|
Alles rund um Windows: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffenWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
24.06.2017, 13:11 | #1 |
| Problem: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Guten Tag zusammen, Habe seit mehreren Tagen das Problem, dass Windows nicht mehr heruntergefahren bzw. neugestartet werden kann. Lediglich der Wechsel in den Energiesparmodus funktioniert ohne Probleme. Auch vom System selbst vorgenommene Neustarts durch Windows Update schlagen mit der Meldung fehl, dass keine passende Uhrzeit für den Neustart gefunden werde. Die Wiederherstellung beginnt zwar, bricht dann nachdem 100% der Vorbereitungsphase erreicht sind kommentarlos ab. Der FRST Scan ergab zahlreiche Anwendungs- und Systemfehler, siehe Anhang. Was tun? Code:
ATTFilter HWiNFO64 Version 5.52-3161 LAPTOP-9CHC4QNU ----------------------------------------------------------- [Current Computer] Computer Name: LAPTOP-9CHC4QNU Computer Brand Name: LENOVO Lenovo ideapad 100S-14IBR [Operating System] Operating System: Microsoft Windows 10 Home (x64) Build 15063.296 (RS2) UEFI Boot: Present Central Processor(s) ------------------------------------------------------ [CPU Unit Count] Number Of Processor Packages (Physical): 1 Number Of Processor Cores: 4 Number Of Logical Processors: 4 Intel Pentium N3710 ------------------------------------------------------- [General Information] Processor Name: Intel Pentium N3710 Original Processor Frequency: 1666.7 MHz Original Processor Frequency [MHz]: 1667 CPU ID: 000406C4 CPU Brand Name: Intel(R) Pentium(R) CPU N3710 @ 1.60GHz CPU Vendor: GenuineIntel CPU Stepping: D1 CPU Code Name: Braswell Refresh CPU S-Spec: SR2KL CPU Power Limit 1 - Long Duration: Power = 1.38 W, Time = 28.00 sec [Unlocked] CPU Type: Production Unit CPU Platform: FCBGA1170 Microcode Update Revision: 408 Number of CPU Cores: 4 Number of Logical CPUs: 4 [Operating Points] CPU MFM (LowPower): 166.7 MHz = 2 x 83.3 MHz @ 0.4500 V CPU LFM (Minimum): 500.0 MHz = 6 x 83.3 MHz @ 0.4500 V CPU HFM (Maximum): 1666.7 MHz = 20 x 83.3 MHz @ 0.6300 V [Unlocked] CPU Turbo: 2666.7 MHz = 32 x 83.3 MHz @ 0.9600 V [Locked] CPU Current: 1200.1 MHz = 15 x 80.0 MHz @ 0.6300 V [Cache and TLB] L1 Cache: Instruction: 4 x 32 KBytes, Data: 4 x 24 KBytes L2 Cache: Integrated: 2 x 1 MBytes Instruction TLB: 4-KB Pages, Fully associative, 48 entries Data TLB: 4-KB Pages, Fully associative, 32 entries [Standard Feature Flags] FPU on Chip Present Enhanced Virtual-86 Mode Present I/O Breakpoints Present Page Size Extensions Present Time Stamp Counter Present Pentium-style Model Specific Registers Present Physical Address Extension Present Machine Check Exception Present CMPXCHG8B Instruction Present APIC On Chip / PGE (AMD) Present Fast System Call Present Memory Type Range Registers Present Page Global Feature Present Machine Check Architecture Present CMOV Instruction Present Page Attribute Table Present 36-bit Page Size Extensions Present Processor Number Not Present CLFLUSH Instruction Present Debug Trace and EMON Store Present Internal ACPI Support Present MMX Technology Present Fast FP Save/Restore (IA MMX-2) Present Streaming SIMD Extensions Present Streaming SIMD Extensions 2 Present Self-Snoop Present Multi-Threading Capable Present Automatic Clock Control Present IA-64 Processor Not Present Signal Break on FERR Present Virtual Machine Extensions (VMX) Present Safer Mode Extensions (Intel TXT) Not Present Streaming SIMD Extensions 3 Present Supplemental Streaming SIMD Extensions 3 Present Streaming SIMD Extensions 4.1 Present Streaming SIMD Extensions 4.2 Present AVX Support Not Present Fused Multiply Add (FMA) Not Present Carryless Multiplication (PCLMULQDQ)/GFMUL Present CMPXCHG16B Support Present MOVBE Instruction Present POPCNT Instruction Present XSAVE/XRSTOR/XSETBV/XGETBV Instructions Not Present XGETBV/XSETBV OS Enabled Not Present Float16 Instructions Not Present AES Cryptography Support Present Random Number Read Instruction (RDRAND) Present Extended xAPIC Not Present MONITOR/MWAIT Support Present Thermal Monitor 2 Present Enhanced SpeedStep Technology Present L1 Context ID Not Present Send Task Priority Messages Disabling Present Processor Context ID Not Present Direct Cache Access Not Present TSC-deadline Timer Present Performance/Debug Capability MSR Present IA32 Debug Interface Support Not Present 64-Bit Debug Store Present CPL Qualified Debug Store Present [Extended Feature Flags] 64-bit Extensions Present RDTSCP and TSC_AUX Support Present 1 GB large page support Not Present No Execute Present SYSCALL/SYSRET Support Present Bit Manipulation Instructions Set 1 Not Present Bit Manipulation Instructions Set 2 Not Present Advanced Vector Extensions 2 (AVX2) Not Present Advanced Vector Extensions 512 (AVX-512) Not Present AVX-512 Prefetch Instructions Not Present AVX-512 Exponential and Reciprocal Instructions Not Present AVX-512 Conflict Detection Instructions Not Present AVX-512 Doubleword and Quadword Instructions Not Present AVX-512 Byte and Word Instructions Not Present AVX-512 Vector Length Extensions Not Present AVX-512 52-bit Integer FMA Instructions Not Present Secure Hash Algorithm (SHA) Extensions Not Present Software Guard Extensions (SGX) Support Not Present Supervisor Mode Execution Protection (SMEP) Present Supervisor Mode Access Prevention (SMAP) Not Present Hardware Lock Elision (HLE) Not Present Restricted Transactional Memory (RTM) Not Present Memory Protection Extensions (MPX) Not Present Read/Write FS/GS Base Instructions Not Present Enhanced Performance String Instruction Present INVPCID Instruction Not Present RDSEED Instruction Not Present Multi-precision Add Carry Instructions (ADX) Not Present PCOMMIT Instructions Not Present CLFLUSHOPT Instructions Not Present CLWB Instructions Not Present TSC_THREAD_OFFSET Present Platform Quality of Service Monitoring (PQM) Not Present Platform Quality of Service Enforcement (PQE) Not Present FPU Data Pointer updated only on x87 Exceptions Not Present Deprecated FPU CS and FPU DS Present Intel Processor Trace Not Present PREFETCHWT1 Instruction Not Present AVX-512 Vector Bit Manipulation Instructions Not Present User-Mode Instruction Prevention Not Present Protection Keys for User-mode Pages Not Present OS Enabled Protection Keys Not Present AVX-512 VPOPCNTD/VPOPCNTQ Instructions Not Present Read Processor ID Not Present SGX Launch Configuration Not Present AVX-512 Deep Learning Enhanced Word Variable Precision Not Present AVX-512 Deep Learning Floating-point Single Precision Not Present [Enhanced Features] Thermal Monitor 1: Supported, Enabled Thermal Monitor 2: Supported, Enabled Enhanced Intel SpeedStep (GV3): Supported, Enabled Bi-directional PROCHOT#: N/A Extended Auto-HALT State C1E: N/A MLC Streamer Prefetcher Not Supported MLC Spatial Prefetcher Not Supported DCU Streamer Prefetcher Not Supported DCU IP Prefetcher Not Supported Intel Dynamic Acceleration (IDA) Technology: Not Supported Intel Dynamic FSB Switching: Not Supported Intel Turbo Boost Technology: Supported, Enabled Programmable Ratio Limits: Not Supported Programmable TDC/TDP Limits: Not Supported [Memory Ranges] Maximum Physical Address Size: 36-bit (64 GBytes) Maximum Virtual Address Size: 48-bit (256 TBytes) [MTRRs] Range FFA00000-100000000 (4090MB-4096MB) Type: Write Protected (WP) Range 0-80000000 (0MB-2048MB) Type: Write Back (WB) Range 7E000000-80000000 (2016MB-2048MB) Type: Uncacheable (UC) Range 7D000000-7E000000 (2000MB-2016MB) Type: Uncacheable (UC) Range 7C800000-7D000000 (1992MB-2000MB) Type: Uncacheable (UC) Range 7C400000-7C800000 (1988MB-1992MB) Type: Uncacheable (UC) Motherboard --------------------------------------------------------------- [Computer] Computer Brand Name: LENOVO Lenovo ideapad 100S-14IBR [Motherboard] Motherboard Model: LENOVO Aristotle 14 Motherboard Chipset: Motherboard Slots: 3xPCI Express x1, 1xPCI Express x4 PCI Express Version Supported: v2.0 USB Version Supported: v3.0 [BIOS] BIOS Manufacturer: Lenovo BIOS Date: 08/02/2016 BIOS Version: E4CN34WW UEFI BIOS: Capable Super-IO/LPC Chip: Unknown ACPI Devices -------------------------------------------------------------- Intel SD Host Controller -------------------------------------------------- Device Name: Intel SD Host Controller [Assigned Resources] Memory Location: 91319000 - 91319FFF [Alternative 1] Memory Location: 91319000 - 91319FFF IRQ: 45 ELAN pointing device ------------------------------------------------------ Device Name: ELAN pointing device [Assigned Resources] IRQ: 12 [Alternative 1] IRQ: 12 Legacy device ------------------------------------------------------------- Device Name: Legacy device [Assigned Resources] Memory Location: FF000000 - FFFFFFFF [Alternative 1] Memory Location: FF000000 - FFFFFFFF Standard PS/2 Keyboard ---------------------------------------------------- Device Name: Standard PS/2 Keyboard [Assigned Resources] I/O Port: 0060 I/O Port: 0000 [Alternative 1] I/O Port: 0060 I/O Port: 0064 IRQ: 1 Trusted Platform Module 2.0 ----------------------------------------------- Device Name: Trusted Platform Module 2.0 [Assigned Resources] Memory Location: 7FF00000 - 7FF00FFF [Alternative 1] Memory Location: 7FF00000 - 7FF00FFF Programmable interrupt controller ----------------------------------------- Device Name: Programmable interrupt controller [Assigned Resources] I/O Port: 0020 - 0021 I/O Port: 0030 - 0031 I/O Port: 00A0 - 00A1 I/O Port: 00B0 - 00B1 IRQ: 1114369 IRQ: 1114369 IRQ: 1114369 IRQ: 1114369 [Alternative 1] I/O Port: 0020 - 0021 I/O Port: 0024 - 0025 I/O Port: 0028 - 0029 I/O Port: 002C - 002D I/O Port: 0030 - 0031 I/O Port: 0034 - 0035 I/O Port: 0038 - 0039 I/O Port: 003C - 003D I/O Port: 00A0 - 00A1 I/O Port: 00A4 - 00A5 I/O Port: 00A8 - 00A9 I/O Port: 00AC - 00AD I/O Port: 00B0 - 00B1 I/O Port: 00B4 - 00B5 I/O Port: 00B8 - 00B9 I/O Port: 00BC - 00BD I/O Port: 04D0 - 04D1 System timer -------------------------------------------------------------- Device Name: System timer [Assigned Resources] I/O Port: 0040 - 0043 DMA: 0 [Alternative 1] I/O Port: 0040 - 0043 I/O Port: 0050 - 0053 IRQ: 0 Kommunikationsanschluss --------------------------------------------------- Device Name: Kommunikationsanschluss [Assigned Resources] I/O Port: 03F8 - 03FF [Alternative 1] I/O Port: 03F8 - 03FF IRQ: 4 PCI Express Root Complex -------------------------------------------------- Device Name: PCI Express Root Complex [Assigned Resources] I/O Port: 0000 - FFFFFFFF I/O Port: 0D00 - FFFF Memory Location: 000C0000 - 000BFFFF [Alternative 1] I/O Port: 0000 - 006F I/O Port: 0078 - 0CF7 I/O Port: 0D00 - FFFF Memory Location: 000A0000 - 000BFFFF Memory Location: 000C0000 - 000DFFFF Memory Location: 000E0000 - 000FFFFF Memory Location: 80000000 - DFFFFFFF System CMOS/real time clock ----------------------------------------------- Device Name: System CMOS/real time clock [Assigned Resources] I/O Port: 0070 - 0077 [Alternative 1] I/O Port: 0070 - 0077 Motherboard resources ----------------------------------------------------- Device Name: Motherboard resources [Assigned Resources] Memory Location: E0000000 - EFFFFFFF Memory Location: FED06000 - FED06FFF [Alternative 1] Memory Location: E0000000 - EFFFFFFF Memory Location: FEA00000 - FEAFFFFF Memory Location: FED01000 - FED01FFF Memory Location: FED03000 - FED03FFF Memory Location: FED06000 - FED06FFF Memory Location: FED08000 - FED09FFF Memory Location: FED80000 - FEDBFFFF Memory Location: FED1C000 - FED1CFFF Memory Location: FEE00000 - FEEFFFFF Motherboard resources ----------------------------------------------------- Device Name: Motherboard resources [Assigned Resources] I/O Port: 004E - 004F I/O Port: 0000 - 0062 I/O Port: 0067 I/O Port: 0000 - 007F I/O Port: 00B2 - 00B3 [Alternative 1] I/O Port: 004E - 004F I/O Port: 0061 I/O Port: 0063 I/O Port: 0065 I/O Port: 0067 I/O Port: 0070 I/O Port: 0080 - 008F I/O Port: 0092 I/O Port: 00B2 - 00B3 I/O Port: 0680 - 069F I/O Port: 0400 - 047F I/O Port: 0500 - 05FE Motherboard resources ----------------------------------------------------- Device Name: Motherboard resources [Assigned Resources] Memory Location: 91318000 - 91318FFF [Alternative 1] Memory Location: 91318000 - 91318FFF Memory Location: 91316000 - 91316FFF Microsoft ACPI-Compliant Embedded Controller ------------------------------ Device Name: Microsoft ACPI-Compliant Embedded Controller [Assigned Resources] I/O Port: 0062 [Alternative 1] I/O Port: 0062 I/O Port: 0066 SMBIOS DMI ---------------------------------------------------------------- BIOS ---------------------------------------------------------------------- BIOS Vendor: Lenovo BIOS Version: E4CN34WW BIOS Release Date: 08/02/2016 BIOS Start Segment: E000 BIOS Size: 6144 KBytes System BIOS Version: 1.34 Embedded Controller Firmware Version: 1.34 ISA Support: Not Present MCA Support: Not Present EISA Support: Not Present PCI Support: Present PC Card (PCMCIA) Support: Not Present Plug-and-Play Support: Not Present APM Support: Not Present Flash BIOS: Present BIOS Shadow: Present VL-VESA Support: Not Present ESCD Support: Not Present Boot from CD: Present Selectable Boot: Present BIOS ROM Socketed: Not Present Boot from PC Card: Not Present EDD Support: Not Present NEC PC-98 Support: Present ACPI Support: Present USB Legacy Support: Present AGP Support: Not Present I2O Boot Support: Not Present LS-120 Boot Support: Not Present ATAPI ZIP Drive Boot Support: Not Present IEE1394 Boot Support: Not Present Smart Battery Support: Not Present BIOS Boot Specification Support: Present Function key-initiated Network Service Boot Support: Present Targeted Content Distribution Support: Present UEFI Specification Support: Present System -------------------------------------------------------------------- System Manufacturer: LENOVO Product Name: 80R9 Product Version: Lenovo ideapad 100S-14IBR Product Serial Number: YD01GLME UUID: {AD9B02E4-3FB3-1620-0928-005431000000} SKU Number: LENOVO_MT_80R9_BU_idea_FM_Lenovo ideapad 100S-14IBR Family: IDEAPAD Mainboard ----------------------------------------------------------------- Mainboard Manufacturer: LENOVO Mainboard Name: Aristotle 14 Mainboard Version: SDK0J40700 WIN Mainboard Serial Number: YD01GLME Asset Tag: No Asset Tag Location in chassis: Part Component System Enclosure ---------------------------------------------------------- Manufacturer: LENOVO Case Type: Notebook Version: Lenovo ideapad 100S-14IBR Serial Number: YD01GLME Asset Tag Number: No Asset Tag Processor ----------------------------------------------------------------- Processor Manufacturer: Intel(R) Corporation Processor Version: Intel(R) Pentium(R) CPU N3710 @ 1.60GHz External Clock: 83 MHz Maximum Clock Supported: 1660 MHz Current Clock: 480 MHz CPU Socket: Populated CPU Status: Enabled Processor Type: Central Processor Processor Voltage: 3.9 V Processor Upgrade: Slot 1 Socket Designation: CHV L1 Cache ------------------------------------------------------------------ Socket Designation: L1 Cache Cache State: Enabled Cache Type: Internal, Data Cache Scheme: Write-Back Supported SRAM Type: Synchronous Current SRAM Type: Synchronous Cache Speed: Unknown Error Correction Type: Parity Maximum Cache Size: 24 KBytes Installed Cache Size: 24 KBytes Cache Associativity: Unknown L1 Cache ------------------------------------------------------------------ Socket Designation: L1 Cache Cache State: Enabled Cache Type: Internal, Instruction Cache Scheme: Write-Back Supported SRAM Type: Synchronous Current SRAM Type: Synchronous Cache Speed: Unknown Error Correction Type: Parity Maximum Cache Size: 32 KBytes Installed Cache Size: 32 KBytes Cache Associativity: 8-way Set-Associative L2 Cache ------------------------------------------------------------------ Socket Designation: L2 Cache Cache State: Enabled Cache Type: Internal, Unified Cache Scheme: Write-Back Supported SRAM Type: Synchronous Current SRAM Type: Synchronous Cache Speed: Unknown Error Correction Type: Single-bit ECC Maximum Cache Size: 1024 KBytes Installed Cache Size: 1024 KBytes Cache Associativity: 16-way Set-Associative On Board Device ----------------------------------------------------------- Device Description: Intel(R) Extreme Graphics 3 Controller Device Type: Video Adapter Device Status: Enabled On Board Device ----------------------------------------------------------- Device Description: Intel(R) Azalia Audio Device Device Type: Audio Device Device Status: Enabled OEM Strings --------------------------------------------------------------- System Configuration Options ---------------------------------------------- BIOS Language ------------------------------------------------------------- System Event Log ---------------------------------------------------------- Portable Battery ---------------------------------------------------------- Battery Location: Rear Battery Manufacturer: Intel Corp. Manufacture Date: 2010 Serial Number: 1.0 Device Name: Smart Battery Device Chemistry: Unknown Design Capacity: Unknown Design Voltage: Unknown SBDS Verison Number: V1.0 Max. Error in Battery Data: Unknown SBDS Serial Number: Unknown SBDS Manufacture Date: Unknown SBDS Device Chemistry: Lithium-Ion Hardware Security --------------------------------------------------------- Power-on Password: Disabled Keyboard Password: Disabled Administrator Password: Disabled Front Panel Reset: Disabled System Boot Information --------------------------------------------------- Boot Status: No error occured Memory Devices ------------------------------------------------------------ Physical Memory Array ----------------------------------------------------- Array Location: System board Array Use: System memory Error Detecting Method: None Memory Capacity: 8 GBytes Memory Devices: 2 Memory Device ------------------------------------------------------------- Total Width: 8 bits Data Width: 8 bits Device Size: 2048 MBytes Device Form Factor: SODIMM Device Locator: ChannelA-DIMM0 Bank Locator: BANK 0 Device Type: DDR3 SDRAM Device Type Detail: Synchronous Memory Speed: 1600 MHz Manufacturer: Hynix/Hyundai Serial Number: 00000000 Part Number: Asset Tag: 9876543210 Memory Device ------------------------------------------------------------- Total Width: 8 bits Data Width: 8 bits Device Size: 2048 MBytes Device Form Factor: SODIMM Device Locator: ChannelB-DIMM0 Bank Locator: BANK 1 Device Type: DDR3 SDRAM Device Type Detail: Synchronous Memory Speed: 1600 MHz Manufacturer: Hynix/Hyundai Serial Number: 00000000 Part Number: Asset Tag: 9876543210 Memory Array Mapped Address ----------------------------------------------- Starting Address: 00000000 Ending Address: 003FFFFF Partition Width: 2 Port Connectors ----------------------------------------------------------- Keyboard Port ------------------------------------------------------------- Port Type: Keyboard Port Internal Reference: None Internal Connector Type: None External Reference: Keyboard External Connector Type: PS/2 Mouse Port ---------------------------------------------------------------- Port Type: Mouse Port Internal Reference: None Internal Connector Type: None External Reference: Mouse External Connector Type: PS/2 Serial Port 16550A Compatible --------------------------------------------- Port Type: Serial Port 16550A Compatible Internal Reference: None Internal Connector Type: Unknown External Reference: COM 1 External Connector Type: DB-9 pin male Video Port ---------------------------------------------------------------- Port Type: Video Port Internal Reference: None Internal Connector Type: Unknown External Reference: Video External Connector Type: DB-15 pin female Video Port ---------------------------------------------------------------- Port Type: Video Port Internal Reference: None Internal Connector Type: Unknown External Reference: HDMI External Connector Type: None USB ----------------------------------------------------------------------- Port Type: USB Internal Reference: None Internal Connector Type: None External Reference: USB3.0 - 1# External Connector Type: Access Bus (USB) USB ----------------------------------------------------------------------- Port Type: USB Internal Reference: None Internal Connector Type: None External Reference: USB3.0 - 2# External Connector Type: Access Bus (USB) USB ----------------------------------------------------------------------- Port Type: USB Internal Reference: None Internal Connector Type: None External Reference: USB2.0 - 3# External Connector Type: Access Bus (USB) USB ----------------------------------------------------------------------- Port Type: USB Internal Reference: None Internal Connector Type: None External Reference: USB2.0 - 4# External Connector Type: Access Bus (USB) Network Port -------------------------------------------------------------- Port Type: Network Port Internal Reference: None Internal Connector Type: None External Reference: Ethernet External Connector Type: RJ-45 SATA ---------------------------------------------------------------------- Port Type: SATA Internal Reference: None Internal Connector Type: SAS/SATA Plug Receptacle External Reference: SATA Port 1 Direct Connect External Connector Type: None SATA ---------------------------------------------------------------------- Port Type: SATA Internal Reference: SATA Port 2 Internal Connector Type: SAS/SATA Plug Receptacle External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: None Internal Connector Type: None External Reference: AC IN External Connector Type: Unknown Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: TPM/PORT 80 Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: HDA 2X8 Header Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: HDA 8Pin Header Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: HDA HDMI Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: Scan Matrix Keyboard Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: SPI Program Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: LPC Hot Docking Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: LPC SIDE BAND Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: LPC Slot Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: SATA Power Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: FP Header Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: ATX Power Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: BATT B Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: BATT A Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: CPU Fan Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: XDP Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: Memory Slot 1 Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: Memory Slot 2 Internal Connector Type: Unknown External Reference: None External Connector Type: None Port Connector ------------------------------------------------------------ Port Type: Unknown Internal Reference: FAN PWR Internal Connector Type: Unknown External Reference: None External Connector Type: None System Slots -------------------------------------------------------------- PCI-Express 1 X4 ---------------------------------------------------------- Slot Designation: PCI-Express 1 X4 Slot Type: PCI Express Slot Usage: Empty Slot Data Bus Width: 4x / x4 Slot Length: Short PCI-Express 2 X1 ---------------------------------------------------------- Slot Designation: PCI-Express 2 X1 Slot Type: PCI Express Slot Usage: Empty Slot Data Bus Width: 1x / x1 Slot Length: Short PCI-Express 3 X1 ---------------------------------------------------------- Slot Designation: PCI-Express 3 X1 Slot Type: PCI Express Slot Usage: In use Slot Data Bus Width: 1x / x1 Slot Length: Short PCI-Express 4 X1 ---------------------------------------------------------- Slot Designation: PCI-Express 4 X1 Slot Type: PCI Express Slot Usage: Empty Slot Data Bus Width: 1x / x1 Slot Length: Short Intel ME ------------------------------------------------------------------ [Intel Manageability Engine Features] Intel ME Version: 2.0, Build 2092, Hot Fix 2 Intel ME Recovery Image Version: 2.0, Build 2092, Hot Fix 2 Intel ME FITC Version: 2.0, Build 2092, Hot Fix 2 [ME Firmware Capabilities] Full Network Manageability: Not Capable Standard Network Manageability: Not Capable Manageability (AMT): Not Capable Remote Wake Technology: Not Capable Quiet System Technology: Not Capable Intel Anti-Theft: Not Capable Capability Licensing Service: Capable Virtualization Engine: Not Capable Power Sharing Technology (MPC): Not Capable ICC Over Clocking: Not Capable Protected Audio Video Path (PAVP): Capable Identity Protection Technology (IPT): Not Capable Remote PC Assist (RPAT): Not Capable IPV6: Not Capable KVM Remote Control: Not Capable Outbreak Containment Heuristic (OCH): Not Capable Virtual LAN (VLAN): Capable Cipher Transport Layer (TLS): Not Capable Wireless LAN (WLAN): Not Capable Platform Trust Technology (PTT): Capable Near Field Communication (NFC): Capable [ME Firmware Feature State] Full Network Manageability: Disabled Standard Network Manageability: Disabled Manageability (AMT): Disabled Remote Wake Technology: Not Capable Quiet System Technology: Not Capable Intel Anti-Theft: Disabled Capability Licensing Service: Enabled Virtualization Engine: Disabled Power Sharing Technology (MPC): Disabled ICC Over Clocking: Disabled Protected Audio Video Path (PAVP): Enabled Identity Protection Technology (IPT): Not Capable Remote PC Assist (RPAT): Disabled IPV6: Disabled KVM Remote Control: Disabled Outbreak Containment Heuristic (OCH): Disabled Virtual LAN (VLAN): Capable Cipher Transport Layer (TLS): Disabled Wireless LAN (WLAN): Disabled Platform Trust Technology (PTT): Enabled Near Field Communication (NFC): Enabled [ME Firmware Platform Type] SKU: Regular SKU Host ME Region Flash Protection Override (HMRFPO) Status: Disabled Memory -------------------------------------------------------------------- [General information] Total Memory Size: 3950 MBytes Total Memory Size [MB]: 3950 [Current Performance Settings] Current Memory Clock: 800.0 MHz Current Timing (tCAS-tRCD-tRP-tRAS): 11-11-11-28 Memory Runs At: Dual-Channel Command Rate: 1T Read to Read Delay (tRD_RD) Different Rank: 7T Write to Write Delay (tWR_WR) Different Rank: 6T Read to Write Delay (tRD_WR) Same Rank: 10T Read to Write Delay (tRD_WR) Different Rank: 10T Read to Write Delay (tRD_WR) Different DIMM: 10T Write to Read Delay (tWR_RD) Same Rank (tWTR): 19T Write to Read Delay (tWR_RD) Different Rank: 7T Read to Precharge Delay (tRTP): 7T Write to Precharge Delay (tWTP): 25T Write Recovery Time (tWR): 14T RAS# to RAS# Delay (tRRD): 6T Four Activate Window (tFAW): 32T Bus ----------------------------------------------------------------------- PCI Bus #0 ---------------------------------------------------------------- Intel Cherryview/Braswell SoC - Transaction Router ------------------------ [General Information] Device Name: Intel Cherryview/Braswell SoC - Transaction Router Original Device Name: Intel Cherryview/Braswell SoC - Transaction Router Device Class: Host-to-PCI Bridge Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:0:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_2280&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: N/A Interrupt Pin: N/A [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: (Standardsystemgeräte) Driver Description: PCI Standard-Host-CPU-Brücke Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 21-Jun-2006 DeviceInstanceId PCI\VEN_8086&DEV_2280&SUBSYS_390517AA&REV_35\3&11583659&1&00 Intel Cherryview/Braswell SoC - Integrated Graphics Controller ------------ [General Information] Device Name: Intel Cherryview/Braswell SoC - Integrated Graphics Controller Original Device Name: Intel Cherryview/Braswell SoC - Integrated Graphics Controller Device Class: VGA Compatible Adapter Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:2:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: N/A Interrupt Pin: INTA# Memory Base Address 0 90000000 Memory Base Address 2 80000000 I/O Base Address 4 1000 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Intel Corporation Driver Description: Intel(R) HD Graphics Driver Provider: Intel Corporation Driver Version: 20.19.15.4568 Driver Date: 16-Dec-2016 DeviceInstanceId PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35\3&11583659&1&10 Intel Cherryview/Braswell SoC - P-Unit ------------------------------------ [General Information] Device Name: Intel Cherryview/Braswell SoC - P-Unit Original Device Name: Intel Cherryview/Braswell SoC - P-Unit Device Class: Unknown Data Acquisition/Signal Processing Controller Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:11:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_22DC&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: IRQ21 Interrupt Pin: INTA# Memory Base Address 0 91314000 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) Dynamic Platform and Thermal Framework Processor Participant Driver Provider: Intel Driver Version: 8.1.10603.192 Driver Date: 07-Aug-2015 DeviceInstanceId PCI\VEN_8086&DEV_22DC&SUBSYS_390517AA&REV_35\3&11583659&1&58 Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller --- [General Information] Device Name: Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller Original Device Name: Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller Device Class: SD Host Controller Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:18:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_2296&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: IRQ18 Interrupt Pin: INTA# Memory Base Address 0 91315000 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: SDA-Standard konformer SD-Hostcontrollerhersteller Driver Description: SDA-Standard konformer SD-Hostcontroller Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 21-Jun-2006 DeviceInstanceId PCI\VEN_8086&DEV_2296&SUBSYS_390517AA&REV_35\3&11583659&1&90 Intel Cherryview/Braswell SoC - SATA AHCI Controller ---------------------- [General Information] Device Name: Intel Cherryview/Braswell SoC - SATA AHCI Controller Original Device Name: Intel Cherryview/Braswell SoC - SATA AHCI Controller Device Class: SATA AHCI Controller Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:19:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_22A3&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: N/A Interrupt Pin: INTA# I/O Base Address 4 1060 Memory Base Address 5 9131A000 [Features] Bus Mastering: Enabled Running At 66 MHz: Capable Fast Back-to-Back Transactions: Capable [SATA Host Controller] Interface Speed Supported: Gen3 6.0 Gbps Number Of Ports: 2 External SATA Support: Not Capable Aggressive Link Power Management: Not Capable Staggered Spin-up: Not Capable Mechanical Presence Switch: Not Capable Command Queue Acceleration: Capable 64-bit Addressing: Capable AHCI Status: Enabled AHCI Version: 1.31 Ports Implemented: 0, 1 [SATA Port#0] Port Status: Device Present, Phy communication established Current Interface Speed: Gen3 6.0 Gbps External SATA Port: Not Capable Hot Plug: Not Capable Device Type: SATA [SATA Port#1] Port Status: Phy in offline mode External SATA Port: Not Capable Hot Plug: Not Capable [Driver Information] Driver Manufacturer: Standardmäßiger SATA AHCI- Controller Driver Description: Standardmäßiger SATA AHCI- Controller Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 21-Jun-2006 DeviceInstanceId PCI\VEN_8086&DEV_22A3&SUBSYS_390517AA&REV_35\3&11583659&1&98 Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller ------------------- [General Information] Device Name: Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller Original Device Name: Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller Device Class: USB xHCI Controller Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:20:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_22B5&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: N/A Interrupt Pin: INTA# Memory Base Address 0 91300000 [Features] Bus Mastering: Disabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable USB Version Supported: 3.0 [Driver Information] Driver Manufacturer: Generischer USB-xHCI-Hostcontroller Driver Description: USB-xHCI-kompatibler Hostcontroller Driver Provider: Microsoft Driver Version: 10.0.15063.296 Driver Date: 27-Apr-2017 DeviceInstanceId PCI\VEN_8086&DEV_22B5&SUBSYS_390517AA&REV_35\3&11583659&1&A0 USB Root Hub -------------------------------------------------------------- [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- [Port3] : Intel Bluetooth V4.0 Module ------------------------------------- [Device Information] Device Manufacturer: Intel Product Name: Intel Bluetooth V4.0 Module Serial Number: - USB Version Supported: 2.00 USB Device Speed: USB 1.1 Full-speed Driver Description: Intel(R) Wireless Bluetooth(R) Hardware ID: USB\VID_8087&PID_07DC [Driver Information] Driver Manufacturer: Intel Corporation Driver Description: Intel(R) Wireless Bluetooth(R) Driver Provider: Intel Corporation Driver Version: 19.10.1635.483 Driver Date: 02-Sep-2016 DeviceInstanceId USB\VID_8087&PID_07DC\5&196FB8FE&0&3 [Port4] : No Device Connected --------------------------------------------- [Port5] : USB-Verbundgerät ------------------------------------------------ [Device Information] Device Manufacturer: - Product Name: - Serial Number: - USB Version Supported: 2.00 USB Device Speed: USB 2.0 High-speed Driver Description: USB-Verbundgerät Hardware ID: USB\VID_5986&PID_0673 [Driver Information] Driver Manufacturer: (Standard-USB-Hostcontroller) Driver Description: USB-Verbundgerät Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 21-Jun-2006 DeviceInstanceId USB\VID_5986&PID_0673\200901010001 [Port6] : No Device Connected --------------------------------------------- [Port7] : No Device Connected --------------------------------------------- [Port8] : No Device Connected --------------------------------------------- [Port9] : No Device Connected --------------------------------------------- [Port10] : No Device Connected -------------------------------------------- [Port11] : No Device Connected -------------------------------------------- [Port12] : No Device Connected -------------------------------------------- [Port13] : No Device Connected -------------------------------------------- Intel Cherryview/Braswell SoC - Trusted Execution Engine ------------------ [General Information] Device Name: Intel Cherryview/Braswell SoC - Trusted Execution Engine Original Device Name: Intel Cherryview/Braswell SoC - Trusted Execution Engine Device Class: Unknown En/Decryption Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:26:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_2298&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: N/A Interrupt Pin: INTA# Memory Base Address 0 91200000 Memory Base Address 1 91100000 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Intel Driver Description: Intel(R) Trusted Execution Engine Interface Driver Provider: Intel Driver Version: 2.0.0.1094 Driver Date: 11-Oct-2015 DeviceInstanceId PCI\VEN_8086&DEV_2298&SUBSYS_390517AA&REV_35\3&11583659&1&D0 Intel Cherryview/Braswell SoC - HD Audio Controller ----------------------- [General Information] Device Name: Intel Cherryview/Braswell SoC - HD Audio Controller Original Device Name: Intel Cherryview/Braswell SoC - HD Audio Controller Device Class: Mixed mode device Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:27:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: IRQ22 Interrupt Pin: INTA# Memory Base Address 0 91310000 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Microsoft Driver Description: High Definition Audio-Controller Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 17-Mar-2017 DeviceInstanceId PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35\3&11583659&1&D8 Intel Cherryview/Braswell SoC - PCI Express Root Port 1 ------------------- [General Information] Device Name: Intel Cherryview/Braswell SoC - PCI Express Root Port 1 Original Device Name: Intel Cherryview/Braswell SoC - PCI Express Root Port 1 Device Class: PCI-to-PCI Bridge Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:28:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_22C8&SUBSYS_00000000&REV_35 [PCI Express] Version: 2.0 Maximum Link Width: 1x Current Link Width: Not negotiated Maximum Link Speed: 5.0 GT/s Current Link Speed: 2.5 GT/s Device/Port Type: Root Port of PCI Express Root Complex Slot Implemented: Yes Hot-Plug: Capable Hot-Plug Surprise: Capable Emergency Power Reduction: Not Supported Active State Power Management (ASPM) Support: L0s and L1 Active State Power Management (ASPM) Status: Disabled L0s Exit Latency: 512 ns - 1 us L1 Exit Latency: 2 - 4 us [System Resources] Interrupt Line: N/A Interrupt Pin: N/A [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: (Standardsystemgeräte) Driver Description: PCI-zu-PCI-Brücke Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 21-Jun-2006 DeviceInstanceId PCI\VEN_8086&DEV_22C8&SUBSYS_390517AA&REV_35\3&11583659&1&E0 PCI Express x1 Bus #1 ----------------------------------------------------- Intel Cherryview/Braswell SoC - PCI Express Root Port 3 ------------------- [General Information] Device Name: Intel Cherryview/Braswell SoC - PCI Express Root Port 3 Original Device Name: Intel Cherryview/Braswell SoC - PCI Express Root Port 3 Device Class: PCI-to-PCI Bridge Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:28:2 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_22CC&SUBSYS_00000000&REV_35 [PCI Express] Version: 1.1 Maximum Link Width: 1x Current Link Width: 1x Maximum Link Speed: 2.5 GT/s Current Link Speed: 2.5 GT/s Device/Port Type: Root Port of PCI Express Root Complex Slot Implemented: Yes Hot-Plug: Not Capable Hot-Plug Surprise: Not Capable Slot Power Limit: 10.000 W Emergency Power Reduction: Not Supported Active State Power Management (ASPM) Support: L0s and L1 Active State Power Management (ASPM) Status: Disabled L0s Exit Latency: 256 - 512 ns L1 Exit Latency: 8 - 16 us [System Resources] Interrupt Line: N/A Interrupt Pin: INTC# [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: (Standardsystemgeräte) Driver Description: PCI-zu-PCI-Brücke Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 21-Jun-2006 DeviceInstanceId PCI\VEN_8086&DEV_22CC&SUBSYS_390517AA&REV_35\3&11583659&1&E2 PCI Express x1 Bus #2 ----------------------------------------------------- Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter ------------------------- [General Information] Device Name: Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter Original Device Name: Intel Wireless 3160 WiFi Adapter Device Class: Unknown Network Adapter Revision ID: 93 PCI Address (Bus:Device:Function) Number: 2:0:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93 [PCI Express] Version: 1.1 Maximum Link Width: 1x Current Link Width: 1x Maximum Link Speed: 2.5 GT/s Current Link Speed: 2.5 GT/s Device/Port Type: PCI Express Endpoint Slot Implemented: No Emergency Power Reduction: Not Supported Active State Power Management (ASPM) Support: L0s and L1 Active State Power Management (ASPM) Status: Disabled L0s Exit Latency: 2 - 4 us L1 Exit Latency: 16 - 32 us [System Resources] Interrupt Line: N/A Interrupt Pin: INTA# Memory Base Address 0 91000000 [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: Intel Corporation Driver Description: Intel(R) Dual Band Wireless-AC 3160 Driver Provider: Intel Driver Version: 18.12.0.3 Driver Date: 16-Jul-2015 DeviceInstanceId PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93\4&2EAAB296&0&00E2 Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC ------------ [General Information] Device Name: Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC Original Device Name: Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC Device Class: PCI-to-ISA Bridge Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:31:0 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_229C&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: N/A Interrupt Pin: N/A [Features] Bus Mastering: Enabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Not Capable [Driver Information] Driver Manufacturer: (Standardsystemgeräte) Driver Description: PCI Standard-ISA-Brücke Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 21-Jun-2006 DeviceInstanceId PCI\VEN_8086&DEV_229C&SUBSYS_390517AA&REV_35\3&11583659&1&F8 Intel Cherryview/Braswell SoC - SMBus Controller -------------------------- [General Information] Device Name: Intel Cherryview/Braswell SoC - SMBus Controller Original Device Name: Intel Cherryview/Braswell SoC - SMBus Controller Device Class: SMBus (System Management Bus) Revision ID: 35 PCI Address (Bus:Device:Function) Number: 0:31:3 PCI Latency Timer: 0 Hardware ID: PCI\VEN_8086&DEV_2292&SUBSYS_390517AA&REV_35 [System Resources] Interrupt Line: N/A Interrupt Pin: INTB# Memory Base Address 0 9131A800 I/O Base Address 4 1040 [Features] Bus Mastering: Disabled Running At 66 MHz: Not Capable Fast Back-to-Back Transactions: Capable [Driver Information] Driver Manufacturer: INTEL Driver Description: Intel(R) Celeron(R)/Pentium(R) SM Bus Controller - 2292 Driver Provider: INTEL Driver Version: 10.1.1.11 Driver Date: 17-Aug-2015 DeviceInstanceId PCI\VEN_8086&DEV_2292&SUBSYS_390517AA&REV_35\3&11583659&1&FB Video Adapter ------------------------------------------------------------- Intel HD Graphics 400/405 ------------------------------------------------- [Video chipset] Video Chipset: Intel HD Graphics 400/405 Video Chipset Codename: Braswell Video Memory: 1024 MBytes [Video Card] Video Card: Intel Cherryview/Braswell SoC - Integrated Graphics Controller [Lenovo] Video Bus: Integrated Video RAMDAC: Internal Video BIOS Version: Unknown [Performance] Processor Clock: 400.0 MHz Hardware ID: PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35 PCI Location (Bus:Dev:Fnc): 0:02:0 [Driver Information] Driver Manufacturer: Intel Corporation Driver Description: Intel(R) HD Graphics Driver Provider: Intel Corporation Driver Version: 20.19.15.4568 Driver Date: 16-Dec-2016 DeviceInstanceId PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35\3&11583659&1&10 Monitor ------------------------------------------------------------------- Chi Mei [Unknown Model: CMN1487] ------------------------------------------ [General information] Monitor Name: Chi Mei [Unknown Model: CMN1487] Monitor Name (Manuf): N140BGE-EB3 CMN N140BGE-EB3 Serial Number: Unknown Date Of Manufacture: Week: 40, Year: 2013 Monitor Hardware ID: Monitor\CMN1487 Max. Vertical Size: 17 cm Max. Horizontal Size: 31 cm [Advanced parameters] Input Signal: Digital Color Bit Depth: 6 Bits per Primary Color Digital Video Interface Standard Supported: DisplayPort Display Type: Monochrome/grey scale Gamma Factor: 2.20 [DPMS Modes] Standby: Not Supported Suspend: Not Supported Active Off: Not Supported Standard Colour Space: Not Supported Preferred Timing Mode: Supported Default GTF Supported: Not Supported DFP 1.x Compatible: Yes [Supported Video Modes] 1366 x 768 309 x 173 mm, Pixel Clock 76.42 MHz Drives -------------------------------------------------------------------- Floppy Drives ------------------------------------------------------------- Unknown ------------------------------------------------------------------- Unknown ------------------------------------------------------------------- (S)ATA/ATAPI Drives ------------------------------------------------------- LITEON CV3-8D128 ---------------------------------------------------------- [General Information] Drive Controller: Serial ATA 6Gb/s @ 6Gb/s Drive Model: LITEON CV3-8D128 Drive Revision: T876201 Drive Serial Number: SD0L02318L1TH6810GAA World Wide Name: 50023031B0DCD8 Drive Capacity: 122,104 MBytes (128 GB) Drive Capacity [MB]: 122104 Media Rotation Rate: SSD Drive (Non-rotating) ATA Major Version Supported: ATA/ATAPI-5, ATA/ATAPI-6, ATA/ATAPI-7, ATA8-ACS, ACS-2 ATA Minor Version Supported: ATA/ATAPI-7 T13 1532D version 4a ATA Transport Version Supported: SATA 3.1 [Drive Geometry] Number of Cylinders: 16383 Number of Heads: 16 Sectors Per Track: 63 Number of Sectors: 16514064 Total 32-bit LBA Sectors: 250069680 Total 48-bit LBA Sectors: 250069680 Logical Sector Size: 512 Bytes Cache Buffer Size: N/A [Transfer Modes] Sectors Per Interrupt: Total: 1, Active: 0 Max. PIO Transfer Mode: 4 Multiword DMA Mode: Total: 2, Active: - Singleword DMA Mode: Total: -, Active: - Ultra-DMA Mode: Total: 6 (ATA-133), Active: 6 (ATA-133) Max. Multiword DMA Transfer Rate: 16.7 MBytes/s Max. PIO with IORDY Transfer Rate: 16.7 MBytes/s Max. PIO w/o IORDY Transfer Rate: 16.7 MBytes/s Native Command Queuing: Supported, Max. Depth: 32 TRIM Command: Supported (Deterministic Read After TRIM, Words = 0) [Device flags] Fixed Drive: Not Present Removable Drive: Not Present Magnetic Storage: Present LBA Mode: Supported DMA Mode: Supported IORDY: Supported IORDY Disableable: Supported [Features] Write Cache: Present, Active S.M.A.R.T. Feature: Present, Active Security Feature: Present, Inactive Removable Media Feature: Not Present, Disabled Power Management: Present, Active Advanced Power Management: Not Present, Inactive Packet Interface: Not Present, Disabled Look-Ahead Buffer: Present, Active Host Protected Area: Present, Enabled Power-Up In Standby: Not Suppported, Inactive Automatic Acoustic Management: Not Suppported, Inactive 48-bit LBA: Supported, Active Host-Initiated Link Power Management: Not Supported Device-Initiated Link Power Management: Supported, Disabled In-Order Data Delivery: Not Supported Hardware Feature Control: Not Supported Software Settings Preservation: Supported, Enabled NCQ Autosense: Not Supported Link Power State Device Sleep: Supported, Disabled Hybrid Information Feature: Not Supported Rebuild Assist: Not Supported Power Disable: Not Supported All Write Cache Non-Volatile: Not Supported Extended Number of User Addressable Sectors: Not Supported CFast Specification: Not Supported NCQ Priority Information: Not Supported Host Automatic Partial to Slumber Transitions: Not Supported Device Automatic Partial to Slumber Transitions: Not Supported NCQ Streaming: Not Supported NCQ Queue Management Command: Not Supported DevSleep to Reduced Power State: Supported Extended Power Conditions Feature: Not Supported Sense Data Reporting Feature: Not Supported Free-Fall Control Feature: Not Supported Write-Read-Verify Feature: Not Supported [Security] Security Feature: Supported Security Status: Disabled Security Locked: Disabled Security Frozen: Enabled Enhanced Security Erase: Supported Sanitize Feature: Not Supported Sanitize Device - Crypto Scramble: Not Supported Sanitize Device - Overwrite: Not Supported Sanitize Device - Block Erase: Not Supported Sanitize Device - Antifreeze Lock: Not Supported Device Encrypts All User Data: Not Supported Trusted Computing: Not Supported [Self-Monitoring, Analysis and Reporting Technology (S.M.A.R.T.)] [05] Reallocated Sector Count: 100/Always OK, Worst: 100 [09] Power-On Hours/Cycle Count: 100/Always OK, Worst: 100 (220 hours / 9.2 days) [0C] Power Cycle Count: 100/Always OK, Worst: 100 (Data = 321,0) [AA] Grown Failing: 100/Always OK, Worst: 100 [AB] Program Fail Block Count: 100/Always OK, Worst: 100 [AC] Erase Fail Block Count: 100/Always OK, Worst: 100 [AD] Wear Leveling Count/Erase Count: 100/Always OK, Worst: 100 (Data = 2,0) [AE] Unexpected Power Loss Count: 100/Always OK, Worst: 100 (Data = 3,0) [B2] Used Reserved Block Count (Chip): 100/Always OK, Worst: 100 [B4] Unused Reserved Block Count (Total): 100/10, Worst: 100 (Data = 632,0) [B8] End to End Error Detection Count: 100/Always OK, Worst: 100 [BB] Reported Uncorrectable Errors: 100/Always OK, Worst: 100 [C2] Temperature 100/Always OK, Worst: 100 (69.0 °C) [C7] UltraDMA/SATA CRC Error Rate: 100/Always OK, Worst: 100 [E9] Power-On Hours 100/1, Worst: 100 (Data = 100,0) [F1] Lifetime Writes from Host (LBAs Written): 100/Always OK, Worst: 100 (Data = 649,0) [F2] Lifetime Reads from Host (LBAs Read): 100/Always OK, Worst: 100 (Data = 873,0) [F9] Total NAND Writes: 100/Always OK, Worst: 100 (Data = 341,0) Audio --------------------------------------------------------------------- Intel Cherryview/Braswell SoC - HD Audio Controller ----------------------- Audio Adapter: Intel Cherryview/Braswell SoC - HD Audio Controller Audio Controller Hardware ID: PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35 Network ------------------------------------------------------------------- Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter ------------------------- [General information] Network Card: Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter Vendor Description: Microsoft MAC Address: E4-02-9B-AD-B3-3F [Capabilities] Maximum Link Speed: 40 Mbps Transmit Buffer Size: 6201344 Bytes Receive Buffer Size: 6201344 Bytes Hardware ID: PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93 [Driver Information] Driver Manufacturer: Intel Corporation Driver Description: Intel(R) Dual Band Wireless-AC 3160 Driver Provider: Intel Driver Version: 18.12.0.3 Driver Date: 16-Jul-2015 DeviceInstanceId PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93\4&2EAAB296&0&00E2 Ports --------------------------------------------------------------------- Serial Ports -------------------------------------------------------------- Parallel Ports ------------------------------------------------------------ USB ----------------------------------------------------------------------- USB-xHCI-kompatibler Hostcontroller --------------------------------------- Root Hub ------------------------------------------------------------------ [Port1] : No Device Connected --------------------------------------------- [Port2] : No Device Connected --------------------------------------------- [Port3] : Intel Bluetooth V4.0 Module ------------------------------------- [Device Information] Device Manufacturer: Intel Product Name: Intel Bluetooth V4.0 Module Serial Number: - USB Version Supported: 2.00 USB Device Speed: USB 1.1 Full-speed Driver Description: Intel(R) Wireless Bluetooth(R) Hardware ID: USB\VID_8087&PID_07DC [Driver Information] Driver Manufacturer: Intel Corporation Driver Description: Intel(R) Wireless Bluetooth(R) Driver Provider: Intel Corporation Driver Version: 19.10.1635.483 Driver Date: 02-Sep-2016 DeviceInstanceId USB\VID_8087&PID_07DC\5&196FB8FE&0&3 [Port4] : No Device Connected --------------------------------------------- [Port5] : USB-Verbundgerät ------------------------------------------------ [Device Information] Device Manufacturer: - Product Name: - Serial Number: - USB Version Supported: 2.00 USB Device Speed: USB 2.0 High-speed Driver Description: USB-Verbundgerät Hardware ID: USB\VID_5986&PID_0673 [Driver Information] Driver Manufacturer: (Standard-USB-Hostcontroller) Driver Description: USB-Verbundgerät Driver Provider: Microsoft Driver Version: 10.0.15063.0 Driver Date: 21-Jun-2006 DeviceInstanceId USB\VID_5986&PID_0673\200901010001 [Port6] : No Device Connected --------------------------------------------- [Port7] : No Device Connected --------------------------------------------- [Port8] : No Device Connected --------------------------------------------- [Port9] : No Device Connected --------------------------------------------- [Port10] : No Device Connected -------------------------------------------- [Port11] : No Device Connected -------------------------------------------- [Port12] : No Device Connected -------------------------------------------- [Port13] : No Device Connected -------------------------------------------- Smart Battery ------------------------------------------------------------- Battery #0 ---------------------------------------------------------------- [General Properties] Device Name: Harris Beach Manufacturer Name: Intel SR 1 Serial Number: 123456789 Unique ID: 123456789Intel SR 1Harris Beach Chemistry: Lithium Ion Designed Capacity: 33060 mWh Full Charged Capacity: 24898 mWh Wear Level: 24.7 % Cycle Count: 47 [Current Power Status] Power Status: Charging On AC Power Current Capacity: 20923 mWh (84.0 %) Current Voltage: 8.552 V Charge Rate: 16401 mW Geändert von losprimeros (24.06.2017 um 13:38 Uhr) |
25.06.2017, 13:54 | #2 |
| Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Anleitung / Hilfe Nochmal einzeln zur besseren Übersicht
__________________FRST: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 21-06-2017 01 durchgeführt von hesse (Administrator) auf LAPTOP-9CHC4QNU (24-06-2017 13:04:51) Gestartet von C:\Users\hesse\Desktop Geladene Profile: hesse (Verfügbare Profile: hesse) Platform: Windows 10 Home Version 1703 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files\Lenovo\LenovoUtility\utility.exe (Flux Software LLC) C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files (x86)\Lenovo\System Update\SUService.exe (Microsoft Corporation) C:\Windows\System32\MusNotificationUx.exe (Microsoft Corporation) C:\Windows\HelpPane.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Lenovo Group Limited) C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-13] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410168 2016-01-13] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410168 2016-01-13] (Realtek Semiconductor) HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2016-09-29] () HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Run: [f.lux] => C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe [1024240 2016-12-06] (Flux Software LLC) HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\RunOnce: [Uninstall 17.3.6816.0313\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\hesse\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64" HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\RunOnce: [Uninstall 17.3.6816.0313] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\hesse\AppData\Local\Microsoft\OneDrive\17.3.6816.0313" ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{cac6f97e-a143-4844-b9a2-28bd400435aa}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{fd987693-8ab4-4e75-acec-ec4ac2b4fb57}: [DhcpNameServer] 169.254.73.172 Internet Explorer: ================== HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo15.msn.com/?pc=LCTE HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-06-18] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-06-18] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation) FireFox: ======== FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-01] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-01] (Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-05-27] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.) Chrome: ======= CHR HomePage: Default -> hxxps://www.google.de/ CHR StartupUrls: Default -> "hxxps://www.google.de/","hxxp://www.mystartsearch.com/?type=hp&ts=1429435474&from=cor&uid=ST31000524AS_9VPFPKH3" CHR Session Restore: Default -> ist aktiviert. CHR Profile: C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default [2017-06-24] CHR Extension: (ProxFlow) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2017-03-27] CHR Extension: (Google Präsentationen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-01-03] CHR Extension: (Google Docs) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-01-03] CHR Extension: (Google Drive) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-01-03] CHR Extension: (Open with Microsoft Office Online Viewer) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcknfcclbcpdeopdopomkdbjmldgdeld [2017-03-27] CHR Extension: (YouTube) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-01-03] CHR Extension: (Ecosia Omnibar Redirect (Legacy)) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\clellnciejhoedgepbdilbkdkaoecgpc [2017-05-11] CHR Extension: (Ecosia) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\eedlgdlajadkbbjoobobefphmfkcchfk [2017-06-06] CHR Extension: (Google Tabellen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-01-03] CHR Extension: (Google Docs Offline) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-01-03] CHR Extension: (AdBlock) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-06-22] CHR Extension: (Auto-HD für YouTube™) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\koiaokdomkpjdgniimnkhgbilbjgpeak [2017-03-27] CHR Extension: (Top Eleven) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljphpjlafmmdmegmfbkacafhbegjfkkn [2017-03-27] CHR Extension: (Ghostery) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2017-06-02] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09] CHR Extension: (Google Mail) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-01-03] CHR Extension: (Chrome Media Router) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-06-15] ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4122816 2017-06-10] (Microsoft Corporation) R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1385640 2015-08-07] (Intel Corporation) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [134880 2016-12-27] (ELAN Microelectronics Corp.) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373752 2017-05-16] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [887784 2015-09-03] (Intel(R) Corporation) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert] R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-21] (Intel Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-07-09] () R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.) [Datei ist nicht signiert] S2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd.) [Datei ist nicht signiert] R3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [28544 2016-09-10] () R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831712 2015-07-09] (Intel® Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55816 2015-08-13] (Intel Corporation) R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [53752 2015-08-13] (Intel Corporation) R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [261624 2015-08-13] (Intel Corporation) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [230144 2016-11-11] (Intel Corporation) R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [7407096 2017-05-16] (Intel Corporation) R1 MpKsl43a2972f; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6294BDD-C6B5-4EB5-8D28-2F2C5ECC33A0}\MpKsl43a2972f.sys [44928 2017-06-24] (Microsoft Corporation) R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [4043544 2015-07-16] (Intel Corporation) R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3057920 2015-10-08] (Realtek Semiconductor Corp.) S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] () R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146200 2015-10-15] (Intel Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-06-24 13:04 - 2017-06-24 13:05 - 00015374 _____ C:\Users\hesse\Desktop\FRST.txt 2017-06-24 13:01 - 2017-06-24 13:02 - 04110280 _____ C:\Users\hesse\Desktop\AdwCleaner_6.047.exe 2017-06-24 12:59 - 2017-06-24 13:04 - 00000000 ____D C:\FRST 2017-06-24 12:56 - 2017-06-24 12:56 - 02439680 _____ (Farbar) C:\Users\hesse\Desktop\FRST64.exe 2017-06-24 12:48 - 2017-06-24 12:52 - 00000000 ___HD C:\$SysReset 2017-06-24 12:47 - 2017-06-24 12:47 - 00000000 ____D C:\Users\hesse\AppData\Local\DBG 2017-06-15 20:38 - 2017-06-22 02:47 - 00000000 ____D C:\Users\hesse\AppData\LocalLow\Mozilla 2017-06-15 09:40 - 2017-06-15 09:40 - 00001285 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2017-06-15 09:40 - 2017-06-15 09:40 - 00001273 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2017-06-15 09:35 - 2017-06-15 09:35 - 00002132 _____ C:\Users\hesse\Desktop\shutdown.lnk 2017-06-15 09:26 - 2017-06-15 09:26 - 00000000 ____D C:\WINDOWS\System32\Tasks\TVT 2017-06-15 09:26 - 2017-06-15 09:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools 2017-06-15 09:25 - 2017-06-15 09:26 - 00000000 ____D C:\ProgramData\Lenovo 2017-06-15 09:25 - 2017-06-15 09:25 - 00000000 ____D C:\Users\hesse\AppData\Local\LenovoServiceBridge 2017-06-15 09:24 - 2017-06-15 09:26 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo 2017-06-15 09:24 - 2017-06-15 09:24 - 02723976 _____ (Lenovo ) C:\Users\hesse\Downloads\LSBSetup.exe 2017-06-15 09:24 - 2017-06-15 09:24 - 00000000 ____D C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-06-24 12:52 - 2017-03-18 22:51 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-06-24 01:06 - 2017-03-18 23:03 - 00000000 ___HD C:\Program Files\WindowsApps 2017-06-24 01:06 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-06-20 17:02 - 2016-09-29 04:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-06-20 00:27 - 2017-01-03 12:10 - 00002343 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-06-19 23:55 - 2017-05-23 22:50 - 00003290 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 2017-06-19 23:55 - 2017-01-03 12:03 - 00002390 _____ C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-06-19 23:55 - 2017-01-03 12:03 - 00000000 ___RD C:\Users\hesse\OneDrive 2017-06-18 20:21 - 2017-05-23 22:52 - 01958306 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-06-18 20:21 - 2017-03-20 06:35 - 00859952 _____ C:\WINDOWS\system32\perfh007.dat 2017-06-18 20:21 - 2017-03-20 06:35 - 00178552 _____ C:\WINDOWS\system32\perfc007.dat 2017-06-18 20:17 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\NDF 2017-06-18 10:09 - 2017-03-18 23:03 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-06-15 20:07 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\rescache 2017-06-15 09:40 - 2017-01-03 13:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2017-06-15 09:40 - 2017-01-03 13:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-06-15 09:38 - 2017-02-26 16:36 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2017-06-15 09:26 - 2017-03-18 23:01 - 00000000 ____D C:\WINDOWS\INF 2017-06-15 09:26 - 2016-09-29 04:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2017-06-15 09:26 - 2016-09-29 04:50 - 00000000 ____D C:\Program Files (x86)\Lenovo 2017-06-14 20:58 - 2017-01-03 12:44 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-06-14 20:50 - 2017-05-23 22:40 - 00000000 ____D C:\Users\hesse 2017-06-14 20:49 - 2017-01-03 12:44 - 133627792 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-06-11 18:38 - 2017-05-23 22:38 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2017-06-11 18:38 - 2017-01-03 12:01 - 00000000 __SHD C:\Users\hesse\IntelGraphicsProfiles 2017-06-04 22:52 - 2017-05-23 22:50 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-06-04 22:52 - 2017-03-18 13:40 - 01310720 _____ C:\WINDOWS\system32\config\BBI 2017-06-03 08:32 - 2017-03-18 23:06 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-06-03 08:32 - 2017-03-18 23:06 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-05-31 00:50 - 2017-01-03 12:30 - 00565416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-05-27 18:55 - 2017-05-23 22:37 - 00382176 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-05-27 18:31 - 2017-01-03 12:01 - 00000000 ____D C:\Users\hesse\AppData\Local\Packages 2017-05-25 19:51 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\appcompat ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2017-05-23 22:39 - 2017-05-23 22:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-06-24 02:28 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Untersuchungsergebnis der Verknüpfungen des Benutzers (x64) Version: 21-06-2017 01 durchgeführt von hesse (24-06-2017 13:07:04) Gestartet von C:\Users\hesse\Desktop Start-Modus: Normal ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\hesse\Documents () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\hesse\Downloads () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\hesse\Music () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\hesse\Pictures () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\hesse\Videos () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\08 - Homegroup.lnk -> Microsoft.Windows.Homegroup Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\09 - Network.lnk -> Microsoft.Windows.Network Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\hesse () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) HD Graphics Control Panel.lnk -> C:\Windows\System32\GfxUIEx.exe (Intel Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk -> C:\Windows\MiracastView\MiracastView.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintDialog.lnk -> C:\Windows\PrintDialog\PrintDialog.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Repair Toolbox\Uninstall Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Repair Toolbox\Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\Windows_Repair_Toolbox.exe (Alexandre Miguel Canotilho Coelho) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Create System Report.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDLogReport.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\File Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Immunization.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Rootkit Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDRootAlyzer.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\System Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Tray Icon (Live Protection).lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Uninstall Spybot-S&D.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek\Realtek HD Audio-Manager.lnk -> C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Office 2016-Spracheinstellungen.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\SETLANG.EXE (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools\System Update.lnk -> C:\Program Files (x86)\Lenovo\System Update\tvsu.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo\Benutzerhandbücher.lnk -> C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe (Lenovo) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo\System Update.lnk -> C:\Program Files (x86)\Lenovo\System Update\tvsu.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30 Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\Links\Desktop.lnk -> C:\Users\hesse\Desktop () Shortcut: C:\Users\hesse\Links\Downloads.lnk -> C:\Users\hesse\Downloads () Shortcut: C:\Users\hesse\Links\OneDrive.lnk -> C:\Users\hesse\OneDrive () Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk -> C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe (Flux Software LLC) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\hesse\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30 Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge entfernen.lnk -> C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\unins000.exe () Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge.lnk -> C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (Lenovo Group Limited) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation) Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) Shortcut: C:\Users\Public\Desktop\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation) Shortcut: C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\Users\Public\Desktop\Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\Windows_Repair_Toolbox.exe (Alexandre Miguel Canotilho Coelho) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Office 2016 Upload Center.lnk -> C:\Program Files (x86)\Microsoft Office\root\client\AppVLP.exe (Microsoft Corporation) -> "C:\Program Files (x86)\Microsoft Office\Root\Office16\MSOUC.EXE" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} ShortcutWithArgument: C:\Users\hesse\Desktop\shutdown.lnk -> C:\Windows\System32\shutdown.exe (Microsoft Corporation) -> /r /t 0 ShortcutWithArgument: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Faxempfänger.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E} ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} InternetURL: C:\Users\Default\Favorites\Lenovo\Lenovo Support.url -> URL: hxxp://support.lenovo.com/ InternetURL: C:\Users\Default\Favorites\Lenovo\Lenovo.url -> URL: hxxp://www.lenovo.com/ InternetURL: C:\Users\hesse\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142 InternetURL: C:\Users\hesse\Favorites\Lenovo\Lenovo Support.url -> URL: hxxp://support.lenovo.com/ InternetURL: C:\Users\hesse\Favorites\Lenovo\Lenovo.url -> URL: hxxp://www.lenovo.com/ ==================== Ende vom Shortcut.txt ============================= Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 21-06-2017 01 durchgeführt von hesse (24-06-2017 13:05:59) Gestartet von C:\Users\hesse\Desktop Windows 10 Home Version 1703 (X64) (2017-05-23 20:55:22) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-693335309-1784169824-4197453364-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-693335309-1784169824-4197453364-503 - Limited - Disabled) Gast (S-1-5-21-693335309-1784169824-4197453364-501 - Limited - Disabled) hesse (S-1-5-21-693335309-1784169824-4197453364-1001 - Administrator - Enabled) => C:\Users\hesse ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Disabled - Out of date) {A16C3F68-9280-E053-1818-342707FECF4D} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Benutzerhandbücher (x32 Version: 6.0.0.0 - Lenovo) Hidden f.lux (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Flux) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.104 - Google Inc.) Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10603.192 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4549 - Intel Corporation) Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 2.0.0.1094 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{EA877F2C-A0FB-4379-83D0-734540686C80}) (Version: 17.1.1531.1764 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.11 - Intel(R) Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{795ee3a0-97fa-489a-9543-7564ccc43be4}) (Version: 18.12.0 - Intel Corporation) Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11103 - Realtek Semiconductor Corp.) Lenovo Service Bridge (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 4.0.5.2 - Lenovo) Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0037 - Lenovo) LenovoUtility (HKLM-x32\...\InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 3.0.0.4 - Lenovo) LenovoUtility (x32 Version: 3.0.0.4 - Lenovo) Hidden Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.8201.2102 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.2.0 - Mozilla) Mozilla Thunderbird 52.2.0 (x86 en-US) (HKLM-x32\...\Mozilla Thunderbird 52.2.0 (x86 en-US)) (Version: 52.2.0 - Mozilla) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.8201.2102 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.8201.2102 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.8201.2102 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.8201.2075 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7714 - Realtek Semiconductor Corp.) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) User Manuals (HKLM-x32\...\InstallShield_{7042D952-EE42-4C09-A23D-E7AE4D047007}) (Version: 6.0.0.0 - Lenovo) Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) Windows Repair Toolbox version 1.8.0.2 (HKLM-x32\...\{A8D7DA31-9E70-437D-97C4-C4887752E029}_is1) (Version: 1.8.0.2 - Alexandre Miguel Canotilho Coelho) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {09A830E6-00EF-4D6B-890C-8F489E749289} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.) Task: {23CC4F4E-EACD-4576-A541-354068DCBE04} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-06-18] () Task: {42A4D745-BC38-4EF7-9697-7E1A5C83D09C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-06-10] (Microsoft Corporation) Task: {823ACB67-2EBA-49A2-888D-51CD5051E7D0} - System32\Tasks\Microsoft\Windows\SysResetErrRefresh => C:\WINDOWS\system32\sysreseterr.exe [2017-03-18] (Microsoft Corporation) Task: {A0E447E9-89DF-4413-A9AC-0E47747E6B75} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-03] (Google Inc.) Task: {A295B807-61C2-40AB-9F89-EA5BAED66BA5} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2016-09-10] () Task: {A38F6DA9-02E1-4353-B9C4-DDFF3A2957FC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {A64D31DD-734C-4D1E-A2F9-1B72E8CA59D4} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-06-10] (Microsoft Corporation) Task: {BA85B681-0CAC-43F7-88F9-156B8F660094} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-06-18] () Task: {BA9F3C3D-842D-4504-8DC1-8824DA5DAEDD} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-693335309-1784169824-4197453364-1001 => C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [2017-05-31] (Lenovo Group Limited) Task: {BAF6B143-CD6C-4822-BB94-5987432D2C00} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-03] (Google Inc.) Task: {CDF579EE-8B72-4018-8B1D-A0E3A80C10B6} - System32\Tasks\Microsoft\Windows\SysResetLogFailure => C:\WINDOWS\System32\ResetEngine.exe [2017-03-18] (Microsoft Corporation) Task: {E3D4C0A2-8D0F-454B-948C-B7EBC133A126} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-01] (Lenovo) Task: {F216C382-CD8A-443E-A18B-8AD41BFD4538} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2016-09-10] () Task: {FA8E1213-EEB1-45DF-9A2A-25203B8BC697} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-05-16 04:07 - 2017-05-16 04:07 - 00401912 _____ () C:\WINDOWS\system32\igfxTray.exe 2017-03-18 22:59 - 2017-03-20 06:36 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-09-29 04:51 - 2016-09-29 04:50 - 00791848 _____ () C:\Program Files\Lenovo\LenovoUtility\utility.exe 2016-09-29 04:51 - 2016-09-29 04:50 - 00097048 _____ () C:\Program Files\Lenovo\LenovoUtility\kbdhook.dll 2017-06-15 09:26 - 2016-09-10 12:13 - 00028544 _____ () C:\Program Files (x86)\Lenovo\System Update\SUService.exe 2017-06-22 02:38 - 2017-06-22 02:41 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-06-22 02:38 - 2017-06-22 02:41 - 00203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-06-22 02:38 - 2017-06-22 02:41 - 43454464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-06-22 02:38 - 2017-06-22 02:41 - 02437120 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\skypert.dll 2017-02-26 16:37 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2017-02-26 16:37 - 2014-05-13 13:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2017-02-26 16:37 - 2014-05-13 13:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2017-02-26 16:37 - 2014-05-13 13:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2017-02-26 16:37 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-10-30 09:24 - 2015-10-30 09:21 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img2.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{C3E1336E-2550-424A-90EC-ACA111385246}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{C3E32D8C-EE23-401B-A236-9A4CE9EF7FE4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{D7EF3615-F20B-472A-B146-9ECE85DC2332}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe FirewallRules: [{D0FDD6AD-22F4-4B9D-B3A3-FEB2AE9F36D1}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe FirewallRules: [{E6798A14-3560-4FE2-A30F-8D6697582A24}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (06/24/2017 12:52:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab Name des fehlerhaften Moduls: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000000f2bf ID des fehlerhaften Prozesses: 0x25cc Startzeit der fehlerhaften Anwendung: 0x01d2ecd75afa21d3 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\systemreset.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\systemreset.exe Berichtskennung: 58774a96-2a92-42f9-a52b-314897073aad Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (06/24/2017 12:47:21 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab Name des fehlerhaften Moduls: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000000f2bf ID des fehlerhaften Prozesses: 0x928 Startzeit der fehlerhaften Anwendung: 0x01d2ec8139bd3c9f Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\systemreset.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\systemreset.exe Berichtskennung: 623a7555-edca-45dd-85c4-d316d68b04aa Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (06/22/2017 07:13:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU) Description: Bei der Aktivierung der App „Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (06/22/2017 07:13:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: LAPTOP-9CHC4QNU) Description: Die App „Microsoft.LockApp_10.0.15063.0_neutral__cw5n1h2txyewy+WindowsDefaultLockScreen“ wurde nicht innerhalb der vorgesehenen Zeit gestartet. Error: (06/03/2017 11:22:45 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU) Description: Bei der Aktivierung der App „Microsoft.Microsoft3DViewer_8wekyb3d8bbwe!Microsoft.Microsoft3DViewer“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (06/02/2017 09:52:39 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU) Description: Bei der Aktivierung der App „Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (05/27/2017 06:27:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU) Description: Bei der Aktivierung der App „Microsoft.SkypeApp_kzf8qxf38zg5c!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009280. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147024865. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147024865. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Systemfehler: ============= Error: (06/24/2017 12:41:05 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/22/2017 11:31:25 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/22/2017 12:45:04 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/22/2017 07:18:21 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/22/2017 02:39:44 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/21/2017 12:50:04 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/20/2017 12:56:52 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/18/2017 10:47:32 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/18/2017 07:05:40 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (06/17/2017 10:53:13 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. CodeIntegrity: =================================== Date: 2017-06-24 13:05:05.891 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 13:05:05.888 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 13:05:05.854 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 13:05:05.851 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 12:59:45.379 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 12:59:45.375 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 12:59:45.336 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 12:59:45.333 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 12:44:38.918 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-24 01:04:24.208 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Pentium(R) CPU N3710 @ 1.60GHz Prozentuale Nutzung des RAM: 45% Installierter physikalischer RAM: 3949.04 MB Verfügbarer physikalischer RAM: 2146.59 MB Summe virtueller Speicher: 4653.04 MB Verfügbarer virtueller Speicher: 2394.13 MB ==================== Laufwerke ================================ Drive c: (Windows) (Fixed) (Total:118 GB) (Free:91.21 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: 28AA68E8) Partition: GPT. ==================== Ende von Addition.txt ============================ |
25.06.2017, 20:31 | #3 |
/// Helfer-Team | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Details Du postest Farbar-Logs. Da Du hier nicht neu bist, solltest Du wissen, dass es dafür an anderes Unterforum gibt.
__________________
__________________ |
26.06.2017, 06:14 | #4 |
| Lösung: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Oh tut mir leid. Dachte unter "Log-Analyse und Auswertung" kommen nur malewarebezogene Themen. Wäre ein Admin so nett, den Thread in das richtige Forum zu verschieben? |
26.06.2017, 18:57 | #5 |
/// Helfer-Team | Wie Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Wenn Du glaubst, irgendwelche Schädlinge zu haben, bist Du in der Malwarefraktion richtig. Da sind diese Logs richtig. Wir werten die hier nicht aus.
__________________ LG Der Felix Keine Hilfe per PN und E-Mail |
26.06.2017, 23:01 | #6 |
| Wo Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Lösung! Genau das glaube ich eben nicht, sonst hätte ich das Ganze in das entsprechende Forum gepostet. Daher offensichtlich hier. |
27.06.2017, 18:56 | #7 | |
/// Helfer-Team | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffenZitat:
Warum postest Du neben einer klaren Problembeschreibung keine Fakten zur Hardware, Betriebssystem usw. Wir haben hier keine Lust, uns die erforderlichen Daten aus den Logs herauszusuchen.
__________________ LG Der Felix Keine Hilfe per PN und E-Mail |
27.06.2017, 19:34 | #8 | |
Gesperrt | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffenZitat:
@losprimeros Eine Option für dich wäre meiner Meinung nach: Datensicherung machen, Festplatte formatieren und Windows mit allem Drum und Dran neu zu installieren. |
29.06.2017, 06:30 | #9 |
| Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Dankeschön @purzelbär. |
29.06.2017, 13:33 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst] spybot ist totaler überflüssiger Schrott. Hau das mal runter (mit revo, siehe unten) Danach bitte so ein Log machen --> Zustand der Festplatte herausfinden - so gehts - Anleitungen Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
__________________ Logfiles bitte immer in CODE-Tags posten |
29.06.2017, 13:45 | #11 |
| Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst] Spybot ist weg, Log folgt. Den Neustart des Systems, welcher nach dem Deinstallieren erfolgen sollte, ist auch hier nicht möglich. Code:
ATTFilter ---------------------------------------------------------------------------- CrystalDiskInfo 7.0.5 (C) 2008-2016 hiyohiyo Crystal Dew World : hxxp://crystalmark.info/ ---------------------------------------------------------------------------- OS : Windows 10 [10.0 Build 15063] (x64) Date : 2017/06/29 14:44:41 -- Controller Map ---------------------------------------------------------- + Standardmäßiger SATA AHCI- Controller [ATA] - LITEON CV3-8D128 - Microsoft-Controller für Speicherplätze [SCSI] -- Disk List --------------------------------------------------------------- (1) LITEON CV3-8D128 : 128,0 GB [0/0/0, pd1] - sg ---------------------------------------------------------------------------- (1) LITEON CV3-8D128 ---------------------------------------------------------------------------- Model : LITEON CV3-8D128 Firmware : T876201 Serial Number : SD0L02318L1TH6810GAA Disk Size : 128,0 GB (8,4/128,0/128,0/128,0) Buffer Size : Unbekannt Queue Depth : 32 # of Sectors : 250069680 Rotation Rate : ---- (SSD) Interface : Serial ATA Major Version : ACS-2 Minor Version : ATA/ATAPI-7 T13 1532D version 4a Transfer Mode : SATA/600 | SATA/600 Power On Hours : 230 Std. Power On Count : 349 mal Host Reads : 943 GB Host Writes : 687 GB Temperature : 48 C (118 F) Health Status : Gut (100 %) Features : S.M.A.R.T., 48bit LBA, NCQ, TRIM, DevSleep APM Level : ---- AAM Level : ---- Drive Letter : C: D: -- S.M.A.R.T. -------------------------------------------------------------- ID Cur Wor Thr RawValues(6) Attribute Name 05 100 100 __0 000000000000 Anz. wiederzugewiesener Sektoren 09 100 100 __0 0000000000E6 Betriebsstunden 0C 100 100 __0 00000000015D Anz. Geräte-Einschaltvorgänge AA 100 100 __0 000000000000 Unused Reserved Block Count (Chip) AB 100 100 __0 000000000000 Program Fail Count (Chip) AC 100 100 __0 000000000000 Erase Fail Count (Chip) AD 100 100 __0 000000000002 Wear Leveling Count AE 100 100 __0 000000000003 Unexpected Power Loss Count B2 100 100 __0 000000000000 Benutzte reservierte Blöcke (Chip) B4 100 100 _10 000000000278 Unbenutzte reservierte Blöcke (gesamt) B8 100 100 __0 000000000000 Error Detection BB 100 100 __0 000000000000 Nicht korrigierbare Fehler C2 100 100 __0 000000000030 Temperatur C7 100 100 __0 000000000000 CRC-Fehler E9 100 100 __1 000000000064 Normalized Media Wear-out F1 100 100 __0 0000000002AF LBA geschrieben (gesamt) F2 100 100 __0 0000000003AF LBA gelesen (gesamt) F9 100 100 __0 000000000170 Herstellerspezifisch -- IDENTIFY_DEVICE --------------------------------------------------------- 0 1 2 3 4 5 6 7 8 9 000: 0000 3FFF C837 0010 0000 0000 003F 0000 0000 0000 010: 5344 304C 3032 3331 384C 3154 4836 3831 3047 4141 020: 0000 0000 0000 5438 3736 3230 3120 4C49 5445 4F4E 030: 2043 5633 2D38 4431 3238 2020 2020 2020 2020 2020 040: 2020 2020 2020 2020 2020 2020 2020 8001 4000 2F00 050: 4000 0000 0000 0006 3FFF 0010 003F FC10 00FB 0100 060: C2B0 0EE7 0000 0007 0003 0078 0078 0078 0078 4C20 070: 0000 0000 0000 0000 0000 001F 050E 0086 014C 0040 080: 03FE 0021 346B 7D01 4123 3469 BC01 4123 407F 0001 090: 0001 0000 FFFE 0000 0000 0000 0000 0000 0000 0000 100: C2B0 0EE7 0000 0000 0000 0008 4000 0000 5002 3031 110: 00B0 DCD8 0000 0000 0000 0000 0000 0000 0000 401C 120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000 130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0007 160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0001 170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000 210: 0000 0000 0000 0000 0000 0000 0000 0001 0000 0000 220: 0000 0000 1075 0000 0000 0000 0000 0000 0000 0000 230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 250: 0000 0000 0000 0000 0000 C8A5 -- SMART_READ_DATA --------------------------------------------------------- +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F 000: 01 00 05 32 00 64 64 00 00 00 00 00 00 00 09 32 010: 00 64 64 E6 00 00 00 00 00 00 0C 03 00 64 64 5D 020: 01 00 00 00 00 00 AA 32 00 64 64 00 00 00 00 00 030: 00 00 AB 03 00 64 64 00 00 00 00 00 00 00 AC 03 040: 00 64 64 00 00 00 00 00 00 00 AD 03 00 64 64 02 050: 00 00 00 00 00 00 AE 03 00 64 64 03 00 00 00 00 060: 00 00 B2 32 00 64 64 00 00 00 00 00 00 00 B4 03 070: 00 64 64 78 02 00 00 00 00 00 B8 33 00 64 64 00 080: 00 00 00 00 00 00 BB 32 00 64 64 00 00 00 00 00 090: 00 00 C2 03 00 64 64 30 00 00 00 00 00 00 C7 03 0A0: 00 64 64 00 00 00 00 00 00 00 E9 03 00 64 64 64 0B0: 00 00 00 00 00 00 F1 03 00 64 64 AF 02 00 00 00 0C0: 00 00 F2 03 00 64 64 AF 03 00 00 00 00 00 F9 03 0D0: 00 64 64 70 01 00 00 00 00 00 00 00 00 00 00 00 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 160: 00 00 00 00 00 00 00 00 00 00 00 00 0A 00 00 15 170: 03 00 01 00 02 0B 00 00 00 00 00 00 00 00 00 00 180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 A6 -- SMART_READ_THRESHOLD ---------------------------------------------------- +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F 000: 01 00 05 00 00 00 00 00 00 00 00 00 00 00 09 00 010: 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 00 00 020: 00 00 00 00 00 00 AA 00 00 00 00 00 00 00 00 00 030: 00 00 AB 00 00 00 00 00 00 00 00 00 00 00 AC 00 040: 00 00 00 00 00 00 00 00 00 00 AD 00 00 00 00 00 050: 00 00 00 00 00 00 AE 00 00 00 00 00 00 00 00 00 060: 00 00 B2 00 00 00 00 00 00 00 00 00 00 00 B4 0A 070: 00 00 00 00 00 00 00 00 00 00 B8 00 00 00 00 00 080: 00 00 00 00 00 00 BB 00 00 00 00 00 00 00 00 00 090: 00 00 C2 00 00 00 00 00 00 00 00 00 00 00 C7 00 0A0: 00 00 00 00 00 00 00 00 00 00 E9 01 00 00 00 00 0B0: 00 00 00 00 00 00 EC 01 00 00 00 00 00 00 00 00 0C0: 00 00 F1 00 00 00 00 00 00 00 00 00 00 00 F2 00 0D0: 00 00 00 00 00 00 00 00 00 00 F9 00 00 00 00 00 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 6A |
29.06.2017, 13:53 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst] Die SSD in okay. Du könntest mal das hier machen --> Windows reparieren - so geht's - Anleitungen
__________________ Logfiles bitte immer in CODE-Tags posten |
29.06.2017, 15:14 | #13 |
| Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst] Schritt 3: "no errors found on the drive!" Code:
ATTFilter Microsoft Windows [Version 10.0.15063] (c) 2017 Microsoft Corporation. Alle Rechte vorbehalten. C:\Users\hesse\Desktop>CD /D C:\ C:\>set path=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SystemRoot%\System32\WindowsPowerShell\v1.0 C:\>chkdsk C: Der Typ des Dateisystems ist NTFS. Das Volume wird von einem anderen Prozess benutzt. Chkdsk meldet m”glicherweise Fehler wenn keine Besch„digung vorliegt. Die Volumebezeichnung lautet Windows. WARNUNG! Der Parameter /F wurde nicht angegeben. CHKDSK wird im schreibgeschtzten Modus ausgefhrt. Phase 1: Die Basisdatei-Systemstruktur wird untersucht... Status: 0 von 347136 fertig; Phase: 0%; Insgesamt: 0%; ETA: 0:16:42 Status: 4296 von 347136 fertig; Phase: 1%; Insgesamt: 0%; ETA: 0:16:39 . Status: 17681 von 347136 fertig; Phase: 5%; Insgesamt: 1%; ETA: 0:16:25 .. Status: 29697 von 347136 fertig; Phase: 8%; Insgesamt: 3%; ETA: 0:00:36 ... Status: 44913 von 347136 fertig; Phase: 12%; Insgesamt: 4%; ETA: 0:00:33 Status: 61953 von 347136 fertig; Phase: 17%; Insgesamt: 6%; ETA: 0:00:32 . Status: 77863 von 347136 fertig; Phase: 22%; Insgesamt: 7%; ETA: 0:00:30 .. Status: 89032 von 347136 fertig; Phase: 25%; Insgesamt: 9%; ETA: 0:00:30 ... Status: 96943 von 347136 fertig; Phase: 27%; Insgesamt: 10%; ETA: 0:00:31 Status: 96944 von 347136 fertig; Phase: 27%; Insgesamt: 10%; ETA: 0:00:31 . Status: 108801 von 347136 fertig; Phase: 31%; Insgesamt: 12%; ETA: 0:00:30 .. Status: 114517 von 347136 fertig; Phase: 32%; Insgesamt: 13%; ETA: 0:00:30 ... Status: 118944 von 347136 fertig; Phase: 34%; Insgesamt: 13%; ETA: 0:00:31 Status: 129754 von 347136 fertig; Phase: 37%; Insgesamt: 15%; ETA: 0:00:31 . Status: 141825 von 347136 fertig; Phase: 40%; Insgesamt: 16%; ETA: 0:00:31 .. Status: 177705 von 347136 fertig; Phase: 51%; Insgesamt: 20%; ETA: 0:00:27 ... Status: 211978 von 347136 fertig; Phase: 61%; Insgesamt: 23%; ETA: 0:00:23 Status: 260097 von 347136 fertig; Phase: 74%; Insgesamt: 28%; ETA: 0:00:20 . Status: 271723 von 347136 fertig; Phase: 78%; Insgesamt: 29%; ETA: 0:00:20 .. Status: 304163 von 347136 fertig; Phase: 87%; Insgesamt: 32%; ETA: 0:00:19 ... Status: 319745 von 347136 fertig; Phase: 92%; Insgesamt: 33%; ETA: 0:00:19 Status: 333825 von 347136 fertig; Phase: 96%; Insgesamt: 35%; ETA: 0:00:17 . Status: 347136 von 347136 fertig; Phase: 100%; Insgesamt: 36%; ETA: 0:00:17 .. 347136 Datens„tze verarbeitet. Dateiberprfung beendet. Status: 14068 von 14068 fertig; Phase: 100%; Insgesamt: 28%; ETA: 0:00:24 ... 14068 groáe Datens„tze verarbeitet. Status: 0 von 0 fertig; Phase: 99%; Insgesamt: 28%; ETA: 0:00:24 0 ungltige Datens„tze verarbeitet. Phase 2: Die Dateinamenverknpfung wird untersucht... Status: 7262 von 422102 fertig; Phase: 1%; Insgesamt: 29%; ETA: 0:00:24 . Status: 25814 von 422102 fertig; Phase: 6%; Insgesamt: 30%; ETA: 0:00:24 .. Status: 43717 von 422102 fertig; Phase: 10%; Insgesamt: 32%; ETA: 0:00:23 ... Status: 63368 von 422102 fertig; Phase: 15%; Insgesamt: 33%; ETA: 0:00:23 Status: 87631 von 422102 fertig; Phase: 20%; Insgesamt: 35%; ETA: 0:00:22 . Status: 108847 von 422102 fertig; Phase: 25%; Insgesamt: 37%; ETA: 0:00:22 .. Status: 126644 von 422102 fertig; Phase: 30%; Insgesamt: 38%; ETA: 0:00:20 ... Status: 146293 von 422102 fertig; Phase: 34%; Insgesamt: 40%; ETA: 0:00:20 Status: 189897 von 422102 fertig; Phase: 44%; Insgesamt: 43%; ETA: 0:00:19 . Status: 260232 von 422102 fertig; Phase: 61%; Insgesamt: 48%; ETA: 0:00:15 .. Status: 295643 von 422102 fertig; Phase: 70%; Insgesamt: 51%; ETA: 0:00:14 ... Status: 315993 von 422102 fertig; Phase: 74%; Insgesamt: 53%; ETA: 0:00:14 Status: 340965 von 422102 fertig; Phase: 80%; Insgesamt: 55%; ETA: 0:00:14 . Status: 347149 von 422102 fertig; Phase: 82%; Insgesamt: 59%; ETA: 0:00:14 .. Status: 347902 von 422102 fertig; Phase: 82%; Insgesamt: 59%; ETA: 0:00:12 ... Status: 348596 von 422102 fertig; Phase: 82%; Insgesamt: 60%; ETA: 0:00:12 Status: 349548 von 422102 fertig; Phase: 82%; Insgesamt: 60%; ETA: 0:00:12 . Status: 350883 von 422102 fertig; Phase: 83%; Insgesamt: 61%; ETA: 0:00:12 .. Status: 352055 von 422102 fertig; Phase: 83%; Insgesamt: 61%; ETA: 0:00:12 ... Status: 353057 von 422102 fertig; Phase: 83%; Insgesamt: 62%; ETA: 0:00:12 Status: 353784 von 422102 fertig; Phase: 83%; Insgesamt: 62%; ETA: 0:00:12 . Status: 354751 von 422102 fertig; Phase: 84%; Insgesamt: 63%; ETA: 0:00:12 .. Status: 355437 von 422102 fertig; Phase: 84%; Insgesamt: 63%; ETA: 0:00:12 ... Status: 356665 von 422102 fertig; Phase: 84%; Insgesamt: 65%; ETA: 0:00:12 Status: 357625 von 422102 fertig; Phase: 84%; Insgesamt: 66%; ETA: 0:00:12 . Status: 358426 von 422102 fertig; Phase: 84%; Insgesamt: 67%; ETA: 0:00:11 .. Status: 358762 von 422102 fertig; Phase: 84%; Insgesamt: 70%; ETA: 0:00:11 ... Status: 360207 von 422102 fertig; Phase: 85%; Insgesamt: 70%; ETA: 0:00:11 Status: 362478 von 422102 fertig; Phase: 85%; Insgesamt: 71%; ETA: 0:00:09 . Status: 364738 von 422102 fertig; Phase: 86%; Insgesamt: 72%; ETA: 0:00:09 .. Status: 367532 von 422102 fertig; Phase: 87%; Insgesamt: 73%; ETA: 0:00:09 ... Status: 368296 von 422102 fertig; Phase: 87%; Insgesamt: 78%; ETA: 0:00:09 Status: 369024 von 422102 fertig; Phase: 87%; Insgesamt: 78%; ETA: 0:00:07 . Status: 372175 von 422102 fertig; Phase: 88%; Insgesamt: 78%; ETA: 0:00:07 .. Status: 374376 von 422102 fertig; Phase: 88%; Insgesamt: 79%; ETA: 0:00:07 ... Der Indexeintrag "CHKDSK.EXE-2E757381.pf" im Index "$I30" der Datei "1A42C" ist falsch. Der Indexeintrag "CHKDSK~1.PF" im Index "$I30" der Datei "1A42C" ist falsch. Der Indexeintrag "CMD.EXE-6D6290C5.pf" im Index "$I30" der Datei "1A42C" ist falsch. Der Indexeintrag "CMDEXE~1.PF" im Index "$I30" der Datei "1A42C" ist falsch. Status: 375599 von 422102 fertig; Phase: 88%; Insgesamt: 79%; ETA: 0:00:07 Status: 377066 von 422102 fertig; Phase: 89%; Insgesamt: 80%; ETA: 0:00:07 . Status: 378868 von 422102 fertig; Phase: 89%; Insgesamt: 79%; ETA: 0:00:07 .. Status: 381525 von 422102 fertig; Phase: 90%; Insgesamt: 80%; ETA: 0:00:07 ... Status: 384510 von 422102 fertig; Phase: 91%; Insgesamt: 81%; ETA: 0:00:07 Status: 422102 von 422102 fertig; Phase: 100%; Insgesamt: 81%; ETA: 0:00:07 . 422102 Indexeintr„ge verarbeitet. Indexberprfung beendet. Fehler gefunden. CHKDSK kann im schreibgeschtzten Modus nicht fortgesetzt werden. C:\> Repair ist offensichtlich fertig, habe allerdings keine entsprechende Benachrichtigung oder ähnliches bekommen. Soll ich einen Neustart versuchen oder gibt es irgendwo Logs, welche das Programm hinterlassen hat, welche ich posten sollte? Der Ordner "Log" im Installationspfad von Windows Repair ist auf jeden Fall leer. Danke bis hier hin auf jeden Fall für die Hilfe! Geändert von losprimeros (29.06.2017 um 15:59 Uhr) |
Themen zu Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen |
100%, beginnt, bricht, erreicht, funktionier, funktioniert, gefunde, guten, mehreren, meldung, neustarts, nicht mehr, problem, scan, schlagen, system, systemfehler, tagen, uhrzeit, update, wechsel, wiederherstellung, windows, windows update, zusammen |