|
Log-Analyse und Auswertung: WIN 8.1 Firefox sehr langsam, ingesamt lange LadezeitenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
03.08.2017, 19:55 | #1 |
| WIN 8.1 Firefox sehr langsam, ingesamt lange Ladezeiten Hallo, ich habe seit etwas länger Zeit Probleme mit langen ladezeiten. Insebsondere bei der Nutzung von Firefox. Hier ist teilweise Arbeitsspeicher von über 500 MB belegt. Könnt ihr mir helfen? Einen Zeitraum habe ich nicht wirklich, da ich den Notebook wegen meinem Tablet nur noch selten nutze. Vielen Dank im Voraus! Hier mal mein ESET-File: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 31-07-2017 durchgeführt von admin (Administrator) auf ADMIN-PC (03-08-2017 20:44:34) Gestartet von C:\Users\admin\Downloads Geladene Profile: admin (Verfügbare Profile: admin & Stege & stge) Platform: Windows 8.1 Pro (Update) (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Chip Digital GmbH) C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Baidu Inc.) C:\Program Files (x86)\baidu\Spark\sparkservice.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe\livecomm.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6611048 2011-02-18] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor) HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-11-01] (Intel(R) Corporation) HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [4479648 2011-01-25] (Dell Inc.) HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-06-24] (NVIDIA Corporation) HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [3146704 2017-05-09] (Malwarebytes) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [115048 2011-09-16] (Renesas Electronics Corporation) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-21] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [2881824 2017-01-19] (Valve Corporation) HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\MountPoints2: {62bf4967-6677-11e3-bea0-14feb5ab36e6} - "E:\SETUP.EXE" HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\MountPoints2: {6440bf2f-b385-11e3-beae-14feb5ab36e6} - "F:\AutoRun.exe" HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\MountPoints2: {6440bf53-b385-11e3-beae-14feb5ab36e6} - "F:\AutoRun.exe" HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\MountPoints2: {8aa55514-9f1c-11e3-bead-14feb5ab36e6} - "F:\AutoRun.exe" HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\MountPoints2: {8aa5580b-9f1c-11e3-bead-14feb5ab36e6} - "F:\AutoRun.exe" HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\MountPoints2: {8aa5585d-9f1c-11e3-bead-14feb5ab36e6} - "F:\AutoRun.exe" HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\MountPoints2: {8aa558b7-9f1c-11e3-bead-14feb5ab36e6} - "F:\AutoRun.exe" HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\MountPoints2: {ad589438-2429-11e2-be65-806e6f6e6963} - "D:\cdstart.exe" AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [174856 2014-10-16] (NVIDIA Corporation) AppInit_DLLs: , C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [174856 2014-10-16] (NVIDIA Corporation) AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [156840 2014-10-16] (NVIDIA Corporation) Startup: C:\Users\Stege\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2014-07-29] ShortcutTarget: Dropbox.lnk -> C:\Users\admin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Keine Datei) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{DD5BFDE1-D8E8-4C3F-AAE3-63DBCB0913AF}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.dell.com SearchScopes: HKLM -> DefaultScope Wert fehlt SearchScopes: HKLM-x32 -> DefaultScope Wert fehlt SearchScopes: HKU\S-1-5-21-2550900388-2085430812-1121662502-1000 -> {BFCF292D-A8D5-4F11-AB76-76E263DAC683} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=7b5570ff-c21c-4e28-a7ee-178c05d648ea&apn_sauid=6B51CA17-31B4-46C8-8A39-1343D4E5B459 BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_144\bin\ssv.dll [2017-08-03] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-08-03] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) DPF: HKLM {AA570693-00E2-4907-B6F1-60A1199B030C} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient64.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab FireFox: ======== FF DefaultProfile: h45fy51j.default-1501781265953 FF ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\h45fy51j.default-1501781265953 [2017-08-03] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF => nicht gefunden FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_26_0_0_137.dll [2017-07-12] () FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2013-06-17] (Tracker Software Products (Canada) Ltd.) FF Plugin: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-08-03] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-08-03] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2013-06-17] (Tracker Software Products (Canada) Ltd.) FF Plugin: @videolan.org/vlc,version=2.0.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2012-03-16] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_137.dll [2017-07-12] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] () FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-06-17] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-10-16] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-10-16] (NVIDIA Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-06-17] (Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-2550900388-2085430812-1121662502-1000: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2013-06-17] (Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-2550900388-2085430812-1121662502-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2015-11-28] () FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll [2013-06-17] (Tracker Software Products (Canada) Ltd.) ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 chip1click; C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe [91136 2016-10-27] (Chip Digital GmbH) [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-06-24] (NVIDIA Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4470736 2017-05-09] (Malwarebytes) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-11-01] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1868432 2015-06-24] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376 2015-06-24] (NVIDIA Corporation) R2 SparkSvc; C:\Program Files (x86)\baidu\Spark\sparkservice.exe [86344 2016-02-17] (Baidu Inc.) S3 SparkUpdater; C:\Program Files (x86)\Baidu\SparkUpdate\Sparkupdate.exe [1365832 2016-02-17] (Baidu.com, Inc.) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [283064 2013-12-18] (Disc Soft Ltd) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [77376 2017-05-31] () S3 jnprva; C:\WINDOWS\system32\DRIVERS\jnprva.sys [26480 2012-08-02] (Juniper Networks, Inc.) S3 JnprVaMgr; C:\WINDOWS\system32\DRIVERS\jnprvamgr.sys [45352 2012-08-02] (Juniper Networks, Inc.) R2 MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys [188312 2017-08-03] (Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\system32\drivers\farflt.sys [113592 2017-08-03] (Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\drivers\mbam.sys [44960 2017-08-03] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [252832 2017-08-03] (Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\drivers\mwac.sys [93600 2017-08-03] (Malwarebytes) R1 nvkflt; C:\WINDOWS\system32\DRIVERS\nvkflt.sys [298184 2014-10-16] (NVIDIA Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-06-24] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46768 2015-05-19] (NVIDIA Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation) R2 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-08-03 20:24 - 2017-08-03 20:27 - 000058572 _____ C:\Users\admin\Downloads\Addition.txt 2017-08-03 20:22 - 2017-08-03 20:44 - 000017155 _____ C:\Users\admin\Downloads\FRST.txt 2017-08-03 20:21 - 2017-08-03 20:44 - 000000000 ____D C:\FRST 2017-08-03 20:20 - 2017-08-03 20:20 - 002381312 _____ (Farbar) C:\Users\admin\Downloads\FRST64.exe 2017-08-03 19:42 - 2017-08-03 19:42 - 001525768 _____ C:\Users\admin\Downloads\SpyBot Search Destroy - CHIP-Installer.exe 2017-08-03 19:38 - 2017-08-03 20:40 - 000252832 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2017-08-03 19:38 - 2017-08-03 20:40 - 000188312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMChameleon.sys 2017-08-03 19:38 - 2017-08-03 20:40 - 000113592 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2017-08-03 19:38 - 2017-08-03 20:40 - 000093600 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2017-08-03 19:38 - 2017-08-03 20:40 - 000044960 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2017-08-03 19:37 - 2017-08-03 19:37 - 000001883 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2017-08-03 19:37 - 2017-08-03 19:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-08-03 19:37 - 2017-08-03 19:37 - 000000000 ____D C:\Program Files\Malwarebytes 2017-08-03 19:37 - 2017-05-31 11:09 - 000077376 _____ C:\WINDOWS\system32\Drivers\mbae64.sys 2017-08-03 19:34 - 2017-04-21 23:53 - 000029376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll 2017-08-03 19:34 - 2017-04-21 23:50 - 000030912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll 2017-08-03 19:34 - 2017-04-21 23:50 - 000018592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_clr0400.dll 2017-08-03 19:34 - 2017-04-11 20:27 - 000485576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp120_clr0400.dll 2017-08-03 19:34 - 2017-03-15 20:15 - 000690008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp120_clr0400.dll 2017-08-03 19:33 - 2017-04-21 23:53 - 000018600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll 2017-08-03 19:33 - 2017-04-11 20:27 - 000987840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll 2017-08-03 19:33 - 2017-03-15 20:15 - 000993632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll 2017-08-03 19:27 - 2017-08-03 19:27 - 000000000 ____D C:\Users\admin\Desktop\Alte Firefox-Daten 2017-07-20 20:52 - 2017-07-20 20:52 - 000000000 ____D C:\Users\Stege\Desktop\Alte Firefox-Daten 2017-07-20 20:40 - 2017-07-20 20:48 - 000000000 ____D C:\Users\Stege\Desktop\Annem 2017-07-16 12:49 - 2017-07-16 13:03 - 170041480 _____ C:\Users\stge\Downloads\The Pegging Continues - Russian Horny Girl Fucks Boyfriend and Shares CUM - EroProfile.m4v 2017-07-14 21:34 - 2017-07-14 21:40 - 094270298 _____ C:\Users\stge\Downloads\Kaviar Spende von der Domina PORNOHIRSCHcom.mp4 2017-07-13 22:19 - 2017-06-29 08:27 - 025734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-07-13 22:19 - 2017-06-29 07:44 - 005975552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-07-13 22:19 - 2017-06-29 07:23 - 020270592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-07-13 22:19 - 2017-06-29 06:58 - 015253504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-07-13 22:19 - 2017-06-29 06:52 - 004549632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-07-13 22:19 - 2017-06-29 06:43 - 013663744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-07-13 22:19 - 2017-06-29 06:41 - 001545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-07-13 22:19 - 2017-06-29 06:24 - 001314816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-07-13 22:19 - 2017-06-22 16:22 - 004169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2017-07-13 22:19 - 2017-06-17 18:45 - 003631616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-07-13 22:19 - 2017-06-17 18:34 - 002749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-07-13 22:19 - 2017-06-17 18:11 - 002551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2017-07-13 22:19 - 2017-06-17 18:05 - 001920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2017-07-13 22:19 - 2017-06-15 15:45 - 007440728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-07-13 22:19 - 2017-06-11 23:00 - 000962560 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-07-13 22:19 - 2017-06-11 22:31 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-07-13 22:19 - 2017-06-11 17:15 - 002013528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-07-13 22:19 - 2017-06-03 18:27 - 002346496 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2017-07-13 22:19 - 2017-06-03 18:03 - 001549312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2017-07-13 22:18 - 2017-06-29 08:02 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-07-13 22:18 - 2017-06-29 07:50 - 000817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2017-07-13 22:18 - 2017-06-29 07:23 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-07-13 22:18 - 2017-06-29 07:17 - 001033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2017-07-13 22:18 - 2017-06-29 07:13 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2017-07-13 22:18 - 2017-06-29 07:09 - 000806912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-07-13 22:18 - 2017-06-29 06:53 - 003240960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-07-13 22:18 - 2017-06-29 06:51 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2017-07-13 22:18 - 2017-06-29 06:47 - 000693248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-07-13 22:18 - 2017-06-29 06:29 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2017-07-13 22:18 - 2017-06-29 06:28 - 002767872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-07-13 22:18 - 2017-06-29 06:23 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2017-07-13 22:18 - 2017-06-27 16:29 - 007796736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-07-13 22:18 - 2017-06-27 16:29 - 007077376 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll 2017-07-13 22:18 - 2017-06-27 16:26 - 005274112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll 2017-07-13 22:18 - 2017-06-27 16:26 - 005268992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-07-13 22:18 - 2017-06-16 00:02 - 000990040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2017-07-13 22:18 - 2017-06-15 15:45 - 001674520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2017-07-13 22:18 - 2017-06-15 15:45 - 001534064 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2017-07-13 22:18 - 2017-06-15 15:45 - 001499920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2017-07-13 22:18 - 2017-06-15 15:45 - 001370320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2017-07-13 22:18 - 2017-06-15 15:45 - 000086360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2017-07-13 22:18 - 2017-06-12 02:06 - 000376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2017-07-13 22:18 - 2017-06-12 00:21 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wvc.dll 2017-07-13 22:18 - 2017-06-11 23:43 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe 2017-07-13 22:18 - 2017-06-11 23:25 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wvc.dll 2017-07-13 22:18 - 2017-06-11 23:15 - 001436672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll 2017-07-13 22:18 - 2017-06-11 23:08 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2017-07-13 22:18 - 2017-06-11 23:07 - 000416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx 2017-07-13 22:18 - 2017-06-11 22:58 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe 2017-07-13 22:18 - 2017-06-11 22:40 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll 2017-07-13 22:18 - 2017-06-11 22:35 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2017-07-13 22:18 - 2017-06-06 22:52 - 003120640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2017-07-13 22:18 - 2017-06-06 22:42 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe 2017-07-13 22:18 - 2017-06-06 22:38 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cnvfat.dll 2017-07-13 22:18 - 2017-06-06 22:36 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\uudf.dll 2017-07-13 22:18 - 2017-06-06 22:36 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\convert.exe 2017-07-13 22:18 - 2017-06-06 22:35 - 000517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2017-07-13 22:18 - 2017-06-06 21:13 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll 2017-07-13 22:18 - 2017-06-06 21:11 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll 2017-07-13 22:18 - 2017-06-06 21:11 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutil.dll 2017-07-13 22:18 - 2017-06-06 21:11 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ufat.dll 2017-07-13 22:18 - 2017-06-06 21:11 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\uexfat.dll 2017-07-13 22:18 - 2017-06-06 21:08 - 002712576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2017-07-13 22:18 - 2017-06-06 21:03 - 000837632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe 2017-07-13 22:18 - 2017-06-06 20:59 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cnvfat.dll 2017-07-13 22:18 - 2017-06-06 20:57 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uudf.dll 2017-07-13 22:18 - 2017-06-06 20:56 - 000375296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2017-07-13 22:18 - 2017-06-06 20:03 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ulib.dll 2017-07-13 22:18 - 2017-06-06 20:02 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll 2017-07-13 22:18 - 2017-06-06 20:02 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll 2017-07-13 22:18 - 2017-06-06 20:02 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ufat.dll 2017-07-13 22:18 - 2017-06-06 20:02 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uexfat.dll 2017-07-13 22:18 - 2017-05-31 23:20 - 000470360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2017-07-13 22:18 - 2017-05-16 00:09 - 000057688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2017-07-13 22:18 - 2017-05-15 22:03 - 000379744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2017-07-13 22:18 - 2017-05-09 16:37 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll 2017-07-13 22:18 - 2017-05-09 16:35 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll 2017-07-13 22:18 - 2017-05-09 16:29 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll 2017-07-13 22:18 - 2017-05-09 16:29 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe 2017-07-13 22:18 - 2017-05-09 16:28 - 000193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll 2017-07-13 22:18 - 2017-05-09 16:28 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll 2017-07-13 22:18 - 2017-05-09 16:12 - 000448576 _____ C:\WINDOWS\system32\ApnDatabase.xml 2017-07-13 22:18 - 2017-05-06 18:45 - 001114624 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll 2017-07-13 22:18 - 2017-05-06 18:41 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll 2017-07-13 22:18 - 2017-05-02 22:09 - 000686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2017-07-13 22:18 - 2017-05-02 22:08 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2017-07-13 22:18 - 2017-05-02 22:08 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2017-07-13 22:18 - 2017-05-02 20:41 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscore.dll 2017-07-13 22:18 - 2017-05-02 20:31 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2017-07-13 22:18 - 2017-05-02 20:31 - 000207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\smbwmiv2.dll 2017-07-13 22:18 - 2017-05-02 19:35 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sscore.dll 2017-07-13 22:18 - 2017-04-30 18:48 - 000080078 _____ C:\WINDOWS\system32\normidna.nls 2017-07-13 22:18 - 2017-04-28 03:13 - 001292288 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2017-07-13 22:18 - 2017-04-28 03:11 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe 2017-07-13 22:04 - 2017-05-04 01:11 - 000103600 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2017-07-13 22:04 - 2017-05-03 15:43 - 001555968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-07-13 22:04 - 2017-05-03 15:43 - 001206272 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-07-13 22:04 - 2017-05-03 15:43 - 000620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-07-13 22:04 - 2017-05-03 15:43 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-07-13 22:04 - 2017-05-03 15:43 - 000325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-07-13 22:04 - 2017-05-03 15:43 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\centel.dll 2017-07-13 22:04 - 2017-05-03 15:43 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2017-07-13 22:04 - 2017-05-03 15:43 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-08-03 20:45 - 2017-01-22 12:08 - 000000000 ____D C:\Users\admin\AppData\LocalLow\Mozilla 2017-08-03 20:43 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\Inf 2017-08-03 20:43 - 2012-04-09 20:22 - 000000000 ____D C:\Program Files (x86)\Steam 2017-08-03 20:42 - 2013-11-21 17:50 - 000000000 ___RD C:\Users\admin\SkyDrive 2017-08-03 20:40 - 2013-11-06 10:54 - 000000375 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2017-08-03 20:40 - 2013-09-30 05:56 - 000766480 _____ C:\WINDOWS\system32\perfh007.dat 2017-08-03 20:40 - 2013-09-30 05:56 - 000159704 _____ C:\WINDOWS\system32\perfc007.dat 2017-08-03 20:40 - 2013-08-22 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-08-03 20:40 - 2012-04-09 19:19 - 000000000 ____D C:\ProgramData\NVIDIA 2017-08-03 20:39 - 2013-08-22 15:25 - 000524288 ___SH C:\WINDOWS\system32\config\BBI 2017-08-03 20:32 - 2009-07-14 04:34 - 000000478 _____ C:\WINDOWS\win.ini 2017-08-03 20:21 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\AppReadiness 2017-08-03 20:08 - 2015-07-16 20:59 - 000000000 ____D C:\Users\admin\AppData\Local\CrashDumps 2017-08-03 20:00 - 2012-07-26 09:59 - 000000000 ____D C:\WINDOWS\CbsTemp 2017-08-03 19:47 - 2012-11-01 16:13 - 000003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2550900388-2085430812-1121662502-1000 2017-08-03 19:37 - 2013-05-10 18:02 - 000000000 ____D C:\ProgramData\Malwarebytes 2017-08-03 19:32 - 2014-07-23 20:17 - 000000000 ____D C:\ProgramData\Oracle 2017-08-03 19:31 - 2014-07-23 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-08-03 19:30 - 2014-07-23 20:17 - 000110144 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2017-08-03 19:30 - 2014-07-23 20:17 - 000000000 ____D C:\Program Files\Java 2017-08-03 13:31 - 2016-12-12 16:26 - 000000000 ____D C:\Users\stge\AppData\LocalLow\Mozilla 2017-07-30 12:41 - 2012-04-10 19:37 - 000000000 ____D C:\Users\stge\AppData\Roaming\vlc 2017-07-30 12:26 - 2013-09-30 06:14 - 001776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-07-22 11:13 - 2016-04-28 18:51 - 000003584 _____ C:\Users\stge\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2017-07-20 21:57 - 2012-11-01 16:47 - 000003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2550900388-2085430812-1121662502-1003 2017-07-20 21:13 - 2013-11-21 17:14 - 000000000 ____D C:\Users\stge 2017-07-20 21:02 - 2017-01-10 21:23 - 000000000 ____D C:\Users\Stege\AppData\LocalLow\Mozilla 2017-07-20 20:57 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps 2017-07-20 20:50 - 2012-05-26 12:36 - 000000000 ____D C:\Users\Stege\AppData\Roaming\vlc 2017-07-14 22:28 - 2013-08-22 16:44 - 000482920 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-07-14 22:24 - 2017-05-22 17:25 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-07-14 22:24 - 2012-05-29 20:18 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-07-14 22:19 - 2015-04-16 21:15 - 000000000 ____D C:\WINDOWS\system32\appraiser 2017-07-14 20:38 - 2013-07-23 13:14 - 000000000 ____D C:\WINDOWS\system32\MRT 2017-07-14 20:31 - 2012-04-09 19:41 - 135225752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-07-13 22:04 - 2017-04-16 13:54 - 000000000 ____D C:\Users\stge\Desktop\v-amat 2017-07-12 14:07 - 2012-07-06 15:38 - 000004366 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2017-07-12 14:06 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2017-07-12 14:06 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\Macromed ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-10-14 20:00 - 2015-10-14 20:00 - 005082084 _____ (The Public) C:\Users\admin\AppData\Roaming\Avisynth.exe 2015-10-14 20:00 - 2015-10-14 20:00 - 005243208 _____ ( ) C:\Users\admin\AppData\Roaming\AvsP.exe 2015-10-14 20:00 - 2015-10-14 20:00 - 002169915 _____ (LIGHTNING UK!) C:\Users\admin\AppData\Roaming\Imgburn.exe 2015-10-14 20:00 - 2015-10-14 20:00 - 001357348 _____ () C:\Users\admin\AppData\Roaming\MatroskaSplitter.exe 2015-10-14 20:00 - 2015-10-14 20:00 - 007760687 _____ (Boraxsoft) C:\Users\admin\AppData\Roaming\SetupGFD.exe 2015-10-14 20:00 - 2015-10-14 20:00 - 000117723 _____ () C:\Users\admin\AppData\Roaming\yuvcodecs-1.3.exe Einige Dateien in TEMP: ==================== 2014-03-24 20:39 - 2009-08-23 04:43 - 000206336 ____R (Huawei Technologies Co., Ltd.) C:\Users\admin\AppData\Local\Temp\DataCard_Setup64.exe 2016-03-12 21:36 - 2016-03-12 21:36 - 001140416 _____ (Gefesori ) C:\Users\admin\AppData\Local\Temp\ICReinstall_CR_Downloader_fuer_break-point-tennis.exe 2017-01-22 12:12 - 2017-01-22 12:12 - 000739904 _____ (Oracle Corporation) C:\Users\admin\AppData\Local\Temp\jre-8u121-windows-au.exe 2017-08-03 19:29 - 2017-08-03 19:29 - 000740416 _____ (Oracle Corporation) C:\Users\admin\AppData\Local\Temp\jre-8u144-windows-au.exe 2013-08-29 19:29 - 2013-08-29 19:29 - 001343840 _____ (NVIDIA Corporation) C:\Users\admin\AppData\Local\Temp\nvSCPAPI64.dll 2013-11-29 19:17 - 2013-11-11 09:59 - 000808224 _____ (NVIDIA Corporation) C:\Users\admin\AppData\Local\Temp\nvStInst.exe 2014-03-24 20:39 - 2008-02-20 23:16 - 000007168 ____R () C:\Users\admin\AppData\Local\Temp\ResetDevice.exe 2016-03-13 15:48 - 2016-03-13 15:48 - 052447392 _____ () C:\Users\admin\AppData\Local\Temp\spark_install.exe 2016-12-24 14:27 - 2016-12-24 14:27 - 000043008 _____ () C:\Users\Stege\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpja9kou.dll 2014-01-11 11:22 - 2015-06-13 15:25 - 000000000 ____D () C:\Users\Stege\AppData\Local\Temp\~DEMO_D.EXE 2016-10-23 13:50 - 2016-10-23 13:50 - 000737856 _____ (Oracle Corporation) C:\Users\stge\AppData\Local\Temp\jre-8u111-windows-au.exe 2017-05-22 17:51 - 2017-05-22 17:51 - 000739904 _____ (Oracle Corporation) C:\Users\stge\AppData\Local\Temp\jre-8u131-windows-au.exe 2017-07-20 21:18 - 2017-07-20 21:18 - 000739904 _____ (Oracle Corporation) C:\Users\stge\AppData\Local\Temp\jre-8u141-windows-au.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-07-20 21:57 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 31-07-2017 durchgeführt von admin (03-08-2017 20:47:24) Gestartet von C:\Users\admin\Downloads Windows 8.1 Pro (Update) (X64) (2013-11-21 15:46:55) Start-Modus: Normal ========================================================== ==================== Konten: ============================= admin (S-1-5-21-2550900388-2085430812-1121662502-1000 - Administrator - Enabled) => C:\Users\admin Administrator (S-1-5-21-2550900388-2085430812-1121662502-500 - Administrator - Disabled) Gast (S-1-5-21-2550900388-2085430812-1121662502-501 - Limited - Enabled) Stege (S-1-5-21-2550900388-2085430812-1121662502-1002 - Limited - Enabled) => C:\Users\Stege stge (S-1-5-21-2550900388-2085430812-1121662502-1003 - Limited - Enabled) => C:\Users\stge ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.137 - Adobe Systems Incorporated) Age of Empires II: HD Edition (HKLM-x32\...\Steam App 221380) (Version: - Hidden Path Entertainment, Ensemble Studios) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) aTube Catcher (HKLM-x32\...\aTube Catcher) (Version: 3.8.5187 - DsNET Corp) aTube Catcher Version 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp) AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.2 - GPL Public release.) AvsP (HKLM-x32\...\AvsP_is1) (Version: - ) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Call of Duty: Ghosts - Multiplayer (HKLM-x32\...\Steam App 209170) (Version: - ) Call of Duty: Ghosts (HKLM-x32\...\Steam App 209160) (Version: - Infinity Ward) Call of Duty: Modern Warfare 2 - Multiplayer (HKLM-x32\...\Steam App 10190) (Version: - Infinity Ward) Call of Duty: Modern Warfare 3 - Dedicated Server (HKLM-x32\...\Steam App 42750) (Version: - Infinity Ward - Sledgehammer Games) Call of Duty: Modern Warfare 3 - Multiplayer (HKLM-x32\...\Steam App 42690) (Version: - Infinity Ward - Sledgehammer Games) Call of Duty: Modern Warfare 3 (HKLM-x32\...\Steam App 42680) (Version: - Infinity Ward - Sledgehammer Games) CCleaner (HKLM\...\CCleaner) (Version: 4.04 - Piriform) chip 1-click download service (HKLM-x32\...\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}) (Version: 3.6.9.0 - Chip Digital GmbH) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Driver San Francisco (HKLM-x32\...\Driver San Francisco) (Version: 1.4.0.0 - Ubisoft) DVD slideshow GUI 0.9.5.4 (HKLM-x32\...\BE37E547-62DF-43C8-AE6A-D03E82BC67A2_is1) (Version: 0.9.5.4 - Tin2tin) erLT (HKLM-x32\...\{A498D9EB-927B-459B-85D6-DD6EF8C2C564}) (Version: 1.20.0137 - Logitech, Inc.) Hidden Euro Truck Simulator 2 (HKLM-x32\...\{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1) (Version: 1.1.1 - SCS Software) Farming Simulator 17 (HKLM-x32\...\FarmingSimulator2017_is1) (Version: 1.0.0.0 - GIANTS Software) Fotogalerie (HKLM-x32\...\{0FD66C6F-4023-4C74-AF8E-9B8B2053868E}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden GIANTS Editor 5.0.3 64-bit (HKLM-x32\...\giants_editor_5.0.3_win64_is1) (Version: 5.0.3 - GIANTS Software GmbH) GTA2 (HKLM-x32\...\{2987EE84-C4EE-4FF5-8160-32DE00D6ABC6}) (Version: 1.00.001 - ) GUI for dvdauthor 1.07 (HKLM-x32\...\GUI for dvdauthor) (Version: 1.07 - Boraxsoft) Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - ) Helix YUV Codecs (remove only) (HKLM-x32\...\HelixYUVCodecs) (Version: - ) HTML.Browser.Framework 3.5.3 (x86) (HKLM-x32\...\{1F72CAE2-C089-4B2A-A0AD-526AE6A21B16}) (Version: 353.01.01 - Dr. Schiller & Partner GmbH) Intel PROSet Wireless (HKLM-x32\...\ProInst) (Version: - ) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation) Intel(R) PROSet/Wireless WiFi-Software (HKLM\...\{D61E4101-9E15-4D0E-ABD1-1ABD36B43330}) (Version: 14.03.0000 - Intel Corporation) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) Java 8 Update 144 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180144F0}) (Version: 8.0.1440.1 - Oracle Corporation) Juniper Networks, Inc. Setup Client (HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\...\Juniper_Setup_Client) (Version: 7.2.4.25005 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Landwirtschafts Simulator 15 (HKLM-x32\...\FarmingSimulator2015DE_is1) (Version: 1.4.2.0 - GIANTS Software) Landwirtschafts Simulator 2011 (HKLM-x32\...\FarmingSimulator2011DE_is1) (Version: 1.0 - GIANTS Software) Landwirtschafts Simulator 2013 (HKLM-x32\...\FarmingSimulator2013DE_is1) (Version: 1.0 - GIANTS Software) Landwirtschafts Simulator 2013 Demo (HKLM-x32\...\FarmingSimulator2013DemoDE_is1) (Version: 1.0 - GIANTS Software) Logitech Unifying-Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech) Malwarebytes Version 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0407-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM-x32\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visio Professional 2010 (HKLM-x32\...\Office14.VISIOR) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (HKLM-x32\...\{45898170-E68C-4F02-AA35-C2186BF347A3}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{6066D3FE-3692-4449-A3C8-D1EAA2C0E9E7}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 54.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 de)) (Version: 54.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla) Mp3tag v2.55 (HKLM-x32\...\Mp3tag) (Version: v2.55 - Florian Heidenreich) NVIDIA 3D Vision Treiber 344.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 344.48 - NVIDIA Corporation) NVIDIA GeForce Experience 2.4.5.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.57 - NVIDIA Corporation) NVIDIA Grafiktreiber 344.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.48 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) ORCA AVA Testversion (HKLM-x32\...\{42462BFB-4BAC-4A0B-AAD9-97E8663B355B}) (Version: 19.0.9.17 - ORCA Software GmbH) PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.211.0 - Tracker Software Products Ltd) PDF-XChange Viewer (HKLM\...\{9ED333F8-3E6C-4A38-BAFA-728454121CDA}) (Version: 2.5.201.0 - Tracker Software Products Ltd.) Power8 (HKLM-x32\...\{AEE2067B-73CC-4322-AF5A-1DA86E448E26}) (Version: 1.4.4.628 - Power8 team) ProTrain Perfect 2 (HKLM-x32\...\AuranTS2009_ptp2_is1) (Version: - Auran) Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.0.10 - Dell Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6312 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.27.0 - Renesas Electronics Corporation) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.27.0 - Renesas Electronics Corporation) Risky Woods (HKLM-x32\...\Risky Woods_is1) (Version: - GameFabrique) SCANIA Truck Driving Simulator 1.0.0 (HKLM-x32\...\SCANIA Truck Driving Simulator) (Version: 1.0.0 - SCS Software) Secure Download Manager (HKLM-x32\...\{E98D115E-D621-4723-8AF0-147BADA9A466}) (Version: 3.1.40 - Kivuto Solutions Inc.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0057-0000-0000-0000000FF1CE}_Office14.VISIOR_{359ADBEC-068A-4CC9-9174-77AB8EDB867A}) (Version: - Microsoft) SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 4.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.4.5.57 - NVIDIA Corporation) Hidden Spark Browser (HKLM-x32\...\Spark) (Version: 40.14 Preview - Baidu Japan Inc.) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) STLB-Bau Check 2013-10 (HKLM-x32\...\{6615B188-7580-4759-B4DF-013284F7EA43}) (Version: 13.10.0002 - Dr. Schiller & Partner GmbH) STLB-Bau XML V2 - Einzelplatz, Server (HKLM-x32\...\{7793AA67-9CDC-4CCF-AFC3-C0D85B41FD64}) (Version: 13.10.0012 - DIN Deutsches Institut für Normung) TmNationsForever (HKLM-x32\...\TmNationsForever_is1) (Version: - Nadeo) TmUnitedForever (HKLM-x32\...\TmUnitedForever_is1) (Version: - Nadeo) Uplay (HKLM-x32\...\Uplay) (Version: 14.0 - Ubisoft) VLC media player 2.0.1 (HKLM\...\VLC media player) (Version: 2.0.1 - VideoLAN) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) WinRAR 4.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2550900388-2085430812-1121662502-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Stege\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2550900388-2085430812-1121662502-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2550900388-2085430812-1121662502-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2550900388-2085430812-1121662502-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2550900388-2085430812-1121662502-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ContextMenuHandlers1: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2013-04-20] (Florian Heidenreich) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-02-17] () ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2012-02-17] () ContextMenuHandlers2: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2013-04-20] (Florian Heidenreich) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers4: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2013-04-20] (Florian Heidenreich) ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-02-17] () ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2012-02-17] () ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\WINDOWS\system32\igfxpph.dll [2014-01-30] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2014-10-16] (NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-02-17] () ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2012-02-17] () ContextMenuHandlers1_S-1-5-21-2550900388-2085430812-1121662502-1000: [DropboxExt] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ContextMenuHandlers4_S-1-5-21-2550900388-2085430812-1121662502-1000: [DropboxExt] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ContextMenuHandlers5_S-1-5-21-2550900388-2085430812-1121662502-1000: [DropboxExt] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stege\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {026EB826-857F-4EA4-9A3E-1001E8DA9E80} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {03DA7705-42F8-412C-A89F-6C587D9FCF46} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {0AF71F58-940B-43CA-B297-BE7E25AE9BBE} - System32\Tasks\{F2D3CAA7-44E4-49E3-82B2-590A0CD15842} => C:\Windows\system32\pcalua.exe -a "C:\program files (x86)\avira\antivir desktop\setup.exe" -d C:\Windows\SysWOW64 -c /MODIFY Task: {1207FF3E-3A69-4B02-A9DE-579911EDBEA2} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {182539C2-3E59-406B-B6DA-C0CCF20BAA0A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {182664BB-5F52-4710-B115-DE5B2728B054} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2095AC4A-7424-4A2F-96B6-A3A1C7AAD9A8} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {246178F4-B1C9-47B6-A1D3-E9299FF52442} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {31D5EFF8-813C-44C2-932F-9B39312B0344} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {48D14430-EB00-4AA7-B998-3CD6D093A04E} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {5C30A2BE-23BC-4F2B-B54E-F524BF56725C} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {5FBA6AFC-BB1E-4C88-9919-400A57F69608} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-07-12] (Adobe Systems Incorporated) Task: {63269F41-0C84-40ED-B8E6-311B6BF192CA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd) Task: {794C6459-D859-4146-8AC5-E38205221EDC} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: {87307FD9-9078-408A-BC3D-6972AB734DA3} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {8F589F96-2B53-4F91-98F4-7410945BF7E0} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {92CBE8F9-A941-4E18-85E3-A2C083FED8F1} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {97658325-C3C8-46A0-B7C2-8463B9769392} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A9B3B957-C33D-49F0-954E-8C57BA20BB0A} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B6970459-5590-4F2C-945C-77E5251B91DC} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {C19C3C8C-E60D-45C7-9A4B-F5689772A032} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C2365E47-8719-47A8-B1FE-2840B27F7D65} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C4EF786A-F3CE-4A93-8F7E-0EDAC6A48D86} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {D2AC7817-B0BC-4584-8F62-4FA5A5DCB865} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D472317D-ED0C-428A-A53B-E2F96592FD7D} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {D6F5423F-BF64-4D22-A4AC-0D3E1D62FE06} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {E5A85266-8676-44A7-9FA4-C0C94A2E0F02} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {EB020ACF-B6B8-4E93-B5A7-4207DB727C17} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {F87B02A7-A688-424B-983C-5BDC473B97EC} - System32\Tasks\SparkUpdater => C:\Program Files (x86)\baidu\Spark\SparkUpdate.exe [2016-02-17] (Baidu.com, Inc.) Task: {FBA0FF59-AC7A-4A11-B169-58C9C51090BA} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-07-14] (Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2013-11-21 17:10 - 2014-10-16 16:11 - 000116880 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2011-11-01 12:58 - 2011-11-01 12:58 - 001501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll 2017-08-03 19:37 - 2017-05-31 11:09 - 002270664 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2012-12-14 03:42 - 2012-12-14 03:42 - 000094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-02-12 20:58 - 2014-02-12 20:58 - 000073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-10-11 14:05 - 2014-10-11 14:05 - 001044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 15:25 - 2014-01-09 18:23 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2550900388-2085430812-1121662502-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Dell\Win7 LtBlue 1920x1200.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk" HKLM\...\StartupApproved\StartupFolder: => "WISO Mein Steuer-Sparbuch heute.lnk" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "iTunesHelper" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{CAA06E1F-FA3C-4CEF-9CA8-35F215362E9F}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{BA41669E-62B2-42D6-8A27-2ECC9E52E907}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{BA50A168-14D2-46BD-9A1B-D11E73960FE3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [UDP Query User{B15484B5-6F3A-41D8-AE13-9E4CE93BD8CD}C:\program files (x86)\tmunitedforever\tmforever.exe] => (Allow) C:\program files (x86)\tmunitedforever\tmforever.exe FirewallRules: [TCP Query User{8DDE72CA-3E89-41AE-859A-14D56A0A4E71}C:\program files (x86)\tmunitedforever\tmforever.exe] => (Allow) C:\program files (x86)\tmunitedforever\tmforever.exe FirewallRules: [UDP Query User{8265FCFA-BFB6-4866-A0B8-880C6A90EFFF}C:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) C:\program files (x86)\tmnationsforever\tmforever.exe FirewallRules: [TCP Query User{3F89C343-B6D5-4379-80BA-36A85890F3D2}C:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) C:\program files (x86)\tmnationsforever\tmforever.exe FirewallRules: [{31943BB7-F8EE-48B7-9B57-52AF02AF367E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5sp.exe FirewallRules: [{7AD064AE-FAB6-46B8-BCCF-F1E14D258495}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5sp.exe FirewallRules: [{E28AFFAE-AC1B-438B-9C00-B46DB7444245}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp_server.exe FirewallRules: [{FB812413-455E-44FC-BFB4-C09D0770D9C9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp_server.exe FirewallRules: [{B6A59586-A40E-428C-956B-A7C7082A7E45}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{9B6F7322-2CE1-4EC4-B34B-5E77114161E8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [UDP Query User{4EC950F6-AC36-4004-BD0D-5573EB56F3D8}C:\users\stege\desktop\call of duty 4\iw3mp.exe] => (Block) C:\users\stege\desktop\call of duty 4\iw3mp.exe FirewallRules: [TCP Query User{E5181FEA-487E-4FA0-8CD0-01E5628CCDDC}C:\users\stege\desktop\call of duty 4\iw3mp.exe] => (Block) C:\users\stege\desktop\call of duty 4\iw3mp.exe FirewallRules: [{56037FA5-C785-414B-BB7A-C93666381EB3}] => (Allow) C:\Program Files (x86)\Ubisoft\Driver San Francisco\Driver.exe FirewallRules: [{72F579A2-5500-44B5-8EBD-E696B57C1D19}] => (Allow) C:\Program Files (x86)\Ubisoft\Driver San Francisco\Driver.exe FirewallRules: [{CF4AD0E1-A312-4361-B681-9D44A331143C}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe FirewallRules: [{2623B7F4-2B65-4222-B4A6-1CFAA15003F4}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe FirewallRules: [{34D97039-B6B2-4B60-B174-28A259EF18C4}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2011\game.exe FirewallRules: [{3E1CE415-CDF7-4D33-87D5-EC991798240A}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2011\game.exe FirewallRules: [{F56F8B94-D1EE-4583-9955-DAA1154C4AC9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A30537DC-E97C-450B-A78F-3F0B57A116C1}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{4F251298-1AB8-4048-83CA-638437D45912}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{AA794EEF-C4FC-4F76-8C94-63C934FFA46C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [TCP Query User{05520945-01CA-4BFA-85E6-705C7C11AB6D}C:\program files (x86)\dsnet corp\atube catcher 2.0\yct.exe] => (Block) C:\program files (x86)\dsnet corp\atube catcher 2.0\yct.exe FirewallRules: [UDP Query User{183C5AAA-7E35-41F2-AA68-6E0E421FAEA0}C:\program files (x86)\dsnet corp\atube catcher 2.0\yct.exe] => (Block) C:\program files (x86)\dsnet corp\atube catcher 2.0\yct.exe FirewallRules: [{BF3D9342-2679-47AF-B692-59BA804B8A4D}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013 Demo\FarmingSimulator2013.exe FirewallRules: [{A686B47F-E6ED-495B-9127-490BAA610F09}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013 Demo\FarmingSimulator2013.exe FirewallRules: [{7D0CB035-0E73-4872-A1A2-4130AD5788FB}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013 Demo\FarmingSimulator2013Game.exe FirewallRules: [{5A5693F9-02F9-4946-8024-80CF7ED4A5CC}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013 Demo\FarmingSimulator2013Game.exe FirewallRules: [{9FEAE47D-77B7-4BD5-8C05-AA0203D100F7}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013\FarmingSimulator2013.exe FirewallRules: [{95D0A3BC-BF6A-4F4D-B43F-6EA0B1E9958F}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013\FarmingSimulator2013.exe FirewallRules: [{C2B061AF-311C-4C0F-9A50-572B74090182}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013\FarmingSimulator2013Game.exe FirewallRules: [{647B0051-4DB8-4FC3-B165-E89A678440E9}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013\FarmingSimulator2013Game.exe FirewallRules: [{A2477492-5FA8-4112-949D-B0468180931C}] => (Allow) C:\Users\Stege\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{ECB733FE-0BEA-436C-A9B3-482D6313CBF0}] => (Allow) C:\Users\Stege\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{CC697165-0541-4D0C-A901-22FDB0A20479}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{783598FA-79AB-42DE-89DA-3EC2C9A14F26}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{CC08BF0E-D380-4CD8-90B6-D3B46B1DBCB0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{EC5499F4-5120-4A03-9DB8-0AD445EEB344}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{4AA9B274-3899-4A4B-B95D-5B74D5D234AC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe FirewallRules: [{BE746E78-07EB-48FA-B160-2AAF86109199}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe FirewallRules: [{B05728AD-7BD7-4E0D-BFA5-8C33A8AE137E}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013\x64\FarmingSimulator2013Game.exe FirewallRules: [{16C671EB-B793-4FF1-98D8-687E21A328AE}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013\x64\FarmingSimulator2013Game.exe FirewallRules: [{C35CA3A8-B889-48F2-B64A-DDC7DE257C2C}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013\x86\FarmingSimulator2013Game.exe FirewallRules: [{660F19B7-B81A-486C-B9DE-643CA649265F}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2013\x86\FarmingSimulator2013Game.exe FirewallRules: [{81EA11AE-38A4-4684-B724-CD0B7C54F0C0}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{0152B707-9033-4893-AEA3-6093E7B5EC87}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{8E8018D7-0C21-4292-942D-2C78EE2F747D}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{BE836594-6F4E-4D8A-AE36-4B301C225D76}] => (Allow) LPort=2869 FirewallRules: [{42DA07B9-600E-43FF-AA5C-31E03E94D0B4}] => (Allow) LPort=1900 FirewallRules: [{72B72CFF-235E-4D1C-8D75-EB3F4FB84EDD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Call of Duty Ghosts\iw6sp64_ship.exe FirewallRules: [{41C768CE-B055-4C24-BEA1-233C9FFC500F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Call of Duty Ghosts\iw6sp64_ship.exe FirewallRules: [{AD94DE9A-85DC-4ECC-BFCC-114A8C18F8BB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Call of Duty Ghosts\iw6mp64_ship.exe FirewallRules: [{603A8F1D-238F-43AC-B64B-2491BD04FAAA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Call of Duty Ghosts\iw6mp64_ship.exe FirewallRules: [{ED01A63E-D11F-4081-BAC5-11BAD39BEF4C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age2HD\Launcher.exe FirewallRules: [{B81BD98D-78FA-48A2-8DF2-06C9374FE0F1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age2HD\Launcher.exe FirewallRules: [{600F4FF7-5DEB-4E6D-9A19-43022B8BA8C6}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{98BE2391-EF97-429D-A17A-478D2FB41569}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{8A830D83-90ED-484C-B5BD-39A090A33E79}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{8B907069-A6CA-4FEA-BBB5-D33331F38040}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{EF83643F-46AA-4504-B224-5E87492A66FA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9943F438-3D24-44A5-BB95-2B7CE0E62485}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{BC8B5588-5D30-44DB-A642-3EECE1887E71}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{0729F820-202A-4ED5-A439-3341A707AC8A}] => (Allow) C:\Program Files (x86)\baidu\Spark\Spark.exe FirewallRules: [{0771422C-8929-4629-BB00-F2D74CB879F1}] => (Allow) C:\Program Files (x86)\baidu\Spark\Spark.exe FirewallRules: [{E9B1849D-AD79-4D8A-979B-67815116684B}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{FC96F374-61BD-4330-9C5E-1D23AD4E412E}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{2A24BCC0-D372-49F7-8B95-8E52C4546971}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{FBA3BAF7-FDA6-4211-9483-E1F9BA18C16F}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{000C4D55-BCCF-4DE5-B7E1-EA3CEB34CF03}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{27521550-A139-4E35-9992-BA49477F0962}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{2021C069-EBC2-4D45-A291-D0CD31F48E11}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\FarmingSimulator2017.exe FirewallRules: [{3A256498-BAA4-4B43-A35B-AD6FFBF3A354}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\FarmingSimulator2017.exe FirewallRules: [{CF88B10A-47FC-4D2A-B942-6725316347D6}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\x86\FarmingSimulator2017Game.exe FirewallRules: [{32CDB8F9-CAB8-4D8B-B97A-25A4D03D82CB}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\x86\FarmingSimulator2017Game.exe FirewallRules: [{8110DBB6-E253-409B-9FB0-50563AB5DF34}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\x64\FarmingSimulator2017Game.exe FirewallRules: [{B2E83D50-4A1D-4AA6-96BD-656344A024ED}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\x64\FarmingSimulator2017Game.exe FirewallRules: [{096B7BAB-4799-424F-A262-6DEAD9BC30E6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{2E9F63AB-5F5F-4C32-A80B-E88E3B7A1808}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [TCP Query User{54226E23-072E-4A90-8C20-68C9C3491B9D}C:\users\stege\desktop\call of duty 4 - modern warfare\iw3mp.exe] => (Block) C:\users\stege\desktop\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [UDP Query User{C41D014C-738E-4F73-9653-869CC4E4447C}C:\users\stege\desktop\call of duty 4 - modern warfare\iw3mp.exe] => (Block) C:\users\stege\desktop\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [TCP Query User{C9CAE5D6-114D-4C7D-A3F2-6AA7D2C32C8B}C:\users\stege\desktop\call of duty 4 - modern warfare1\iw3mp.exe] => (Allow) C:\users\stege\desktop\call of duty 4 - modern warfare1\iw3mp.exe FirewallRules: [UDP Query User{47C65585-33D4-4F79-8E62-4CB6BB8966D1}C:\users\stege\desktop\call of duty 4 - modern warfare1\iw3mp.exe] => (Allow) C:\users\stege\desktop\call of duty 4 - modern warfare1\iw3mp.exe FirewallRules: [TCP Query User{60E5897F-E8A0-4E15-9D3B-990C20EF3819}F:\call of duty 4 - modern warfare1\iw3mp.exe] => (Block) F:\call of duty 4 - modern warfare1\iw3mp.exe FirewallRules: [UDP Query User{150DA906-0141-45FC-85AE-E2382D09A6FC}F:\call of duty 4 - modern warfare1\iw3mp.exe] => (Block) F:\call of duty 4 - modern warfare1\iw3mp.exe FirewallRules: [TCP Query User{4D59F84A-61C0-414E-A417-F39FE450C0DC}C:\users\admin\desktop\call of duty 4\iw3mp.exe] => (Allow) C:\users\admin\desktop\call of duty 4\iw3mp.exe FirewallRules: [UDP Query User{7AED10FE-38EA-4943-AEBB-EC7AEA4ED603}C:\users\admin\desktop\call of duty 4\iw3mp.exe] => (Allow) C:\users\admin\desktop\call of duty 4\iw3mp.exe FirewallRules: [TCP Query User{EDD262C8-1466-47B2-A53D-905D773F8E9D}F:\call of duty-1.5\codmp.exe] => (Block) F:\call of duty-1.5\codmp.exe FirewallRules: [UDP Query User{0C6F46A4-0CBB-48D4-B642-340F93A3C8C8}F:\call of duty-1.5\codmp.exe] => (Block) F:\call of duty-1.5\codmp.exe FirewallRules: [TCP Query User{BE0AB2E2-C293-422F-93FB-F5DFE34D5639}C:\users\admin\desktop\flatout 2\flatout2.exe] => (Block) C:\users\admin\desktop\flatout 2\flatout2.exe FirewallRules: [UDP Query User{6A5EF853-6A2E-4624-8E62-6744B7BBBB0E}C:\users\admin\desktop\flatout 2\flatout2.exe] => (Block) C:\users\admin\desktop\flatout 2\flatout2.exe FirewallRules: [TCP Query User{DF903704-477F-467E-97E2-BE3510D15AC2}C:\users\admin\desktop\call of duty-1.5\coduomp.exe] => (Allow) C:\users\admin\desktop\call of duty-1.5\coduomp.exe FirewallRules: [UDP Query User{3FC5A276-34C4-4B10-86AC-B8A5D9CE09A2}C:\users\admin\desktop\call of duty-1.5\coduomp.exe] => (Allow) C:\users\admin\desktop\call of duty-1.5\coduomp.exe FirewallRules: [TCP Query User{2047D28C-78E8-4851-9AA5-6C9AB2CAF401}C:\users\admin\desktop\call of duty-1.5\codmp.exe] => (Block) C:\users\admin\desktop\call of duty-1.5\codmp.exe FirewallRules: [UDP Query User{FEE9ADCA-DD44-4557-BEB3-4DB5E2767D3E}C:\users\admin\desktop\call of duty-1.5\codmp.exe] => (Block) C:\users\admin\desktop\call of duty-1.5\codmp.exe FirewallRules: [TCP Query User{F8F0366E-DC83-4B6E-93D7-091EE1BAA3F6}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{3677F36A-12DC-4711-8010-92F564E2DDD7}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe ==================== Wiederherstellungspunkte ========================= 16-06-2017 22:23:59 Windows Update 14-07-2017 20:22:30 Windows Update 03-08-2017 19:32:32 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/03/2017 08:07:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 54.0.1.6388, Zeitstempel: 0x5953d640 Name des fehlerhaften Moduls: xul.dll, Version: 54.0.1.6388, Zeitstempel: 0x5953d62e Ausnahmecode: 0x80000003 Fehleroffset: 0x008a6bcb ID des fehlerhaften Prozesses: 0x1564 Startzeit der fehlerhaften Anwendung: 0x01d30c8349f30c9d Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Mozilla Firefox\xul.dll Berichtskennung: a4108fe4-7876-11e7-bf30-14feb5ab36e6 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/03/2017 08:05:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_wuauserv, Version: 6.3.9600.17415, Zeitstempel: 0x54504177 Name des fehlerhaften Moduls: msxml3.dll, Version: 8.110.9600.18723, Zeitstempel: 0x5932e368 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000040514 ID des fehlerhaften Prozesses: 0x270 Startzeit der fehlerhaften Anwendung: 0x01d301856db2dd59 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\svchost.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\msxml3.dll Berichtskennung: 4d247b35-7876-11e7-bf30-14feb5ab36e6 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/03/2017 07:33:00 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary MpKslf5a65adb. System Error: Das System kann die angegebene Datei nicht finden. . Error: (08/03/2017 01:29:20 PM) (Source: chip 1-click download service) (EventID: 0) (User: ) Description: |ERORRS=;(380) error at getOrdersForVersion:Der Remotename konnte nicht aufgelöst werden: 'service.chip-secured-download.de' ;(180) error at GetHttpWebRequest: 1Der Remotename konnte nicht aufgelöst werden: 'api.chip-secured-download.de' ;(480) Could not load new Downlaoder Error: (07/29/2017 07:03:16 PM) (Source: chip 1-click download service) (EventID: 0) (User: ) Description: |ERORRS=;(380) error at getOrdersForVersion:Der Remotename konnte nicht aufgelöst werden: 'service.chip-secured-download.de' ;(180) error at GetHttpWebRequest: 1Der Remotename konnte nicht aufgelöst werden: 'api.chip-secured-download.de' ;(480) Could not load new Downlaoder Error: (07/25/2017 01:31:52 PM) (Source: chip 1-click download service) (EventID: 0) (User: ) Description: |ERORRS=;(380) error at getOrdersForVersion:Der Remotename konnte nicht aufgelöst werden: 'service.chip-secured-download.de' ;(180) error at GetHttpWebRequest: 1Der Remotename konnte nicht aufgelöst werden: 'api.chip-secured-download.de' ;(480) Could not load new Downlaoder Error: (07/22/2017 11:19:05 AM) (Source: chip 1-click download service) (EventID: 0) (User: ) Description: |ERORRS=;(380) error at getOrdersForVersion:Der Remotename konnte nicht aufgelöst werden: 'service.chip-secured-download.de' ;(180) error at GetHttpWebRequest: 1Der Remotename konnte nicht aufgelöst werden: 'api.chip-secured-download.de' ;(480) Could not load new Downlaoder Error: (07/20/2017 09:05:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 12125 Error: (07/20/2017 09:05:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 12125 Error: (07/20/2017 09:05:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Systemfehler: ============= Error: (08/03/2017 08:40:28 PM) (Source: Service Control Manager) (EventID: 7016) (User: ) Description: Der Dienst "chip 1-click download service" hat einen ungültigen aktuellen Status gemeldet: 0 Error: (08/03/2017 08:40:28 PM) (Source: Service Control Manager) (EventID: 7016) (User: ) Description: Der Dienst "chip 1-click download service" hat einen ungültigen aktuellen Status gemeldet: 0 Error: (08/03/2017 08:27:25 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definitionsupdate für Windows Defender – KB2267602 (Definition 1.249.615.0) Error: (08/03/2017 08:27:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definitionsupdate für Windows Defender – KB2267602 (Definition 1.249.615.0) Error: (08/03/2017 08:19:32 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows-Verwaltungsinstrumentation" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: Es wird bereits eine Instanz des Dienstes ausgeführt. Error: (08/03/2017 08:19:32 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Computerbrowser" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: Es wird bereits eine Instanz des Dienstes ausgeführt. Error: (08/03/2017 08:18:32 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Server" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: Es wird bereits eine Instanz des Dienstes ausgeführt. Error: (08/03/2017 08:17:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Update" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/03/2017 08:17:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Anmelde-Assistent für Microsoft-Konten" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/03/2017 08:17:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows-Verwaltungsinstrumentation" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts. CodeIntegrity: =================================== Date: 2017-07-22 11:14:07.741 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-06-17 19:29:01.330 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2017-06-17 19:29:00.330 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2017-06-17 19:28:59.314 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2017-06-17 19:28:58.220 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2017-06-17 19:28:57.329 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2017-06-17 19:28:56.391 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2017-06-17 19:28:52.516 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2017-06-17 19:28:50.875 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2017-06-17 18:54:39.601 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz Prozentuale Nutzung des RAM: 53% Installierter physikalischer RAM: 3990.16 MB Verfügbarer physikalischer RAM: 1853.31 MB Summe virtueller Speicher: 8086.16 MB Verfügbarer virtueller Speicher: 6061.39 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:683.89 GB) (Free:323.73 GB) NTFS Drive d: (FS 17) (CDROM) (Total:4.5 GB) (Free:0 GB) UDF Drive e: (OFFICE14) (CDROM) (Total:1.07 GB) (Free:0 GB) UDF ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 07F2837E) Partition 1: (Not Active) - (Size=102 MB) - (Type=DE) Partition 2: (Active) - (Size=14.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=683.9 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
03.08.2017, 21:24 | #2 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | WIN 8.1 Firefox sehr langsam, ingesamt lange LadezeitenZitat:
__________________ |
Themen zu WIN 8.1 Firefox sehr langsam, ingesamt lange Ladezeiten |
antivir, avira, bonjour, cpu, defender, desktop, downloader, explorer, firefox, flash player, langsam, mozilla, msascuil.exe, prozesse, realtek, registry, rundll, scan, services.exe, software, svchost.exe, system, udp, usb, windows, windowsapps, wiso |