas130.exe] => (Allow) C:\program files\sonyvegas13\vegas130.exe FirewallRules: [{A21D55BA-6556-499E-914E-65D3493F2B43}] => (Allow) C:\Users\Yanik\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{30D4E479-5141-4071-9AB9-D44FC52EA93C}] => (Allow) C:\Users\Yanik\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{A74BAF91-8A46-45C2-B157-5AC0367E950D}] => (Allow) C:\Users\Yanik\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{DD7B38EB-7040-4003-BE51-064E175EABA6}] => (Allow) C:\Users\Yanik\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{68B7CC9E-FCF3-4D79-B34D-D7B855AC47CF}] => (Allow) C:\Users\Yanik\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{8670DA5F-22AB-4C9E-9937-C9B72F03F077}] => (Allow) C:\Users\Yanik\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{8A1EEF68-BB94-41A1-AECA-17E29C6BA492}] => (Allow) LPort=49164 ==================== Wiederherstellungspunkte ========================= 16-11-2016 17:12:36 Wiederherstellungsvorgang 16-11-2016 22:09:10 Gerätetreiber-Paketinstallation: Focusrite Audio Engineering Ltd. Focusrite Audio 16-11-2016 22:11:14 Gerätetreiber-Paketinstallation: Focusrite Audio Engineering Ltd. Audio-, Video- und Gamecontroller 17-11-2016 00:57:08 Wiederherstellungsvorgang 17-11-2016 01:45:43 Installiert Realtek Ethernet Diagnostic Utility 17-11-2016 01:47:49 Installiert Realtek Ethernet Controller Driver 17-11-2016 03:34:51 Gerätetreiber-Paketinstallation: TP-LINK Netzwerkadapter 17-11-2016 19:43:54 Windows Update 17-11-2016 22:08:38 JRT Pre-Junkware Removal 17-11-2016 22:35:41 ESET Internet Security wurde entfernt Überprüfen Sie den "winmgmt" Dienst oder reparieren Sie den WMI. ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: avnetflt Description: avnetflt Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: avnetflt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/17/2016 11:28:58 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crt>. Fehler: 12007 (0x2ee7). Error: (11/17/2016 11:28:58 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/02FAF3E291435468607857694DF5E45B68851868.crt>. Fehler: 12007 (0x2ee7). Error: (11/17/2016 10:49:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crt>. Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (11/17/2016 10:49:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/02FAF3E291435468607857694DF5E45B68851868.crt>. Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (11/17/2016 10:49:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crt>. Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (11/17/2016 10:49:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/02FAF3E291435468607857694DF5E45B68851868.crt>. Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (11/17/2016 10:49:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crt>. Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (11/17/2016 10:49:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/02FAF3E291435468607857694DF5E45B68851868.crt>. Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (11/17/2016 10:49:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crt>. Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (11/17/2016 10:49:12 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: ) Description: Fehler bei der automatischen Aktualisierung des Drittanbieterstammzertifikats von <hxxp://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/02FAF3E291435468607857694DF5E45B68851868.crt>. Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Systemfehler: ============= Error: (11/17/2016 11:29:30 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DHCP-Client" wurde mit folgendem Fehler beendet: Zugriff verweigert Error: (11/17/2016 11:29:30 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "WinHTTP-Web Proxy Auto-Discovery-Dienst" ist vom Dienst "DHCP-Client" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der Vorgang wurde erfolgreich beendet. Error: (11/17/2016 11:29:30 PM) (Source: Microsoft-Windows-Dhcp-Client) (EventID: 1004) (User: NT-AUTORITÄT) Description: Fehler beim Beenden des Dhcpv4-Clientdiensts. Fehlercode 5. Der ShutDown-Kennzeichenwert lautet 0. Error: (11/17/2016 11:29:30 PM) (Source: Microsoft-Windows-Dhcp-Client) (EventID: 17270) (User: NT-AUTORITÄT) Description: Fehler bei der DHCPv4-Initialisierung. Fehlercode: 5. Error: (11/17/2016 11:29:22 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DHCP-Client" wurde mit folgendem Fehler beendet: Zugriff verweigert Error: (11/17/2016 11:29:22 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "WinHTTP-Web Proxy Auto-Discovery-Dienst" ist vom Dienst "DHCP-Client" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der Vorgang wurde erfolgreich beendet. Error: (11/17/2016 11:29:22 PM) (Source: Microsoft-Windows-Dhcp-Client) (EventID: 1004) (User: NT-AUTORITÄT) Description: Fehler beim Beenden des Dhcpv4-Clientdiensts. Fehlercode 5. Der ShutDown-Kennzeichenwert lautet 0. Error: (11/17/2016 11:29:22 PM) (Source: Microsoft-Windows-Dhcp-Client) (EventID: 17270) (User: NT-AUTORITÄT) Description: Fehler bei der DHCPv4-Initialisierung. Fehlercode: 5. Error: (11/17/2016 11:29:21 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DHCP-Client" wurde mit folgendem Fehler beendet: Zugriff verweigert Error: (11/17/2016 11:29:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "WinHTTP-Web Proxy Auto-Discovery-Dienst" ist vom Dienst "DHCP-Client" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der Vorgang wurde erfolgreich beendet. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz Prozentuale Nutzung des RAM: 25% Installierter physikalischer RAM: 8156.89 MB Verfügbarer physikalischer RAM: 6094.18 MB Summe virtueller Speicher: 16311.96 MB Verfügbarer virtueller Speicher: 13970.16 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:698.54 GB) (Free:49.47 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 3901B0E2) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=698.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
03.12.2016, 19:22 | #5 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr AdwCleaner AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 17/11/2016 um 22:00:33 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-10-18.1 [Lokal] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64) # Benutzername : Yanik - YANIK-PC # Gestartet von : C:\Users\Yanik\Desktop\Anti Vir\adwcleaner_6.030.exe # Modus: Löschen # Unterstützung : hxxps://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** [-] Ordner gelöscht: C:\Users\Yanik\AppData\Local\globalUpdate [-] Ordner gelöscht: C:\Users\Yanik\AppData\Roaming\goforfiles [-] Ordner gelöscht: C:\Users\Yanik\AppData\Roaming\RPEng [#] Ordner mit Neustart gelöscht: C:\Users\Yanik\AppData\Roaming\GoforFiles [-] Ordner gelöscht: C:\ProgramData\apn [#] Ordner mit Neustart gelöscht: C:\ProgramData\Application Data\apn [-] Ordner gelöscht: C:\Users\Yanik\AppData\Local\Geckofx ***** [ Dateien ] ***** [-] Datei gelöscht: C:\user.js [-] Datei gelöscht: C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748\foxydeal.sqlite ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** [-] Verknüpfung desinfiziert: C:\Users\Yanik\Desktop\Anwendungen\RAGE.lnk ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel gelöscht: HKLM\SOFTWARE\f13d413a-b4dd-45da-97e2-d8993ed31aa2 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\OpcMp4.OpcMp4Player [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\OpcMp4.OpcMp4Player.1 [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\OpcMp4.OpcMp4Player [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\OpcMp4.OpcMp4Player.1 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{41564952-412D-5637-00A7-7A786E7484D7} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{29494049-211F-4F5C-8545-7DA8BF7A6CF8} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C4BEF720-313C-420A-ACF6-77DD95D8F553} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011431152} [-] Schlüssel gelöscht: HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\AskPartnerNetwork [-] Schlüssel gelöscht: HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\GoforFiles [-] Schlüssel gelöscht: HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\InstalledBrowserExtensions [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3404717819-833408578-2882030763-1000\Software\SweetIM [-] Schlüssel gelöscht: HKU\S-1-5-21-3404717819-833408578-2882030763-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\GoforFiles [-] Schlüssel gelöscht: HKU\S-1-5-21-3404717819-833408578-2882030763-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\InstalledBrowserExtensions [-] Schlüssel gelöscht: HKU\S-1-5-21-3404717819-833408578-2882030763-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\WEDLMNGR [-] Schlüssel gelöscht: HKU\S-1-5-21-3404717819-833408578-2882030763-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\GoforFiles [-] Schlüssel gelöscht: HKU\S-1-5-21-3404717819-833408578-2882030763-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\InstalledBrowserExtensions [#] Schlüssel mit Neustart gelöscht: HKCU\Software\GoforFiles [#] Schlüssel mit Neustart gelöscht: HKCU\Software\InstalledBrowserExtensions [-] Schlüssel gelöscht: HKU\.DEFAULT\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-18\Software\IB Updater [-] Schlüssel gelöscht: HKLM\SOFTWARE\GoforFiles [-] Schlüssel gelöscht: HKLM\SOFTWARE\InstalledBrowserExtensions [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3404717819-833408578-2882030763-1000\Software\SweetIM [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\GoforFiles [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\InstalledBrowserExtensions [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\InstalledBrowserExtensions [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.bdliveupdate.oneclickctrl.9 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\MIME\Database\Content Type\application/x-vnd.bdliveupdate.update3webcontrol.3 ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: TCP/IP Einstellungen zurückgesetzt :: Firewall Einstellungen zurückgesetzt :: IPSec Einstellungen zurückgesetzt :: BITS Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [5369 Bytes] - [17/11/2016 22:00:33] C:\AdwCleaner\AdwCleaner[R0].txt - [24517 Bytes] - [01/10/2013 15:59:36] C:\AdwCleaner\AdwCleaner[R1].txt - [15697 Bytes] - [01/10/2013 16:02:06] C:\AdwCleaner\AdwCleaner[S0].txt - [2080 Bytes] - [01/10/2013 16:00:54] C:\AdwCleaner\AdwCleaner[S1].txt - [12904 Bytes] - [01/10/2013 16:02:25] C:\AdwCleaner\AdwCleaner[S2].txt - [5557 Bytes] - [17/11/2016 21:59:20] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [5810 Bytes] ########## [/CODE] Anti Root Kit Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2014.11.18.05 rootkit: v2014.11.12.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.18524 Yanik :: YANIK-PC [administrator] 17.11.2016 20:52:12 mbar-log-2016-11-17 (20-52-12).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 450338 Time elapsed: 57 minute(s), 44 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 17.11.2016 Suchlaufzeit: 20:12 Protokolldatei: Malwarebytes.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.02.16.06 Rootkit-Datenbank: v2016.02.08.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Yanik Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 467123 Abgelaufene Zeit: 30 Min., 47 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 54 PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\CLASSES\APPID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}, In Quarantäne, [01656001e1b86bcb50f1a10acb37758b], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}, In Quarantäne, [01656001e1b86bcb50f1a10acb37758b], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}, In Quarantäne, [01656001e1b86bcb50f1a10acb37758b], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\CLASSES\APPID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}, In Quarantäne, [8dd9a3be6732d6608bb9218af40ede22], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}, In Quarantäne, [8dd9a3be6732d6608bb9218af40ede22], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}, In Quarantäne, [8dd9a3be6732d6608bb9218af40ede22], PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{29494049-211F-4F5C-8545-7DA8BF7A6CF8}, In Quarantäne, [372fe37e4851fe383ac7e2b8ec1639c7], PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{29494049-211F-4F5C-8545-7DA8BF7A6CF8}, In Quarantäne, [372fe37e4851fe383ac7e2b8ec1639c7], PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{33BAF587-9647-4281-A34F-F4830CDC1B9F}, In Quarantäne, [372fe27f7e1b12240af864369270817f], PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C4BEF720-313C-420A-ACF6-77DD95D8F553}, In Quarantäne, [d5915e039dfc93a3f4168c0e788a8a76], PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{C4BEF720-313C-420A-ACF6-77DD95D8F553}, In Quarantäne, [d5915e039dfc93a3f4168c0e788a8a76], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, In Quarantäne, [4e18402149500f27de65e9c234cef20e], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, In Quarantäne, [501668f99207ba7c3e0f802ba35f34cc], PUP.Optional.CrossRider, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21501, In Quarantäne, [f96d0c558f0a64d2f474865860a337c9], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{14C8C076-A032-49C4-B474-35DCCBEF1C7A}, In Quarantäne, [84e24f12a9f0de58fe6c4a94d03352ae], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AB7E8926-AEDD-451F-A8A0-2839DCBE11AE}, In Quarantäne, [b7af91d03366dd59caa23ba3ab582fd1], PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\BonanzaDealsLiveUpdateTaskMachineCore, In Quarantäne, [6105f46df8a14fe774458251e71c4eb2], PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\BonanzaDealsLiveUpdateTaskMachineUA, In Quarantäne, [d492d58c12871f17f9c091423dc68c74], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-1, In Quarantäne, [dc8a9ac7a5f48da96effeaf4e91ae61a], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-11, In Quarantäne, [a9bd580975244aec4d207f5f0cf7649c], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-2, In Quarantäne, [da8c83de3861ad89b8b55589986b9967], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-3, In Quarantäne, [3432ff624a4fcb6b610cd60843c00ef2], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-4, In Quarantäne, [2d39471a6633a4923e2f45992ad9a060], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-5, In Quarantäne, [c1a5b7aa9cfdfc3a5518ffdf5ca7a759], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-5_user, In Quarantäne, [99cd7de489107abc2e3fb22cf211857b], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-6, In Quarantäne, [adb9aab75f3a4de9412c34aa7291b54b], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\d59d601d-7389-4769-ab53-b322d00ce1c2-7, In Quarantäne, [1c4afa67e1b874c2a2cbcf0fb3505aa6], PUP.Optional.GoForFiles, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Go for FilesUpdate, In Quarantäne, [76f0501101987abcbb1f1cb2a45fc43c], PUP.Optional.WeDownload, HKLM\SOFTWARE\WOW6432NODE\The weDownloads Manager+, In Quarantäne, [e38308597b1ec5716e336ea0d232817f], PUP.Optional.WeDownload, HKLM\SOFTWARE\WOW6432NODE\The weDownloads Manager+-nv, In Quarantäne, [cb9b65fc8019b581683948c60afa3cc4], PUP.Optional.FBPhotoZoom, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mpieaakhacmfleokhjcjnpcnmnmpfkid, In Quarantäne, [1650ce93475265d15a26a241976ce31d], PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\21501, In Quarantäne, [0264d78a9108d06669ff4d9193708c74], PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{14C8C076-A032-49C4-B474-35DCCBEF1C7A}, In Quarantäne, [79edf76a5e3bdc5a0b5fa23c18eb1ae6], PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{21111111-1111-1111-1111-110011431152}, In Quarantäne, [81e54f12adec13231753b826a3608e72], PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AB7E8926-AEDD-451F-A8A0-2839DCBE11AE}, In Quarantäne, [e87e0958aeeb88ae82ea4d9191728d73], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, In Quarantäne, [fe680d5401988bab9944be28bb486b95], PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, In Quarantäne, [d59199c85a3f0f272cb0aa3c45be34cc], PUP.Optional.APNToolBar.Gen, HKU\S-1-5-18\SOFTWARE\AskPartnerNetwork, In Quarantäne, [89dd3031485139fd767359a3729034cc], PUP.Optional.WeDownload, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\The weDownloads Manager+, In Quarantäne, [b7afd1904059f145fa9c49c50cf8d729], PUP.Optional.WeDownLoadManager, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\WEDLMNGR, In Quarantäne, [96d0e9786d2c2214673efb1319eb48b8], PUP.Optional.WeDownload, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\APPDATALOW\SOFTWARE\The weDownloads Manager+, In Quarantäne, [fc6a6ff2a8f1cc6a395dea245aaaff01], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21501, In Quarantäne, [dd8994cd5643989e3f0f75683ec533cd], PUP.Optional.WeDownload, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\weDownload, In Quarantäne, [194d2140eeab2d094157da349d672ad6], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{14C8C076-A032-49C4-B474-35DCCBEF1C7A}, In Quarantäne, [3c2abea37a1fa88e80c936a82ad921df], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{38796ADE-2C9A-46E4-8D85-93D17130D084}, In Quarantäne, [33330b5632675adc381305d9f60d37c9], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{79311742-2865-4035-B487-B2405DC9A7AA}, In Quarantäne, [fd698dd46c2d93a3183222bc0bf8dd23], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8790ED4E-7221-4D35-88FE-9BC24D52CFF0}, In Quarantäne, [7cead0913a5ffd39410abe208182d927], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9A18C110-80F4-420D-B0CB-53DE633433A7}, In Quarantäne, [4026aab7b1e8e2546ae047979e65ce32], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9BE81F06-E223-4F0B-80F5-8D7ABBBF5C4B}, In Quarantäne, [0165f170ebaef83ea3a7ecf2ff042cd4], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A81977C1-C368-483C-B850-1BA8BB22C622}, In Quarantäne, [5412b9a8f2a713231932fee011f227d9], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AB7E8926-AEDD-451F-A8A0-2839DCBE11AE}, In Quarantäne, [f670baa7d8c1c076f7549747798a7d83], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BE96593E-40F6-499E-9DC7-3421636F372E}, In Quarantäne, [baac0958148546f0ba91fee06f94ff01], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D56C8DCD-36A3-45C4-91E7-EE9837D220CB}, In Quarantäne, [9ccabca5abee40f65febe0fec043a15f], PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F5E78A12-7234-4C68-B154-A1B2E57D7466}, In Quarantäne, [fb6b154cf3a63ff701498d513cc7966a], Registrierungswerte: 17 PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{14c8c076-a032-49c4-b474-35dccbef1c7a}|AppName, The weDownloads Manager+-bg.exe, In Quarantäne, [84e24f12a9f0de58fe6c4a94d03352ae] PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ab7e8926-aedd-451f-a8a0-2839dcbe11ae}|AppName, The weDownloads Manager+-codedownloader.exe, In Quarantäne, [b7af91d03366dd59caa23ba3ab582fd1] PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{14c8c076-a032-49c4-b474-35dccbef1c7a}|AppName, The weDownloads Manager+-bg.exe, In Quarantäne, [79edf76a5e3bdc5a0b5fa23c18eb1ae6] PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{21111111-1111-1111-1111-110011431152}|AppName, CouponDropDown-bg.exe, In Quarantäne, [81e54f12adec13231753b826a3608e72] PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ab7e8926-aedd-451f-a8a0-2839dcbe11ae}|AppName, The weDownloads Manager+-codedownloader.exe, In Quarantäne, [e87e0958aeeb88ae82ea4d9191728d73] PUP.Optional.FBPhotoZoom, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|fbphotozoom@installdaddy.com, C:\Program Files (x86)\fbphotozoom\fbphotozoom15.xpi, In Quarantäne, [b9ada9b86336a1950c75df0423e02cd4] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{14c8c076-a032-49c4-b474-35dccbef1c7a}|AppName, The weDownloads Manager+-bg.exe, In Quarantäne, [3c2abea37a1fa88e80c936a82ad921df] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{38796ADE-2C9A-46E4-8D85-93D17130D084}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-codedownloader.exe, In Quarantäne, [33330b5632675adc381305d9f60d37c9] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{79311742-2865-4035-B487-B2405DC9A7AA}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-buttonutil.exe, In Quarantäne, [fd698dd46c2d93a3183222bc0bf8dd23] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8790ED4E-7221-4D35-88FE-9BC24D52CFF0}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-codedownloader.exe, In Quarantäne, [7cead0913a5ffd39410abe208182d927] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9A18C110-80F4-420D-B0CB-53DE633433A7}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-buttonutil.exe, In Quarantäne, [4026aab7b1e8e2546ae047979e65ce32] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9BE81F06-E223-4F0B-80F5-8D7ABBBF5C4B}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-buttonutil.exe, In Quarantäne, [0165f170ebaef83ea3a7ecf2ff042cd4] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A81977C1-C368-483C-B850-1BA8BB22C622}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-codedownloader.exe, In Quarantäne, [5412b9a8f2a713231932fee011f227d9] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ab7e8926-aedd-451f-a8a0-2839dcbe11ae}|AppName, The weDownloads Manager+-codedownloader.exe, In Quarantäne, [f670baa7d8c1c076f7549747798a7d83] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BE96593E-40F6-499E-9DC7-3421636F372E}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-codedownloader.exe, In Quarantäne, [baac0958148546f0ba91fee06f94ff01] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D56C8DCD-36A3-45C4-91E7-EE9837D220CB}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-buttonutil.exe, In Quarantäne, [9ccabca5abee40f65febe0fec043a15f] PUP.Optional.CrossRider, HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F5E78A12-7234-4C68-B154-A1B2E57D7466}|AppName, d59d601d-7389-4769-ab53-b322d00ce1c2-2.exe-buttonutil.exe, In Quarantäne, [fb6b154cf3a63ff701498d513cc7966a] Registrierungsdaten: 1 PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[5d09d28f8a0f270f845dfce98282df21] Ordner: 1 PUP.Optional.APNToolBar.Gen, C:\ProgramData\APN\APN-Stub, In Quarantäne, [5214035ea2f70a2c0d99358bcc36f10f], Dateien: 24 PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-1, In Quarantäne, [580e73ee6e2b2115d4fb8c421ce77a86], PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-11, In Quarantäne, [baacc69b0f8a67cf1fb0e1ed59aa1fe1], PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-2, In Quarantäne, [87df65fc99005bdb9b34507eba49e917], PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-3, In Quarantäne, [74f27ee3f1a80e28517ee1ede12222de], PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-4, In Quarantäne, [4f17acb54d4c4ceaba154688e61db050], PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-5, In Quarantäne, [16502c358e0be3538b447757986bab55], PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-5_user, In Quarantäne, [cd99b8a9fa9f55e13c933896fe05ac54], PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-6, In Quarantäne, [92d4acb5f1a892a429a6606e51b2da26], PUP.Optional.CrossRider, C:\Windows\System32\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-7, In Quarantäne, [9cca6bf6b2e76bcb1fb0fdd1d42fc33d], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-1.job, In Quarantäne, [4d199dc4188178be3c94bc128e75ab55], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-11.job, In Quarantäne, [ca9c8cd5d2c7310503cd00ce7d86a15f], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-2.job, In Quarantäne, [92d47fe2bfdab5815f71606e966d24dc], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-3.job, In Quarantäne, [a1c52f324d4ca096dbf57559ef14f40c], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-4.job, In Quarantäne, [73f30b56b5e47eb802ce85498a7911ef], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-5.job, In Quarantäne, [91d5f869ecad4cea10c0dbf32cd757a9], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-5_user.job, In Quarantäne, [ed79ef72871243f379571bb319ea6e92], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-6.job, In Quarantäne, [80e6cc9535646ec8b11f8f3f4cb7956b], PUP.Optional.CrossRider, C:\Windows\Tasks\d59d601d-7389-4769-ab53-b322d00ce1c2-7.job, In Quarantäne, [c2a4ea77e1b864d2def265698281be42], PUP.Optional.GoForFiles, C:\Windows\System32\Tasks\Go for FilesUpdate, In Quarantäne, [d98d550c5f3aba7c84546b635ea560a0], PUP.Optional.BonanzaDeals, C:\Windows\System32\Tasks\BonanzaDealsLiveUpdateTaskMachineCore, In Quarantäne, [f27496cbff9a32045f51b81b9b6816ea], PUP.Optional.BonanzaDeals, C:\Windows\System32\Tasks\BonanzaDealsLiveUpdateTaskMachineUA, In Quarantäne, [68fe88d9acedc175357b0bc8f50ed927], PUP.Optional.BonanzaDeals, C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job, In Quarantäne, [5d09aeb3aced44f2ebc61db613f05aa6], PUP.Optional.BonanzaDeals, C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job, In Quarantäne, [5016e879cecbc076565b03d060a313ed], PUP.Optional.CrossRider, C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "148ac9c3ca2e8e8375223437e6a9a0fb");), Ersetzt,[62041c455e3bfd390c0ca76725e025db] Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.9 (09.30.2016) Operating System: Windows 7 Home Premium x64 Ran by Yanik (Administrator) on 17.11.2016 at 22:08:33,33 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 21 Successfully deleted: C:\ProgramData\esellerate (Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\crashrpt (Folder) Successfully deleted: C:\Users\Yanik\AppData\Roaming\getrighttogo (Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ZMLJL8 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M87KH16K (Temporary Internet Files Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NPP5G4S0 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PRAH8PC1 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Yanik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YOVSS1SO (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ZMLJL8 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M87KH16K (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NPP5G4S0 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PRAH8PC1 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YOVSS1SO (Temporary Internet Files Folder) Registry: 2 Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711} (Registry Key) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 17.11.2016 at 22:15:38,26 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Combofix Logfile: Security Check: Code:
ATTFilter Results of screen317's Security Check version 1.009 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Avira Antivirus Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Java version 32-bit out of Date! Adobe Flash Player 23.0.0.207 Adobe Reader XI Mozilla Firefox (49.0.2) ````````Process Check: objlist.exe by Laurent```````` ESET NOD32 Antivirus egui.exe ESET NOD32 Antivirus ekrn.exe Avira Antivir avgnt.exe Avira Antivir avguard.exe windows defender MpCmdRun.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=5713d8457934f545b41273fd6dacc762 # end=init # utc_time=2016-11-28 05:20:20 # local_time=2016-11-28 06:20:20 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download Update Finalize Updated modules version: 31559 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=5713d8457934f545b41273fd6dacc762 # end=updated # utc_time=2016-11-28 05:31:54 # local_time=2016-11-28 06:31:54 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=5713d8457934f545b41273fd6dacc762 # engine=31559 # end=finished # remove_checked=true # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2016-11-28 09:31:12 # local_time=2016-11-28 10:31:12 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='Avira Antivirus' # compatibility_mode=1815 16777213 100 96 23170 3669163 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 103971 231998522 0 0 # scanned=805132 # found=7 # cleaned=7 # scan_time=14358 sh=928A536FBFF196495B90E4BD51B932485B84A099 ft=1 fh=748b6a41a833329e vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen)" ac=C fn="C:\Users\Yanik\AppData\Local\Temp\DMR\dmr_72.exe" sh=4CAC22751E437CD246D7D2542BED599E7AD0F68F ft=0 fh=0000000000000000 vn="Variante von Win32/FusionCore.K evtl. unerwünschte Anwendung (gelöscht)" ac=C fn="C:\Users\Yanik\AppData\Local\Temp\HYDB07B.tmp.1479431993\HTA\install.1479431993.zip" sh=189FAC2249A10A568D13A81F6449BFFFFDEAEFD2 ft=1 fh=2be0e2264a96be0a vn="Variante von Win32/FusionCore.K evtl. unerwünschte Anwendung (Gesäubert durch Löschen)" ac=C fn="C:\Users\Yanik\AppData\Local\Temp\HYDB07B.tmp.1479431993\HTA\3rdparty\FS.dll" sh=4CAC22751E437CD246D7D2542BED599E7AD0F68F ft=0 fh=0000000000000000 vn="Variante von Win32/FusionCore.K evtl. unerwünschte Anwendung (gelöscht)" ac=C fn="C:\Users\Yanik\AppData\Local\Temp\HYDEEA3.tmp.1479432009\HTA\install.1479432009.zip" sh=189FAC2249A10A568D13A81F6449BFFFFDEAEFD2 ft=1 fh=2be0e2264a96be0a vn="Variante von Win32/FusionCore.K evtl. unerwünschte Anwendung (Gesäubert durch Löschen)" ac=C fn="C:\Users\Yanik\AppData\Local\Temp\HYDEEA3.tmp.1479432009\HTA\3rdparty\FS.dll" sh=DDD7E789E67132CF6C5D8169B2F46E3498FCA60F ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung (gelöscht)" ac=C fn="C:\Users\Yanik\AppData\Roaming\JZPUYQL" sh=D8F12AD0482833348FCF5384CD2D03A9E6C22F99 ft=1 fh=5f1b9046662ae45b vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen)" ac=C fn="C:\Users\Yanik\Downloads\DelFix - CHIP-Installer.exe" So, das wars mit den Logs. ;-) Die Logs stammen alle von damals, bevor ich ComboFix angewandt hatte. Nur den ESET Online Scanner und SecurityCheck habe ich danach benutzt. |
05.12.2016, 13:26 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Bitte Avira deinstallieren. Das Teil empfehlen wir schon seit Jahren aus mehreren Gründen nicht mehr. Ein Grund ist ne rel. hohe Fehlalarmquote, der zweite Hauptgrund ist, dass die immer noch mit ASK zusammenarbeiten (Avira Suchfunktion geht über ASK). Auch andere Freewareanbieter wie AVG, Avast oder Panda sprangen auf diesen Zug auf; so was ist bei Sicherheitssoftware einfach inakzeptabel. Vgl. Antivirensoftware: Schutz Für Ihre Dateien, Aber Auf Kosten Ihrer Privatsphäre? | Emsisoft Blog Gib Bescheid wenn Avira weg ist; wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen, Infos folgen dann im Abschlussposting. Bitte JETZT nix mehr ohne Absprache installieren!
__________________ --> Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr |
05.12.2016, 14:20 | #7 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Hey Cosinus, danke für deine Antwort! Avira ist deinstalliert. Wie gehts jetzt weiter? |
05.12.2016, 15:17 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Neue FRST Logs und Log mit FSS: Downloade dir bitte Farbar Service Scanner
Poste bitte den Inhalt hier.
__________________ Logfiles bitte immer in CODE-Tags posten |
05.12.2016, 16:26 | #9 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr FRST FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-12-2016 durchgeführt von Yanik (Administrator) auf YANIK-PC (05-12-2016 16:19:43) Gestartet von C:\Users\Yanik\Desktop\Anti Vir\FRST\Neueste Logs Geladene Profile: Yanik (Verfügbare Profile: Yanik) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Akamai Technologies, Inc.) C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (Akamai Technologies, Inc.) C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.17\aaHMSvc.exe () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.17\AsusFanControlService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Borland Software Corporation) C:\Program Files (x86)\Borland\InterBase\bin\ibguard.exe (Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe (Rocket Division Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (X10) C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Borland Software Corporation) C:\Program Files (x86)\Borland\InterBase\bin\ibserver.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-12-13] (Realtek Semiconductor) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-11-01] (Apple Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM\...\Policies\Explorer: [AllowLegacyWebView] 1 HKLM\...\Policies\Explorer: [AllowUnhashedWebView] 1 HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2011-10-03] (AMD) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8641240 2016-02-12] (Piriform Ltd) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{70FA10B7-ACD3-4F7E-9907-98EA2FC7C6EA}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{A577E35A-9298-4D12-BFDB-853AD0E1CDC8}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{B26E3F9E-3621-4CAE-9453-60D5A400404C}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope Wert fehlt SearchScopes: HKU\S-1-5-21-3404717819-833408578-2882030763-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Kein Name -> {41564952-412D-5637-00A7-7A786E7484D7} -> Keine Datei BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll [2014-09-25] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll [2014-09-25] (Oracle Corporation) BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22] (Hewlett-Packard Co.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22] (Hewlett-Packard Co.) Toolbar: HKU\S-1-5-21-3404717819-833408578-2882030763-1000 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei DPF: HKLM-x32 {6E718D87-6909-4FCE-92D4-EDCB2F725727} hxxp://navigram.com/engine/v1026/Navigram.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler-x32: http - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: http - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: https - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: https - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: ipp - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: msdaipp - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) Handler-x32: msdaipp - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL [2004-01-29] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: wddldjwh.default-1385910868748 FF ProfilePath: C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748 [2016-12-05] FF Homepage: Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748 -> google.de FF Extension: (ProxTube - Gesperrte YouTube Videos entsperren) - C:\Users\Yanik\AppData\Roaming\Mozilla\Firefox\Profiles\wddldjwh.default-1385910868748\Extensions\ich@maltegoetz.de.xpi [2014-09-11] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: (PDF Architect Converter For Firefox) - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-08-18] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: (HP Smart Web Printing) - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2016-06-09] [ist nicht signiert] FF HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-19] () FF Plugin: @java.com/DTPlugin,version=10.4.0 -> C:\Windows\system32\npDeployJava1.dll [2012-04-10] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll [2014-09-25] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-12-15] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-19] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [Keine Datei] FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.10.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2014-09-25] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll [Keine Datei] FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2011-10-15] (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-12-15] (Adobe Systems) FF Plugin HKU\S-1-5-21-3404717819-833408578-2882030763-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Yanik\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF Plugin HKU\S-1-5-21-3404717819-833408578-2882030763-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2011-10-15] (Pando Networks) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2015-03-24] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2015-03-24] (Apple Inc.) Chrome: ======= CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe [918448 2011-10-29] () [Datei ist nicht signiert] R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.17\aaHMSvc.exe [947328 2011-12-09] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] () R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.17\AsusFanControlService.exe [1464752 2011-12-09] (ASUSTeK Computer Inc.) [Datei ist nicht signiert] R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [389480 2016-03-17] (Digital Wave Ltd.) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.) S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160768 2011-05-27] (Intel Corporation) [Datei ist nicht signiert] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Datei ist nicht signiert] R2 InterBaseGuardian; C:\Program Files (x86)\Borland\InterBase\bin\ibguard.exe [32768 2001-11-29] (Borland Software Corporation) [Datei ist nicht signiert] R3 InterBaseServer; C:\Program Files (x86)\Borland\InterBase\bin\ibserver.exe [1769472 2001-11-29] (Borland Software Corporation) [Datei ist nicht signiert] S3 MSCSPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [Datei ist nicht signiert] R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [Datei ist nicht signiert] R2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [5352960 2011-04-07] (Native Instruments GmbH) [Datei ist nicht signiert] S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4909600 2013-09-02] (INCA Internet Co., Ltd.) S3 PACSPTISVR; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [Datei ist nicht signiert] R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [Datei ist nicht signiert] S3 SonicStage Back-End Service; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SsBeSvc.exe [112184 2007-02-05] (Sony Corporation) S3 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) [Datei ist nicht signiert] S3 SPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [Datei ist nicht signiert] S3 SSScsiSV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SSScsiSV.exe [75320 2007-02-05] (Sony Corporation) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software) [Datei ist nicht signiert] S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 x10nets; C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) [Datei ist nicht signiert] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] () S3 camfilt2; C:\Windows\System32\Drivers\camfilt2.sys [52736 2007-06-01] (Guillemot Corporation) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-05-28] (Disc Soft Ltd) S3 ffusb2audio; C:\Windows\System32\DRIVERS\ffusb2audio.sys [127280 2013-09-25] (Focusrite Audio Engineering Limited.) R3 FocusriteUSB; C:\Windows\System32\DRIVERS\FocusriteUSB.sys [86544 2016-09-01] (Focusrite Audio Engineering Ltd.) R3 FocusriteUSBAudio; C:\Windows\System32\drivers\FocusriteUSBAudio.sys [45072 2016-09-01] (Focusrite Audio Engineering Ltd.) R3 FocusriteUSBSwRoot; C:\Windows\System32\DRIVERS\FocusriteUSBSwRoot.sys [92688 2016-09-01] (Focusrite Audio Engineering Ltd.) S3 hxctlflt; C:\Windows\System32\Drivers\hxctlflt.sys [111104 2009-02-08] (Guillemot Corporation) S3 libusb0; C:\Windows\System32\drivers\libusb0.sys [52320 2012-04-20] (hxxp://libusb-win32.sourceforge.net) S3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [33792 2005-03-09] () [Datei ist nicht signiert] S3 NPPTNT2; C:\Windows\SysWOW64\npptNT2.sys [4682 2004-12-31] (INCA Internet Co., Ltd.) [Datei ist nicht signiert] S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [9631360 2007-05-16] () S0 sptd; kein ImagePath R3 teVirtualMIDI64; C:\Windows\System32\DRIVERS\teVirtualMIDI64.sys [41016 2015-07-12] (Tobias Erichsen) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 X6va003; \??\C:\Users\Yanik\AppData\Local\Temp\00379B2.tmp [X] S3 X6va005; \??\C:\Users\Yanik\AppData\Local\Temp\005BEA4.tmp [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-03 18:59 - 2016-12-03 18:59 - 00000000 ____D C:\Users\Yanik\Desktop\FRST alt 2016-12-03 18:53 - 2016-12-05 16:19 - 00000000 ____D C:\FRST 2016-11-30 01:14 - 2016-11-30 16:24 - 00000704 _____ C:\Users\Yanik\Desktop\codeine.txt 2016-11-29 18:22 - 2016-11-29 18:31 - 199363987 _____ C:\Users\Yanik\Downloads\kkk.zip 2016-11-28 18:34 - 2016-11-28 18:49 - 00001324 _____ C:\Users\Yanik\Desktop\Trojaner Board.txt 2016-11-28 18:19 - 2016-11-28 18:19 - 00000000 ____D C:\Program Files (x86)\ESET 2016-11-28 04:23 - 2016-11-28 04:23 - 00000000 _____ C:\Users\Yanik\Desktop\CRANK.txt 2016-11-27 03:09 - 2016-11-27 03:09 - 00179067 _____ C:\Users\Yanik\Downloads\L%F6sung%20Einf%FChrungsfall%205.pdf 2016-11-27 03:09 - 2016-11-27 03:09 - 00168499 _____ C:\Users\Yanik\Downloads\L%F6sung%20Einf%FChrungsfall%204.pdf 2016-11-26 16:11 - 2016-11-26 16:28 - 374235158 _____ C:\Users\Yanik\Downloads\wetransfer-de80e3.zip 2016-11-26 05:09 - 2016-11-26 05:09 - 00065816 _____ C:\Users\Yanik\Desktop\dragonrage.flp 2016-11-25 06:22 - 2016-11-25 06:22 - 00270888 _____ C:\Users\Yanik\Downloads\BGB Allgemeiner Teil.pdf 2016-11-25 06:22 - 2016-11-25 06:22 - 00200350 _____ C:\Users\Yanik\Downloads\%DCbung%20PrivatR%20-%20L%F6sung%20Einf%FChrungsfall%201.pdf 2016-11-25 06:22 - 2016-11-25 06:22 - 00169922 _____ C:\Users\Yanik\Downloads\%DCbung%20PrivatR%20-%20L%F6sungen%20Einf%FChrungsf%E4lle%202-3.pdf 2016-11-25 06:22 - 2016-11-25 06:22 - 00126638 _____ C:\Users\Yanik\Downloads\%DCbung%20PrivatR%20-%20Einf%FChrungsf%E4lle%204-5.pdf 2016-11-25 06:22 - 2016-11-25 06:22 - 00114455 _____ C:\Users\Yanik\Downloads\%DCbung%20PrivatR%20-%20Einf%FChrungsf%E4lle%201-3.pdf 2016-11-25 06:03 - 2016-11-25 06:03 - 00325920 _____ C:\Users\Yanik\Downloads\London - On - Part_1.wav 2016-11-24 23:32 - 2016-11-24 23:40 - 34249275 _____ C:\Users\Yanik\Documents\slowmo that bag.mp4 2016-11-24 23:30 - 2016-11-24 23:42 - 00224568 _____ C:\Users\Yanik\Downloads\Rich The Kid - That Bag (Instrumental).mp3.sfk 2016-11-24 22:42 - 2016-11-24 22:42 - 02231481 _____ C:\Users\Yanik\Downloads\Twixtor for Vegas Pro 12.zip 2016-11-24 22:39 - 2016-11-24 22:42 - 14544990 _____ C:\Users\Yanik\Downloads\Twixtor Pro Sony Vegas -Drips-.zip 2016-11-23 12:26 - 2016-11-26 01:49 - 00000000 ____D C:\Users\Yanik\Downloads\InsanityFlyFF 2016-11-23 00:41 - 2016-08-17 07:56 - 01551248 _____ (Alexander Roshal) C:\Program Files (x86)\WinRAR.exe 2016-11-23 00:41 - 2016-08-17 07:53 - 00236944 _____ (Alexander Roshal) C:\Program Files (x86)\Uninstall.exe 2016-11-23 00:41 - 2016-08-16 17:05 - 00001777 _____ C:\Program Files (x86)\ReadMe.txt 2016-11-23 00:41 - 2016-08-14 23:16 - 00102288 _____ C:\Program Files (x86)\Ace32Loader.exe 2016-11-23 00:41 - 2016-05-21 12:36 - 00192000 _____ (Igor Pavlov) C:\Program Files (x86)\7zxa.dll 2016-11-23 00:41 - 2005-08-26 00:50 - 00077312 _____ C:\Program Files (x86)\UNACEV2.DLL 2016-11-22 23:19 - 2016-11-22 23:19 - 00001753 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-11-22 23:19 - 2016-11-22 23:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-11-22 23:19 - 2016-11-22 23:19 - 00000000 ____D C:\Program Files\iPod 2016-11-22 23:18 - 2016-11-22 23:18 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2016-11-22 23:18 - 2016-11-22 23:18 - 00000000 ____D C:\Program Files\Bonjour 2016-11-22 23:18 - 2016-11-22 23:18 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-11-22 23:18 - 2016-11-22 23:18 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2016-11-22 03:51 - 2016-11-22 03:51 - 04608081 _____ C:\Users\Yanik\Desktop\EKG ohne Background.psd 2016-11-22 03:44 - 2016-11-22 03:44 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 2016-11-20 22:54 - 2016-11-22 19:57 - 00000565 _____ C:\Users\Yanik\Desktop\Pisdez.txt 2016-11-19 04:47 - 2016-11-19 04:48 - 21108412 _____ C:\Users\Yanik\Documents\Ohne Titel.mp4 2016-11-19 00:22 - 2016-11-19 00:22 - 07340882 _____ C:\Users\Yanik\Downloads\makroI16-1.pdf 2016-11-18 20:06 - 2016-12-05 16:19 - 00000000 ____D C:\Users\Yanik\AppData\LocalLow\Mozilla 2016-11-18 06:39 - 2016-12-02 01:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-11-18 04:02 - 2015-12-20 19:50 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2016-11-18 04:02 - 2015-12-20 19:50 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2016-11-18 04:02 - 2015-12-20 15:08 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2016-11-18 04:01 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2016-11-18 02:59 - 2016-11-18 02:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Focusrite Audio Engineering Ltd 2016-11-18 02:59 - 2016-11-18 02:59 - 00000000 ____D C:\Program Files\FocusriteUSB 2016-11-18 02:59 - 2016-09-01 13:24 - 00092688 _____ (Focusrite Audio Engineering Ltd.) C:\Windows\system32\Drivers\FocusriteUSBSwRoot.sys 2016-11-18 02:59 - 2016-09-01 13:24 - 00086544 _____ (Focusrite Audio Engineering Ltd.) C:\Windows\system32\Drivers\FocusriteUSB.sys 2016-11-18 02:59 - 2016-09-01 13:24 - 00045072 _____ (Focusrite Audio Engineering Ltd.) C:\Windows\system32\Drivers\FocusriteUSBAudio.sys 2016-11-18 02:47 - 2016-11-18 02:47 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf 2016-11-18 02:31 - 2016-11-18 02:31 - 04520336 _____ (Avira Operations GmbH & Co. KG) C:\Users\Yanik\Downloads\avira_de_av_582e56a1046e2__adw.exe 2016-11-18 02:18 - 2016-11-28 23:42 - 00000653 _____ C:\DelFix.txt 2016-11-18 02:18 - 2016-11-18 02:18 - 00000000 ____D C:\Windows\ERUNT 2016-11-18 01:11 - 2016-11-18 01:11 - 00000207 _____ C:\Windows\tweaking.com-regbackup-YANIK-PC-Windows-7-Home-Premium-(64-bit).dat 2016-11-18 00:36 - 2016-11-18 00:36 - 00003654 _____ C:\Windows\System32\Tasks\Tweaking.com - Windows Repair Tray Icon 2016-11-18 00:36 - 2016-11-18 00:36 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tweaking.com 2016-11-18 00:00 - 2016-11-18 02:14 - 00000000 ____D C:\Windows\erdnt 2016-11-17 20:50 - 2016-11-17 23:33 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2016-11-17 20:47 - 2016-12-05 16:18 - 00000000 ____D C:\Users\Yanik\Desktop\Anti Vir 2016-11-17 20:11 - 2016-11-27 18:53 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-11-17 20:11 - 2016-11-17 23:33 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-11-17 20:11 - 2016-11-17 20:11 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-11-17 20:11 - 2016-11-17 20:11 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-11-17 20:11 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-11-17 20:11 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-11-17 19:44 - 2015-07-16 20:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2016-11-17 19:44 - 2015-07-16 20:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2016-11-17 19:44 - 2015-07-16 20:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2016-11-17 19:44 - 2015-07-16 20:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2016-11-17 19:44 - 2015-07-11 14:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2016-11-17 03:34 - 2016-11-17 03:34 - 00000000 ____D C:\Windows\Options 2016-11-17 03:34 - 2010-01-29 10:06 - 00052790 _____ C:\Windows\system32\athrextx.cat 2016-11-17 03:34 - 2010-01-27 17:25 - 01584640 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys 2016-11-17 03:34 - 2010-01-27 17:25 - 01584640 _____ (Atheros Communications, Inc.) C:\Windows\system32\athrx.sys 2016-11-17 01:48 - 2011-09-29 17:30 - 00646248 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2016-11-17 01:48 - 2011-09-29 17:30 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2016-11-17 01:46 - 2016-11-17 01:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2016-11-17 01:46 - 2011-09-16 15:12 - 00032360 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtVlan620.sys 2016-11-17 01:46 - 2011-06-15 21:11 - 00048416 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtTeam60.sys 2016-11-17 01:46 - 2011-06-15 21:11 - 00032544 _____ (Realtek ) C:\Windows\system32\Drivers\RtNdPt60.sys 2016-11-16 22:08 - 2016-11-16 22:08 - 00714448 _____ C:\Windows\is-TJBLS.exe 2016-11-16 22:08 - 2016-11-16 22:08 - 00011397 _____ C:\Windows\is-TJBLS.msg 2016-11-16 22:08 - 2016-11-16 22:08 - 00000331 _____ C:\Windows\is-TJBLS.lst 2016-11-16 17:01 - 2016-11-17 20:47 - 00000000 ____D C:\Users\Yanik\Desktop\treiber 2016-11-15 21:43 - 2016-11-15 21:46 - 27213252 _____ C:\Users\Yanik\Documents\shuffle.mp4 2016-11-15 03:51 - 2016-11-15 03:51 - 00431704 _____ C:\Users\Yanik\Downloads\MatheWiwi Kapitel 2.pdf 2016-11-15 03:51 - 2016-11-15 03:51 - 00422816 _____ C:\Users\Yanik\Downloads\KU_MatheWiwi2016 Kapitel 5.pdf 2016-11-15 03:51 - 2016-11-15 03:51 - 00392825 _____ C:\Users\Yanik\Downloads\KU_MatheWiwi2016 Kapitel 8.pdf 2016-11-15 03:50 - 2016-11-15 03:50 - 00116560 _____ C:\Users\Yanik\Downloads\MatheWiwi2016_blatt03.pdf 2016-11-15 03:50 - 2016-11-15 03:50 - 00112148 _____ C:\Users\Yanik\Downloads\MatheWiwi2016_blatt02.pdf 2016-11-14 23:17 - 2016-11-14 23:17 - 24619920 _____ C:\Users\Yanik\Desktop\BRAMMINÖS vox.wav 2016-11-14 22:21 - 2016-11-14 22:24 - 28918575 _____ C:\Users\Yanik\Documents\Heat Droppin.mp4 2016-11-14 19:28 - 2016-11-16 02:58 - 12139270 _____ C:\Users\Yanik\Desktop\Steady test.mp4 2016-11-14 16:16 - 2016-11-14 16:31 - 01013984 _____ C:\Windows\PE_File.dll 2016-11-14 16:16 - 2014-05-20 10:03 - 04194304 _____ C:\Users\Yanik\Downloads\P8H67-ASUS-3801.ROM 2016-11-14 16:15 - 2016-11-14 16:31 - 00948448 _____ C:\Windows\PE_Rom.dll 2016-11-14 16:14 - 2016-11-16 18:09 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2016-11-14 16:13 - 2016-11-14 16:13 - 00000000 ____D C:\ProgramData\ASUS OC Profiles 2016-11-14 16:13 - 2011-12-13 18:27 - 04718952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2016-11-14 16:13 - 2011-12-13 16:58 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2016-11-14 16:13 - 2011-12-13 16:25 - 00200468 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2016-11-14 16:13 - 2011-12-12 17:20 - 00100456 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2016-11-14 16:13 - 2011-12-09 16:42 - 02684416 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2016-11-14 16:13 - 2011-12-08 17:28 - 01969768 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2016-11-14 16:13 - 2011-12-08 16:27 - 03744872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2016-11-14 16:13 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2016-11-14 16:13 - 2011-11-22 11:36 - 02615400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2016-11-14 16:13 - 2011-11-18 16:40 - 00219752 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2016-11-14 16:13 - 2011-10-18 13:55 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2016-11-14 16:13 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2016-11-14 16:13 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00527872 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00515584 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2016-11-14 16:13 - 2011-08-06 01:29 - 00439808 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2016-11-14 16:13 - 2011-07-28 00:55 - 02604376 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll 2016-11-14 16:13 - 2011-07-28 00:55 - 02132824 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2016-11-14 16:13 - 2011-07-22 19:35 - 01247848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2016-11-14 16:13 - 2011-07-08 14:34 - 00065432 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2016-11-14 16:13 - 2011-06-27 14:45 - 03768152 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll 2016-11-14 16:13 - 2011-06-14 11:13 - 00177088 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2016-11-14 16:13 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2016-11-14 16:13 - 2011-05-05 15:24 - 02085440 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 03308376 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00426328 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00136024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00118104 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2016-11-14 16:13 - 2011-05-02 14:27 - 00074072 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2016-11-14 16:13 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2016-11-14 16:13 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2016-11-14 16:13 - 2010-11-29 14:36 - 00702808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek2.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2016-11-14 16:13 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2016-11-14 16:13 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2016-11-14 16:13 - 2010-10-03 13:46 - 00341336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2016-11-14 16:13 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2016-11-14 16:13 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2016-11-14 16:13 - 2010-07-22 16:37 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2016-11-14 16:13 - 2010-05-06 17:34 - 00334680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2016-11-14 16:13 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2016-11-14 16:13 - 2009-11-17 18:12 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2016-11-14 15:56 - 2010-08-03 13:21 - 00014464 _____ C:\Windows\SysWOW64\Drivers\AsUpIO.sys 2016-11-14 15:55 - 2008-12-02 20:05 - 00184320 _____ (ASUSTeK) C:\Windows\SysWOW64\Drivers\UpdateHelper.dll 2016-11-14 15:54 - 2008-01-04 13:34 - 00011832 ____N C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys 2016-11-14 15:54 - 2008-01-04 13:34 - 00010216 ____N C:\Windows\SysWOW64\Drivers\AsInsHelp32.sys 2016-11-14 15:53 - 2016-11-14 16:51 - 00000000 ____D C:\Program Files (x86)\ASUS 2016-11-14 15:53 - 2016-11-14 15:54 - 00000000 ____D C:\ProgramData\ASUS 2016-11-14 15:53 - 2014-09-09 03:14 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2016-11-14 15:53 - 2014-09-09 03:14 - 00015232 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys 2016-11-14 15:45 - 2016-11-14 15:45 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll 2016-11-14 15:45 - 2016-11-14 15:45 - 00000000 ____D C:\Windows\Intel_Chipset_XPVistaWin7_V9301019 2016-11-14 15:40 - 2016-11-14 15:40 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3 2016-11-14 15:28 - 2016-11-14 15:28 - 00614480 _____ C:\Users\Yanik\Downloads\408256_intl_x64_zip.exe 2016-11-14 15:19 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2016-11-14 15:19 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2016-11-14 15:19 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2016-11-14 15:19 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2016-11-14 15:19 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2016-11-14 15:19 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2016-11-14 15:19 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2016-11-14 15:19 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2016-11-14 15:19 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2016-11-14 15:19 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2016-11-14 15:13 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2016-11-14 15:13 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys 2016-11-14 15:13 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2016-11-14 15:13 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2016-11-14 15:11 - 2016-11-14 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-11-14 15:10 - 2016-11-14 15:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2016-11-14 15:10 - 2016-11-14 15:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2016-11-14 15:09 - 2015-08-05 18:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2016-11-14 15:09 - 2015-08-05 18:06 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2016-11-14 15:05 - 2015-12-16 19:55 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdgeoqw.dll 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZEL.DLL 2016-11-14 15:05 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZE.DLL 2016-11-14 15:05 - 2015-12-16 19:48 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZE.DLL 2016-11-14 15:05 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdgeoqw.dll 2016-11-14 15:05 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZEL.DLL 2016-11-14 15:05 - 2015-12-16 19:47 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll 2016-11-13 20:15 - 2016-11-13 20:16 - 03123839 _____ C:\Users\Yanik\Downloads\P8H67-ASUS-3801.zip 2016-11-13 03:27 - 2016-11-13 03:27 - 00929768 _____ (Focusrite Audio Engineering Limited. ) C:\Users\Yanik\Downloads\focusrite-usb-2-driver-2.5.1(3).exe 2016-11-13 02:59 - 2016-11-02 16:36 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2016-11-13 02:59 - 2016-11-02 16:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2016-11-13 02:59 - 2016-11-02 16:22 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2016-11-13 02:59 - 2016-11-02 16:16 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2016-11-13 02:59 - 2016-11-02 15:53 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2016-11-13 02:59 - 2016-10-28 04:59 - 00394440 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-11-13 02:59 - 2016-10-28 04:14 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-11-13 02:59 - 2016-10-27 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-11-13 02:59 - 2016-10-27 20:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-11-13 02:59 - 2016-10-27 19:55 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-11-13 02:59 - 2016-10-27 19:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-11-13 02:59 - 2016-10-27 19:54 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-11-13 02:59 - 2016-10-27 19:53 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-11-13 02:59 - 2016-10-27 19:53 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-11-13 02:59 - 2016-10-27 19:51 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-11-13 02:59 - 2016-10-27 19:44 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-11-13 02:59 - 2016-10-27 19:43 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-11-13 02:59 - 2016-10-27 19:38 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-11-13 02:59 - 2016-10-27 19:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-11-13 02:59 - 2016-10-27 19:37 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-11-13 02:59 - 2016-10-27 19:28 - 25763328 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-11-13 02:59 - 2016-10-27 19:28 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-11-13 02:59 - 2016-10-27 19:24 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-11-13 02:59 - 2016-10-27 19:19 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-11-13 02:59 - 2016-10-27 19:15 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-11-13 02:59 - 2016-10-27 19:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-11-13 02:59 - 2016-10-27 19:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-11-13 02:59 - 2016-10-27 19:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-11-13 02:59 - 2016-10-27 19:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-11-13 02:59 - 2016-10-27 19:02 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-11-13 02:59 - 2016-10-27 18:49 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-11-13 02:59 - 2016-10-27 18:46 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-11-13 02:59 - 2016-10-27 18:46 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-11-13 02:59 - 2016-10-27 18:44 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-11-13 02:59 - 2016-10-27 18:44 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-11-13 02:59 - 2016-10-27 18:17 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-11-13 02:59 - 2016-10-27 18:16 - 02920448 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-11-13 02:59 - 2016-10-27 18:03 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-11-13 02:59 - 2016-10-27 17:54 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-11-13 02:59 - 2016-10-27 16:05 - 20304896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-11-13 02:59 - 2016-10-25 16:02 - 03219456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-11-13 02:59 - 2016-10-22 18:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-11-13 02:59 - 2016-10-22 18:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-11-13 02:59 - 2016-10-22 18:36 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-11-13 02:59 - 2016-10-22 18:35 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-11-13 02:59 - 2016-10-22 18:35 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-11-13 02:59 - 2016-10-22 18:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-11-13 02:59 - 2016-10-22 18:27 - 02287616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-11-13 02:59 - 2016-10-22 18:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-11-13 02:59 - 2016-10-22 18:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-11-13 02:59 - 2016-10-22 18:22 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-11-13 02:59 - 2016-10-22 18:21 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-11-13 02:59 - 2016-10-22 18:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-11-13 02:59 - 2016-10-22 18:20 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-11-13 02:59 - 2016-10-22 18:09 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-11-13 02:59 - 2016-10-22 18:04 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-11-13 02:59 - 2016-10-22 18:03 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-11-13 02:59 - 2016-10-22 17:59 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-11-13 02:59 - 2016-10-22 17:58 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-11-13 02:59 - 2016-10-22 17:56 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-11-13 02:59 - 2016-10-22 17:54 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-11-13 02:59 - 2016-10-22 17:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-11-13 02:59 - 2016-10-22 17:45 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-11-13 02:59 - 2016-10-22 17:44 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-11-13 02:59 - 2016-10-22 17:43 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-11-13 02:59 - 2016-10-22 17:43 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-11-13 02:59 - 2016-10-22 17:30 - 13654016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-11-13 02:59 - 2016-10-22 17:12 - 02444800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-11-13 02:59 - 2016-10-22 17:09 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-11-13 02:59 - 2016-10-22 17:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-11-13 02:59 - 2016-10-15 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2016-11-13 02:59 - 2016-10-15 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2016-11-13 02:59 - 2016-10-15 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2016-11-13 02:59 - 2016-10-15 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2016-11-13 02:59 - 2016-10-11 16:37 - 00370920 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2016-11-13 02:59 - 2016-10-11 16:31 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2016-11-13 02:59 - 2016-10-11 16:31 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2016-11-13 02:59 - 2016-10-11 16:31 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2016-11-13 02:59 - 2016-10-11 16:31 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2016-11-13 02:59 - 2016-10-11 16:31 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime 2016-11-13 02:59 - 2016-10-11 16:31 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME 2016-11-13 02:59 - 2016-10-11 16:18 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2016-11-13 02:59 - 2016-10-11 16:18 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2016-11-13 02:59 - 2016-10-11 16:18 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2016-11-13 02:59 - 2016-10-11 16:18 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime 2016-11-13 02:59 - 2016-10-11 16:18 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime 2016-11-13 02:59 - 2016-10-11 14:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2016-11-13 02:59 - 2016-10-11 14:06 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2016-11-13 02:59 - 2016-10-10 16:38 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-11-13 02:59 - 2016-10-10 16:38 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-11-13 02:59 - 2016-10-10 16:34 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-11-13 02:59 - 2016-10-10 16:34 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 01462272 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-11-13 02:59 - 2016-10-10 16:33 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-11-13 02:59 - 2016-10-10 16:16 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-11-13 02:59 - 2016-10-10 16:02 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-11-13 02:59 - 2016-10-10 15:56 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-11-13 02:59 - 2016-10-10 15:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-11-13 02:59 - 2016-10-10 15:54 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-11-13 02:59 - 2016-10-10 15:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-11-13 02:59 - 2016-10-07 16:40 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-11-13 02:59 - 2016-10-07 16:37 - 05547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-11-13 02:59 - 2016-10-07 16:37 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-11-13 02:59 - 2016-10-07 16:35 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 03649536 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00877056 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:18 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-11-13 02:59 - 2016-10-07 16:18 - 03944680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-11-13 02:59 - 2016-10-07 16:15 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 16:04 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2016-11-13 02:59 - 2016-10-07 16:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2016-11-13 02:59 - 2016-10-07 16:04 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2016-11-13 02:59 - 2016-10-07 16:01 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-11-13 02:59 - 2016-10-07 16:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-11-13 02:59 - 2016-10-07 15:56 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-11-13 02:59 - 2016-10-07 15:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-11-13 02:59 - 2016-10-07 15:50 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-11-13 02:59 - 2016-10-07 15:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-11-13 02:59 - 2016-10-07 15:49 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-11-13 02:59 - 2016-10-07 15:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-11-13 02:59 - 2016-10-05 15:54 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2016-11-13 02:59 - 2016-09-15 15:56 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2016-11-13 02:59 - 2016-09-13 16:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2016-11-13 02:59 - 2016-09-13 16:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2016-11-13 02:59 - 2016-09-09 19:20 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2016-11-13 02:59 - 2016-09-09 19:00 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-11-13 02:58 - 2016-10-10 16:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-11-13 02:58 - 2016-10-10 16:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-11-13 02:58 - 2016-10-07 15:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-11-13 02:58 - 2016-08-22 17:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2016-11-13 01:51 - 2016-11-13 01:51 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_FocusriteUSB_01011.Wdf 2016-11-13 01:36 - 2016-11-13 01:37 - 05145720 _____ (Focusrite Audio Engineering Ltd. ) C:\Users\Yanik\Downloads\focusriteusbinstaller_4.exe 2016-11-12 00:34 - 2016-11-12 00:46 - 43281888 _____ C:\Users\Yanik\Documents\rrraaaah.mp4 2016-11-10 20:58 - 2016-11-10 21:00 - 11174518 _____ C:\Users\Yanik\Downloads\paccbetno808.wav 2016-11-10 20:58 - 2016-11-10 21:00 - 10927342 _____ C:\Users\Yanik\Downloads\ccbetnodrums.wav 2016-11-10 20:42 - 2016-11-10 20:44 - 08443162 _____ C:\Users\Yanik\Downloads\paccbet1.wav 2016-11-10 04:14 - 2016-11-10 04:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2016-11-08 21:21 - 2016-11-08 21:41 - 00000205 _____ C:\Users\Yanik\Desktop\Gutscheine.txt 2016-11-07 18:53 - 2016-11-07 18:58 - 54258693 _____ C:\Users\Yanik\Downloads\Basma4 - Russisches Piva (Beat by LEN Arts).mp4 ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-05 15:48 - 2012-07-10 07:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-12-05 15:29 - 2013-09-15 19:28 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-12-05 14:31 - 2009-07-14 05:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-12-05 14:31 - 2009-07-14 05:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-12-05 14:27 - 2011-04-12 08:43 - 00645116 _____ C:\Windows\system32\perfh007.dat 2016-12-05 14:27 - 2011-04-12 08:43 - 00130686 _____ C:\Windows\system32\perfc007.dat 2016-12-05 14:27 - 2009-07-14 06:13 - 01516610 _____ C:\Windows\system32\PerfStringBackup.INI 2016-12-05 14:27 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-12-05 14:23 - 2014-09-04 21:47 - 00065536 _____ C:\Windows\system32\Ikeext.etl 2016-12-05 14:23 - 2013-09-15 19:28 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-12-05 14:23 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-12-05 14:22 - 2013-08-08 13:11 - 00000000 ____D C:\Program Files (x86)\Avira 2016-12-05 14:18 - 2014-08-07 11:15 - 00000000 ____D C:\ProgramData\Package Cache 2016-12-05 14:18 - 2013-08-08 13:16 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Avira 2016-12-05 14:18 - 2013-08-08 13:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-12-05 14:18 - 2013-08-08 13:11 - 00000000 ____D C:\ProgramData\Avira 2016-12-05 02:39 - 2011-10-15 18:33 - 00000000 ____D C:\Program Files (x86)\Steam 2016-12-05 02:28 - 2012-09-01 00:11 - 00000000 ____D C:\Users\Yanik\AppData\Local\Apps\2.0 2016-12-05 02:00 - 2014-08-30 16:33 - 00000000 ____D C:\Users\Yanik\AppData\Local\Adobe 2016-12-05 01:41 - 2013-11-27 19:36 - 00000928 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA.job 2016-12-05 00:55 - 2011-10-21 22:21 - 00000000 ____D C:\Users\Yanik\AppData\Local\CrashDumps 2016-12-03 21:57 - 2013-03-30 16:53 - 00000000 ____D C:\Users\Yanik\Desktop\Ultra 2016-12-03 19:41 - 2013-11-27 19:36 - 00000906 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core.job 2016-12-02 01:57 - 2014-10-07 12:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-12-01 02:38 - 2012-04-08 15:10 - 00274944 ___SH C:\Users\Yanik\Desktop\Thumbs.db 2016-12-01 02:32 - 2016-10-01 02:47 - 00000000 ____D C:\Users\Yanik\AppData\Local\LooksBuilder 2016-11-30 22:37 - 2016-11-04 06:32 - 00000000 ____D C:\Users\Yanik\Desktop\Ablehnung 2016-11-29 18:49 - 2013-06-22 15:54 - 00000000 ____D C:\Users\Yanik\Desktop\3xOsc 2016-11-27 19:33 - 2012-06-02 15:57 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\TS3Client 2016-11-27 19:33 - 2011-10-19 21:04 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\TeamViewer 2016-11-27 19:28 - 2011-12-23 16:15 - 00000000 ____D C:\Windows\Minidump 2016-11-24 22:54 - 2016-02-28 14:32 - 00000000 ____D C:\Program Files\SonyVegas13 2016-11-23 00:42 - 2013-01-22 23:58 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-11-23 00:42 - 2013-01-22 23:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-11-23 00:28 - 2012-09-26 21:49 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2016-11-22 23:19 - 2015-03-24 21:01 - 00000000 ____D C:\Program Files\iTunes 2016-11-22 23:19 - 2014-10-10 17:09 - 00000000 ____D C:\Program Files\Common Files\Apple 2016-11-22 23:18 - 2014-10-10 17:09 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-11-22 22:16 - 2015-03-24 21:01 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2016-11-22 03:44 - 2011-10-15 17:47 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Adobe 2016-11-19 22:19 - 2011-10-15 09:49 - 00000000 ____D C:\Users\Yanik\AppData\Local\VirtualStore 2016-11-19 17:55 - 2012-07-10 07:31 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-11-19 17:55 - 2012-04-24 07:26 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-11-19 17:55 - 2011-10-15 17:47 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-11-19 17:55 - 2011-10-15 17:47 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2016-11-19 17:55 - 2011-10-15 17:47 - 00000000 ____D C:\Windows\system32\Macromed 2016-11-18 19:41 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2016-11-18 02:56 - 2011-10-21 21:59 - 00000000 ____D C:\Program Files (x86)\Image-Line 2016-11-18 02:49 - 2014-10-29 12:34 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2016-11-18 02:21 - 2011-11-26 18:11 - 00000000 ____D C:\Program Files (x86)\VstPlugins 2016-11-18 01:39 - 2011-10-15 10:38 - 00072440 _____ C:\Users\Yanik\AppData\Local\GDIPFONTCACHEV1.DAT 2016-11-18 01:37 - 2009-07-14 05:45 - 04940184 _____ C:\Windows\system32\FNTCACHE.DAT 2016-11-18 01:32 - 2016-04-15 22:12 - 00000000 ____D C:\Users\Yanik\Downloads\STRASILO 2016-11-18 01:32 - 2011-10-31 14:23 - 00000000 ____D C:\Users\Yanik\Desktop\Zeugs 2016-11-18 01:32 - 2009-07-14 03:34 - 00000570 _____ C:\Windows\win.ini 2016-11-18 00:17 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2016-11-18 00:17 - 2009-07-14 03:34 - 00000027 _____ C:\Windows\system32\Drivers\etc\hosts_bak_242 2016-11-17 22:00 - 2012-05-01 21:00 - 00000000 ____D C:\Users\Yanik\Desktop\Anwendungen 2016-11-17 03:34 - 2011-10-15 09:58 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-11-17 03:26 - 2011-10-15 10:28 - 00000000 ____D C:\ProgramData\TP-LINK 2016-11-17 01:48 - 2011-10-15 09:58 - 00000000 ____D C:\Program Files (x86)\Realtek 2016-11-17 01:45 - 2011-10-31 22:38 - 00000000 ____D C:\Users\Yanik\AppData\Local\ElevatedDiagnostics 2016-11-17 01:44 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration 2016-11-17 01:22 - 2011-11-27 16:02 - 00000000 ____D C:\Users\Yanik\AppData\Local\Akamai 2016-11-17 01:22 - 2011-10-15 09:49 - 00000000 ____D C:\Users\Yanik 2016-11-16 18:10 - 2016-11-01 06:51 - 00000000 ____D C:\Users\Yanik\AppData\Local\AutoTonic 2016-11-16 18:10 - 2016-06-09 13:49 - 00000000 ____D C:\ProgramData\HP 2016-11-16 18:10 - 2012-07-22 21:49 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Audacity 2016-11-14 17:05 - 2011-11-28 10:33 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2016-11-14 17:05 - 2011-11-28 10:33 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2 2016-11-14 16:40 - 2012-01-09 00:58 - 00000000 ____D C:\Windows\pss 2016-11-14 16:14 - 2011-10-15 09:58 - 00000000 ___HD C:\Program Files (x86)\Temp 2016-11-14 16:02 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2016-11-14 16:00 - 2011-10-15 09:54 - 00000000 ____D C:\Program Files (x86)\Intel 2016-11-14 15:44 - 2011-10-15 09:52 - 00001769 _____ C:\Windows\Language_trs.ini 2016-11-14 15:16 - 2014-02-25 03:05 - 01594028 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-11-13 03:01 - 2013-08-15 01:25 - 00000000 ____D C:\Windows\system32\MRT 2016-11-13 02:42 - 2011-12-27 21:02 - 141011376 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-11-13 02:26 - 2015-03-24 20:55 - 00000000 ____D C:\Program Files (x86)\QuickTime 2016-11-13 02:26 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\servicing 2016-11-13 02:26 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-11-10 04:27 - 2011-11-08 16:19 - 00000000 ____D C:\Users\Yanik\AppData\Roaming\Apple Computer 2016-11-07 16:45 - 2015-01-13 16:13 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2011-10-21 19:40 - 2011-10-21 19:40 - 0000443 ____H () C:\Program Files\U_AVA_Setup.exe.bfi 2011-10-21 19:40 - 2011-10-21 19:40 - 0000052 ____H () C:\Program Files\U_AVA_Setup.exe_neobit.fsi 2012-02-20 17:20 - 2012-02-20 17:20 - 0000187 ____H () C:\Program Files (x86)\0x0409.ini.bfi 2016-11-23 00:41 - 2016-05-21 12:36 - 0192000 _____ (Igor Pavlov) C:\Program Files (x86)\7zxa.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0211456 _____ (Aureal Semiconductor) C:\Program Files (x86)\a3dapi.dll 2016-11-23 00:41 - 2016-08-14 23:16 - 0102288 _____ () C:\Program Files (x86)\Ace32Loader.exe 2015-02-02 01:27 - 2011-03-16 14:09 - 0258106 _____ () C:\Program Files (x86)\Core.dll 2015-02-02 01:27 - 2012-04-29 20:25 - 0000077 _____ () C:\Program Files (x86)\Counter-Strike WaRzOnE.bat 2015-02-02 01:27 - 2012-03-04 19:04 - 0294496 _____ (Valve Corporation) C:\Program Files (x86)\crashhandler.dll 2015-02-02 01:27 - 2012-03-04 19:25 - 0000073 _____ () C:\Program Files (x86)\CS Dedicated Server CLI.bat 2015-02-02 01:27 - 2012-05-05 05:40 - 0000035 _____ () C:\Program Files (x86)\CS Dedicated Server GUI.bat 2012-02-20 16:34 - 2012-02-20 16:34 - 0000186 ____H () C:\Program Files (x86)\data1.cab.bfi 2012-02-20 17:20 - 2012-02-20 17:20 - 0000186 ____H () C:\Program Files (x86)\data1.hdr.bfi 2012-02-20 16:34 - 2012-02-20 17:00 - 0000313 ____H () C:\Program Files (x86)\data2.cab.bfi 2012-02-20 17:00 - 2012-02-20 17:19 - 0000313 ____H () C:\Program Files (x86)\data3.cab.bfi 2012-02-20 17:19 - 2012-02-20 17:20 - 0000198 ____H () C:\Program Files (x86)\data4.cab.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0069632 _____ () C:\Program Files (x86)\dbg.dll 2013-01-22 20:12 - 2016-08-16 17:05 - 0260096 _____ () C:\Program Files (x86)\Default.SFX 2013-01-22 20:12 - 2016-08-16 17:05 - 0315856 _____ () C:\Program Files (x86)\Default64.SFX 2015-02-02 01:27 - 2011-03-16 14:09 - 0090112 _____ () C:\Program Files (x86)\DemoPlayer.dll 2013-01-22 20:12 - 2016-08-16 17:05 - 0001333 _____ () C:\Program Files (x86)\Descript.ion 2015-02-02 01:27 - 2011-03-08 12:25 - 0118872 _____ () C:\Program Files (x86)\FileSystem_Stdio.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0122974 _____ () C:\Program Files (x86)\FileSystem_Steam.dll 2013-01-22 20:12 - 2012-06-14 17:35 - 0000616 _____ () C:\Program Files (x86)\File_Id.diz 2015-02-02 01:27 - 2012-04-08 13:16 - 0407336 _____ (Valve) C:\Program Files (x86)\hlds.exe 2015-02-02 01:27 - 2011-03-16 14:09 - 0024705 _____ () C:\Program Files (x86)\HLTV-Readme.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0001569 _____ () C:\Program Files (x86)\hltv.cfg 2015-02-02 01:27 - 2011-03-16 14:09 - 0221184 _____ (Valve) C:\Program Files (x86)\hltv.exe 2015-02-02 01:27 - 2010-01-23 18:48 - 1840440 _____ () C:\Program Files (x86)\hw.dll 2015-02-02 01:27 - 2013-03-11 05:27 - 0070656 _____ () C:\Program Files (x86)\hwpatcher.dll 2012-02-20 17:20 - 2012-02-20 17:20 - 0000188 ____H () C:\Program Files (x86)\ISSetup.dll.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0000063 _____ () C:\Program Files (x86)\language.inf 2012-02-20 17:20 - 2012-02-20 17:20 - 0000187 ____H () C:\Program Files (x86)\layout.bin.bfi 2013-01-22 20:12 - 2016-08-16 17:05 - 0015805 _____ () C:\Program Files (x86)\License.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0125952 _____ () C:\Program Files (x86)\Mp3dec.asi 2015-02-02 01:27 - 2011-03-16 14:09 - 0351744 _____ () C:\Program Files (x86)\Mss32.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0142848 _____ () C:\Program Files (x86)\Mssv12.asi 2015-02-02 01:27 - 2011-03-16 14:09 - 0161792 _____ () C:\Program Files (x86)\Mssv29.asi 2015-02-02 01:27 - 2011-06-10 21:58 - 0773968 _____ (Microsoft Corporation) C:\Program Files (x86)\msvcr100.dll 2013-01-22 20:12 - 2016-08-17 07:51 - 0004016 _____ () C:\Program Files (x86)\Order.htm 2015-02-02 01:27 - 2011-03-08 12:25 - 0254012 _____ () C:\Program Files (x86)\proxy.dll 2013-01-22 23:58 - 2016-08-14 23:16 - 0597392 _____ (Alexander Roshal) C:\Program Files (x86)\Rar.exe 2013-01-22 23:58 - 2016-08-16 17:05 - 0041034 _____ () C:\Program Files (x86)\rar.lng 2013-01-22 20:12 - 2016-08-16 17:05 - 0134249 _____ () C:\Program Files (x86)\Rar.txt 2013-01-21 15:43 - 2016-08-14 23:16 - 0437136 _____ (Alexander Roshal) C:\Program Files (x86)\RarExt.dll 2013-01-22 23:58 - 2016-08-16 17:05 - 0003646 _____ () C:\Program Files (x86)\rarext.lng 2013-01-22 23:58 - 2016-08-14 23:16 - 0368016 _____ (Alexander Roshal) C:\Program Files (x86)\RarExt32.dll 2013-01-22 20:12 - 2016-08-16 17:05 - 0001400 _____ () C:\Program Files (x86)\RarFiles.lst 2013-01-22 20:12 - 2013-01-22 20:12 - 0000020 _____ () C:\Program Files (x86)\rarnew.dat 2013-01-22 20:12 - 2011-05-30 20:01 - 0000469 _____ () C:\Program Files (x86)\rarreg.key 2016-11-23 00:41 - 2016-08-16 17:05 - 0001777 _____ () C:\Program Files (x86)\ReadMe.txt 2015-02-02 01:27 - 2013-03-14 15:21 - 0002361 _____ () C:\Program Files (x86)\release.txt 2015-02-02 01:27 - 2012-04-28 13:52 - 0004061 _____ () C:\Program Files (x86)\rev.ini 2015-02-02 01:27 - 2012-04-28 13:09 - 0147456 _____ () C:\Program Files (x86)\revSrvBrowser.dll 2012-02-20 17:20 - 2012-02-20 17:21 - 0000186 ____H () C:\Program Files (x86)\setup.ini.bfi 2012-02-20 17:21 - 2012-02-20 17:21 - 0000186 ____H () C:\Program Files (x86)\setup.inx.bfi 2015-02-02 01:27 - 2009-05-17 08:38 - 0329728 _____ (Valve Corporation) C:\Program Files (x86)\Steam.dll 2015-02-02 01:27 - 2012-04-30 09:41 - 0392704 _____ () C:\Program Files (x86)\steamclient.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 3377648 _____ (Valve Corporation) C:\Program Files (x86)\steamclient_orig.dll 2015-02-02 20:05 - 2015-02-02 20:05 - 0335316 _____ () C:\Program Files (x86)\Steam_2015_02_02__19_05_58_646.mdmp 2015-02-02 01:27 - 2011-03-16 14:09 - 0067072 _____ (Valve Corporation) C:\Program Files (x86)\steam_api.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0070144 _____ (Valve Corporation) C:\Program Files (x86)\steam_api_c.dll 2015-02-02 01:27 - 2011-03-16 14:12 - 0000002 _____ () C:\Program Files (x86)\steam_appid.txt 2015-02-02 01:27 - 2009-08-29 18:12 - 2888976 _____ (Valve Corporation) C:\Program Files (x86)\Steam_orig.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 1672504 _____ () C:\Program Files (x86)\sw.dll 2015-02-02 01:27 - 2012-02-22 11:15 - 1668968 _____ () C:\Program Files (x86)\swds.dll 2013-01-22 20:12 - 2012-02-26 18:25 - 0009234 _____ () C:\Program Files (x86)\TechNote.txt 2015-02-02 01:27 - 2011-03-16 14:09 - 0344064 _____ () C:\Program Files (x86)\tier0.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 0275704 _____ (Valve Corporation) C:\Program Files (x86)\tier0_s.dll 2016-11-23 00:41 - 2005-08-26 00:50 - 0077312 _____ () C:\Program Files (x86)\UNACEV2.DLL 2016-11-23 00:41 - 2016-08-17 07:53 - 0236944 _____ (Alexander Roshal) C:\Program Files (x86)\Uninstall.exe 2013-01-22 23:58 - 2016-08-16 17:05 - 0008582 _____ () C:\Program Files (x86)\uninstall.lng 2013-01-22 20:12 - 2016-08-14 23:16 - 0000443 _____ () C:\Program Files (x86)\Uninstall.lst 2013-01-22 23:58 - 2016-08-14 23:16 - 0401808 _____ (Alexander Roshal) C:\Program Files (x86)\UnRAR.exe 2015-02-02 01:27 - 2010-01-23 18:37 - 0002560 _____ () C:\Program Files (x86)\upatch.dll 2012-02-20 17:20 - 2012-02-20 17:20 - 0000192 ____H () C:\Program Files (x86)\U_AVA_SETUP.exe.bfi 2015-02-02 01:27 - 2011-03-16 14:09 - 0352256 _____ () C:\Program Files (x86)\vgui.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0245819 _____ () C:\Program Files (x86)\vgui2.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0053248 _____ () C:\Program Files (x86)\voice_miles.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0139264 _____ () C:\Program Files (x86)\voice_speex.dll 2015-02-02 01:27 - 2011-03-16 14:09 - 0340480 _____ (Valve Corporation) C:\Program Files (x86)\vstdlib.dll 2015-02-02 01:27 - 2009-08-29 18:13 - 0402680 _____ (Valve Corporation) C:\Program Files (x86)\vstdlib_s.dll 2013-01-22 20:12 - 2016-08-16 17:05 - 0078774 _____ () C:\Program Files (x86)\WhatsNew.txt 2013-01-22 20:12 - 2016-08-16 17:05 - 0302666 _____ (Alexander Roshal) C:\Program Files (x86)\WinCon.SFX 2013-01-22 20:12 - 2016-08-16 17:05 - 0348234 _____ (Alexander Roshal) C:\Program Files (x86)\WinCon64.SFX 2013-01-22 20:12 - 2016-08-16 17:05 - 0373609 _____ () C:\Program Files (x86)\WinRAR.chm 2016-11-23 00:41 - 2016-08-17 07:56 - 1551248 _____ (Alexander Roshal) C:\Program Files (x86)\WinRAR.exe 2013-01-22 23:58 - 2016-11-04 08:45 - 0107510 _____ () C:\Program Files (x86)\winrar.lng 2013-01-22 20:12 - 2016-08-16 17:05 - 0205312 _____ () C:\Program Files (x86)\Zip.SFX 2013-01-22 20:12 - 2016-08-16 17:05 - 0240592 _____ () C:\Program Files (x86)\Zip64.SFX 2013-01-22 20:12 - 2013-01-22 20:12 - 0000022 _____ () C:\Program Files (x86)\zipnew.dat 2012-01-15 23:41 - 2012-07-21 00:16 - 0065606 _____ () C:\Users\Yanik\AppData\Roaming\Camdata.ini 2012-01-15 23:41 - 2012-07-21 00:16 - 0000408 _____ () C:\Users\Yanik\AppData\Roaming\CamLayout.ini 2012-01-15 23:41 - 2012-07-21 00:16 - 0000408 _____ () C:\Users\Yanik\AppData\Roaming\CamShapes.ini 2012-03-08 09:52 - 2012-07-21 00:16 - 0004416 _____ () C:\Users\Yanik\AppData\Roaming\CamStudio.cfg 2013-01-23 00:40 - 2014-10-13 23:11 - 0007597 _____ () C:\Users\Yanik\AppData\Local\Resmon.ResmonCfg 2016-06-09 13:49 - 2016-06-09 13:55 - 0000824 _____ () C:\ProgramData\hpzinstall.log ZeroAccess: C:\Users\Yanik\AppData\Local\94f6548e C:\Users\Yanik\AppData\Local\94f6548e\@ Einige Dateien in TEMP: ==================== C:\Users\Yanik\AppData\Local\Temp\libeay32.dll C:\Users\Yanik\AppData\Local\Temp\msvcr120.dll C:\Users\Yanik\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-12-05 02:12 ==================== Ende von FRST.txt ============================ |
05.12.2016, 16:28 | #10 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Addition.txt Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-12-2016 durchgeführt von Yanik (05-12-2016 16:21:26) Gestartet von C:\Users\Yanik\Desktop\Anti Vir\FRST\Neueste Logs Windows 7 Home Premium Service Pack 1 (X64) (2011-10-15 08:49:23) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3404717819-833408578-2882030763-500 - Administrator - Disabled) Gast (S-1-5-21-3404717819-833408578-2882030763-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3404717819-833408578-2882030763-1002 - Limited - Enabled) Yanik (S-1-5-21-3404717819-833408578-2882030763-1000 - Administrator - Enabled) => C:\Users\Yanik ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (Version: 6.2.2 - Hewlett-Packard) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe After Effects CS6 (HKLM-x32\...\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: 11 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.4.0.2540 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.3 - Adobe Systems Incorporated) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Premiere Pro CS6 (HKLM-x32\...\{7176B973-6011-43C1-AEBC-2D73FE7C6982}) (Version: 6.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.18) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.18 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.4.634 - Adobe Systems, Inc.) Akamai NetSession Interface (HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\Akamai) (Version: - Akamai Technologies, Inc) AMD Catalyst Install Manager (HKLM\...\{5E03A267-415E-5383-FA8F-3CE4145663B9}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) Antares Auto-Tune 7 VST (HKLM\...\{8E7715AA-E19B-44E8-AE4C-FB5B37B7E2D9}) (Version: 7.05.0002 - Antares Audio Technologies) Antares Auto-Tune Evo VST (HKLM-x32\...\{FFF74EC9-1FF4-4456-99E3-4F05129F4FAB}) (Version: 6.00.0009 - Antares Audio Technologies) Apple Application Support (32-Bit) (HKLM-x32\...\{F2871C89-C8A5-42EE-8D45-0F02506385A6}) (Version: 5.1 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{9BC93467-75D1-4AA4-BD58-D9C51D88DFAB}) (Version: 5.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.14.3.0 - Asmedia Technology) ASUS VGA Driver (x32 Version: 3.0.0.1 - Ihr Firmenname) Hidden ATI AVIVO64 Codecs (Version: 11.6.0.51125 - ATI Technologies Inc.) Hidden AutoTonic (HKLM\...\AutoTonic) (Version: 1.4.212.0 - AutoTonic) bl (x32 Version: 1.0.0 - Your Company Name) Hidden Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Camel Audio CamelCrusher (HKLM-x32\...\Camel Audio CamelCrusher) (Version: 1.01.0 - Camel Audio) CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform) Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Copy (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Counter-Strike: Condition Zero (HKLM-x32\...\Steam App 80) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Destinations (x32 Version: 140.0.77.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden DJ_AIO_06_F2400_SW_Min (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Edirol HQ Orchestral VSTi v1.03 (HKLM-x32\...\Edirol HQ Orchestral VSTi v1.03) (Version: - ) EPSON ME 530 Series Printer Uninstall (HKLM\...\EPSON ME 530 Series) (Version: - SEIKO EPSON Corporation) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) F2400 (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) Focusrite USB 4.12.0.88 (HKLM\...\Focusrite USB_is1) (Version: 4.12.0.88 - Focusrite Audio Engineering Ltd.) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden Hercules Webcam Station Evolution SE (HKLM-x32\...\{C3C44248-B8F7-4B20-A5C7-994870B60F55}) (Version: 4.1.1.2 - Hercules) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet F2400 All-in-One Driver Software 14.0 Rel. 6 (HKLM\...\{819CA3BC-2FF8-4811-B42F-421F7BFD3559}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Support Solutions Framework (HKLM-x32\...\{3A1CB1B8-8646-41A0-B496-35DC48916904}) (Version: 12.5.32.37 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden HydraVision (x32 Version: 4.2.212.0 - Advanced Micro Devices, Inc.) Hidden IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) InterBase 6.5 (HKLM-x32\...\InterBase) (Version: - ) iTunes (HKLM\...\{554C62C7-E6BB-40F1-892B-F0AE02D3C135}) (Version: 12.5.3.17 - Apple Inc.) Java 8 Update 20 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418020F0}) (Version: 8.0.200 - Oracle Corporation) Java SE Development Kit 7 Update 4 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170040}) (Version: 1.7.0.40 - Oracle) JavaFX 2.1.0 (64-bit) (HKLM\...\{1111706F-666A-4037-7777-210648764D10}) (Version: 2.1.0 - Oracle Corporation) JavaFX 2.1.0 SDK (64-bit) (HKLM\...\{2222706F-666A-4037-7777-210648764D10}) (Version: 2.1.0 - Oracle Corporation) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) KORG Legacy Collection - LegacyCell (HKLM-x32\...\{192FBEA6-74FE-4A98-BF52-D9CA40FBE752}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - M1 (HKLM\...\{AA1D88F2-E75B-4FC3-80C6-9E041D7F4B00}) (Version: 1.7.0 - KORG Inc.) KORG Legacy Collection - MDE-X (HKLM-x32\...\{2EDF016E-8A35-451E-97EE-24760118CA11}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - MonoPoly (HKLM\...\{DA31AE51-AB45-4368-9F4E-6AF05176AEE3}) (Version: 1.1.0 - KORG Inc.) KORG Legacy Collection - MS-20 (HKLM-x32\...\{14BC5947-16C2-4E52-AF6C-72DDBF05E307}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - Polysix (HKLM-x32\...\{F18ADD8D-B710-42B2-841E-E525F7EEFEAF}) (Version: 1.3.0 - KORG Inc.) KORG Legacy Collection - WAVESTATION (HKLM\...\{6C2C56CC-9075-491D-9B29-55147B67B892}) (Version: 1.7.0 - KORG Inc.) loopMIDI (HKLM-x32\...\{55c0d955-4cee-452c-b393-d4c020a967d7}) (Version: 1.0.13.24 - Tobias Erichsen) loopMIDI (x32 Version: 1.0.13.24 - Tobias Erichsen) Hidden loopMIDIBlockLegacy (x32 Version: 9.9.9.9 - Tobias Erichsen) Hidden Magic ISO Maker v5.5 (build 0281) (HKLM-x32\...\Magic ISO Maker v5.5 (build 0281)) (Version: - ) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office XP Professional mit FrontPage (HKLM-x32\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Prerequisites (x64) (HKLM\...\{04BEC103-A388-41EE-BB49-1235FAAF883D}) (Version: 11.0.61030 - Blue Cat Audio) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Miroslav Philharmonik (HKLM-x32\...\{BA0D0121-A3BA-487D-9C78-7AB0E676C722}) (Version: 1.1.2 - IK Multimedia) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 50.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 50.0.2 (x86 de)) (Version: 50.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.2.6177 - Mozilla) Mp3tag v2.75 (HKLM-x32\...\Mp3tag) (Version: v2.75 - Florian Heidenreich) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Native Instruments Absynth 5 (HKLM-x32\...\Native Instruments Absynth 5) (Version: - Native Instruments) Native Instruments Alicias Keys (HKLM-x32\...\Native Instruments Alicias Keys) (Version: - Native Instruments) Native Instruments Balinese Gamelan (HKLM-x32\...\Native Instruments Balinese Gamelan) (Version: - Native Instruments) Native Instruments Battery 3 (HKLM-x32\...\Native Instruments Battery 3) (Version: - Native Instruments) Native Instruments Battery Library Importer for Maschine (HKLM-x32\...\Native Instruments Battery Library Importer for Maschine) (Version: - Native Instruments) Native Instruments Berlin Concert Grand (HKLM-x32\...\Native Instruments Berlin Concert Grand) (Version: - Native Instruments) Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: - Native Instruments) Native Instruments Evolve Mutations (HKLM-x32\...\Native Instruments Evolve Mutations) (Version: - Native Instruments) Native Instruments Evolve Mutations 2 (HKLM-x32\...\Native Instruments Evolve Mutations 2) (Version: - Native Instruments) Native Instruments FM8 (HKLM-x32\...\Native Instruments FM8) (Version: - Native Instruments) Native Instruments George Duke Soul Treasures (HKLM-x32\...\Native Instruments George Duke Soul Treasures) (Version: - Native Instruments) Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: - Native Instruments) Native Instruments Guitar Rig Mobile I/O (HKLM-x32\...\Native Instruments Guitar Rig Mobile I/O) (Version: - Native Instruments) Native Instruments Guitar Rig Mobile IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Mobile IO Driver) (Version: - Native Instruments) Native Instruments Guitar Rig Session I/O (HKLM-x32\...\Native Instruments Guitar Rig Session I/O) (Version: - Native Instruments) Native Instruments Guitar Rig Session IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Session IO Driver) (Version: - Native Instruments) Native Instruments Komplete 8 Ultimate (HKLM-x32\...\Native Instruments Komplete 8 Ultimate) (Version: - Native Instruments) Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.5.2.880 - Native Instruments) Native Instruments Kontakt Factory Library (HKLM-x32\...\Native Instruments Kontakt Factory Library) (Version: - Native Instruments) Native Instruments Maschine Drum Selection (HKLM-x32\...\Native Instruments Maschine Drum Selection) (Version: - Native Instruments) Native Instruments Massive (HKLM-x32\...\Native Instruments Massive) (Version: 1.4.0.292 - Native Instruments) Native Instruments Massive Expansion Vol. 1 (HKLM-x32\...\Native Instruments Massive Expansion Vol. 1) (Version: - ) Native Instruments Massive Expansion Vol. 2 (HKLM-x32\...\Native Instruments Massive Expansion Vol. 2) (Version: - ) Native Instruments Monark (HKLM-x32\...\Native Instruments Monark) (Version: - Native Instruments) Native Instruments New York Concert Grand (HKLM-x32\...\Native Instruments New York Concert Grand) (Version: - Native Instruments) Native Instruments Rammfire (HKLM-x32\...\Native Instruments Rammfire) (Version: - Native Instruments) Native Instruments Razor (HKLM-x32\...\Native Instruments Razor) (Version: - Native Instruments) Native Instruments RC 24 (HKLM-x32\...\Native Instruments RC 24) (Version: 1.1.0.394 - Native Instruments) Native Instruments RC 48 (HKLM-x32\...\Native Instruments RC 48) (Version: 1.1.0.394 - Native Instruments) Native Instruments Reaktor 5 (HKLM-x32\...\Native Instruments Reaktor 5) (Version: - Native Instruments) Native Instruments Reaktor Prism (HKLM-x32\...\Native Instruments Reaktor Prism) (Version: - Native Instruments) Native Instruments Reaktor Spark R2 (HKLM-x32\...\Native Instruments Reaktor Spark R2) (Version: - Native Instruments) Native Instruments Reflektor (HKLM-x32\...\Native Instruments Reflektor) (Version: - Native Instruments) Native Instruments Rig Kontrol 3 (HKLM-x32\...\Native Instruments Rig Kontrol 3) (Version: - Native Instruments) Native Instruments Rig Kontrol 3 Driver (HKLM-x32\...\Native Instruments Rig Kontrol 3 Driver) (Version: - Native Instruments) Native Instruments Scarbee Funk Guitarist (HKLM-x32\...\Native Instruments Scarbee Funk Guitarist) (Version: - Native Instruments) Native Instruments Scarbee Jay-Bass (HKLM-x32\...\Native Instruments Scarbee Jay-Bass) (Version: - Native Instruments) Native Instruments Scarbee MM-Bass (HKLM-x32\...\Native Instruments Scarbee MM-Bass) (Version: - Native Instruments) Native Instruments Scarbee MM-Bass Amped (HKLM-x32\...\Native Instruments Scarbee MM-Bass Amped) (Version: - Native Instruments) Native Instruments Scarbee Pre-Bass (HKLM-x32\...\Native Instruments Scarbee Pre-Bass) (Version: - Native Instruments) Native Instruments Scarbee Pre-Bass Amped (HKLM-x32\...\Native Instruments Scarbee Pre-Bass Amped) (Version: - Native Instruments) Native Instruments Scarbee Vintage Keys (HKLM-x32\...\Native Instruments Scarbee Vintage Keys) (Version: - Native Instruments) Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments) Native Instruments Session Strings Pro (HKLM-x32\...\Native Instruments Session Strings Pro) (Version: - Native Instruments) Native Instruments The Finger R2 (HKLM-x32\...\Native Instruments The Finger R2) (Version: - Native Instruments) Native Instruments The Mouth (HKLM-x32\...\Native Instruments The Mouth) (Version: - Native Instruments) Native Instruments Traktors 12 (HKLM-x32\...\Native Instruments Traktors 12) (Version: - Native Instruments) Native Instruments Transient Master (HKLM-x32\...\Native Instruments Transient Master) (Version: - Native Instruments) Native Instruments Upright Piano (HKLM-x32\...\Native Instruments Upright Piano) (Version: - Native Instruments) Native Instruments VC 160 (HKLM-x32\...\Native Instruments VC 160) (Version: - Native Instruments) Native Instruments VC 2A (HKLM-x32\...\Native Instruments VC 2A) (Version: - Native Instruments) Native Instruments VC 76 (HKLM-x32\...\Native Instruments VC 76) (Version: - Native Instruments) Native Instruments Vienna Concert Grand (HKLM-x32\...\Native Instruments Vienna Concert Grand) (Version: - Native Instruments) Native Instruments Vintage Organs (HKLM-x32\...\Native Instruments Vintage Organs) (Version: - Native Instruments) Native Instruments West Africa (HKLM-x32\...\Native Instruments West Africa) (Version: - Native Instruments) NewBlue 3D Explosions for Windows (HKLM-x32\...\NewBlue 3D Explosions for Windows) (Version: 1.4 - NewBlue) NVIDIA PhysX v8.10.17 (HKLM-x32\...\{E4D15328-8C89-484B-B9AA-F5BE9EA6D01C}) (Version: 8.10.17 - NVIDIA Corporation) OpenMG Limited Patch 4.7-07-14-05-01 (HKLM-x32\...\OpenMG HotFix4.7-07-13-22-01) (Version: - ) OpenMG Secure Module 4.7.00 (HKLM-x32\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation) OpenMG Secure Module 4.7.00 (x32 Version: 4.7.00.12140 - Sony Corporation) Hidden OpenOffice.org 3.3 (HKLM-x32\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.3.6.0 - Pando Networks Inc.) PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.1 - pdfforge) ph (x32 Version: 1.0.0 - Your Company Name) Hidden PoiZone (HKLM-x32\...\PoiZone) (Version: - Image-Line bvba) PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 1.00.0000 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6526 - Realtek Semiconductor Corp.) Recorder (HKLM-x32\...\ST6UNST #1) (Version: - ) ReFX Nexus 2.3.4 Update (HKLM-x32\...\{1BB0C126-7F97-4438-B9CD-8954660474CD}) (Version: 2.3.4 - MAX Team) ReFX Nexus 2.3.4 USB-eLicenser Emulator (HKLM-x32\...\{B1F5E26D-F22E-4DE4-994E-50F51BB3327F}) (Version: 2.3.4 - MAX Team) rtpMIDIBlockLegacy (x32 Version: 9.9.9.9 - Tobias Erichsen) Hidden SAMSUNG Intelli-studio (HKLM-x32\...\Intelli-studio) (Version: - ) Sawer (HKLM-x32\...\Sawer) (Version: - Image-Line) Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Sika-Free (HKLM-x32\...\{166B8F62-E0BD-485A-8770-784BA2C235AC}) (Version: 1.5.0 - Human Touch Technology) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden Sonic Foundry Preset Manager 1.0 (HKLM-x32\...\{7266C898-F9CB-4122-9452-2AA1DACE245E}) (Version: 1.0.73 - Sonic Foundry) SonicStage 4.3 (HKLM-x32\...\{A0EB195B-5876-48E6-879D-33D4B2102610}) (Version: 4.3 - Sony Corporation) Sonik Synth 2 (HKLM-x32\...\Sonik Synth 2) (Version: - ) Sony Ericsson Update Engine (HKLM-x32\...\Update Engine) (Version: 2.12.13.28 - Sony Ericsson Communications AB) Sony PC Companion 2.10.188 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.188 - Sony) Status (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Steinberg VST Classics 1 64bit (HKLM\...\{AA322103-FC2B-4D86-BA6C-67D4DDB4209C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synful Orchestra (HKLM\...\{FB51BBEB-2A5F-4DCE-9CF2-E71DA61D90A2}) (Version: 2.5.2 - Synful) Synth1 (HKLM-x32\...\Synth1) (Version: - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.6 - TeamSpeak Systems GmbH) TeamSpeak 3 Client (HKU\S-1-5-21-3404717819-833408578-2882030763-1000\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.66695 - TeamViewer) teVirtualMIDI64 (Version: 1.2.10.38 - Tobias Erichsen) Hidden Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden Toxic Biohazard (HKLM-x32\...\Toxic Biohazard) (Version: - Image-Line bvba) TP-LINK Wireless Client Utility (HKLM-x32\...\{1E58B969-9BB4-4012-8D8B-D06005D1CD24}) (Version: 7.0 - TP-LINK) TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Vegas Pro 13.0 (64-bit) (HKLM\...\{1F8D8040-0BC8-11E5-85C5-F04DA23A5C58}) (Version: 13.0.453 - Sony) Visual C++ 64-bit Redistributables (HKLM-x32\...\InstallShield_{FB03650C-B373-4B20-ACA5-B7BA1A8EEE33}) (Version: 1.1.1.1524 - PACE Anti-Piracy, Inc.) Visual C++ Redistributables (HKLM-x32\...\InstallShield_{F03117FA-9270-46B0-9666-0B4BC2CDEBF5}) (Version: 1.1.1.1524 - PACE Anti-Piracy, Inc.) Waves Mercury Bundle (HKLM-x32\...\Waves Mercury Bundle) (Version: 5.0 - Team AiR) WebReg (x32 Version: 140.0.212.017 - Hewlett-Packard) Hidden Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 1.0.0.0) (HKLM\...\EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 - Texas Instruments Inc.) Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 1.0.0.1) (HKLM\...\7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 - Texas Instruments Inc.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) Windows-Treiberpaket - Focusrite USB 2.0 Audio Driver (09/25/2013 2.5.128.1) (HKLM\...\CF1FC201D237269A9CD51A3A6B14ADBF67175C32) (Version: 09/25/2013 2.5.128.1 - Focusrite) WinRAR 5.40 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) X10 Hardware(TM) (HKLM-x32\...\X10Hardware) (Version: - ) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {003A6885-4EC5-47C7-9296-A04240418BAC} - System32\Tasks\{A21A3340-579E-457E-8055-2254BF309C2C} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {0066CC0E-C2C4-4558-84A2-765087EDE0B4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.) Task: {015FBB19-2E3D-4C26-B657-4A89F13CDB44} - System32\Tasks\{D3AFCEA2-E4BB-46AF-8E8D-7E51BBBF5124} => pcalua.exe -a C:\Users\Yanik\Desktop\flstudio_8.0.exe -d C:\Users\Yanik\Desktop Task: {0DF712EC-4DB0-4526-BAD3-1F8CF910EF9B} - System32\Tasks\{5316EBF1-4C83-4EF4-8314-46B7F209A172} => pcalua.exe -a C:\Users\Yanik\Downloads\mausemu41.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {11980DD9-DA20-439D-B0F0-1864DCFD4DB7} - System32\Tasks\{29158F79-7611-40F9-8E0A-4EF0A70249C7} => pcalua.exe -a C:\Users\Yanik\Downloads\HEXC_v2.8.1.0.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {13210263-874C-46B5-B685-2488524D3147} - System32\Tasks\{4D49754F-ACC1-47C5-927A-183408096F14} => pcalua.exe -a "C:\Users\Yanik\Desktop\JDownload\EW.QL.RA.VSTi.DXi.AU.RTAS.HYBRiD.DVDR.D1\ewql.ra.d01\Ra Setup.exe" -d C:\Users\Yanik\Desktop\JDownload\EW.QL.RA.VSTi.DXi.AU.RTAS.HYBRiD.DVDR.D1\ewql.ra.d01 Task: {1468A753-AC28-4D46-8FC7-8A6D90CFE970} - System32\Tasks\{76CAFB74-DBFF-4A5D-A4C8-952AA96A6C3A} => C:\ijji\ENGLISH\AVA\Binaries\AVA.exe Task: {1DCEA014-5736-4A5B-B067-EE016E9B8808} - System32\Tasks\{D0A9EDE8-EDD6-4FF2-9B0E-1D826A347A23} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {1F6C62B6-44CF-414D-8CB9-F773DED9EE29} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-19] (Adobe Systems Incorporated) Task: {221BD446-3832-40BE-BA41-1F796D453FB9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard) Task: {3EE9CE82-C91D-4C06-8913-E1A2CA6C55BB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {4893E55E-B5AC-4DF8-BC7A-C80DC21EB3F2} - System32\Tasks\{D0B249D2-0B52-48CC-9B2B-650F1CABE45A} => pcalua.exe -a "C:\Users\Yanik\Downloads\Silence of Darkness.exe" -d "C:\Program Files (x86)\Mozilla Firefox" Task: {4A1DEDE8-AAE7-4679-9793-7A5D0E68CE06} - System32\Tasks\{415C7206-FD45-45A9-AE31-29B7AF4C8FCF} => pcalua.exe -a "C:\Users\Yanik\Desktop\Sylenth_Nima_Skin+Lennar.Digital.Sylenth1.VSTi v2.2.1.1 x86\Lennar.Digital.Sylenth1.VSTi.v2.2.1.1.x86\sylenth Setup.exe" -d "C:\Users\Yanik\Desktop\Sylenth_Nima_Skin+Lennar.Digital.Sylenth1.VSTi v2.2.1.1 x86\Lennar.Digital.Sylenth1.VSTi.v2.2.1.1.x86" Task: {4E661CD2-74A6-46A7-A41C-FB1627DF9555} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe Task: {58651FE7-2A39-4953-9022-60520C709F72} - System32\Tasks\{5447B9FA-2056-4CB4-A8B0-0C10B5138441} => pcalua.exe -a "C:\Users\Yanik\Desktop\sheervideo_pro_win_v2_6_4_13\SheerVideo HD Pro 2.6.4.13\Install SheerVideo Pro.exe" -d "C:\Users\Yanik\Desktop\sheervideo_pro_win_v2_6_4_13\SheerVideo HD Pro 2.6.4.13" Task: {5EA408CD-8C54-4E0E-8854-A05023810848} - System32\Tasks\{5B2E60AD-823E-4290-8F26-0DF51751F39A} => pcalua.exe -a C:\Users\Yanik\Downloads\dotnetfx.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {5EF1E478-1E91-41B4-AEDD-5C6A56B1EE8D} - System32\Tasks\{409FE76B-5E9B-4872-8971-72680E9E4D25} => pcalua.exe -a C:\Users\Yanik\Desktop\Delphi_8.msi\setup.exe -d C:\Users\Yanik\Desktop\Delphi_8.msi Task: {6F139614-3DA9-4BCC-83E2-F44429016AC6} - System32\Tasks\Red Giant Link => C:\Program Files (x86)\Red Giant Link\Red Giant Link.exe [2015-12-15] () Task: {6F43FF92-93F3-48DE-8195-419F328C097B} - System32\Tasks\{AE7FADB1-7BF9-4F81-92D7-889B4025EFAD} => pcalua.exe -a C:\Users\Yanik\Downloads\mda_piano.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {726106C0-8879-4843-8F61-758824965B1C} - System32\Tasks\{9B849655-130C-4EC6-8DE3-5D30EEB10134} => pcalua.exe -a C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.03.Update-SKIDROW\splinter_cell_conviction_1.03.exe -d C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.03.Update-SKIDROW Task: {7582B287-C396-4BF3-ACD0-2E4E03CF0EC7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd) Task: {82759235-C9A3-43F0-84BF-5D9CEE0945C4} - System32\Tasks\{C1E5864F-0682-4A3F-824A-DC7841A37D18} => pcalua.exe -a "C:\Users\Yanik\Desktop\Native Instruments Kontakt v3.0.2.004 VSTi RTAS [DYNAMiCS]\NI Kontakt 3.0.2 DYNAMiCS.exe" -d "C:\Users\Yanik\Desktop\Native Instruments Kontakt v3.0.2.004 VSTi RTAS [DYNAMiCS]" Task: {84E5EFC0-7A8A-4978-AE81-67D3179F13DA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {8746E6F1-ACA9-4C2D-BF15-6583F1046A3B} - System32\Tasks\{ADAA1911-1810-4ADB-8AB8-DC554397EE9D} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {8A4BAC12-942B-4CA6-BBAD-ACC4009DF268} - System32\Tasks\{D6C5E1D2-009A-4473-AB2A-701E53B35773} => C:\ijji\ENGLISH\AVA\Binaries\AVA.exe Task: {8E0AF4C7-575E-4DC0-9148-3373835351B8} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-11-27] (Facebook Inc.) Task: {8FB193DE-49D8-4F29-BF5D-CAC701C2F21F} - System32\Tasks\{469E46B3-4D25-45A5-A170-ECE540A835DB} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {94961C4A-8C46-413B-B602-939722271894} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {972B0F66-01C9-4A7B-BFA0-550810F534D9} - System32\Tasks\{50F8E455-8E57-4856-9EBB-F4EEAF26B337} => pcalua.exe -a "C:\Users\Yanik\Desktop\PS1 Emulator\delta201Setup.exe" -d "C:\Users\Yanik\Desktop\PS1 Emulator" Task: {978EB992-935B-4A00-B208-7C74CE8E3C71} - System32\Tasks\{147A41AF-49F8-4BAC-AFD0-42688D09864F} => pcalua.exe -a "C:\Users\Yanik\Desktop\Sonic Ether's Unbelievable Shaders v08 (Windows)\INSTALLER.exe" -d "C:\Users\Yanik\Desktop\Sonic Ether's Unbelievable Shaders v08 (Windows)" Task: {9B3EBD2F-8DE2-4485-AB95-BCFBFF610ED1} - System32\Tasks\{2802E3DF-C263-4ACD-ACB0-D606290E7D99} => pcalua.exe -a C:\Users\Yanik\Desktop\Skyrimnochmal\steambackup2.vmp.EXE -d C:\Users\Yanik\Desktop\Skyrimnochmal Task: {9C1A5785-91D8-424C-919D-31E6F8C52996} - System32\Tasks\{A8ECE7CC-9976-492F-BFEE-C73A729DD547} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {B0FB57E7-265B-4311-8DCC-B9DEB6FB98F3} - System32\Tasks\{B521DC58-814F-43B5-BBED-C0DD9B8BF91B} => pcalua.exe -a "C:\Users\Yanik\Desktop\Neuer Ordner\Install Instruments DVD 1 Win.exe" -d "C:\Users\Yanik\Desktop\Neuer Ordner" Task: {B8C73344-504F-4CFE-A9F4-430A70B44BEB} - System32\Tasks\{653DBCF3-C317-46B2-B155-F0CF610B7931} => pcalua.exe -a C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.02.Update-SKIDROW\splinter_cell_conviction_1.02.exe -d C:\Users\Yanik\Desktop\Tom.Clancys.Splinter.Cell.Conviction.v1.02.Update-SKIDROW Task: {BACD396A-E525-4E9E-9BF6-4AF9AA960458} - System32\Tasks\AdobeAAMUpdater-1.0-Yanik-PC-Yanik => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-12-15] (Adobe Systems Incorporated) Task: {BB181DFE-51EB-4946-896D-922841041D7A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {BF637B51-B756-4582-A898-759E76D5B968} - System32\Tasks\{560B0FF6-65A6-41B1-9136-26814C7681D5} => pcalua.exe -a C:\Users\Yanik\Downloads\superwave_p8.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {CC5BB63E-A7BF-4E53-88B7-53F1B790B5E4} - System32\Tasks\{7A4C65A7-0F65-4F86-ADE6-65994D7B249D} => pcalua.exe -a C:\Users\Yanik\Desktop\Skyrimentpackt\steambackup2.vmp.EXE -d C:\Users\Yanik\Desktop\Skyrimentpackt Task: {CE14BBFA-6A88-4D3C-920D-F26AF81179A6} - System32\Tasks\{5EE0FEFD-725A-474B-A56B-1E64A316C33C} => C:\Program Files (x86)\Bethesda Softworks\RAGE\Rage.exe Task: {DB1AEB85-99D5-4C18-8F78-5B419CD7A2D9} - System32\Tasks\{0FE6474B-36AB-4B46-9826-9CC40FFFBAFB} => pcalua.exe -a "C:\Users\Yanik\Desktop\phila\Install Instruments DVD 2 Win.exe" -d C:\Users\Yanik\Desktop\phila Task: {DB3810BE-1156-4BA6-9962-D10E1FC14B16} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-11-27] (Facebook Inc.) Task: {DC4B0623-427A-4DB0-B28A-886CF5477B4A} - System32\Tasks\{236F8513-C7B0-481C-B123-348EA6F16A9E} => pcalua.exe -a "C:\Users\Yanik\AppData\Local\Temp\Temp1_sheervideo_pro_win_v2_6_4_13.zip\SheerVideo HD Pro 2.6.4.13\Install SheerVideo Pro.exe" <==== ACHTUNG Task: {E752D784-F659-455D-BC33-8D0CE003E07F} - System32\Tasks\{1D761D67-B16B-4535-8E88-040DA93AAB59} => pcalua.exe -a "C:\Program Files\The Elder Scrolls V- Skyrim\VCRedist\vcredist_x86.exe" -d "C:\Program Files\The Elder Scrolls V- Skyrim\VCRedist" Task: {EEAC1AEB-EE84-4FC0-909B-09B22F8C0AFE} - System32\Tasks\{8C82936D-55A2-482D-880B-E400F2629D2B} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe Task: {F0ACAF63-1717-4B54-A23F-9671332B2303} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {F30C8233-FBE3-4735-8437-684E7D3C1523} - System32\Tasks\{920E4AAC-582C-40F4-8E72-166554868ADB} => C:\Users\Yanik\Desktop\Microsoft Office\Office10\POWERPNT.EXE Task: {FB42B57F-A35B-47C0-80E4-0C85ED1F7D4F} - System32\Tasks\{7FBD9C99-80B1-4EBA-99F9-2A379DB4EEE0} => C:\Users\Yanik\Desktop\ps3sixaxis_en.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000Core.job => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3404717819-833408578-2882030763-1000UA.job => C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Yanik\Desktop\Zeugs\Ordner\Minecraft.lnk -> C:\Users\Yanik\Desktop\Zeugs\Ordner\Minecraft.bat () Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Image-Line website.lnk -> hxxp://www.image-line.com/ Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Advanced\Diagnostic.lnk -> hxxp://www.image-line.com/diagnostic Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Additional\Download Deckadance.lnk -> hxxp://www.deckadance.com/ Shortcut: C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 10\Additional\SynthMaker website.lnk -> hxxp://www.synthmaker.co.uk/ ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-06-22 04:24 - 2015-06-22 04:24 - 00022528 _____ () C:\Windows\System32\us005lm.dll 2016-10-26 07:48 - 2016-10-26 07:48 - 00031256 _____ () C:\Windows\System32\us008lm.dll 2016-10-05 18:17 - 2016-10-05 18:17 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-10-05 18:17 - 2016-10-05 18:17 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-11-14 15:54 - 2011-10-29 09:59 - 00918448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe 2016-02-12 22:13 - 2016-02-12 22:13 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2016-11-14 15:55 - 2010-10-21 17:52 - 00586880 _____ () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe 2016-11-14 15:54 - 2016-12-05 14:23 - 00021504 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\PEbiosinterface32.dll 2016-11-14 15:54 - 2010-06-29 10:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.18\ATKEX.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2015-06-10 18:17 - 2016-03-17 02:54 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Microsoft:3mBd74apbUTqThYg6h6oUxa [2382] AlternateDataStreams: C:\ProgramData\Microsoft:e9gz6kgJgqGPDKXWMOdonQ0x [2404] AlternateDataStreams: C:\ProgramData\Microsoft:eNUdzatygwW9dMtBE [1996] AlternateDataStreams: C:\ProgramData\Microsoft:jAt7Svpft1cs5yITVuCn7FizEG [2416] AlternateDataStreams: C:\ProgramData\Microsoft:Kg7hng1GFtWEpn57EjHfXNNmvqb [2100] AlternateDataStreams: C:\ProgramData\Microsoft:KP8wHCUH7mYO3lUbZrBUHy98 [2324] AlternateDataStreams: C:\ProgramData\TEMP:CB0AACC9 [140] AlternateDataStreams: C:\Users\Yanik\AppData\Local\QJiqR1hXGT:ChFTiQIBLE1GT5iTEQcE [2094] AlternateDataStreams: C:\Users\Yanik\AppData\Local\Temp:UL5fG7khxuQnmW3K0KZg3Hy [2308] AlternateDataStreams: C:\Users\Yanik\AppData\Local\Temporary Internet Files:QCYdRRn0ziMGFMUv99IKE [2482] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Software\Classes\regfile: regedit.exe "%1" <===== ACHTUNG ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2016-11-18 01:32 - 00000855 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3404717819-833408578-2882030763-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Yanik\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk => C:\Windows\pss\Microsoft Office.lnk.CommonStartup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: AutoTonic => C:\Program Files (x86)\AutoTonic\bin\AutoTonic.exe MSCONFIG\startupreg: CamserviceExchange => C:\Program Files (x86)\Hercules\Dualpix Exchange\XtrCtrlEx.exe /startup MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Connectify Dispatch => C:\Program Files (x86)\Connectify\DispatchUI.exe autorun MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: EPSON ME 530 Series => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHKC.EXE /FU "C:\Users\Yanik\AppData\Local\Temp\E_SB0F7.tmp" /EF "HKCU" MSCONFIG\startupreg: Facebook Update => "C:\Users\Yanik\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Sony PC Companion => "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{70206243-DF5F-410A-A7FC-E0189A865687}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{7DDC1A1B-82AC-48F8-B097-09F7B3337D5F}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{240A89AB-D29E-46C3-942D-8B038A7AF5BA}] => C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{F1F31C11-9888-4162-866D-D87968569B97}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{4D98C0FC-A2D2-41BA-AC17-4C70AFB4488C}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{814B8AAA-A677-487B-B936-234E15BE878D}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{20703129-F930-45B1-9437-22D98DA81884}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{CC7E80CF-38E1-4D9F-B329-D12B7DBB2315}] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [TCP Query User{318E9459-139A-4B2B-B21F-AE968C34DDFB}C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe] => C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe FirewallRules: [UDP Query User{F58401FC-173C-4666-B50A-C3ECFEFC0359}C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe] => C:\program files (x86)\common files\i4j_jres\1.6.0_27\bin\java.exe FirewallRules: [{47E5F88A-A4AF-4258-80DB-6A2F24523FED}] => C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{B5B7FA68-61BF-4907-828C-5AF54D134817}] => C:\Users\Yanik\AppData\Local\Akamai\netsession_win.exe FirewallRules: [TCP Query User{D677EE3E-3A6B-406F-BCF3-171248762D94}C:\users\yanik\appdata\local\akamai\netsession_win.exe] => C:\users\yanik\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{9437557B-5584-4DE9-91D1-6C671CC1B50A}C:\users\yanik\appdata\local\akamai\netsession_win.exe] => C:\users\yanik\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{A0A60E5D-32CC-453F-A8B1-4BC11FE3C06F}C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe] => C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe FirewallRules: [UDP Query User{246637ED-22E1-406E-81CA-5C45C1B6E59D}C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe] => C:\program files (x86)\hercules\webcam station evolution se\stationevse.exe FirewallRules: [{11BF5DB8-3FCA-41FD-9619-97D629B8E0F5}] => LPort=49169 FirewallRules: [{F268FF69-23B4-4FB3-A582-5B1D9D627603}] => LPort=5000 FirewallRules: [{82D1E50D-1493-4A2E-A38C-806B535B0147}] => LPort=49185 FirewallRules: [{F9F06BED-0E77-48F3-8290-4BDD39A08A31}] => LPort=5000 FirewallRules: [TCP Query User{3D9A75BB-D7DB-40D9-8D95-10B865E74B18}C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe] => C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe FirewallRules: [UDP Query User{733D617F-EC5C-4AAE-A2D5-DA5F06D70C71}C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe] => C:\users\yanik\appdata\local\apps\2.0\avd4hh7h.3db\0yxad8j3.neb\laun...app_59711684aa47878d_0001.001b_a09983b3c069acd0\launcher.exe FirewallRules: [{62203193-D365-4E57-A19C-4C8E69F00E16}] => C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{04DF7B59-87C8-4F44-9986-E45B62A71FFB}] => C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{0B593BE1-ED61-4555-91B8-2BC5D2D7FC24}] => C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe FirewallRules: [{D72BFB76-9F24-4D54-9A7E-1A19D7AB7629}] => C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe FirewallRules: [{CA5B403D-0FEE-444B-87D8-6F7C9000164F}] => C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{3CCF3151-7EB8-4C7C-ACE9-1C5355815AF2}] => C:\Program Files (x86)\Steam\SteamApps\pampam94\counter-strike\hl.exe FirewallRules: [{001A67EF-C1D0-4EFB-8C9F-E77D5A09F200}] => LPort=56346 FirewallRules: [{1DAB6F5B-9995-4F8A-AE4D-3AF4267AD98D}] => C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{2EAE2EDB-C30C-4BB0-A5BF-5D0121273F2D}] => LPort=2869 FirewallRules: [{2E7A8D0A-2189-41C0-B852-27EC67880A3F}] => LPort=1900 FirewallRules: [{0B0779BC-B2BB-4E98-BCAD-66FD4205B47A}] => C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{01A9C7B6-97D1-4166-925A-AEA46F2C5C48}] => C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [TCP Query User{BE89C4B9-333E-4D79-B6BA-59DE4D80F73A}C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe] => C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe FirewallRules: [UDP Query User{CA4339CA-6AF3-447B-B08B-1980CE15BBD4}C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe] => C:\users\yanik\appdata\roaming\flyforheroinstaller\flyforheroinstaller.exe FirewallRules: [{FBDF1C9F-79AA-41FB-9D4D-0DE9CC22F391}] => C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe FirewallRules: [{915F3EE2-2728-441D-948C-F28C741FE637}] => C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe FirewallRules: [{49064CDC-85FF-453B-8066-8E21E95F32C9}] => C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe FirewallRules: [{D64C44B1-A749-426A-88D3-49FCCF2818B9}] => C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe FirewallRules: [{21E46FB7-818B-4866-B822-84533CFE6F1F}] => C:\Users\Yanik\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{A605F8AA-E1DE-40B9-940B-4350BAF7157D}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2F85D76B-1E42-4BB4-A0D4-0C1807E38477}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1354184B-A0D8-4C63-A3A6-9BBEC42F0671}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{79B2E660-5E28-4E35-A946-7A28AF93BDD0}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{613F470D-2B01-4244-B4F8-08D9D7FFB01A}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C0369496-0F1C-4709-92D8-F6F1DA581F5B}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{C7B1CCF4-4DDF-4AF7-94B3-C1B3D1E8FA59}C:\program files (x86)\hlds.exe] => C:\program files (x86)\hlds.exe FirewallRules: [UDP Query User{D1BD5D92-6053-4AE5-84B1-2BE0F2CE249E}C:\program files (x86)\hlds.exe] => C:\program files (x86)\hlds.exe FirewallRules: [{7F6C91A6-E125-4E5E-94C2-C74A234917AE}] => C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{F48AFC4E-2192-4981-97AD-10349D1BBF03}] => C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [TCP Query User{AE82D0C5-4EA3-4FDE-AC99-AFD957BEF7AF}C:\program files (x86)\mozilla firefox\firefox.exe] => C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{4B334020-0C7D-4BE6-87E6-6F9F8BFC8EF3}C:\program files (x86)\mozilla firefox\firefox.exe] => C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{C0527EAB-340A-4ADB-A764-EFA061976287}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B034F45A-7DFE-45E3-B44E-1BE6C3EE77F6}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A73B82BF-B1C1-4E24-92A7-C4DDDEFE5A62}] => C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{7B5342F5-7596-4EE6-BBF3-7806D5C79CF3}] => C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{4D3773C5-F912-45E5-9398-98DDAE32FB64}] => C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{C33B337F-6D5D-4A6F-A933-FEF115585A21}] => C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{C5A3F189-B595-4C1F-AAFA-70FB242723B3}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{CFD01919-E1F4-48D4-96C6-2D796727E142}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{01627A1C-5748-438E-89A3-F34A6D86E79E}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{159F79B3-FB7D-4AFD-8489-C3B44E46F523}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{53CA8640-DAC5-4F37-B326-E363FCA696A0}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{10512B79-035C-4BBD-AB03-027687533B48}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{D08AC4D4-776A-4ADE-84B9-193C224C999F}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{EF8D90C4-C285-4CAA-9BDC-BA04934C135B}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{2E5C928D-4216-4E9B-B09C-AF1004642884}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{032AC4FA-F1E8-4685-9699-F102E9C3D069}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{23B3B924-C15D-4C97-B069-7E7D9360AAB1}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{3C149125-BABA-4B45-A18F-94B089708C45}] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{ED618EC5-6C8A-4EDD-B1EC-B56207A999A5}] => C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{60294DAB-7DCF-4DB8-BB20-D313C8DD2B83}] => C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [{B3580005-C07B-4755-9B3C-3BBCEDE8887A}] => C:\Program Files\Red Giant\Offload\Offload.exe FirewallRules: [TCP Query User{761F4D62-444E-4CC8-BDAF-4BF132FBEA1C}C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe] => C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe FirewallRules: [UDP Query User{8B3472BA-B0A3-436E-A57F-5B88000A6070}C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe] => C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe FirewallRules: [TCP Query User{BCD1911B-3361-4235-8990-EFBD70158D81}C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe] => C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe FirewallRules: [UDP Query User{C1289FA9-3AE9-4A06-A022-8E5524AD0BAA}C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe] => C:\program files\adobe\adobe after effects cs6\support files\afterfx.exe FirewallRules: [TCP Query User{08FADF3E-911D-407C-AD25-2F62341B3486}C:\program files\sonyvegas13\vegas130.exe] => C:\program files\sonyvegas13\vegas130.exe FirewallRules: [UDP Query User{D18142F9-002F-47C4-AF54-E543EADED84F}C:\program files\sonyvegas13\vegas130.exe] => C:\program files\sonyvegas13\vegas130.exe FirewallRules: [{5FC859CC-D758-49B3-8B91-A320F1CEC517}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{179CDD17-158D-4E92-89D9-E89A2AF7FFE9}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{D70C9A60-FB67-4AD1-B0FC-9F14F6867DA6}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{61FD5BBC-9E65-4382-A019-C388354FA9D5}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{B65ACE41-893E-418A-BA19-E7E1257C3DBD}C:\program files\sonyvegas13\vegas130.exe] => C:\program files\sonyvegas13\vegas130.exe FirewallRules: [UDP Query User{11ED78E5-F85B-46D0-AE18-88EE2A0E0497}C:\program files\sonyvegas13\vegas130.exe] => C:\program files\sonyvegas13\vegas130.exe FirewallRules: [{8A1EEF68-BB94-41A1-AECA-17E29C6BA492}] => LPort=49164 FirewallRules: [{1ADB00FB-6FF8-4768-A169-9E1D30C333AF}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2FF08989-65E0-4EB5-9DA0-0FD6F1E62BAB}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{048050F7-DD0B-4C9E-B8F5-C41B2F51F724}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{4DDEADEA-2E8E-4BED-85D3-B7A8F97433CE}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{EAC1EFDD-8A60-4B3A-BAB6-59A26E01AD6C}] => C:\Program Files\iTunes\iTunes.exe FirewallRules: [TCP Query User{6B4CA254-B082-4665-9C02-E0113C383582}C:\program files (x86)\adobe\adobe photoshop cs6\photoshop.exe] => C:\program files (x86)\adobe\adobe photoshop cs6\photoshop.exe FirewallRules: [UDP Query User{CB940569-3A51-428B-BDF6-445423A9A4FA}C:\program files (x86)\adobe\adobe photoshop cs6\photoshop.exe] => C:\program files (x86)\adobe\adobe photoshop cs6\photoshop.exe ==================== Wiederherstellungspunkte ========================= 28-11-2016 23:42:06 Ende der Bereinigung 05-12-2016 14:20:48 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/05/2016 02:23:40 PM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (12/05/2016 02:23:34 PM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Error: (12/05/2016 02:23:34 PM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Error: (12/05/2016 02:08:08 PM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (12/05/2016 02:07:20 PM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Error: (12/05/2016 02:07:20 PM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Error: (12/05/2016 12:55:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: steamwebhelper.exe, Version: 3.65.13.80, Zeitstempel: 0x57fed9f2 Name des fehlerhaften Moduls: steamwebhelper.exe, Version: 3.65.13.80, Zeitstempel: 0x57fed9f2 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00037b59 ID des fehlerhaften Prozesses: 0x1738 Startzeit der fehlerhaften Anwendung: 0x01d24e89c3b50e84 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe Berichtskennung: 135c95b3-ba7d-11e6-83d0-14dae9b57ba8 Error: (12/05/2016 12:54:36 AM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe Error: (12/04/2016 11:03:58 PM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (12/04/2016 11:03:25 PM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Systemfehler: ============= Error: (12/05/2016 02:23:43 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/05/2016 02:08:17 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/04/2016 11:04:00 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/03/2016 08:55:10 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/02/2016 06:59:24 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/02/2016 06:59:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Avira Service Host erreicht. Error: (12/02/2016 06:09:14 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (12/02/2016 02:00:20 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (11/30/2016 04:06:52 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd Error: (11/29/2016 12:38:35 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: sptd CodeIntegrity: =================================== Date: 2016-11-18 00:15:27.671 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-18 00:15:27.593 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz Prozentuale Nutzung des RAM: 22% Installierter physikalischer RAM: 8156.89 MB Verfügbarer physikalischer RAM: 6356.36 MB Summe virtueller Speicher: 16311.96 MB Verfügbarer virtueller Speicher: 14602.45 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:698.54 GB) (Free:80.44 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 3901B0E2) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=698.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ Code:
ATTFilter Farbar Service Scanner Version: 27-01-2016 Ran by Yanik (administrator) on 05-12-2016 at 16:25:14 Running from "C:\Users\Yanik\Desktop\Anti Vir" Microsoft Windows 7 Home Premium Service Pack 1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Policy: ======================== Action Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => File is digitally signed C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed C:\Windows\System32\dhcpcore.dll => File is digitally signed C:\Windows\System32\drivers\afd.sys => File is digitally signed C:\Windows\System32\drivers\tdx.sys => File is digitally signed C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed C:\Windows\System32\dnsrslvr.dll => File is digitally signed C:\Windows\System32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\System32\mpssvc.dll => File is digitally signed C:\Windows\System32\bfe.dll => File is digitally signed C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed C:\Windows\System32\SDRSVC.dll => File is digitally signed C:\Windows\System32\vssvc.exe => File is digitally signed C:\Windows\System32\wscsvc.dll => File is digitally signed C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed C:\Windows\System32\wuaueng.dll => File is digitally signed C:\Windows\System32\qmgr.dll => File is digitally signed C:\Windows\System32\es.dll => File is digitally signed C:\Windows\System32\cryptsvc.dll => File is digitally signed C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed C:\Windows\System32\ipnathlp.dll => File is digitally signed C:\Windows\System32\iphlpsvc.dll => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed **** End of log **** |
05.12.2016, 22:44 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr FRST-Fix Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft! Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM-x32\...\Run: [] => [X] HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG Task: {BB181DFE-51EB-4946-896D-922841041D7A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {DC4B0623-427A-4DB0-B28A-886CF5477B4A} - System32\Tasks\{236F8513-C7B0-481C-B123-348EA6F16A9E} => pcalua.exe -a "C:\Users\Yanik\AppData\Local\Temp\Temp1_sheervideo_pro_win_v2_6_4_13.zip\SheerVideo HD Pro 2.6.4.13\Install SheerVideo Pro.exe" <==== ACHTUNG S3 X6va003; \??\C:\Users\Yanik\AppData\Local\Temp\00379B2.tmp [X] S3 X6va005; \??\C:\Users\Yanik\AppData\Local\Temp\005BEA4.tmp [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] C:\Users\Yanik\AppData\Local\94f6548e C:\Windows\is-TJBLS.exe C:\Windows\is-TJBLS.msg C:\Windows\is-TJBLS.lst C:\Users\Yanik\AppData\Roaming\JZPUYQL C:\Users\Yanik\Downloads\DelFix - CHIP-Installer.exe emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
06.12.2016, 00:06 | #12 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehrCode:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 05-12-2016 durchgeführt von Yanik (06-12-2016 00:02:27) Run:1 Gestartet von C:\Users\Yanik\Desktop\Anti Vir\FRST\Neueste Logs\Noch neuere Geladene Profile: Yanik (Verfügbare Profile: Yanik) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** HKLM-x32\...\Run: [] => [X] HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG Task: {BB181DFE-51EB-4946-896D-922841041D7A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {DC4B0623-427A-4DB0-B28A-886CF5477B4A} - System32\Tasks\{236F8513-C7B0-481C-B123-348EA6F16A9E} => pcalua.exe -a "C:\Users\Yanik\AppData\Local\Temp\Temp1_sheervideo_pro_win_v2_6_4_13.zip\SheerVideo HD Pro 2.6.4.13\Install SheerVideo Pro.exe" <==== ACHTUNG S3 X6va003; \??\C:\Users\Yanik\AppData\Local\Temp\00379B2.tmp [X] S3 X6va005; \??\C:\Users\Yanik\AppData\Local\Temp\005BEA4.tmp [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] C:\Users\Yanik\AppData\Local\94f6548e C:\Windows\is-TJBLS.exe C:\Windows\is-TJBLS.msg C:\Windows\is-TJBLS.lst C:\Users\Yanik\AppData\Roaming\JZPUYQL C:\Users\Yanik\Downloads\DelFix - CHIP-Installer.exe emptytemp: ***************** HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Wert erfolgreich entfernt "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Schlüssel erfolgreich entfernt "HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer" => Schlüssel erfolgreich entfernt "HKU\S-1-5-21-3404717819-833408578-2882030763-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BB181DFE-51EB-4946-896D-922841041D7A}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BB181DFE-51EB-4946-896D-922841041D7A}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DC4B0623-427A-4DB0-B28A-886CF5477B4A}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC4B0623-427A-4DB0-B28A-886CF5477B4A}" => Schlüssel erfolgreich entfernt C:\Windows\System32\Tasks\{236F8513-C7B0-481C-B123-348EA6F16A9E} => erfolgreich verschoben "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{236F8513-C7B0-481C-B123-348EA6F16A9E}" => Schlüssel erfolgreich entfernt X6va003 => Dienst erfolgreich entfernt X6va005 => Dienst erfolgreich entfernt X6va011 => Dienst erfolgreich entfernt C:\Users\Yanik\AppData\Local\94f6548e => erfolgreich verschoben C:\Windows\is-TJBLS.exe => erfolgreich verschoben C:\Windows\is-TJBLS.msg => erfolgreich verschoben C:\Windows\is-TJBLS.lst => erfolgreich verschoben "C:\Users\Yanik\AppData\Roaming\JZPUYQL" => nicht gefunden. "C:\Users\Yanik\Downloads\DelFix - CHIP-Installer.exe" => nicht gefunden. =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11171797 B Java, Flash, Steam htmlcache => 262459891 B Windows/system/drivers => 8486049 B Edge => 0 B Chrome => 0 B Firefox => 32376184 B Opera => 0 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 33125 B Public => 0 B ProgramData => 0 B systemprofile => 42337121 B systemprofile32 => 30974574 B LocalService => 132244 B NetworkService => 66228 B Yanik => 38671740 B RecycleBin => 15582332 B EmptyTemp: => 429.8 MB temporäre Dateien entfernt. ================================ Das System musste neu gestartet werden. ==== Ende von Fixlog 00:02:33 ==== |
06.12.2016, 09:56 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Startet die Windows Firewall wieder?
__________________ Logfiles bitte immer in CODE-Tags posten |
06.12.2016, 10:29 | #14 |
| Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Guten Morgen, ja die Firewall startet wieder, seit ich ComboFix benutzt hatte. Und nach dem Windows Repair Tool ging auch mein Internet wieder. Nur eben sehr langsam und deswegen wollte ich mich hier erkundigen, ob ich eventuell noch Schädlingssoftware auf meinem PC habe, die das verursacht. |
06.12.2016, 12:22 | #15 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr Kontrollscans mit (1) MBAM und (2) SecurityCheck bitte: 1. Schritt: MBAM Downloade Dir bitte Malwarebytes Anti-Malware
2. Schritt: SecurityCheck Downloade Dir bitte SecurityCheck und:
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Windows Firewall - Fehlercode 0x8007042c und kein Internet mehr |
akamai, antivirus, avira, bonjour, combofix, computer, converter, desktop, firefox, flash player, home, homepage, installation, kein internet, mozilla, problem, realtek, registry, scan, secur, software, starten, system, updates, windows |