|
Log-Analyse und Auswertung: Win 8.1, System reagiert auf alles sehr langsamWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
04.06.2017, 10:02 | #1 |
| Win 8.1, System reagiert auf alles sehr langsam Hallo, das ganze System reagiert manchmal sehr langsam. Wenn ich Photoshop starte, dauert es manchmal bis zu zehn Minuten, bis es dann an ist. Bei einem erneuten Starten geht es dann schneller. Wenn der Rechner neu hochgefahren ist, dauert es wieder so lange. Die Festplatte hat eine Durchschnittliche Antwortszeit von 5.000 bis 10.000 Millisekunden. Vor ein paar Monaten wurde der Arbeitsspeicher von 4 auf 12 GB erhöht. Das hat eine Weile für Besserung gesorgt. Inzwischen ist aber manchmal kaum ein Arbeiten damit möglich. Auch der Browser reagiert manchmal sehr langsam. Gibt man einen Text ein, dauert es manchmal ein paar Sekunden, bis dieser erscheint. Oder das ganze friert regelrecht ein. Die Festplatte ist frisch Defragmentiert. Hat aber nichts gebracht. Hinzu kommt noch, dass es mit den automatischen Updates zu Problemen kommt. Es stehen aktuell noch 13 wichtige Updates aus. Diese lassen sich auch nicht einzeln installieren. Auch verschiedene Hilfetools zur Installation helfen nicht. Zudem werden keine frühere Wiederherstellungspunkte angeboten, obwohl aktiviert ist. Steckt da jetzt irgendwo ein versteckter Virus drinnen, oder ist einfach das System zerschossen? Vielen Dank für die Hilfe und viele Grüße, Rainer Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 02-06-2017 durchgeführt von Rainer (Administrator) auf LIPPERT (04-06-2017 09:51:28) Gestartet von C:\Users\Rainer\Downloads Geladene Profile: Rainer (Verfügbare Profile: Rainer) Platform: Windows 8.1 (Update) (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Ascora GmbH) C:\Program Files (x86)\CheckDrive\CheckDrive.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Windows\SysWOW64\PSIService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2461504 2014-09-17] (NVIDIA Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft) HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [Windows Mobile-based device management] => C:\WINDOWS\WindowsMobile\wmdcBase.exe [660360 2007-05-31] (Microsoft Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-05-08] (AVAST Software) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-01] (Intel Corporation) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133440 2012-07-19] (Intel Corporation) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [AvgUi] => "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [1941064 2016-05-16] () HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [29246632 2017-05-30] (Dropbox, Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-10-25] (Adobe Systems Incorporated) HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8891608 2016-07-13] (Piriform Ltd) HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31682144 2015-03-25] (Skype Technologies S.A.) HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\Policies\Explorer: [Neuer Wert #1] HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\MountPoints2: {1cb13cc2-321d-11e7-8222-902b34983558} - "H:\iLinker.exe" ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-08] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-08] (AVAST Software) ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NCProTray.lnk [2015-10-04] ShortcutTarget: NCProTray.lnk -> C:\Program Files (x86)\SEC\Natural Color Pro\NCProTray.exe (Samsung) CHR HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\SOFTWARE\Policies\Google: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) ProxyEnable: [.DEFAULT] => Proxy ist aktiviert. ProxyServer: [.DEFAULT] => http=127.0.0.1:49211;https=127.0.0.1:49211 Winsock: Catalog9-x64 01 C:\WINDOWS\system32\LavasoftTcpService64.dll [425744 2015-09-27] (Lavasoft Limited) Winsock: Catalog9-x64 02 C:\WINDOWS\system32\LavasoftTcpService64.dll [425744 2015-09-27] (Lavasoft Limited) Winsock: Catalog9-x64 03 C:\WINDOWS\system32\LavasoftTcpService64.dll [425744 2015-09-27] (Lavasoft Limited) Winsock: Catalog9-x64 04 C:\WINDOWS\system32\LavasoftTcpService64.dll [425744 2015-09-27] (Lavasoft Limited) Winsock: Catalog9-x64 15 C:\WINDOWS\system32\LavasoftTcpService64.dll [425744 2015-09-27] (Lavasoft Limited) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{6AE48693-11EB-4ABC-A197-CAFB1D6475E2}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms} HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid=%7B9733F57E-31BC-4B1E-B531-38B8210D2FD3%7D&mid=8e07fa8749ec47d29cd54162727cdcab-13c9ae5db198e4b1f33d32855e431ef8df3602c4&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516avz&pr=fr&d=2016-04-26%2016:04:02&v=4.2.9.726&pid=wtu&sg=&sap=hp SearchScopes: HKLM -> DefaultScope {3CBC6231-3916-4C5F-A678-8E577F608C79} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKLM -> {3CBC6231-3916-4C5F-A678-8E577F608C79} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={9733F57E-31BC-4B1E-B531-38B8210D2FD3}&mid=8e07fa8749ec47d29cd54162727cdcab-13c9ae5db198e4b1f33d32855e431ef8df3602c4&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516tb&pr=fr&d=2016-04-26 16:04:02&v=4.2.9.726&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002 -> {3CBC6231-3916-4C5F-A678-8E577F608C79} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={9733F57E-31BC-4B1E-B531-38B8210D2FD3}&mid=8e07fa8749ec47d29cd54162727cdcab-13c9ae5db198e4b1f33d32855e431ef8df3602c4&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516tb&pr=fr&d=2016-04-26 16:04:02&v=4.2.9.726&pid=wtu&sg=&sap=dsp&q={searchTerms} BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-04-05] (AVAST Software) BHO: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Keine Datei BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft) BHO-x32: Adobe PDF Reader Link Helper -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2012-09-23] (Adobe Systems Incorporated) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-20] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-04-05] (AVAST Software) BHO-x32: Kein Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Keine Datei BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-23] (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-20] (Oracle Corporation) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft) Toolbar: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002 -> Kein Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Keine Datei FireFox: ======== FF DefaultProfile: m6q51650.default-1495173929328 FF ProfilePath: C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\m6q51650.default-1495173929328 [2017-06-04] FF Homepage: Mozilla\Firefox\Profiles\m6q51650.default-1495173929328 -> hxxps://de.wikipedia.org/wiki/Benutzer:Rainer_Lippert FF Extension: (FromDocToPDF) - C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\m6q51650.default-1495173929328\Extensions\_65Members_@download.fromdoctopdf.com [2017-06-04] FF HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\Firefox\Extensions: [lyrix@lyrixeeker.co] - C:\Program Files (x86)\LyriXeeker\128.xpi => nicht gefunden FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-10] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-25] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-10] () FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2010-03-26] (GARMIN Corp.) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-10-06] (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2013-10-20] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-10-20] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-05-01] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-05-01] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-05] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-25] (Adobe Systems) Chrome: ======= CHR DefaultSearchURL: Default -> hxxp://www.ultimateshoppingsearch.com/default?q={searchTerms}&PCSF=SU_DEFAULT CHR DefaultSearchKeyword: Default -> ultimateshoppingsearch.com CHR DefaultSuggestURL: Default -> hxxp://www.ultimateshoppingsearch.com/suggest/CSuggestJson.ashx?prefix={searchTerms}&PCSF=SU_SUGGEST CHR Profile: C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default [2017-06-01] CHR Extension: (Google Präsentationen) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-06-10] CHR Extension: (Google Docs) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-06-10] CHR Extension: (Google Drive) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-06-10] CHR Extension: (YouTube) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-10] CHR Extension: (ultimateshoppingsearch) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\eiibddcohpjhajbnfkpboacmohommppp [2017-05-20] CHR Extension: (Google Tabellen) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-06-10] CHR Extension: (Google Docs Offline) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-10] CHR Extension: (Avast Online Security) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-06-01] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-14] CHR Extension: (Google Mail) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-06-10] CHR Extension: (Chrome Media Router) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-23] CHR HKLM-x32\...\Chrome\Extension: [eiibddcohpjhajbnfkpboacmohommppp] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-01-08] (Adobe Systems) [Datei ist nicht signiert] S3 AdobeActiveFileMonitor13.0; C:\Program Files\Adobe\Elements 13 Organizer\PhotoshopElementsFileAgent.exe [231120 2015-01-30] (Adobe Systems Incorporated) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-25] (Adobe Systems Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2207960 2016-09-26] (Adobe Systems, Incorporated) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7346208 2017-05-08] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263304 2017-05-08] (AVAST Software) S4 chip1click; C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe [91136 2016-10-27] (Chip Digital GmbH) [Datei ist nicht signiert] S4 DBService; C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe [189776 2010-10-28] (DATA BECKER GmbH & Co KG) S4 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-01-08] (Dropbox, Inc.) S4 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-01-08] (Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [48944 2017-05-30] (Dropbox, Inc.) S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2013-01-09] (Macrovision Europe Ltd.) [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1149760 2014-09-17] (NVIDIA Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Datei ist nicht signiert] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-05] (Intel Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2960160 2016-04-22] (IObit) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-01] (NVIDIA Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1796928 2014-09-17] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19440960 2014-09-17] (NVIDIA Corporation) R2 ProtexisLicensing; C:\Windows\SysWOW64\PSIService.exe [177704 2007-06-05] () S3 SXDS10; C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe [234096 2015-10-10] (soft Xpansion) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH) S3 vToolbarUpdater40.3.1; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.1\ToolbarUpdater.exe [1323080 2016-05-16] (AVG Secure Search) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) S3 WPEServ; C:\Program Files (x86)\Common Files\WPE\wpeserv.exe [323584 2006-12-21] (soft Xpansion) [Datei ist nicht signiert] S2 WtuSystemSupport; "C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [311808 2017-05-08] (AVAST Software s.r.o.) R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [190256 2017-05-08] (AVAST Software s.r.o.) R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [334576 2017-05-08] (AVAST Software s.r.o.) R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [49016 2017-05-08] (AVAST Software s.r.o.) S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [38296 2017-05-08] (AVAST Software) R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [32600 2017-05-08] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [128648 2017-05-08] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [101152 2017-05-08] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [75704 2017-05-08] (AVAST Software) R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1007160 2017-05-08] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [569192 2017-05-08] (AVAST Software) R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [158880 2017-05-13] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [339696 2017-05-08] (AVAST Software) S3 dot4; C:\WINDOWS\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R2 DRHARD64; C:\Windows\system32\drivers\DRHARD64.sys [21984 2011-11-03] (Licensed for Gebhard Software) R2 DRHARD64; C:\Windows\SysWOW64\drivers\DRHARD64.sys [21984 2011-11-03] (Licensed for Gebhard Software) R2 DRHMSR64; C:\Windows\system32\drivers\DRHMSR64.sys [14760 2011-12-06] () R2 DRHMSR64; C:\Windows\SysWOW64\drivers\DRHMSR64.sys [14760 2011-12-06] () R3 GeneStor; C:\WINDOWS\system32\DRIVERS\GeneStor.sys [130648 2016-08-22] (GenesysLogic) R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2012-11-12] (Highresolution Enterprises [www.highrez.co.uk]) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20288 2014-09-17] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [38048 2014-09-04] (NVIDIA Corporation) R0 PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [56336 2013-09-03] (Corel Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) U3 DfSdkS; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-06-04 09:52 - 2017-06-04 09:52 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-06-04 09:51 - 2017-06-04 09:53 - 00032837 _____ C:\Users\Rainer\Downloads\FRST.txt 2017-06-04 09:49 - 2017-06-04 09:49 - 02433536 _____ (Farbar) C:\Users\Rainer\Downloads\FRST64.exe 2017-06-03 11:43 - 2017-06-03 11:45 - 464207224 _____ (DxO) C:\Users\Rainer\Downloads\DxO_OpticsPro11_Setup.exe 2017-06-03 08:02 - 2017-06-03 08:03 - 107349327 _____ C:\Users\Rainer\Downloads\Windows8.1-KB3172614-x64.msu 2017-06-03 08:02 - 2017-06-03 08:02 - 10994806 _____ C:\Users\Rainer\Downloads\Windows8.1-KB3173424-x64.msu 2017-06-03 08:02 - 2017-06-03 08:02 - 10868562 _____ C:\Users\Rainer\Downloads\Windows8.1-KB3021910-x64.msu 2017-06-02 23:24 - 2017-06-02 23:24 - 00848064 _____ (IDG Magazine Media GmbH ) C:\Users\Rainer\Downloads\pcwFixWindowsUpdate.exe 2017-06-02 12:45 - 2017-06-02 12:45 - 00001296 _____ C:\Users\Rainer\Desktop\Auslogics Disk Defrag.lnk 2017-06-02 12:45 - 2017-06-02 12:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics 2017-06-02 12:45 - 2017-06-02 12:45 - 00000000 ____D C:\ProgramData\Auslogics 2017-06-02 12:45 - 2017-06-02 12:45 - 00000000 ____D C:\Program Files (x86)\Auslogics 2017-06-01 18:13 - 2017-06-01 18:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2017-05-30 18:56 - 2017-05-30 18:56 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2017-05-30 18:56 - 2017-05-01 22:14 - 00134592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2017-05-30 18:56 - 2017-03-10 23:17 - 00536864 _____ C:\WINDOWS\system32\vulkan-1.dll 2017-05-30 18:56 - 2017-03-10 23:17 - 00525600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2017-05-30 18:56 - 2017-03-10 23:17 - 00254240 _____ C:\WINDOWS\system32\vulkaninfo.exe 2017-05-30 18:56 - 2017-03-10 23:17 - 00233760 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2017-05-30 18:55 - 2017-05-01 22:52 - 00001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2017-05-30 18:55 - 2017-05-01 22:51 - 00548800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2017-05-30 18:55 - 2017-05-01 22:51 - 00081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2017-05-30 16:08 - 2017-05-30 16:08 - 00000000 ____D C:\Users\Rainer\AppData\Local\TeamViewer 2017-05-30 16:07 - 2017-05-31 13:17 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2017-05-30 16:07 - 2017-05-30 16:07 - 00001066 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk 2017-05-30 16:07 - 2017-05-30 16:07 - 00001054 _____ C:\Users\Public\Desktop\TeamViewer 10.lnk 2017-05-30 12:34 - 2017-05-30 12:34 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ser2pl64_01009.Wdf 2017-05-30 12:34 - 2017-05-30 12:34 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2017-05-30 12:34 - 2017-05-30 12:34 - 00000000 ____D C:\Program Files (x86)\Genesys Logic 2017-05-30 12:33 - 2017-05-31 09:29 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Skype 2017-05-30 12:33 - 2017-05-30 12:33 - 00000000 ____D C:\Users\Rainer\AppData\Local\Skype 2017-05-30 12:32 - 2017-05-30 12:33 - 00000000 ____D C:\ProgramData\Skype 2017-05-30 12:32 - 2017-05-30 12:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2017-05-30 12:32 - 2017-05-30 12:32 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk 2017-05-30 12:32 - 2017-05-30 12:32 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-05-30 12:22 - 2017-05-30 12:22 - 00048944 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2017-05-30 11:14 - 2015-12-16 19:11 - 01200128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2017-05-30 11:14 - 2015-12-16 18:51 - 00868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2017-05-30 09:02 - 2014-11-17 22:17 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2017-05-30 09:02 - 2014-11-14 08:54 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2017-05-27 22:22 - 2017-06-04 09:30 - 00000000 ____D C:\Users\Rainer\1, Neuer Ordner 2017-05-25 12:36 - 2017-05-25 12:36 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2017-05-25 12:36 - 2017-05-25 12:36 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2017-05-25 12:36 - 2017-05-25 12:36 - 00000000 ____D C:\inetpub 2017-05-23 13:19 - 2016-03-09 16:02 - 00515584 _____ (CANON INC.) C:\WINDOWS\system32\CNQ4809L.dll 2017-05-23 13:19 - 2016-03-09 16:02 - 00438272 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNQ4809L.dll 2017-05-20 08:41 - 2017-05-20 08:41 - 00000000 ____D C:\Users\Rainer\Documents\DxO Optics Pro v9 crashes 2017-05-19 22:36 - 2017-05-20 20:15 - 00000000 ____D C:\Program Files (x86)\Rizal 2017-05-19 22:36 - 2017-05-20 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rizal 2017-05-19 22:36 - 2017-05-19 22:36 - 00001144 _____ C:\Users\Rainer\Desktop\Super Ram Booster.lnk 2017-05-19 22:36 - 2002-11-18 19:43 - 00172032 _____ ( ) C:\WINDOWS\SysWOW64\ASILOCK.DLL 2017-05-19 22:36 - 2002-07-26 17:18 - 00024576 _____ (Arihant Software) C:\WINDOWS\SysWOW64\CLSMEM.DLL 2017-05-19 22:36 - 2001-08-17 00:00 - 00569616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComCtl32.ocx 2017-05-19 22:36 - 1998-06-24 00:00 - 00164144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComCt232.ocx 2017-05-19 22:30 - 2017-05-19 22:30 - 00001223 _____ C:\Users\Rainer\Desktop\CrystalDiskInfo.lnk 2017-05-19 22:30 - 2017-05-19 22:30 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2017-05-19 19:59 - 2017-05-19 19:59 - 00001054 _____ C:\Users\Public\Desktop\CheckDrive.lnk 2017-05-19 19:59 - 2017-05-19 19:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CheckDrive 2017-05-19 19:59 - 2017-05-19 19:59 - 00000000 ____D C:\Program Files (x86)\CheckDrive 2017-05-19 19:58 - 2017-05-19 19:58 - 00000000 ____D C:\Program Files (x86)\Chip Digital GmbH 2017-05-19 18:06 - 2017-05-19 18:06 - 00013868 _____ C:\Malware.txt 2017-05-19 17:50 - 2017-05-19 17:50 - 35357264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2017-05-19 17:50 - 2017-05-19 17:50 - 28601424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2017-05-19 17:49 - 2017-05-19 17:49 - 14278736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2017-05-19 17:49 - 2017-05-19 17:49 - 00969624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2017-05-19 17:49 - 2017-05-19 17:49 - 00920664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2017-05-19 17:49 - 2017-05-19 17:49 - 00618392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2017-05-19 17:49 - 2017-05-19 17:49 - 00507800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2017-05-19 17:48 - 2017-05-19 17:48 - 03441560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2017-05-19 17:48 - 2017-05-19 17:48 - 03020696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2017-05-19 17:48 - 2017-05-19 17:48 - 01996696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438205.dll 2017-05-19 17:48 - 2017-05-19 17:48 - 01609232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2017-05-19 17:48 - 2017-05-19 17:48 - 01598360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438205.dll 2017-05-19 17:48 - 2017-05-19 17:48 - 01062488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2017-05-19 17:48 - 2017-05-19 17:48 - 00999832 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2017-05-19 17:48 - 2017-05-19 17:48 - 00226712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2017-05-19 17:48 - 2017-05-19 17:48 - 00054680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2017-05-19 17:47 - 2017-05-19 17:47 - 40210520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2017-05-19 17:47 - 2017-05-19 17:47 - 35290200 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2017-05-19 17:45 - 2017-05-19 17:45 - 11161992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2017-05-19 17:45 - 2017-05-19 17:45 - 10648696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2017-05-19 17:45 - 2017-05-19 17:45 - 09102480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2017-05-19 17:45 - 2017-05-19 17:45 - 08891344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2017-05-19 17:45 - 2017-05-19 17:45 - 00912456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2017-05-19 17:45 - 2017-05-19 17:45 - 00419168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2017-05-19 17:45 - 2017-05-19 17:45 - 00163600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2017-05-19 17:45 - 2017-05-19 17:45 - 00141736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2017-05-19 17:44 - 2017-05-19 17:44 - 11129704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2017-05-19 17:44 - 2017-05-19 17:44 - 09335336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2017-05-19 17:44 - 2017-05-19 17:44 - 00703880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2017-05-19 17:44 - 2017-05-19 17:44 - 00591672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2017-05-19 17:44 - 2017-05-19 17:44 - 00520832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2017-05-19 17:44 - 2017-05-19 17:44 - 00438736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2017-05-19 17:44 - 2017-05-19 17:44 - 00180736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2017-05-19 17:44 - 2017-05-19 17:44 - 00158176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2017-05-19 16:40 - 2017-05-19 16:40 - 00000000 ____D C:\Users\Rainer\AppData\Local\ESET 2017-05-19 14:22 - 2017-05-19 14:22 - 00042897 _____ C:\WINDOWS\system32\nvinfo.pb 2017-05-19 14:22 - 2017-05-19 14:22 - 00000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2017-05-19 14:22 - 2017-05-19 14:22 - 00000669 _____ C:\WINDOWS\system32\nv-vk64.json 2017-05-18 23:04 - 2017-05-18 23:04 - 25741312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 20278272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 15250944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 13661184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 05977600 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 04548608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 03241472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 02899456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 02767872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 02290176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 02132992 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2017-05-18 23:04 - 2017-05-18 23:04 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2017-05-18 23:04 - 2017-05-18 23:04 - 01544704 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 01314816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00806912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00725504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2017-05-18 23:04 - 2017-05-18 23:04 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2017-05-18 23:04 - 2017-05-18 23:04 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2017-05-18 23:04 - 2017-05-18 23:04 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2017-05-18 23:04 - 2017-05-18 23:04 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2017-05-18 23:04 - 2017-05-18 23:04 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 04169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2017-05-18 22:33 - 2017-05-18 22:33 - 03714560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 02240512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 01763888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 01697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 01661064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 01549144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-05-18 22:33 - 2017-05-18 22:33 - 01501184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 01489608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 01375960 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 01212760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 01094656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00388440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2017-05-18 22:33 - 2017-05-18 22:33 - 00373080 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00315224 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2017-05-18 22:33 - 2017-05-18 22:33 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmjpegdec.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2017-05-18 22:33 - 2017-05-18 22:33 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2017-05-18 22:33 - 2017-05-18 22:33 - 00033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-05-18 22:33 - 2017-05-18 22:33 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2017-05-18 22:26 - 2017-05-18 22:26 - 03606528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 02778624 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 02463744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 01541240 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 01376768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 00738104 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 00613632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 00567152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2017-05-18 22:26 - 2017-05-18 22:26 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2017-05-18 22:26 - 2017-05-18 22:26 - 00377176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2017-05-18 22:26 - 2017-05-18 22:26 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 00152856 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll 2017-05-18 22:26 - 2017-05-18 22:26 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2017-05-18 22:26 - 2017-05-18 22:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2017-05-18 22:20 - 2017-05-18 22:20 - 03754496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 01445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 01385280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 01124376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00551256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2017-05-18 22:20 - 2017-05-18 22:20 - 00497448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00444248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00399776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll 2017-05-18 22:20 - 2017-05-18 22:20 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys 2017-05-18 22:20 - 2017-05-18 22:20 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-05-18 18:09 - 2017-05-30 19:03 - 00517512 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-05-17 18:30 - 2017-05-17 18:30 - 00000000 ____D C:\Users\Rainer\Documents\DxO OpticsPro 11 crashes 2017-05-08 07:34 - 2017-05-08 07:34 - 00400456 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-05-07 23:15 - 2017-05-07 23:15 - 00000218 _____ C:\Users\Rainer\AppData\Local\recently-used.xbel ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-06-04 09:53 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-06-04 09:51 - 2013-09-22 08:27 - 00000000 ____D C:\FRST 2017-06-04 09:48 - 2016-11-16 08:45 - 00000000 ____D C:\Users\Rainer\AppData\LocalLow\Mozilla 2017-06-04 09:07 - 2012-12-21 15:45 - 00000000 ____D C:\Users\Rainer\AppData\Local\Adobe 2017-06-04 09:03 - 2016-01-08 15:40 - 00001230 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2017-06-04 08:35 - 2014-10-19 23:33 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\ClassicShell 2017-06-04 07:39 - 2014-10-22 19:22 - 00003930 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A6B9F15D-9543-4E36-BE01-F59635C82EC4} 2017-06-04 07:18 - 2016-11-14 20:41 - 00000450 _____ C:\WINDOWS\Tasks\AVG-SSU_1116sp_DELETE.job 2017-06-04 07:18 - 2016-11-14 20:41 - 00000382 _____ C:\WINDOWS\Tasks\AVG-SSU_1116sp.job 2017-06-04 07:18 - 2016-06-09 14:18 - 00000456 _____ C:\WINDOWS\Tasks\AVG-SSU_0616tb_DELETE.job 2017-06-04 07:18 - 2016-06-09 14:14 - 00000594 _____ C:\WINDOWS\Tasks\AVG-SSU_0616tb.job 2017-06-04 07:18 - 2016-01-08 15:40 - 00001226 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2017-06-04 07:18 - 2014-10-19 22:04 - 00000000 ____D C:\ProgramData\NVIDIA 2017-06-04 07:18 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-06-03 23:38 - 2016-05-14 17:29 - 00007607 _____ C:\Users\Rainer\AppData\Local\Resmon.ResmonCfg 2017-06-03 20:12 - 2016-11-26 15:45 - 00000000 ____D C:\Users\Rainer\Documents\Forstbotanisches Merkbuch 2017-06-03 13:22 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\AppLocker 2017-06-03 07:31 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf 2017-06-02 23:16 - 2012-12-21 15:45 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2560001034-2644125590-1053040255-1002 2017-06-02 17:23 - 2016-08-28 23:34 - 00000000 ____D C:\Users\Rainer\AppData\Local\CrashDumps 2017-06-02 15:42 - 2014-10-25 17:40 - 31918080 ___SH C:\Users\Rainer\Downloads\Thumbs.db 2017-06-02 13:26 - 2012-12-30 12:23 - 00000000 ____D C:\WsWin 2017-06-01 18:13 - 2016-01-08 15:40 - 00000000 ____D C:\Program Files (x86)\Dropbox 2017-05-31 12:26 - 2013-09-01 18:38 - 00000000 ____D C:\Users\Rainer\Desktop\Lightroom 2017-05-30 18:57 - 2014-10-20 23:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2017-05-30 18:57 - 2014-10-19 22:03 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-05-30 18:57 - 2014-10-19 22:03 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2017-05-30 18:55 - 2014-10-19 22:03 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2017-05-30 16:07 - 2014-10-21 19:38 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\TeamViewer 2017-05-30 15:13 - 2015-09-05 16:25 - 01393152 ___SH C:\Users\Rainer\Documents\Thumbs.db 2017-05-30 12:20 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2017-05-30 09:25 - 2014-12-13 23:18 - 00001456 _____ C:\Users\Rainer\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2017-05-30 09:11 - 2014-10-19 22:11 - 00000000 ____D C:\Users\Rainer 2017-05-29 07:33 - 2016-07-10 07:38 - 00000000 ____D C:\ProgramData\ProductData 2017-05-27 23:35 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2017-05-25 12:37 - 2014-09-24 08:17 - 02045060 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-05-25 12:37 - 2014-09-24 07:43 - 00876964 _____ C:\WINDOWS\system32\perfh007.dat 2017-05-25 12:37 - 2014-09-24 07:43 - 00201112 _____ C:\WINDOWS\system32\perfc007.dat 2017-05-25 12:37 - 2012-11-12 12:51 - 01998038 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2017-05-25 12:36 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2017-05-25 12:36 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2017-05-25 12:35 - 2015-03-08 11:20 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2017-05-25 12:35 - 2015-03-08 11:20 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2017-05-25 12:35 - 2015-03-08 11:18 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2017-05-25 12:35 - 2015-03-08 11:17 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2017-05-25 12:35 - 2015-03-08 11:17 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2017-05-25 12:35 - 2015-03-08 11:17 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2017-05-25 12:35 - 2015-03-08 11:17 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2017-05-25 12:35 - 2015-03-08 11:16 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2017-05-25 12:35 - 2015-03-08 11:16 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2017-05-25 12:35 - 2015-03-08 11:16 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2017-05-25 12:35 - 2015-03-08 11:16 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2017-05-25 12:35 - 2015-03-08 11:16 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2017-05-25 07:43 - 2016-01-08 15:40 - 00000000 ____D C:\Users\Rainer\AppData\Local\Dropbox 2017-05-25 07:28 - 2016-11-22 08:40 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2017-05-25 07:28 - 2012-12-21 16:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-05-25 00:07 - 2017-03-19 14:02 - 00236615 ____H C:\Users\Rainer\AppData\Local\IconCache.db.backup 2017-05-23 17:49 - 2013-08-14 17:34 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-05-23 17:46 - 2012-12-21 16:01 - 132223576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-05-23 15:34 - 2015-11-02 19:30 - 00043008 ___SH C:\Users\Rainer\Desktop\Thumbs.db 2017-05-20 20:15 - 2016-08-31 15:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RawTherapee 4.2.1148 2017-05-20 20:15 - 2016-08-27 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RTmasterrelease4.2.936 2017-05-20 20:15 - 2016-07-10 07:40 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\ProductData 2017-05-20 20:15 - 2014-08-26 19:41 - 00000000 ____D C:\ProgramData\Ashampoo 2017-05-20 20:15 - 2012-11-12 12:30 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-05-20 20:15 - 2012-11-12 12:30 - 00000000 ____D C:\Program Files (x86)\Realtek 2017-05-20 20:14 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps 2017-05-20 20:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\registration 2017-05-20 20:11 - 2012-12-25 14:15 - 00000000 ____D C:\ProgramData\Sony Corporation 2017-05-20 20:10 - 2012-12-25 14:15 - 00000000 ____D C:\Program Files (x86)\Sony 2017-05-20 08:22 - 2016-08-22 01:12 - 00000000 ____D C:\Users\Rainer\Documents\DxO Optics Pro v9 logs 2017-05-20 07:36 - 2014-08-15 18:00 - 00000000 ____D C:\Users\Rainer\AppData\Local\Abelssoft 2017-05-20 07:28 - 2017-04-20 20:22 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-05-19 20:00 - 2014-08-15 18:00 - 00000000 ____D C:\WINDOWS\System32\Tasks\Abelssoft 2017-05-19 20:00 - 2014-08-15 18:00 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Abelssoft 2017-05-19 19:58 - 2013-07-07 20:41 - 00000000 ____D C:\Users\Rainer\AppData\Local\Downloaded Installations 2017-05-19 19:26 - 2013-04-04 18:25 - 00000000 ____D C:\Program Files (x86)\Corel 2017-05-19 19:20 - 2013-04-04 18:25 - 00000000 ____D C:\ProgramData\Ulead Systems 2017-05-19 19:16 - 2014-01-24 00:19 - 00000000 ____D C:\Program Files (x86)\ISL 2017-05-19 19:08 - 2013-07-07 20:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2017-05-19 19:08 - 2013-07-07 20:42 - 00000000 ____D C:\Program Files (x86)\Samsung 2017-05-19 18:20 - 2017-02-05 11:50 - 00000000 ____D C:\Users\Rainer\AppData\Local\Amazon 2017-05-19 18:09 - 2013-08-22 17:36 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2017-05-19 17:52 - 2014-10-19 22:04 - 00521624 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2017-05-19 17:52 - 2014-10-19 22:04 - 00427416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2017-05-19 17:46 - 2013-07-07 20:42 - 00000000 ____D C:\ProgramData\Samsung 2017-05-19 17:45 - 2015-08-31 21:45 - 00504208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2017-05-19 17:45 - 2014-08-19 22:15 - 20248040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2017-05-19 17:45 - 2014-08-19 22:15 - 17584440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2017-05-19 17:44 - 2015-08-31 21:45 - 16587184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2017-05-19 17:44 - 2015-06-01 21:44 - 03632536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2017-05-19 17:44 - 2014-10-20 23:12 - 13527280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2017-05-19 17:44 - 2014-08-19 22:14 - 04120440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2017-05-19 17:34 - 2014-04-05 18:03 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\ProtectDisc 2017-05-19 17:29 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-05-19 17:29 - 2012-12-21 15:39 - 00000000 ____D C:\Users\Rainer\AppData\Local\Packages 2017-05-19 17:23 - 2013-07-06 17:37 - 00000000 ____D C:\ProgramData\PhotoME 2017-05-19 17:19 - 2014-01-18 19:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panasonic 2017-05-19 17:04 - 2014-10-22 22:19 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2017-05-19 17:01 - 2012-12-31 16:54 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\IrfanView 2017-05-19 16:51 - 2014-05-17 21:54 - 00000000 ____D C:\Program Files\Calibre2 2017-05-19 16:48 - 2013-07-06 17:34 - 00000000 ____D C:\Program Files (x86)\Exifer 2017-05-19 16:48 - 2013-07-06 17:24 - 00000000 ____D C:\WINDOWS\uninstall 2017-05-19 16:35 - 2013-09-02 10:11 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\PhotoScape 2017-05-19 16:23 - 2013-02-22 12:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2017-05-19 16:23 - 2013-02-05 20:11 - 00000000 ____D C:\Program Files (x86)\Canon 2017-05-19 08:05 - 2013-04-25 19:41 - 00000000 ____D C:\Users\Rainer\Desktop\Alte Firefox-Daten 2017-05-18 23:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2017-05-18 20:59 - 2014-12-13 20:37 - 00000000 ____D C:\ProgramData\Package Cache 2017-05-18 20:29 - 2016-10-25 23:32 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Notepad++ 2017-05-18 19:56 - 2012-12-24 22:22 - 00000000 ____D C:\Users\Rainer\AppData\Local\ElevatedDiagnostics 2017-05-18 18:06 - 2016-11-18 00:59 - 00000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software 2017-05-18 18:06 - 2016-08-23 12:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO OpticsPro 11 2017-05-18 18:06 - 2016-08-22 01:11 - 00000000 ____D C:\Program Files\DxO Labs 2017-05-17 00:08 - 2016-08-23 12:40 - 00000000 ____D C:\Users\Rainer\Documents\DxO OpticsPro 11 logs 2017-05-16 07:56 - 2016-06-10 22:17 - 00002214 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-05-14 21:20 - 2016-08-23 12:36 - 00001997 _____ C:\Users\Public\Desktop\DxO OpticsPro 11.lnk 2017-05-14 21:19 - 2013-09-01 18:11 - 00000000 ____D C:\ProgramData\DxO Labs 2017-05-13 06:40 - 2016-11-18 00:59 - 00158880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys 2017-05-11 23:56 - 2013-09-01 19:20 - 00000000 ____D C:\Users\Rainer\Documents\Capture One Catalog 2017-05-11 23:34 - 2013-09-01 19:19 - 00000000 ____D C:\Users\Rainer\AppData\Local\CaptureOne 2017-05-10 18:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2017-05-10 18:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Macromed 2017-05-10 18:02 - 2012-12-21 16:25 - 00004342 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2017-05-09 07:36 - 2016-11-18 01:00 - 00003914 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1479423647 2017-05-09 07:32 - 2017-03-18 12:35 - 00003914 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-05-08 07:35 - 2016-11-18 01:00 - 00001066 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2017-05-08 07:34 - 2016-11-18 00:59 - 00569192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2017-05-08 07:34 - 2016-11-18 00:59 - 00339696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2017-05-08 07:34 - 2016-11-18 00:59 - 00128648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-05-08 07:34 - 2016-11-18 00:59 - 00101152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-05-08 07:34 - 2016-11-18 00:59 - 00075704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-05-08 07:34 - 2016-11-18 00:59 - 00038296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-05-08 07:33 - 2017-03-18 12:35 - 00334576 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-05-08 07:33 - 2017-03-18 12:35 - 00311808 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-05-08 07:33 - 2017-03-18 12:35 - 00190256 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-05-08 07:33 - 2017-03-18 12:35 - 00049016 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-05-08 07:33 - 2016-11-18 01:00 - 00032600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys 2017-05-08 07:33 - 2016-11-18 00:59 - 01007160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2017-05-05 07:39 - 2015-07-23 16:08 - 00004476 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-12-24 14:36 - 1992-07-09 14:00 - 1298592 _____ () C:\Program Files\WINWORD.EXE 2012-12-30 12:22 - 2006-10-20 00:23 - 0017233 _____ () C:\Program Files (x86)\current_.txt 2013-07-06 17:42 - 2013-07-06 17:42 - 0000030 _____ () C:\Program Files (x86)\Exiferupdate.ini 2012-12-30 12:22 - 2011-06-18 16:40 - 0220299 _____ () C:\Program Files (x86)\info.txt 2012-12-30 12:22 - 2002-09-20 17:40 - 0086528 _____ () C:\Program Files (x86)\lame_enc.dll 2012-12-30 12:22 - 2003-01-11 20:12 - 0009148 _____ () C:\Program Files (x86)\libSMBM.js 2012-12-30 12:22 - 2011-01-01 18:32 - 0001250 _____ () C:\Program Files (x86)\License.txt 2012-12-30 12:22 - 2010-01-05 16:05 - 0009567 _____ () C:\Program Files (x86)\sunmoon_.txt 2012-12-30 12:22 - 2005-02-26 20:46 - 0002224 _____ () C:\Program Files (x86)\template_d_.txt 2012-12-30 12:22 - 2009-01-24 11:51 - 0002968 _____ () C:\Program Files (x86)\template_m_.txt 2012-12-30 12:22 - 2009-01-24 11:49 - 0002933 _____ () C:\Program Files (x86)\template_noaa_m_.txt 2012-12-30 12:22 - 2009-01-24 11:50 - 0004455 _____ () C:\Program Files (x86)\template_noaa_y_.txt 2012-12-30 12:22 - 2005-02-26 20:46 - 0010349 _____ () C:\Program Files (x86)\template_yest_.txt 2012-12-30 12:22 - 2009-01-24 12:46 - 0004668 _____ () C:\Program Files (x86)\template_y_.txt 2012-12-30 12:22 - 2004-08-15 23:00 - 0000728 _____ () C:\Program Files (x86)\ticker_.txt 2012-12-30 12:22 - 2012-12-30 12:22 - 0021635 _____ () C:\Program Files (x86)\unins000.dat 2012-12-30 12:22 - 2012-12-30 12:21 - 1179547 _____ () C:\Program Files (x86)\unins000.exe 2012-12-30 12:22 - 2006-03-07 12:17 - 0045056 _____ () C:\Program Files (x86)\USB.dll 2012-12-30 12:22 - 2001-05-03 01:48 - 0001592 _____ () C:\Program Files (x86)\wap_.txt 2012-12-30 12:22 - 2001-04-30 10:43 - 0083968 _____ () C:\Program Files (x86)\Wsarchiv0.mdb 2012-12-30 12:22 - 2011-06-18 22:52 - 2028544 _____ (none) C:\Program Files (x86)\Wswin32.exe 2012-12-30 12:22 - 2010-12-26 00:24 - 8564172 _____ () C:\Program Files (x86)\Wswin32.hlp 2012-12-30 12:22 - 2008-09-23 00:10 - 0167936 _____ () C:\Program Files (x86)\WsWinAprs.exe 2012-12-30 12:22 - 2009-03-31 22:55 - 0000578 _____ () C:\Program Files (x86)\wswin_x-csv_elv_ws300.cfg 2012-12-30 12:22 - 2009-03-17 18:03 - 0000607 _____ () C:\Program Files (x86)\wswin_x-csv_elv_ws550.cfg 2012-12-30 12:22 - 2011-06-09 01:58 - 0001889 _____ () C:\Program Files (x86)\wswin_x-csv_envoy8x.cfg 2012-12-30 12:22 - 2011-06-09 23:16 - 0003529 _____ () C:\Program Files (x86)\wswin_x-csv_Envoy8x.csv 2012-12-30 12:22 - 2009-12-03 01:49 - 0000545 _____ () C:\Program Files (x86)\wswin_x-csv_eusotec_vantage.cfg 2012-12-30 12:22 - 2009-03-12 17:40 - 0000295 _____ () C:\Program Files (x86)\wswin_x-csv_hygrosens.cfg 2012-12-30 12:22 - 2010-10-06 01:24 - 0000610 _____ () C:\Program Files (x86)\wswin_x-csv_logger_te923.cfg 2012-12-30 12:22 - 2009-03-12 17:42 - 0000503 _____ () C:\Program Files (x86)\wswin_x-csv_reinhardt_mws.cfg 2012-12-30 12:22 - 2009-03-17 18:36 - 0000694 _____ () C:\Program Files (x86)\wswin_x-csv_tfa-nexus.cfg 2012-12-30 12:22 - 2010-10-06 23:32 - 0000475 _____ () C:\Program Files (x86)\wswin_x-csv_wdcsv.cfg 2012-12-30 12:22 - 2009-03-17 18:37 - 0000571 _____ () C:\Program Files (x86)\wswin_x-csv_wh1080.cfg 2012-12-30 12:22 - 2005-02-26 20:46 - 0043289 _____ () C:\Program Files (x86)\wswin_xml_.txt 2012-12-30 12:22 - 2002-09-28 22:04 - 0017467 _____ () C:\Program Files (x86)\ws_alarm_.wav 2012-12-30 12:22 - 2005-02-26 20:46 - 0000582 _____ () C:\Program Files (x86)\ws_speech1h_.txt 2012-12-30 12:22 - 2005-02-26 20:46 - 0001980 _____ () C:\Program Files (x86)\ws_speech_.txt 2012-12-30 12:22 - 2011-06-18 12:48 - 0161349 _____ () C:\Program Files (x86)\ws_variables.txt 2012-12-30 12:22 - 2009-02-05 01:22 - 0003382 _____ () C:\Program Files (x86)\www_template_example.txt 2012-12-30 12:22 - 2011-04-16 22:29 - 0000709 _____ () C:\Program Files (x86)\www_template_pws.txt 2013-05-26 16:59 - 2014-07-02 14:07 - 1456640 _____ () C:\Program Files (x86)\Common Files\Falk Navi-Manager.msi 2014-06-08 19:16 - 2014-07-06 09:30 - 0016897 _____ () C:\Users\Rainer\AppData\Roaming\.ptbt0 2016-08-19 22:46 - 2016-08-19 22:46 - 0000132 _____ () C:\Users\Rainer\AppData\Roaming\Adobe BMP-Format CC - Voreinstellungen 2016-11-29 23:05 - 2016-11-29 23:05 - 0000132 _____ () C:\Users\Rainer\AppData\Roaming\Adobe PNG-Format CC - Voreinstellungen 2013-03-24 19:26 - 2016-09-02 11:39 - 0001158 _____ () C:\Users\Rainer\AppData\Roaming\ShiftN.ini 2014-12-13 23:18 - 2017-05-30 09:25 - 0001456 _____ () C:\Users\Rainer\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2013-01-26 20:39 - 2013-07-02 19:58 - 0003584 _____ () C:\Users\Rainer\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2017-05-07 23:15 - 2017-05-07 23:15 - 0000218 _____ () C:\Users\Rainer\AppData\Local\recently-used.xbel 2016-05-14 17:29 - 2017-06-03 23:38 - 0007607 _____ () C:\Users\Rainer\AppData\Local\Resmon.ResmonCfg ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-06-02 23:16 ==================== Ende von FRST.txt ============================ |
04.06.2017, 10:03 | #2 |
| Win 8.1, System reagiert auf alles sehr langsam Hier der andere Teil.FRST Additions Logfile:
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-06-2017 durchgeführt von Rainer (04-06-2017 09:58:26) Gestartet von C:\Users\Rainer\Downloads Windows 8.1 (Update) (X64) (2014-10-19 20:41:05) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2560001034-2644125590-1053040255-500 - Administrator - Disabled) Gast (S-1-5-21-2560001034-2644125590-1053040255-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2560001034-2644125590-1053040255-1004 - Limited - Enabled) Rainer (S-1-5-21-2560001034-2644125590-1053040255-1002 - Administrator - Enabled) => C:\Users\Rainer ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 16.04 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1604-000001000000}) (Version: 16.04.00.0 - Igor Pavlov) Adobe Acrobat 8 Professional - English, Français, Deutsch (HKLM-x32\...\Adobe Acrobat 8 Professional - English, Français, Deutsch) (Version: 8.0.0 - Adobe Systems) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 23.0.0.257 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.2.1.650 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.1.335 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.9 - Adobe Systems Incorporated) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated) Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.7 - Adobe Systems Incorporated) Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.) Adobe Photoshop Elements 13 (HKLM-x32\...\{609818B9-23EB-4196-B466-EFE05E92A32F}) (Version: 13.1 - Adobe Systems Incorporated) Adobe Photoshop Elements 15 (HKLM-x32\...\{E2D8F773-2E59-45CA-B0EA-CFFA5354A9E7}) (Version: 15.0 - Adobe Systems Incorporated) Adobe Photoshop Elements 9 (HKLM-x32\...\Adobe Photoshop Elements 9) (Version: 9.0.3.0 - Adobe Systems Incorporated) Adobe Photoshop Lightroom 5.7.1 64-bit (HKLM\...\{BC86B82C-8C0E-4408-9AC1-6B0F2D636963}) (Version: 5.7.1 - Adobe Systems Incorporated) Adobe Premiere Elements 9 (HKLM-x32\...\PremElem90) (Version: 9.0 - Adobe Systems Incorporated) Ansel (Version: 382.05 - NVIDIA Corporation) Hidden Auslogics Disk Defrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 7.1.3.0 - Auslogics Labs Pty Ltd) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.4.2294 - AVAST Software) AVG PC TuneUp 2014 (de-DE) (x32 Version: 14.0.1001.536 - AVG) Hidden Canon MP Navigator EX 4.0 (HKLM-x32\...\MP Navigator EX 4.0) (Version: - ) Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - ) CanoScan LiDE 210 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ4809) (Version: - ) CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform) CheckDrive (HKLM-x32\...\{B83513EC-2E4D-4621-816D-4CCF397BE702}_is1) (Version: 1.13 - Abelssoft) chip 1-click download service (HKLM-x32\...\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}) (Version: 3.6.9.0 - Chip Digital GmbH) Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) CrystalDiskInfo 7.0.5 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.0.5 - Crystal Dew World) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation) Dr. Hardware 2013 13.0d (HKLM-x32\...\Dr. Hardware 2013_is1) (Version: - Peter A. Gebhard) Dropbox (HKLM-x32\...\Dropbox) (Version: 27.4.22 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.59.1 - Dropbox, Inc.) Hidden DxO Optics Pro 9 (HKLM\...\{B6815DAB-F4BB-4859-84B3-1E86E5F85DAC}) (Version: 9.5.2 - DxO Labs) DxO OpticsPro 11 (HKLM\...\{1BBFE6B2-5B10-4853-A3D7-737A28C98D76}) (Version: 11.0.0 - DxO) DxO OpticsPro 11 Plug-in für Adobe Lightroom (HKLM-x32\...\{13E8E1D4-CA2E-4A5C-BBD4-EB4F7CA66014}) (Version: 1.0.36 - DxO Labs) Elements 9 Organizer (x32 Version: 9.0 - Ihr Firmenname) Hidden Elements STI Installer (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Falk Navi-Manager (HKLM-x32\...\{3222B0CE-59C5-4CA0-B545-2B88F200756B}) (Version: 2.26.1 - United Navigation GmbH) Falk Navi-Manager (x32 Version: 2.16.2 - United Navigation GmbH) Hidden Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galerie de photos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Garmin BaseCamp (HKLM-x32\...\{23A4DBD1-D847-4957-995D-8B1CC527E2E2}) (Version: 4.6.2.0 - Garmin Ltd or its subsidiaries) Garmin TOPO Deutschland 2010 (HKLM-x32\...\{C7C82ED1-E5AD-48CF-8B92-38DD9B49610C}) (Version: 4.0.0.0 - Garmin Ltd or its subsidiaries) Garmin USB Drivers (HKLM\...\{DC7720F2-98BE-41C1-B0A8-E391362E86B8}) (Version: 2.3.1.1 - Garmin Ltd or its subsidiaries) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.) Google Earth (HKLM-x32\...\{A0C18B96-AB79-46BD-8321-6FA83E6D25B9}) (Version: 7.1.7.2606 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google) Hugin 2012.0.0 (HKLM-x32\...\Hugin) (Version: 2012.0.0 hg_a6e4184ad538 - The Hugin Development Team) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.0.1030 - Intel Corporation) Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50906.0 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\SkyDriveSetup.exe) (Version: 17.0.2015.0811 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{200a21c6-fbab-4702-abd7-6cdf08b32aec}) (Version: 14.10.25008.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{539a4c92-d2e1-49ac-ada3-a77d197a3f0b}) (Version: 14.10.25008.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek) Mozilla Firefox 53.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 53.0.3 (x86 de)) (Version: 53.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 53.0.3.6347 - Mozilla) Mozilla Thunderbird 52.1.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 52.1.1 (x86 de)) (Version: 52.1.1 - Mozilla) MyFreeCodec (HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\MyFreeCodec) (Version: - ) Natural Color Pro (HKLM-x32\...\{FC2C7405-BC58-4E11-8F51-29671BEAC06B}) (Version: 1.0.0.6 - SEC) Natural Color Pro (x32 Version: 1.0.0.6 - SEC) Hidden NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.05 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.2 - NVIDIA Corporation) NVIDIA Grafiktreiber 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.26 - NVIDIA Corporation) NVIDIA Miracast Virtueller Ton 355.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 355.82 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Opera Stable 40.0.2308.90 (HKLM-x32\...\Opera 40.0.2308.90) (Version: 40.0.2308.90 - Opera Software) PDF Genie 3.0 (HKLM-x32\...\{C3896A21-47E5-4B40-9E90-529C1D6EDDF5}) (Version: 2.0 - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.) SafeZone Stable 3.55.2393.596 (x32 Version: 3.55.2393.596 - Avast Software) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.) SHIELD Streaming (Version: 3.1.200 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 16.13.42 - NVIDIA Corporation) Hidden ShiftN 3.6.1 (HKLM-x32\...\ShiftN_is1) (Version: 3.6.1 - Marcus Hebel) SIGMA_PhotoPro 6.4.0 (HKLM-x32\...\SIGMA_PhotoPro) (Version: 6.4.0 - SIGMA corporation) Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.) SmartSound Quicktracks for Premiere Elements 9.0 (HKLM-x32\...\InstallShield_{6748E773-5DA0-4D19-8AA5-273B4133A09B}) (Version: 3.12.3090 - SmartSound Software Inc) SmartSound Quicktracks for Premiere Elements 9.0 (x32 Version: 3.12.3090 - SmartSound Software Inc) Hidden StormWatch (HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\StormWatch) (Version: 1.0.1.27 - StormWatch) <==== ACHTUNG Super RAM Booster (HKLM-x32\...\Super RAM Booster) (Version: - ) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.47484 - TeamViewer) Topo Deutschland v2 (HKLM-x32\...\{641FE800-650B-4E99-A304-9D50E7235BAF}) (Version: 2.00 - Garmin Deutschland GmbH) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) WeatherLink 5.9.3 (HKLM-x32\...\{03945D18-B968-4861-A0D6-09D4A51CEF4E}) (Version: 5.9.3 - Davis Instruments Corp.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows-Treiberpaket - Leaf Imaging Ltd. Image (12/03/2014 1.2.0.0) (HKLM\...\B758007C752D28F7C3542875CEEBDADCAE5941AE) (Version: 12/03/2014 1.2.0.0 - Leaf Imaging Ltd.) Windows-Treiberpaket - Phase One / Mamiya V-Grip USB Driver (12/03/2014 1.2.0.0) (HKLM\...\3F504CC0B024052107934E093CC26DA720256A7A) (Version: 12/03/2014 1.2.0.0 - Phase One / Mamiya) Windows-Treiberpaket - Phase One A/S (WinUSB) USBDevice (12/03/2014 1.13.0.0) (HKLM\...\7C6570ABBEB2F08EFBC23ED7925AE72DA6167BD8) (Version: 12/03/2014 1.13.0.0 - Phase One A/S) WinRAR 5.40 (32-Bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) WsWin V2.96.10 - 2012-03-13 (HKLM-x32\...\PC-Wetterstation_is1) (Version: 2.96.10 - Werner Krenn) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Rainer\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Rainer\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Rainer\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) CustomCLSID: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Rainer\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Rainer\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07ABFB29-1642-47FD-8C92-51A54D617D35} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe Task: {1247C7F4-7DA0-4FBB-8B1A-4601FA755A69} - System32\Tasks\{CCC0C6DB-9EE5-451D-A09C-6FC7F43E6341} => pcalua.exe -a C:\Users\Rainer\Downloads\O2kSp3.exe -d C:\Users\Rainer\Downloads Task: {1F1F3F5C-A6F8-4AA8-B2A9-39ACF078DD76} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd) Task: {217A7B70-9DFA-4704-9A4B-0AF8B89C3B8D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {22D2F093-D2A3-447D-B0FF-5717020C219A} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-05-08] (AVAST Software) Task: {417949C1-9B63-4C24-97AD-5E59518C8B20} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-01-08] (Dropbox, Inc.) Task: {42917953-9A5F-4BE9-A6C6-5FE3704E2CC5} - System32\Tasks\AVG-SSU_0616tb_DELETE => C:\ProgramData\Avg_Update_0616tb\AVG-Secure-Search-Update_0616tb.exe Task: {4753603D-0423-485D-A56B-1118675B6B82} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {539BA94B-64ED-42EC-8A21-3DF8DEE80BEB} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-01-08] (Dropbox, Inc.) Task: {5FC2E12D-E005-46BC-B55A-7CD75C7E93A1} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {61999BF3-068F-405E-9996-EA7250C0809A} - System32\Tasks\AdobeAAMUpdater-1.0-Lippert-Rainer => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated) Task: {620022EC-053C-4F47-9931-66A3966A25CC} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software) Task: {6666657C-BF4A-4B25-BAB1-E3B7E5D2FA01} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {6BBDA95C-629B-4912-BD58-B23283B32F61} - System32\Tasks\Abelssoft\StartBackgroundguardWithWindows => C:\Program Files (x86)\CheckDrive\CheckDrive.exe [2016-12-19] (Ascora GmbH) Task: {6F18B649-324A-41FA-8553-65D313CFE39E} - System32\Tasks\AVG-SSU_1116sp => C:\ProgramData\Avg_Update_1116sp\AVG-Secure-Search-Update_1116sp.exe Task: {720999E9-0172-4434-9081-4567143DF629} - System32\Tasks\AVG-SSU_1116sp_DELETE => C:\ProgramData\Avg_Update_1116sp\AVG-Secure-Search-Update_1116sp.exe Task: {8F759D7F-1BAB-4013-8436-DC37F85DA54A} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe Task: {95313BD8-E08F-4BEA-8C95-C2E5F491ED2E} - System32\Tasks\SafeZone scheduled Autoupdate 1479423647 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-03-22] (Avast Software) Task: {A8717AE2-18E0-4C4D-89EC-BBAB8D5A952A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-10] (Adobe Systems Incorporated) Task: {BFD55A6C-6C22-4A08-BCF5-E619858DFA60} - System32\Tasks\{022F335A-5A74-4C34-87D4-46088ABC8BAF} => pcalua.exe -a C:\Users\Rainer\Downloads\APRO23_Win_ESD1_WWEFG.exe -d C:\Users\Rainer\Downloads Task: {C4E50CF8-FE69-4CCA-81A2-5FDDAC6AC7C0} - System32\Tasks\{3BFEF547-325A-4F9E-BA4E-35012A31A53B} => pcalua.exe -a F:\Setup.exe -d F:\ Task: {CDB49C74-DD3E-4FCC-9FDF-CE4474BE029A} - System32\Tasks\AVG-SSU_0616tb => C:\ProgramData\Avg_Update_0616tb\AVG-Secure-Search-Update_0616tb.exe Task: {D463A737-DD43-4D8E-83E0-9EE0DF788E6A} - System32\Tasks\Opera scheduled Autoupdate 1454005258 => C:\Program Files (x86)\Opera\launcher.exe [2016-10-17] (Opera Software) Task: {DE09E9FB-82FC-4F3C-8A5F-16C103BE11A6} - System32\Tasks\{06935DEF-C025-4ADA-A26E-BE449BD2B018} => pcalua.exe -a F:\SETUPSE.EXE -d F:\ Task: {E80AE28D-30CD-4884-BB2C-805CA4442E04} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-05-23] (Microsoft Corporation) Task: {EE0C81ED-EA09-43CF-A984-EEEAF7AAE899} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files (x86)\CHIP Updater\CHIPUpdater.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\AVG-SSU_0616tb.job => C:\ProgramData\Avg_Update_0616tb\AVG-Secure-Search-Update_0616tb.exe Task: C:\WINDOWS\Tasks\AVG-SSU_0616tb_DELETE.job => C:\ProgramData\Avg_Update_0616tb\AVG-Secure-Search-Update_0616tb.exe Task: C:\WINDOWS\Tasks\AVG-SSU_1116sp.job => C:\ProgramData\Avg_Update_1116sp\AVG-Secure-Search-Update_1116sp.exe Task: C:\WINDOWS\Tasks\AVG-SSU_1116sp_DELETE.job => C:\ProgramData\Avg_Update_1116sp\AVG-Secure-Search-Update_1116sp.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin\Enblend Droplet 360.lnk -> C:\Program Files (x86)\Hugin\bin\enblend_droplet_360.bat () Shortcut: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin\Enblend Droplet.lnk -> C:\Program Files (x86)\Hugin\bin\enblend_droplet.bat () Shortcut: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin\Enfuse Align Droplet.lnk -> C:\Program Files (x86)\Hugin\bin\enfuse_align_droplet.bat () Shortcut: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin\Enfuse Auto Droplet.lnk -> C:\Program Files (x86)\Hugin\bin\enfuse_auto_droplet.bat () Shortcut: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin\Enfuse Droplet 360.lnk -> C:\Program Files (x86)\Hugin\bin\enfuse_droplet_360.bat () Shortcut: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin\Enfuse Droplet.lnk -> C:\Program Files (x86)\Hugin\bin\enfuse_droplet.bat () ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-10-25 09:57 - 2016-10-25 09:57 - 00491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2007-06-05 13:20 - 2007-06-05 13:20 - 00177704 _____ () C:\Windows\SysWOW64\PSIService.exe 2016-07-10 07:40 - 2015-12-28 13:49 - 00629536 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2017-05-08 07:33 - 2017-05-08 07:33 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-05-08 07:34 - 2017-05-08 07:34 - 00997896 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-05-08 07:34 - 2017-05-08 07:34 - 67717632 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-05-08 07:33 - 2017-05-08 07:33 - 00176992 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-05-08 07:33 - 2017-05-08 07:33 - 00223224 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-05-08 07:33 - 2017-05-08 07:33 - 00291824 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-05-08 07:33 - 2017-05-08 07:33 - 00684656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2012-11-16 14:11 - 2012-07-18 12:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2016-05-14 20:20 - 2016-05-14 20:20 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\a53b1a11d57f7aeaf935832f06647395\PSIClient.ni.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\TEMP:373E1720 [290] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2012-07-26 07:26 - 2016-04-06 15:55 - 00000039 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\Services: BthHFSrv => 3 MSCONFIG\Services: bthserv => 3 MSCONFIG\Services: chip1click => 2 MSCONFIG\Services: DBService => 3 MSCONFIG\Services: dbupdate => 2 MSCONFIG\Services: dbupdatem => 3 HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk" HKLM\...\StartupApproved\StartupFolder: => "NCProTray.lnk" HKLM\...\StartupApproved\StartupFolder: => "PHOTOfunSTUDIO 9.2 AE.lnk" HKLM\...\StartupApproved\Run: => "RtHDVCpl" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "Corel Photo Downloader" HKLM\...\StartupApproved\Run: => "BackupPCFiles.Agent" HKLM\...\StartupApproved\Run: => "Windows Mobile-based device management" HKLM\...\StartupApproved\Run32: => "IAStorIcon" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKLM\...\StartupApproved\Run32: => "PMBVolumeWatcher" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" HKLM\...\StartupApproved\Run32: => "Iminent" HKLM\...\StartupApproved\Run32: => "IminentMessenger" HKLM\...\StartupApproved\Run32: => "KiesTrayAgent" HKLM\...\StartupApproved\Run32: => "Dropbox" HKLM\...\StartupApproved\Run32: => "GrooveMonitor" HKLM\...\StartupApproved\Run32: => "vProt" HKLM\...\StartupApproved\Run32: => "Windows Mobile-based device management" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\StartupApproved\Run: => "" HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\StartupApproved\Run: => "WinPatrol" HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\StartupApproved\Run: => "Advanced SystemCare 9" HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate" HKU\S-1-5-21-2560001034-2644125590-1053040255-1002\...\StartupApproved\Run: => "Skype" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{ACE51506-5A52-4ABF-B439-BCFDA44EDB7F}] => (Block) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [{6321A26E-DF49-4D6B-8136-2B32EBB7C96F}] => (Block) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{6F92D951-A690-48AE-B88D-BF2D3095487E}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [TCP Query User{4CCC4075-A3A5-400A-8646-03DDFBAF656C}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [{D202B47B-D8A4-46FE-8004-D5CD0B3D8D77}] => (Allow) C:\Users\Rainer\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{1DA9FF48-4855-47C8-BB40-8E53ECCFECB2}] => (Allow) C:\WeatherLink\WeatherLink 5.9.3.exe FirewallRules: [{D12615A5-3A05-45BE-A634-0FF4594471EB}] => (Allow) C:\WeatherLink\WeatherLink 5.9.3.exe FirewallRules: [{9AE97D6B-080B-4773-9336-377F5EB5E7E7}] => (Allow) C:\WeatherLink\WeatherLink 5.9.3.exe FirewallRules: [{AD12670C-9ABB-4F29-904C-4FE7FB0444FD}] => (Allow) C:\WeatherLink\WeatherLink 5.9.3.exe FirewallRules: [{01FED0DE-2240-4CDD-AB58-2781BD6F2FBB}] => (Allow) LPort=1900 FirewallRules: [{7337DDEA-6EF6-4907-B8B1-53808A50B221}] => (Allow) LPort=2869 FirewallRules: [{1E57513B-F9C8-4362-A98C-17A8EB9C487F}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{9DDBDA01-E537-4919-B4CC-2BD2C21E72D8}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{B58A2919-A4F0-4C05-92A3-E7653C94B9F7}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{DAE1C9CF-C5EC-4938-8064-F627BEE610A2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{0B9978FC-6E74-476D-9316-E856A20F229F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{44BBD764-F5C7-413E-B0AC-F4BA3D2FB010}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{F082FA0A-FD97-4E49-AFF9-C4E9A487E461}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{81F1D18D-6087-4C0A-8731-F73AAD84EB94}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1C925EA7-1398-4D45-B051-D9A33E56C50F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{D93C4C9B-8FC5-4AAD-88F7-8FA39582289B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{69A50542-5047-4329-A3AA-0199D254C6BF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{329B2EFE-1BB5-4785-8283-8C53A0F0C25D}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596\SZBrowser.exe FirewallRules: [{BCB76734-6DA0-4B5A-B514-EEFE5B6B37C5}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596_0\SZBrowser.exe FirewallRules: [{B92B75CD-54B3-4176-B09C-9CB9CFA878EB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{F7C29FE2-3093-438E-B934-8CEE36BE46CE}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{C48A541E-26F3-45C9-8DEC-D1147D149CF8}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{E9B2E4DD-28F3-4FD2-BB79-81984C3B7EA5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{6DBB763D-788E-4265-B33B-A17861893DCD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{917E6949-236E-459E-806C-565A336EB8A9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{97CCF698-20A7-4E20-B1F8-AC5A395993E4}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{EF007C9E-7198-4064-BF24-0B62CC3F7233}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe ==================== Wiederherstellungspunkte ========================= ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (06/04/2017 08:00:25 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: CompatTelRunner.exe, Version: 10.0.14979.1011, Zeitstempel: 0x841859ac Name des fehlerhaften Moduls: devinv.dll, Version: 10.0.14979.1011, Zeitstempel: 0x3d209c82 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000166bd ID des fehlerhaften Prozesses: 0x17e4 Startzeit der fehlerhaften Anwendung: 0x01d2dcf29d656d78 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\CompatTelRunner.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\devinv.dll Berichtskennung: 19edb0f8-48eb-11e7-825f-902b34983558 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (06/03/2017 07:45:42 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "c:\program files (x86)\adobe\adobe creative cloud\utils\Creative Cloud Uninstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Error: (06/02/2017 05:23:10 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: PhotoshopElementsEditor.exe, Version: 15.0.0.0, Zeitstempel: 0x57cd45a0 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.18202, Zeitstempel: 0x569e7eb1 Ausnahmecode: 0xe06d7363 Fehleroffset: 0x0000000000008a5c ID des fehlerhaften Prozesses: 0x1264 Startzeit der fehlerhaften Anwendung: 0x01d2dbb22e928c3f Pfad der fehlerhaften Anwendung: C:\Program Files\Adobe\Photoshop Elements 15\PhotoshopElementsEditor.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\KERNELBASE.dll Berichtskennung: 62b0b13d-47a7-11e7-825b-902b34983558 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (06/02/2017 02:04:55 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "c:\program files (x86)\adobe\adobe creative cloud\utils\Creative Cloud Uninstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Error: (06/02/2017 12:51:52 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "c:\program files (x86)\adobe\adobe creative cloud\utils\Creative Cloud Uninstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Error: (06/02/2017 07:49:01 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "c:\program files (x86)\adobe\adobe creative cloud\utils\Creative Cloud Uninstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Error: (06/01/2017 06:35:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: CompatTelRunner.exe, Version: 10.0.14979.1011, Zeitstempel: 0x841859ac Name des fehlerhaften Moduls: devinv.dll, Version: 10.0.14979.1011, Zeitstempel: 0x3d209c82 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000166bd ID des fehlerhaften Prozesses: 0x9e8 Startzeit der fehlerhaften Anwendung: 0x01d2da98ef902d53 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\CompatTelRunner.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\devinv.dll Berichtskennung: 4e52e9fb-46e8-11e7-8258-902b34983558 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (06/01/2017 05:41:00 PM) (Source: chip 1-click download service) (EventID: 0) (User: ) Description: |ERORRS=;(380) error at getOrdersForVersion:Die Verbindung mit dem Remoteserver kann nicht hergestellt werden. ;(180) error at GetHttpWebRequest: 2Die Verbindung mit dem Remoteserver kann nicht hergestellt werden. ;(480) Could not load new Downlaoder Error: (06/01/2017 07:42:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: msfeedssync.exe, Version: 11.0.9600.17416, Zeitstempel: 0x54531930 Name des fehlerhaften Moduls: LavasoftTcpService64.dll, Version: 2.3.4.7, Zeitstempel: 0x555dc671 Ausnahmecode: 0xc0000409 Fehleroffset: 0x000000000003097c ID des fehlerhaften Prozesses: 0x43c Startzeit der fehlerhaften Anwendung: 0x01d2da98e7c48358 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\msfeedssync.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\LavasoftTcpService64.dll Berichtskennung: 0cd7f9ad-468d-11e7-8258-902b34983558 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (05/31/2017 06:31:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: dism.exe, Version: 6.3.9600.17031, Zeitstempel: 0x53086fa3 Name des fehlerhaften Moduls: DismCore.dll, Version: 6.3.9600.17031, Zeitstempel: 0x53086ee7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000019950 ID des fehlerhaften Prozesses: 0x11c0 Startzeit der fehlerhaften Anwendung: 0x01d2da2a82b4cf82 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\dism.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\Dism\DismCore.dll Berichtskennung: 93b7ecd7-461e-11e7-8255-902b34983558 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Systemfehler: ============= Error: (06/04/2017 07:30:23 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Windows Mobile 2003-basierte Gerätekonnektivität" ist vom Dienst "Windows Mobile-basierte Geräteverbindungen" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der Dienst konnte nicht gestartet werden. Error: (06/04/2017 07:30:23 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Windows Mobile-basierte Geräteverbindungen" wurde nicht richtig gestartet. Error: (06/04/2017 07:29:03 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Windows Mobile-basierte Geräteverbindungen" wurde nicht richtig gestartet. Error: (06/04/2017 07:26:58 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Intel(R) Rapid Storage-Technologie" wurde nicht richtig gestartet. Error: (06/04/2017 07:24:48 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Dateiversionsverlauf-Dienst" wurde nicht richtig gestartet. Error: (06/04/2017 07:19:43 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Net.Pipe-Listeneradapter" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (06/04/2017 07:19:43 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Net.Pipe-Listeneradapter erreicht. Error: (06/04/2017 07:18:09 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "WtuSystemSupport" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (06/03/2017 11:42:14 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Der Dienst Windows Update konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden. Error: (06/03/2017 11:41:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8024200d fehlgeschlagen: Mai 2017: Sicherheits- und Qualitätsrollup für .NET Framework*3.5, 4.5.2, 4.6, 4.6.1, 4.6.2 für Windows*8.1 und Windows Server*2012 R2 für x64 (KB4019114) CodeIntegrity: =================================== Date: 2017-06-02 12:45:51.591 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:51.434 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:51.273 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:51.115 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:50.954 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:50.793 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:50.629 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:50.470 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:50.312 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-02 12:45:50.156 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz Prozentuale Nutzung des RAM: 40% Installierter physikalischer RAM: 12234.84 MB Verfügbarer physikalischer RAM: 7292.54 MB Summe virtueller Speicher: 14090.84 MB Verfügbarer virtueller Speicher: 10183.92 MB ==================== Laufwerke ================================ Drive c: (Windows) (Fixed) (Total:890.87 GB) (Free:122.55 GB) NTFS Drive d: (Windows XP) (Fixed) (Total:488.28 GB) (Free:124.85 GB) NTFS Drive g: () (Fixed) (Total:698.63 GB) (Free:248.9 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 86360811) Partition: GPT. ======================================================== Disk: 1 (Size: 698.6 GB) (Disk ID: 9564BEB6) Partition 1: (Active) - (Size=698.6 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
Themen zu Win 8.1, System reagiert auf alles sehr langsam |
antivirus, browser, canon, cid, desktop, festplatte, firefox, flash player, google, helper, homepage, installation, langsam, lavasofttcpservice64.dll, mozilla, prozesse, realtek, registry, rundll, scan, secure search, security, software, starten, super, system, updates, virus, windows |