|
Plagegeister aller Art und deren Bekämpfung: Internetprobleme ohne erkennbare UrsacheWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
16.02.2017, 22:51 | #1 |
| Internetprobleme ohne erkennbare Ursache Seit Wochen habe ich das Problem, dass meine Internetverbindung ausgebremst wird. Keine per google gefundenen Hilfen konnte irgendetwas bewirken. Das verwirrende ist, dass laut ISP und Speedtests/Ping die Leitung komplett frei sein sollte. Auch der Resourcenmanager/Networkmanager bescheinigen mir eine freie Leitung, i.e. eine Höchstauslastung von höchstens 100- bis 150 kBit/s. Auch merkwürdig ist, dass manche Anwendungen scheinbar ungebremsten Internetzugriff haben, aber höchstens 2 bis 3 verschiedene - also dass z.B. Steam und TS3 funktionieren, Firefox (wobei es da auch darauf ankommt, ob ich auf Websiten zugreife oder downloade) und Online-Spiele allerdings nicht. Welche Anwendungen/DLs das nun sind, scheint mein PC wohl in unregelmäßigen Abständen auszuwürfeln, denn es kann sich mitunter schlagartig ändern. Folgendes habe ich bereits versucht: - Firewall (Zonealarm) deaktiviert/deinstalliert - Avast Antivir deaktiviert/deinstalliert - Windows Firewall/Defender deaktiviert (hatte ich NICHT parallel zu Avast/ZA laufen, nur so nebenbei) - DNS Cache geleert - TCP-IP Winsock zurückgesetzt - Kabel ausgetauscht - Router ausgetauscht - DNS geändert - Windows Updates versucht (mit durchwachsenem Erfolg) - diverse Änderungen an Router- und Interneteinstellungen, die ich allerdings mangels Wirkung wieder rückgängig gemacht habe. Was ich nicht versuchen kann, ist die Verbindung an einem anderen Rechner prüfen. Und ich bin auch der einzige in der Nachbarschaft, der Probleme hat. Ich bin mit meinem Latein am Ende. Und bevor ich meinem ISP Feuer unterm Hintern mache, obwohl der garnichts dafür kann, dachte ich mir, lasse ich mir hier erstmal vom "Fachpersonal" abklären, ob ich mir nen Schädling eingefangen hab, der irgendwo die Kommunikation reingrätscht. Schonmal danke im Voraus FRST-Logs sind angehängt, aufgrund der Textlänge aber als Zip. |
17.02.2017, 20:57 | #2 |
/// TB-Ausbilder | Internetprobleme ohne erkennbare UrsacheMein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags: So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Danke für deine Mitarbeit! |
18.02.2017, 02:13 | #3 |
| Internetprobleme ohne erkennbare Ursache Heyo und danke für die flotte Antwort.
__________________Da ja nun keine konkrete Anweisung in deiner Antwort steht, gehe ich mal davon aus, dass ich die FRST-Logs posten soll... FRST.txt FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-02-2017 02 durchgeführt von Admin (Administrator) auf GAMEMACHINE-V2 (18-02-2017 01:59:10) Gestartet von F:\Mario\Desktop Geladene Profile: Admin & Mario (Neu) (Verfügbare Profile: Admin (Alt Buggy) & TempAdmin & Admin & Mario (Neu) & Administrator) Platform: Windows 7 Ultimate Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (hxxp://kay-bruns.de) C:\Windows\SuRun.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe (MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ForceField.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (hxxp://kay-bruns.de) C:\Windows\SuRun.exe (hxxp://kay-bruns.de) C:\Windows\SuRun32.bin (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () F:\WinAuth.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe (CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Raptr, Inc) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe (Raptr, Inc) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe (Mozilla Corporation) E:\Programme\Mozilla Firefox\firefox.exe (Raptr Inc.) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_ep64.exe (Valve Corporation) E:\Programme\Steam\Steam.exe (Valve Corporation) E:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe (Valve Corporation) E:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (TeamSpeak Systems GmbH) E:\Programme\TeamSpeak 3 Client\ts3client_win64.exe (Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64 HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393320 2015-08-11] () HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe" HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe" HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7188552 2013-05-27] (Realtek Semiconductor) HKLM\...\Run: [SuRun Systemmenü-Erweiterung] => C:\Windows\SuRun.exe [727552 2013-11-02] (hxxp://kay-bruns.de) HKLM\...\Run: [ISW] => C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [1127592 2012-11-22] (Check Point Software Technologies) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation) HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2012-11-29] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [506864 2013-03-08] (MSI) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58584 2016-09-28] (Raptr, Inc) HKLM-x32\...\Run: [Andy] => C:\Program Files\Andy\HandyAndy.exe HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe HKLM-x32\...\Run: [AvastUI.exe] => "C:\Programme\AVAST Software\Avast\AvastUI.exe" /nogui HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe [2089056 2015-09-16] (CHENGDU YIWO Tech Development Co., Ltd) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) Winlogon\Notify\igfxcui: igfxdev.dll [X] HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [DAEMON Tools Lite] => E:\Programme\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [Steam] => E:\Programme\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [Infium] => E:\Programme\QIP Infium psYNovA-Edition\infium.exe [5662720 2009-10-08] (QIP) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [WinAuth] => F:\WinAuth.exe [3900928 2014-08-30] () HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\MountPoints2: {86bebb10-398f-11e3-b8bb-d43d7ee3539a} - Z:\autorun.exe HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\Run: [Steam] => E:\Programme\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\Run: [WinAuth] => F:\WinAuth.exe [3900928 2014-08-30] () HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\MountPoints2: {86bebb10-398f-11e3-b8bb-d43d7ee3539a} - Z:\autorun.exe HKU\S-1-5-18\...\Run: [ZoneAlarm Windows 10 Upgrader] => "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay ShellExecuteHooks: SuRun Shell Extension - {2C7B6088-5A77-4d48-BE43-30337DCA9A86} - C:\Windows\SuRunExt.dll [189952 2013-11-02] (hxxp://kay-bruns.de) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Programme\AVAST Software\Avast\ashShA64.dll -> Keine Datei ShellIconOverlayIdentifiers: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk [2013-10-19] ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe () GroupPolicy: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog9 01 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 02 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 03 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 04 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 15 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 01 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 02 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 03 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 04 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 15 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{167EF976-C7C2-4382-88F9-0ED9AAEA6380}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-04-09] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-02-04] (Oracle Corporation) BHO: ZoneAlarm Security Engine Registrar -> {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} -> C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Programme\AVAST Software\Avast\aswWebRepIE64.dll => Keine Datei BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2014-04-09] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-04-09] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-04] (Oracle Corporation) BHO-x32: ZoneAlarm Security Engine Registrar -> {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} -> C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Programme\AVAST Software\Avast\aswWebRepIE.dll => Keine Datei BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2014-04-09] (Microsoft Corporation) Toolbar: HKLM - Kein Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Keine Datei Toolbar: HKLM - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Toolbar: HKLM - Kein Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Keine Datei Toolbar: HKLM-x32 - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Toolbar: HKLM-x32 - ZoneAlarm Security Toolbar - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.11.11\zonealarmTlbr.dll [2013-01-31] (Check Point Software Technologies LTD) Toolbar: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008 -> ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2014-04-09] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6s9q934r.default [2017-02-14] FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\TrustChecker FF Extension: (Kein Name) - C:\Program Files\CheckPoint\ZAForceField\TrustChecker [2017-02-10] [ist nicht signiert] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Programme\AVAST Software\Avast\WebRep\FF => nicht gefunden FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Programme\AVAST Software\Avast\SafePrice\FF => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF Extension: (Kein Name) - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker [2017-02-10] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Programme\AVAST Software\Avast\WebRep\FF => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Programme\AVAST Software\Avast\SafePrice\FF => nicht gefunden FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll [2017-02-14] () FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-04] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-04] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_221.dll [2017-02-14] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1211151.dll [2014-04-15] (Adobe Systems, Inc.) FF Plugin-x32: @checkpoint.com/FFApi -> C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll [2012-11-22] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-05-17] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-05-17] (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-02-10] (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> E:\Programme\Winamp Detect\npwachk.dll [2013-07-23] (Nullsoft, Inc.) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-08-11] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-08-11] (NVIDIA Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.) StartMenuInternet: FIREFOX.EXE - E:\Programme\Mozilla Firefox\firefox.exe Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Programme\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <nicht gefunden> ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1445384 2016-10-22] () S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2015-03-08] (BitRaider, LLC) S4 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2211000 2014-03-30] (Microsoft Corporation) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [245544 2016-03-11] (EasyAntiCheat Ltd) S3 EFS; C:\Windows\System32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2015-08-11] (Intel Corporation) S4 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-05-17] (Intel Corporation) R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [828072 2012-11-22] (Check Point Software Technologies) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-17] (Intel Corporation) S3 KeyIso; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161264 2013-02-20] (MSI) R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [29728 2013-05-28] (MICRO-STAR INTERNATIONAL CO., LTD.) S3 Netlogon; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation) S4 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation) S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation) S3 Origin Client Service; E:\Programme\Origin\OriginClientService.exe [2120712 2016-05-22] (Electronic Arts) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-04-14] () S3 ProtectedStorage; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [490496 2013-04-30] () [Datei ist nicht signiert] S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) R2 SamSs; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] R2 SuRunSVC; C:\Windows\SuRun.exe [727552 2013-11-02] (hxxp://kay-bruns.de) [Datei ist nicht signiert] S3 VaultSvc; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-10-19] (Microsoft Corporation) S2 avast! Antivirus; "C:\Programme\AVAST Software\Avast\AvastSvc.exe" [X] S3 AvastVBoxSvc; "C:\Programme\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [83312 2016-09-15] (AVAST Software) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-09-09] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-09-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-09-09] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-09-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-09-09] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-09-13] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-09-23] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-09-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-10-13] (AVAST Software) R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [66928 2013-04-30] (Qualcomm Atheros, Inc.) S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2015-03-09] (BitRaider) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-10-20] (DT Soft Ltd) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] () S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14944 2014-11-18] () S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] () S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] () S3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-02-13] () R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33712 2012-11-22] (Check Point Software Technologies) R3 Ke2200; C:\Windows\System32\DRIVERS\e22w7x64.sys [165824 2013-04-30] (Qualcomm Atheros, Inc.) S3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) S3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) S3 rpkmdrv; C:\Windows\System32\drivers\rpkmdrv.sys [21248 2012-08-16] () S3 UHSfiltv; C:\Windows\System32\drivers\UHSfiltv.sys [23552 2013-05-31] (Creative Technology Ltd.) S3 ALSysIO; \??\F:\WinTEMP\ALSysIO64.sys [X] S3 MSICDSetup; \??\G:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\G:\NTIOLib_X64.sys [X] S3 pmem; \??\C:\Users\Mario\AppData\Local\Temp\_MEI42522\drivers\winpmem64.sys [X] <==== ACHTUNG S2 VBoxAswDrv; \??\C:\Programme\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-02-14 13:52 - 2017-02-14 13:53 - 00000000 ____D C:\Users\Admin\AppData\LocalLow\Mozilla 2017-02-10 21:24 - 2017-02-10 21:24 - 00000000 ____D C:\Users\Admin\AppData\Roaming\PlaysTV 2017-02-10 21:23 - 2017-02-10 21:23 - 00000000 ____D C:\Users\Admin\Documents\ForceField Shared Files 2017-02-10 15:10 - 2017-02-10 15:10 - 00000000 _____ C:\Windows\system32\Drivers\etc\lmhosts 2017-02-09 14:24 - 2017-02-09 14:24 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-02-08 16:55 - 2017-02-10 14:58 - 00000000 ____D C:\Program Files\WinRAR 2017-02-07 13:16 - 2017-02-07 13:16 - 00000000 ____D C:\Users\Admin\Documents\Visual Studio 2013 2017-02-06 20:21 - 2017-02-17 22:26 - 00007624 _____ C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2017-02-06 18:18 - 2017-02-06 18:18 - 00000000 ___SD C:\Windows\system32\CompatTel 2017-02-06 18:18 - 2017-02-06 18:18 - 00000000 ____D C:\Windows\system32\appraiser 2017-02-06 17:48 - 2017-02-06 17:48 - 00000000 ____D C:\Windows\CheckSur 2017-02-06 17:47 - 2017-02-06 17:47 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2013 2017-02-06 17:47 - 2017-02-06 17:47 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2013 2017-02-06 17:33 - 2017-02-06 17:33 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET 2017-02-06 17:18 - 2016-09-12 22:17 - 00077032 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2017-02-06 17:18 - 2016-09-12 22:08 - 01226752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 01629184 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00586752 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2017-02-06 17:18 - 2016-03-23 23:40 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2017-02-06 17:16 - 2016-08-29 16:31 - 14183424 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2017-02-06 17:16 - 2016-08-29 16:31 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2017-02-06 17:16 - 2016-08-29 16:31 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 12880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2017-02-06 17:16 - 2016-08-29 16:04 - 03229696 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2017-02-06 17:16 - 2016-08-29 15:55 - 02972672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2017-02-06 17:16 - 2016-05-11 18:02 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2017-02-06 17:16 - 2016-05-11 18:02 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2017-02-06 17:16 - 2016-05-11 18:02 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll 2017-02-06 17:16 - 2016-05-11 16:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2017-02-06 17:16 - 2016-05-11 16:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe 2017-02-06 17:16 - 2016-05-11 15:58 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2017-02-06 17:16 - 2016-02-12 19:52 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-02-06 17:16 - 2016-02-12 19:52 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-02-06 17:16 - 2016-02-12 19:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2017-02-06 17:16 - 2016-02-12 19:44 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2017-02-06 17:16 - 2016-02-12 19:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2017-02-06 17:16 - 2016-02-12 19:22 - 02610688 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-02-06 17:16 - 2016-02-12 19:19 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-02-06 17:16 - 2016-02-12 19:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-02-06 17:16 - 2016-02-12 19:18 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2017-02-06 17:16 - 2016-02-12 19:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2017-02-06 17:16 - 2016-02-12 19:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2017-02-06 17:16 - 2016-02-12 19:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2017-02-06 17:16 - 2016-02-12 19:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2017-02-06 17:15 - 2016-05-12 18:15 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2017-02-06 17:15 - 2016-05-12 18:14 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll 2017-02-06 17:15 - 2016-05-12 16:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe 2017-02-06 17:15 - 2016-05-12 15:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll 2017-02-06 17:15 - 2016-05-12 15:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe 2017-02-06 17:15 - 2016-04-09 08:01 - 00986344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2017-02-06 17:15 - 2016-04-09 08:01 - 00264936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2017-02-06 17:15 - 2016-04-09 07:57 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2017-02-06 17:15 - 2016-01-11 20:11 - 01684416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2017-02-06 17:15 - 2015-12-20 19:50 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2017-02-06 17:15 - 2015-12-20 19:50 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2017-02-06 17:15 - 2015-12-20 15:08 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2017-02-06 17:15 - 2015-11-11 19:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2017-02-06 17:15 - 2015-11-11 19:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2017-02-06 17:15 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll 2017-02-06 17:15 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll 2017-02-06 17:15 - 2015-04-11 04:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys 2017-02-06 17:14 - 2016-04-14 14:49 - 00603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2017-02-06 17:14 - 2016-04-14 14:21 - 00647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2017-02-06 17:14 - 2016-02-05 19:56 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll 2017-02-06 17:14 - 2016-02-05 19:54 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll 2017-02-06 17:14 - 2016-02-05 18:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll 2017-02-06 17:14 - 2016-02-02 19:57 - 00511488 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe 2017-02-06 17:14 - 2015-10-29 18:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll 2017-02-06 17:14 - 2015-10-29 18:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2017-02-06 17:14 - 2015-10-29 18:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe 2017-02-06 17:14 - 2015-10-13 05:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2017-02-06 17:14 - 2015-08-27 19:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2017-02-06 17:14 - 2015-08-27 19:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2017-02-06 17:14 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2017-02-06 17:14 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2017-02-06 17:14 - 2015-08-27 18:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2017-02-06 17:14 - 2015-08-27 18:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2017-02-06 17:14 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2017-02-06 17:14 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2017-02-06 17:14 - 2015-06-03 21:21 - 00451080 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2017-02-06 17:13 - 2016-08-12 17:26 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2017-02-06 17:13 - 2016-08-12 17:26 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2017-02-06 17:13 - 2016-08-12 17:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 01896168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 00377576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 00287976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2017-02-06 17:13 - 2016-07-07 16:08 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2017-02-06 17:13 - 2016-07-01 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2017-02-06 17:13 - 2016-07-01 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2017-02-06 17:13 - 2016-07-01 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2017-02-06 17:13 - 2016-07-01 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll 2017-02-06 17:13 - 2016-06-25 20:54 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2017-02-06 17:13 - 2016-06-25 20:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll 2017-02-06 17:13 - 2016-06-25 20:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe 2017-02-06 17:13 - 2016-06-25 20:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe 2017-02-06 17:13 - 2016-06-25 20:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe 2017-02-06 17:13 - 2016-05-11 18:02 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2017-02-06 17:13 - 2016-05-11 16:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2017-02-06 17:13 - 2016-02-09 10:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2017-02-06 17:13 - 2016-02-05 02:19 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2017-02-06 17:13 - 2016-02-04 19:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2017-02-06 17:13 - 2016-02-03 19:07 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2017-02-06 17:13 - 2015-12-08 22:53 - 00509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2017-02-06 17:13 - 2015-12-08 22:53 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll 2017-02-06 17:13 - 2015-12-08 20:07 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2017-02-06 17:13 - 2015-12-08 20:07 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll 2017-02-06 17:13 - 2015-11-05 20:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll 2017-02-06 17:13 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll 2017-02-06 17:13 - 2015-11-05 10:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2017-02-06 17:13 - 2015-10-13 17:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2017-02-06 17:13 - 2015-10-13 17:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2017-02-06 17:13 - 2015-01-29 04:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2017-02-06 17:13 - 2015-01-29 04:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2017-02-06 17:13 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe 2017-02-06 17:13 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2017-02-06 17:09 - 2016-03-09 20:00 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2017-02-06 17:09 - 2016-03-09 19:40 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2017-02-06 17:05 - 2016-03-09 19:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2017-02-06 17:05 - 2016-03-09 19:34 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2017-02-06 17:04 - 2015-11-03 20:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2017-02-06 17:04 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll 2017-02-06 17:02 - 2016-04-09 05:20 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2017-02-06 17:02 - 2016-04-09 04:52 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-02-18 01:59 - 2013-10-27 22:43 - 00000000 ____D C:\FRST 2017-02-18 01:20 - 2016-04-10 12:29 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2017-02-17 22:35 - 2009-07-14 05:45 - 00027136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-02-17 22:35 - 2009-07-14 05:45 - 00027136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-02-17 22:27 - 2013-12-04 17:31 - 00000000 ____D C:\ProgramData\NVIDIA 2017-02-17 22:27 - 2013-10-19 16:10 - 00000000 ____D C:\ProgramData\Bigfoot Networks 2017-02-17 22:27 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-02-16 22:30 - 2017-01-11 12:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UBISOFT 2017-02-16 22:30 - 2013-10-19 16:10 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-02-14 19:40 - 2016-05-13 15:20 - 20359768 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2017-02-14 19:40 - 2016-04-10 12:29 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-02-14 19:40 - 2015-07-09 15:54 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-02-14 19:40 - 2015-07-09 15:54 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-02-14 19:40 - 2013-10-19 23:14 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-02-14 19:40 - 2013-10-19 23:14 - 00000000 ____D C:\Windows\system32\Macromed 2017-02-14 13:51 - 2015-03-27 14:36 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Raptr 2017-02-14 13:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2017-02-13 18:05 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2017-02-12 23:36 - 2015-12-24 21:26 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2017-02-12 23:35 - 2015-12-24 21:26 - 00000000 ____D C:\Program Files\Rockstar Games 2017-02-11 03:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2017-02-10 16:22 - 2014-12-08 17:30 - 00000000 ____D C:\Users\Mario (Neu) 2017-02-10 15:14 - 2014-05-05 17:22 - 00000000 ____D C:\Users\Admin 2017-02-10 14:58 - 2015-12-03 14:30 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2017-02-10 14:58 - 2015-11-20 16:23 - 00000000 ____D C:\Program Files\Common Files\AV 2017-02-10 14:58 - 2015-09-25 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-02-10 14:58 - 2015-09-25 18:30 - 00000000 ____D C:\ProgramData\AVAST Software 2017-02-10 14:58 - 2014-10-13 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseSVN 2017-02-10 14:58 - 2014-10-13 18:53 - 00000000 ____D C:\Program Files\Common Files\TortoiseOverlays 2017-02-10 14:58 - 2014-05-05 15:56 - 00000000 ____D C:\Users\TempAdmin 2017-02-10 14:58 - 2014-04-26 13:56 - 00000000 ____D C:\Windows\SysWOW64\Adobe 2017-02-10 14:58 - 2013-10-20 21:25 - 00000000 ____D C:\Program Files (x86)\Check Point Software Technologies LTD 2017-02-10 14:58 - 2013-10-19 22:15 - 00000000 ____D C:\Program Files\CheckPoint 2017-02-10 14:58 - 2013-10-19 21:17 - 00000000 ____D C:\Users\Admin (Alt Buggy) 2017-02-10 14:58 - 2013-10-19 20:38 - 00000000 ____D C:\Users\Administrator 2017-02-10 14:58 - 2013-10-19 16:19 - 00000000 ___HD C:\SuperChargerProfile 2017-02-10 14:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration 2017-02-10 14:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\AppCompat 2017-02-08 15:54 - 2016-12-04 22:34 - 00000000 ____D C:\Temp 2017-02-07 13:30 - 2016-03-10 12:12 - 00000000 ____D C:\Program Files (x86)\Raptr Inc 2017-02-07 13:30 - 2015-03-08 20:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2017-02-07 13:24 - 2014-08-30 18:06 - 00000000 ____D C:\ProgramData\Package Cache 2017-02-07 13:24 - 2014-02-10 16:29 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-02-07 13:23 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\MSBuild 2017-02-07 13:17 - 2014-09-29 15:35 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2017-02-07 13:07 - 2014-11-20 14:40 - 00000000 ____D C:\Users\Admin\AppData\Local\TSVNCache 2017-02-07 12:59 - 2014-09-29 15:29 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2017-02-07 12:59 - 2014-09-29 15:29 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2017-02-07 12:49 - 2014-09-29 15:26 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2017-02-07 12:46 - 2016-11-28 21:42 - 00005182 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario (Neu) GameMachine-V2 2017-02-06 22:02 - 2011-04-12 08:43 - 00701212 _____ C:\Windows\system32\perfh007.dat 2017-02-06 22:02 - 2011-04-12 08:43 - 00150112 _____ C:\Windows\system32\perfc007.dat 2017-02-06 22:02 - 2009-07-14 06:13 - 01620196 _____ C:\Windows\system32\PerfStringBackup.INI 2017-02-06 18:24 - 2014-11-20 14:40 - 00000000 ___RD C:\Users\Admin\Virtual Machines 2017-02-06 18:19 - 2013-10-19 17:59 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-02-06 18:18 - 2011-04-12 08:54 - 00000000 ____D C:\Windows\ShellNew 2017-02-06 18:18 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers 2017-02-06 18:17 - 2017-01-11 17:10 - 00000000 ____D C:\Users\Admin\AppData\Local\NVIDIA 2017-02-06 17:42 - 2013-10-19 16:05 - 01597284 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-02-06 17:39 - 2013-10-19 17:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-02-06 17:39 - 2013-10-19 17:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-02-06 17:38 - 2014-08-18 12:24 - 00000000 ____D C:\Windows\system32\MRT 2017-02-06 17:35 - 2014-08-18 12:24 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-02-04 16:34 - 2013-11-02 14:24 - 00000000 ____D C:\ProgramData\Oracle 2017-02-04 16:28 - 2015-07-04 01:21 - 00000000 ____D C:\Program Files\Java 2017-02-04 16:27 - 2014-10-13 13:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-02-04 16:26 - 2015-07-04 01:21 - 00110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2017-02-01 23:56 - 2013-10-30 02:40 - 00000000 ____D C:\Windows\Minidump 2017-01-19 18:02 - 2015-12-17 18:34 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2017-02-06 20:21 - 2017-02-17 22:26 - 0007624 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2015-03-22 17:25 - 2015-06-13 23:20 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip 2014-05-05 18:17 - 2014-05-05 18:58 - 0427840 _____ (ForensiT Limited) C:\ProgramData\UserProfileMigrationService.exe Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\ProgramData\UserProfileMigrationService.exe Einige Dateien in TEMP: ==================== 2013-10-27 23:01 - 2013-10-27 14:24 - 0039424 _____ (Bytessence) C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\642151533.exe 2010-12-31 04:07 - 2010-12-31 04:07 - 0086880 ____R (Microsoft Corporation) C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\devcon64.exe 2013-10-25 12:40 - 2013-10-25 12:40 - 0632024 _____ () C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\ICReinstall_Alcohol120_trial_2.0.2.5629.exe 2014-02-10 16:10 - 2014-02-10 16:09 - 0575168 _____ (Microsoft Corporation) C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\OfficeSetup.exe 2013-10-27 15:36 - 2013-10-27 15:37 - 0059860 _____ () C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\SCC.dll 2013-10-19 20:43 - 2010-12-31 04:07 - 0086880 ____R (Microsoft Corporation) C:\Users\Mario (Backup)\AppData\Local\Temp\devcon64.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => MD5 ist legitim C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-10-01 13:17 ==================== Ende von FRST.txt ============================ |
18.02.2017, 02:15 | #4 |
| Internetprobleme ohne erkennbare Ursache Und der zweite Log... Addition.txt Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-02-2017 02 durchgeführt von Admin (18-02-2017 01:59:44) Gestartet von F:\Mario\Desktop Windows 7 Ultimate Service Pack 1 (X64) (2013-10-19 11:21:19) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Admin (S-1-5-21-3905677154-2266868164-1778288955-1008 - Administrator - Enabled) => C:\Users\Admin Admin (Alt Buggy) (S-1-5-21-3905677154-2266868164-1778288955-1001 - Limited - Disabled) => C:\Users\Admin (Alt Buggy) Administrator (S-1-5-21-3905677154-2266868164-1778288955-500 - Administrator - Disabled) => C:\Users\Administrator Gast (S-1-5-21-3905677154-2266868164-1778288955-501 - Limited - Disabled) Mario (Alt Buggy) (S-1-5-21-3905677154-2266868164-1778288955-1000 - Limited - Disabled) Mario (Neu) (S-1-5-21-3905677154-2266868164-1778288955-1010 - Limited - Enabled) => F:\Mario TempAdmin (S-1-5-21-3905677154-2266868164-1778288955-1006 - Limited - Disabled) => C:\Users\TempAdmin ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avast Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Avast Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7 Days to Die (HKLM-x32\...\Steam App 251570) (Version: - The Fun Pimps) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.023.20056 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.1.151 - Adobe Systems, Inc.) Alathair Patcher (HKLM-x32\...\AlathairPatcher) (Version: - ) Alice Madness Returns (HKLM-x32\...\{93A3AB24-36E8-41BA-80C6-CCEC237836DC}) (Version: 1.0.0.0 - Electronic Arts) Ansel (Version: 372.54 - NVIDIA Corporation) Hidden Appset Updater 1.1.105.0 (HKLM-x32\...\{11DD3FDE-29EC-11E3-9881-8BBE75B86756}) (Version: 1.1.105.0 - Appset) Appset Updater 1.1.126.0 (HKLM-x32\...\{41AE9230-77E6-11E3-93DC-8F3AC494E26A}) (Version: 1.1.126.0 - Appset) Aritana and the Harpy's Feather Demo (HKLM-x32\...\Steam App 316100) (Version: - Duaik Entretenimento) ARK: Survival Evolved (HKLM-x32\...\Steam App 346110) (Version: - Studio Wildcard) Arx Fatalis (HKLM-x32\...\Steam App 1700) (Version: - Arkane Studios) Arx Libertatis (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\ArxLibertatis) (Version: 1.1.2 - ) Assassin's Creed (HKLM-x32\...\{8CFA9151-6404-409A-AF22-4632D04582FD}) (Version: 1.02 - Ubisoft) Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.03 - Ubisoft) Assassin's Creed II (HKLM-x32\...\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}) (Version: 1.01 - Ubisoft) Assassin's Creed Revelations 1.03 (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.03 - Ubisoft) Asteria (HKLM-x32\...\Steam App 307130) (Version: - Legend Studio) AutoHotkey 1.1.13.01 (HKLM\...\AutoHotkey) (Version: 1.1.13.01 - Lexikos) Batman™: Arkham Origins (HKLM-x32\...\Steam App 209000) (Version: - WB Games Montreal) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) Blackthorne (HKLM-x32\...\{C563EEF9-17FF-4563-8B78-82AF0C4577CE}) (Version: 1.0.0 - Blizzard Entertainment) BOILING POINT (HKLM-x32\...\{58AC967F-CE64-4065-AF54-FA66BAF31FE8}) (Version: 1.00.000 - ) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Borderlands: The Pre-Sequel (HKLM-x32\...\Steam App 261640) (Version: - 2K Australia) Brothers - A Tale of Two Sons (HKLM-x32\...\Steam App 225080) (Version: - Starbreeze Studios AB) CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source) CamStudio Lossless Codec v1.5 (HKLM-x32\...\camcodec) (Version: 1.5 - CamStudio) CentrED 0.6.3 (HKLM-x32\...\{77BCACC0-C2D9-470D-858F-A3D94A5F27A5}_is1) (Version: 0.6.3 - AKS DataBasis) Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) Creation Kit (HKLM-x32\...\Steam App 202480) (Version: - bgs.bethsoft.com) Creative Systeminformationen (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd) Darksiders (HKLM-x32\...\Steam App 50620) (Version: - Vigil Games) Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - Vigil Games) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Dead Rising 3 (HKLM-x32\...\Steam App 265550) (Version: - Capcom Game Studio Vancouver) Deponia (HKLM\...\Steam App 214340) (Version: - Daedalic Entertainment) Deus Ex: Human Revolution - Director's Cut (HKLM-x32\...\Steam App 238010) (Version: - Eidos Montreal) Deus Ex: The Fall (HKLM-x32\...\Steam App 258180) (Version: - Square Enix) Dishonored (HKLM-x32\...\Steam App 205100) (Version: 1.0 - Bethesda Softworks) Dolphin 4.0 (HKLM-x32\...\Dolphin) (Version: 4.0 - Dolphin Development Team) Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC) Earth 2160 (HKLM-x32\...\Steam App 1900) (Version: - Reality Pump Studios) EaseUS Partition Master 10.8 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) Elevated Shortcut (HKLM-x32\...\Elevated Shortcut) (Version: 1.1 - hxxp://www.winreview.ru/) Empyrion - Galactic Survival (HKLM\...\Steam App 383120) (Version: - Eleon Game Studios) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden Erforderliche Komponenten für SSDT (HKLM-x32\...\{3FF082A7-A5DE-4BDA-B56A-1D2BEFD617A3}) (Version: 11.1.3000.0 - Microsoft Corporation) Eternal Winter (HKLM-x32\...\Steam App 325210) (Version: - Developers Pack) Fallen Earth (HKLM-x32\...\Steam App 113420) (Version: - Reloaded Productions) Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios) Fallout 4 (HKLM-x32\...\Steam App 377160) (Version: - Bethesda Game Studios) Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment) Far Cry 2 (HKLM-x32\...\{F2835483-37F2-4123-B4FE-0E77D58447F2}) (Version: 1.03.00 - Ubisoft) Firefly Online Cortex (HKLM-x32\...\Steam App 343750) (Version: - Spark Plug Games) FlashGet 1.9.6.1073 (HKLM-x32\...\FlashGet) (Version: 1.9.6.1073 - hxxp://www.FlashGet.com) Free WMA to MP3 Converter 1.16 (HKLM-x32\...\Free WMA to MP3 Converter_is1) (Version: - Jodix Technologies Ltd.) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Gear Up (HKLM\...\Steam App 214420) (Version: - Doctor Entertainment AB) Gigantic Army (HKLM-x32\...\Steam App 278930) (Version: - ASTRO PORT) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Guns of Icarus Online (HKLM\...\Steam App 209080) (Version: - Muse Games) Hacknet (HKLM-x32\...\Steam App 365450) (Version: - Team Fractal Alligator) Hama uRage Vendetta Gamepad (HKLM-x32\...\{1696CD1C-7C50-4350-83FC-1DA843FDF853}) (Version: 2011.01.19 - Dragon rise) HAWKEN (HKLM-x32\...\Steam App 271290) (Version: - Adhesive Games) HWiNFO64 Version 4.64 (HKLM\...\HWiNFO64_is1) (Version: 4.64 - Martin Malík - REALiX) I Am Alive (HKLM-x32\...\Steam App 214250) (Version: - Ubisoft Shanghaï) Intel Driver Update Utility (HKLM-x32\...\{fe92d390-13ee-4660-a2f8-39a066fdffe0}) (Version: 2.2.0.5 - Intel) Intel(R) Driver Update Utility 2.2.0.5 (x32 Version: 2.2.0.1 - Intel) Hidden Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36943 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.10.1372 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) James Cameron's AVATAR(tm): DAS SPIEL (HKLM-x32\...\{7E19B002-4CA3-4C9F-BA92-91D101B97219}) (Version: 1.02.00 - Ubisoft) Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Just Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche Studios) Just Cause 2: Multiplayer Mod (HKLM-x32\...\Steam App 259080) (Version: - Avalanche Studios) Key Mapper (HKLM-x32\...\{A96C0046-2143-42C0-A28F-BCAF2C520E2A}) (Version: 1.0.2 - Rose Hill Solutions) Killing Floor (HKLM\...\Steam App 1250) (Version: - Tripwire Interactive) Killing Floor 2 (HKLM\...\Steam App 232090) (Version: - Tripwire Interactive) KillProcess 2.44 (HKLM-x32\...\KillProcess) (Version: 2.44 - Orange Lamp Software Solutions) Left 4 Dead (HKLM-x32\...\Steam App 500) (Version: - Valve) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Life Is Strange™ (HKLM\...\Steam App 319630) (Version: - DONTNOD Entertainment) LocoCycle (HKLM-x32\...\Steam App 224040) (Version: - Twisted Pixel Games) Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games) Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.6 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7320.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{2E660A2A-A55F-43CD-9F73-CAD7382EEB78}) (Version: 3.0.19.0 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4605.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{43341417-7882-4F34-8390-53DFD00F6C0F}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{24440413-490E-41CA-BD33-0B30FD3EBE3A}) (Version: 11.1.3366.16 - Microsoft Corporation) Monochroma Demo (HKLM-x32\...\Steam App 304610) (Version: - Nowhere Studios) Morrowind (HKLM-x32\...\{81935798-5D0C-4892-832E-630E6CC07EAF}) (Version: - ) Morrowind AnimKit 2.1 (remove only) (HKLM-x32\...\Morrowind AnimKit) (Version: - ) Mozilla Firefox 24.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 24.0 (x86 de)) (Version: 24.0 - Mozilla) Mozilla Firefox 35.0 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Mozilla Firefox 35.0 (x86 de)) (Version: 35.0 - Mozilla) Mozilla Firefox 51.0.1 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\Mozilla Firefox 51.0.1 (x86 de)) (Version: 51.0.1 - Mozilla) MPC-HC 1.7.9 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.9 - MPC-HC Team) My Game Long Name (HKLM\...\UDK-3c7f31b8-d014-4d68-83ca-9457379e71d5) (Version: - Epic Games, Inc.) New Vegas Configator version 1.6 (HKLM-x32\...\New Vegas Configator_is1) (Version: 1.6 - Rudolf Enberg) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.12 - Black Tree Gaming) NifSkope (remove only) (HKLM-x32\...\NifSkope) (Version: - ) NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version: - ) No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team) NRV11250 (HKLM\...\UDK-30063b6d-5c6b-462f-a58e-9191d677fba8) (Version: - Epic Games, Inc.) Nuclear Dawn (HKLM-x32\...\Steam App 17710) (Version: - InterWave Studios) NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.54 - NVIDIA Corporation) NVIDIA Grafiktreiber 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.54 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) Oblivion - Construction Set (HKLM-x32\...\{23D683DD-93C6-48E6-B84E-78B57778F126}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Horse Armor Pack (HKLM-x32\...\{3ABEBD00-299D-4DCA-967F-B912163AB5EA}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Mehrunes Razor (HKLM-x32\...\{EF295F5C-7B57-47AA-8889-6B3E8E214E89}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Orrery (HKLM-x32\...\{EC425CFC-EE78-4A91-AA25-3BFA65B75364}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Spell Tomes (HKLM-x32\...\{16D919E6-F019-4E15-BFBE-4A85EF19DA57}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - The Fighter's Stronghold (HKLM-x32\...\{A0A20753-92DF-4631-82B4-9CACE2FCED6A}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Thieves Den (HKLM-x32\...\{FFFFFD17-B460-41EB-93F1-C48ABAD63828}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Wizard's Tower (HKLM-x32\...\{2F2E3D62-8B8C-448F-8900-451325E50948}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion (HKLM-x32\...\{35CB6715-41F8-4F99-8881-6FC75BF054B0}) (Version: 1.2.0416 - Bethesda Softworks) Oblivion Face Exchange Lite (HKLM-x32\...\{0DBEC4D5-2CCA-45CB-A529-75CD83E698AB}) (Version: 1.3.10 - Mikko Puonti) Oblivion mod manager 1.1.9 (HKLM-x32\...\Oblivion mod manager_is1) (Version: - Timeslip) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Only If (HKLM-x32\...\Steam App 298260) (Version: - Creability) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Ori and the Blind Forest (HKLM-x32\...\Steam App 261570) (Version: - Moon Studios GmbH) Origin (HKLM-x32\...\Origin) (Version: 9.12.1.43352 - Electronic Arts, Inc.) ORION: Prelude (HKLM-x32\...\Steam App 104900) (Version: - Spiral Game Studios) Outlast (HKLM-x32\...\Steam App 238320) (Version: - Red Barrels) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) Plague Inc: Evolved (HKLM\...\Steam App 246620) (Version: - Ndemic Creations) PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\SOE-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\SOE-PlanetSide 2) (Version: - Sony Online Entertainment) PlayClaw 5 fast codec (HKLM-x32\...\PlayClaw 5 fast codec_is1) (Version: 5.5 - ) PlayClaw 5 Plus (HKLM-x32\...\PlayClaw 5 Plus_is1) (Version: 5 - ) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) Project Zomboid (HKLM-x32\...\Steam App 108600) (Version: - The Indie Stone) Puddle (HKLM-x32\...\Steam App 222140) (Version: - Neko Entertainment) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) Qualcomm Atheros Killer Network Manager (HKLM-x32\...\InstallShield_{DF446558-ADF7-4884-9B2D-281979CCE71F}) (Version: 6.1.0.583 - Qualcomm Atheros) Qualcomm Atheros Killer Network Manager (Version: 6.1.0.583 - Qualcomm Atheros) Hidden Race The Sun (HKLM\...\Steam App 253030) (Version: - Flippfly LLC) RAD Video Tools (HKLM-x32\...\RADVideo) (Version: - ) RAGE (HKLM-x32\...\Steam App 9200) (Version: - id Software) Rapoo -Tastatur- und Maustreiber v1.6 (HKLM-x32\...\{2E569492-CB19-4510-AB49-1C6A36C6F525}_is1) (Version: - Rapoo Inc.) Raptr (HKLM-x32\...\Raptr) (Version: 5.2.7-r116720-release - Raptr, Inc) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6923 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Residue: Final Cut (HKLM\...\Steam App 265790) (Version: - The Working Parts) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Robocraft (HKLM\...\Steam App 301520) (Version: - Freejam) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.4 - Rockstar Games) S.T.A.L.K.E.R. - Call of Pripyat [v1.6.02] (HKLM-x32\...\{406FB8A4-F539-48A9-809C-F94706F9C9F6}_is1) (Version: 1.6.02 - bitComposer Games) SafeZone Stable 1.51.2220.53 (x32 Version: 1.51.2220.53 - Avast Software) Hidden Shark007 Advanced Codecs (HKLM-x32\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 5.2.7 - Shark007) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Sir, You Are Being Hunted (HKLM\...\Steam App 242880) (Version: - Big Robot Ltd) Skyrim NPC Editor (HKLM-x32\...\{5BA9357B-E876-4FB2-8F1B-C7E63AC90E6F}) (Version: 0.75.1 - foretrenty) Skyrim Performance Monitor (HKLM-x32\...\{84AEB93A-ECBB-4568-8F59-D4516EF59079}) (Version: 3.54 - SirGarnon on Skyrim Nexus) SlimDX Runtime .NET 2.0 (January 2012) (HKLM-x32\...\{014A2868-BE56-4888-A16C-693989B8F153}) (Version: 2.0.13.43 - SlimDX Group) Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.02 - Creative Technology Limited) Sound Blaster Tactic(3D) (HKLM-x32\...\{92000C16-939B-44CA-802F-0D552019D7C8}) (Version: 1.0 - Creative Technology Limited) Spooky's House of Jump Scares (HKLM\...\Steam App 356670) (Version: - Lag Studios) Spore (HKLM-x32\...\Steam App 17390) (Version: - Maxis™) Spore: Creepy & Cute Parts Pack (HKLM-x32\...\Steam App 17440) (Version: - Maxis™) Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 8.0.0.13 - Bioware/EA) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) StarParse (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\{fxApplication}}_is1) (Version: 0.4 - Ixale) StarParse (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\{fxApplication}}_is1) (Version: 1.0 - Ixale) State of Decay (HKLM-x32\...\Steam App 241540) (Version: - Undead Labs) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Super User Run (SuRun) (HKLM\...\SuRun) (Version: 1.2.1.0 - Kay Bruns) Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.018 - MSI) Survivalist (HKLM\...\Steam App 340050) (Version: - Bob the Game Development Bot) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TES Construction Set (HKLM-x32\...\{8245C111-D83F-4C66-BBC6-2424F6116944}) (Version: - ) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) The Long Dark (HKLM-x32\...\Steam App 305620) (Version: - Hinterland Studio Inc.) The Stanley Parable (HKLM-x32\...\Steam App 221910) (Version: - Galactic Cafe) The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD Projekt RED) The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD Projekt RED) Thinking with Time Machine (HKLM-x32\...\Steam App 286080) (Version: - Stridemann) Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.10.1 - Electronic Arts) Tor 0.2.4.20 (HKLM-x32\...\Tor) (Version: - ) TortoiseSVN 1.8.8.25755 (64 bit) (HKLM\...\{7DAA9D5A-ED99-40D2-AA9D-386722FE105A}) (Version: 1.8.25755 - TortoiseSVN) Trine (HKLM-x32\...\Steam App 35700) (Version: - Frozenbyte) Trine 2 (HKLM-x32\...\Steam App 35720) (Version: - Frozenbyte) Tropico 5 (HKLM-x32\...\Steam App 245620) (Version: - Haemimont Games) Tunatic (HKLM-x32\...\Tunatic) (Version: - ) TuxGuitar (HKLM-x32\...\{03534DA5-2F88-4B8E-A978-849B979E1B8F}) (Version: 1.2 - Herac) TuxGuitar (HKLM-x32\...\TuxGuitar 1.3.2) (Version: 1.3.2 - TuxGuitar) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Ultima Online 2D (HKLM-x32\...\UltimaOnline) (Version: - ) Ultima Online Classic Client (HKLM-x32\...\Ultima Online Classic) (Version: - Electronic Arts) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.5 - MSI) Vidalia 0.2.21 (HKLM-x32\...\Vidalia) (Version: - ) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment) Warframe (HKLM\...\Steam App 230410) (Version: - Digital Extremes) Welcome to the Game (HKLM\...\Steam App 485380) (Version: - Reflect Studios) Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc) Windows XP Mode (HKLM\...\{1374CC63-B520-4f3f-98E8-E9020BF01CFF}) (Version: 1.3.7600.16422 - Microsoft Corporation) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) World of Guns: Gun Disassembly (HKLM-x32\...\Steam App 262410) (Version: - Noble Empire Corp.) Worms Reloaded (HKLM-x32\...\Steam App 22600) (Version: - Team17 Software Ltd.) Wrye Mash (HKLM-x32\...\Wrye Mash) (Version: - Wrye) x64 Components v5.2.7 (HKLM\...\Advanced x64Components_is1) (Version: 5.2.7 - Shark007) Zombie Army Trilogy (HKLM\...\Steam App 301640) (Version: - Rebellion) ZoneAlarm LTD Toolbar (HKLM\...\ZoneAlarm LTD Toolbar) (Version: - Check Point Software Technologies) ZoneAlarm Security Toolbar (x32 Version: 1.8.11.11 - Check Point Software Technologies LTD) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {08F46511-2271-4082-B341-BE138956196C} - System32\Tasks\{388D7FD6-08A5-4CDC-B8A7-5931CE8EB1DC} => G:\install\program\setup.exe Task: {0D774239-1098-4164-A82B-504FFE739A92} - System32\Tasks\elevated_MGEXEgui_1~WORROM1~SEHTEB1~ARGORPE => E:\Programme\Bethesda Softworks\Morrowind\MGEXEgui.exe [2012-08-29] (MGE Developers) Task: {1906463B-7AA8-481B-AEF9-036960ED32C6} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {19DE7F08-52B5-42BD-9045-F048057BAA28} - System32\Tasks\{18CA5F17-A87F-4D24-A106-8E88B5C080DD} => pcalua.exe -a G:\Setup.exe -d G:\ Task: {5548C565-CDBC-474B-9578-59E1C7B2AB02} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {6B9359F8-383D-4212-ABE4-2BB339DA3E65} - System32\Tasks\{EC2FFF75-0CD2-4E2E-9CE0-77C1D99B189E} => G:\install\program\setup.exe Task: {6EE8D583-1D4B-4FD9-9640-4512D80677C4} - System32\Tasks\SafeZone scheduled Autoupdate 1471620393 => C:\Programme\AVAST Software\SZBrowser\launcher.exe Task: {74221EED-75DD-49AB-989A-7E49A319F8AC} - System32\Tasks\avast! Emergency Update => C:\Programme\AVAST Software\Avast\AvastEmUpdate.exe Task: {7FEABA14-136D-476E-A368-9940BBB15F22} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-03-30] (Microsoft Corporation) Task: {84E92F97-DF11-4196-9590-65F8F900751C} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario GameMachine-V2 => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-04-09] (Microsoft Corporation) Task: {956770CC-38C1-47BB-8C72-FBB237157DDE} - System32\Tasks\HWiNFO => E:\Programme\HWiNFO64\HWiNFO64.EXE [2015-07-20] (REALiX) Task: {B6AD97E3-76A1-4E94-85B2-A0CE961DED6C} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario (Neu) GameMachine-V2 => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-04-09] (Microsoft Corporation) Task: {B8C19131-1F5E-4C7D-A41B-7676E552CA75} - System32\Tasks\elevated_Morrowind_1~WORROM1~SEHTEB1~ARGORPE => E:\Programme\Bethesda Softworks\Morrowind\Morrowind.exe [2013-10-30] (Bethesda Softworks) Task: {BDF9D442-E7B8-4505-86CC-364D27EDF0D3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-02-14] (Adobe Systems Incorporated) Task: {C9626367-7665-4D17-BE21-19D33DC33870} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {DA8F81CB-02B5-4547-93F4-62F164C94C5A} - System32\Tasks\Run as Admin\Morrowind Starter => E:\Programme\Bethesda Softworks\Morrowind\Morrowind Launcher.exe [2003-05-27] (Bethesda Softworks) Task: {E163F176-D78E-44F6-B371-725D6C3825CA} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-01-27] (AVAST Software) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Admin\Desktop\Create Account For Ultima Online.lnk -> hxxp://www.ultima-registration.com ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-08-22 16:10 - 2016-08-11 12:49 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-03-20 16:41 - 2014-04-14 20:47 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-04-30 14:22 - 2013-04-30 14:22 - 00490496 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe 2011-05-09 19:46 - 2011-05-09 19:46 - 02760192 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtCore4.dll 2011-05-09 19:56 - 2011-05-09 19:56 - 09856000 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtGui4.dll 2011-05-09 19:47 - 2011-05-09 19:47 - 00416256 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtXml4.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00217600 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFCommon.dll 2011-05-10 11:32 - 2011-05-10 11:32 - 00731648 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\qwt5.dll 2011-05-09 19:48 - 2011-05-09 19:48 - 00990720 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtNetwork4.dll 2013-10-19 16:15 - 2014-03-24 09:36 - 00366080 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL 2015-07-04 13:50 - 2014-08-30 06:59 - 03900928 _____ () F:\WinAuth.exe 2013-04-30 14:22 - 2013-04-30 14:22 - 00553984 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe 2013-04-30 14:22 - 2013-04-30 14:22 - 00404992 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modApplications.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00036864 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modFeatures.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00025088 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modFraps.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00240128 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modGraph.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00062464 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modlcd.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00291328 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modNetwork.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00184832 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modNpu.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00211456 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modOptions.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00064000 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modOverview.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00317440 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modSystemInfo.dll 2014-02-28 10:14 - 2017-02-15 21:42 - 00176408 _____ () E:\Programme\TeamSpeak 3 Client\quazip.dll 2014-08-04 14:43 - 2017-02-15 21:42 - 00107288 _____ () E:\Programme\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2014-08-04 14:43 - 2017-02-15 21:42 - 00121624 _____ () E:\Programme\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2017-02-15 21:42 - 2017-02-15 21:42 - 00134144 _____ () E:\Programme\TeamSpeak 3 Client\config\plugins\gamepad_joystick_win64.dll 2017-02-03 03:14 - 2017-02-03 03:14 - 09645056 _____ () E:\Programme\TeamSpeak 3 Client\config\plugins\rp_soundboard_win64.dll 2013-03-11 09:17 - 2013-03-11 09:17 - 00119808 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe 2017-01-11 17:09 - 2016-06-14 21:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2013-10-19 16:15 - 2012-10-31 14:00 - 00991232 ____N () C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\de-DE\SBCinema.resources.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_ctypes.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_socket.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_ssl.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 05812736 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtGui.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00067584 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\sip.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 01662464 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtCore.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00494592 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtNetwork.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32api.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pywintypes26.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\select.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_hashlib.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32process.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00111104 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32file.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00044544 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_sqlite3.pyd 2011-02-15 19:17 - 2011-02-15 19:17 - 00417501 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\sqlite3.dll 2010-11-22 23:57 - 2010-11-22 23:57 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32gui.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00313856 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtWebKit.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00127488 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pyexpat.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00009216 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\winsound.pyd 2015-10-21 21:29 - 2015-10-21 21:29 - 00113171 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libvlc.dll 2015-10-21 21:29 - 2015-10-21 21:29 - 02396691 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libvlccore.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00583680 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\unicodedata.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00324608 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PIL._imaging.pyd 2015-06-27 00:09 - 2015-06-27 00:09 - 00271872 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\amd_ags.dll 2017-01-11 17:05 - 2016-08-11 15:31 - 00695136 _____ () C:\Windows\system32\nvfatbinaryLoader.dll 2016-09-28 22:53 - 2016-09-28 22:53 - 02620112 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\ltc_host_ex.DLL 2010-11-22 23:56 - 2010-11-22 23:56 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pythoncom26.dll 2010-11-22 23:57 - 2010-11-22 23:57 - 00263168 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32com.shell.shell.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00141312 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\gobject._gobject.pyd 2016-04-19 18:08 - 2016-04-19 18:08 - 02717595 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\heliotrope._purple.pyd 2011-02-15 19:17 - 2011-02-15 19:17 - 01213633 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libxml2-2.dll 2010-11-23 00:06 - 2010-11-23 00:06 - 00055808 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\zlib1.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 00495680 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libaim.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 01183699 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\liboscar.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 00483306 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libicq.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00655356 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libirc.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 01306387 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libmsn.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 00565461 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libxmpp.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 01640221 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libjabber.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 00506276 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libyahoo.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 01053730 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libymsg.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00497782 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libyahoojp.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00603326 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\ssl-nss.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00474199 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\ssl.dll 2016-10-26 19:42 - 2016-12-23 19:28 - 00657184 _____ () E:\Programme\Steam\SDL2.dll 2016-10-26 19:42 - 2016-09-01 02:02 - 04969248 _____ () E:\Programme\Steam\v8.dll 2016-10-26 19:42 - 2016-09-01 02:02 - 01563936 _____ () E:\Programme\Steam\icui18n.dll 2016-10-26 19:42 - 2016-09-01 02:02 - 01195296 _____ () E:\Programme\Steam\icuuc.dll 2016-10-26 19:42 - 2017-01-19 02:30 - 02327840 _____ () E:\Programme\Steam\video.dll 2016-10-26 19:42 - 2016-01-27 08:49 - 02549760 _____ () E:\Programme\Steam\libavcodec-56.dll 2016-10-26 19:42 - 2016-01-27 08:49 - 00442880 _____ () E:\Programme\Steam\libavutil-54.dll 2016-10-26 19:42 - 2016-01-27 08:49 - 00491008 _____ () E:\Programme\Steam\libavformat-56.dll 2016-10-26 19:42 - 2016-01-27 08:49 - 00332800 _____ () E:\Programme\Steam\libavresample-2.dll 2016-10-26 19:42 - 2016-01-27 08:49 - 00485888 _____ () E:\Programme\Steam\libswscale-3.dll 2016-10-26 19:42 - 2017-01-19 02:30 - 00838432 _____ () E:\Programme\Steam\bin\chromehtml.DLL 2016-10-26 19:42 - 2016-07-04 23:17 - 00266560 _____ () E:\Programme\Steam\openvr_api.dll 2016-12-13 15:03 - 2017-01-05 04:12 - 68813088 _____ () E:\Programme\Steam\bin\cef\cef.win7\libcef.dll 2016-10-26 19:42 - 2017-01-19 02:30 - 00383776 _____ () E:\Programme\Steam\steam.dll 2016-10-26 19:42 - 2015-09-25 00:52 - 00119208 _____ () E:\Programme\Steam\winh264.dll 2013-10-19 16:16 - 2013-05-17 00:06 - 01199576 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 02603520 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtCore4.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 00382464 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtXml4.dll 2010-01-12 15:55 - 2010-01-12 15:55 - 00400384 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\sqlite3.dll 2010-01-12 15:55 - 2010-01-12 15:55 - 00322048 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\log4cplus.dll 2013-03-07 11:53 - 2013-03-07 11:53 - 00015872 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\featureController.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 01006592 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtNetwork4.dll 2010-12-16 11:16 - 2010-12-16 11:16 - 00195584 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\libgsoap.dll 2010-01-17 22:34 - 2010-01-17 22:34 - 00062464 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\zlib1.dll 2013-03-07 11:55 - 2013-03-07 11:55 - 00472576 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\DeviceProfile.dll 2013-03-07 11:58 - 2013-03-07 11:58 - 00499488 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\plugin\PServerPlugin.dll 2013-03-07 11:54 - 2013-03-07 11:54 - 00013824 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\eventsSender.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 14978048 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtWebKit4.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 00317952 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\phonon4.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 09224704 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtGui4.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\ixparse.com -> hxxps://ixparse.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\ixparse.com -> hxxps://ixparse.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\sony.com -> sony.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin 2\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\Control Panel\Desktop\\Wallpaper -> F:\Mario\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupreg: Launch => E:\Programme\Rapoo\RpWireless\Launch.exe MSCONFIG\startupreg: LedStatus => E:\Programme\Rapoo\RpWireless\LedStatus.exe ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{EEFCB3FC-6B23-4743-92E4-629A926CC733}] => (Allow) E:\Programme\Winamp\winamp.exe FirewallRules: [{12E7C1F4-E356-4E71-8C1E-8CC6C9971BCD}] => (Allow) E:\Programme\Winamp\winamp.exe FirewallRules: [TCP Query User{6F949512-A1E5-4DAD-9C30-318847F2B0BF}E:\programme\atari\boiling point\xenus.exe] => (Block) E:\programme\atari\boiling point\xenus.exe FirewallRules: [UDP Query User{185B3CD7-211A-4389-9932-AA12E63C27C2}E:\programme\atari\boiling point\xenus.exe] => (Block) E:\programme\atari\boiling point\xenus.exe FirewallRules: [{9C12803F-CD44-4C0A-9164-1632DE8859AB}] => (Allow) E:\Programme\Steam\Steam.exe FirewallRules: [{C692D8AC-9BEE-4D9C-89D7-9EC8BC83A1D5}] => (Allow) E:\Programme\Steam\Steam.exe FirewallRules: [{A0D8E05F-6F08-44E0-80AA-1469C5CA27F9}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{8E1CB539-CF5C-48EB-8A76-DC664D810FA9}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{A996593D-68FC-473D-9384-3C14B11BF59A}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{2A007F80-C19F-4740-92B5-6C42F8325621}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{8FF67B2E-073F-4E8A-8ABA-D986F005F363}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{649F89D7-D125-4497-9E1C-FD72AE75B163}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{34FE88C4-7C2D-4417-9248-6D67AE8516A8}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{879A980F-A65F-4904-9B64-38EFF68EE975}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{A224B231-B106-48D7-A992-071D756BFDFC}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\CreationKit.exe FirewallRules: [{84D64C75-6B86-49B5-9682-9C279216B18E}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\CreationKit.exe FirewallRules: [{F2625C47-1E50-4FF7-9B92-EFC36A17F78E}] => (Allow) C:\Users\Admin\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{3248AC48-9B8A-4DF0-AA39-A32AE109AB5C}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe FirewallRules: [{666AF4FB-C6D1-4403-B11F-136D3F7E08BD}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe FirewallRules: [{99D13FC0-5521-4070-AB4A-0D3C3CA765D3}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\xrEngine.exe FirewallRules: [{B8952B89-4608-485E-8617-D0A9E8CC6A78}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\xrEngine.exe FirewallRules: [{0368768B-9C7D-4D38-8F9C-D308A5CE413B}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\dedicated\xrEngine.exe FirewallRules: [{F37DFA01-5F33-465D-8254-1B3B74EBA307}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\dedicated\xrEngine.exe FirewallRules: [{9B971368-72AF-456E-86B9-64E0BA34F5FE}] => (Allow) E:\Programme\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{FA390130-2608-497D-BC8C-80E730944DDE}] => (Allow) E:\Programme\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{A2987144-1F57-4886-A7DE-22263D30540C}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe FirewallRules: [{AD5FD78A-8CDA-41E1-956B-9C4688882C31}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe FirewallRules: [{B22B972C-F14F-436B-88FF-CB446C1DFC7A}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe FirewallRules: [{E17F8923-94AA-4545-BF27-76285EACD30F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe FirewallRules: [{8C8A6152-4A4D-4FCA-8C4A-B81D584811E1}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe FirewallRules: [{CA5EC57C-E941-43DC-812B-363FC570879F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe FirewallRules: [{978C280A-3BE9-463D-BB00-00C1325C5AA7}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallen Earth F2P\FEUpdater.exe FirewallRules: [{BDAD53CC-D1DA-4AC0-8267-5F6A922DD316}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallen Earth F2P\FEUpdater.exe FirewallRules: [{BB2EB4B1-B9D2-4CB5-9BDF-C241D2CE7551}] => (Allow) E:\Programme\Steam\SteamApps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{0104453B-62D6-40F0-B7B5-C1B7CA619924}] => (Allow) E:\Programme\Steam\SteamApps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{03C47956-F7EF-4604-8F0B-925F154754A8}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{5837C452-BF24-4759-B713-2BA502342F31}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{6A601DDD-C07D-4216-9A51-FC95639F793D}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{C6485EB1-DC3A-49D5-9E87-8FDE6F42D772}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{A64A2448-AF1F-42C6-9191-167575E94C02}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{068C3062-CE21-4AE7-8B61-3249752FDB6F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{51F19C76-CF1B-4634-A559-A63C86066B61}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{88187ED0-B074-4566-A876-48E4600A43C8}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{913536F3-71E0-4F34-AAE3-058CFCCCFF15}] => (Allow) E:\Programme\Steam\SteamApps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{74CB8DC9-AC24-4321-A736-58E527B2F592}] => (Allow) E:\Programme\Steam\SteamApps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{5860A5DC-8FD4-4CC6-B7E0-1F194C0B1166}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{9F817628-CD3F-43A8-AC19-95358C79D987}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{EB6B6128-5FF5-4FF4-843E-8C6FC05BE340}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{A08AF998-00F3-4C83-BFCB-81B3BD4F5415}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{14100FF9-0566-435C-8797-6CA55C714894}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe FirewallRules: [{EC2E4105-407F-420D-966C-5BC3DD583827}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe FirewallRules: [{00625A7A-8183-4323-BF48-6541019862AD}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe FirewallRules: [{527C0B53-E689-4795-809D-786BCF5C7120}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe FirewallRules: [{825FE612-48E0-4D09-B235-BBE86070CF6C}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe FirewallRules: [{1163CAE5-448A-4740-929D-EA4BFA7D72E6}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe FirewallRules: [{8B8FFC75-7B4C-46F5-82CC-4C5CE4F10592}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe FirewallRules: [{72545882-ACAB-452E-8D0A-B9637F767FCB}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe FirewallRules: [{A83EEE18-3359-4BC3-A4C5-BA1176CD08BA}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRSP.exe FirewallRules: [{8F488884-2BFD-4AE6-B796-1DE90AB08B96}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRSP.exe FirewallRules: [{48643EB6-A8AF-40F6-8522-1EFC4B81F0D5}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{56522616-6883-48A2-BAB7-0A139857DFD8}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{4615D667-B036-46B0-8962-4D783928A631}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe FirewallRules: [{2C0F62CF-8118-43ED-B402-322EF15A0ED5}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe FirewallRules: [{A91E5F87-D824-48D6-8FCF-23628C205C61}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\Avatar.exe FirewallRules: [{C4BE67D0-1353-47A9-B833-F7A1A57C1D1F}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\Avatar.exe FirewallRules: [{3F91A2D1-E528-44F6-9DE6-CD6CAFEECD23}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\AvatarLauncher.exe FirewallRules: [{95136FBC-00C1-4D2C-85E2-22E875B8BB43}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\AvatarLauncher.exe FirewallRules: [{54393422-00DA-488B-9A54-F953AEB4F1BD}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage.exe FirewallRules: [{B30B1273-A057-49B0-BECA-6F238C0E7C7A}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage.exe FirewallRules: [{454447EF-B759-42D3-A922-584279121841}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage64.exe FirewallRules: [{2307E41B-0033-47AE-9F09-A626C7849367}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage64.exe FirewallRules: [{F8C714F6-61FF-4962-9674-042FDB622A51}] => (Allow) E:\Unreal Development Kit\No Return V11250\Binaries\Win32\UDK.exe FirewallRules: [{9EE183A2-2883-4788-A25B-1C6014D03E55}] => (Allow) E:\Unreal Development Kit\No Return V11250\Binaries\Win32\UDK.exe FirewallRules: [{E43E35D8-F4ED-4342-89EA-0C4BEC7DE286}] => (Allow) E:\Programme\Steam\SteamApps\common\HauntedMemories\HM.exe FirewallRules: [{7C5088D8-0334-4F04-97AF-01E2D80C5806}] => (Allow) E:\Programme\Steam\SteamApps\common\HauntedMemories\HM.exe FirewallRules: [{20AA8D3A-1210-4501-8435-559559C2BBAD}] => (Allow) E:\Programme\Steam\SteamApps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{130D9E54-4529-44D6-B96C-ABA665E54350}] => (Allow) E:\Programme\Steam\SteamApps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{EFD4A31F-B644-44E2-9070-630145BB5AF9}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\TWTM.exe FirewallRules: [{EC43B800-C772-4602-9ACE-3269BDC0596B}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\TWTM.exe FirewallRules: [{246DDC2F-A6D4-4684-BE87-D9E8E970B7DD}] => (Allow) E:\Programme\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{661419EC-C7A6-43DC-A64D-97619136F4DD}] => (Allow) E:\Programme\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{531B5E34-0EBE-497B-AA2B-AA24C7F040B6}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{9F445AD7-3E53-4367-B7E6-C0FECAF5C9A4}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{32B41F95-630B-45FE-BB9A-13B12E3BE0E7}] => (Allow) E:\Programme\Steam\SteamApps\common\Only If\Only If.exe FirewallRules: [{189789FB-48F4-4D24-9BB3-F30E1076A60E}] => (Allow) E:\Programme\Steam\SteamApps\common\Only If\Only If.exe FirewallRules: [{CC497C1A-5F01-4CBD-8CAC-ED07A114AAB2}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FarCry2.exe FirewallRules: [{CA927013-3AD5-4034-8012-A9244DD2B951}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FarCry2.exe FirewallRules: [{07DFC13A-3185-4D6F-AEE6-EC5BCDE5075C}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Launcher.exe FirewallRules: [{90D9CBA2-F59B-4226-998F-EDE0547D285C}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Launcher.exe FirewallRules: [{7234B363-B492-4B6D-8CA7-C2695BB21CF7}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Editor.exe FirewallRules: [{994F79BF-0EB7-4374-89BE-1BF0DED4BF30}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Editor.exe FirewallRules: [{52EBFCD9-7C17-4C3E-AF4D-719033E1DF6D}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2ServerLauncher.exe FirewallRules: [{F9F0D9BC-DB18-4CC9-9B9E-E3584C4F06FA}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2ServerLauncher.exe FirewallRules: [{12054756-250F-42D5-A6F8-B39ABDD88B33}] => (Allow) E:\Programme\Steam\SteamApps\common\State of Decay\StateOfDecay.exe FirewallRules: [{5AB8BB9A-FD72-4549-B581-6AF243CCB5AA}] => (Allow) E:\Programme\Steam\SteamApps\common\State of Decay\StateOfDecay.exe FirewallRules: [{E2A1C10B-F4CE-4415-BF4F-74A91284BBF2}] => (Allow) E:\Programme\Steam\bin\steamwebhelper.exe FirewallRules: [{4632D09F-D163-4D13-A8CF-4A09ABB8A146}] => (Allow) E:\Programme\Steam\bin\steamwebhelper.exe FirewallRules: [{8B2EAFB1-2407-4BE2-B181-3890420834A8}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe FirewallRules: [{199A182B-14D6-4EE8-BA4C-559A26331C41}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe FirewallRules: [{D22CD42F-4C50-4FA6-B64A-98194A75D5A6}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe FirewallRules: [{7A1EB2AB-8780-4053-824C-C9EFD47F5FAC}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe FirewallRules: [{0D601019-53F5-409F-8EAE-61F66D222D71}] => (Allow) E:\Programme\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{88B70024-A860-4158-9F06-6A90513766AE}] => (Allow) E:\Programme\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{56BF3432-3F46-4176-930C-CBE7CE5B967F}] => (Allow) E:\Programme\Steam\SteamApps\common\Deadlight\Binaries\Win32\LOTDGame.exe FirewallRules: [{96E8F828-920E-4BDB-A101-135B0F792EE6}] => (Allow) E:\Programme\Steam\SteamApps\common\Deadlight\Binaries\Win32\LOTDGame.exe FirewallRules: [{DAB38168-BABD-41C5-A28A-70E77FCD8B7D}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{69F1D415-99F5-447F-88C5-F2606884B295}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{C21F767B-9B5B-41D9-A344-966EB982C853}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex The Fall\DeusEx_steam.exe FirewallRules: [{A907098B-1AE4-455C-905A-44E647465A16}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex The Fall\DeusEx_steam.exe FirewallRules: [{1221C433-2D6D-4F73-9E24-DD1D26438E83}] => (Allow) E:\Programme\Steam\SteamApps\common\DemoAritanaHF\Aritana.exe FirewallRules: [{AE220B18-C88C-45C6-9BED-D5B6E76B33A0}] => (Allow) E:\Programme\Steam\SteamApps\common\DemoAritanaHF\Aritana.exe FirewallRules: [{08E2FB9A-2240-4023-A18A-BE5E505E130E}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{AACD929C-4657-41BB-9C9F-0947FD67C7E6}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{DD2E7157-F47B-4C71-8DCB-C010EFEDC2F4}] => (Allow) E:\Programme\Steam\SteamApps\common\Monochroma Demo\Monochroma.exe FirewallRules: [{E6CC9140-F6CA-44C7-AB01-58010D7A7758}] => (Allow) E:\Programme\Steam\SteamApps\common\Monochroma Demo\Monochroma.exe FirewallRules: [{93237E32-27CE-4139-BF91-3260E98F47D7}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\SDKLauncher.exe FirewallRules: [{7CB8FA9D-80B5-424A-B4F6-8A68B04295A4}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\SDKLauncher.exe FirewallRules: [{1354260F-95B0-4B8D-96EA-23DB360E09BB}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\p2map_publish.exe FirewallRules: [{9EF60C70-F206-4295-812D-60362C08E5F4}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\p2map_publish.exe FirewallRules: [{68C95498-7221-4BB9-8D85-E008FE6B1EE6}] => (Allow) E:\Programme\Microsoft Visual Studio 12.0\Common7\IDE\WDExpress.exe FirewallRules: [{27038B91-F073-46F0-A10A-EB977BEAB372}] => (Allow) E:\Programme\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{D7414C60-D699-458D-A630-F06F786B4A68}] => (Allow) E:\Programme\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{0169B271-942B-4355-A8F5-D5FE77674ACB}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{A002F34A-E5B5-46A3-BE49-D2D135D6C12B}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [VirtualPC-In-UDP-1] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [VirtualPC-In-UDP-2] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [VirtualPC-In-TCP-1] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [{1D658D95-3901-4B5C-809A-992C757B6711}] => (Allow) E:\Programme\Steam\SteamApps\common\left 4 dead\left4dead.exe FirewallRules: [{FBD891BE-1E31-4F4D-9D94-334F52B8F4CD}] => (Allow) E:\Programme\Steam\SteamApps\common\left 4 dead\left4dead.exe FirewallRules: [{8A7ADE5A-72F0-42A2-9F93-5EF34514EBA9}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\SporeBin\SporeApp.exe FirewallRules: [{3D79E9EF-C435-490C-B939-FC250422D32A}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\SporeBin\SporeApp.exe FirewallRules: [{C09C1EC6-1FFA-4038-A5BB-959155FD30D5}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\runme.exe FirewallRules: [{CC08DA75-39D7-4C40-A83D-61FD4F330ADE}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\runme.exe FirewallRules: [{F6051F21-E015-40F5-90E3-1F2B129F4991}] => (Allow) E:\Programme\Steam\SteamApps\common\I am Alive\src\SYSTEM\IAmAlive_game.exe FirewallRules: [{1E448842-915F-414B-B246-1D3561C16833}] => (Allow) E:\Programme\Steam\SteamApps\common\I am Alive\src\SYSTEM\IAmAlive_game.exe FirewallRules: [{A2265F02-4717-4F88-878D-5E04125C689B}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe FirewallRules: [{8C1A527E-8F17-4DBF-ADD6-A9118F59CE3A}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe FirewallRules: [{1367E60B-80F5-4A8A-9EB0-42491FF5A757}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160_START.exe FirewallRules: [{1BC82058-43B0-4ACC-8E03-FE173B0A28C9}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160_START.exe FirewallRules: [{6C691ACF-B4C3-428E-8E49-E93818E1151D}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160Editor_START.exe FirewallRules: [{9F354513-6B58-44BF-B424-2E1FD760555F}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160Editor_START.exe FirewallRules: [{9B8C0BC8-1204-4108-8540-08A42342E5E4}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro 2033\metro2033.exe FirewallRules: [{B2452605-04B6-44A9-A55B-1221E583D372}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro 2033\metro2033.exe FirewallRules: [{867A92E8-4014-47AC-A627-60785CF8E59B}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JustCause.exe FirewallRules: [{9F252B12-9F37-4C8D-A6D2-C880D2B255AA}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JustCause.exe FirewallRules: [{E52C0C32-CE82-409D-BADC-E760594EB425}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JCSetup.exe FirewallRules: [{20818956-EA85-4DE3-8C47-4E9C271A5EE7}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JCSetup.exe FirewallRules: [{6D22E720-AE24-49A0-B1C3-6B9A845DB673}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{61827246-973F-46E5-BC6D-0B204A28884B}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{65EF2C03-D130-42F8-8309-7FD93C53FB9B}] => (Allow) E:\Programme\Steam\SteamApps\common\Nuclear Dawn\nucleardawn.exe FirewallRules: [{6D624995-CFC1-4CBD-AFBA-8FF36C882030}] => (Allow) E:\Programme\Steam\SteamApps\common\Nuclear Dawn\nucleardawn.exe FirewallRules: [{1C9CB6FD-D2A8-4021-94D3-57E4357ECCA0}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{9BC2D94B-45E9-45AD-8A86-2A17A3E0E682}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{06061685-E6BB-4D5C-81B7-3959B50C7650}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe FirewallRules: [{C491C9EA-B4EC-4712-8CCE-F145D2C2DC18}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe FirewallRules: [{0087ABD4-7BA6-4F30-86A2-DF99EB53BD62}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe FirewallRules: [{D489EE49-6616-4DD3-AA22-0038DAB21A4D}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe FirewallRules: [{D8C86D8D-7635-4D8D-9519-5AC77776EC9D}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe FirewallRules: [{50AD1E80-C99A-4E7A-BD9A-DFC05A046162}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe FirewallRules: [{4C90DAEB-A135-4D62-BB63-63E96195DF11}] => (Allow) E:\Programme\Steam\SteamApps\common\the witcher 2\Launcher.exe FirewallRules: [{08420DA4-4FEF-4540-967C-2F05C681EDE9}] => (Allow) E:\Programme\Steam\SteamApps\common\the witcher 2\Launcher.exe FirewallRules: [{8E62E789-1E8D-407F-B57E-CAE4ADAEFDD7}] => (Allow) E:\Programme\Steam\SteamApps\common\WOG\disasm.exe FirewallRules: [{1E49B5CF-218C-4631-9EF3-52DEA5FAC249}] => (Allow) E:\Programme\Steam\SteamApps\common\WOG\disasm.exe FirewallRules: [{BFF95CE5-9A36-48DF-86F7-8336EE8433E6}] => (Allow) E:\Programme\Steam\SteamApps\common\theHunter\launcher\launcher.exe FirewallRules: [{C58D875C-217F-46B6-9A43-BE68D5691F6B}] => (Allow) E:\Programme\Steam\SteamApps\common\theHunter\launcher\launcher.exe FirewallRules: [{71FEB099-E047-487D-AE76-813718843BA8}] => (Allow) E:\Programme\Steam\SteamApps\common\Worms Reloaded\WormsReloaded.exe FirewallRules: [{E5799A31-53AC-4A45-B3D8-C56ABF5247B1}] => (Allow) E:\Programme\Steam\SteamApps\common\Worms Reloaded\WormsReloaded.exe FirewallRules: [{AB88AB45-2882-4490-A26F-77AE0DAB1C80}] => (Allow) E:\Programme\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{A007B7D3-D9E1-411B-A0BD-4D9AA3584687}] => (Allow) E:\Programme\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{FE8AF1FB-3E8C-4F18-BA53-186D4957B4CF}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\HowToSurvive.exe FirewallRules: [{60F3F7E9-FDC7-4CDA-B977-86CF9A6451AE}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\HowToSurvive.exe FirewallRules: [{EA4D2A64-3343-42B7-8189-BC6F650C79AB}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\Detect.exe FirewallRules: [{720E8303-F213-4BBF-88BB-2445D7E6A9C0}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\Detect.exe FirewallRules: [{DE4F8B60-694B-4872-BEE6-93FB94D98C81}] => (Allow) E:\Programme\Steam\SteamApps\common\Outlast\OutlastLauncher.exe FirewallRules: [{4C0B8814-3EB4-4159-8E5D-B3EA5270E3FC}] => (Allow) E:\Programme\Steam\SteamApps\common\Outlast\OutlastLauncher.exe FirewallRules: [{6FFE53BB-082E-4585-A1AE-F346EF05949B}] => (Allow) E:\Programme\Steam\SteamApps\common\TheLongDark\tld.exe FirewallRules: [{C67CD027-1100-4900-B4A7-9F314B3D576C}] => (Allow) E:\Programme\Steam\SteamApps\common\TheLongDark\tld.exe FirewallRules: [{F855C128-0BA9-4AB1-9DC1-DC93B81BF252}] => (Allow) E:\Programme\Steam\SteamApps\common\Eternal Winter\EternalWinter.exe FirewallRules: [{83C5DD9B-7AE6-465B-A7DC-02AB2CEF1501}] => (Allow) E:\Programme\Steam\SteamApps\common\Eternal Winter\EternalWinter.exe FirewallRules: [{7B100F58-5EC2-4A0F-B929-72D0130F09FC}] => (Allow) E:\Programme\Steam\SteamApps\common\puddle\Launcher.exe FirewallRules: [{F90C0B59-95D6-4D83-9D59-D781D65C027F}] => (Allow) E:\Programme\Steam\SteamApps\common\puddle\Launcher.exe FirewallRules: [{FED79DAC-05FE-4F0A-9926-B0682DB9A77D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{64E3BB37-B8AC-4F0F-A345-695E1D35F064}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{5C4D5E66-1D54-47F6-BBC5-81778B14816A}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{406C1B64-EE31-4F88-A0EF-669724CEA55D}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{684A06A1-9D97-40AC-83DC-0B63BCBE1E88}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{467E7E21-D20A-453F-88F7-EC85B6264F79}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{15E8CA78-B614-4A5F-B8DA-60E1384122DC}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{BAE77290-69AE-4B26-BEF4-8D6609EB7BCC}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{62C52B53-EFEE-4E63-8BC0-7AE4DB7770CD}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{E0951DB9-6A06-4EEF-BB63-C9C19B240C79}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{B60BBE27-9B67-4BE6-966E-A138A61A482E}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{A02892A6-0763-4935-93C7-F34529D988F1}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{9E8F338F-89A3-49C9-9894-06F342CA30E7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{4E154B41-E5A2-4C0E-969E-1106C12F3069}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1C6EFD0F-699F-43CE-A01F-24EA40C16EEA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{629B82B8-58EC-4BFB-B4F7-C70E80C52CFB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D69BAF22-2E31-4249-BECD-AA2D206F6EA1}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid32.exe FirewallRules: [{F1FD5506-8FC8-46CB-B9BF-55E974A25D82}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid32.exe FirewallRules: [{13EEFE8C-212B-4073-9703-3B3E7A77283B}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid64.exe FirewallRules: [{DC334550-EBF8-4FC3-B51E-8DB4C9C5C3CE}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid64.exe FirewallRules: [{33AAEF15-8736-42CA-9D7D-B4EFD5417F8A}] => (Allow) E:\Programme\Steam\SteamApps\common\Lococycle\Launcher.exe FirewallRules: [{C957AACB-023F-4171-82C1-FA2944CD3A09}] => (Allow) E:\Programme\Steam\SteamApps\common\Lococycle\Launcher.exe FirewallRules: [TCP Query User{21D08946-DFC8-4255-811A-C95DC693671E}F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe] => (Allow) F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe FirewallRules: [UDP Query User{AAC5FF8A-3F8D-4081-9D86-ADC053FCB169}F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe] => (Allow) F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe FirewallRules: [{4BD527E6-4095-408D-A659-C70E8B2A1AF7}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{A9F6FEE5-68C3-4398-9495-16777FDCCC2D}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{469F4C42-84E5-4779-82F4-A8C882452A59}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{FFC07E24-3CD0-462C-B916-CE3FFAB90EDD}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{547414C9-2398-4622-B531-EE9FA896C472}] => (Allow) E:\Programme\Steam\SteamApps\common\FarSky\farskyExec.exe FirewallRules: [{1B66F87A-D6A1-4BD9-A81C-02DB770566E8}] => (Allow) E:\Programme\Steam\SteamApps\common\FarSky\farskyExec.exe FirewallRules: [{25A9F05B-1DA8-44EE-B6F4-C36903B42D0B}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders\DarksidersPC.exe FirewallRules: [{71B9CEB6-7C0B-4946-9063-CA1222E4BADE}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders\DarksidersPC.exe FirewallRules: [{3878141E-0455-4186-9640-9B4B97A72F2B}] => (Allow) E:\Programme\Steam\SteamApps\common\The Stanley Parable\stanley.exe FirewallRules: [{5CD2DCE4-8A05-42DC-B948-207272E303F8}] => (Allow) E:\Programme\Steam\SteamApps\common\The Stanley Parable\stanley.exe FirewallRules: [{57E9EF26-00BF-49F4-9E16-D3CF8443561A}] => (Allow) E:\Programme\Steam\SteamApps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe FirewallRules: [{0A2605BD-899E-442E-8BCA-1196D91D5818}] => (Allow) E:\Programme\Steam\SteamApps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe FirewallRules: [{56751053-C56D-4562-8036-D45B65B4FC85}] => (Allow) E:\Programme\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{6D68158A-E426-49B0-B5B3-D06713D472C7}] => (Allow) E:\Programme\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{24919CAC-773E-42EB-A6DD-D594F9B7513B}] => (Allow) E:\Programme\Steam\SteamApps\common\Arx Fatalis\arx.exe FirewallRules: [{B1A71770-A7F6-4D52-9E68-59C88EDF65B7}] => (Allow) E:\Programme\Steam\SteamApps\common\Arx Fatalis\arx.exe FirewallRules: [{69D7F1BD-8997-448A-80B7-61CD811C6959}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe FirewallRules: [{D0D47259-CC65-41E0-857A-4737EDDF8CD7}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe FirewallRules: [{47E3F425-AD51-45EA-8081-03B2EE03C522}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{EAF8C986-2D6A-4591-BB5C-398701739282}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{1C67BA58-91D7-49FA-8742-B37DC3E8AA10}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{36C306FB-BED2-4E6B-8DB8-C9527B4DE06A}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{53CA5307-EF99-4DF3-9356-EB3863C90A10}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{1A5C9DE6-987C-4954-B6E1-7B987A9906C8}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{896C9092-9C05-4F67-8D6D-7B390F0BD660}] => (Allow) E:\Programme\Steam\SteamApps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{0399C45F-3FFE-4D79-BF76-6B8E2051811C}] => (Allow) E:\Programme\Steam\SteamApps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{5494FD02-4BB6-4AED-ADC7-637AE6F9A50B}] => (Allow) E:\Programme\Steam\SteamApps\common\Gigantic Army\GIGANTIC ARMY.exe FirewallRules: [{DEFA9A49-FC1C-4F9F-A368-D0281B683CB8}] => (Allow) E:\Programme\Steam\SteamApps\common\Gigantic Army\GIGANTIC ARMY.exe FirewallRules: [{17655C7F-E99C-4D9B-B8FC-47D80F2DBB44}] => (Allow) E:\Programme\Steam\SteamApps\common\Hacknet\Hacknet.exe FirewallRules: [{BA50C228-8D82-456A-A081-2E6A708D884E}] => (Allow) E:\Programme\Steam\SteamApps\common\Hacknet\Hacknet.exe FirewallRules: [{1A38E074-EC66-418E-B216-C9DE120CD8B1}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\portal2.exe FirewallRules: [{CA2A29DF-B74E-4E6D-AD54-D4E5E646B8C3}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\portal2.exe FirewallRules: [{EE790F5F-43D0-4B7B-8383-114F534AC8AD}] => (Allow) E:\Programme\Steam\SteamApps\common\Belladonna\Belladonna.exe FirewallRules: [{350BA280-A042-47AB-B30E-F7789DE5EFDF}] => (Allow) E:\Programme\Steam\SteamApps\common\Belladonna\Belladonna.exe FirewallRules: [{07DE9620-5D73-4D1E-B339-1433534D7859}] => (Allow) E:\Programme\Steam\SteamApps\common\Asteria\Asteria.exe FirewallRules: [{A6610971-9BBA-48B6-9F9F-786A6684B227}] => (Allow) E:\Programme\Steam\SteamApps\common\Asteria\Asteria.exe FirewallRules: [{B58AB62B-B0C0-48B3-BE60-339656FDF24A}] => (Allow) E:\Programme\Steam\SteamApps\common\FireflyOnlineCortex\FireflyCortex.exe FirewallRules: [{ABF43631-1243-49CC-A9A7-AF8A23957F34}] => (Allow) E:\Programme\Steam\SteamApps\common\FireflyOnlineCortex\FireflyCortex.exe FirewallRules: [{29AB27DC-EF79-495C-9F35-6AC7E76FCA48}] => (Allow) E:\Programme\Steam\SteamApps\common\Tropico 5\Tropico5Steam.exe FirewallRules: [{28D8B1A2-FA3C-4F48-A6BC-6862C2E3D2B9}] => (Allow) E:\Programme\Steam\SteamApps\common\Tropico 5\Tropico5Steam.exe FirewallRules: [{500B497E-BF2A-4807-8805-5C36819F3A65}] => (Allow) E:\Programme\Steam\SteamApps\common\deadrising3\deadrising3.exe FirewallRules: [{8A15FF9E-FB1F-4BED-9689-7BDEB415D5C8}] => (Allow) E:\Programme\Steam\SteamApps\common\deadrising3\deadrising3.exe FirewallRules: [{6AD1C471-E657-47E4-9948-E2EAA8C5827A}] => (Allow) E:\Programme\Raptr\raptr.exe FirewallRules: [{E7120C0F-DA07-4CE5-A18E-C6E2335B5755}] => (Allow) E:\Programme\Raptr\raptr.exe FirewallRules: [{824F109A-F249-4F02-B083-DC043B91F024}] => (Allow) E:\Programme\Raptr\raptr_im.exe FirewallRules: [{88A82BE7-1D54-437B-8F1B-E3AAFB12282A}] => (Allow) E:\Programme\Raptr\raptr_im.exe FirewallRules: [{B51E0A67-1F75-4176-9161-7B3C438AB1C8}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{37998796-4457-4AC0-A924-66BEC33C4C15}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{904FCC2C-2D6E-4A2C-A77E-ACA5DD6C1563}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{F3C3DA91-BBAE-4486-9E11-0323805E0E33}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{B21BFEDC-6C47-476A-AC4D-EE652C4FC7D4}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine 2\trine2_launcher.exe FirewallRules: [{7DADEF67-570E-445F-AFC9-0903636EDFE0}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine 2\trine2_launcher.exe FirewallRules: [{775DD720-945A-4338-939E-0AEECAE1A38D}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{D6EA4748-9289-4263-B665-7D977190B5D0}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{0CC5C1BB-D365-4D7B-8C9C-78DA56E87800}] => (Allow) E:\Programme\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{6BBF153E-B909-4CEF-9162-9523E9E1FC45}] => (Allow) E:\Programme\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{C64A06CA-1E26-4F99-BB8E-2A204500B95F}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{D2B96CED-A09B-4B31-B186-6414BBE2542C}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{5FE7157C-E9CA-49F5-AE0D-5A1E445F78DE}] => (Allow) E:\Programme\Steam\SteamApps\common\Robocraft\Robocraft.exe FirewallRules: [{8ACD0E24-C19C-434C-AFF3-CBBAFB7CA35F}] => (Allow) E:\Programme\Steam\SteamApps\common\Robocraft\Robocraft.exe FirewallRules: [{F2A3118E-77DE-42D6-A71A-7DB6CD5DABF1}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{1266AE14-B26F-4EF5-A5A3-D757A13B524C}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{8BCAEBC9-8724-4687-99F8-104361A69B2C}] => (Allow) E:\Programme\Steam\SteamApps\common\Spooky's House of Jump Scares\SPOOKY.exe FirewallRules: [{E8C8051F-7C59-4307-A8E4-240D0C4049A3}] => (Allow) E:\Programme\Steam\SteamApps\common\Spooky's House of Jump Scares\SPOOKY.exe FirewallRules: [{DC53B0BB-71AD-45CB-8511-A699554E48B2}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro Last Light\MetroLL.exe FirewallRules: [{EA741A4D-D829-4C49-8F52-07840FEBED7F}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro Last Light\MetroLL.exe FirewallRules: [{B12DA3A5-3617-432A-AD5D-94285389B1EE}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{53F98E63-7D44-4F92-823D-54B1088A8EFC}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{3E95A19F-796B-46D6-BDB3-AB6B112A1A0E}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{C6BA2803-61CB-412F-8F4D-B3B5236BFD2F}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{FB39A534-AA11-4BDB-BF1B-A8B8A77A9886}] => (Allow) E:\Programme\Steam\SteamApps\common\DayOne\Binaries\Win32\DayOne.exe FirewallRules: [{8873948A-AD42-45E5-A634-4D0BE5620149}] => (Allow) E:\Programme\Steam\SteamApps\common\DayOne\Binaries\Win32\DayOne.exe FirewallRules: [{A98BCC7F-50E2-4A9C-BA0A-01BA3EB8BE44}] => (Allow) E:\Programme\Steam\SteamApps\common\PlagueInc\PlagueIncEvolved.exe FirewallRules: [{AA44D748-456F-48BA-9EF6-31D2CA62021C}] => (Allow) E:\Programme\Steam\SteamApps\common\PlagueInc\PlagueIncEvolved.exe FirewallRules: [{FC0497D3-F7FB-470C-A419-D7C9C485A5CA}] => (Allow) E:\Programme\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{3ECBA115-136F-4642-B4B9-3936C399F24F}] => (Allow) E:\Programme\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{C727F522-DC36-4CD9-B52A-97D01CB22CDF}] => (Allow) E:\Programme\Steam\SteamApps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe FirewallRules: [{E869A9C2-3E54-4B4F-A83F-4007C0EFEEE1}] => (Allow) E:\Programme\Steam\SteamApps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe FirewallRules: [{41B684D9-E240-43B8-9B4A-61882EDD702B}] => (Allow) E:\Programme\Steam\SteamApps\common\Cradle\bin\cradle_x64.exe FirewallRules: [{669F8ED7-0B3E-49FD-9E53-D3E715207184}] => (Allow) E:\Programme\Steam\SteamApps\common\Cradle\bin\cradle_x64.exe FirewallRules: [{462C80C9-4B95-412D-98E8-CD4B39564E20}] => (Allow) E:\Programme\Steam\SteamApps\common\Empyrion - Galactic Survival\EmpyrionLauncher.exe FirewallRules: [{D1971867-0D3F-4DAF-AF06-E413F2933990}] => (Allow) E:\Programme\Steam\SteamApps\common\Empyrion - Galactic Survival\EmpyrionLauncher.exe FirewallRules: [{51B438AB-18C6-4AAD-B56E-C6FD3ACFF7C6}] => (Allow) E:\Program Files (x86)\Origin Games\Titanfall\Titanfall.exe FirewallRules: [{B5C34FAB-0AFF-4F15-94B0-F481C74FDC63}] => (Allow) E:\Program Files (x86)\Origin Games\Titanfall\Titanfall.exe FirewallRules: [{AA6E4522-5E3A-4B12-9047-34D0F8C3D9D3}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7dLauncher.exe FirewallRules: [{BEF82D7D-9860-41FB-AB90-28AC86C21172}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7dLauncher.exe FirewallRules: [{90388FD0-C553-4B37-9DC5-872FF97E6583}] => (Allow) E:\Programme\Steam\SteamApps\common\Welcome to the Game\WTTG.exe FirewallRules: [{4DB90EE4-AA4F-4633-92A9-1F9B73120B11}] => (Allow) E:\Programme\Steam\SteamApps\common\Welcome to the Game\WTTG.exe FirewallRules: [{B54D40D5-4523-40E7-B09A-56277AE04B9C}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{5C409637-6DAA-460E-ACDA-B649FFE5471D}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{778089E1-8305-4ADC-91C0-5F9C9EFF3229}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{9CA527FD-B4D3-45B5-A425-EC1D6DCA40B0}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{36CF8920-6C05-4568-BEFB-F791C81EFF4A}] => (Allow) E:\Programme\Steam\SteamApps\common\RaceTheSun\RaceTheSun.exe FirewallRules: [{E6A3A06C-AAB9-4143-8FC3-2F37235DAD3D}] => (Allow) E:\Programme\Steam\SteamApps\common\RaceTheSun\RaceTheSun.exe FirewallRules: [{67DC53B5-F379-42DF-8C9D-99E4734EC5B2}] => (Allow) E:\Programme\Steam\SteamApps\common\Residue\Residue.exe FirewallRules: [{ACF967D1-5064-4038-8D62-0074F834EBAE}] => (Allow) E:\Programme\Steam\SteamApps\common\Residue\Residue.exe FirewallRules: [{A0E07E58-0BBB-4D9A-9439-10A8D4C52144}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [{550CD682-112D-48DD-91AE-CA9ABA63B110}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [{48749744-9D27-4586-9575-6B0213641C98}] => (Allow) E:\Programme\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe FirewallRules: [{465AB5EF-15AB-4B41-A254-5D46C1421CA3}] => (Allow) E:\Programme\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe FirewallRules: [{CE5076B7-080A-4731-9182-BF53B00183F6}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\deponia.exe FirewallRules: [{58038BB6-F8D2-41EB-8789-AC4D59F53F18}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\deponia.exe FirewallRules: [{EF60B368-C0A4-4FCD-AFD8-347962BB20D1}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{1A46C43F-2EC8-4BD4-9A5D-0F17BC3F89F3}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{819D3B54-9B7E-4E5E-A4B6-013615923240}] => (Allow) E:\Programme\Steam\SteamApps\common\GearUp\bin\Traktor.Amalgam.App.exe FirewallRules: [{08F5090E-9637-45CC-BE73-85178735F486}] => (Allow) E:\Programme\Steam\SteamApps\common\GearUp\bin\Traktor.Amalgam.App.exe FirewallRules: [{6AAB52DB-14ED-4B78-83BF-B490780E36CD}] => (Allow) E:\Programme\Steam\SteamApps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{ECC4AF87-E273-4E25-8731-0D76DE7DFF8B}] => (Allow) E:\Programme\Steam\SteamApps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{16707230-36F3-40B6-9D86-34DB5747D09C}] => (Allow) E:\Programme\Steam\SteamApps\common\Survivalist\Survivalist.exe FirewallRules: [{0E48290C-F0D0-470D-BAE5-4F12228077D2}] => (Allow) E:\Programme\Steam\SteamApps\common\Survivalist\Survivalist.exe FirewallRules: [{675CB024-B5D1-4D9B-ADD6-ABC0504BBB07}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned_BE.exe FirewallRules: [{4C93D55D-E36B-4AB1-ADF8-57C9899CB007}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned_BE.exe FirewallRules: [{765F9F3D-A6B2-41AF-AA32-6C5B9B561017}] => (Allow) E:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{99B3E4DF-DA88-44E6-9CF4-323FE6D9DC58}] => (Allow) E:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{91A727AF-6FD5-4AE7-B962-722562E23FBA}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{E8080FDD-AF36-42C3-92D5-41026AD8D255}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{CA07C9E2-6E49-41F6-BF62-537E7EF03499}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5A060D14-0733-4212-B288-566A3F5E52A9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5E6F4CDC-C3B1-4A20-8D29-5ADB7C8633DD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{A265EE0C-63AD-4CE7-A60A-1BA75A440EC6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{0AD5F744-0D23-4BC2-A225-675F3699573D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{32FF1D8F-FCB6-4344-A26B-C10307BF103C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{D0A0EBEC-A09B-409A-8122-334791522967}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{1972C592-476E-404D-B665-4AF9F955A407}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{8E09DE4B-B32F-47A1-B5A4-912FF8692FB5}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{0EC48E67-B1B2-4000-9534-F8E54BA166B9}] => (Allow) E:\Programme\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{7D4D1A0A-69E1-46AE-9F0D-1600CA3E00F2}] => (Allow) E:\Programme\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{A7C4685D-1BDC-4194-BF15-99FF63308B5A}] => (Allow) E:\Programme\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe FirewallRules: [{846D6DBD-4025-42B1-A99E-BE8E970E8387}] => (Allow) E:\Programme\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe FirewallRules: [{FCDD869A-FE3F-46C6-BE26-9AAAB87D4A6A}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [TCP Query User{F867F7D6-8BEC-435A-A270-1C08DC704BCB}E:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{4D76655A-6000-49BC-9079-D7B0784ADA67}E:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\programme\rockstar games\grand theft auto v\gta5.exe ==================== Wiederherstellungspunkte ========================= 13-02-2017 18:02:34 Windows Update 14-02-2017 02:21:56 Windows Update 16-02-2017 22:28:58 Entfernt Prince of Persia The Sands of Time 16-02-2017 22:30:12 Entfernt Prince of Persia Warrior Within ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (02/18/2017 12:43:23 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm KFGame.exe, Version 1.0.10897.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: cac Startzeit: 01d2896662930cd2 Endzeit: 334 Anwendungspfad: E:\Programme\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe Berichts-ID: Error: (02/17/2017 10:39:05 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm KFGame.exe, Version 1.0.10897.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 528 Startzeit: 01d2896529793c0e Endzeit: 191 Anwendungspfad: E:\Programme\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe Berichts-ID: Error: (02/17/2017 05:11:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Name des fehlerhaften Moduls: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000004fe100 ID des fehlerhaften Prozesses: 0x500 Startzeit der fehlerhaften Anwendung: 0x01d2893881fd9378 Pfad der fehlerhaften Anwendung: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Pfad des fehlerhaften Moduls: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Berichtskennung: cdb893b5-f52b-11e6-bfa1-d43d7ee3539a Error: (02/17/2017 03:11:24 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x04d41e15 ID des fehlerhaften Prozesses: 0x8b0 Startzeit der fehlerhaften Anwendung: 0x01d28927b340e10e Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: f687c4a8-f51a-11e6-ae02-d43d7ee3539a Error: (02/17/2017 03:11:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x04d50e68 ID des fehlerhaften Prozesses: 0x8b0 Startzeit der fehlerhaften Anwendung: 0x01d28927b340e10e Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: f50ae87d-f51a-11e6-ae02-d43d7ee3539a Error: (02/17/2017 03:10:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x02ac2010 ID des fehlerhaften Prozesses: 0xacc Startzeit der fehlerhaften Anwendung: 0x01d28927848a4049 Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: d3ddb8ff-f51a-11e6-ae02-d43d7ee3539a Error: (02/17/2017 02:17:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x02ea2010 ID des fehlerhaften Prozesses: 0xbb4 Startzeit der fehlerhaften Anwendung: 0x01d289200ebe1c1c Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: 620218e8-f513-11e6-abd2-d43d7ee3539a Error: (02/17/2017 01:31:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Name des fehlerhaften Moduls: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000004fe100 ID des fehlerhaften Prozesses: 0x1680 Startzeit der fehlerhaften Anwendung: 0x01d288b50f741109 Pfad der fehlerhaften Anwendung: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Pfad des fehlerhaften Moduls: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Berichtskennung: 6250696d-f4a8-11e6-a587-d43d7ee3539a Error: (02/17/2017 01:24:10 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm KFGame.exe, Version 1.0.10897.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1520 Startzeit: 01d288afb72e76a5 Endzeit: 559 Anwendungspfad: E:\Programme\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe Berichts-ID: Error: (02/17/2017 12:46:18 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm KFGame.exe, Version 1.0.10897.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 14f8 Startzeit: 01d288aa166f1865 Endzeit: 364 Anwendungspfad: E:\Programme\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe Berichts-ID: Systemfehler: ============= Error: (02/17/2017 10:27:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "VBoxAsw Support Driver" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (02/17/2017 10:27:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Avast Antivirus" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (02/17/2017 04:04:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "VBoxAsw Support Driver" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (02/17/2017 04:04:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Avast Antivirus" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (02/17/2017 03:09:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "VBoxAsw Support Driver" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (02/17/2017 03:09:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Avast Antivirus" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (02/17/2017 02:16:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "VBoxAsw Support Driver" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (02/17/2017 02:16:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Avast Antivirus" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (02/16/2017 10:54:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "VBoxAsw Support Driver" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (02/16/2017 10:54:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Avast Antivirus" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. CodeIntegrity: =================================== Date: 2017-02-17 22:27:24.568 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 17:11:44.594 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 16:26:39.575 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 16:04:42.022 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 16:02:07.603 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 15:51:54.741 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 15:09:44.755 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 14:29:06.460 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 14:16:18.660 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-17 04:45:56.797 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz Prozentuale Nutzung des RAM: 24% Installierter physikalischer RAM: 16328.55 MB Verfügbarer physikalischer RAM: 12397.47 MB Summe virtueller Speicher: 32655.29 MB Verfügbarer virtueller Speicher: 28476.14 MB ==================== Laufwerke ================================ Drive c: (Boot) (Fixed) (Total:99.78 GB) (Free:23.81 GB) NTFS Drive d: (Eigene Dateien) (Fixed) (Total:673.69 GB) (Free:583.8 GB) NTFS Drive e: (Programme) (Fixed) (Total:1122.65 GB) (Free:106.73 GB) NTFS Drive f: (Daten) (Fixed) (Total:673.69 GB) (Free:601.97 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 2794.5 GB) (Disk ID: D46323CE) Partition: GPT. ==================== Ende von Addition.txt ============================ |
18.02.2017, 12:53 | #5 | |
/// TB-Ausbilder | Internetprobleme ohne erkennbare Ursache Servus, also ich sehe jetzt nur etwas unerwünschte Software. Ich schlage vor, wir lassen ein paar Tools laufen und entfernen ggf. ein paar Reste, evtl. läuft es ja dann wieder besser. Was mir noch aufgefallen ist: Zitat:
C:\users\benutzername\desktop "F" ist nicht dein Systemlaufwerk, sondern "C". Wieso hast du FRST vom Laufwerk F ausgeführt? Alles bitte vom normalen Benutzerdesktop ausführen. Schritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2 Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 3 Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 4
Bitte poste mit deiner nächsten Antwort
|
18.02.2017, 15:06 | #6 | |
| Internetprobleme ohne erkennbare Ursache Der Benutzerordner meines Standartkontos liegt nicht auf C:\ sondern auf F:\ und ist lediglich mit einem Hardlink unter C:\users\ vorhanden - hätte ich vielleicht vorher erwähnen sollen, vergesse ich aber hin und wieder selbst. Aber alles kein Problem, dann eben über das Adminkonto. Zu den Logs: AdwCleaner: Code:
ATTFilter # AdwCleaner v6.043 - Bericht erstellt am 18/02/2017 um 13:37:44 # Aktualisiert am 27/01/2017 von Malwarebytes # Datenbank : 2017-02-13.1 [Server] # Betriebssystem : Windows 7 Ultimate Service Pack 1 (X64) # Benutzername : Admin - GAMEMACHINE-V2 # Gestartet von : C:\Users\Admin\Desktop\AdwCleaner_6.043.exe # Modus: Löschen # Unterstützung : https://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** [-] Ordner gelöscht: C:\Users\Admin (Alt Buggy)\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar [-] Ordner gelöscht: C:\Users\TempAdmin\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar [-] Ordner gelöscht: C:\Users\Admin\AppData\LocalLow\Check Point Software Technologies LTD [-] Ordner gelöscht: C:\Users\Admin\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar [-] Ordner gelöscht: C:\Users\Mario (Neu)\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar [-] Ordner gelöscht: C:\ProgramData\apn [#] Ordner mit Neustart gelöscht: C:\ProgramData\Application Data\apn [-] Ordner gelöscht: C:\Program Files (x86)\Check Point Software Technologies LTD ***** [ Dateien ] ***** [-] Datei gelöscht: C:\Users\Admin (Alt Buggy)\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\escort.escortIEPane [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\escort.escortIEPane.1 [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\escort.escortIEPane [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\escort.escortIEPane.1 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{744E0E81-BC79-4719-A58B-C98F7E78EE5D} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{987D9269-F8A1-408F-BF62-4397D2F5363E} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{E0722BEB-FDA1-4AA1-A2A8-15A74A5B3F70} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{F1963E76-845B-474C-8C7F-D69A96D8AA34} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{6DBF5819-8634-464E-92F4-1F29C1EFF773} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{FFB96CC1-7EB3-449D-B827-DB661701C6BB} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} [-] Wert gelöscht: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59}] [-] Schlüssel gelöscht: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\Software\Check Point Software Technologies LTD [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3905677154-2266868164-1778288955-1008\Software\Check Point Software Technologies LTD [#] Schlüssel mit Neustart gelöscht: HKCU\Software\Check Point Software Technologies LTD [-] Schlüssel gelöscht: HKLM\SOFTWARE\Check Point Software Technologies LTD [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Security Toolbar [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3905677154-2266868164-1778288955-1008\Software\Check Point Software Technologies LTD [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Check Point Software Technologies LTD [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Toolbar [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\escort.DLL [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\escortApp.DLL [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\escortEng.DLL [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\esrv.EXE [-] Schlüssel gelöscht: HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: "Prefetch" Dateien gelöscht :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [6673 Bytes] - [18/02/2017 13:37:44] C:\AdwCleaner\AdwCleaner[S0].txt - [6559 Bytes] - [18/02/2017 13:36:04] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [6819 Bytes] ########## Anmerkung: Nach dem Neustart gab es eine Fehlermeldung von mbamtray.exe: Zitat:
Log: Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 18.02.17 Scan-Zeit: 14:29 Protokolldatei: mbam.txt Administrator: Ja -Softwaredaten- Version: 3.0.6.1469 Komponentenversion: 1.0.50 Version des Aktualisierungspakets: 1.0.1294 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: GameMachine-V2\Admin -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Ergebnis: Abgeschlossen Gescannte Objekte: 872751 Abgelaufene Zeit: 4 Min., 29 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswert: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 2 PUP.Optional.ASK.Gen, C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\APN-Stub\W3I-G-V7, In Quarantäne, [14965], [181296],1.0.1294 PUP.Optional.ASK.Gen, C:\USERS\ADMIN (ALT BUGGY)\APPDATA\LOCAL\TEMP\APN-Stub, In Quarantäne, [14965], [181296],1.0.1294 Datei: 3 PUP.Optional.ASK.Gen, C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\APN-Stub\W3I-G-V7\Stbeb60b5e6-41a5-408a-94df-c5cb9932a239.log, In Quarantäne, [14965], [181296],1.0.1294 Trojan.Agent, C:\USERS\ADMIN (ALT BUGGY)\APPDATA\LOCAL\TEMP\OCS\OCS_V7F.EXE, In Quarantäne, [22], [97329],1.0.1294 PUP.Optional.Conduit, C:\USERS\MARIO (BACKUP)\APPDATA\LOCAL\TEMP\{907A1104-E812-4B5C-959B-E4DAB37A96AB}\CUNINSTALLERZA.EXE, In Quarantäne, [716], [111936],1.0.1294 Physischer Sektor: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.1.0 (12.05.2016) Operating System: Windows 7 Ultimate x64 Ran by Admin (Administrator) on 18.02.2017 at 14:40:57,98 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 16 Successfully deleted: C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5Z8H9IZG (Temporary Internet Files Folder) Successfully deleted: C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7IESUO3B (Temporary Internet Files Folder) Successfully deleted: C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FGCFPP02 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UL6APNXP (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5Z8H9IZG (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7IESUO3B (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FGCFPP02 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UL6APNXP (Temporary Internet Files Folder) Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 18.02.2017 at 14:42:52,43 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 18-02-2017 durchgeführt von Admin (Administrator) auf GAMEMACHINE-V2 (18-02-2017 14:52:31) Gestartet von C:\Users\Admin\Desktop Geladene Profile: Admin (Verfügbare Profile: Admin (Alt Buggy) & TempAdmin & Admin & Mario (Neu) & Administrator) Platform: Windows 7 Ultimate Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe (MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Mozilla Corporation) E:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation) E:\Programme\Mozilla Firefox\firefox.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64 HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393320 2015-08-11] () HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe" HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe" HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7188552 2013-05-27] (Realtek Semiconductor) HKLM\...\Run: [SuRun Systemmenü-Erweiterung] => C:\Windows\SuRun.exe [727552 2013-11-02] (hxxp://kay-bruns.de) HKLM\...\Run: [ISW] => C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [1127592 2012-11-22] (Check Point Software Technologies) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation) HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes) HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2012-11-29] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [506864 2013-03-08] (MSI) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58584 2016-09-28] (Raptr, Inc) HKLM-x32\...\Run: [Andy] => C:\Program Files\Andy\HandyAndy.exe HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe HKLM-x32\...\Run: [AvastUI.exe] => "C:\Programme\AVAST Software\Avast\AvastUI.exe" /nogui HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe [2089056 2015-09-16] (CHENGDU YIWO Tech Development Co., Ltd) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) Winlogon\Notify\igfxcui: igfxdev.dll [X] HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [DAEMON Tools Lite] => E:\Programme\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [Steam] => E:\Programme\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [Infium] => E:\Programme\QIP Infium psYNovA-Edition\infium.exe [5662720 2009-10-08] (QIP) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [WinAuth] => F:\WinAuth.exe [3900928 2014-08-30] () HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\MountPoints2: {86bebb10-398f-11e3-b8bb-d43d7ee3539a} - Z:\autorun.exe HKU\S-1-5-18\...\Run: [ZoneAlarm Windows 10 Upgrader] => "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay ShellExecuteHooks: SuRun Shell Extension - {2C7B6088-5A77-4d48-BE43-30337DCA9A86} - C:\Windows\SuRunExt.dll [189952 2013-11-02] (hxxp://kay-bruns.de) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Programme\AVAST Software\Avast\ashShA64.dll -> Keine Datei ShellIconOverlayIdentifiers: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk [2013-10-19] ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog9 01 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 02 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 03 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 04 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 15 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 01 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 02 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 03 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 04 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 15 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{167EF976-C7C2-4382-88F9-0ED9AAEA6380}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-04-09] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-02-04] (Oracle Corporation) BHO: ZoneAlarm Security Engine Registrar -> {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} -> C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Programme\AVAST Software\Avast\aswWebRepIE64.dll => Keine Datei BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2014-04-09] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-04-09] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-04] (Oracle Corporation) BHO-x32: ZoneAlarm Security Engine Registrar -> {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} -> C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Programme\AVAST Software\Avast\aswWebRepIE.dll => Keine Datei BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2014-04-09] (Microsoft Corporation) Toolbar: HKLM - Kein Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Keine Datei Toolbar: HKLM - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Toolbar: HKLM - Kein Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Keine Datei Toolbar: HKLM-x32 - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Toolbar: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008 -> ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2014-04-09] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6s9q934r.default [2017-02-18] FF Extension: (SHA-1 deprecation staged rollout) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6s9q934r.default\features\{f3e87043-3e6d-41e9-bca7-b5c9efe3b87a}\disableSHA1rollout@mozilla.org.xpi [2017-02-18] FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\TrustChecker FF Extension: (Kein Name) - C:\Program Files\CheckPoint\ZAForceField\TrustChecker [2017-02-10] [ist nicht signiert] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Programme\AVAST Software\Avast\WebRep\FF => nicht gefunden FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Programme\AVAST Software\Avast\SafePrice\FF => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF Extension: (Kein Name) - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker [2017-02-10] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Programme\AVAST Software\Avast\WebRep\FF => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Programme\AVAST Software\Avast\SafePrice\FF => nicht gefunden FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll [2017-02-14] () FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-04] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-04] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_221.dll [2017-02-14] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1211151.dll [2014-04-15] (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-05-17] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-05-17] (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-02-10] (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> E:\Programme\Winamp Detect\npwachk.dll [2013-07-23] (Nullsoft, Inc.) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-08-11] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-08-11] (NVIDIA Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.) StartMenuInternet: FIREFOX.EXE - E:\Programme\Mozilla Firefox\firefox.exe Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Programme\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <nicht gefunden> ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1445384 2016-10-22] () S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2015-03-08] (BitRaider, LLC) S4 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2211000 2014-03-30] (Microsoft Corporation) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [245544 2016-03-11] (EasyAntiCheat Ltd) S3 EFS; C:\Windows\System32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2015-08-11] (Intel Corporation) S4 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-05-17] (Intel Corporation) R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [828072 2012-11-22] (Check Point Software Technologies) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-17] (Intel Corporation) S3 KeyIso; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes) S4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161264 2013-02-20] (MSI) R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [29728 2013-05-28] (MICRO-STAR INTERNATIONAL CO., LTD.) S3 Netlogon; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation) S4 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation) S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation) S3 Origin Client Service; E:\Programme\Origin\OriginClientService.exe [2120712 2016-05-22] (Electronic Arts) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-04-14] () S3 ProtectedStorage; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [490496 2013-04-30] () [Datei ist nicht signiert] S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) R2 SamSs; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S2 SuRunSVC; C:\Windows\SuRun.exe [727552 2013-11-02] (hxxp://kay-bruns.de) [Datei ist nicht signiert] S3 VaultSvc; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-10-19] (Microsoft Corporation) S2 avast! Antivirus; "C:\Programme\AVAST Software\Avast\AvastSvc.exe" [X] S3 AvastVBoxSvc; "C:\Programme\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [83312 2016-09-15] (AVAST Software) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-09-09] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-09-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-09-09] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-09-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-09-09] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-09-13] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-09-23] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-09-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-10-13] (AVAST Software) R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [66928 2013-04-30] (Qualcomm Atheros, Inc.) S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2015-03-09] (BitRaider) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-10-20] (DT Soft Ltd) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] () S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14944 2014-11-18] () R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77416 2017-01-20] () S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] () S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] () S3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-02-13] () R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33712 2012-11-22] (Check Point Software Technologies) R3 Ke2200; C:\Windows\System32\DRIVERS\e22w7x64.sys [165824 2013-04-30] (Qualcomm Atheros, Inc.) S3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [176584 2017-02-18] (Malwarebytes) R3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [110536 2017-02-18] (Malwarebytes) R3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2017-02-18] (Malwarebytes) R0 MBAMSwissArmy; C:\Windows\System32\drivers\MBAMSwissArmy.sys [251848 2017-02-18] (Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [81696 2017-02-18] (Malwarebytes) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) S3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) S3 rpkmdrv; C:\Windows\System32\drivers\rpkmdrv.sys [21248 2012-08-16] () S3 UHSfiltv; C:\Windows\System32\drivers\UHSfiltv.sys [23552 2013-05-31] (Creative Technology Ltd.) S3 ALSysIO; \??\F:\WinTEMP\ALSysIO64.sys [X] S3 MSICDSetup; \??\G:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\G:\NTIOLib_X64.sys [X] S3 pmem; \??\C:\Users\Mario\AppData\Local\Temp\_MEI42522\drivers\winpmem64.sys [X] <==== ACHTUNG S2 VBoxAswDrv; \??\C:\Programme\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-02-18 14:52 - 2017-02-18 14:52 - 00026631 _____ C:\Users\Admin\Desktop\FRST.txt 2017-02-18 14:52 - 2017-02-18 14:52 - 00000000 ____D C:\Users\Admin\Desktop\FRST-OlderVersion 2017-02-18 14:51 - 2017-02-18 14:52 - 02422272 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe 2017-02-18 14:42 - 2017-02-18 14:42 - 00003175 _____ C:\Users\Admin\Desktop\JRT.txt 2017-02-18 14:40 - 2017-02-18 14:40 - 00001889 _____ C:\Users\Admin\Desktop\mbam.txt 2017-02-18 14:37 - 2017-02-18 14:38 - 00000099 _____ C:\Users\Admin\Desktop\Fehler nach Neustart.txt 2017-02-18 14:27 - 2017-02-18 14:27 - 01663040 _____ (Malwarebytes) C:\Users\Admin\Desktop\JRT.exe 2017-02-18 14:25 - 2017-02-18 14:36 - 00251848 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2017-02-18 14:25 - 2017-02-18 14:36 - 00110536 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2017-02-18 14:25 - 2017-02-18 14:36 - 00081696 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2017-02-18 14:25 - 2017-02-18 14:36 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2017-02-18 14:25 - 2017-02-18 14:25 - 00176584 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys 2017-02-18 14:25 - 2017-02-18 14:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-02-18 14:25 - 2017-02-18 14:25 - 00000000 ____D C:\Program Files\Malwarebytes 2017-02-18 14:25 - 2017-01-20 07:47 - 00077416 _____ C:\Windows\system32\Drivers\mbae64.sys 2017-02-18 14:24 - 2017-02-18 13:37 - 00006922 _____ C:\Users\Admin\Desktop\AdwCleaner[C0].txt 2017-02-18 13:41 - 2017-02-18 14:21 - 55566792 _____ (Malwarebytes ) C:\Users\Admin\Desktop\mb3-setup-consumer-3.0.6.1469.exe 2017-02-18 13:31 - 2017-02-18 13:37 - 00000000 ____D C:\AdwCleaner 2017-02-18 13:31 - 2017-02-18 13:29 - 04015056 _____ C:\Users\Admin\Desktop\AdwCleaner_6.043.exe 2017-02-14 13:52 - 2017-02-18 14:51 - 00000000 ____D C:\Users\Admin\AppData\LocalLow\Mozilla 2017-02-10 21:24 - 2017-02-10 21:24 - 00000000 ____D C:\Users\Admin\AppData\Roaming\PlaysTV 2017-02-10 21:23 - 2017-02-10 21:23 - 00000000 ____D C:\Users\Admin\Documents\ForceField Shared Files 2017-02-10 15:10 - 2017-02-10 15:10 - 00000000 _____ C:\Windows\system32\Drivers\etc\lmhosts 2017-02-09 14:24 - 2017-02-09 14:24 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-02-08 16:55 - 2017-02-10 14:58 - 00000000 ____D C:\Program Files\WinRAR 2017-02-07 13:16 - 2017-02-07 13:16 - 00000000 ____D C:\Users\Admin\Documents\Visual Studio 2013 2017-02-06 20:21 - 2017-02-17 22:26 - 00007624 _____ C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2017-02-06 18:18 - 2017-02-06 18:18 - 00000000 ___SD C:\Windows\system32\CompatTel 2017-02-06 18:18 - 2017-02-06 18:18 - 00000000 ____D C:\Windows\system32\appraiser 2017-02-06 17:48 - 2017-02-06 17:48 - 00000000 ____D C:\Windows\CheckSur 2017-02-06 17:47 - 2017-02-06 17:47 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2013 2017-02-06 17:47 - 2017-02-06 17:47 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2013 2017-02-06 17:33 - 2017-02-06 17:33 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET 2017-02-06 17:18 - 2016-09-12 22:17 - 00077032 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2017-02-06 17:18 - 2016-09-12 22:08 - 01226752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 01629184 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00586752 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2017-02-06 17:18 - 2016-03-23 23:40 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2017-02-06 17:16 - 2016-08-29 16:31 - 14183424 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2017-02-06 17:16 - 2016-08-29 16:31 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2017-02-06 17:16 - 2016-08-29 16:31 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 12880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2017-02-06 17:16 - 2016-08-29 16:04 - 03229696 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2017-02-06 17:16 - 2016-08-29 15:55 - 02972672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2017-02-06 17:16 - 2016-05-11 18:02 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2017-02-06 17:16 - 2016-05-11 18:02 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2017-02-06 17:16 - 2016-05-11 18:02 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll 2017-02-06 17:16 - 2016-05-11 16:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2017-02-06 17:16 - 2016-05-11 16:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe 2017-02-06 17:16 - 2016-05-11 15:58 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2017-02-06 17:16 - 2016-02-12 19:52 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-02-06 17:16 - 2016-02-12 19:52 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-02-06 17:16 - 2016-02-12 19:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2017-02-06 17:16 - 2016-02-12 19:44 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2017-02-06 17:16 - 2016-02-12 19:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2017-02-06 17:16 - 2016-02-12 19:22 - 02610688 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-02-06 17:16 - 2016-02-12 19:19 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-02-06 17:16 - 2016-02-12 19:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-02-06 17:16 - 2016-02-12 19:18 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2017-02-06 17:16 - 2016-02-12 19:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2017-02-06 17:16 - 2016-02-12 19:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2017-02-06 17:16 - 2016-02-12 19:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2017-02-06 17:16 - 2016-02-12 19:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2017-02-06 17:15 - 2016-05-12 18:15 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2017-02-06 17:15 - 2016-05-12 18:14 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll 2017-02-06 17:15 - 2016-05-12 16:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe 2017-02-06 17:15 - 2016-05-12 15:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll 2017-02-06 17:15 - 2016-05-12 15:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe 2017-02-06 17:15 - 2016-04-09 08:01 - 00986344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2017-02-06 17:15 - 2016-04-09 08:01 - 00264936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2017-02-06 17:15 - 2016-04-09 07:57 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2017-02-06 17:15 - 2016-01-11 20:11 - 01684416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2017-02-06 17:15 - 2015-12-20 19:50 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2017-02-06 17:15 - 2015-12-20 19:50 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2017-02-06 17:15 - 2015-12-20 15:08 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2017-02-06 17:15 - 2015-11-11 19:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2017-02-06 17:15 - 2015-11-11 19:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2017-02-06 17:15 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll 2017-02-06 17:15 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll 2017-02-06 17:15 - 2015-04-11 04:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys 2017-02-06 17:14 - 2016-04-14 14:49 - 00603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2017-02-06 17:14 - 2016-04-14 14:21 - 00647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2017-02-06 17:14 - 2016-02-05 19:56 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll 2017-02-06 17:14 - 2016-02-05 19:54 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll 2017-02-06 17:14 - 2016-02-05 18:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll 2017-02-06 17:14 - 2016-02-02 19:57 - 00511488 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe 2017-02-06 17:14 - 2015-10-29 18:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll 2017-02-06 17:14 - 2015-10-29 18:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2017-02-06 17:14 - 2015-10-29 18:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe 2017-02-06 17:14 - 2015-10-13 05:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2017-02-06 17:14 - 2015-08-27 19:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2017-02-06 17:14 - 2015-08-27 19:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2017-02-06 17:14 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2017-02-06 17:14 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2017-02-06 17:14 - 2015-08-27 18:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2017-02-06 17:14 - 2015-08-27 18:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2017-02-06 17:14 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2017-02-06 17:14 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2017-02-06 17:14 - 2015-06-03 21:21 - 00451080 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2017-02-06 17:13 - 2016-08-12 17:26 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2017-02-06 17:13 - 2016-08-12 17:26 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2017-02-06 17:13 - 2016-08-12 17:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 01896168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 00377576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 00287976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2017-02-06 17:13 - 2016-07-07 16:08 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2017-02-06 17:13 - 2016-07-01 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2017-02-06 17:13 - 2016-07-01 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2017-02-06 17:13 - 2016-07-01 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2017-02-06 17:13 - 2016-07-01 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll 2017-02-06 17:13 - 2016-06-25 20:54 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2017-02-06 17:13 - 2016-06-25 20:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll 2017-02-06 17:13 - 2016-06-25 20:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe 2017-02-06 17:13 - 2016-06-25 20:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe 2017-02-06 17:13 - 2016-06-25 20:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe 2017-02-06 17:13 - 2016-05-11 18:02 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2017-02-06 17:13 - 2016-05-11 16:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2017-02-06 17:13 - 2016-02-09 10:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2017-02-06 17:13 - 2016-02-05 02:19 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2017-02-06 17:13 - 2016-02-04 19:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2017-02-06 17:13 - 2016-02-03 19:07 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2017-02-06 17:13 - 2015-12-08 22:53 - 00509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2017-02-06 17:13 - 2015-12-08 22:53 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll 2017-02-06 17:13 - 2015-12-08 20:07 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2017-02-06 17:13 - 2015-12-08 20:07 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll 2017-02-06 17:13 - 2015-11-05 20:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll 2017-02-06 17:13 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll 2017-02-06 17:13 - 2015-11-05 10:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2017-02-06 17:13 - 2015-10-13 17:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2017-02-06 17:13 - 2015-10-13 17:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2017-02-06 17:13 - 2015-01-29 04:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2017-02-06 17:13 - 2015-01-29 04:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2017-02-06 17:13 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe 2017-02-06 17:13 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2017-02-06 17:09 - 2016-03-09 20:00 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2017-02-06 17:09 - 2016-03-09 19:40 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2017-02-06 17:05 - 2016-03-09 19:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2017-02-06 17:05 - 2016-03-09 19:34 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2017-02-06 17:04 - 2015-11-03 20:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2017-02-06 17:04 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll 2017-02-06 17:02 - 2016-04-09 05:20 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2017-02-06 17:02 - 2016-04-09 04:52 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-02-18 14:52 - 2013-10-27 22:43 - 00000000 ____D C:\FRST 2017-02-18 14:44 - 2009-07-14 05:45 - 00027136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-02-18 14:44 - 2009-07-14 05:45 - 00027136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-02-18 14:37 - 2015-03-27 14:36 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Raptr 2017-02-18 14:37 - 2013-10-19 16:10 - 00000000 ____D C:\ProgramData\Bigfoot Networks 2017-02-18 14:36 - 2013-12-04 17:31 - 00000000 ____D C:\ProgramData\NVIDIA 2017-02-18 14:36 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-02-18 14:25 - 2015-02-03 04:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-02-18 14:20 - 2016-04-10 12:29 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2017-02-18 13:37 - 2014-12-08 17:30 - 00000000 ____D C:\Users\Mario (Neu)\AppData\Roaming\CheckPoint 2017-02-18 13:37 - 2014-05-05 17:22 - 00000000 ____D C:\Users\Admin\AppData\Roaming\CheckPoint 2017-02-18 13:37 - 2014-05-05 15:56 - 00000000 ____D C:\Users\TempAdmin\AppData\Roaming\CheckPoint 2017-02-18 13:37 - 2013-10-20 10:14 - 00000000 ____D C:\Users\Admin (Alt Buggy)\AppData\Roaming\CheckPoint 2017-02-18 13:20 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2017-02-18 04:57 - 2011-04-12 08:43 - 00701212 _____ C:\Windows\system32\perfh007.dat 2017-02-18 04:57 - 2011-04-12 08:43 - 00150112 _____ C:\Windows\system32\perfc007.dat 2017-02-18 04:57 - 2009-07-14 06:13 - 01620196 _____ C:\Windows\system32\PerfStringBackup.INI 2017-02-18 04:57 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2017-02-16 22:30 - 2017-01-11 12:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UBISOFT 2017-02-16 22:30 - 2013-10-19 16:10 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-02-14 19:40 - 2016-05-13 15:20 - 20359768 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2017-02-14 19:40 - 2016-04-10 12:29 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-02-14 19:40 - 2015-07-09 15:54 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-02-14 19:40 - 2015-07-09 15:54 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-02-14 19:40 - 2013-10-19 23:14 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-02-14 19:40 - 2013-10-19 23:14 - 00000000 ____D C:\Windows\system32\Macromed 2017-02-13 18:05 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2017-02-12 23:36 - 2015-12-24 21:26 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2017-02-12 23:35 - 2015-12-24 21:26 - 00000000 ____D C:\Program Files\Rockstar Games 2017-02-11 03:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2017-02-10 16:22 - 2014-12-08 17:30 - 00000000 ____D C:\Users\Mario (Neu) 2017-02-10 15:14 - 2014-05-05 17:22 - 00000000 ____D C:\Users\Admin 2017-02-10 14:58 - 2015-12-03 14:30 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2017-02-10 14:58 - 2015-11-20 16:23 - 00000000 ____D C:\Program Files\Common Files\AV 2017-02-10 14:58 - 2015-09-25 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-02-10 14:58 - 2015-09-25 18:30 - 00000000 ____D C:\ProgramData\AVAST Software 2017-02-10 14:58 - 2014-10-13 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseSVN 2017-02-10 14:58 - 2014-10-13 18:53 - 00000000 ____D C:\Program Files\Common Files\TortoiseOverlays 2017-02-10 14:58 - 2014-05-05 15:56 - 00000000 ____D C:\Users\TempAdmin 2017-02-10 14:58 - 2014-04-26 13:56 - 00000000 ____D C:\Windows\SysWOW64\Adobe 2017-02-10 14:58 - 2013-10-19 22:15 - 00000000 ____D C:\Program Files\CheckPoint 2017-02-10 14:58 - 2013-10-19 21:17 - 00000000 ____D C:\Users\Admin (Alt Buggy) 2017-02-10 14:58 - 2013-10-19 20:38 - 00000000 ____D C:\Users\Administrator 2017-02-10 14:58 - 2013-10-19 16:19 - 00000000 ___HD C:\SuperChargerProfile 2017-02-10 14:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration 2017-02-10 14:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\AppCompat 2017-02-08 15:54 - 2016-12-04 22:34 - 00000000 ____D C:\Temp 2017-02-07 13:30 - 2016-03-10 12:12 - 00000000 ____D C:\Program Files (x86)\Raptr Inc 2017-02-07 13:30 - 2015-03-08 20:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2017-02-07 13:24 - 2014-08-30 18:06 - 00000000 ____D C:\ProgramData\Package Cache 2017-02-07 13:24 - 2014-02-10 16:29 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-02-07 13:23 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\MSBuild 2017-02-07 13:17 - 2014-09-29 15:35 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2017-02-07 13:07 - 2014-11-20 14:40 - 00000000 ____D C:\Users\Admin\AppData\Local\TSVNCache 2017-02-07 12:59 - 2014-09-29 15:29 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2017-02-07 12:59 - 2014-09-29 15:29 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2017-02-07 12:49 - 2014-09-29 15:26 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2017-02-07 12:46 - 2016-11-28 21:42 - 00005182 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario (Neu) GameMachine-V2 2017-02-06 18:24 - 2014-11-20 14:40 - 00000000 ___RD C:\Users\Admin\Virtual Machines 2017-02-06 18:19 - 2013-10-19 17:59 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-02-06 18:18 - 2011-04-12 08:54 - 00000000 ____D C:\Windows\ShellNew 2017-02-06 18:18 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers 2017-02-06 18:17 - 2017-01-11 17:10 - 00000000 ____D C:\Users\Admin\AppData\Local\NVIDIA 2017-02-06 17:42 - 2013-10-19 16:05 - 01597284 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-02-06 17:39 - 2013-10-19 17:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-02-06 17:39 - 2013-10-19 17:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-02-06 17:38 - 2014-08-18 12:24 - 00000000 ____D C:\Windows\system32\MRT 2017-02-06 17:35 - 2014-08-18 12:24 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-02-04 16:34 - 2013-11-02 14:24 - 00000000 ____D C:\ProgramData\Oracle 2017-02-04 16:28 - 2015-07-04 01:21 - 00000000 ____D C:\Program Files\Java 2017-02-04 16:27 - 2014-10-13 13:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-02-04 16:26 - 2015-07-04 01:21 - 00110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2017-02-01 23:56 - 2013-10-30 02:40 - 00000000 ____D C:\Windows\Minidump 2017-01-19 18:02 - 2015-12-17 18:34 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2017-02-06 20:21 - 2017-02-17 22:26 - 0007624 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2015-03-22 17:25 - 2015-06-13 23:20 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip 2014-05-05 18:17 - 2014-05-05 18:58 - 0427840 _____ (ForensiT Limited) C:\ProgramData\UserProfileMigrationService.exe Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\ProgramData\UserProfileMigrationService.exe Einige Dateien in TEMP: ==================== 2013-10-27 23:01 - 2013-10-27 14:24 - 0039424 _____ (Bytessence) C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\642151533.exe 2010-12-31 04:07 - 2010-12-31 04:07 - 0086880 ____R (Microsoft Corporation) C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\devcon64.exe 2013-10-25 12:40 - 2013-10-25 12:40 - 0632024 _____ () C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\ICReinstall_Alcohol120_trial_2.0.2.5629.exe 2014-02-10 16:10 - 2014-02-10 16:09 - 0575168 _____ (Microsoft Corporation) C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\OfficeSetup.exe 2013-10-27 15:36 - 2013-10-27 15:37 - 0059860 _____ () C:\Users\Admin (Alt Buggy)\AppData\Local\Temp\SCC.dll 2013-10-19 20:43 - 2010-12-31 04:07 - 0086880 ____R (Microsoft Corporation) C:\Users\Mario (Backup)\AppData\Local\Temp\devcon64.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => MD5 ist legitim C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-02-18 13:13 ==================== Ende von FRST.txt ============================ |
18.02.2017, 15:07 | #7 |
| Internetprobleme ohne erkennbare Ursache Addition: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 18-02-2017 durchgeführt von Admin (18-02-2017 14:53:03) Gestartet von C:\Users\Admin\Desktop Windows 7 Ultimate Service Pack 1 (X64) (2013-10-19 11:21:19) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Admin (S-1-5-21-3905677154-2266868164-1778288955-1008 - Administrator - Enabled) => C:\Users\Admin Admin (Alt Buggy) (S-1-5-21-3905677154-2266868164-1778288955-1001 - Limited - Disabled) => C:\Users\Admin (Alt Buggy) Administrator (S-1-5-21-3905677154-2266868164-1778288955-500 - Administrator - Disabled) => C:\Users\Administrator Gast (S-1-5-21-3905677154-2266868164-1778288955-501 - Limited - Disabled) Mario (Alt Buggy) (S-1-5-21-3905677154-2266868164-1778288955-1000 - Limited - Disabled) Mario (Neu) (S-1-5-21-3905677154-2266868164-1778288955-1010 - Limited - Enabled) => F:\Mario TempAdmin (S-1-5-21-3905677154-2266868164-1778288955-1006 - Limited - Disabled) => C:\Users\TempAdmin ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avast Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Avast Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7 Days to Die (HKLM-x32\...\Steam App 251570) (Version: - The Fun Pimps) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.023.20056 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.1.151 - Adobe Systems, Inc.) Alathair Patcher (HKLM-x32\...\AlathairPatcher) (Version: - ) Alice Madness Returns (HKLM-x32\...\{93A3AB24-36E8-41BA-80C6-CCEC237836DC}) (Version: 1.0.0.0 - Electronic Arts) Ansel (Version: 372.54 - NVIDIA Corporation) Hidden Appset Updater 1.1.105.0 (HKLM-x32\...\{11DD3FDE-29EC-11E3-9881-8BBE75B86756}) (Version: 1.1.105.0 - Appset) Appset Updater 1.1.126.0 (HKLM-x32\...\{41AE9230-77E6-11E3-93DC-8F3AC494E26A}) (Version: 1.1.126.0 - Appset) Aritana and the Harpy's Feather Demo (HKLM-x32\...\Steam App 316100) (Version: - Duaik Entretenimento) ARK: Survival Evolved (HKLM-x32\...\Steam App 346110) (Version: - Studio Wildcard) Arx Fatalis (HKLM-x32\...\Steam App 1700) (Version: - Arkane Studios) Assassin's Creed (HKLM-x32\...\{8CFA9151-6404-409A-AF22-4632D04582FD}) (Version: 1.02 - Ubisoft) Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.03 - Ubisoft) Assassin's Creed II (HKLM-x32\...\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}) (Version: 1.01 - Ubisoft) Assassin's Creed Revelations 1.03 (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.03 - Ubisoft) Asteria (HKLM-x32\...\Steam App 307130) (Version: - Legend Studio) AutoHotkey 1.1.13.01 (HKLM\...\AutoHotkey) (Version: 1.1.13.01 - Lexikos) Batman™: Arkham Origins (HKLM-x32\...\Steam App 209000) (Version: - WB Games Montreal) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) Blackthorne (HKLM-x32\...\{C563EEF9-17FF-4563-8B78-82AF0C4577CE}) (Version: 1.0.0 - Blizzard Entertainment) BOILING POINT (HKLM-x32\...\{58AC967F-CE64-4065-AF54-FA66BAF31FE8}) (Version: 1.00.000 - ) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Borderlands: The Pre-Sequel (HKLM-x32\...\Steam App 261640) (Version: - 2K Australia) Brothers - A Tale of Two Sons (HKLM-x32\...\Steam App 225080) (Version: - Starbreeze Studios AB) CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source) CamStudio Lossless Codec v1.5 (HKLM-x32\...\camcodec) (Version: 1.5 - CamStudio) CentrED 0.6.3 (HKLM-x32\...\{77BCACC0-C2D9-470D-858F-A3D94A5F27A5}_is1) (Version: 0.6.3 - AKS DataBasis) Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) Creation Kit (HKLM-x32\...\Steam App 202480) (Version: - bgs.bethsoft.com) Creative Systeminformationen (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd) Darksiders (HKLM-x32\...\Steam App 50620) (Version: - Vigil Games) Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - Vigil Games) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Dead Rising 3 (HKLM-x32\...\Steam App 265550) (Version: - Capcom Game Studio Vancouver) Deponia (HKLM\...\Steam App 214340) (Version: - Daedalic Entertainment) Deus Ex: Human Revolution - Director's Cut (HKLM-x32\...\Steam App 238010) (Version: - Eidos Montreal) Deus Ex: The Fall (HKLM-x32\...\Steam App 258180) (Version: - Square Enix) Dishonored (HKLM-x32\...\Steam App 205100) (Version: 1.0 - Bethesda Softworks) Dolphin 4.0 (HKLM-x32\...\Dolphin) (Version: 4.0 - Dolphin Development Team) Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC) Earth 2160 (HKLM-x32\...\Steam App 1900) (Version: - Reality Pump Studios) EaseUS Partition Master 10.8 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) Elevated Shortcut (HKLM-x32\...\Elevated Shortcut) (Version: 1.1 - hxxp://www.winreview.ru/) Empyrion - Galactic Survival (HKLM\...\Steam App 383120) (Version: - Eleon Game Studios) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden Erforderliche Komponenten für SSDT (HKLM-x32\...\{3FF082A7-A5DE-4BDA-B56A-1D2BEFD617A3}) (Version: 11.1.3000.0 - Microsoft Corporation) Eternal Winter (HKLM-x32\...\Steam App 325210) (Version: - Developers Pack) Fallen Earth (HKLM-x32\...\Steam App 113420) (Version: - Reloaded Productions) Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios) Fallout 4 (HKLM-x32\...\Steam App 377160) (Version: - Bethesda Game Studios) Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment) Far Cry 2 (HKLM-x32\...\{F2835483-37F2-4123-B4FE-0E77D58447F2}) (Version: 1.03.00 - Ubisoft) Firefly Online Cortex (HKLM-x32\...\Steam App 343750) (Version: - Spark Plug Games) FlashGet 1.9.6.1073 (HKLM-x32\...\FlashGet) (Version: 1.9.6.1073 - hxxp://www.FlashGet.com) Free WMA to MP3 Converter 1.16 (HKLM-x32\...\Free WMA to MP3 Converter_is1) (Version: - Jodix Technologies Ltd.) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Gear Up (HKLM\...\Steam App 214420) (Version: - Doctor Entertainment AB) Gigantic Army (HKLM-x32\...\Steam App 278930) (Version: - ASTRO PORT) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Guns of Icarus Online (HKLM\...\Steam App 209080) (Version: - Muse Games) Hacknet (HKLM-x32\...\Steam App 365450) (Version: - Team Fractal Alligator) Hama uRage Vendetta Gamepad (HKLM-x32\...\{1696CD1C-7C50-4350-83FC-1DA843FDF853}) (Version: 2011.01.19 - Dragon rise) HAWKEN (HKLM-x32\...\Steam App 271290) (Version: - Adhesive Games) HWiNFO64 Version 4.64 (HKLM\...\HWiNFO64_is1) (Version: 4.64 - Martin Malík - REALiX) I Am Alive (HKLM-x32\...\Steam App 214250) (Version: - Ubisoft Shanghaï) Intel Driver Update Utility (HKLM-x32\...\{fe92d390-13ee-4660-a2f8-39a066fdffe0}) (Version: 2.2.0.5 - Intel) Intel(R) Driver Update Utility 2.2.0.5 (x32 Version: 2.2.0.1 - Intel) Hidden Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36943 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.10.1372 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) James Cameron's AVATAR(tm): DAS SPIEL (HKLM-x32\...\{7E19B002-4CA3-4C9F-BA92-91D101B97219}) (Version: 1.02.00 - Ubisoft) Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Just Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche Studios) Just Cause 2: Multiplayer Mod (HKLM-x32\...\Steam App 259080) (Version: - Avalanche Studios) Key Mapper (HKLM-x32\...\{A96C0046-2143-42C0-A28F-BCAF2C520E2A}) (Version: 1.0.2 - Rose Hill Solutions) Killing Floor (HKLM\...\Steam App 1250) (Version: - Tripwire Interactive) Killing Floor 2 (HKLM\...\Steam App 232090) (Version: - Tripwire Interactive) KillProcess 2.44 (HKLM-x32\...\KillProcess) (Version: 2.44 - Orange Lamp Software Solutions) Left 4 Dead (HKLM-x32\...\Steam App 500) (Version: - Valve) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Life Is Strange™ (HKLM\...\Steam App 319630) (Version: - DONTNOD Entertainment) LocoCycle (HKLM-x32\...\Steam App 224040) (Version: - Twisted Pixel Games) Malwarebytes Version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes) Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games) Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.6 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7320.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{2E660A2A-A55F-43CD-9F73-CAD7382EEB78}) (Version: 3.0.19.0 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4605.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{43341417-7882-4F34-8390-53DFD00F6C0F}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{24440413-490E-41CA-BD33-0B30FD3EBE3A}) (Version: 11.1.3366.16 - Microsoft Corporation) Monochroma Demo (HKLM-x32\...\Steam App 304610) (Version: - Nowhere Studios) Morrowind (HKLM-x32\...\{81935798-5D0C-4892-832E-630E6CC07EAF}) (Version: - ) Morrowind AnimKit 2.1 (remove only) (HKLM-x32\...\Morrowind AnimKit) (Version: - ) Mozilla Firefox 24.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 24.0 (x86 de)) (Version: 24.0 - Mozilla) Mozilla Firefox 35.0 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Mozilla Firefox 35.0 (x86 de)) (Version: 35.0 - Mozilla) MPC-HC 1.7.9 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.9 - MPC-HC Team) My Game Long Name (HKLM\...\UDK-3c7f31b8-d014-4d68-83ca-9457379e71d5) (Version: - Epic Games, Inc.) New Vegas Configator version 1.6 (HKLM-x32\...\New Vegas Configator_is1) (Version: 1.6 - Rudolf Enberg) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.12 - Black Tree Gaming) NifSkope (remove only) (HKLM-x32\...\NifSkope) (Version: - ) NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version: - ) No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team) NRV11250 (HKLM\...\UDK-30063b6d-5c6b-462f-a58e-9191d677fba8) (Version: - Epic Games, Inc.) Nuclear Dawn (HKLM-x32\...\Steam App 17710) (Version: - InterWave Studios) NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.54 - NVIDIA Corporation) NVIDIA Grafiktreiber 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.54 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) Oblivion - Construction Set (HKLM-x32\...\{23D683DD-93C6-48E6-B84E-78B57778F126}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Horse Armor Pack (HKLM-x32\...\{3ABEBD00-299D-4DCA-967F-B912163AB5EA}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Mehrunes Razor (HKLM-x32\...\{EF295F5C-7B57-47AA-8889-6B3E8E214E89}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Orrery (HKLM-x32\...\{EC425CFC-EE78-4A91-AA25-3BFA65B75364}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Spell Tomes (HKLM-x32\...\{16D919E6-F019-4E15-BFBE-4A85EF19DA57}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - The Fighter's Stronghold (HKLM-x32\...\{A0A20753-92DF-4631-82B4-9CACE2FCED6A}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Thieves Den (HKLM-x32\...\{FFFFFD17-B460-41EB-93F1-C48ABAD63828}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Wizard's Tower (HKLM-x32\...\{2F2E3D62-8B8C-448F-8900-451325E50948}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion (HKLM-x32\...\{35CB6715-41F8-4F99-8881-6FC75BF054B0}) (Version: 1.2.0416 - Bethesda Softworks) Oblivion Face Exchange Lite (HKLM-x32\...\{0DBEC4D5-2CCA-45CB-A529-75CD83E698AB}) (Version: 1.3.10 - Mikko Puonti) Oblivion mod manager 1.1.9 (HKLM-x32\...\Oblivion mod manager_is1) (Version: - Timeslip) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Only If (HKLM-x32\...\Steam App 298260) (Version: - Creability) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Ori and the Blind Forest (HKLM-x32\...\Steam App 261570) (Version: - Moon Studios GmbH) Origin (HKLM-x32\...\Origin) (Version: 9.12.1.43352 - Electronic Arts, Inc.) ORION: Prelude (HKLM-x32\...\Steam App 104900) (Version: - Spiral Game Studios) Outlast (HKLM-x32\...\Steam App 238320) (Version: - Red Barrels) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) Plague Inc: Evolved (HKLM\...\Steam App 246620) (Version: - Ndemic Creations) PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\SOE-PlanetSide 2) (Version: - Sony Online Entertainment) PlayClaw 5 fast codec (HKLM-x32\...\PlayClaw 5 fast codec_is1) (Version: 5.5 - ) PlayClaw 5 Plus (HKLM-x32\...\PlayClaw 5 Plus_is1) (Version: 5 - ) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) Project Zomboid (HKLM-x32\...\Steam App 108600) (Version: - The Indie Stone) Puddle (HKLM-x32\...\Steam App 222140) (Version: - Neko Entertainment) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) Qualcomm Atheros Killer Network Manager (HKLM-x32\...\InstallShield_{DF446558-ADF7-4884-9B2D-281979CCE71F}) (Version: 6.1.0.583 - Qualcomm Atheros) Qualcomm Atheros Killer Network Manager (Version: 6.1.0.583 - Qualcomm Atheros) Hidden Race The Sun (HKLM\...\Steam App 253030) (Version: - Flippfly LLC) RAD Video Tools (HKLM-x32\...\RADVideo) (Version: - ) RAGE (HKLM-x32\...\Steam App 9200) (Version: - id Software) Rapoo -Tastatur- und Maustreiber v1.6 (HKLM-x32\...\{2E569492-CB19-4510-AB49-1C6A36C6F525}_is1) (Version: - Rapoo Inc.) Raptr (HKLM-x32\...\Raptr) (Version: 5.2.7-r116720-release - Raptr, Inc) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6923 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Residue: Final Cut (HKLM\...\Steam App 265790) (Version: - The Working Parts) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Robocraft (HKLM\...\Steam App 301520) (Version: - Freejam) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.4 - Rockstar Games) S.T.A.L.K.E.R. - Call of Pripyat [v1.6.02] (HKLM-x32\...\{406FB8A4-F539-48A9-809C-F94706F9C9F6}_is1) (Version: 1.6.02 - bitComposer Games) SafeZone Stable 1.51.2220.53 (x32 Version: 1.51.2220.53 - Avast Software) Hidden Shark007 Advanced Codecs (HKLM-x32\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 5.2.7 - Shark007) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Sir, You Are Being Hunted (HKLM\...\Steam App 242880) (Version: - Big Robot Ltd) Skyrim NPC Editor (HKLM-x32\...\{5BA9357B-E876-4FB2-8F1B-C7E63AC90E6F}) (Version: 0.75.1 - foretrenty) Skyrim Performance Monitor (HKLM-x32\...\{84AEB93A-ECBB-4568-8F59-D4516EF59079}) (Version: 3.54 - SirGarnon on Skyrim Nexus) SlimDX Runtime .NET 2.0 (January 2012) (HKLM-x32\...\{014A2868-BE56-4888-A16C-693989B8F153}) (Version: 2.0.13.43 - SlimDX Group) Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.02 - Creative Technology Limited) Sound Blaster Tactic(3D) (HKLM-x32\...\{92000C16-939B-44CA-802F-0D552019D7C8}) (Version: 1.0 - Creative Technology Limited) Spooky's House of Jump Scares (HKLM\...\Steam App 356670) (Version: - Lag Studios) Spore (HKLM-x32\...\Steam App 17390) (Version: - Maxis™) Spore: Creepy & Cute Parts Pack (HKLM-x32\...\Steam App 17440) (Version: - Maxis™) Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 8.0.0.13 - Bioware/EA) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) StarParse (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\{fxApplication}}_is1) (Version: 0.4 - Ixale) State of Decay (HKLM-x32\...\Steam App 241540) (Version: - Undead Labs) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Super User Run (SuRun) (HKLM\...\SuRun) (Version: 1.2.1.0 - Kay Bruns) Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.018 - MSI) Survivalist (HKLM\...\Steam App 340050) (Version: - Bob the Game Development Bot) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TES Construction Set (HKLM-x32\...\{8245C111-D83F-4C66-BBC6-2424F6116944}) (Version: - ) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) The Long Dark (HKLM-x32\...\Steam App 305620) (Version: - Hinterland Studio Inc.) The Stanley Parable (HKLM-x32\...\Steam App 221910) (Version: - Galactic Cafe) The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD Projekt RED) The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD Projekt RED) Thinking with Time Machine (HKLM-x32\...\Steam App 286080) (Version: - Stridemann) Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.10.1 - Electronic Arts) Tor 0.2.4.20 (HKLM-x32\...\Tor) (Version: - ) TortoiseSVN 1.8.8.25755 (64 bit) (HKLM\...\{7DAA9D5A-ED99-40D2-AA9D-386722FE105A}) (Version: 1.8.25755 - TortoiseSVN) Trine (HKLM-x32\...\Steam App 35700) (Version: - Frozenbyte) Trine 2 (HKLM-x32\...\Steam App 35720) (Version: - Frozenbyte) Tropico 5 (HKLM-x32\...\Steam App 245620) (Version: - Haemimont Games) Tunatic (HKLM-x32\...\Tunatic) (Version: - ) TuxGuitar (HKLM-x32\...\{03534DA5-2F88-4B8E-A978-849B979E1B8F}) (Version: 1.2 - Herac) TuxGuitar (HKLM-x32\...\TuxGuitar 1.3.2) (Version: 1.3.2 - TuxGuitar) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Ultima Online 2D (HKLM-x32\...\UltimaOnline) (Version: - ) Ultima Online Classic Client (HKLM-x32\...\Ultima Online Classic) (Version: - Electronic Arts) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.5 - MSI) Vidalia 0.2.21 (HKLM-x32\...\Vidalia) (Version: - ) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment) Warframe (HKLM\...\Steam App 230410) (Version: - Digital Extremes) Welcome to the Game (HKLM\...\Steam App 485380) (Version: - Reflect Studios) Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc) Windows XP Mode (HKLM\...\{1374CC63-B520-4f3f-98E8-E9020BF01CFF}) (Version: 1.3.7600.16422 - Microsoft Corporation) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) World of Guns: Gun Disassembly (HKLM-x32\...\Steam App 262410) (Version: - Noble Empire Corp.) Worms Reloaded (HKLM-x32\...\Steam App 22600) (Version: - Team17 Software Ltd.) Wrye Mash (HKLM-x32\...\Wrye Mash) (Version: - Wrye) x64 Components v5.2.7 (HKLM\...\Advanced x64Components_is1) (Version: 5.2.7 - Shark007) Zombie Army Trilogy (HKLM\...\Steam App 301640) (Version: - Rebellion) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {08F46511-2271-4082-B341-BE138956196C} - System32\Tasks\{388D7FD6-08A5-4CDC-B8A7-5931CE8EB1DC} => G:\install\program\setup.exe Task: {0D774239-1098-4164-A82B-504FFE739A92} - System32\Tasks\elevated_MGEXEgui_1~WORROM1~SEHTEB1~ARGORPE => E:\Programme\Bethesda Softworks\Morrowind\MGEXEgui.exe [2012-08-29] (MGE Developers) Task: {1906463B-7AA8-481B-AEF9-036960ED32C6} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {19DE7F08-52B5-42BD-9045-F048057BAA28} - System32\Tasks\{18CA5F17-A87F-4D24-A106-8E88B5C080DD} => pcalua.exe -a G:\Setup.exe -d G:\ Task: {5548C565-CDBC-474B-9578-59E1C7B2AB02} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {6B9359F8-383D-4212-ABE4-2BB339DA3E65} - System32\Tasks\{EC2FFF75-0CD2-4E2E-9CE0-77C1D99B189E} => G:\install\program\setup.exe Task: {6EE8D583-1D4B-4FD9-9640-4512D80677C4} - System32\Tasks\SafeZone scheduled Autoupdate 1471620393 => C:\Programme\AVAST Software\SZBrowser\launcher.exe Task: {74221EED-75DD-49AB-989A-7E49A319F8AC} - System32\Tasks\avast! Emergency Update => C:\Programme\AVAST Software\Avast\AvastEmUpdate.exe Task: {7FEABA14-136D-476E-A368-9940BBB15F22} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-03-30] (Microsoft Corporation) Task: {84E92F97-DF11-4196-9590-65F8F900751C} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario GameMachine-V2 => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-04-09] (Microsoft Corporation) Task: {956770CC-38C1-47BB-8C72-FBB237157DDE} - System32\Tasks\HWiNFO => E:\Programme\HWiNFO64\HWiNFO64.EXE [2015-07-20] (REALiX) Task: {B6AD97E3-76A1-4E94-85B2-A0CE961DED6C} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario (Neu) GameMachine-V2 => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-04-09] (Microsoft Corporation) Task: {B8C19131-1F5E-4C7D-A41B-7676E552CA75} - System32\Tasks\elevated_Morrowind_1~WORROM1~SEHTEB1~ARGORPE => E:\Programme\Bethesda Softworks\Morrowind\Morrowind.exe [2013-10-30] (Bethesda Softworks) Task: {BDF9D442-E7B8-4505-86CC-364D27EDF0D3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-02-14] (Adobe Systems Incorporated) Task: {C9626367-7665-4D17-BE21-19D33DC33870} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {DA8F81CB-02B5-4547-93F4-62F164C94C5A} - System32\Tasks\Run as Admin\Morrowind Starter => E:\Programme\Bethesda Softworks\Morrowind\Morrowind Launcher.exe [2003-05-27] (Bethesda Softworks) Task: {E163F176-D78E-44F6-B371-725D6C3825CA} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-01-27] (AVAST Software) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Admin\Desktop\Create Account For Ultima Online.lnk -> hxxp://www.ultima-registration.com ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2014-03-20 16:41 - 2014-04-14 20:47 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-04-30 14:22 - 2013-04-30 14:22 - 00490496 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe 2011-05-09 19:46 - 2011-05-09 19:46 - 02760192 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtCore4.dll 2011-05-09 19:56 - 2011-05-09 19:56 - 09856000 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtGui4.dll 2011-05-09 19:47 - 2011-05-09 19:47 - 00416256 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtXml4.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00217600 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFCommon.dll 2011-05-10 11:32 - 2011-05-10 11:32 - 00731648 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\qwt5.dll 2011-05-09 19:48 - 2011-05-09 19:48 - 00990720 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtNetwork4.dll 2017-02-18 14:25 - 2017-01-20 07:47 - 02264352 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2017-02-18 14:25 - 2017-01-20 07:47 - 02254800 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2017-02-18 14:25 - 2017-01-20 07:47 - 02829776 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\arwlib.dll 2013-03-11 09:17 - 2013-03-11 09:17 - 00119808 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe 2013-10-19 16:16 - 2013-05-17 00:06 - 01199576 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 02603520 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtCore4.dll 2010-01-12 15:55 - 2010-01-12 15:55 - 00322048 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\log4cplus.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 00382464 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtXml4.dll 2010-12-16 11:16 - 2010-12-16 11:16 - 00195584 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\libgsoap.dll 2010-01-17 22:34 - 2010-01-17 22:34 - 00062464 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\zlib1.dll 2013-03-07 11:54 - 2013-03-07 11:54 - 00071680 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ServiceManagerStarter.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 01006592 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtNetwork4.dll 2010-01-12 15:55 - 2010-01-12 15:55 - 00400384 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\sqlite3.dll 2013-03-07 11:53 - 2013-03-07 11:53 - 00015872 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\featureController.dll 2013-03-07 11:55 - 2013-03-07 11:55 - 00472576 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\DeviceProfile.dll 2013-03-07 11:58 - 2013-03-07 11:58 - 00499488 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\plugin\PServerPlugin.dll 2013-03-07 11:54 - 2013-03-07 11:54 - 00013824 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\eventsSender.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 14978048 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtWebKit4.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 00317952 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\phonon4.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 09224704 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtGui4.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\ixparse.com -> hxxps://ixparse.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\sony.com -> sony.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin 2\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupreg: Launch => E:\Programme\Rapoo\RpWireless\Launch.exe MSCONFIG\startupreg: LedStatus => E:\Programme\Rapoo\RpWireless\LedStatus.exe ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{EEFCB3FC-6B23-4743-92E4-629A926CC733}] => (Allow) E:\Programme\Winamp\winamp.exe FirewallRules: [{12E7C1F4-E356-4E71-8C1E-8CC6C9971BCD}] => (Allow) E:\Programme\Winamp\winamp.exe FirewallRules: [TCP Query User{6F949512-A1E5-4DAD-9C30-318847F2B0BF}E:\programme\atari\boiling point\xenus.exe] => (Block) E:\programme\atari\boiling point\xenus.exe FirewallRules: [UDP Query User{185B3CD7-211A-4389-9932-AA12E63C27C2}E:\programme\atari\boiling point\xenus.exe] => (Block) E:\programme\atari\boiling point\xenus.exe FirewallRules: [{9C12803F-CD44-4C0A-9164-1632DE8859AB}] => (Allow) E:\Programme\Steam\Steam.exe FirewallRules: [{C692D8AC-9BEE-4D9C-89D7-9EC8BC83A1D5}] => (Allow) E:\Programme\Steam\Steam.exe FirewallRules: [{A0D8E05F-6F08-44E0-80AA-1469C5CA27F9}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{8E1CB539-CF5C-48EB-8A76-DC664D810FA9}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{A996593D-68FC-473D-9384-3C14B11BF59A}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{2A007F80-C19F-4740-92B5-6C42F8325621}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{8FF67B2E-073F-4E8A-8ABA-D986F005F363}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{649F89D7-D125-4497-9E1C-FD72AE75B163}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{34FE88C4-7C2D-4417-9248-6D67AE8516A8}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{879A980F-A65F-4904-9B64-38EFF68EE975}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{A224B231-B106-48D7-A992-071D756BFDFC}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\CreationKit.exe FirewallRules: [{84D64C75-6B86-49B5-9682-9C279216B18E}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\CreationKit.exe FirewallRules: [{F2625C47-1E50-4FF7-9B92-EFC36A17F78E}] => (Allow) C:\Users\Admin\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{3248AC48-9B8A-4DF0-AA39-A32AE109AB5C}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe FirewallRules: [{666AF4FB-C6D1-4403-B11F-136D3F7E08BD}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe FirewallRules: [{99D13FC0-5521-4070-AB4A-0D3C3CA765D3}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\xrEngine.exe FirewallRules: [{B8952B89-4608-485E-8617-D0A9E8CC6A78}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\xrEngine.exe FirewallRules: [{0368768B-9C7D-4D38-8F9C-D308A5CE413B}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\dedicated\xrEngine.exe FirewallRules: [{F37DFA01-5F33-465D-8254-1B3B74EBA307}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\dedicated\xrEngine.exe FirewallRules: [{9B971368-72AF-456E-86B9-64E0BA34F5FE}] => (Allow) E:\Programme\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{FA390130-2608-497D-BC8C-80E730944DDE}] => (Allow) E:\Programme\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{A2987144-1F57-4886-A7DE-22263D30540C}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe FirewallRules: [{AD5FD78A-8CDA-41E1-956B-9C4688882C31}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe FirewallRules: [{B22B972C-F14F-436B-88FF-CB446C1DFC7A}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe FirewallRules: [{E17F8923-94AA-4545-BF27-76285EACD30F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe FirewallRules: [{8C8A6152-4A4D-4FCA-8C4A-B81D584811E1}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe FirewallRules: [{CA5EC57C-E941-43DC-812B-363FC570879F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe FirewallRules: [{978C280A-3BE9-463D-BB00-00C1325C5AA7}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallen Earth F2P\FEUpdater.exe FirewallRules: [{BDAD53CC-D1DA-4AC0-8267-5F6A922DD316}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallen Earth F2P\FEUpdater.exe FirewallRules: [{BB2EB4B1-B9D2-4CB5-9BDF-C241D2CE7551}] => (Allow) E:\Programme\Steam\SteamApps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{0104453B-62D6-40F0-B7B5-C1B7CA619924}] => (Allow) E:\Programme\Steam\SteamApps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{03C47956-F7EF-4604-8F0B-925F154754A8}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{5837C452-BF24-4759-B713-2BA502342F31}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{6A601DDD-C07D-4216-9A51-FC95639F793D}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{C6485EB1-DC3A-49D5-9E87-8FDE6F42D772}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{A64A2448-AF1F-42C6-9191-167575E94C02}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{068C3062-CE21-4AE7-8B61-3249752FDB6F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{51F19C76-CF1B-4634-A559-A63C86066B61}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{88187ED0-B074-4566-A876-48E4600A43C8}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{913536F3-71E0-4F34-AAE3-058CFCCCFF15}] => (Allow) E:\Programme\Steam\SteamApps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{74CB8DC9-AC24-4321-A736-58E527B2F592}] => (Allow) E:\Programme\Steam\SteamApps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{5860A5DC-8FD4-4CC6-B7E0-1F194C0B1166}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{9F817628-CD3F-43A8-AC19-95358C79D987}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{EB6B6128-5FF5-4FF4-843E-8C6FC05BE340}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{A08AF998-00F3-4C83-BFCB-81B3BD4F5415}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{14100FF9-0566-435C-8797-6CA55C714894}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe FirewallRules: [{EC2E4105-407F-420D-966C-5BC3DD583827}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe FirewallRules: [{00625A7A-8183-4323-BF48-6541019862AD}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe FirewallRules: [{527C0B53-E689-4795-809D-786BCF5C7120}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe FirewallRules: [{825FE612-48E0-4D09-B235-BBE86070CF6C}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe FirewallRules: [{1163CAE5-448A-4740-929D-EA4BFA7D72E6}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe FirewallRules: [{8B8FFC75-7B4C-46F5-82CC-4C5CE4F10592}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe FirewallRules: [{72545882-ACAB-452E-8D0A-B9637F767FCB}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe FirewallRules: [{A83EEE18-3359-4BC3-A4C5-BA1176CD08BA}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRSP.exe FirewallRules: [{8F488884-2BFD-4AE6-B796-1DE90AB08B96}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRSP.exe FirewallRules: [{48643EB6-A8AF-40F6-8522-1EFC4B81F0D5}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{56522616-6883-48A2-BAB7-0A139857DFD8}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{4615D667-B036-46B0-8962-4D783928A631}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe FirewallRules: [{2C0F62CF-8118-43ED-B402-322EF15A0ED5}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe FirewallRules: [{A91E5F87-D824-48D6-8FCF-23628C205C61}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\Avatar.exe FirewallRules: [{C4BE67D0-1353-47A9-B833-F7A1A57C1D1F}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\Avatar.exe FirewallRules: [{3F91A2D1-E528-44F6-9DE6-CD6CAFEECD23}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\AvatarLauncher.exe FirewallRules: [{95136FBC-00C1-4D2C-85E2-22E875B8BB43}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\AvatarLauncher.exe FirewallRules: [{54393422-00DA-488B-9A54-F953AEB4F1BD}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage.exe FirewallRules: [{B30B1273-A057-49B0-BECA-6F238C0E7C7A}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage.exe FirewallRules: [{454447EF-B759-42D3-A922-584279121841}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage64.exe FirewallRules: [{2307E41B-0033-47AE-9F09-A626C7849367}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage64.exe FirewallRules: [{F8C714F6-61FF-4962-9674-042FDB622A51}] => (Allow) E:\Unreal Development Kit\No Return V11250\Binaries\Win32\UDK.exe FirewallRules: [{9EE183A2-2883-4788-A25B-1C6014D03E55}] => (Allow) E:\Unreal Development Kit\No Return V11250\Binaries\Win32\UDK.exe FirewallRules: [{E43E35D8-F4ED-4342-89EA-0C4BEC7DE286}] => (Allow) E:\Programme\Steam\SteamApps\common\HauntedMemories\HM.exe FirewallRules: [{7C5088D8-0334-4F04-97AF-01E2D80C5806}] => (Allow) E:\Programme\Steam\SteamApps\common\HauntedMemories\HM.exe FirewallRules: [{20AA8D3A-1210-4501-8435-559559C2BBAD}] => (Allow) E:\Programme\Steam\SteamApps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{130D9E54-4529-44D6-B96C-ABA665E54350}] => (Allow) E:\Programme\Steam\SteamApps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{EFD4A31F-B644-44E2-9070-630145BB5AF9}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\TWTM.exe FirewallRules: [{EC43B800-C772-4602-9ACE-3269BDC0596B}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\TWTM.exe FirewallRules: [{246DDC2F-A6D4-4684-BE87-D9E8E970B7DD}] => (Allow) E:\Programme\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{661419EC-C7A6-43DC-A64D-97619136F4DD}] => (Allow) E:\Programme\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{531B5E34-0EBE-497B-AA2B-AA24C7F040B6}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{9F445AD7-3E53-4367-B7E6-C0FECAF5C9A4}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{32B41F95-630B-45FE-BB9A-13B12E3BE0E7}] => (Allow) E:\Programme\Steam\SteamApps\common\Only If\Only If.exe FirewallRules: [{189789FB-48F4-4D24-9BB3-F30E1076A60E}] => (Allow) E:\Programme\Steam\SteamApps\common\Only If\Only If.exe FirewallRules: [{CC497C1A-5F01-4CBD-8CAC-ED07A114AAB2}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FarCry2.exe FirewallRules: [{CA927013-3AD5-4034-8012-A9244DD2B951}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FarCry2.exe FirewallRules: [{07DFC13A-3185-4D6F-AEE6-EC5BCDE5075C}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Launcher.exe FirewallRules: [{90D9CBA2-F59B-4226-998F-EDE0547D285C}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Launcher.exe FirewallRules: [{7234B363-B492-4B6D-8CA7-C2695BB21CF7}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Editor.exe FirewallRules: [{994F79BF-0EB7-4374-89BE-1BF0DED4BF30}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Editor.exe FirewallRules: [{52EBFCD9-7C17-4C3E-AF4D-719033E1DF6D}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2ServerLauncher.exe FirewallRules: [{F9F0D9BC-DB18-4CC9-9B9E-E3584C4F06FA}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2ServerLauncher.exe FirewallRules: [{12054756-250F-42D5-A6F8-B39ABDD88B33}] => (Allow) E:\Programme\Steam\SteamApps\common\State of Decay\StateOfDecay.exe FirewallRules: [{5AB8BB9A-FD72-4549-B581-6AF243CCB5AA}] => (Allow) E:\Programme\Steam\SteamApps\common\State of Decay\StateOfDecay.exe FirewallRules: [{E2A1C10B-F4CE-4415-BF4F-74A91284BBF2}] => (Allow) E:\Programme\Steam\bin\steamwebhelper.exe FirewallRules: [{4632D09F-D163-4D13-A8CF-4A09ABB8A146}] => (Allow) E:\Programme\Steam\bin\steamwebhelper.exe FirewallRules: [{8B2EAFB1-2407-4BE2-B181-3890420834A8}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe FirewallRules: [{199A182B-14D6-4EE8-BA4C-559A26331C41}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe FirewallRules: [{D22CD42F-4C50-4FA6-B64A-98194A75D5A6}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe FirewallRules: [{7A1EB2AB-8780-4053-824C-C9EFD47F5FAC}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe FirewallRules: [{0D601019-53F5-409F-8EAE-61F66D222D71}] => (Allow) E:\Programme\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{88B70024-A860-4158-9F06-6A90513766AE}] => (Allow) E:\Programme\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{56BF3432-3F46-4176-930C-CBE7CE5B967F}] => (Allow) E:\Programme\Steam\SteamApps\common\Deadlight\Binaries\Win32\LOTDGame.exe FirewallRules: [{96E8F828-920E-4BDB-A101-135B0F792EE6}] => (Allow) E:\Programme\Steam\SteamApps\common\Deadlight\Binaries\Win32\LOTDGame.exe FirewallRules: [{DAB38168-BABD-41C5-A28A-70E77FCD8B7D}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{69F1D415-99F5-447F-88C5-F2606884B295}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{C21F767B-9B5B-41D9-A344-966EB982C853}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex The Fall\DeusEx_steam.exe FirewallRules: [{A907098B-1AE4-455C-905A-44E647465A16}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex The Fall\DeusEx_steam.exe FirewallRules: [{1221C433-2D6D-4F73-9E24-DD1D26438E83}] => (Allow) E:\Programme\Steam\SteamApps\common\DemoAritanaHF\Aritana.exe FirewallRules: [{AE220B18-C88C-45C6-9BED-D5B6E76B33A0}] => (Allow) E:\Programme\Steam\SteamApps\common\DemoAritanaHF\Aritana.exe FirewallRules: [{08E2FB9A-2240-4023-A18A-BE5E505E130E}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{AACD929C-4657-41BB-9C9F-0947FD67C7E6}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{DD2E7157-F47B-4C71-8DCB-C010EFEDC2F4}] => (Allow) E:\Programme\Steam\SteamApps\common\Monochroma Demo\Monochroma.exe FirewallRules: [{E6CC9140-F6CA-44C7-AB01-58010D7A7758}] => (Allow) E:\Programme\Steam\SteamApps\common\Monochroma Demo\Monochroma.exe FirewallRules: [{93237E32-27CE-4139-BF91-3260E98F47D7}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\SDKLauncher.exe FirewallRules: [{7CB8FA9D-80B5-424A-B4F6-8A68B04295A4}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\SDKLauncher.exe FirewallRules: [{1354260F-95B0-4B8D-96EA-23DB360E09BB}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\p2map_publish.exe FirewallRules: [{9EF60C70-F206-4295-812D-60362C08E5F4}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\p2map_publish.exe FirewallRules: [{68C95498-7221-4BB9-8D85-E008FE6B1EE6}] => (Allow) E:\Programme\Microsoft Visual Studio 12.0\Common7\IDE\WDExpress.exe FirewallRules: [{27038B91-F073-46F0-A10A-EB977BEAB372}] => (Allow) E:\Programme\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{D7414C60-D699-458D-A630-F06F786B4A68}] => (Allow) E:\Programme\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{0169B271-942B-4355-A8F5-D5FE77674ACB}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{A002F34A-E5B5-46A3-BE49-D2D135D6C12B}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [VirtualPC-In-UDP-1] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [VirtualPC-In-UDP-2] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [VirtualPC-In-TCP-1] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [{1D658D95-3901-4B5C-809A-992C757B6711}] => (Allow) E:\Programme\Steam\SteamApps\common\left 4 dead\left4dead.exe FirewallRules: [{FBD891BE-1E31-4F4D-9D94-334F52B8F4CD}] => (Allow) E:\Programme\Steam\SteamApps\common\left 4 dead\left4dead.exe FirewallRules: [{8A7ADE5A-72F0-42A2-9F93-5EF34514EBA9}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\SporeBin\SporeApp.exe FirewallRules: [{3D79E9EF-C435-490C-B939-FC250422D32A}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\SporeBin\SporeApp.exe FirewallRules: [{C09C1EC6-1FFA-4038-A5BB-959155FD30D5}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\runme.exe FirewallRules: [{CC08DA75-39D7-4C40-A83D-61FD4F330ADE}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\runme.exe FirewallRules: [{F6051F21-E015-40F5-90E3-1F2B129F4991}] => (Allow) E:\Programme\Steam\SteamApps\common\I am Alive\src\SYSTEM\IAmAlive_game.exe FirewallRules: [{1E448842-915F-414B-B246-1D3561C16833}] => (Allow) E:\Programme\Steam\SteamApps\common\I am Alive\src\SYSTEM\IAmAlive_game.exe FirewallRules: [{A2265F02-4717-4F88-878D-5E04125C689B}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe FirewallRules: [{8C1A527E-8F17-4DBF-ADD6-A9118F59CE3A}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe FirewallRules: [{1367E60B-80F5-4A8A-9EB0-42491FF5A757}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160_START.exe FirewallRules: [{1BC82058-43B0-4ACC-8E03-FE173B0A28C9}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160_START.exe FirewallRules: [{6C691ACF-B4C3-428E-8E49-E93818E1151D}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160Editor_START.exe FirewallRules: [{9F354513-6B58-44BF-B424-2E1FD760555F}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160Editor_START.exe FirewallRules: [{9B8C0BC8-1204-4108-8540-08A42342E5E4}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro 2033\metro2033.exe FirewallRules: [{B2452605-04B6-44A9-A55B-1221E583D372}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro 2033\metro2033.exe FirewallRules: [{867A92E8-4014-47AC-A627-60785CF8E59B}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JustCause.exe FirewallRules: [{9F252B12-9F37-4C8D-A6D2-C880D2B255AA}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JustCause.exe FirewallRules: [{E52C0C32-CE82-409D-BADC-E760594EB425}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JCSetup.exe FirewallRules: [{20818956-EA85-4DE3-8C47-4E9C271A5EE7}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JCSetup.exe FirewallRules: [{6D22E720-AE24-49A0-B1C3-6B9A845DB673}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{61827246-973F-46E5-BC6D-0B204A28884B}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{65EF2C03-D130-42F8-8309-7FD93C53FB9B}] => (Allow) E:\Programme\Steam\SteamApps\common\Nuclear Dawn\nucleardawn.exe FirewallRules: [{6D624995-CFC1-4CBD-AFBA-8FF36C882030}] => (Allow) E:\Programme\Steam\SteamApps\common\Nuclear Dawn\nucleardawn.exe FirewallRules: [{1C9CB6FD-D2A8-4021-94D3-57E4357ECCA0}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{9BC2D94B-45E9-45AD-8A86-2A17A3E0E682}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{06061685-E6BB-4D5C-81B7-3959B50C7650}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe FirewallRules: [{C491C9EA-B4EC-4712-8CCE-F145D2C2DC18}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe FirewallRules: [{0087ABD4-7BA6-4F30-86A2-DF99EB53BD62}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe FirewallRules: [{D489EE49-6616-4DD3-AA22-0038DAB21A4D}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe FirewallRules: [{D8C86D8D-7635-4D8D-9519-5AC77776EC9D}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe FirewallRules: [{50AD1E80-C99A-4E7A-BD9A-DFC05A046162}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe FirewallRules: [{4C90DAEB-A135-4D62-BB63-63E96195DF11}] => (Allow) E:\Programme\Steam\SteamApps\common\the witcher 2\Launcher.exe FirewallRules: [{08420DA4-4FEF-4540-967C-2F05C681EDE9}] => (Allow) E:\Programme\Steam\SteamApps\common\the witcher 2\Launcher.exe FirewallRules: [{8E62E789-1E8D-407F-B57E-CAE4ADAEFDD7}] => (Allow) E:\Programme\Steam\SteamApps\common\WOG\disasm.exe FirewallRules: [{1E49B5CF-218C-4631-9EF3-52DEA5FAC249}] => (Allow) E:\Programme\Steam\SteamApps\common\WOG\disasm.exe FirewallRules: [{BFF95CE5-9A36-48DF-86F7-8336EE8433E6}] => (Allow) E:\Programme\Steam\SteamApps\common\theHunter\launcher\launcher.exe FirewallRules: [{C58D875C-217F-46B6-9A43-BE68D5691F6B}] => (Allow) E:\Programme\Steam\SteamApps\common\theHunter\launcher\launcher.exe FirewallRules: [{71FEB099-E047-487D-AE76-813718843BA8}] => (Allow) E:\Programme\Steam\SteamApps\common\Worms Reloaded\WormsReloaded.exe FirewallRules: [{E5799A31-53AC-4A45-B3D8-C56ABF5247B1}] => (Allow) E:\Programme\Steam\SteamApps\common\Worms Reloaded\WormsReloaded.exe FirewallRules: [{AB88AB45-2882-4490-A26F-77AE0DAB1C80}] => (Allow) E:\Programme\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{A007B7D3-D9E1-411B-A0BD-4D9AA3584687}] => (Allow) E:\Programme\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{FE8AF1FB-3E8C-4F18-BA53-186D4957B4CF}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\HowToSurvive.exe FirewallRules: [{60F3F7E9-FDC7-4CDA-B977-86CF9A6451AE}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\HowToSurvive.exe FirewallRules: [{EA4D2A64-3343-42B7-8189-BC6F650C79AB}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\Detect.exe FirewallRules: [{720E8303-F213-4BBF-88BB-2445D7E6A9C0}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\Detect.exe FirewallRules: [{DE4F8B60-694B-4872-BEE6-93FB94D98C81}] => (Allow) E:\Programme\Steam\SteamApps\common\Outlast\OutlastLauncher.exe FirewallRules: [{4C0B8814-3EB4-4159-8E5D-B3EA5270E3FC}] => (Allow) E:\Programme\Steam\SteamApps\common\Outlast\OutlastLauncher.exe FirewallRules: [{6FFE53BB-082E-4585-A1AE-F346EF05949B}] => (Allow) E:\Programme\Steam\SteamApps\common\TheLongDark\tld.exe FirewallRules: [{C67CD027-1100-4900-B4A7-9F314B3D576C}] => (Allow) E:\Programme\Steam\SteamApps\common\TheLongDark\tld.exe FirewallRules: [{F855C128-0BA9-4AB1-9DC1-DC93B81BF252}] => (Allow) E:\Programme\Steam\SteamApps\common\Eternal Winter\EternalWinter.exe FirewallRules: [{83C5DD9B-7AE6-465B-A7DC-02AB2CEF1501}] => (Allow) E:\Programme\Steam\SteamApps\common\Eternal Winter\EternalWinter.exe FirewallRules: [{7B100F58-5EC2-4A0F-B929-72D0130F09FC}] => (Allow) E:\Programme\Steam\SteamApps\common\puddle\Launcher.exe FirewallRules: [{F90C0B59-95D6-4D83-9D59-D781D65C027F}] => (Allow) E:\Programme\Steam\SteamApps\common\puddle\Launcher.exe FirewallRules: [{FED79DAC-05FE-4F0A-9926-B0682DB9A77D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{64E3BB37-B8AC-4F0F-A345-695E1D35F064}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{5C4D5E66-1D54-47F6-BBC5-81778B14816A}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{406C1B64-EE31-4F88-A0EF-669724CEA55D}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{684A06A1-9D97-40AC-83DC-0B63BCBE1E88}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{467E7E21-D20A-453F-88F7-EC85B6264F79}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{15E8CA78-B614-4A5F-B8DA-60E1384122DC}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{BAE77290-69AE-4B26-BEF4-8D6609EB7BCC}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{62C52B53-EFEE-4E63-8BC0-7AE4DB7770CD}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{E0951DB9-6A06-4EEF-BB63-C9C19B240C79}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{B60BBE27-9B67-4BE6-966E-A138A61A482E}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{A02892A6-0763-4935-93C7-F34529D988F1}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{9E8F338F-89A3-49C9-9894-06F342CA30E7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{4E154B41-E5A2-4C0E-969E-1106C12F3069}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1C6EFD0F-699F-43CE-A01F-24EA40C16EEA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{629B82B8-58EC-4BFB-B4F7-C70E80C52CFB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D69BAF22-2E31-4249-BECD-AA2D206F6EA1}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid32.exe FirewallRules: [{F1FD5506-8FC8-46CB-B9BF-55E974A25D82}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid32.exe FirewallRules: [{13EEFE8C-212B-4073-9703-3B3E7A77283B}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid64.exe FirewallRules: [{DC334550-EBF8-4FC3-B51E-8DB4C9C5C3CE}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid64.exe FirewallRules: [{33AAEF15-8736-42CA-9D7D-B4EFD5417F8A}] => (Allow) E:\Programme\Steam\SteamApps\common\Lococycle\Launcher.exe FirewallRules: [{C957AACB-023F-4171-82C1-FA2944CD3A09}] => (Allow) E:\Programme\Steam\SteamApps\common\Lococycle\Launcher.exe FirewallRules: [TCP Query User{21D08946-DFC8-4255-811A-C95DC693671E}F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe] => (Allow) F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe FirewallRules: [UDP Query User{AAC5FF8A-3F8D-4081-9D86-ADC053FCB169}F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe] => (Allow) F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe FirewallRules: [{4BD527E6-4095-408D-A659-C70E8B2A1AF7}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{A9F6FEE5-68C3-4398-9495-16777FDCCC2D}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{469F4C42-84E5-4779-82F4-A8C882452A59}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{FFC07E24-3CD0-462C-B916-CE3FFAB90EDD}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{547414C9-2398-4622-B531-EE9FA896C472}] => (Allow) E:\Programme\Steam\SteamApps\common\FarSky\farskyExec.exe FirewallRules: [{1B66F87A-D6A1-4BD9-A81C-02DB770566E8}] => (Allow) E:\Programme\Steam\SteamApps\common\FarSky\farskyExec.exe FirewallRules: [{25A9F05B-1DA8-44EE-B6F4-C36903B42D0B}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders\DarksidersPC.exe FirewallRules: [{71B9CEB6-7C0B-4946-9063-CA1222E4BADE}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders\DarksidersPC.exe FirewallRules: [{3878141E-0455-4186-9640-9B4B97A72F2B}] => (Allow) E:\Programme\Steam\SteamApps\common\The Stanley Parable\stanley.exe FirewallRules: [{5CD2DCE4-8A05-42DC-B948-207272E303F8}] => (Allow) E:\Programme\Steam\SteamApps\common\The Stanley Parable\stanley.exe FirewallRules: [{57E9EF26-00BF-49F4-9E16-D3CF8443561A}] => (Allow) E:\Programme\Steam\SteamApps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe FirewallRules: [{0A2605BD-899E-442E-8BCA-1196D91D5818}] => (Allow) E:\Programme\Steam\SteamApps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe FirewallRules: [{56751053-C56D-4562-8036-D45B65B4FC85}] => (Allow) E:\Programme\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{6D68158A-E426-49B0-B5B3-D06713D472C7}] => (Allow) E:\Programme\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{24919CAC-773E-42EB-A6DD-D594F9B7513B}] => (Allow) E:\Programme\Steam\SteamApps\common\Arx Fatalis\arx.exe FirewallRules: [{B1A71770-A7F6-4D52-9E68-59C88EDF65B7}] => (Allow) E:\Programme\Steam\SteamApps\common\Arx Fatalis\arx.exe FirewallRules: [{69D7F1BD-8997-448A-80B7-61CD811C6959}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe FirewallRules: [{D0D47259-CC65-41E0-857A-4737EDDF8CD7}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe FirewallRules: [{47E3F425-AD51-45EA-8081-03B2EE03C522}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{EAF8C986-2D6A-4591-BB5C-398701739282}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{1C67BA58-91D7-49FA-8742-B37DC3E8AA10}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{36C306FB-BED2-4E6B-8DB8-C9527B4DE06A}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{53CA5307-EF99-4DF3-9356-EB3863C90A10}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{1A5C9DE6-987C-4954-B6E1-7B987A9906C8}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{896C9092-9C05-4F67-8D6D-7B390F0BD660}] => (Allow) E:\Programme\Steam\SteamApps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{0399C45F-3FFE-4D79-BF76-6B8E2051811C}] => (Allow) E:\Programme\Steam\SteamApps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{5494FD02-4BB6-4AED-ADC7-637AE6F9A50B}] => (Allow) E:\Programme\Steam\SteamApps\common\Gigantic Army\GIGANTIC ARMY.exe FirewallRules: [{DEFA9A49-FC1C-4F9F-A368-D0281B683CB8}] => (Allow) E:\Programme\Steam\SteamApps\common\Gigantic Army\GIGANTIC ARMY.exe FirewallRules: [{17655C7F-E99C-4D9B-B8FC-47D80F2DBB44}] => (Allow) E:\Programme\Steam\SteamApps\common\Hacknet\Hacknet.exe FirewallRules: [{BA50C228-8D82-456A-A081-2E6A708D884E}] => (Allow) E:\Programme\Steam\SteamApps\common\Hacknet\Hacknet.exe FirewallRules: [{1A38E074-EC66-418E-B216-C9DE120CD8B1}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\portal2.exe FirewallRules: [{CA2A29DF-B74E-4E6D-AD54-D4E5E646B8C3}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\portal2.exe FirewallRules: [{EE790F5F-43D0-4B7B-8383-114F534AC8AD}] => (Allow) E:\Programme\Steam\SteamApps\common\Belladonna\Belladonna.exe FirewallRules: [{350BA280-A042-47AB-B30E-F7789DE5EFDF}] => (Allow) E:\Programme\Steam\SteamApps\common\Belladonna\Belladonna.exe FirewallRules: [{07DE9620-5D73-4D1E-B339-1433534D7859}] => (Allow) E:\Programme\Steam\SteamApps\common\Asteria\Asteria.exe FirewallRules: [{A6610971-9BBA-48B6-9F9F-786A6684B227}] => (Allow) E:\Programme\Steam\SteamApps\common\Asteria\Asteria.exe FirewallRules: [{B58AB62B-B0C0-48B3-BE60-339656FDF24A}] => (Allow) E:\Programme\Steam\SteamApps\common\FireflyOnlineCortex\FireflyCortex.exe FirewallRules: [{ABF43631-1243-49CC-A9A7-AF8A23957F34}] => (Allow) E:\Programme\Steam\SteamApps\common\FireflyOnlineCortex\FireflyCortex.exe FirewallRules: [{29AB27DC-EF79-495C-9F35-6AC7E76FCA48}] => (Allow) E:\Programme\Steam\SteamApps\common\Tropico 5\Tropico5Steam.exe FirewallRules: [{28D8B1A2-FA3C-4F48-A6BC-6862C2E3D2B9}] => (Allow) E:\Programme\Steam\SteamApps\common\Tropico 5\Tropico5Steam.exe FirewallRules: [{500B497E-BF2A-4807-8805-5C36819F3A65}] => (Allow) E:\Programme\Steam\SteamApps\common\deadrising3\deadrising3.exe FirewallRules: [{8A15FF9E-FB1F-4BED-9689-7BDEB415D5C8}] => (Allow) E:\Programme\Steam\SteamApps\common\deadrising3\deadrising3.exe FirewallRules: [{6AD1C471-E657-47E4-9948-E2EAA8C5827A}] => (Allow) E:\Programme\Raptr\raptr.exe FirewallRules: [{E7120C0F-DA07-4CE5-A18E-C6E2335B5755}] => (Allow) E:\Programme\Raptr\raptr.exe FirewallRules: [{824F109A-F249-4F02-B083-DC043B91F024}] => (Allow) E:\Programme\Raptr\raptr_im.exe FirewallRules: [{88A82BE7-1D54-437B-8F1B-E3AAFB12282A}] => (Allow) E:\Programme\Raptr\raptr_im.exe FirewallRules: [{B51E0A67-1F75-4176-9161-7B3C438AB1C8}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{37998796-4457-4AC0-A924-66BEC33C4C15}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{904FCC2C-2D6E-4A2C-A77E-ACA5DD6C1563}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{F3C3DA91-BBAE-4486-9E11-0323805E0E33}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{B21BFEDC-6C47-476A-AC4D-EE652C4FC7D4}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine 2\trine2_launcher.exe FirewallRules: [{7DADEF67-570E-445F-AFC9-0903636EDFE0}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine 2\trine2_launcher.exe FirewallRules: [{775DD720-945A-4338-939E-0AEECAE1A38D}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{D6EA4748-9289-4263-B665-7D977190B5D0}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{0CC5C1BB-D365-4D7B-8C9C-78DA56E87800}] => (Allow) E:\Programme\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{6BBF153E-B909-4CEF-9162-9523E9E1FC45}] => (Allow) E:\Programme\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{C64A06CA-1E26-4F99-BB8E-2A204500B95F}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{D2B96CED-A09B-4B31-B186-6414BBE2542C}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{5FE7157C-E9CA-49F5-AE0D-5A1E445F78DE}] => (Allow) E:\Programme\Steam\SteamApps\common\Robocraft\Robocraft.exe FirewallRules: [{8ACD0E24-C19C-434C-AFF3-CBBAFB7CA35F}] => (Allow) E:\Programme\Steam\SteamApps\common\Robocraft\Robocraft.exe FirewallRules: [{F2A3118E-77DE-42D6-A71A-7DB6CD5DABF1}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{1266AE14-B26F-4EF5-A5A3-D757A13B524C}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{8BCAEBC9-8724-4687-99F8-104361A69B2C}] => (Allow) E:\Programme\Steam\SteamApps\common\Spooky's House of Jump Scares\SPOOKY.exe FirewallRules: [{E8C8051F-7C59-4307-A8E4-240D0C4049A3}] => (Allow) E:\Programme\Steam\SteamApps\common\Spooky's House of Jump Scares\SPOOKY.exe FirewallRules: [{DC53B0BB-71AD-45CB-8511-A699554E48B2}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro Last Light\MetroLL.exe FirewallRules: [{EA741A4D-D829-4C49-8F52-07840FEBED7F}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro Last Light\MetroLL.exe FirewallRules: [{B12DA3A5-3617-432A-AD5D-94285389B1EE}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{53F98E63-7D44-4F92-823D-54B1088A8EFC}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{3E95A19F-796B-46D6-BDB3-AB6B112A1A0E}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{C6BA2803-61CB-412F-8F4D-B3B5236BFD2F}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{FB39A534-AA11-4BDB-BF1B-A8B8A77A9886}] => (Allow) E:\Programme\Steam\SteamApps\common\DayOne\Binaries\Win32\DayOne.exe FirewallRules: [{8873948A-AD42-45E5-A634-4D0BE5620149}] => (Allow) E:\Programme\Steam\SteamApps\common\DayOne\Binaries\Win32\DayOne.exe FirewallRules: [{A98BCC7F-50E2-4A9C-BA0A-01BA3EB8BE44}] => (Allow) E:\Programme\Steam\SteamApps\common\PlagueInc\PlagueIncEvolved.exe FirewallRules: [{AA44D748-456F-48BA-9EF6-31D2CA62021C}] => (Allow) E:\Programme\Steam\SteamApps\common\PlagueInc\PlagueIncEvolved.exe FirewallRules: [{FC0497D3-F7FB-470C-A419-D7C9C485A5CA}] => (Allow) E:\Programme\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{3ECBA115-136F-4642-B4B9-3936C399F24F}] => (Allow) E:\Programme\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{C727F522-DC36-4CD9-B52A-97D01CB22CDF}] => (Allow) E:\Programme\Steam\SteamApps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe FirewallRules: [{E869A9C2-3E54-4B4F-A83F-4007C0EFEEE1}] => (Allow) E:\Programme\Steam\SteamApps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe FirewallRules: [{41B684D9-E240-43B8-9B4A-61882EDD702B}] => (Allow) E:\Programme\Steam\SteamApps\common\Cradle\bin\cradle_x64.exe FirewallRules: [{669F8ED7-0B3E-49FD-9E53-D3E715207184}] => (Allow) E:\Programme\Steam\SteamApps\common\Cradle\bin\cradle_x64.exe FirewallRules: [{462C80C9-4B95-412D-98E8-CD4B39564E20}] => (Allow) E:\Programme\Steam\SteamApps\common\Empyrion - Galactic Survival\EmpyrionLauncher.exe FirewallRules: [{D1971867-0D3F-4DAF-AF06-E413F2933990}] => (Allow) E:\Programme\Steam\SteamApps\common\Empyrion - Galactic Survival\EmpyrionLauncher.exe FirewallRules: [{51B438AB-18C6-4AAD-B56E-C6FD3ACFF7C6}] => (Allow) E:\Program Files (x86)\Origin Games\Titanfall\Titanfall.exe FirewallRules: [{B5C34FAB-0AFF-4F15-94B0-F481C74FDC63}] => (Allow) E:\Program Files (x86)\Origin Games\Titanfall\Titanfall.exe FirewallRules: [{AA6E4522-5E3A-4B12-9047-34D0F8C3D9D3}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7dLauncher.exe FirewallRules: [{BEF82D7D-9860-41FB-AB90-28AC86C21172}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7dLauncher.exe FirewallRules: [{90388FD0-C553-4B37-9DC5-872FF97E6583}] => (Allow) E:\Programme\Steam\SteamApps\common\Welcome to the Game\WTTG.exe FirewallRules: [{4DB90EE4-AA4F-4633-92A9-1F9B73120B11}] => (Allow) E:\Programme\Steam\SteamApps\common\Welcome to the Game\WTTG.exe FirewallRules: [{B54D40D5-4523-40E7-B09A-56277AE04B9C}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{5C409637-6DAA-460E-ACDA-B649FFE5471D}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{778089E1-8305-4ADC-91C0-5F9C9EFF3229}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{9CA527FD-B4D3-45B5-A425-EC1D6DCA40B0}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{36CF8920-6C05-4568-BEFB-F791C81EFF4A}] => (Allow) E:\Programme\Steam\SteamApps\common\RaceTheSun\RaceTheSun.exe FirewallRules: [{E6A3A06C-AAB9-4143-8FC3-2F37235DAD3D}] => (Allow) E:\Programme\Steam\SteamApps\common\RaceTheSun\RaceTheSun.exe FirewallRules: [{67DC53B5-F379-42DF-8C9D-99E4734EC5B2}] => (Allow) E:\Programme\Steam\SteamApps\common\Residue\Residue.exe FirewallRules: [{ACF967D1-5064-4038-8D62-0074F834EBAE}] => (Allow) E:\Programme\Steam\SteamApps\common\Residue\Residue.exe FirewallRules: [{A0E07E58-0BBB-4D9A-9439-10A8D4C52144}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [{550CD682-112D-48DD-91AE-CA9ABA63B110}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [{48749744-9D27-4586-9575-6B0213641C98}] => (Allow) E:\Programme\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe FirewallRules: [{465AB5EF-15AB-4B41-A254-5D46C1421CA3}] => (Allow) E:\Programme\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe FirewallRules: [{CE5076B7-080A-4731-9182-BF53B00183F6}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\deponia.exe FirewallRules: [{58038BB6-F8D2-41EB-8789-AC4D59F53F18}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\deponia.exe FirewallRules: [{EF60B368-C0A4-4FCD-AFD8-347962BB20D1}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{1A46C43F-2EC8-4BD4-9A5D-0F17BC3F89F3}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{819D3B54-9B7E-4E5E-A4B6-013615923240}] => (Allow) E:\Programme\Steam\SteamApps\common\GearUp\bin\Traktor.Amalgam.App.exe FirewallRules: [{08F5090E-9637-45CC-BE73-85178735F486}] => (Allow) E:\Programme\Steam\SteamApps\common\GearUp\bin\Traktor.Amalgam.App.exe FirewallRules: [{6AAB52DB-14ED-4B78-83BF-B490780E36CD}] => (Allow) E:\Programme\Steam\SteamApps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{ECC4AF87-E273-4E25-8731-0D76DE7DFF8B}] => (Allow) E:\Programme\Steam\SteamApps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{16707230-36F3-40B6-9D86-34DB5747D09C}] => (Allow) E:\Programme\Steam\SteamApps\common\Survivalist\Survivalist.exe FirewallRules: [{0E48290C-F0D0-470D-BAE5-4F12228077D2}] => (Allow) E:\Programme\Steam\SteamApps\common\Survivalist\Survivalist.exe FirewallRules: [{675CB024-B5D1-4D9B-ADD6-ABC0504BBB07}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned_BE.exe FirewallRules: [{4C93D55D-E36B-4AB1-ADF8-57C9899CB007}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned_BE.exe FirewallRules: [{765F9F3D-A6B2-41AF-AA32-6C5B9B561017}] => (Allow) E:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{99B3E4DF-DA88-44E6-9CF4-323FE6D9DC58}] => (Allow) E:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{91A727AF-6FD5-4AE7-B962-722562E23FBA}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{E8080FDD-AF36-42C3-92D5-41026AD8D255}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{CA07C9E2-6E49-41F6-BF62-537E7EF03499}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5A060D14-0733-4212-B288-566A3F5E52A9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5E6F4CDC-C3B1-4A20-8D29-5ADB7C8633DD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{A265EE0C-63AD-4CE7-A60A-1BA75A440EC6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{0AD5F744-0D23-4BC2-A225-675F3699573D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{32FF1D8F-FCB6-4344-A26B-C10307BF103C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{D0A0EBEC-A09B-409A-8122-334791522967}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{1972C592-476E-404D-B665-4AF9F955A407}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{8E09DE4B-B32F-47A1-B5A4-912FF8692FB5}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{0EC48E67-B1B2-4000-9534-F8E54BA166B9}] => (Allow) E:\Programme\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{7D4D1A0A-69E1-46AE-9F0D-1600CA3E00F2}] => (Allow) E:\Programme\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{A7C4685D-1BDC-4194-BF15-99FF63308B5A}] => (Allow) E:\Programme\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe FirewallRules: [{846D6DBD-4025-42B1-A99E-BE8E970E8387}] => (Allow) E:\Programme\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe FirewallRules: [{FCDD869A-FE3F-46C6-BE26-9AAAB87D4A6A}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [TCP Query User{F867F7D6-8BEC-435A-A270-1C08DC704BCB}E:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{4D76655A-6000-49BC-9079-D7B0784ADA67}E:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\programme\rockstar games\grand theft auto v\gta5.exe ==================== Wiederherstellungspunkte ========================= 16-02-2017 22:28:58 Entfernt Prince of Persia The Sands of Time 16-02-2017 22:30:12 Entfernt Prince of Persia Warrior Within 18-02-2017 14:41:00 JRT Pre-Junkware Removal ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (02/18/2017 02:26:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Name des fehlerhaften Moduls: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000004e3b57 ID des fehlerhaften Prozesses: 0xdf0 Startzeit der fehlerhaften Anwendung: 0x01d289852967a62e Pfad der fehlerhaften Anwendung: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Pfad des fehlerhaften Moduls: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Berichtskennung: 3badd213-f579-11e6-82f0-d43d7ee3539a Error: (02/18/2017 12:43:23 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm KFGame.exe, Version 1.0.10897.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: cac Startzeit: 01d2896662930cd2 Endzeit: 334 Anwendungspfad: E:\Programme\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe Berichts-ID: Error: (02/17/2017 10:39:05 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm KFGame.exe, Version 1.0.10897.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 528 Startzeit: 01d2896529793c0e Endzeit: 191 Anwendungspfad: E:\Programme\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe Berichts-ID: Error: (02/17/2017 05:11:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Name des fehlerhaften Moduls: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000004fe100 ID des fehlerhaften Prozesses: 0x500 Startzeit der fehlerhaften Anwendung: 0x01d2893881fd9378 Pfad der fehlerhaften Anwendung: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Pfad des fehlerhaften Moduls: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Berichtskennung: cdb893b5-f52b-11e6-bfa1-d43d7ee3539a Error: (02/17/2017 03:11:24 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x04d41e15 ID des fehlerhaften Prozesses: 0x8b0 Startzeit der fehlerhaften Anwendung: 0x01d28927b340e10e Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: f687c4a8-f51a-11e6-ae02-d43d7ee3539a Error: (02/17/2017 03:11:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x04d50e68 ID des fehlerhaften Prozesses: 0x8b0 Startzeit der fehlerhaften Anwendung: 0x01d28927b340e10e Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: f50ae87d-f51a-11e6-ae02-d43d7ee3539a Error: (02/17/2017 03:10:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x02ac2010 ID des fehlerhaften Prozesses: 0xacc Startzeit der fehlerhaften Anwendung: 0x01d28927848a4049 Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: d3ddb8ff-f51a-11e6-ae02-d43d7ee3539a Error: (02/17/2017 02:17:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x02ea2010 ID des fehlerhaften Prozesses: 0xbb4 Startzeit der fehlerhaften Anwendung: 0x01d289200ebe1c1c Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: 620218e8-f513-11e6-abd2-d43d7ee3539a Error: (02/17/2017 01:31:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Name des fehlerhaften Moduls: GTA5.exe, Version: 1.0.944.2, Zeitstempel: 0x5847f8aa Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000004fe100 ID des fehlerhaften Prozesses: 0x1680 Startzeit der fehlerhaften Anwendung: 0x01d288b50f741109 Pfad der fehlerhaften Anwendung: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Pfad des fehlerhaften Moduls: E:\Programme\Rockstar Games\Grand Theft Auto V\GTA5.exe Berichtskennung: 6250696d-f4a8-11e6-a587-d43d7ee3539a Error: (02/17/2017 01:24:10 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm KFGame.exe, Version 1.0.10897.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1520 Startzeit: 01d288afb72e76a5 Endzeit: 559 Anwendungspfad: E:\Programme\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe Berichts-ID: Systemfehler: ============= Error: (02/18/2017 02:41:49 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Super User Run (SuRun) Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (02/18/2017 02:36:34 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "VBoxAsw Support Driver" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (02/18/2017 02:36:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Avast Antivirus" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (02/18/2017 01:38:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "VBoxAsw Support Driver" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (02/18/2017 01:38:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Avast Antivirus" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (02/18/2017 01:37:48 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Search" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: Es wird bereits eine Instanz des Dienstes ausgeführt. Error: (02/18/2017 01:37:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/18/2017 01:37:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (02/18/2017 01:37:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) ME Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (02/18/2017 01:37:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Qualcomm Atheros Killer Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. CodeIntegrity: =================================== Date: 2017-02-18 14:51:49.760 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 14:36:28.472 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 14:31:38.495 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 14:23:03.925 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 14:04:19.472 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 13:52:48.265 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 13:38:42.989 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 13:30:00.638 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 13:24:06.613 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 12:43:23.209 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz Prozentuale Nutzung des RAM: 16% Installierter physikalischer RAM: 16328.55 MB Verfügbarer physikalischer RAM: 13699.39 MB Summe virtueller Speicher: 32655.29 MB Verfügbarer virtueller Speicher: 29848.49 MB ==================== Laufwerke ================================ Drive c: (Boot) (Fixed) (Total:99.78 GB) (Free:22.67 GB) NTFS Drive d: (Eigene Dateien) (Fixed) (Total:673.69 GB) (Free:583.8 GB) NTFS Drive e: (Programme) (Fixed) (Total:1122.65 GB) (Free:105.25 GB) NTFS Drive f: (Daten) (Fixed) (Total:673.69 GB) (Free:601.73 GB) NTFS Drive z: (POP2PLAY) (CDROM) (Total:3.97 GB) (Free:0 GB) UDF ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 2794.5 GB) (Disk ID: D46323CE) Partition: GPT. ==================== Ende von Addition.txt ============================ |
19.02.2017, 14:02 | #8 |
/// TB-Ausbilder | Internetprobleme ohne erkennbare Ursache Servus, wir entfernen die letzten Reste und kontrollieren nochmal alles. Hinweis: Der Suchlauf mit ESET kann länger dauern. Schritt 1 Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter start CloseProcesses: Toolbar: HKLM - Kein Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Keine Datei Toolbar: HKLM - Kein Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Keine Datei RemoveProxy: CMD: ipconfig /flushdns CMD: netsh winsock reset EmptyTemp: end Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Schritt 2 ESET Online Scanner
Schritt 3 Downloade dir die passende Version von HitmanPro auf deinen Desktop: HitmanPro - 32 Bit | HitmanPro - 64 Bit.
Schritt 4
Gibt es jetzt noch Probleme mit dem PC? Wenn ja, welche? Bitte poste mit deiner nächsten Antwort
|
20.02.2017, 14:47 | #9 |
| Internetprobleme ohne erkennbare Ursache Oh man... Da zeigt sich der Nachteil von großen Festplatten, wenn der Suchlauf über vier Stunden dauert... FRST Fixlog: Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 18-02-2017 01 durchgeführt von Admin (20-02-2017 00:38:34) Run:1 Gestartet von C:\Users\Admin\Desktop Geladene Profile: Admin (Verfügbare Profile: Admin (Alt Buggy) & TempAdmin & Admin & Mario (Neu) & Administrator) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** start CloseProcesses: Toolbar: HKLM - Kein Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Keine Datei Toolbar: HKLM - Kein Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Keine Datei RemoveProxy: CMD: ipconfig /flushdns CMD: netsh winsock reset EmptyTemp: end ***************** Prozesse erfolgreich geschlossen. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => Wert erfolgreich entfernt HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => Schlüssel nicht gefunden. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => Wert erfolgreich entfernt HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => Schlüssel nicht gefunden. ========= RemoveProxy: ========= HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt ========= Ende von RemoveProxy: ========= ========= ipconfig /flushdns ========= Windows-IP-Konfiguration Der DNS-Aufl”sungscache wurde geleert. ========= Ende von CMD: ========= ========= netsh winsock reset ========= Der Winsock-Katalog wurde zurckgesetzt. Sie mssen den Computer neu starten, um den Vorgang abzuschlieáen. ========= Ende von CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 34369352 B Java, Flash, Steam htmlcache => 36259357 B Windows/system/drivers => 5821344 B Edge => 0 B Chrome => 0 B Firefox => 146568879 B Opera => 0 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 0 B Public => 0 B ProgramData => 0 B systemprofile => 66788 B systemprofile32 => 66520 B LocalService => 69644 B NetworkService => 55706 B Admin (Alt Buggy) => 58176379 B UpdatusUser => 0 B TempAdmin => 3124472 B Admin => 62104415 B Mario => 358938651 B Administrator => 85834 B RecycleBin => 6384311782 B EmptyTemp: => 6.6 GB temporäre Dateien entfernt. ================================ Das System musste neu gestartet werden. ==== Ende von Fixlog 00:41:34 ==== Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=e0a79f406a082b40a4ab410f2ebcb08b # end=init # utc_time=2017-02-19 11:53:27 # local_time=2017-02-20 12:53:27 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download Update Finalize Updated modules version: 32460 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=e0a79f406a082b40a4ab410f2ebcb08b # end=updated # utc_time=2017-02-20 12:00:55 # local_time=2017-02-20 01:00:55 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=e0a79f406a082b40a4ab410f2ebcb08b # engine=32460 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2017-02-20 04:06:08 # local_time=2017-02-20 05:06:08 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='avast! Antivirus' # compatibility_mode=771 16777214 66 62 828425 14125194 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 42164428 239193418 0 0 # scanned=1204579 # found=18 # cleaned=0 # scan_time=14712 sh=C25E453070C795849C94FCB0311ED1DDD4F7B74D ft=1 fh=a07ba6255bd749e6 vn="Win32/Toolbar.Conduit eventuell unerwünschte Anwendung" ac=I fn="C:\$Recycle.Bin\S-1-5-21-3905677154-2266868164-1778288955-500\$RVV2IL9\AppData\Local\Temp\{907A1104-E812-4b5c-959B-E4DAB37A96AB}\CUninstallerZA.exe" sh=95BA16E8DC56509B7FE6FECAE01788B371884D54 ft=1 fh=2ab1e7309520311b vn="Win32/Toolbar.Montiera.J eventuell unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\quarantine\files\zwsgsgjbkofxfvtqlyxugnajbdpttkmo\zonealarm\1.8.11.11\escortShld.dll" sh=4CD483AE1ADF0BD259C612CD356D19B3315A73AF ft=1 fh=69773bfd872c2fda vn="Win32/Toolbar.Montiera.B eventuell unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\quarantine\files\zwsgsgjbkofxfvtqlyxugnajbdpttkmo\zonealarm\1.8.11.11\uninstall.exe" sh=8E79492D89D79726BBF7A3012DD0F6F1EAEDE34F ft=1 fh=c71c0011e5827a74 vn="Variante von Win32/Toolbar.Montiera.A eventuell unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\quarantine\files\zwsgsgjbkofxfvtqlyxugnajbdpttkmo\zonealarm\1.8.11.11\zonealarmApp.dll" sh=AE638A448B587E19589F749E9CDCB2C6282B5C7F ft=1 fh=fb95174cb413b8bf vn="Variante von Win32/Toolbar.Montiera.A eventuell unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\quarantine\files\zwsgsgjbkofxfvtqlyxugnajbdpttkmo\zonealarm\1.8.11.11\zonealarmEng.dll" sh=2C7E92DBF6A14DE89382CCC9C9E2807B5EB3F906 ft=1 fh=d7cdf3a9bac82201 vn="Variante von Win32/Toolbar.Montiera.A eventuell unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\quarantine\files\zwsgsgjbkofxfvtqlyxugnajbdpttkmo\zonealarm\1.8.11.11\zonealarmsrv.exe" sh=1D1FAB6A160F93255902ADD821CA8CE9E32CA3B6 ft=1 fh=ea5abdb1c4cea4fa vn="Variante von Win32/Toolbar.Montiera.F eventuell unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\quarantine\files\zwsgsgjbkofxfvtqlyxugnajbdpttkmo\zonealarm\1.8.11.11\zonealarmTlbr.dll" sh=952297929B36D1F23B0543AAD65417E6BF052C33 ft=1 fh=3be06046f2abc5bc vn="Variante von Win32/Toolbar.Escort.A eventuell unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\quarantine\files\zwsgsgjbkofxfvtqlyxugnajbdpttkmo\zonealarm\1.8.11.11\bh\zonealarm.dll" sh=864639B9A6C2B76356B4D3AF2C8F6432B00731E2 ft=1 fh=c71c00111c3de59c vn="Win32/InstallCore.DU eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\Alcohol120_trial_2.0.2.5629.exe" sh=C05EBCC71E23A454CB2760A32E37D69E98BC4D0F ft=1 fh=74a05dca607362e1 vn="Variante von Win32/InstallCore.PK eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\CamStudioSetup_v2.7.2.exe" sh=A30D0CF639389B52F9502719C759F7A3F2BD595E ft=1 fh=9d5c5ce9b4e056fe vn="Variante von Win32/DownloadSponsor.A eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\Core Temp - CHIP-Downloader.exe" sh=E7324FDF72FA6976B8D17215CEF5CEEB292A3CB5 ft=1 fh=ecf981a39bb3b4b1 vn="Variante von Win32/InstallIQ.A eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\coretemp_1236.exe" sh=1867142971E46CEFBDC91D1C32BDDB89B9CC2FCB ft=1 fh=bed49cb1acf2aab9 vn="Win32/DownWare.L eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\DaemonToolsLite4471-0333.exe" sh=C904E3E3652AFA2404B3E60A87B0755F09BEE366 ft=1 fh=aae1612873c5adc4 vn="Variante von Win32/DownloadSponsor.C eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\OpenVPN - CHIP-Installer.exe" sh=E2C028A886AA7352539DEE32CBB38770C529A76E ft=1 fh=d2aeb2930bcba9f7 vn="Win32/InstallMonetizer.AQ eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\PDFCreator-1_7_3_setup.exe" sh=A831A70E5CD96F619800A76B7693BC54A6CAC656 ft=1 fh=7d722770b416883c vn="Win32/Toolbar.Conduit eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\zafwSetupWeb_133_209_000.exe" sh=183AFEEF8824925D12476726DFEC706134557979 ft=1 fh=475ac59e7f197375 vn="Win32/Toolbar.Conduit eventuell unerwünschte Anwendung" ac=I fn="F:\Downloads\zafwSetupWeb_133_209_000_new.exe" sh=5B5EA2F5CEC496F99D245A68C884C09F5849E037 ft=1 fh=038fab3ea954bf64 vn="Variante von Win32/DownloadSponsor.C eventuell unerwünschte Anwendung" ac=I fn="F:\Profil-Backups\2016-Januar-14\Mario\AppData\Local\Temp\DMR\dmr_72.exe" Code:
ATTFilter
Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 19-02-2017 durchgeführt von Admin (Administrator) auf GAMEMACHINE-V2 (20-02-2017 05:27:25) Gestartet von C:\Users\Admin\Desktop Geladene Profile: Admin (Alt Buggy) & TempAdmin & Admin & Mario (Neu) & Administrator (Verfügbare Profile: Admin (Alt Buggy) & TempAdmin & Admin & Mario (Neu) & Administrator) Platform: Windows 7 Ultimate Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (hxxp://kay-bruns.de) C:\Windows\SuRun.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe (MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ForceField.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (hxxp://kay-bruns.de) C:\Windows\SuRun.exe (hxxp://kay-bruns.de) C:\Windows\SuRun32.bin (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () F:\WinAuth.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Mozilla Corporation) E:\Programme\Mozilla Firefox\firefox.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe (CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Mozilla Corporation) E:\Programme\Mozilla Firefox\firefox.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe (Microsoft Corporation) C:\Program Files\Microsoft Games\Solitaire\Solitaire.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64 HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393320 2015-08-11] () HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe" HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe" HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7188552 2013-05-27] (Realtek Semiconductor) HKLM\...\Run: [SuRun Systemmenü-Erweiterung] => C:\Windows\SuRun.exe [727552 2013-11-02] (hxxp://kay-bruns.de) HKLM\...\Run: [ISW] => C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [1127592 2012-11-22] (Check Point Software Technologies) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation) HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes) HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2012-11-29] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [506864 2013-03-08] (MSI) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58584 2016-09-28] (Raptr, Inc) HKLM-x32\...\Run: [Andy] => C:\Program Files\Andy\HandyAndy.exe HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe HKLM-x32\...\Run: [AvastUI.exe] => "C:\Programme\AVAST Software\Avast\AvastUI.exe" /nogui HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe [2089056 2015-09-16] (CHENGDU YIWO Tech Development Co., Ltd) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) Winlogon\Notify\igfxcui: igfxdev.dll [X] HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\Run: [Steam] => E:\Programme\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\Run: [Infium] => E:\Programme\QIP Infium psYNovA-Edition\infium.exe [5662720 2009-10-08] (QIP) HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\Run: [WinAuth] => F:\WinAuth.exe [3900928 2014-08-30] () HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\RunOnce: [ProdReg] => C:\Program Files (x86)\Creative\Product Registration\ProdReg.exe [1690112 2014-02-24] (Creative Technology Ltd) HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\RunOnce: [CTPostBootSequencer] => "F:\Mario\AppData\Local\Temp\CTPBSeq.exe" /reglaunch /self_destruct <===== ACHTUNG HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\MountPoints2: {86bebb10-398f-11e3-b8bb-d43d7ee3539a} - Z:\UpdateInstaller.exe HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\Run: [Steam] => E:\Programme\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\Run: [Infium] => E:\Programme\QIP Infium psYNovA-Edition\infium.exe [5662720 2009-10-08] (QIP) HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\Run: [WinAuth] => F:\WinAuth.exe [3900928 2014-08-30] () HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\RunOnce: [ProdReg] => C:\Program Files (x86)\Creative\Product Registration\ProdReg.exe [1690112 2014-02-24] (Creative Technology Ltd) HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\RunOnce: [CTPostBootSequencer] => "F:\Mario\AppData\Local\Temp\CTPBSeq.exe" /reglaunch /self_destruct <===== ACHTUNG HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\MountPoints2: {86bebb10-398f-11e3-b8bb-d43d7ee3539a} - Z:\UpdateInstaller.exe HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [DAEMON Tools Lite] => E:\Programme\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [Steam] => E:\Programme\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [Infium] => E:\Programme\QIP Infium psYNovA-Edition\infium.exe [5662720 2009-10-08] (QIP) HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Run: [WinAuth] => F:\WinAuth.exe [3900928 2014-08-30] () HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\Run: [Steam] => E:\Programme\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\Run: [WinAuth] => F:\WinAuth.exe [3900928 2014-08-30] () HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Run: [DAEMON Tools Lite] => E:\Programme\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Run: [Appset Update] => C:\Users\Administrator\AppData\Local\Appset\AppsetUpdater\AppSetManager.exe /startscheduler HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Run: [Infium] => "E:\Programme\QIP 2012\qip.exe" /autorun HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Run: [Steam] => E:\Programme\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Run: [WinAuth] => F:\WinAuth.exe [3900928 2014-08-30] () HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\RunOnce: [ProdReg] => C:\Program Files (x86)\Creative\Product Registration\ProdReg.exe [1690112 2014-02-24] (Creative Technology Ltd) HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\RunOnce: [CTPostBootSequencer] => "F:\Mario\AppData\Local\Temp\CTPBSeq.exe" /reglaunch /self_destruct <===== ACHTUNG HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\MountPoints2: {75ffc715-38af-11e3-b6d7-806e6f6e6963} - G:\DVDSetup.exe HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\MountPoints2: {86bebb10-398f-11e3-b8bb-d43d7ee3539a} - Z:\AutoRunMorrowind.exe HKU\S-1-5-18\...\Run: [ZoneAlarm Windows 10 Upgrader] => "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay ShellExecuteHooks: SuRun Shell Extension - {2C7B6088-5A77-4d48-BE43-30337DCA9A86} - C:\Windows\SuRunExt.dll [189952 2013-11-02] (hxxp://kay-bruns.de) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Programme\AVAST Software\Avast\ashShA64.dll -> Keine Datei ShellIconOverlayIdentifiers: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (hxxp://tortoisesvn.net) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk [2013-10-19] ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog9 01 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 02 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 03 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 04 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9 15 C:\Windows\SysWOW64\BfLLR.dll [196096 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 01 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 02 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 03 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 04 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 15 C:\Windows\system32\BfLLR.dll [216064 2013-04-30] (Bigfoot Networks, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{167EF976-C7C2-4382-88F9-0ED9AAEA6380}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp HKU\S-1-5-21-3905677154-2266868164-1778288955-500\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://qip.ru HKU\S-1-5-21-3905677154-2266868164-1778288955-500\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.qip.ru URLSearchHook: HKU\S-1-5-21-3905677154-2266868164-1778288955-500 -> Standard = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} SearchScopes: HKU\S-1-5-21-3905677154-2266868164-1778288955-500 -> {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} URL = hxxp://search.qip.ru/search?query={searchTerms}&from=IE BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-04-09] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-02-04] (Oracle Corporation) BHO: ZoneAlarm Security Engine Registrar -> {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} -> C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Programme\AVAST Software\Avast\aswWebRepIE64.dll => Keine Datei BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2014-04-09] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-04-09] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-04] (Oracle Corporation) BHO-x32: ZoneAlarm Security Engine Registrar -> {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} -> C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Programme\AVAST Software\Avast\aswWebRepIE.dll => Keine Datei BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2014-04-09] (Microsoft Corporation) Toolbar: HKLM - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Toolbar: HKLM-x32 - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Toolbar: HKU\S-1-5-21-3905677154-2266868164-1778288955-1006 -> ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Toolbar: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008 -> ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22] (Check Point Software Technologies) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2014-04-09] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6s9q934r.default [2017-02-20] FF Extension: (SHA-1 deprecation staged rollout) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6s9q934r.default\features\{f3e87043-3e6d-41e9-bca7-b5c9efe3b87a}\disableSHA1rollout@mozilla.org.xpi [2017-02-18] FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\TrustChecker FF Extension: (Kein Name) - C:\Program Files\CheckPoint\ZAForceField\TrustChecker [2017-02-10] [ist nicht signiert] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Programme\AVAST Software\Avast\WebRep\FF => nicht gefunden FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Programme\AVAST Software\Avast\SafePrice\FF => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF Extension: (Kein Name) - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker [2017-02-10] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Programme\AVAST Software\Avast\WebRep\FF => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Programme\AVAST Software\Avast\SafePrice\FF => nicht gefunden FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll [2017-02-14] () FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-04] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-04] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_221.dll [2017-02-14] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1211151.dll [2014-04-15] (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-05-17] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-05-17] (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-02-10] (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> E:\Programme\Winamp Detect\npwachk.dll [2013-07-23] (Nullsoft, Inc.) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-08-11] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-08-11] (NVIDIA Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.) StartMenuInternet: FIREFOX.EXE - E:\Programme\Mozilla Firefox\firefox.exe Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Programme\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <nicht gefunden> ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1445384 2016-10-22] () S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2015-03-08] (BitRaider, LLC) S4 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2211000 2014-03-30] (Microsoft Corporation) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [245544 2016-03-11] (EasyAntiCheat Ltd) S3 EFS; C:\Windows\System32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2015-08-11] (Intel Corporation) S4 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-05-17] (Intel Corporation) R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [828072 2012-11-22] (Check Point Software Technologies) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-17] (Intel Corporation) S3 KeyIso; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes) S4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161264 2013-02-20] (MSI) R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [29728 2013-05-28] (MICRO-STAR INTERNATIONAL CO., LTD.) S3 Netlogon; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation) S4 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation) S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation) S3 Origin Client Service; E:\Programme\Origin\OriginClientService.exe [2120712 2016-05-22] (Electronic Arts) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-04-14] () S3 ProtectedStorage; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [490496 2013-04-30] () [Datei ist nicht signiert] S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) R2 SamSs; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] R2 SuRunSVC; C:\Windows\SuRun.exe [727552 2013-11-02] (hxxp://kay-bruns.de) [Datei ist nicht signiert] R3 VaultSvc; C:\Windows\system32\lsass.exe [31232 2014-09-19] (Microsoft Corporation) [Datei ist nicht signiert] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-10-19] (Microsoft Corporation) S2 avast! Antivirus; "C:\Programme\AVAST Software\Avast\AvastSvc.exe" [X] S3 AvastVBoxSvc; "C:\Programme\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 aswHdsKe; C:\Windows\system32\drivers\aswHdsKe.sys [83312 2016-09-15] (AVAST Software) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-09-09] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-09-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-09-09] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-09-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-09-09] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-09-13] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-09-23] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-09-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-10-13] (AVAST Software) R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [66928 2013-04-30] (Qualcomm Atheros, Inc.) S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2015-03-09] (BitRaider) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-10-20] (DT Soft Ltd) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] () S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14944 2014-11-18] () R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77416 2017-01-20] () S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] () S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] () S3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-02-13] () R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33712 2012-11-22] (Check Point Software Technologies) R3 Ke2200; C:\Windows\System32\DRIVERS\e22w7x64.sys [165824 2013-04-30] (Qualcomm Atheros, Inc.) S3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [176584 2017-02-18] (Malwarebytes) R3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [110536 2017-02-20] (Malwarebytes) R3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2017-02-20] (Malwarebytes) R0 MBAMSwissArmy; C:\Windows\System32\drivers\MBAMSwissArmy.sys [251848 2017-02-20] (Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [81696 2017-02-20] (Malwarebytes) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) S3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) S3 rpkmdrv; C:\Windows\System32\drivers\rpkmdrv.sys [21248 2012-08-16] () S3 UHSfiltv; C:\Windows\System32\drivers\UHSfiltv.sys [23552 2013-05-31] (Creative Technology Ltd.) S3 ALSysIO; \??\F:\WinTEMP\ALSysIO64.sys [X] S3 MSICDSetup; \??\G:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\G:\NTIOLib_X64.sys [X] S3 pmem; \??\C:\Users\Mario\AppData\Local\Temp\_MEI42522\drivers\winpmem64.sys [X] <==== ACHTUNG S2 VBoxAswDrv; \??\C:\Programme\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-02-20 05:27 - 2017-02-20 05:27 - 00032188 _____ C:\Users\Admin\Desktop\FRST.txt 2017-02-20 05:12 - 2017-02-20 05:13 - 00000000 ____D C:\ProgramData\HitmanPro 2017-02-20 05:09 - 2017-02-20 05:06 - 00005403 _____ C:\Users\Admin\Desktop\ESET log.txt 2017-02-20 00:46 - 2017-02-20 00:46 - 11581544 _____ (SurfRight B.V.) C:\Users\Admin\Desktop\HitmanPro_x64.exe 2017-02-20 00:45 - 2017-02-20 00:48 - 02870984 _____ (ESET) C:\Users\Admin\Desktop\esetsmartinstaller_deu.exe 2017-02-20 00:38 - 2017-02-20 00:41 - 00002796 _____ C:\Users\Admin\Desktop\Fixlog.txt 2017-02-18 14:52 - 2017-02-20 05:27 - 00000000 ____D C:\Users\Admin\Desktop\FRST-OlderVersion 2017-02-18 14:51 - 2017-02-20 05:27 - 02422784 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe 2017-02-18 14:42 - 2017-02-18 14:42 - 00003175 _____ C:\Users\Admin\Desktop\JRT.txt 2017-02-18 14:40 - 2017-02-18 14:40 - 00001889 _____ C:\Users\Admin\Desktop\mbam.txt 2017-02-18 14:37 - 2017-02-18 14:38 - 00000099 _____ C:\Users\Admin\Desktop\Fehler nach Neustart.txt 2017-02-18 14:27 - 2017-02-18 14:27 - 01663040 _____ (Malwarebytes) C:\Users\Admin\Desktop\JRT.exe 2017-02-18 14:25 - 2017-02-20 00:43 - 00251848 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2017-02-18 14:25 - 2017-02-20 00:43 - 00110536 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2017-02-18 14:25 - 2017-02-20 00:43 - 00081696 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2017-02-18 14:25 - 2017-02-20 00:43 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2017-02-18 14:25 - 2017-02-18 14:25 - 00176584 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys 2017-02-18 14:25 - 2017-02-18 14:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-02-18 14:25 - 2017-02-18 14:25 - 00000000 ____D C:\Program Files\Malwarebytes 2017-02-18 14:25 - 2017-01-20 07:47 - 00077416 _____ C:\Windows\system32\Drivers\mbae64.sys 2017-02-18 14:24 - 2017-02-18 13:37 - 00006922 _____ C:\Users\Admin\Desktop\AdwCleaner[C0].txt 2017-02-18 13:41 - 2017-02-18 14:21 - 55566792 _____ (Malwarebytes ) C:\Users\Admin\Desktop\mb3-setup-consumer-3.0.6.1469.exe 2017-02-18 13:31 - 2017-02-18 13:37 - 00000000 ____D C:\AdwCleaner 2017-02-18 13:31 - 2017-02-18 13:29 - 04015056 _____ C:\Users\Admin\Desktop\AdwCleaner_6.043.exe 2017-02-14 13:52 - 2017-02-20 00:44 - 00000000 ____D C:\Users\Admin\AppData\LocalLow\Mozilla 2017-02-10 21:24 - 2017-02-10 21:24 - 00000000 ____D C:\Users\Admin\AppData\Roaming\PlaysTV 2017-02-10 21:23 - 2017-02-10 21:23 - 00000000 ____D C:\Users\Admin\Documents\ForceField Shared Files 2017-02-10 15:10 - 2017-02-10 15:10 - 00000000 _____ C:\Windows\system32\Drivers\etc\lmhosts 2017-02-09 14:24 - 2017-02-09 14:24 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-02-08 16:55 - 2017-02-10 14:58 - 00000000 ____D C:\Program Files\WinRAR 2017-02-07 13:16 - 2017-02-07 13:16 - 00000000 ____D C:\Users\Admin\Documents\Visual Studio 2013 2017-02-06 20:21 - 2017-02-20 00:35 - 00007620 _____ C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2017-02-06 18:18 - 2017-02-06 18:18 - 00000000 ___SD C:\Windows\system32\CompatTel 2017-02-06 18:18 - 2017-02-06 18:18 - 00000000 ____D C:\Windows\system32\appraiser 2017-02-06 17:48 - 2017-02-06 17:48 - 00000000 ____D C:\Windows\CheckSur 2017-02-06 17:47 - 2017-02-06 17:47 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2013 2017-02-06 17:47 - 2017-02-06 17:47 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2013 2017-02-06 17:33 - 2017-02-06 17:33 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET 2017-02-06 17:18 - 2016-09-12 22:17 - 00077032 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2017-02-06 17:18 - 2016-09-12 22:08 - 01226752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 01629184 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00586752 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2017-02-06 17:18 - 2016-09-09 16:54 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2017-02-06 17:18 - 2016-03-23 23:40 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2017-02-06 17:16 - 2016-08-29 16:31 - 14183424 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2017-02-06 17:16 - 2016-08-29 16:31 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2017-02-06 17:16 - 2016-08-29 16:31 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 12880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2017-02-06 17:16 - 2016-08-29 16:12 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2017-02-06 17:16 - 2016-08-29 16:04 - 03229696 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2017-02-06 17:16 - 2016-08-29 15:55 - 02972672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2017-02-06 17:16 - 2016-05-11 18:02 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2017-02-06 17:16 - 2016-05-11 18:02 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2017-02-06 17:16 - 2016-05-11 18:02 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2017-02-06 17:16 - 2016-05-11 16:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll 2017-02-06 17:16 - 2016-05-11 16:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2017-02-06 17:16 - 2016-05-11 16:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe 2017-02-06 17:16 - 2016-05-11 15:58 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2017-02-06 17:16 - 2016-02-12 19:52 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-02-06 17:16 - 2016-02-12 19:52 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-02-06 17:16 - 2016-02-12 19:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2017-02-06 17:16 - 2016-02-12 19:44 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2017-02-06 17:16 - 2016-02-12 19:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2017-02-06 17:16 - 2016-02-12 19:22 - 02610688 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-02-06 17:16 - 2016-02-12 19:19 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-02-06 17:16 - 2016-02-12 19:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-02-06 17:16 - 2016-02-12 19:18 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2017-02-06 17:16 - 2016-02-12 19:18 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2017-02-06 17:16 - 2016-02-12 19:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2017-02-06 17:16 - 2016-02-12 19:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2017-02-06 17:16 - 2016-02-12 19:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2017-02-06 17:16 - 2016-02-12 19:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2017-02-06 17:15 - 2016-05-12 18:15 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2017-02-06 17:15 - 2016-05-12 18:14 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll 2017-02-06 17:15 - 2016-05-12 18:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll 2017-02-06 17:15 - 2016-05-12 16:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll 2017-02-06 17:15 - 2016-05-12 16:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe 2017-02-06 17:15 - 2016-05-12 15:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll 2017-02-06 17:15 - 2016-05-12 15:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe 2017-02-06 17:15 - 2016-04-09 08:01 - 00986344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2017-02-06 17:15 - 2016-04-09 08:01 - 00264936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2017-02-06 17:15 - 2016-04-09 07:57 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2017-02-06 17:15 - 2016-01-11 20:11 - 01684416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2017-02-06 17:15 - 2015-12-20 19:50 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2017-02-06 17:15 - 2015-12-20 19:50 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2017-02-06 17:15 - 2015-12-20 15:08 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2017-02-06 17:15 - 2015-11-11 19:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2017-02-06 17:15 - 2015-11-11 19:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2017-02-06 17:15 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll 2017-02-06 17:15 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll 2017-02-06 17:15 - 2015-04-11 04:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys 2017-02-06 17:14 - 2016-04-14 14:49 - 00603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2017-02-06 17:14 - 2016-04-14 14:21 - 00647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2017-02-06 17:14 - 2016-02-05 19:56 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll 2017-02-06 17:14 - 2016-02-05 19:54 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll 2017-02-06 17:14 - 2016-02-05 18:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll 2017-02-06 17:14 - 2016-02-02 19:57 - 00511488 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe 2017-02-06 17:14 - 2015-10-29 18:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll 2017-02-06 17:14 - 2015-10-29 18:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll 2017-02-06 17:14 - 2015-10-29 18:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2017-02-06 17:14 - 2015-10-29 18:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe 2017-02-06 17:14 - 2015-10-13 05:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2017-02-06 17:14 - 2015-08-27 19:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2017-02-06 17:14 - 2015-08-27 19:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2017-02-06 17:14 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2017-02-06 17:14 - 2015-08-27 19:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2017-02-06 17:14 - 2015-08-27 18:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2017-02-06 17:14 - 2015-08-27 18:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2017-02-06 17:14 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2017-02-06 17:14 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2017-02-06 17:14 - 2015-06-03 21:21 - 00451080 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2017-02-06 17:13 - 2016-08-12 17:26 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2017-02-06 17:13 - 2016-08-12 17:26 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2017-02-06 17:13 - 2016-08-12 17:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 01896168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 00377576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2017-02-06 17:13 - 2016-07-07 16:36 - 00287976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2017-02-06 17:13 - 2016-07-07 16:08 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2017-02-06 17:13 - 2016-07-01 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2017-02-06 17:13 - 2016-07-01 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2017-02-06 17:13 - 2016-07-01 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2017-02-06 17:13 - 2016-07-01 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2017-02-06 17:13 - 2016-06-26 01:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll 2017-02-06 17:13 - 2016-06-25 20:54 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2017-02-06 17:13 - 2016-06-25 20:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll 2017-02-06 17:13 - 2016-06-25 20:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe 2017-02-06 17:13 - 2016-06-25 20:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe 2017-02-06 17:13 - 2016-06-25 20:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe 2017-02-06 17:13 - 2016-05-11 18:02 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2017-02-06 17:13 - 2016-05-11 16:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2017-02-06 17:13 - 2016-02-09 10:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2017-02-06 17:13 - 2016-02-05 02:19 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2017-02-06 17:13 - 2016-02-04 19:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2017-02-06 17:13 - 2016-02-03 19:07 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2017-02-06 17:13 - 2015-12-08 22:53 - 00509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2017-02-06 17:13 - 2015-12-08 22:53 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll 2017-02-06 17:13 - 2015-12-08 20:07 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2017-02-06 17:13 - 2015-12-08 20:07 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll 2017-02-06 17:13 - 2015-11-05 20:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll 2017-02-06 17:13 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll 2017-02-06 17:13 - 2015-11-05 10:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2017-02-06 17:13 - 2015-10-13 17:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2017-02-06 17:13 - 2015-10-13 17:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2017-02-06 17:13 - 2015-01-29 04:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2017-02-06 17:13 - 2015-01-29 04:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2017-02-06 17:13 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe 2017-02-06 17:13 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2017-02-06 17:09 - 2016-03-09 20:00 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2017-02-06 17:09 - 2016-03-09 19:40 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2017-02-06 17:05 - 2016-03-09 19:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2017-02-06 17:05 - 2016-03-09 19:34 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2017-02-06 17:04 - 2015-11-03 20:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2017-02-06 17:04 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll 2017-02-06 17:02 - 2016-04-09 05:20 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2017-02-06 17:02 - 2016-04-09 04:52 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-02-20 05:27 - 2013-10-27 22:43 - 00000000 ____D C:\FRST 2017-02-20 05:20 - 2016-04-10 12:29 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2017-02-20 03:18 - 2009-07-14 05:45 - 00027136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-02-20 03:18 - 2009-07-14 05:45 - 00027136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-02-20 00:44 - 2015-03-27 14:36 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Raptr 2017-02-20 00:44 - 2014-12-09 17:05 - 00000000 ____D C:\Users\Admin\AppData\Roaming\DAEMON Tools Lite 2017-02-20 00:43 - 2013-10-19 16:10 - 00000000 ____D C:\ProgramData\Bigfoot Networks 2017-02-20 00:42 - 2013-12-04 17:31 - 00000000 ____D C:\ProgramData\NVIDIA 2017-02-20 00:42 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-02-19 20:25 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2017-02-18 14:25 - 2015-02-03 04:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-02-18 13:37 - 2014-12-08 17:30 - 00000000 ____D C:\Users\Mario (Neu)\AppData\Roaming\CheckPoint 2017-02-18 13:37 - 2014-05-05 17:22 - 00000000 ____D C:\Users\Admin\AppData\Roaming\CheckPoint 2017-02-18 13:37 - 2014-05-05 15:56 - 00000000 ____D C:\Users\TempAdmin\AppData\Roaming\CheckPoint 2017-02-18 13:37 - 2013-10-20 10:14 - 00000000 ____D C:\Users\Admin (Alt Buggy)\AppData\Roaming\CheckPoint 2017-02-18 13:20 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2017-02-18 04:57 - 2011-04-12 08:43 - 00701212 _____ C:\Windows\system32\perfh007.dat 2017-02-18 04:57 - 2011-04-12 08:43 - 00150112 _____ C:\Windows\system32\perfc007.dat 2017-02-18 04:57 - 2009-07-14 06:13 - 01620196 _____ C:\Windows\system32\PerfStringBackup.INI 2017-02-18 04:57 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2017-02-16 22:30 - 2017-01-11 12:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UBISOFT 2017-02-16 22:30 - 2013-10-19 16:10 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-02-14 19:40 - 2016-05-13 15:20 - 20359768 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2017-02-14 19:40 - 2016-04-10 12:29 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-02-14 19:40 - 2015-07-09 15:54 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-02-14 19:40 - 2015-07-09 15:54 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-02-14 19:40 - 2013-10-19 23:14 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-02-14 19:40 - 2013-10-19 23:14 - 00000000 ____D C:\Windows\system32\Macromed 2017-02-13 18:05 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2017-02-12 23:36 - 2015-12-24 21:26 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2017-02-12 23:35 - 2015-12-24 21:26 - 00000000 ____D C:\Program Files\Rockstar Games 2017-02-10 16:22 - 2014-12-08 17:30 - 00000000 ____D C:\Users\Mario (Neu) 2017-02-10 15:14 - 2014-05-05 17:22 - 00000000 ____D C:\Users\Admin 2017-02-10 14:58 - 2015-12-03 14:30 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2017-02-10 14:58 - 2015-11-20 16:23 - 00000000 ____D C:\Program Files\Common Files\AV 2017-02-10 14:58 - 2015-09-25 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-02-10 14:58 - 2015-09-25 18:30 - 00000000 ____D C:\ProgramData\AVAST Software 2017-02-10 14:58 - 2014-10-13 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseSVN 2017-02-10 14:58 - 2014-10-13 18:53 - 00000000 ____D C:\Program Files\Common Files\TortoiseOverlays 2017-02-10 14:58 - 2014-05-05 15:56 - 00000000 ____D C:\Users\TempAdmin 2017-02-10 14:58 - 2014-04-26 13:56 - 00000000 ____D C:\Windows\SysWOW64\Adobe 2017-02-10 14:58 - 2013-10-19 22:15 - 00000000 ____D C:\Program Files\CheckPoint 2017-02-10 14:58 - 2013-10-19 21:17 - 00000000 ____D C:\Users\Admin (Alt Buggy) 2017-02-10 14:58 - 2013-10-19 20:38 - 00000000 ____D C:\Users\Administrator 2017-02-10 14:58 - 2013-10-19 16:19 - 00000000 ___HD C:\SuperChargerProfile 2017-02-10 14:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration 2017-02-10 14:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\AppCompat 2017-02-08 15:54 - 2016-12-04 22:34 - 00000000 ____D C:\Temp 2017-02-07 13:30 - 2016-03-10 12:12 - 00000000 ____D C:\Program Files (x86)\Raptr Inc 2017-02-07 13:30 - 2015-03-08 20:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2017-02-07 13:24 - 2014-08-30 18:06 - 00000000 ____D C:\ProgramData\Package Cache 2017-02-07 13:24 - 2014-02-10 16:29 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-02-07 13:23 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\MSBuild 2017-02-07 13:17 - 2014-09-29 15:35 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2017-02-07 13:07 - 2014-11-20 14:40 - 00000000 ____D C:\Users\Admin\AppData\Local\TSVNCache 2017-02-07 12:59 - 2014-09-29 15:29 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2017-02-07 12:59 - 2014-09-29 15:29 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2017-02-07 12:49 - 2014-09-29 15:26 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2017-02-07 12:46 - 2016-11-28 21:42 - 00005182 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario (Neu) GameMachine-V2 2017-02-06 18:24 - 2014-11-20 14:40 - 00000000 ___RD C:\Users\Admin\Virtual Machines 2017-02-06 18:19 - 2013-10-19 17:59 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-02-06 18:18 - 2011-04-12 08:54 - 00000000 ____D C:\Windows\ShellNew 2017-02-06 18:18 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers 2017-02-06 18:17 - 2017-01-11 17:10 - 00000000 ____D C:\Users\Admin\AppData\Local\NVIDIA 2017-02-06 17:42 - 2013-10-19 16:05 - 01597284 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-02-06 17:39 - 2013-10-19 17:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-02-06 17:39 - 2013-10-19 17:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-02-06 17:38 - 2014-08-18 12:24 - 00000000 ____D C:\Windows\system32\MRT 2017-02-06 17:35 - 2014-08-18 12:24 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-02-04 16:34 - 2013-11-02 14:24 - 00000000 ____D C:\ProgramData\Oracle 2017-02-04 16:28 - 2015-07-04 01:21 - 00000000 ____D C:\Program Files\Java 2017-02-04 16:27 - 2014-10-13 13:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-02-04 16:26 - 2015-07-04 01:21 - 00110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2017-02-01 23:56 - 2013-10-30 02:40 - 00000000 ____D C:\Windows\Minidump ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2017-02-06 20:21 - 2017-02-20 00:35 - 0007620 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg 2015-03-22 17:25 - 2015-06-13 23:20 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip 2014-05-05 18:17 - 2014-05-05 18:58 - 0427840 _____ (ForensiT Limited) C:\ProgramData\UserProfileMigrationService.exe Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\ProgramData\UserProfileMigrationService.exe Einige Dateien in TEMP: ==================== 2013-10-19 20:43 - 2010-12-31 04:07 - 0086880 ____R (Microsoft Corporation) C:\Users\Mario (Backup)\AppData\Local\Temp\devcon64.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => MD5 ist legitim C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-02-18 13:13 ==================== Ende von FRST.txt ============================ |
20.02.2017, 14:47 | #10 |
| Internetprobleme ohne erkennbare Ursache Addition: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 19-02-2017 durchgeführt von Admin (20-02-2017 05:28:00) Gestartet von C:\Users\Admin\Desktop Windows 7 Ultimate Service Pack 1 (X64) (2013-10-19 11:21:19) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Admin (S-1-5-21-3905677154-2266868164-1778288955-1008 - Administrator - Enabled) => C:\Users\Admin Admin (Alt Buggy) (S-1-5-21-3905677154-2266868164-1778288955-1001 - Limited - Disabled) => C:\Users\Admin (Alt Buggy) Administrator (S-1-5-21-3905677154-2266868164-1778288955-500 - Administrator - Disabled) => C:\Users\Administrator Gast (S-1-5-21-3905677154-2266868164-1778288955-501 - Limited - Disabled) Mario (Alt Buggy) (S-1-5-21-3905677154-2266868164-1778288955-1000 - Limited - Disabled) Mario (Neu) (S-1-5-21-3905677154-2266868164-1778288955-1010 - Limited - Enabled) => F:\Mario TempAdmin (S-1-5-21-3905677154-2266868164-1778288955-1006 - Limited - Disabled) => C:\Users\TempAdmin ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avast Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Avast Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7 Days to Die (HKLM-x32\...\Steam App 251570) (Version: - The Fun Pimps) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.023.20056 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.1.151 - Adobe Systems, Inc.) Alathair Patcher (HKLM-x32\...\AlathairPatcher) (Version: - ) Alice Madness Returns (HKLM-x32\...\{93A3AB24-36E8-41BA-80C6-CCEC237836DC}) (Version: 1.0.0.0 - Electronic Arts) Ansel (Version: 372.54 - NVIDIA Corporation) Hidden Appset Updater 1.1.105.0 (HKLM-x32\...\{11DD3FDE-29EC-11E3-9881-8BBE75B86756}) (Version: 1.1.105.0 - Appset) Appset Updater 1.1.126.0 (HKLM-x32\...\{41AE9230-77E6-11E3-93DC-8F3AC494E26A}) (Version: 1.1.126.0 - Appset) Aritana and the Harpy's Feather Demo (HKLM-x32\...\Steam App 316100) (Version: - Duaik Entretenimento) ARK: Survival Evolved (HKLM-x32\...\Steam App 346110) (Version: - Studio Wildcard) Arx Fatalis (HKLM-x32\...\Steam App 1700) (Version: - Arkane Studios) Arx Libertatis (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\ArxLibertatis) (Version: 1.1.2 - ) Assassin's Creed (HKLM-x32\...\{8CFA9151-6404-409A-AF22-4632D04582FD}) (Version: 1.02 - Ubisoft) Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.03 - Ubisoft) Assassin's Creed II (HKLM-x32\...\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}) (Version: 1.01 - Ubisoft) Assassin's Creed Revelations 1.03 (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.03 - Ubisoft) Asteria (HKLM-x32\...\Steam App 307130) (Version: - Legend Studio) AutoHotkey 1.1.13.01 (HKLM\...\AutoHotkey) (Version: 1.1.13.01 - Lexikos) Batman™: Arkham Origins (HKLM-x32\...\Steam App 209000) (Version: - WB Games Montreal) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) Blackthorne (HKLM-x32\...\{C563EEF9-17FF-4563-8B78-82AF0C4577CE}) (Version: 1.0.0 - Blizzard Entertainment) BOILING POINT (HKLM-x32\...\{58AC967F-CE64-4065-AF54-FA66BAF31FE8}) (Version: 1.00.000 - ) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Borderlands: The Pre-Sequel (HKLM-x32\...\Steam App 261640) (Version: - 2K Australia) Brothers - A Tale of Two Sons (HKLM-x32\...\Steam App 225080) (Version: - Starbreeze Studios AB) CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source) CamStudio Lossless Codec v1.5 (HKLM-x32\...\camcodec) (Version: 1.5 - CamStudio) CentrED 0.6.3 (HKLM-x32\...\{77BCACC0-C2D9-470D-858F-A3D94A5F27A5}_is1) (Version: 0.6.3 - AKS DataBasis) Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) Creation Kit (HKLM-x32\...\Steam App 202480) (Version: - bgs.bethsoft.com) Creative Systeminformationen (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd) Darksiders (HKLM-x32\...\Steam App 50620) (Version: - Vigil Games) Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - Vigil Games) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Dead Rising 3 (HKLM-x32\...\Steam App 265550) (Version: - Capcom Game Studio Vancouver) Deponia (HKLM\...\Steam App 214340) (Version: - Daedalic Entertainment) Deus Ex: Human Revolution - Director's Cut (HKLM-x32\...\Steam App 238010) (Version: - Eidos Montreal) Deus Ex: The Fall (HKLM-x32\...\Steam App 258180) (Version: - Square Enix) Dishonored (HKLM-x32\...\Steam App 205100) (Version: 1.0 - Bethesda Softworks) Dolphin 4.0 (HKLM-x32\...\Dolphin) (Version: 4.0 - Dolphin Development Team) Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC) Earth 2160 (HKLM-x32\...\Steam App 1900) (Version: - Reality Pump Studios) EaseUS Partition Master 10.8 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) Elevated Shortcut (HKLM-x32\...\Elevated Shortcut) (Version: 1.1 - hxxp://www.winreview.ru/) Empyrion - Galactic Survival (HKLM\...\Steam App 383120) (Version: - Eleon Game Studios) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden Erforderliche Komponenten für SSDT (HKLM-x32\...\{3FF082A7-A5DE-4BDA-B56A-1D2BEFD617A3}) (Version: 11.1.3000.0 - Microsoft Corporation) Eternal Winter (HKLM-x32\...\Steam App 325210) (Version: - Developers Pack) Fallen Earth (HKLM-x32\...\Steam App 113420) (Version: - Reloaded Productions) Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios) Fallout 3 (HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.00.0000 - Bethesda Softworks) Fallout 4 (HKLM-x32\...\Steam App 377160) (Version: - Bethesda Game Studios) Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment) Far Cry 2 (HKLM-x32\...\{F2835483-37F2-4123-B4FE-0E77D58447F2}) (Version: 1.03.00 - Ubisoft) Firefly Online Cortex (HKLM-x32\...\Steam App 343750) (Version: - Spark Plug Games) FlashGet 1.9.6.1073 (HKLM-x32\...\FlashGet) (Version: 1.9.6.1073 - hxxp://www.FlashGet.com) Free WMA to MP3 Converter 1.16 (HKLM-x32\...\Free WMA to MP3 Converter_is1) (Version: - Jodix Technologies Ltd.) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Gear Up (HKLM\...\Steam App 214420) (Version: - Doctor Entertainment AB) Gigantic Army (HKLM-x32\...\Steam App 278930) (Version: - ASTRO PORT) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Guns of Icarus Online (HKLM\...\Steam App 209080) (Version: - Muse Games) Hacknet (HKLM-x32\...\Steam App 365450) (Version: - Team Fractal Alligator) Hama uRage Vendetta Gamepad (HKLM-x32\...\{1696CD1C-7C50-4350-83FC-1DA843FDF853}) (Version: 2011.01.19 - Dragon rise) HAWKEN (HKLM-x32\...\Steam App 271290) (Version: - Adhesive Games) HWiNFO64 Version 4.64 (HKLM\...\HWiNFO64_is1) (Version: 4.64 - Martin Malík - REALiX) I Am Alive (HKLM-x32\...\Steam App 214250) (Version: - Ubisoft Shanghaï) Intel Driver Update Utility (HKLM-x32\...\{fe92d390-13ee-4660-a2f8-39a066fdffe0}) (Version: 2.2.0.5 - Intel) Intel(R) Driver Update Utility 2.2.0.5 (x32 Version: 2.2.0.1 - Intel) Hidden Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36943 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.10.1372 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) James Cameron's AVATAR(tm): DAS SPIEL (HKLM-x32\...\{7E19B002-4CA3-4C9F-BA92-91D101B97219}) (Version: 1.02.00 - Ubisoft) Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Just Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche Studios) Just Cause 2: Multiplayer Mod (HKLM-x32\...\Steam App 259080) (Version: - Avalanche Studios) Key Mapper (HKLM-x32\...\{A96C0046-2143-42C0-A28F-BCAF2C520E2A}) (Version: 1.0.2 - Rose Hill Solutions) Killing Floor (HKLM\...\Steam App 1250) (Version: - Tripwire Interactive) Killing Floor 2 (HKLM\...\Steam App 232090) (Version: - Tripwire Interactive) KillProcess 2.44 (HKLM-x32\...\KillProcess) (Version: 2.44 - Orange Lamp Software Solutions) Left 4 Dead (HKLM-x32\...\Steam App 500) (Version: - Valve) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Life Is Strange™ (HKLM\...\Steam App 319630) (Version: - DONTNOD Entertainment) LocoCycle (HKLM-x32\...\Steam App 224040) (Version: - Twisted Pixel Games) Malwarebytes Version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes) Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games) Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.6 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7320.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{2E660A2A-A55F-43CD-9F73-CAD7382EEB78}) (Version: 3.0.19.0 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4605.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{43341417-7882-4F34-8390-53DFD00F6C0F}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{24440413-490E-41CA-BD33-0B30FD3EBE3A}) (Version: 11.1.3366.16 - Microsoft Corporation) Monochroma Demo (HKLM-x32\...\Steam App 304610) (Version: - Nowhere Studios) Morrowind (HKLM-x32\...\{81935798-5D0C-4892-832E-630E6CC07EAF}) (Version: - ) Morrowind AnimKit 2.1 (remove only) (HKLM-x32\...\Morrowind AnimKit) (Version: - ) Mozilla Firefox 24.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 24.0 (x86 de)) (Version: 24.0 - Mozilla) Mozilla Firefox 26.0 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Mozilla Firefox 26.0 (x86 de)) (Version: 26.0 - Mozilla) Mozilla Firefox 35.0 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\Mozilla Firefox 35.0 (x86 de)) (Version: 35.0 - Mozilla) Mozilla Firefox 35.0 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\Mozilla Firefox 35.0 (x86 de)) (Version: 35.0 - Mozilla) Mozilla Firefox 35.0 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\Mozilla Firefox 35.0 (x86 de)) (Version: 35.0 - Mozilla) Mozilla Firefox 35.0 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Mozilla Firefox 35.0 (x86 de)) (Version: 35.0 - Mozilla) Mozilla Firefox 51.0.1 (x86 de) (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\Mozilla Firefox 51.0.1 (x86 de)) (Version: 51.0.1 - Mozilla) MPC-HC 1.7.9 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.9 - MPC-HC Team) My Game Long Name (HKLM\...\UDK-3c7f31b8-d014-4d68-83ca-9457379e71d5) (Version: - Epic Games, Inc.) New Vegas Configator version 1.6 (HKLM-x32\...\New Vegas Configator_is1) (Version: 1.6 - Rudolf Enberg) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.12 - Black Tree Gaming) NifSkope (remove only) (HKLM-x32\...\NifSkope) (Version: - ) NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version: - ) No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team) NRV11250 (HKLM\...\UDK-30063b6d-5c6b-462f-a58e-9191d677fba8) (Version: - Epic Games, Inc.) Nuclear Dawn (HKLM-x32\...\Steam App 17710) (Version: - InterWave Studios) NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.54 - NVIDIA Corporation) NVIDIA Grafiktreiber 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.54 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) Oblivion - Construction Set (HKLM-x32\...\{23D683DD-93C6-48E6-B84E-78B57778F126}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Horse Armor Pack (HKLM-x32\...\{3ABEBD00-299D-4DCA-967F-B912163AB5EA}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Mehrunes Razor (HKLM-x32\...\{EF295F5C-7B57-47AA-8889-6B3E8E214E89}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Orrery (HKLM-x32\...\{EC425CFC-EE78-4A91-AA25-3BFA65B75364}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Spell Tomes (HKLM-x32\...\{16D919E6-F019-4E15-BFBE-4A85EF19DA57}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - The Fighter's Stronghold (HKLM-x32\...\{A0A20753-92DF-4631-82B4-9CACE2FCED6A}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Thieves Den (HKLM-x32\...\{FFFFFD17-B460-41EB-93F1-C48ABAD63828}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion - Wizard's Tower (HKLM-x32\...\{2F2E3D62-8B8C-448F-8900-451325E50948}) (Version: 1.00.0000 - Bethesda Softworks) Oblivion (HKLM-x32\...\{35CB6715-41F8-4F99-8881-6FC75BF054B0}) (Version: 1.2.0416 - Bethesda Softworks) Oblivion Face Exchange Lite (HKLM-x32\...\{0DBEC4D5-2CCA-45CB-A529-75CD83E698AB}) (Version: 1.3.10 - Mikko Puonti) Oblivion mod manager 1.1.9 (HKLM-x32\...\Oblivion mod manager_is1) (Version: - Timeslip) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden Only If (HKLM-x32\...\Steam App 298260) (Version: - Creability) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Ori and the Blind Forest (HKLM-x32\...\Steam App 261570) (Version: - Moon Studios GmbH) Origin (HKLM-x32\...\Origin) (Version: 9.12.1.43352 - Electronic Arts, Inc.) ORION: Prelude (HKLM-x32\...\Steam App 104900) (Version: - Spiral Game Studios) Outlast (HKLM-x32\...\Steam App 238320) (Version: - Red Barrels) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) Plague Inc: Evolved (HKLM\...\Steam App 246620) (Version: - Ndemic Creations) PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\SOE-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\SOE-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\SOE-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\SOE-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\SOE-PlanetSide 2) (Version: - Sony Online Entertainment) PlayClaw 5 fast codec (HKLM-x32\...\PlayClaw 5 fast codec_is1) (Version: 5.5 - ) PlayClaw 5 Plus (HKLM-x32\...\PlayClaw 5 Plus_is1) (Version: 5 - ) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) Project Zomboid (HKLM-x32\...\Steam App 108600) (Version: - The Indie Stone) Puddle (HKLM-x32\...\Steam App 222140) (Version: - Neko Entertainment) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) Qualcomm Atheros Killer Network Manager (HKLM-x32\...\InstallShield_{DF446558-ADF7-4884-9B2D-281979CCE71F}) (Version: 6.1.0.583 - Qualcomm Atheros) Qualcomm Atheros Killer Network Manager (Version: 6.1.0.583 - Qualcomm Atheros) Hidden Race The Sun (HKLM\...\Steam App 253030) (Version: - Flippfly LLC) RAD Video Tools (HKLM-x32\...\RADVideo) (Version: - ) RAGE (HKLM-x32\...\Steam App 9200) (Version: - id Software) Rapoo -Tastatur- und Maustreiber v1.6 (HKLM-x32\...\{2E569492-CB19-4510-AB49-1C6A36C6F525}_is1) (Version: - Rapoo Inc.) Raptr (HKLM-x32\...\Raptr) (Version: 5.2.7-r116720-release - Raptr, Inc) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6923 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Residue: Final Cut (HKLM\...\Steam App 265790) (Version: - The Working Parts) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Robocraft (HKLM\...\Steam App 301520) (Version: - Freejam) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.4 - Rockstar Games) S.T.A.L.K.E.R. - Call of Pripyat [v1.6.02] (HKLM-x32\...\{406FB8A4-F539-48A9-809C-F94706F9C9F6}_is1) (Version: 1.6.02 - bitComposer Games) SafeZone Stable 1.51.2220.53 (x32 Version: 1.51.2220.53 - Avast Software) Hidden Shark007 Advanced Codecs (HKLM-x32\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 5.2.7 - Shark007) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Sir, You Are Being Hunted (HKLM\...\Steam App 242880) (Version: - Big Robot Ltd) Skyrim NPC Editor (HKLM-x32\...\{5BA9357B-E876-4FB2-8F1B-C7E63AC90E6F}) (Version: 0.75.1 - foretrenty) Skyrim Performance Monitor (HKLM-x32\...\{84AEB93A-ECBB-4568-8F59-D4516EF59079}) (Version: 3.54 - SirGarnon on Skyrim Nexus) SlimDX Runtime .NET 2.0 (January 2012) (HKLM-x32\...\{014A2868-BE56-4888-A16C-693989B8F153}) (Version: 2.0.13.43 - SlimDX Group) Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.02 - Creative Technology Limited) Sound Blaster Tactic(3D) (HKLM-x32\...\{92000C16-939B-44CA-802F-0D552019D7C8}) (Version: 1.0 - Creative Technology Limited) Spooky's House of Jump Scares (HKLM\...\Steam App 356670) (Version: - Lag Studios) Spore (HKLM-x32\...\Steam App 17390) (Version: - Maxis™) Spore: Creepy & Cute Parts Pack (HKLM-x32\...\Steam App 17440) (Version: - Maxis™) Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 8.0.0.13 - Bioware/EA) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) StarParse (HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\{fxApplication}}_is1) (Version: 0.4 - Ixale) StarParse (HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\{fxApplication}}_is1) (Version: 0.4 - Ixale) StarParse (HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\{fxApplication}}_is1) (Version: 0.4 - Ixale) StarParse (HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\{fxApplication}}_is1) (Version: 1.0 - Ixale) StarParse (HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\{fxApplication}}_is1) (Version: 0.4 - Ixale) State of Decay (HKLM-x32\...\Steam App 241540) (Version: - Undead Labs) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Super User Run (SuRun) (HKLM\...\SuRun) (Version: 1.2.1.0 - Kay Bruns) Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.018 - MSI) Survivalist (HKLM\...\Steam App 340050) (Version: - Bob the Game Development Bot) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TES Construction Set (HKLM-x32\...\{8245C111-D83F-4C66-BBC6-2424F6116944}) (Version: - ) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) The Long Dark (HKLM-x32\...\Steam App 305620) (Version: - Hinterland Studio Inc.) The Stanley Parable (HKLM-x32\...\Steam App 221910) (Version: - Galactic Cafe) The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD Projekt RED) The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD Projekt RED) Thinking with Time Machine (HKLM-x32\...\Steam App 286080) (Version: - Stridemann) Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.10.1 - Electronic Arts) Tor 0.2.4.20 (HKLM-x32\...\Tor) (Version: - ) TortoiseSVN 1.8.8.25755 (64 bit) (HKLM\...\{7DAA9D5A-ED99-40D2-AA9D-386722FE105A}) (Version: 1.8.25755 - TortoiseSVN) Trine (HKLM-x32\...\Steam App 35700) (Version: - Frozenbyte) Trine 2 (HKLM-x32\...\Steam App 35720) (Version: - Frozenbyte) Tropico 5 (HKLM-x32\...\Steam App 245620) (Version: - Haemimont Games) Tunatic (HKLM-x32\...\Tunatic) (Version: - ) TuxGuitar (HKLM-x32\...\{03534DA5-2F88-4B8E-A978-849B979E1B8F}) (Version: 1.2 - Herac) TuxGuitar (HKLM-x32\...\TuxGuitar 1.3.2) (Version: 1.3.2 - TuxGuitar) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Ultima Online 2D (HKLM-x32\...\UltimaOnline) (Version: - ) Ultima Online Classic Client (HKLM-x32\...\Ultima Online Classic) (Version: - Electronic Arts) Unity Web Player (HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.5 - MSI) Vidalia 0.2.21 (HKLM-x32\...\Vidalia) (Version: - ) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment) Warframe (HKLM\...\Steam App 230410) (Version: - Digital Extremes) Welcome to the Game (HKLM\...\Steam App 485380) (Version: - Reflect Studios) Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Windows XP Mode (HKLM\...\{1374CC63-B520-4f3f-98E8-E9020BF01CFF}) (Version: 1.3.7600.16422 - Microsoft Corporation) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) World of Guns: Gun Disassembly (HKLM-x32\...\Steam App 262410) (Version: - Noble Empire Corp.) Worms Reloaded (HKLM-x32\...\Steam App 22600) (Version: - Team17 Software Ltd.) Wrye Mash (HKLM-x32\...\Wrye Mash) (Version: - Wrye) x64 Components v5.2.7 (HKLM\...\Advanced x64Components_is1) (Version: 5.2.7 - Shark007) Zombie Army Trilogy (HKLM\...\Steam App 301640) (Version: - Rebellion) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {08F46511-2271-4082-B341-BE138956196C} - System32\Tasks\{388D7FD6-08A5-4CDC-B8A7-5931CE8EB1DC} => G:\install\program\setup.exe Task: {0D774239-1098-4164-A82B-504FFE739A92} - System32\Tasks\elevated_MGEXEgui_1~WORROM1~SEHTEB1~ARGORPE => E:\Programme\Bethesda Softworks\Morrowind\MGEXEgui.exe [2012-08-29] (MGE Developers) Task: {1906463B-7AA8-481B-AEF9-036960ED32C6} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {19DE7F08-52B5-42BD-9045-F048057BAA28} - System32\Tasks\{18CA5F17-A87F-4D24-A106-8E88B5C080DD} => pcalua.exe -a G:\Setup.exe -d G:\ Task: {5548C565-CDBC-474B-9578-59E1C7B2AB02} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {6B9359F8-383D-4212-ABE4-2BB339DA3E65} - System32\Tasks\{EC2FFF75-0CD2-4E2E-9CE0-77C1D99B189E} => G:\install\program\setup.exe Task: {6EE8D583-1D4B-4FD9-9640-4512D80677C4} - System32\Tasks\SafeZone scheduled Autoupdate 1471620393 => C:\Programme\AVAST Software\SZBrowser\launcher.exe Task: {74221EED-75DD-49AB-989A-7E49A319F8AC} - System32\Tasks\avast! Emergency Update => C:\Programme\AVAST Software\Avast\AvastEmUpdate.exe Task: {7FEABA14-136D-476E-A368-9940BBB15F22} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-03-30] (Microsoft Corporation) Task: {84E92F97-DF11-4196-9590-65F8F900751C} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario GameMachine-V2 => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-04-09] (Microsoft Corporation) Task: {956770CC-38C1-47BB-8C72-FBB237157DDE} - System32\Tasks\HWiNFO => E:\Programme\HWiNFO64\HWiNFO64.EXE [2015-07-20] (REALiX) Task: {B6AD97E3-76A1-4E94-85B2-A0CE961DED6C} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GameMachine-V2-Mario (Neu) GameMachine-V2 => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-04-09] (Microsoft Corporation) Task: {B8C19131-1F5E-4C7D-A41B-7676E552CA75} - System32\Tasks\elevated_Morrowind_1~WORROM1~SEHTEB1~ARGORPE => E:\Programme\Bethesda Softworks\Morrowind\Morrowind.exe [2013-10-30] (Bethesda Softworks) Task: {BDF9D442-E7B8-4505-86CC-364D27EDF0D3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-02-14] (Adobe Systems Incorporated) Task: {C9626367-7665-4D17-BE21-19D33DC33870} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {DA8F81CB-02B5-4547-93F4-62F164C94C5A} - System32\Tasks\Run as Admin\Morrowind Starter => E:\Programme\Bethesda Softworks\Morrowind\Morrowind Launcher.exe [2003-05-27] (Bethesda Softworks) Task: {E163F176-D78E-44F6-B371-725D6C3825CA} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-01-27] (AVAST Software) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Admin\Desktop\Create Account For Ultima Online.lnk -> hxxp://www.ultima-registration.com ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-08-22 16:10 - 2016-08-11 12:49 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-03-20 16:41 - 2014-04-14 20:47 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-04-30 14:22 - 2013-04-30 14:22 - 00490496 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe 2011-05-09 19:46 - 2011-05-09 19:46 - 02760192 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtCore4.dll 2011-05-09 19:56 - 2011-05-09 19:56 - 09856000 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtGui4.dll 2011-05-09 19:47 - 2011-05-09 19:47 - 00416256 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtXml4.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00217600 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFCommon.dll 2011-05-10 11:32 - 2011-05-10 11:32 - 00731648 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\qwt5.dll 2011-05-09 19:48 - 2011-05-09 19:48 - 00990720 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtNetwork4.dll 2017-02-18 14:25 - 2017-01-20 07:47 - 02264352 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2017-02-18 14:25 - 2017-01-20 07:47 - 02254800 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2017-02-18 14:25 - 2017-01-20 07:47 - 02829776 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\arwlib.dll 2013-10-19 16:15 - 2014-03-24 09:36 - 00366080 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL 2015-07-04 13:50 - 2014-08-30 06:59 - 03900928 _____ () F:\WinAuth.exe 2013-04-30 14:22 - 2013-04-30 14:22 - 00553984 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe 2013-04-30 14:22 - 2013-04-30 14:22 - 00404992 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modApplications.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00036864 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modFeatures.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00025088 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modFraps.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00240128 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modGraph.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00062464 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modlcd.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00291328 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modNetwork.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00184832 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modNpu.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00211456 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modOptions.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00064000 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modOverview.dll 2013-04-30 14:22 - 2013-04-30 14:22 - 00317440 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modSystemInfo.dll 2013-03-11 09:17 - 2013-03-11 09:17 - 00119808 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe 2017-01-11 17:09 - 2016-06-14 21:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2013-10-19 16:15 - 2012-10-31 14:00 - 00991232 ____N () C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\de-DE\SBCinema.resources.dll 2013-10-19 16:16 - 2013-05-17 00:06 - 01199576 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 02603520 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtCore4.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 00382464 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtXml4.dll 2010-01-12 15:55 - 2010-01-12 15:55 - 00400384 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\sqlite3.dll 2010-01-12 15:55 - 2010-01-12 15:55 - 00322048 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\log4cplus.dll 2013-03-07 11:53 - 2013-03-07 11:53 - 00015872 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\featureController.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 01006592 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtNetwork4.dll 2010-12-16 11:16 - 2010-12-16 11:16 - 00195584 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\libgsoap.dll 2010-01-17 22:34 - 2010-01-17 22:34 - 00062464 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\zlib1.dll 2013-03-07 11:55 - 2013-03-07 11:55 - 00472576 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\DeviceProfile.dll 2013-03-07 11:58 - 2013-03-07 11:58 - 00499488 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\plugin\PServerPlugin.dll 2013-03-07 11:54 - 2013-03-07 11:54 - 00013824 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\eventsSender.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 14978048 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtWebKit4.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 00317952 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\phonon4.dll 2010-12-17 11:56 - 2010-12-17 11:56 - 09224704 _____ () C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\QtGui4.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\ixparse.com -> hxxps://ixparse.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1001\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\ixparse.com -> hxxps://ixparse.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\ixparse.com -> hxxps://ixparse.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\ixparse.com -> hxxps://ixparse.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\ixparse.com -> hxxps://ixparse.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-3905677154-2266868164-1778288955-500\...\sony.com -> sony.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3905677154-2266868164-1778288955-1006\Control Panel\Desktop\\Wallpaper -> C:\Users\TempAdmin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-3905677154-2266868164-1778288955-1008\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin 2\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-3905677154-2266868164-1778288955-1010\Control Panel\Desktop\\Wallpaper -> F:\Mario\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-3905677154-2266868164-1778288955-500\Control Panel\Desktop\\Wallpaper -> C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupreg: Launch => E:\Programme\Rapoo\RpWireless\Launch.exe MSCONFIG\startupreg: LedStatus => E:\Programme\Rapoo\RpWireless\LedStatus.exe ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{EEFCB3FC-6B23-4743-92E4-629A926CC733}] => (Allow) E:\Programme\Winamp\winamp.exe FirewallRules: [{12E7C1F4-E356-4E71-8C1E-8CC6C9971BCD}] => (Allow) E:\Programme\Winamp\winamp.exe FirewallRules: [TCP Query User{6F949512-A1E5-4DAD-9C30-318847F2B0BF}E:\programme\atari\boiling point\xenus.exe] => (Block) E:\programme\atari\boiling point\xenus.exe FirewallRules: [UDP Query User{185B3CD7-211A-4389-9932-AA12E63C27C2}E:\programme\atari\boiling point\xenus.exe] => (Block) E:\programme\atari\boiling point\xenus.exe FirewallRules: [{9C12803F-CD44-4C0A-9164-1632DE8859AB}] => (Allow) E:\Programme\Steam\Steam.exe FirewallRules: [{C692D8AC-9BEE-4D9C-89D7-9EC8BC83A1D5}] => (Allow) E:\Programme\Steam\Steam.exe FirewallRules: [{A0D8E05F-6F08-44E0-80AA-1469C5CA27F9}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{8E1CB539-CF5C-48EB-8A76-DC664D810FA9}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{A996593D-68FC-473D-9384-3C14B11BF59A}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{2A007F80-C19F-4740-92B5-6C42F8325621}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{8FF67B2E-073F-4E8A-8ABA-D986F005F363}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{649F89D7-D125-4497-9E1C-FD72AE75B163}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{34FE88C4-7C2D-4417-9248-6D67AE8516A8}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{879A980F-A65F-4904-9B64-38EFF68EE975}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\SkyrimLauncher.exe FirewallRules: [{A224B231-B106-48D7-A992-071D756BFDFC}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\CreationKit.exe FirewallRules: [{84D64C75-6B86-49B5-9682-9C279216B18E}] => (Allow) E:\Programme\Steam\SteamApps\common\skyrim\CreationKit.exe FirewallRules: [{F2625C47-1E50-4FF7-9B92-EFC36A17F78E}] => (Allow) C:\Users\Admin\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{3248AC48-9B8A-4DF0-AA39-A32AE109AB5C}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe FirewallRules: [{666AF4FB-C6D1-4403-B11F-136D3F7E08BD}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe FirewallRules: [{99D13FC0-5521-4070-AB4A-0D3C3CA765D3}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\xrEngine.exe FirewallRules: [{B8952B89-4608-485E-8617-D0A9E8CC6A78}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\xrEngine.exe FirewallRules: [{0368768B-9C7D-4D38-8F9C-D308A5CE413B}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\dedicated\xrEngine.exe FirewallRules: [{F37DFA01-5F33-465D-8254-1B3B74EBA307}] => (Allow) E:\Programme\bitComposer Games\S.T.A.L.K.E.R. - Call of Pripyat\bin\dedicated\xrEngine.exe FirewallRules: [{9B971368-72AF-456E-86B9-64E0BA34F5FE}] => (Allow) E:\Programme\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{FA390130-2608-497D-BC8C-80E730944DDE}] => (Allow) E:\Programme\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{A2987144-1F57-4886-A7DE-22263D30540C}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe FirewallRules: [{AD5FD78A-8CDA-41E1-956B-9C4688882C31}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe FirewallRules: [{B22B972C-F14F-436B-88FF-CB446C1DFC7A}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe FirewallRules: [{E17F8923-94AA-4545-BF27-76285EACD30F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe FirewallRules: [{8C8A6152-4A4D-4FCA-8C4A-B81D584811E1}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe FirewallRules: [{CA5EC57C-E941-43DC-812B-363FC570879F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe FirewallRules: [{978C280A-3BE9-463D-BB00-00C1325C5AA7}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallen Earth F2P\FEUpdater.exe FirewallRules: [{BDAD53CC-D1DA-4AC0-8267-5F6A922DD316}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallen Earth F2P\FEUpdater.exe FirewallRules: [{BB2EB4B1-B9D2-4CB5-9BDF-C241D2CE7551}] => (Allow) E:\Programme\Steam\SteamApps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{0104453B-62D6-40F0-B7B5-C1B7CA619924}] => (Allow) E:\Programme\Steam\SteamApps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{03C47956-F7EF-4604-8F0B-925F154754A8}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{5837C452-BF24-4759-B713-2BA502342F31}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{6A601DDD-C07D-4216-9A51-FC95639F793D}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{C6485EB1-DC3A-49D5-9E87-8FDE6F42D772}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{A64A2448-AF1F-42C6-9191-167575E94C02}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{068C3062-CE21-4AE7-8B61-3249752FDB6F}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{51F19C76-CF1B-4634-A559-A63C86066B61}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{88187ED0-B074-4566-A876-48E4600A43C8}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{913536F3-71E0-4F34-AAE3-058CFCCCFF15}] => (Allow) E:\Programme\Steam\SteamApps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{74CB8DC9-AC24-4321-A736-58E527B2F592}] => (Allow) E:\Programme\Steam\SteamApps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{5860A5DC-8FD4-4CC6-B7E0-1F194C0B1166}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{9F817628-CD3F-43A8-AC19-95358C79D987}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{EB6B6128-5FF5-4FF4-843E-8C6FC05BE340}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{A08AF998-00F3-4C83-BFCB-81B3BD4F5415}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{14100FF9-0566-435C-8797-6CA55C714894}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe FirewallRules: [{EC2E4105-407F-420D-966C-5BC3DD583827}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe FirewallRules: [{00625A7A-8183-4323-BF48-6541019862AD}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe FirewallRules: [{527C0B53-E689-4795-809D-786BCF5C7120}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe FirewallRules: [{825FE612-48E0-4D09-B235-BBE86070CF6C}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe FirewallRules: [{1163CAE5-448A-4740-929D-EA4BFA7D72E6}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe FirewallRules: [{8B8FFC75-7B4C-46F5-82CC-4C5CE4F10592}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe FirewallRules: [{72545882-ACAB-452E-8D0A-B9637F767FCB}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe FirewallRules: [{A83EEE18-3359-4BC3-A4C5-BA1176CD08BA}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRSP.exe FirewallRules: [{8F488884-2BFD-4AE6-B796-1DE90AB08B96}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRSP.exe FirewallRules: [{48643EB6-A8AF-40F6-8522-1EFC4B81F0D5}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{56522616-6883-48A2-BAB7-0A139857DFD8}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{4615D667-B036-46B0-8962-4D783928A631}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe FirewallRules: [{2C0F62CF-8118-43ED-B402-322EF15A0ED5}] => (Allow) E:\Programme\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe FirewallRules: [{A91E5F87-D824-48D6-8FCF-23628C205C61}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\Avatar.exe FirewallRules: [{C4BE67D0-1353-47A9-B833-F7A1A57C1D1F}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\Avatar.exe FirewallRules: [{3F91A2D1-E528-44F6-9DE6-CD6CAFEECD23}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\AvatarLauncher.exe FirewallRules: [{95136FBC-00C1-4D2C-85E2-22E875B8BB43}] => (Allow) E:\Programme\Ubisoft\James Cameron's AVATAR - DAS SPIEL\bin\AvatarLauncher.exe FirewallRules: [{54393422-00DA-488B-9A54-F953AEB4F1BD}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage.exe FirewallRules: [{B30B1273-A057-49B0-BECA-6F238C0E7C7A}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage.exe FirewallRules: [{454447EF-B759-42D3-A922-584279121841}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage64.exe FirewallRules: [{2307E41B-0033-47AE-9F09-A626C7849367}] => (Allow) E:\Programme\Steam\SteamApps\common\RAGE\Rage64.exe FirewallRules: [{F8C714F6-61FF-4962-9674-042FDB622A51}] => (Allow) E:\Unreal Development Kit\No Return V11250\Binaries\Win32\UDK.exe FirewallRules: [{9EE183A2-2883-4788-A25B-1C6014D03E55}] => (Allow) E:\Unreal Development Kit\No Return V11250\Binaries\Win32\UDK.exe FirewallRules: [{E43E35D8-F4ED-4342-89EA-0C4BEC7DE286}] => (Allow) E:\Programme\Steam\SteamApps\common\HauntedMemories\HM.exe FirewallRules: [{7C5088D8-0334-4F04-97AF-01E2D80C5806}] => (Allow) E:\Programme\Steam\SteamApps\common\HauntedMemories\HM.exe FirewallRules: [{20AA8D3A-1210-4501-8435-559559C2BBAD}] => (Allow) E:\Programme\Steam\SteamApps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{130D9E54-4529-44D6-B96C-ABA665E54350}] => (Allow) E:\Programme\Steam\SteamApps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{EFD4A31F-B644-44E2-9070-630145BB5AF9}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\TWTM.exe FirewallRules: [{EC43B800-C772-4602-9ACE-3269BDC0596B}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\TWTM.exe FirewallRules: [{246DDC2F-A6D4-4684-BE87-D9E8E970B7DD}] => (Allow) E:\Programme\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{661419EC-C7A6-43DC-A64D-97619136F4DD}] => (Allow) E:\Programme\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{531B5E34-0EBE-497B-AA2B-AA24C7F040B6}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{9F445AD7-3E53-4367-B7E6-C0FECAF5C9A4}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{32B41F95-630B-45FE-BB9A-13B12E3BE0E7}] => (Allow) E:\Programme\Steam\SteamApps\common\Only If\Only If.exe FirewallRules: [{189789FB-48F4-4D24-9BB3-F30E1076A60E}] => (Allow) E:\Programme\Steam\SteamApps\common\Only If\Only If.exe FirewallRules: [{CC497C1A-5F01-4CBD-8CAC-ED07A114AAB2}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FarCry2.exe FirewallRules: [{CA927013-3AD5-4034-8012-A9244DD2B951}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FarCry2.exe FirewallRules: [{07DFC13A-3185-4D6F-AEE6-EC5BCDE5075C}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Launcher.exe FirewallRules: [{90D9CBA2-F59B-4226-998F-EDE0547D285C}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Launcher.exe FirewallRules: [{7234B363-B492-4B6D-8CA7-C2695BB21CF7}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Editor.exe FirewallRules: [{994F79BF-0EB7-4374-89BE-1BF0DED4BF30}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2Editor.exe FirewallRules: [{52EBFCD9-7C17-4C3E-AF4D-719033E1DF6D}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2ServerLauncher.exe FirewallRules: [{F9F0D9BC-DB18-4CC9-9B9E-E3584C4F06FA}] => (Allow) E:\Programme\Ubisoft\Far Cry 2\bin\FC2ServerLauncher.exe FirewallRules: [{12054756-250F-42D5-A6F8-B39ABDD88B33}] => (Allow) E:\Programme\Steam\SteamApps\common\State of Decay\StateOfDecay.exe FirewallRules: [{5AB8BB9A-FD72-4549-B581-6AF243CCB5AA}] => (Allow) E:\Programme\Steam\SteamApps\common\State of Decay\StateOfDecay.exe FirewallRules: [{E2A1C10B-F4CE-4415-BF4F-74A91284BBF2}] => (Allow) E:\Programme\Steam\bin\steamwebhelper.exe FirewallRules: [{4632D09F-D163-4D13-A8CF-4A09ABB8A146}] => (Allow) E:\Programme\Steam\bin\steamwebhelper.exe FirewallRules: [{8B2EAFB1-2407-4BE2-B181-3890420834A8}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe FirewallRules: [{199A182B-14D6-4EE8-BA4C-559A26331C41}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe FirewallRules: [{D22CD42F-4C50-4FA6-B64A-98194A75D5A6}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe FirewallRules: [{7A1EB2AB-8780-4053-824C-C9EFD47F5FAC}] => (Allow) E:\Programme\Steam\SteamApps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe FirewallRules: [{0D601019-53F5-409F-8EAE-61F66D222D71}] => (Allow) E:\Programme\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{88B70024-A860-4158-9F06-6A90513766AE}] => (Allow) E:\Programme\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{56BF3432-3F46-4176-930C-CBE7CE5B967F}] => (Allow) E:\Programme\Steam\SteamApps\common\Deadlight\Binaries\Win32\LOTDGame.exe FirewallRules: [{96E8F828-920E-4BDB-A101-135B0F792EE6}] => (Allow) E:\Programme\Steam\SteamApps\common\Deadlight\Binaries\Win32\LOTDGame.exe FirewallRules: [{DAB38168-BABD-41C5-A28A-70E77FCD8B7D}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{69F1D415-99F5-447F-88C5-F2606884B295}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex Human Revolution Director's Cut\DXHRDC.exe FirewallRules: [{C21F767B-9B5B-41D9-A344-966EB982C853}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex The Fall\DeusEx_steam.exe FirewallRules: [{A907098B-1AE4-455C-905A-44E647465A16}] => (Allow) E:\Programme\Steam\SteamApps\common\Deus Ex The Fall\DeusEx_steam.exe FirewallRules: [{1221C433-2D6D-4F73-9E24-DD1D26438E83}] => (Allow) E:\Programme\Steam\SteamApps\common\DemoAritanaHF\Aritana.exe FirewallRules: [{AE220B18-C88C-45C6-9BED-D5B6E76B33A0}] => (Allow) E:\Programme\Steam\SteamApps\common\DemoAritanaHF\Aritana.exe FirewallRules: [{08E2FB9A-2240-4023-A18A-BE5E505E130E}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{AACD929C-4657-41BB-9C9F-0947FD67C7E6}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{DD2E7157-F47B-4C71-8DCB-C010EFEDC2F4}] => (Allow) E:\Programme\Steam\SteamApps\common\Monochroma Demo\Monochroma.exe FirewallRules: [{E6CC9140-F6CA-44C7-AB01-58010D7A7758}] => (Allow) E:\Programme\Steam\SteamApps\common\Monochroma Demo\Monochroma.exe FirewallRules: [{93237E32-27CE-4139-BF91-3260E98F47D7}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\SDKLauncher.exe FirewallRules: [{7CB8FA9D-80B5-424A-B4F6-8A68B04295A4}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\SDKLauncher.exe FirewallRules: [{1354260F-95B0-4B8D-96EA-23DB360E09BB}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\p2map_publish.exe FirewallRules: [{9EF60C70-F206-4295-812D-60362C08E5F4}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\bin\p2map_publish.exe FirewallRules: [{68C95498-7221-4BB9-8D85-E008FE6B1EE6}] => (Allow) E:\Programme\Microsoft Visual Studio 12.0\Common7\IDE\WDExpress.exe FirewallRules: [{27038B91-F073-46F0-A10A-EB977BEAB372}] => (Allow) E:\Programme\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{D7414C60-D699-458D-A630-F06F786B4A68}] => (Allow) E:\Programme\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{0169B271-942B-4355-A8F5-D5FE77674ACB}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{A002F34A-E5B5-46A3-BE49-D2D135D6C12B}] => (Allow) E:\Programme\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [VirtualPC-In-UDP-1] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [VirtualPC-In-UDP-2] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [VirtualPC-In-TCP-1] => (Allow) %SystemRoot%\System32\vpc.exe FirewallRules: [{1D658D95-3901-4B5C-809A-992C757B6711}] => (Allow) E:\Programme\Steam\SteamApps\common\left 4 dead\left4dead.exe FirewallRules: [{FBD891BE-1E31-4F4D-9D94-334F52B8F4CD}] => (Allow) E:\Programme\Steam\SteamApps\common\left 4 dead\left4dead.exe FirewallRules: [{8A7ADE5A-72F0-42A2-9F93-5EF34514EBA9}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\SporeBin\SporeApp.exe FirewallRules: [{3D79E9EF-C435-490C-B939-FC250422D32A}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\SporeBin\SporeApp.exe FirewallRules: [{C09C1EC6-1FFA-4038-A5BB-959155FD30D5}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\runme.exe FirewallRules: [{CC08DA75-39D7-4C40-A83D-61FD4F330ADE}] => (Allow) E:\Programme\Steam\SteamApps\common\Spore\runme.exe FirewallRules: [{F6051F21-E015-40F5-90E3-1F2B129F4991}] => (Allow) E:\Programme\Steam\SteamApps\common\I am Alive\src\SYSTEM\IAmAlive_game.exe FirewallRules: [{1E448842-915F-414B-B246-1D3561C16833}] => (Allow) E:\Programme\Steam\SteamApps\common\I am Alive\src\SYSTEM\IAmAlive_game.exe FirewallRules: [{A2265F02-4717-4F88-878D-5E04125C689B}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe FirewallRules: [{8C1A527E-8F17-4DBF-ADD6-A9118F59CE3A}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe FirewallRules: [{1367E60B-80F5-4A8A-9EB0-42491FF5A757}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160_START.exe FirewallRules: [{1BC82058-43B0-4ACC-8E03-FE173B0A28C9}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160_START.exe FirewallRules: [{6C691ACF-B4C3-428E-8E49-E93818E1151D}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160Editor_START.exe FirewallRules: [{9F354513-6B58-44BF-B424-2E1FD760555F}] => (Allow) E:\Programme\Steam\SteamApps\common\Earth 2160\Earth2160Editor_START.exe FirewallRules: [{9B8C0BC8-1204-4108-8540-08A42342E5E4}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro 2033\metro2033.exe FirewallRules: [{B2452605-04B6-44A9-A55B-1221E583D372}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro 2033\metro2033.exe FirewallRules: [{867A92E8-4014-47AC-A627-60785CF8E59B}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JustCause.exe FirewallRules: [{9F252B12-9F37-4C8D-A6D2-C880D2B255AA}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JustCause.exe FirewallRules: [{E52C0C32-CE82-409D-BADC-E760594EB425}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JCSetup.exe FirewallRules: [{20818956-EA85-4DE3-8C47-4E9C271A5EE7}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause\JCSetup.exe FirewallRules: [{6D22E720-AE24-49A0-B1C3-6B9A845DB673}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{61827246-973F-46E5-BC6D-0B204A28884B}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{65EF2C03-D130-42F8-8309-7FD93C53FB9B}] => (Allow) E:\Programme\Steam\SteamApps\common\Nuclear Dawn\nucleardawn.exe FirewallRules: [{6D624995-CFC1-4CBD-AFBA-8FF36C882030}] => (Allow) E:\Programme\Steam\SteamApps\common\Nuclear Dawn\nucleardawn.exe FirewallRules: [{1C9CB6FD-D2A8-4021-94D3-57E4357ECCA0}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{9BC2D94B-45E9-45AD-8A86-2A17A3E0E682}] => (Allow) E:\Programme\Steam\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{06061685-E6BB-4D5C-81B7-3959B50C7650}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe FirewallRules: [{C491C9EA-B4EC-4712-8CCE-F145D2C2DC18}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe FirewallRules: [{0087ABD4-7BA6-4F30-86A2-DF99EB53BD62}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe FirewallRules: [{D489EE49-6616-4DD3-AA22-0038DAB21A4D}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe FirewallRules: [{D8C86D8D-7635-4D8D-9519-5AC77776EC9D}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe FirewallRules: [{50AD1E80-C99A-4E7A-BD9A-DFC05A046162}] => (Allow) E:\Programme\Steam\SteamApps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe FirewallRules: [{4C90DAEB-A135-4D62-BB63-63E96195DF11}] => (Allow) E:\Programme\Steam\SteamApps\common\the witcher 2\Launcher.exe FirewallRules: [{08420DA4-4FEF-4540-967C-2F05C681EDE9}] => (Allow) E:\Programme\Steam\SteamApps\common\the witcher 2\Launcher.exe FirewallRules: [{8E62E789-1E8D-407F-B57E-CAE4ADAEFDD7}] => (Allow) E:\Programme\Steam\SteamApps\common\WOG\disasm.exe FirewallRules: [{1E49B5CF-218C-4631-9EF3-52DEA5FAC249}] => (Allow) E:\Programme\Steam\SteamApps\common\WOG\disasm.exe FirewallRules: [{BFF95CE5-9A36-48DF-86F7-8336EE8433E6}] => (Allow) E:\Programme\Steam\SteamApps\common\theHunter\launcher\launcher.exe FirewallRules: [{C58D875C-217F-46B6-9A43-BE68D5691F6B}] => (Allow) E:\Programme\Steam\SteamApps\common\theHunter\launcher\launcher.exe FirewallRules: [{71FEB099-E047-487D-AE76-813718843BA8}] => (Allow) E:\Programme\Steam\SteamApps\common\Worms Reloaded\WormsReloaded.exe FirewallRules: [{E5799A31-53AC-4A45-B3D8-C56ABF5247B1}] => (Allow) E:\Programme\Steam\SteamApps\common\Worms Reloaded\WormsReloaded.exe FirewallRules: [{AB88AB45-2882-4490-A26F-77AE0DAB1C80}] => (Allow) E:\Programme\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{A007B7D3-D9E1-411B-A0BD-4D9AA3584687}] => (Allow) E:\Programme\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{FE8AF1FB-3E8C-4F18-BA53-186D4957B4CF}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\HowToSurvive.exe FirewallRules: [{60F3F7E9-FDC7-4CDA-B977-86CF9A6451AE}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\HowToSurvive.exe FirewallRules: [{EA4D2A64-3343-42B7-8189-BC6F650C79AB}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\Detect.exe FirewallRules: [{720E8303-F213-4BBF-88BB-2445D7E6A9C0}] => (Allow) E:\Programme\Steam\SteamApps\common\How to Survive\Detect.exe FirewallRules: [{DE4F8B60-694B-4872-BEE6-93FB94D98C81}] => (Allow) E:\Programme\Steam\SteamApps\common\Outlast\OutlastLauncher.exe FirewallRules: [{4C0B8814-3EB4-4159-8E5D-B3EA5270E3FC}] => (Allow) E:\Programme\Steam\SteamApps\common\Outlast\OutlastLauncher.exe FirewallRules: [{6FFE53BB-082E-4585-A1AE-F346EF05949B}] => (Allow) E:\Programme\Steam\SteamApps\common\TheLongDark\tld.exe FirewallRules: [{C67CD027-1100-4900-B4A7-9F314B3D576C}] => (Allow) E:\Programme\Steam\SteamApps\common\TheLongDark\tld.exe FirewallRules: [{F855C128-0BA9-4AB1-9DC1-DC93B81BF252}] => (Allow) E:\Programme\Steam\SteamApps\common\Eternal Winter\EternalWinter.exe FirewallRules: [{83C5DD9B-7AE6-465B-A7DC-02AB2CEF1501}] => (Allow) E:\Programme\Steam\SteamApps\common\Eternal Winter\EternalWinter.exe FirewallRules: [{7B100F58-5EC2-4A0F-B929-72D0130F09FC}] => (Allow) E:\Programme\Steam\SteamApps\common\puddle\Launcher.exe FirewallRules: [{F90C0B59-95D6-4D83-9D59-D781D65C027F}] => (Allow) E:\Programme\Steam\SteamApps\common\puddle\Launcher.exe FirewallRules: [{FED79DAC-05FE-4F0A-9926-B0682DB9A77D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{64E3BB37-B8AC-4F0F-A345-695E1D35F064}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{5C4D5E66-1D54-47F6-BBC5-81778B14816A}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{406C1B64-EE31-4F88-A0EF-669724CEA55D}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{684A06A1-9D97-40AC-83DC-0B63BCBE1E88}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{467E7E21-D20A-453F-88F7-EC85B6264F79}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{15E8CA78-B614-4A5F-B8DA-60E1384122DC}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{BAE77290-69AE-4B26-BEF4-8D6609EB7BCC}] => (Allow) E:\Programme\Star Wars-The Old Republic\swtor\retailclient\swtor.exe FirewallRules: [{62C52B53-EFEE-4E63-8BC0-7AE4DB7770CD}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{E0951DB9-6A06-4EEF-BB63-C9C19B240C79}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{B60BBE27-9B67-4BE6-966E-A138A61A482E}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{A02892A6-0763-4935-93C7-F34529D988F1}] => (Allow) E:\Programme\Star Wars-The Old Republic\launcher.exe FirewallRules: [{9E8F338F-89A3-49C9-9894-06F342CA30E7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{4E154B41-E5A2-4C0E-969E-1106C12F3069}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1C6EFD0F-699F-43CE-A01F-24EA40C16EEA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{629B82B8-58EC-4BFB-B4F7-C70E80C52CFB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D69BAF22-2E31-4249-BECD-AA2D206F6EA1}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid32.exe FirewallRules: [{F1FD5506-8FC8-46CB-B9BF-55E974A25D82}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid32.exe FirewallRules: [{13EEFE8C-212B-4073-9703-3B3E7A77283B}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid64.exe FirewallRules: [{DC334550-EBF8-4FC3-B51E-8DB4C9C5C3CE}] => (Allow) E:\Programme\Steam\SteamApps\common\ProjectZomboid\ProjectZomboid64.exe FirewallRules: [{33AAEF15-8736-42CA-9D7D-B4EFD5417F8A}] => (Allow) E:\Programme\Steam\SteamApps\common\Lococycle\Launcher.exe FirewallRules: [{C957AACB-023F-4171-82C1-FA2944CD3A09}] => (Allow) E:\Programme\Steam\SteamApps\common\Lococycle\Launcher.exe FirewallRules: [TCP Query User{21D08946-DFC8-4255-811A-C95DC693671E}F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe] => (Allow) F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe FirewallRules: [UDP Query User{AAC5FF8A-3F8D-4081-9D86-ADC053FCB169}F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe] => (Allow) F:\mario\appdata\local\starparse\runtime\jre\bin\starparse.exe FirewallRules: [{4BD527E6-4095-408D-A659-C70E8B2A1AF7}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{A9F6FEE5-68C3-4398-9495-16777FDCCC2D}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{469F4C42-84E5-4779-82F4-A8C882452A59}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{FFC07E24-3CD0-462C-B916-CE3FFAB90EDD}] => (Allow) F:\Mario\AppData\Local\StarParse\StarParse.exe FirewallRules: [{547414C9-2398-4622-B531-EE9FA896C472}] => (Allow) E:\Programme\Steam\SteamApps\common\FarSky\farskyExec.exe FirewallRules: [{1B66F87A-D6A1-4BD9-A81C-02DB770566E8}] => (Allow) E:\Programme\Steam\SteamApps\common\FarSky\farskyExec.exe FirewallRules: [{25A9F05B-1DA8-44EE-B6F4-C36903B42D0B}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders\DarksidersPC.exe FirewallRules: [{71B9CEB6-7C0B-4946-9063-CA1222E4BADE}] => (Allow) E:\Programme\Steam\SteamApps\common\Darksiders\DarksidersPC.exe FirewallRules: [{3878141E-0455-4186-9640-9B4B97A72F2B}] => (Allow) E:\Programme\Steam\SteamApps\common\The Stanley Parable\stanley.exe FirewallRules: [{5CD2DCE4-8A05-42DC-B948-207272E303F8}] => (Allow) E:\Programme\Steam\SteamApps\common\The Stanley Parable\stanley.exe FirewallRules: [{57E9EF26-00BF-49F4-9E16-D3CF8443561A}] => (Allow) E:\Programme\Steam\SteamApps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe FirewallRules: [{0A2605BD-899E-442E-8BCA-1196D91D5818}] => (Allow) E:\Programme\Steam\SteamApps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe FirewallRules: [{56751053-C56D-4562-8036-D45B65B4FC85}] => (Allow) E:\Programme\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{6D68158A-E426-49B0-B5B3-D06713D472C7}] => (Allow) E:\Programme\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{24919CAC-773E-42EB-A6DD-D594F9B7513B}] => (Allow) E:\Programme\Steam\SteamApps\common\Arx Fatalis\arx.exe FirewallRules: [{B1A71770-A7F6-4D52-9E68-59C88EDF65B7}] => (Allow) E:\Programme\Steam\SteamApps\common\Arx Fatalis\arx.exe FirewallRules: [{69D7F1BD-8997-448A-80B7-61CD811C6959}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe FirewallRules: [{D0D47259-CC65-41E0-857A-4737EDDF8CD7}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe FirewallRules: [{47E3F425-AD51-45EA-8081-03B2EE03C522}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{EAF8C986-2D6A-4591-BB5C-398701739282}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{1C67BA58-91D7-49FA-8742-B37DC3E8AA10}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{36C306FB-BED2-4E6B-8DB8-C9527B4DE06A}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{53CA5307-EF99-4DF3-9356-EB3863C90A10}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{1A5C9DE6-987C-4954-B6E1-7B987A9906C8}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{896C9092-9C05-4F67-8D6D-7B390F0BD660}] => (Allow) E:\Programme\Steam\SteamApps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{0399C45F-3FFE-4D79-BF76-6B8E2051811C}] => (Allow) E:\Programme\Steam\SteamApps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{5494FD02-4BB6-4AED-ADC7-637AE6F9A50B}] => (Allow) E:\Programme\Steam\SteamApps\common\Gigantic Army\GIGANTIC ARMY.exe FirewallRules: [{DEFA9A49-FC1C-4F9F-A368-D0281B683CB8}] => (Allow) E:\Programme\Steam\SteamApps\common\Gigantic Army\GIGANTIC ARMY.exe FirewallRules: [{17655C7F-E99C-4D9B-B8FC-47D80F2DBB44}] => (Allow) E:\Programme\Steam\SteamApps\common\Hacknet\Hacknet.exe FirewallRules: [{BA50C228-8D82-456A-A081-2E6A708D884E}] => (Allow) E:\Programme\Steam\SteamApps\common\Hacknet\Hacknet.exe FirewallRules: [{1A38E074-EC66-418E-B216-C9DE120CD8B1}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\portal2.exe FirewallRules: [{CA2A29DF-B74E-4E6D-AD54-D4E5E646B8C3}] => (Allow) E:\Programme\Steam\SteamApps\common\Thinking with Time Machine\portal2.exe FirewallRules: [{EE790F5F-43D0-4B7B-8383-114F534AC8AD}] => (Allow) E:\Programme\Steam\SteamApps\common\Belladonna\Belladonna.exe FirewallRules: [{350BA280-A042-47AB-B30E-F7789DE5EFDF}] => (Allow) E:\Programme\Steam\SteamApps\common\Belladonna\Belladonna.exe FirewallRules: [{07DE9620-5D73-4D1E-B339-1433534D7859}] => (Allow) E:\Programme\Steam\SteamApps\common\Asteria\Asteria.exe FirewallRules: [{A6610971-9BBA-48B6-9F9F-786A6684B227}] => (Allow) E:\Programme\Steam\SteamApps\common\Asteria\Asteria.exe FirewallRules: [{B58AB62B-B0C0-48B3-BE60-339656FDF24A}] => (Allow) E:\Programme\Steam\SteamApps\common\FireflyOnlineCortex\FireflyCortex.exe FirewallRules: [{ABF43631-1243-49CC-A9A7-AF8A23957F34}] => (Allow) E:\Programme\Steam\SteamApps\common\FireflyOnlineCortex\FireflyCortex.exe FirewallRules: [{29AB27DC-EF79-495C-9F35-6AC7E76FCA48}] => (Allow) E:\Programme\Steam\SteamApps\common\Tropico 5\Tropico5Steam.exe FirewallRules: [{28D8B1A2-FA3C-4F48-A6BC-6862C2E3D2B9}] => (Allow) E:\Programme\Steam\SteamApps\common\Tropico 5\Tropico5Steam.exe FirewallRules: [{500B497E-BF2A-4807-8805-5C36819F3A65}] => (Allow) E:\Programme\Steam\SteamApps\common\deadrising3\deadrising3.exe FirewallRules: [{8A15FF9E-FB1F-4BED-9689-7BDEB415D5C8}] => (Allow) E:\Programme\Steam\SteamApps\common\deadrising3\deadrising3.exe FirewallRules: [{6AD1C471-E657-47E4-9948-E2EAA8C5827A}] => (Allow) E:\Programme\Raptr\raptr.exe FirewallRules: [{E7120C0F-DA07-4CE5-A18E-C6E2335B5755}] => (Allow) E:\Programme\Raptr\raptr.exe FirewallRules: [{824F109A-F249-4F02-B083-DC043B91F024}] => (Allow) E:\Programme\Raptr\raptr_im.exe FirewallRules: [{88A82BE7-1D54-437B-8F1B-E3AAFB12282A}] => (Allow) E:\Programme\Raptr\raptr_im.exe FirewallRules: [{B51E0A67-1F75-4176-9161-7B3C438AB1C8}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{37998796-4457-4AC0-A924-66BEC33C4C15}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{904FCC2C-2D6E-4A2C-A77E-ACA5DD6C1563}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{F3C3DA91-BBAE-4486-9E11-0323805E0E33}] => (Allow) E:\Programme\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{B21BFEDC-6C47-476A-AC4D-EE652C4FC7D4}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine 2\trine2_launcher.exe FirewallRules: [{7DADEF67-570E-445F-AFC9-0903636EDFE0}] => (Allow) E:\Programme\Steam\SteamApps\common\Trine 2\trine2_launcher.exe FirewallRules: [{775DD720-945A-4338-939E-0AEECAE1A38D}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{D6EA4748-9289-4263-B665-7D977190B5D0}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{0CC5C1BB-D365-4D7B-8C9C-78DA56E87800}] => (Allow) E:\Programme\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{6BBF153E-B909-4CEF-9162-9523E9E1FC45}] => (Allow) E:\Programme\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{C64A06CA-1E26-4F99-BB8E-2A204500B95F}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{D2B96CED-A09B-4B31-B186-6414BBE2542C}] => (Allow) E:\Programme\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{5FE7157C-E9CA-49F5-AE0D-5A1E445F78DE}] => (Allow) E:\Programme\Steam\SteamApps\common\Robocraft\Robocraft.exe FirewallRules: [{8ACD0E24-C19C-434C-AFF3-CBBAFB7CA35F}] => (Allow) E:\Programme\Steam\SteamApps\common\Robocraft\Robocraft.exe FirewallRules: [{F2A3118E-77DE-42D6-A71A-7DB6CD5DABF1}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{1266AE14-B26F-4EF5-A5A3-D757A13B524C}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{8BCAEBC9-8724-4687-99F8-104361A69B2C}] => (Allow) E:\Programme\Steam\SteamApps\common\Spooky's House of Jump Scares\SPOOKY.exe FirewallRules: [{E8C8051F-7C59-4307-A8E4-240D0C4049A3}] => (Allow) E:\Programme\Steam\SteamApps\common\Spooky's House of Jump Scares\SPOOKY.exe FirewallRules: [{DC53B0BB-71AD-45CB-8511-A699554E48B2}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro Last Light\MetroLL.exe FirewallRules: [{EA741A4D-D829-4C49-8F52-07840FEBED7F}] => (Allow) E:\Programme\Steam\SteamApps\common\Metro Last Light\MetroLL.exe FirewallRules: [{B12DA3A5-3617-432A-AD5D-94285389B1EE}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{53F98E63-7D44-4F92-823D-54B1088A8EFC}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{3E95A19F-796B-46D6-BDB3-AB6B112A1A0E}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{C6BA2803-61CB-412F-8F4D-B3B5236BFD2F}] => (Allow) E:\Programme\Steam\SteamApps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{FB39A534-AA11-4BDB-BF1B-A8B8A77A9886}] => (Allow) E:\Programme\Steam\SteamApps\common\DayOne\Binaries\Win32\DayOne.exe FirewallRules: [{8873948A-AD42-45E5-A634-4D0BE5620149}] => (Allow) E:\Programme\Steam\SteamApps\common\DayOne\Binaries\Win32\DayOne.exe FirewallRules: [{A98BCC7F-50E2-4A9C-BA0A-01BA3EB8BE44}] => (Allow) E:\Programme\Steam\SteamApps\common\PlagueInc\PlagueIncEvolved.exe FirewallRules: [{AA44D748-456F-48BA-9EF6-31D2CA62021C}] => (Allow) E:\Programme\Steam\SteamApps\common\PlagueInc\PlagueIncEvolved.exe FirewallRules: [{FC0497D3-F7FB-470C-A419-D7C9C485A5CA}] => (Allow) E:\Programme\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{3ECBA115-136F-4642-B4B9-3936C399F24F}] => (Allow) E:\Programme\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{C727F522-DC36-4CD9-B52A-97D01CB22CDF}] => (Allow) E:\Programme\Steam\SteamApps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe FirewallRules: [{E869A9C2-3E54-4B4F-A83F-4007C0EFEEE1}] => (Allow) E:\Programme\Steam\SteamApps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe FirewallRules: [{41B684D9-E240-43B8-9B4A-61882EDD702B}] => (Allow) E:\Programme\Steam\SteamApps\common\Cradle\bin\cradle_x64.exe FirewallRules: [{669F8ED7-0B3E-49FD-9E53-D3E715207184}] => (Allow) E:\Programme\Steam\SteamApps\common\Cradle\bin\cradle_x64.exe FirewallRules: [{462C80C9-4B95-412D-98E8-CD4B39564E20}] => (Allow) E:\Programme\Steam\SteamApps\common\Empyrion - Galactic Survival\EmpyrionLauncher.exe FirewallRules: [{D1971867-0D3F-4DAF-AF06-E413F2933990}] => (Allow) E:\Programme\Steam\SteamApps\common\Empyrion - Galactic Survival\EmpyrionLauncher.exe FirewallRules: [{51B438AB-18C6-4AAD-B56E-C6FD3ACFF7C6}] => (Allow) E:\Program Files (x86)\Origin Games\Titanfall\Titanfall.exe FirewallRules: [{B5C34FAB-0AFF-4F15-94B0-F481C74FDC63}] => (Allow) E:\Program Files (x86)\Origin Games\Titanfall\Titanfall.exe FirewallRules: [{AA6E4522-5E3A-4B12-9047-34D0F8C3D9D3}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7dLauncher.exe FirewallRules: [{BEF82D7D-9860-41FB-AB90-28AC86C21172}] => (Allow) E:\Programme\Steam\SteamApps\common\7 Days To Die\7dLauncher.exe FirewallRules: [{90388FD0-C553-4B37-9DC5-872FF97E6583}] => (Allow) E:\Programme\Steam\SteamApps\common\Welcome to the Game\WTTG.exe FirewallRules: [{4DB90EE4-AA4F-4633-92A9-1F9B73120B11}] => (Allow) E:\Programme\Steam\SteamApps\common\Welcome to the Game\WTTG.exe FirewallRules: [{B54D40D5-4523-40E7-B09A-56277AE04B9C}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{5C409637-6DAA-460E-ACDA-B649FFE5471D}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{778089E1-8305-4ADC-91C0-5F9C9EFF3229}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{9CA527FD-B4D3-45B5-A425-EC1D6DCA40B0}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{36CF8920-6C05-4568-BEFB-F791C81EFF4A}] => (Allow) E:\Programme\Steam\SteamApps\common\RaceTheSun\RaceTheSun.exe FirewallRules: [{E6A3A06C-AAB9-4143-8FC3-2F37235DAD3D}] => (Allow) E:\Programme\Steam\SteamApps\common\RaceTheSun\RaceTheSun.exe FirewallRules: [{67DC53B5-F379-42DF-8C9D-99E4734EC5B2}] => (Allow) E:\Programme\Steam\SteamApps\common\Residue\Residue.exe FirewallRules: [{ACF967D1-5064-4038-8D62-0074F834EBAE}] => (Allow) E:\Programme\Steam\SteamApps\common\Residue\Residue.exe FirewallRules: [{A0E07E58-0BBB-4D9A-9439-10A8D4C52144}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [{550CD682-112D-48DD-91AE-CA9ABA63B110}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [{48749744-9D27-4586-9575-6B0213641C98}] => (Allow) E:\Programme\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe FirewallRules: [{465AB5EF-15AB-4B41-A254-5D46C1421CA3}] => (Allow) E:\Programme\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe FirewallRules: [{CE5076B7-080A-4731-9182-BF53B00183F6}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\deponia.exe FirewallRules: [{58038BB6-F8D2-41EB-8789-AC4D59F53F18}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\deponia.exe FirewallRules: [{EF60B368-C0A4-4FCD-AFD8-347962BB20D1}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{1A46C43F-2EC8-4BD4-9A5D-0F17BC3F89F3}] => (Allow) E:\Programme\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{819D3B54-9B7E-4E5E-A4B6-013615923240}] => (Allow) E:\Programme\Steam\SteamApps\common\GearUp\bin\Traktor.Amalgam.App.exe FirewallRules: [{08F5090E-9637-45CC-BE73-85178735F486}] => (Allow) E:\Programme\Steam\SteamApps\common\GearUp\bin\Traktor.Amalgam.App.exe FirewallRules: [{6AAB52DB-14ED-4B78-83BF-B490780E36CD}] => (Allow) E:\Programme\Steam\SteamApps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{ECC4AF87-E273-4E25-8731-0D76DE7DFF8B}] => (Allow) E:\Programme\Steam\SteamApps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{16707230-36F3-40B6-9D86-34DB5747D09C}] => (Allow) E:\Programme\Steam\SteamApps\common\Survivalist\Survivalist.exe FirewallRules: [{0E48290C-F0D0-470D-BAE5-4F12228077D2}] => (Allow) E:\Programme\Steam\SteamApps\common\Survivalist\Survivalist.exe FirewallRules: [{675CB024-B5D1-4D9B-ADD6-ABC0504BBB07}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned_BE.exe FirewallRules: [{4C93D55D-E36B-4AB1-ADF8-57C9899CB007}] => (Allow) E:\Programme\Steam\SteamApps\common\Unturned\Unturned_BE.exe FirewallRules: [{765F9F3D-A6B2-41AF-AA32-6C5B9B561017}] => (Allow) E:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{99B3E4DF-DA88-44E6-9CF4-323FE6D9DC58}] => (Allow) E:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{91A727AF-6FD5-4AE7-B962-722562E23FBA}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{E8080FDD-AF36-42C3-92D5-41026AD8D255}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{CA07C9E2-6E49-41F6-BF62-537E7EF03499}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5A060D14-0733-4212-B288-566A3F5E52A9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5E6F4CDC-C3B1-4A20-8D29-5ADB7C8633DD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{A265EE0C-63AD-4CE7-A60A-1BA75A440EC6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{0AD5F744-0D23-4BC2-A225-675F3699573D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{32FF1D8F-FCB6-4344-A26B-C10307BF103C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{D0A0EBEC-A09B-409A-8122-334791522967}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{1972C592-476E-404D-B665-4AF9F955A407}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{8E09DE4B-B32F-47A1-B5A4-912FF8692FB5}] => (Allow) E:\Programme\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{0EC48E67-B1B2-4000-9534-F8E54BA166B9}] => (Allow) E:\Programme\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{7D4D1A0A-69E1-46AE-9F0D-1600CA3E00F2}] => (Allow) E:\Programme\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{A7C4685D-1BDC-4194-BF15-99FF63308B5A}] => (Allow) E:\Programme\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe FirewallRules: [{846D6DBD-4025-42B1-A99E-BE8E970E8387}] => (Allow) E:\Programme\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe FirewallRules: [{FCDD869A-FE3F-46C6-BE26-9AAAB87D4A6A}] => (Allow) E:\Programme\Steam\SteamApps\common\Gunpoint\Gunpoint.exe FirewallRules: [TCP Query User{F867F7D6-8BEC-435A-A270-1C08DC704BCB}E:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{4D76655A-6000-49BC-9079-D7B0784ADA67}E:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) E:\programme\rockstar games\grand theft auto v\gta5.exe ==================== Wiederherstellungspunkte ========================= 18-02-2017 14:41:00 JRT Pre-Junkware Removal 20-02-2017 05:25:03 Prüfpunkt von HitmanPro ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (02/20/2017 05:13:48 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Admin\Desktop\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/20/2017 05:13:41 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Admin\Desktop\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/20/2017 05:13:41 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Admin\Desktop\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/20/2017 05:08:54 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/20/2017 12:49:02 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Admin\Desktop\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/20/2017 12:48:59 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Admin\Desktop\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/20/2017 12:48:58 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Admin\Desktop\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/20/2017 12:48:53 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Admin\Desktop\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/20/2017 12:48:38 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Admin\Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (02/19/2017 08:25:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Steam.exe, Version: 3.78.49.52, Zeitstempel: 0x5880152a Name des fehlerhaften Moduls: EZFRD32.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4d96b7b7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x035b2010 ID des fehlerhaften Prozesses: 0x13e4 Startzeit der fehlerhaften Anwendung: 0x01d28ae5f17fbb26 Pfad der fehlerhaften Anwendung: E:\Programme\Steam\Steam.exe Pfad des fehlerhaften Moduls: EZFRD32.dll Berichtskennung: 345ded44-f6d9-11e6-9572-d43d7ee3539a Systemfehler: ============= Error: (02/20/2017 04:57:11 AM) (Source: atapi) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort1 gefunden. Error: (02/20/2017 04:57:11 AM) (Source: atapi) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort1 gefunden. Error: (02/20/2017 04:57:11 AM) (Source: atapi) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort1 gefunden. Error: (02/20/2017 01:00:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: Der Treiber konnte nicht geladen werden. Error: (02/20/2017 01:00:47 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\Admin\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (02/20/2017 01:00:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: Der Treiber konnte nicht geladen werden. Error: (02/20/2017 01:00:46 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\Admin\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (02/20/2017 01:00:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: Der Treiber konnte nicht geladen werden. Error: (02/20/2017 01:00:46 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\Admin\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (02/20/2017 12:56:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: Der Treiber konnte nicht geladen werden. CodeIntegrity: =================================== Date: 2017-02-20 00:57:57.942 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-20 00:42:47.114 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-20 00:02:03.271 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-19 20:19:18.739 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-19 14:00:06.039 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-19 13:52:16.379 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 15:08:56.989 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 14:51:49.760 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 14:36:28.472 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-02-18 14:31:38.495 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\gdi32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz Prozentuale Nutzung des RAM: 25% Installierter physikalischer RAM: 16328.55 MB Verfügbarer physikalischer RAM: 12241.48 MB Summe virtueller Speicher: 32655.29 MB Verfügbarer virtueller Speicher: 28738.91 MB ==================== Laufwerke ================================ Drive c: (Boot) (Fixed) (Total:99.78 GB) (Free:29.44 GB) NTFS Drive d: (Eigene Dateien) (Fixed) (Total:673.69 GB) (Free:584.27 GB) NTFS Drive e: (Programme) (Fixed) (Total:1122.65 GB) (Free:105.72 GB) NTFS Drive f: (Daten) (Fixed) (Total:673.69 GB) (Free:602.51 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 2794.5 GB) (Disk ID: D46323CE) Partition: GPT. ==================== Ende von Addition.txt ============================ Tjoar was die Probleme im Allgemeinen angeht, so scheint sich aber trotz allem nichts geändert zu haben. Mein PC scheint immernoch selbst zu bestimmen, welches Programm gerade flüssig ins Internet darf oder welcher Download mit mehr als 15KB/s läuft... z.B. hats für die 11 MB von HitmanPro kaum mehr als 30 Sekunden gedauert (relativ normal bei ner 3000er Leitung), aber die 2,7 MB von ESET haben sich auf fast zweieinhalb Minuten gestreckt. Wobei ich gestern noch ein paar Trace-Routes zu den verschiedensten URLs / IPs gemacht hab, einfach nur aus Neugierde. Und dabei ist mir aufgefallen, dass fast alle Verbindungen über mehrere IPs von telia.net geroutet werden - mit teils abartig hohen verzögerungen von 200 bis 250 ms. Selbst der Supportmitarbeiter von tele2 konnte sich heute Morgen keinen Reim darauf machen. Aber naja... Zumindest kann ich jetzt mal Schädlingsbefall als Ursache ausschließen. Dafür schonmal ein dickes |
20.02.2017, 20:54 | #11 | |||||||||||
/// TB-Ausbilder | Internetprobleme ohne erkennbare Ursache Servus, Malware ist nicht dein Problem. Zitat:
Reste entfernen Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter start DeleteKey: HKLM\SOFTWARE\Classes\c Reboot: end Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Die Fixlog von FRST gleich posten, da diese sonst mit DelFix (siehe weiter unten) automatisch entfernt wird! Wenn du keine Probleme mehr mit Malware hast, dann sind wir hier fertig. Deine Logdateien sind sauber. Zum Schluss müssen wir noch ein paar abschließende Schritte unternehmen, um deinen Pc aufzuräumen und abzusichern. Cleanup: Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner anschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Sofern du noch unentschieden bist, verwende ein einziges der folgenden Antivirusprogramme mit Echtzeitscanner und stets aktueller Signaturendatenbank: Microsoft Security Essentials (MSE) / Windows Defender (WD) ist ab Windows 8 fest eingebaut, wenn du also Windows 8, 8.1 oder 10 und dich für MSE/WD entschieden hast, brauchst du nicht extra MSE/WD zu installieren. Bei Windows 7 muss es aber manuell installiert oder über die Windows Updates als optionales Update bezogen werden. Selbstverständlich ist ein legales/aktiviertes Windows Voraussetzung dafür. Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: Adblock Plus Kann Banner, Pop-ups, Videowerbung, Tracking und Malware-Seiten blockieren. NoScript Verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner . Abschließend noch ein paar grundsätzliche Bemerkungen:
Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so dass ich dieses Thema aus meinen Abos löschen kann. |
22.02.2017, 20:22 | #12 |
| Internetprobleme ohne erkennbare Ursache So, hier nochmal der letzte Fixlog: Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 22-02-2017 durchgeführt von Admin (22-02-2017 20:15:11) Run:2 Gestartet von C:\Users\Admin\Desktop Geladene Profile: Admin (Verfügbare Profile: Admin (Alt Buggy) & TempAdmin & Admin & Mario (Neu) & Administrator) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** start DeleteKey: HKLM\SOFTWARE\Classes\c Reboot: end ***************** HKLM\SOFTWARE\Classes\c => Schlüssel erfolgreich entfernt Das System musste neu gestartet werden. ==== Ende von Fixlog 20:15:11 ==== |
22.02.2017, 20:57 | #13 |
/// TB-Ausbilder | Internetprobleme ohne erkennbare Ursache Ich bin froh, dass wir helfen konnten In diesem Forum kannst du eine kurze Rückmeldung zur Bereinigung abgeben, sofern du das möchtest: Lob, Kritik und Wünsche Klicke dazu auf den Button "NEUES THEMA" und poste ein kleines Feedback. Vielen Dank! Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke mir bitte eine PM. Jeder andere bitte hier klicken und einen eigenen Thread erstellen. |
Themen zu Internetprobleme ohne erkennbare Ursache |
antivir, anwendungen, auslastung, avast, diverse, dns, einstellungen, firefox, firewall, google, internet, internetverbindung, merkwürdig, problem, probleme, rechner, router, schädling, steam, unregelmäßige, updates, verbindung, verbindung eingeschränkt, windows, windows updates, winsock, zugriff |