![]() |
|
Plagegeister aller Art und deren Bekämpfung: Trojanisches Pferd durch AntivirenProgramm erkanntWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
![]() ![]() | ![]() Trojanisches Pferd durch AntivirenProgramm erkannt Hey, seit einiger Zeit dachte ich mir schon, das etwas nicht stimmt. Ja nun hat sich mein Verdacht bestätigt. Mein AntivirenProgramm hat in meinem System (Windows10) ein Trojanisches Pferd gefunden. Nun habe ich diese Dateien die infiziert sind mittels diesem AV-Programm gelöscht. Nun weis ich nicht ob dieser Trojaner weitere Programme wie Sniffer, Keylogger, ... auf meinem System installiert hat. Daher möchte ich gern nochmals von Profis dies durchgecheckt haben. Hoffe ihr könnt mir helfen. Ebenso hoffe ich das nix weiteres infiziert ist oder anderes gleichartiges. Conner FRST Logfiles Addition.txt Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-10-2017 durchgeführt von Stefan (16-10-2017 09:01:22) Gestartet von C:\Users\Stefan\Downloads Windows 10 Home Version 1703 170317-1834 (X64) (2017-08-07 07:34:38) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-242802386-3142294302-895090636-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-242802386-3142294302-895090636-503 - Limited - Disabled) Gast (S-1-5-21-242802386-3142294302-895090636-501 - Limited - Disabled) Stefan (S-1-5-21-242802386-3142294302-895090636-1001 - Administrator - Enabled) => C:\Users\Stefan ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) @BIOS B16.1205.1 (HKLM-x32\...\{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE) Hidden @BIOS B16.1205.1 (HKLM-x32\...\InstallShield_{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE) 7-Zip 17.00 beta (x64) (HKLM\...\7-Zip) (Version: 17.00 beta - Igor Pavlov) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 17.012.20098 - Adobe Systems Incorporated) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.) Any Video Converter 6.1.4 (HKLM-x32\...\Any Video Converter) (Version: 6.1.4 - Anvsoft) Apowersoft Bildschirmrekorder Pro V2.2.4 (HKLM-x32\...\{dc9006db-6b05-4f0f-833b-79ef3f284c24}_is1) (Version: 2.2.4 - APOWERSOFT LIMITED) APP Center (HKLM-x32\...\{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 1.00.1703.2301 - GIGABYTE) Hidden APP Center (HKLM-x32\...\InstallShield_{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 1.00.1703.2301 - GIGABYTE) Avira (HKLM-x32\...\{bbae0e09-4839-446f-8900-db9dfd443c62}) (Version: 1.2.97.30459 - Avira Operations GmbH & Co. KG) Avira (HKLM-x32\...\{F0142122-F47D-4003-8747-7096FEC87429}) (Version: 1.2.97.30459 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.32.6 - Avira Operations GmbH & Co. KG) Brackets (HKLM-x32\...\{72586010-A9E3-44A1-8BAD-69D1CE70E39E}) (Version: 1.10 - brackets.io) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.00.0000 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision) Call of Duty(R) 4 - Modern Warfare(TM) 1.1 Patch (HKLM-x32\...\{5D7767FA-7FE8-4627-9F09-AEF7A25F1E07}) (Version: 1.1 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.1 Patch (HKLM-x32\...\InstallShield_{5D7767FA-7FE8-4627-9F09-AEF7A25F1E07}) (Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (HKLM-x32\...\{E5141379-B2D9-4BBC-BB2A-5805541571DD}) (Version: 1.2 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (HKLM-x32\...\InstallShield_{E5141379-B2D9-4BBC-BB2A-5805541571DD}) (Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch (HKLM-x32\...\{050C1C8E-4A4D-4C2F-B9AE-67E60EE91B7F}) (Version: 1.3 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch (HKLM-x32\...\InstallShield_{050C1C8E-4A4D-4C2F-B9AE-67E60EE91B7F}) (Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (HKLM-x32\...\{3BD633E0-4BF8-4499-9149-88F0767D449C}) (Version: 1.4 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (HKLM-x32\...\InstallShield_{3BD633E0-4BF8-4499-9149-88F0767D449C}) (Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch (HKLM-x32\...\InstallShield_{8503C901-85D7-4262-88D2-8D8B2A7B08B8}) (Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Patch (HKLM-x32\...\{8503C901-85D7-4262-88D2-8D8B2A7B08B8}) (Version: 1.5 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (HKLM-x32\...\{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}) (Version: 1.6 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (HKLM-x32\...\InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}) (Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: 1.7 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: - ) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{CC5893EA-7622-3049-8F4A-47B2A649BC41}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{2BD06003-784D-E5EB-852A-5A9E29081745}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{A936E8D5-F94C-EDAE-6687-04A1250ECFCA}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{36EDC500-E4C0-371C-9865-08450415C1E9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{5FA11FD4-3AFA-9551-D391-4B8B23C5634C}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{DB8D816F-6213-ABDA-2542-A624993AAF2B}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{FF42C9F0-B1FE-1CF8-6836-4FAD6461ED41}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{52537FC0-E537-0E05-8E0D-713BCEDAE1F5}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{E3B46AAA-3FD6-42F4-5428-03D96F9C6E3B}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{8827327A-BC3A-4458-256C-86A8B1722EF3}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{6455576D-5438-E277-14D5-87725DA11D5E}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{D3C6245B-1B5B-EC6F-ECE2-6FE167B44CEB}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{2CD36374-01C0-6BE3-6509-0177CDC60E5D}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{66733022-FD2E-CAFF-A824-2E45092C7B41}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{6FA4CC1A-91A6-D392-2678-A1063E0C5601}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{FA88BA7D-7540-CBFF-52C0-265E9442F5CD}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{A22C371B-420B-26DE-41BA-7A1906A57AFC}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{05D4190F-AA2A-5F75-CA83-FB79A3D0E0F6}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{5DC1016C-54DB-0376-71B6-7816B83C0725}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{9D792D74-E3FD-EB78-A6D9-A716A7A7980D}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{3B822DD8-8C6A-6713-B079-284FF4F788C1}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{2243926A-A9DD-9BB9-D0F3-06BF54AD1A59}) (Version: 2017.1005.1719.29341 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.35 - Piriform) EaseUS Partition Master 12.0 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) EasyTuneEngineService (HKLM-x32\...\{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.17.0328 - GIGABYTE) Hidden EasyTuneEngineService (HKLM-x32\...\InstallShield_{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.17.0328 - GIGABYTE) FIFA 17 (HKLM-x32\...\{8C0DD062-B659-409C-9AB7-8EBD1D64D2EB}) (Version: 1.0.48.30259 - Electronic Arts) FIFA 18 (HKLM-x32\...\{213CC10A-B8CB-4EBA-B277-6B08B7C22A65}) (Version: 1.0.49.51286 - Electronic Arts) FlashTBT_100s (HKLM-x32\...\{6DC28AFC-B2A2-456D-B71B-BB8A8F8A8253}) (Version: 1.00.1603.1501 - GIGABYTE) Hidden FlashTBT_100s (HKLM-x32\...\InstallShield_{6DC28AFC-B2A2-456D-B71B-BB8A8F8A8253}) (Version: 1.00.1603.1501 - GIGABYTE) ForHonor (HKLM-x32\...\Uplay Install 569) (Version: - Ubisoft) ForHonorTTS (HKLM-x32\...\Uplay Install 2184) (Version: - Ubisoft) GigabyteFirmwareUpdateUtility (HKLM-x32\...\{1CBA99CE-1AB3-4366-AFB4-7F7B75EBBE35}) (Version: 1.00.0000 - GIGABYTE) Hidden GigabyteFirmwareUpdateUtility (HKLM-x32\...\InstallShield_{1CBA99CE-1AB3-4366-AFB4-7F7B75EBBE35}) (Version: 1.00.0000 - GIGABYTE) GIMP 2.8.22 (HKLM\...\GIMP-2_is1) (Version: 2.8.22 - The GIMP Team) GlassFish Server Open Source Edition 4.1.1 (HKLM\...\nbi-glassfish-mod-4.1.1.0.1) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 61.0.3163.100 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden GService (HKLM-x32\...\{D9CB4282-7B2A-4840-AD1D-9DA72B973DD9}) (Version: 1.16.1116.1 - GIGABYTE) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation) Intel(R) Network Connections 20.7.67.0 (HKLM\...\PROSetDX) (Version: 20.7.67.0 - Intel) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.0.0.1039 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden Java 8 Update 141 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180141F0}) (Version: 8.0.1410.15 - Oracle Corporation) Java SE Development Kit 8 Update 131 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180131}) (Version: 8.0.1310.11 - Oracle Corporation) JavaFX Scene Builder 2.0 (HKLM-x32\...\{B4665EB1-1F7A-44F5-AD07-C20A938E8BC2}) (Version: 2.0 - Oracle) Killer Bandwidth Control Filter Driver (HKLM\...\{89A9DA12-B6F1-4966-95B3-574EEB6DF07E}) (Version: 1.1.65.1357 - Rivet Networks) Hidden Killer E220x Drivers (HKLM\...\{E5914C89-E1DE-44D1-B172-DC00A3F1AA29}) (Version: 1.1.65.1357 - Rivet Networks) Hidden Killer Network Manager (HKLM\...\{F2BE14C9-4659-4335-B964-0E76AE0D2EE7}) (Version: 1.1.65.1357 - Rivet Networks) Hidden Killer Performance Suite (HKLM-x32\...\{75269D5A-2CE7-48D1-8169-5744C83C574F}) (Version: 1.1.65.1357 - Rivet Networks) Light Image Resizer 5.0.8.0 (HKLM-x32\...\{D5C093E0-D3DF-42D3-AFD6-CAAFB6985CBC}_is1) (Version: 5.0.8.0 - ObviousIdea) Lightshot-5.4.0.10 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.10 - Skillbrains) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 (HKLM-x32\...\{206898cc-4b41-4d98-ac28-9f9ae57f91fe}) (Version: 14.0.24123.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation) Microsoft Visual C++ Compiler Package for Python 2.7 (HKLM-x32\...\{692514A8-5484-45FC-B0AE-BE2DF7A75891}) (Version: 9.0.1.30729 - Microsoft Corporation) Microsoft Visual Studio 2017 (HKLM-x32\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.10.30642.0 - Microsoft Corporation) Monkey's Audio (HKLM-x32\...\Monkey's Audio_is1) (Version: - ) Movavi Screen Capture 8 (HKLM-x32\...\Movavi Screen Capture 8) (Version: 8.6.0 - Movavi) Mozilla Firefox 56.0.1 (x64 de) (HKLM\...\Mozilla Firefox 56.0.1 (x64 de)) (Version: 56.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0.3 - Mozilla) MySQL Workbench 6.3 CE (HKLM\...\{CD8C5EC0-56A3-4F6E-BB22-E230059DF1F2}) (Version: 6.3.9 - Oracle Corporation) NetBeans IDE 8.2 (HKLM\...\nbi-nb-base-8.2.0.0.201609300101) (Version: 8.2 - NetBeans.org) Origin (HKLM-x32\...\Origin) (Version: 10.5.3.59240 - Electronic Arts, Inc.) PrivaZer (HKLM-x32\...\PrivaZer) (Version: 3.0.28.0 - Goversoft LLC) PuTTY release 0.70 (64-bit) (HKLM\...\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}) (Version: 0.70.0.0 - Simon Tatham) Python 2.7.13 (HKLM-x32\...\{4A656C6C-D24A-473F-9747-3A8D00907A03}) (Version: 2.7.13150 - Python Software Foundation) Python 3.6.2 (32-bit) (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\{8388fa07-1617-4b8d-8ad8-6a940ad8052c}) (Version: 3.6.2150.0 - Python Software Foundation) Python 3.6.2 (64-bit) (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\{f71cfe9a-4a67-48a6-844b-571a76b33d33}) (Version: 3.6.2150.0 - Python Software Foundation) Python 3.6.2 Core Interpreter (32-bit) (HKLM-x32\...\{4542573C-6216-4584-BA90-72BAF7954404}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Core Interpreter (64-bit) (HKLM\...\{DBBB1BBC-A398-4262-9C25-D7A6E9B06841}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Development Libraries (32-bit) (HKLM-x32\...\{69E3E4A6-2A0F-4A32-9C2D-591EEC107289}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Development Libraries (64-bit) (HKLM\...\{7EC331E8-5683-4B2B-A22B-5925DBE5E06E}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Documentation (32-bit) (HKLM-x32\...\{796410A7-1669-4FE4-8332-F684B61269E2}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Documentation (64-bit) (HKLM\...\{978543A0-731D-4BEF-9CB6-9835B1DFFB33}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Executables (32-bit) (HKLM-x32\...\{348C0EFF-60B1-4E68-88B8-33D7DF70DFCF}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Executables (64-bit) (HKLM\...\{90A9D089-DB6E-48DC-9EEC-7F2229B2DFF0}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 pip Bootstrap (32-bit) (HKLM-x32\...\{6B2D61BA-C42D-4324-B23F-1D7B5A2808EF}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 pip Bootstrap (64-bit) (HKLM\...\{4FF902DF-D960-4A78-9C04-9D8E1CC33149}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Standard Library (32-bit) (HKLM-x32\...\{79B4337D-166F-4BC0-B67A-F73806CC730E}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Standard Library (64-bit) (HKLM\...\{1D2E9660-8DD7-4830-AFA6-5EC160F37A4E}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Tcl/Tk Support (32-bit) (HKLM-x32\...\{DF24AFFD-23AB-4A7D-A0E0-6410CE3B6B9D}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Tcl/Tk Support (64-bit) (HKLM\...\{27B26342-82FB-4CA4-9ADB-D09982631CB0}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Test Suite (32-bit) (HKLM-x32\...\{433FD2E2-839C-4211-88B7-45C90F738842}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Test Suite (64-bit) (HKLM\...\{9EE8E58D-3021-40C5-8FBB-BF3A91A0B44D}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Utility Scripts (32-bit) (HKLM-x32\...\{9B79DE7E-E864-4758-8DFC-85DA43B19671}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Utility Scripts (64-bit) (HKLM\...\{907B8BA6-C91D-4A8E-8237-828BFAB77C63}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{2636F1E4-2BC5-4B19-BFFD-A08F72598309}) (Version: 3.6.6032.0 - Python Software Foundation) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7727 - Realtek Semiconductor Corp.) Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 1.06.60 (17.03.2015) - Samsung Electronics Co., Ltd.) Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.25 - Samsung Electronics Co., Ltd.) Hidden Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.) SNS Upload for Easy Document Creator (HKLM-x32\...\{B6B5F07C-88D5-49D3-A1A7-A6D4BC37DCCC}) (Version: 1.0.0 - Samsung Electronics Co.,Ltd) SoftPerfect Network Scanner version 7.0.8 (HKLM\...\{8083C3D9-F400-48FA-B060-CF55F25E2D4B}_is1) (Version: 7.0.8 - SoftPerfect) Sound Blaster X-Fi MB3 (HKLM-x32\...\{3689CE39-3173-4952-B7AF-F1A9D6F9A288}) (Version: 1.00.06 - Creative Technology Limited) Speccy (HKLM\...\Speccy) (Version: 1.30 - Piriform) Spotify (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\Spotify) (Version: 1.0.65.320.gac7a8e02 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Sublime Text Build 3126 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.4.2 - TeamSpeak Systems GmbH) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.83369 - TeamViewer) Thunderbolt(TM) Software (HKLM-x32\...\{146DE795-0B91-40E7-9991-5DC766EFB211}) (Version: 15.3.40.275 - Intel Corporation) Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.67 - Samsung Electronics CO., LTD.) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 38.0.1 - Ubisoft) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) vs_filehandler_amd64 (HKLM-x32\...\{15D591B0-7B40-4957-B6C0-EB7452B5AAB6}) (Version: 15.0.26228 - Microsoft Corporation) Hidden vs_filehandler_x86 (HKLM-x32\...\{DC296244-0701-4EDE-9696-05B9C1D017B3}) (Version: 15.0.26228 - Microsoft Corporation) Hidden vs_minshellmsi (HKLM-x32\...\{497A5ACE-DA03-4412-A110-910B2C450720}) (Version: 15.0.26424 - Microsoft Corporation) Hidden Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1-2) (Version: 1.0.39.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.51.0 (HKLM\...\VulkanRT1.0.51.0) (Version: 1.0.51.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.54.0 (HKLM\...\VulkanRT1.0.54.0) (Version: 1.0.54.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.54.0 (HKLM\...\VulkanRT1.0.54.0-3) (Version: 1.0.54.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.54.0 (HKLM\...\VulkanRT1.0.54.0-4) (Version: 1.0.54.0 - LunarG, Inc.) WavePad Audio-Editor (HKLM-x32\...\WavePad) (Version: 7.10 - NCH Software) Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation) WinSCP 5.11.2 (HKLM-x32\...\winscp3_is1) (Version: 5.11.2 - Martin Prikryl) WOW Slider (HKLM-x32\...\WOW Slider_is1) (Version: - ) XAMPP (HKLM-x32\...\xampp) (Version: 7.1.7-0 - Bitnami) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2017-04-29] (Igor Pavlov) ContextMenuHandlers1: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2017-10-14] () ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2017-09-25] (Avira Operations GmbH & Co. KG) ContextMenuHandlers2: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2017-10-14] () ContextMenuHandlers3: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2017-10-14] () ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2017-04-29] (Igor Pavlov) ContextMenuHandlers4: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2017-10-14] () ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-10-05] (Advanced Micro Devices, Inc.) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2017-04-29] (Igor Pavlov) ContextMenuHandlers6: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2017-10-14] () ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2017-09-25] (Avira Operations GmbH & Co. KG) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0290DB47-CEB0-402C-A223-C0041D22899A} - System32\Tasks\update-S-1-5-21-242802386-3142294302-895090636-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: <Company name>) Task: {07E78AB9-3CBE-4B56-AFD9-5946F066C82E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated) Task: {2C39E2DC-384C-4B4B-A752-AAF0548FE392} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2017-10-04] (Avira Operations GmbH & Co. KG) Task: {2C45AB5A-7755-4FDC-96A0-90745597AEF9} - System32\Tasks\GraphicsCardEngine => C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GraphicsCardEngine.exe [2017-03-27] (GIGA-BYTE TECHNOLOGY CO., LTD.) Task: {3048DF4F-A892-409D-8F7D-BE7241E7E09F} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService Task: {47D6F2C5-8E2E-4109-9290-A79E70701340} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => Thunderbolt.exe Task: {56F8710B-E7F8-414B-8261-DE1FDF263647} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-05-26] (Google Inc.) Task: {5BFE9C5B-EC6A-499D-8372-8C98A654935F} - System32\Tasks\PrivaZer_SkipUAC => C:\Program Files (x86)\PrivaZer\PrivaZer.exe [2017-10-14] (Goversoft LLC) Task: {6A9FBC3D-36F4-4352-9C80-5CC20B329622} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => tbtsvc.exe Task: {6E1AEA26-CFB9-49A1-B722-4E2DD1BEFDE0} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: <Company name>) Task: {7764F8EE-0E3F-4D20-A0DE-1CC6944E054D} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => Thunderbolt.exe Task: {9DFE9577-216F-4F37-80B5-972B7477C32D} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2017-10-05] (Advanced Micro Devices, Inc.) Task: {B4C03F72-A16F-40BC-A911-83BAE449215E} - System32\Tasks\Avira SystrayStartTrigger => Avira.SystrayStartTrigger.exe Task: {CB086206-639C-419C-8B6C-58EEC25E2C8F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-05-26] (Google Inc.) Task: {D6BA49AD-3E05-487E-91E6-95700BB7C7DC} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-09-20] (Piriform Ltd) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\update-S-1-5-21-242802386-3142294302-895090636-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Stefan\Favorites\Downloadseite von NCH Software.lnk -> hxxp://www.nch.com.au/de/index.htm ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 32-bit Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Stefan\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" x86" ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 64-bit Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Stefan\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" amd64" ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 64-bit Cross Tools Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Stefan\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" x86_amd64" ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Fair AdBlocker App.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=dcnofaichneijfbkdkghmhjjbepjmble ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-02-15 21:01 - 2016-02-15 21:01 - 000031256 _____ () C:\WINDOWS\System32\us008lm.dll 2017-06-25 13:25 - 2015-03-12 04:43 - 000022528 _____ () C:\WINDOWS\System32\us013lm.dll 2015-06-25 09:45 - 2015-06-25 09:45 - 000017920 _____ () C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe 2017-07-10 18:16 - 2017-07-10 18:40 - 000066872 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-10-14 14:36 - 2017-10-14 14:36 - 003525431 _____ () C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll 2017-03-18 22:59 - 2017-03-20 06:36 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-08-23 07:30 - 2017-08-23 07:31 - 000074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-08-23 07:30 - 2017-08-23 07:31 - 000203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-08-23 07:30 - 2017-08-23 07:31 - 036162048 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-08-23 07:30 - 2017-08-23 07:31 - 002237952 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\skypert.dll 2016-08-29 18:54 - 2016-08-29 18:54 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2016-08-29 18:54 - 2016-08-29 18:54 - 000739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2016-08-29 18:54 - 2016-08-29 18:54 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2016-08-29 18:54 - 2016-08-29 18:54 - 000071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2016-08-29 18:54 - 2016-08-29 18:54 - 000011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2016-08-29 18:54 - 2016-08-29 18:54 - 002013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2016-08-29 18:54 - 2016-08-29 18:54 - 000191488 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll 2017-09-07 18:12 - 2017-09-07 18:12 - 000069632 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2015-02-17 01:47 - 2015-02-17 01:47 - 000105472 _____ () C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\ycc.dll 2017-05-26 14:57 - 2017-10-07 18:54 - 068211824 _____ () C:\Users\Stefan\AppData\Roaming\Spotify\libcef.dll 2017-05-26 14:57 - 2017-10-07 18:54 - 003110512 _____ () C:\Users\Stefan\AppData\Roaming\Spotify\libglesv2.dll 2017-05-26 14:57 - 2017-10-07 18:54 - 000087152 _____ () C:\Users\Stefan\AppData\Roaming\Spotify\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-10-30 09:24 - 2015-10-30 09:21 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-242802386-3142294302-895090636-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg DNS Servers: 192.168.101.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == HKLM\...\StartupApproved\Run32: => "DualBiosRescue" HKLM\...\StartupApproved\Run32: => "Sound Blaster X-Fi MB 3" HKLM\...\StartupApproved\Run32: => "Avira System Speedup User Starter" HKLM\...\StartupApproved\Run32: => "Lightshot" HKLM\...\StartupApproved\Run32: => "WindowsDefender" HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Steam" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{AB4DA3D0-51B6-41D0-9484-CB64D850C027}] => (Allow) LPort=9009 FirewallRules: [{D6A1CCAA-200E-4488-911F-E16859B78E9D}] => (Allow) LPort=9009 FirewallRules: [{1F67CE2B-555B-4AA4-814F-88B9DBDDD0F9}] => (Allow) F:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{0671403E-5DFE-44C5-80D1-6DA4DC6C7DBF}] => (Allow) F:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{6A171913-AB3A-49F8-A0F1-0FCABB584143}] => (Allow) LPort=9009 FirewallRules: [{BB2F0252-B12E-4F66-8567-D580EEBB8D48}] => (Allow) F:\Steam\Steam.exe FirewallRules: [{3AC8224E-8712-400C-BC38-FEDEDEF96485}] => (Allow) F:\Steam\Steam.exe FirewallRules: [UDP Query User{1D734DC0-27B0-4D27-885D-46BF96334477}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{3064457F-3CB9-4A44-8E5D-4C071F12C4AD}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{295C99C4-AF98-43D6-B340-4DC958A3163E}] => (Allow) LPort=9009 FirewallRules: [{4BABAFF9-FA64-4BA5-A0E8-94B68ED3C0A8}] => (Allow) LPort=9009 FirewallRules: [{3AE7354C-AFA4-4D75-8D1D-80F46BBB4AB8}] => (Allow) LPort=9009 FirewallRules: [{6447EF99-12A1-4115-81EB-ABC187BF9F70}] => (Allow) LPort=9009 FirewallRules: [{268F435F-C2F9-40DB-9958-80CC86640FBE}] => (Allow) LPort=9009 FirewallRules: [{2E870CC0-8F18-472C-9D82-1F4A15E2D1C0}] => (Allow) LPort=9009 FirewallRules: [{A506971A-86F0-4941-99B7-6D5EE4BC058A}] => (Allow) LPort=9009 FirewallRules: [{C8FF8205-A842-45A8-A8DB-92CD7B09D80C}] => (Allow) LPort=9009 FirewallRules: [{3683E20C-EDBF-4A3D-B666-55867F3D45D2}] => (Allow) LPort=9009 FirewallRules: [{72E64BBC-8E3E-4569-8EB7-8751C9934B41}] => (Allow) LPort=9009 FirewallRules: [{5547EE7C-6340-4B21-81BA-0BD7165F4D26}] => (Allow) LPort=9009 FirewallRules: [{666C83E7-C058-4D7C-AE17-9DF30A4CEBC3}] => (Allow) LPort=9009 FirewallRules: [{11779406-86F9-4B7A-B23D-49C08CF2F2F0}] => (Allow) LPort=9009 FirewallRules: [{7C775459-7647-454D-AC50-BA89D08956B3}] => (Allow) LPort=9009 FirewallRules: [{E2D280F7-3C04-4BF1-AC4C-1F23F0D9A26B}] => (Allow) LPort=9009 FirewallRules: [{BD410A5A-454B-43D5-911F-380F0CC6D2A6}] => (Allow) LPort=9009 FirewallRules: [{900389F4-A6CD-43EA-9650-449F3CD0489E}] => (Allow) LPort=9009 FirewallRules: [{E7477C56-D3E8-4078-95E0-EEFE5F38DA13}] => (Allow) LPort=9009 FirewallRules: [{61BE5409-F4C2-486B-8E31-B5640769E52F}] => (Allow) LPort=9009 FirewallRules: [{038EE2B2-389C-406C-AC8F-1F8E721CF63B}] => (Allow) LPort=9009 FirewallRules: [{72DC1A1E-6EE2-4471-BA23-3452D71FBA32}] => (Allow) LPort=9009 FirewallRules: [{D1A8CF3E-44B9-43C7-B727-AF546698934B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{EC216E9C-1136-4681-859C-2132E3775E5D}] => (Allow) LPort=9009 FirewallRules: [{1B6FF3FB-D615-4645-BDFA-F2B06FEFF42A}] => (Allow) LPort=9009 FirewallRules: [{6811AB84-4370-4E7C-BA34-D7E7F5D04A22}] => (Allow) LPort=9009 FirewallRules: [{EBCD57AB-3076-429F-B6C8-CD4D4BC5DE5C}] => (Allow) LPort=9009 FirewallRules: [{3D4D4209-05D8-44E0-920F-2FD9B558BA57}] => (Allow) LPort=9009 FirewallRules: [{1085B8FC-47C3-4278-BCC6-0C79F500D15E}] => (Allow) LPort=9009 FirewallRules: [{6AADF109-A1E3-46EE-B216-EBCDC8EAD39A}] => (Allow) LPort=9009 FirewallRules: [{CE0DC7EA-0DFF-46A4-B878-C11ADA7A79DF}] => (Allow) LPort=9009 FirewallRules: [{64992A78-1211-447A-A2FE-CDAA4663518D}] => (Allow) LPort=9009 FirewallRules: [{304AA25A-3116-46EC-9F96-1C70255A4415}] => (Allow) LPort=9009 FirewallRules: [{14BEF7BA-6D90-4160-8D87-6A53E659BA60}] => (Allow) LPort=9009 FirewallRules: [{DDBB81DE-23A2-469D-B949-4E5CF37BCFE8}] => (Allow) LPort=9009 FirewallRules: [{14EF26DA-D35E-4BAE-A640-CD4F0CA0C5B3}] => (Allow) LPort=9009 FirewallRules: [{1C51FBB7-0D78-47DF-8BB1-103349918815}] => (Allow) LPort=9009 FirewallRules: [{DC666B65-8D09-4A3D-9197-2C86DDF2A136}] => (Allow) LPort=9009 FirewallRules: [{DE32FE06-A2A7-48AE-B02E-61C4BBBF41D3}] => (Allow) LPort=9009 FirewallRules: [{61D145AB-451E-4A32-9166-85AEDAB7EBEF}] => (Allow) LPort=9009 FirewallRules: [{0414F77D-29E3-42CF-A31F-8E1042265232}] => (Allow) LPort=9009 FirewallRules: [{43E4BA01-7946-49EA-B60B-FA13C48189EF}] => (Allow) LPort=9009 FirewallRules: [{436B4BB4-2080-4BB2-B5A2-9EA8A8237CCD}] => (Allow) LPort=9009 FirewallRules: [{D437A091-D08B-48E3-ABCE-6A78CCAB59F9}] => (Allow) LPort=9009 FirewallRules: [{7E55E629-CA73-4A40-B8F7-EA8CF231C49D}] => (Allow) LPort=9009 FirewallRules: [{A8B8DE16-50B7-4C51-9FDA-38167C265AAA}] => (Allow) LPort=9009 FirewallRules: [{1A5BF188-DE24-4758-B469-D00370CB4EAF}] => (Allow) LPort=9009 FirewallRules: [{CC627738-AFFF-4C70-A318-2CAEB6762DF5}] => (Allow) LPort=9009 FirewallRules: [{7A60C6CD-7102-4432-89A3-4CDFF4C1B4A5}] => (Allow) LPort=9009 FirewallRules: [{74178F07-92DE-44C7-AF7D-1D725E841D88}] => (Allow) LPort=9009 FirewallRules: [{2FA1B91F-A96D-4C55-91CA-246652E6CC94}] => (Allow) LPort=9009 FirewallRules: [{33DE0A43-91A9-4CE3-AC7B-C6750FDC64DC}] => (Allow) LPort=9009 FirewallRules: [{0C2DEAE4-07C4-4F97-9DDB-10119C23C7CE}] => (Allow) LPort=9009 FirewallRules: [{845594E2-46A9-40BC-ADBB-65EE9B70FCD1}] => (Allow) LPort=9009 FirewallRules: [{3BFFBC62-613B-4BB3-8DAB-80DDD3080E87}] => (Allow) LPort=9009 FirewallRules: [{78F63749-A1B8-4E03-8671-A704C46A2257}] => (Allow) LPort=9009 FirewallRules: [{0C846091-07EB-4255-A993-4ECA9642844C}] => (Allow) LPort=9009 FirewallRules: [{6B942279-1F64-4E8E-9F10-BC7203D9E193}] => (Allow) LPort=9009 FirewallRules: [{8F9DE821-C624-439F-8148-993F60DBBDB6}] => (Allow) LPort=9009 FirewallRules: [{3D11567D-115E-4555-BF69-58DAA0C204B1}] => (Allow) LPort=9009 FirewallRules: [{15BD8B71-367D-4D1C-B827-AF534D603530}] => (Allow) LPort=9009 FirewallRules: [{C43772C4-DF48-476B-9027-D60CF5F1040D}] => (Allow) LPort=9009 FirewallRules: [{573EA923-5411-4B3A-A0C0-81394EAF25FC}] => (Allow) LPort=9009 FirewallRules: [{2C79AE74-9C97-4C51-8DB6-46EE22347B61}] => (Allow) LPort=9009 FirewallRules: [{5F5B0228-4EB3-44E8-A491-82DC9222F41E}] => (Allow) LPort=9009 FirewallRules: [{F470D772-62A0-4010-8E45-617D3AFC918A}] => (Allow) LPort=9009 FirewallRules: [{D8147A9A-5AF3-4F3F-A251-C1A62C2115D7}] => (Allow) LPort=9009 FirewallRules: [{780D764D-19C3-4C26-81F3-66F087413030}] => (Allow) LPort=9009 FirewallRules: [{44D943D9-CE67-46AF-A287-FD3DFD3D8B6F}] => (Allow) LPort=9009 FirewallRules: [{6F3D4AE1-9610-4179-9AEC-C468AA155AEF}] => (Allow) LPort=9009 FirewallRules: [{BC68464C-3DA4-423E-8B21-8BDABA30E897}] => (Allow) LPort=9009 FirewallRules: [{2B8CCCBA-120F-455F-96AE-65BE8ABB1942}] => (Allow) LPort=9009 FirewallRules: [{B71970D0-EB73-4E23-A351-00A48E510080}] => (Allow) LPort=9009 FirewallRules: [{94EA3E56-3D8A-47B7-81D8-5DAE2608096B}] => (Block) I:\stefan\cod 4 maps\call of duty 4 - modern warfare\mp_tool.exe FirewallRules: [{3BFB24F3-9F9D-4BAE-93BF-4D619EDCD754}] => (Block) I:\stefan\cod 4 maps\call of duty 4 - modern warfare\mp_tool.exe FirewallRules: [UDP Query User{E3ACAC7E-C026-4F8B-A4FD-D52C262CCA3E}I:\stefan\cod 4 maps\call of duty 4 - modern warfare\mp_tool.exe] => (Allow) I:\stefan\cod 4 maps\call of duty 4 - modern warfare\mp_tool.exe FirewallRules: [TCP Query User{FDD388AE-C97D-4C19-827A-CAAA0A1849C1}I:\stefan\cod 4 maps\call of duty 4 - modern warfare\mp_tool.exe] => (Allow) I:\stefan\cod 4 maps\call of duty 4 - modern warfare\mp_tool.exe FirewallRules: [UDP Query User{02FACCC1-6A97-4548-AC9F-AB6E637C55B3}I:\stefan\cod 4 maps\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) I:\stefan\cod 4 maps\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [TCP Query User{AD93E2C6-5BA4-4CF6-9637-27F89C6131AA}I:\stefan\cod 4 maps\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) I:\stefan\cod 4 maps\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [{0A343F9F-B95A-4FFE-A609-C203CD2855F8}] => (Allow) LPort=9009 FirewallRules: [{66963F29-4FCE-4A33-96D5-65ACA2FD9A8E}] => (Allow) LPort=9009 FirewallRules: [{014E2652-1C3C-4AE1-8882-6EB98C64AD08}] => (Allow) LPort=9009 FirewallRules: [{64526B81-2022-4E5C-A89E-FC2D861BBC98}] => (Allow) LPort=9009 FirewallRules: [{ACCDC333-F2E8-465C-8D33-D69CC02B9DE2}] => (Allow) LPort=9009 FirewallRules: [{E1FE20C7-1911-4732-8468-39BEC1C98B33}] => (Allow) LPort=9009 FirewallRules: [{8AA24AA5-29CD-417E-945A-FA1C8A0F4F4A}] => (Allow) LPort=9009 FirewallRules: [{E797503D-C139-4FFA-BCDE-73A990C941CD}] => (Allow) LPort=9009 FirewallRules: [{185656EB-F641-4E7A-AF05-E581907E248C}] => (Allow) LPort=9009 FirewallRules: [{5BDF8BE0-2919-4A6B-B956-0F1BC23DDBDD}] => (Allow) LPort=9009 FirewallRules: [{AAD29F45-85A7-4D37-B7A2-20396A9718AC}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe FirewallRules: [{E1D07487-B4CD-4FF2-A909-7A79BF6827D3}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe FirewallRules: [{DC8DD22A-279F-49C3-A6F4-B297863D4C26}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{CF107FA0-ADF5-4B9A-8E91-C7323333C225}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{0BB49DC4-3410-49FF-8D3E-83F691DCA6C1}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{1B8DF521-81D7-4BF2-91B6-5CBC1461C39B}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{AED509D6-D2FB-4C32-AA91-0DCEBB64B731}] => (Allow) LPort=9009 FirewallRules: [{9C353726-C0B7-44E0-9771-C8A4BE846C4B}] => (Allow) LPort=9009 FirewallRules: [{D6251577-8401-40E8-B112-CCB2CB25A066}] => (Allow) LPort=9009 FirewallRules: [{4C9DBD08-2090-43ED-B747-65AFD5369F3A}] => (Allow) LPort=9009 FirewallRules: [{C6133158-879F-4706-A213-969E11E04488}] => (Allow) LPort=9009 FirewallRules: [{6B8ECD0E-C217-4878-9D00-372CA38F2CAE}] => (Allow) LPort=9009 FirewallRules: [{67E6A805-1FAB-4E16-9A72-3FB5034A88FE}] => (Allow) LPort=9009 FirewallRules: [{8B706277-95CF-4F8C-88BA-73A4FC52852F}] => (Allow) LPort=9009 FirewallRules: [{9393C39E-ADEB-4B2F-AFA7-F4B32BBFEBA2}] => (Allow) LPort=9009 FirewallRules: [{BB507C10-E0DC-4551-9B45-79771FE9AA9A}] => (Allow) LPort=9009 FirewallRules: [{B7BA6953-8E86-4112-8D78-307752492922}] => (Allow) LPort=9009 FirewallRules: [{CCEE0188-B5F2-47C5-BE4F-FA5C9C0EAB4F}] => (Allow) LPort=9009 FirewallRules: [{B5F8085B-8D82-4DE2-B996-2192FAF99095}] => (Allow) LPort=9009 FirewallRules: [{BDFB86C3-42E9-481E-B5D0-8222E8533FF1}] => (Allow) LPort=9009 FirewallRules: [{86AABB35-3FAF-42BB-A8E8-AC21A64FDC04}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe FirewallRules: [{8AA5CB37-19CF-47D6-BF4B-6CDACB4901F4}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe FirewallRules: [{708AA414-328D-4E45-BABE-68E14C372045}] => (Allow) LPort=9009 FirewallRules: [{ACA5811D-CDC8-4CAB-B035-2FB94F18FFC5}] => (Allow) LPort=9009 FirewallRules: [{661C4C39-DE52-444A-8BE1-75A2D1B7CBEA}] => (Allow) LPort=9009 FirewallRules: [{18F81A93-8067-4685-90CD-74000ABC6006}] => (Allow) LPort=9009 FirewallRules: [{662535E4-F12E-485A-80F1-55A81DB5ED4E}] => (Allow) LPort=9009 FirewallRules: [{EC76C578-F151-43B7-9BC5-80C99FFD0AAF}] => (Allow) LPort=9009 FirewallRules: [{D29069CB-2A51-4CC4-A4E0-BEEB678ABD24}] => (Allow) LPort=9009 FirewallRules: [{5547F72D-EE77-4F96-AF60-506BAE355358}] => (Allow) LPort=9009 FirewallRules: [{E5C78579-BCE8-4587-A869-954C5CB4F4BD}] => (Allow) LPort=9009 FirewallRules: [{882292F7-57F9-410B-86C8-77BBB0018F87}] => (Allow) LPort=9009 FirewallRules: [{DAFF44CE-827A-4C86-BAA5-CB12818A7D01}] => (Allow) LPort=9009 FirewallRules: [{E5A93040-6E9F-4A25-A0D4-4C24C3078A4A}] => (Allow) LPort=9009 FirewallRules: [{11CE5E08-FE9E-4679-A01C-D5FBF55F1B3B}] => (Block) C:\program files\netbeans 8.2\bin\netbeans64.exe FirewallRules: [{FF6F0452-F5CA-4DE3-9838-98949AF3ADBE}] => (Block) C:\program files\netbeans 8.2\bin\netbeans64.exe FirewallRules: [UDP Query User{1BB33FE2-18DD-4EBC-908C-2055E7F7F213}C:\program files\netbeans 8.2\bin\netbeans64.exe] => (Allow) C:\program files\netbeans 8.2\bin\netbeans64.exe FirewallRules: [TCP Query User{3FD49DCC-081C-4620-9640-7F0A3DA5574D}C:\program files\netbeans 8.2\bin\netbeans64.exe] => (Allow) C:\program files\netbeans 8.2\bin\netbeans64.exe FirewallRules: [{690CD009-F4EE-4D9B-A5C5-3B1033871F16}] => (Allow) LPort=9009 FirewallRules: [{7DA2A4A0-27CA-4EC8-BBFC-D115F30C1E82}] => (Allow) LPort=9009 FirewallRules: [{157AC0DC-909F-4D62-856E-C43C8A5EBCD6}] => (Allow) F:\Program Files (x86)\Origin Games\FIFA 17\FIFASetup\fifaconfig.exe FirewallRules: [{1372880B-2A50-42A0-852C-D8FD5C9F035A}] => (Allow) F:\Program Files (x86)\Origin Games\FIFA 17\FIFASetup\fifaconfig.exe FirewallRules: [{7843297E-D8B4-4C27-B125-5C21294FE9C0}] => (Allow) LPort=9009 FirewallRules: [{EBA4B421-936E-4D68-A48F-507A245C0C66}] => (Allow) LPort=9009 FirewallRules: [{08799B43-F2DD-41B9-AF0A-1506B85D3289}] => (Allow) LPort=9009 FirewallRules: [{991808BA-5B5A-4606-93D7-420ADEDC5DAA}] => (Allow) LPort=9009 FirewallRules: [{109B7E6E-A744-4F09-98D8-5D121E803326}] => (Allow) LPort=9009 FirewallRules: [{FEFF013C-A9E8-4C43-88F5-8FDE900F1F2F}] => (Allow) LPort=9009 FirewallRules: [{256EB3AE-A343-43F0-87A0-A8EE3255323A}] => (Allow) LPort=9009 FirewallRules: [{526FB18B-1CD8-4B0F-86DB-80F39D8C9DD8}] => (Allow) LPort=9009 FirewallRules: [{E667B284-7735-43C7-812D-1FFB0E522006}] => (Block) G:\xampp\mysql\bin\mysqld.exe FirewallRules: [{93D8821E-9594-4265-B9A2-F581490F4232}] => (Block) G:\xampp\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{33DB4E5F-4018-4C93-B094-C859EE3FB04E}G:\xampp\mysql\bin\mysqld.exe] => (Allow) G:\xampp\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{9EAC71DF-45E0-4EEB-A6F1-FA96AE50D0F0}G:\xampp\mysql\bin\mysqld.exe] => (Allow) G:\xampp\mysql\bin\mysqld.exe FirewallRules: [{C719F29E-DCA6-44DA-B841-22B12E52ECCF}] => (Block) C:\program files (x86)\brackets\node.exe FirewallRules: [{BD017021-C164-4FF0-BB66-464F176E5026}] => (Block) C:\program files (x86)\brackets\node.exe FirewallRules: [UDP Query User{2CDFDFDE-AFE3-4E69-B8D3-C338F5D838F9}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [TCP Query User{6895EC7B-0B1D-43E6-B7C8-DE2F14E074BC}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [{439A9951-8F3C-4FCE-B26C-A8DC11DC1216}] => (Allow) LPort=9009 FirewallRules: [{83950814-C06A-4EB4-B360-507F58771DB4}] => (Allow) LPort=9009 FirewallRules: [{1199A7C7-D8F5-45DC-B6FE-779B2F2641C4}] => (Block) F:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [{0C461156-699E-4908-ABB4-AFF445760705}] => (Block) F:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [UDP Query User{F24281E8-E263-422C-866B-15DB3E3B252A}F:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) F:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [TCP Query User{D7E0B181-0703-4B44-AF5D-D8B270CD9103}F:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) F:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [{98DD5D8A-A26F-4652-BE04-A104323D5693}] => (Block) G:\xampp\apache\bin\httpd.exe FirewallRules: [{17020430-72FE-4B5E-A10A-F3CCE1D9FAA8}] => (Block) G:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{CD7032B2-42EB-4AF3-AD4B-E92B756733D0}G:\xampp\apache\bin\httpd.exe] => (Allow) G:\xampp\apache\bin\httpd.exe FirewallRules: [TCP Query User{C3428850-2B5A-4956-A004-A027818840AD}G:\xampp\apache\bin\httpd.exe] => (Allow) G:\xampp\apache\bin\httpd.exe FirewallRules: [{2980F5F6-66B9-4147-BA8D-7F23CD15BDC2}] => (Block) C:\users\stefan\appdata\roaming\spotify\spotify.exe FirewallRules: [{22A0C1A0-9D9B-48EB-9685-0D6F953E7AAD}] => (Block) C:\users\stefan\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{129D1948-648D-48EE-B723-4357220682FA}C:\users\stefan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\stefan\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{28EBF47D-9DA2-45A1-9DA7-B3F740C1DC20}C:\users\stefan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\stefan\appdata\roaming\spotify\spotify.exe FirewallRules: [{2D3BA8F3-9AEE-4559-AD55-0C6BED3E0C64}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{06B54847-27DE-4E24-8C09-7A9512D78DC3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CE76C98B-12F3-4DC2-A8AF-424743634964}] => (Allow) LPort=9009 FirewallRules: [{6E29D3C4-DDF2-479F-89F5-9A5E03F4E66D}] => (Allow) LPort=9009 FirewallRules: [{D848FD90-EE60-4ED6-8F61-DD03F4575503}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe FirewallRules: [{4A4411EA-A444-4853-A1E2-464964FF4FD2}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\gcupd.exe FirewallRules: [{2C5F42C9-9A6E-41DA-8C2D-FAF665D7BBAD}] => (Allow) LPort=9009 FirewallRules: [{EC5C970C-3180-48CD-8A05-C4099FEAD438}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe FirewallRules: [{1EE60126-32AD-4E62-9EF9-93FEBEDCCDC0}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\gcupd.exe FirewallRules: [{83C0C296-53C4-4BF7-9F9F-D80781267FC5}] => (Allow) LPort=9009 FirewallRules: [{7DE7793A-ED9F-44E6-A47F-44AE45CE7FAE}] => (Allow) LPort=9009 FirewallRules: [{E47B6A0C-EBE5-4DF5-8A91-ADFF3D19520F}] => (Allow) LPort=9009 FirewallRules: [{8312DD39-2B8D-46E5-8DB0-224E45E8CFD1}] => (Allow) LPort=9009 FirewallRules: [{17C97975-6E65-43D7-A1B5-2018FB2BB452}] => (Allow) LPort=9009 FirewallRules: [{39118511-DBDD-452D-A0E9-B1EF21680C58}] => (Allow) LPort=9009 FirewallRules: [{D4293DD1-C1C6-4BC4-8DA9-4FE2B1F2FFF7}] => (Allow) LPort=9009 FirewallRules: [{EEA864FE-F871-43B6-A4E6-700B0B8DB4DE}] => (Allow) LPort=9009 FirewallRules: [{A748AD52-FA90-4A0B-97E4-3589F41925A2}] => (Allow) LPort=9009 FirewallRules: [{6CACEB6C-441F-44E9-901D-D414D5E12BDB}] => (Allow) LPort=9009 FirewallRules: [{3DC378E7-AEED-431D-BBF6-5A7D7EAFFC9B}] => (Allow) LPort=9009 FirewallRules: [{DDE0E3FC-899A-46BD-AB49-4C0FBC461880}] => (Allow) LPort=9009 FirewallRules: [{0A234CBD-9921-4527-BD36-88C87D5A9F8A}] => (Allow) LPort=9009 FirewallRules: [{4A4391E9-EAF1-4982-8B56-87B10F0127DD}] => (Allow) LPort=9009 FirewallRules: [{83649E5D-F048-4587-BA41-40DA3D662D73}] => (Allow) LPort=9009 FirewallRules: [{E9057D4C-2B2B-46C8-B66A-2CB5F8E73ECA}] => (Allow) LPort=9009 FirewallRules: [{05B683DF-CCCD-414D-BEF0-3F2BC8B74EE5}] => (Allow) LPort=9009 FirewallRules: [{ECA33648-F5AF-4AA1-B034-1B2DFA0D4779}] => (Allow) LPort=9009 FirewallRules: [{6DBCA45C-303F-4245-8F20-A58A5C9D801A}] => (Allow) LPort=9009 FirewallRules: [{373DB890-AC1C-4F17-8BB0-BAA3171B53D1}] => (Allow) LPort=9009 FirewallRules: [TCP Query User{A53F6DD4-AD68-437B-B7D9-0D40B589C67D}F:\ubisoft game launcher\games\forhonor\forhonor.exe] => (Allow) F:\ubisoft game launcher\games\forhonor\forhonor.exe FirewallRules: [UDP Query User{19D1BA8B-F3C0-4DB7-8F78-F656A9C1A1A2}F:\ubisoft game launcher\games\forhonor\forhonor.exe] => (Allow) F:\ubisoft game launcher\games\forhonor\forhonor.exe FirewallRules: [{4D83DDAA-2A56-42AD-A31F-31177D669993}] => (Allow) LPort=9009 FirewallRules: [TCP Query User{27496723-3E17-40EA-B684-D8770B8296B5}F:\ubisoft game launcher\games\forhonor\forhonor.exe] => (Block) F:\ubisoft game launcher\games\forhonor\forhonor.exe FirewallRules: [UDP Query User{76599807-7C82-4894-BDE0-0FAEE68ABF25}F:\ubisoft game launcher\games\forhonor\forhonor.exe] => (Block) F:\ubisoft game launcher\games\forhonor\forhonor.exe FirewallRules: [{60B793AE-3AB1-4493-8DAA-BA33BC90C67C}] => (Allow) LPort=9009 FirewallRules: [{A36E795D-64B1-4D78-8E22-91D4F6E565B1}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{F398F8F3-B166-42F0-9110-CE23B5B37BA0}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{B0A60091-2654-4E1A-867C-3183EE1E0E01}] => (Allow) LPort=9009 FirewallRules: [{E45547A7-8775-48D6-B88B-FB6C827F19C1}] => (Allow) LPort=9009 FirewallRules: [{47A8C2E0-3531-4834-88A9-460013B22D50}] => (Allow) LPort=9009 FirewallRules: [{87707EDC-D1A6-4D6E-9E3F-CB73BD9B9FD6}] => (Allow) LPort=9009 FirewallRules: [{669E06EC-7E80-458E-8234-2491606FC3B3}] => (Allow) LPort=9009 FirewallRules: [{8509F1EC-5631-4DE3-BD47-67B62D05C155}] => (Allow) LPort=9009 FirewallRules: [{3A8D2D9F-A5F7-4A7A-AD43-8FD3BC0BE964}] => (Allow) LPort=9009 FirewallRules: [{8AB52F67-5FFD-4491-9E5F-D6DE24E99468}] => (Allow) LPort=9009 FirewallRules: [{00B696D5-3C43-4C88-A77E-0E5B05D1A9CD}] => (Allow) LPort=9009 FirewallRules: [{B6295FE0-589D-4856-AC91-878CDF59F2A2}] => (Allow) LPort=9009 FirewallRules: [{1EB8C2B6-99A3-4519-9057-7FFC7C31B020}] => (Allow) LPort=9009 FirewallRules: [{007144D5-4047-434F-92E9-FD210C693254}] => (Allow) LPort=9009 FirewallRules: [{2082A8A1-8169-4235-9E97-40546D5082A0}] => (Allow) LPort=9009 FirewallRules: [{1ACE957A-844A-4775-96BC-962A006A4A8F}] => (Allow) LPort=9009 FirewallRules: [{4C545364-42A8-4AC3-ADD4-92D8CD6A2F9D}] => (Allow) LPort=9009 FirewallRules: [{EAA21D87-7138-4182-8757-B8A7038F0744}] => (Allow) LPort=9009 FirewallRules: [{D6356F48-2A35-44D8-B709-7B3B6E9FDAA5}] => (Allow) LPort=9009 FirewallRules: [{924E89EB-0EE7-4B4C-AE46-B09FF9A707BF}] => (Allow) LPort=9009 FirewallRules: [TCP Query User{2AA0F1DE-5181-42A0-84EC-E8E46865C8AA}C:\program files (x86)\deezloader-win32-x64\deezloader.exe] => (Block) C:\program files (x86)\deezloader-win32-x64\deezloader.exe FirewallRules: [UDP Query User{33A432DE-9722-4CF8-8A5C-A0F52D59775B}C:\program files (x86)\deezloader-win32-x64\deezloader.exe] => (Block) C:\program files (x86)\deezloader-win32-x64\deezloader.exe FirewallRules: [{2B48B8ED-09E1-4A02-9E42-98E5570FBF4A}] => (Allow) LPort=9009 FirewallRules: [{CECB653B-D5DE-4237-BF24-20EA34D957F5}] => (Allow) LPort=9009 FirewallRules: [{3F2853F6-FDD5-4CB3-841C-82A0863E2CB6}] => (Allow) LPort=9009 FirewallRules: [{B5CD272D-9911-473E-9DE5-BEC59590ADA1}] => (Allow) LPort=9009 FirewallRules: [{C8A50B12-A1D4-4397-828A-C35B3FD9FDBA}] => (Allow) LPort=9009 FirewallRules: [{303E42AD-3828-46C8-80B5-8A89AE9240A4}] => (Allow) LPort=9009 FirewallRules: [{E13EAB34-7EBB-4725-8E34-25FCF8103A1B}] => (Allow) LPort=9009 FirewallRules: [{21CF1042-66F6-4E2D-8F0C-6EE5D87C84F8}] => (Allow) LPort=9009 FirewallRules: [{0C5B077B-554C-40D1-BBDB-7DDC30EBB3B3}] => (Allow) LPort=9009 FirewallRules: [{EE37C63E-9A75-4E6B-B12A-60274FF39F49}] => (Allow) LPort=9009 FirewallRules: [{C2A08DD0-252C-4EBF-A09F-D256918192F6}] => (Allow) LPort=9009 FirewallRules: [{47E820D2-1FC9-44D0-9A08-AAE86DE6C4E7}] => (Allow) LPort=9009 FirewallRules: [{31918C5D-5445-438C-9753-8362B0C1C5FC}] => (Allow) LPort=9009 FirewallRules: [{0C0B01C2-B206-45CA-9900-8731AA179F70}] => (Allow) LPort=9009 FirewallRules: [{9C2E47A9-C6D6-4DA3-A27C-1026A497DDD5}] => (Allow) LPort=9009 FirewallRules: [{233C96B6-5BAB-446A-AEF8-5C79A7EC14B5}] => (Allow) LPort=9009 FirewallRules: [{1FB77416-4170-4992-B588-44D2BE79A5E2}] => (Allow) LPort=9009 FirewallRules: [{6FD9B306-86BE-48DA-B38D-4B16CC2334AA}] => (Allow) LPort=9009 FirewallRules: [{DF70639E-1C2C-4FEA-AB7C-8A3F10613994}] => (Allow) LPort=9009 FirewallRules: [{25182266-9F24-4C6D-A67D-61FE35247239}] => (Allow) LPort=9009 FirewallRules: [{901C3384-1DA7-400E-AD75-AF888A88D161}] => (Allow) LPort=9009 FirewallRules: [{C2C53633-3492-4A62-941F-932F26E789D8}] => (Allow) LPort=9009 FirewallRules: [{3EBCD96D-3AFA-45B3-A9F3-167B9BA45351}] => (Allow) LPort=9009 FirewallRules: [{16A91E45-42B9-4290-AEC6-6387C1DE4194}] => (Allow) LPort=9009 FirewallRules: [{F26268AD-8687-473A-A61B-B198C3FEF6FF}] => (Allow) LPort=9009 FirewallRules: [{F72C5F46-7F1A-42DE-9FEE-091F49EF7FD8}] => (Allow) LPort=9009 FirewallRules: [{7A1A2FCF-4B9A-4CC7-84B9-D104D392026A}] => (Allow) LPort=9009 FirewallRules: [{7AE27F38-F4C4-4267-B875-03A6D6E09431}] => (Allow) LPort=9009 FirewallRules: [{E7D9ED6B-6336-42D3-B3DC-EA35327564C7}] => (Allow) LPort=9009 FirewallRules: [{D07BE6C3-8ECC-47B8-9B59-243D0E8FDEF5}] => (Allow) LPort=9009 FirewallRules: [{CBF51A6C-F61D-4114-81EB-0C3AA3AE8179}] => (Allow) LPort=9009 FirewallRules: [{0AD0CB12-1D3E-4C48-8FF2-5958682909F7}] => (Allow) LPort=9009 FirewallRules: [{E1CB3CEF-F0AD-43F6-9B21-022E15EB28DF}] => (Allow) LPort=9009 FirewallRules: [{00A6206D-B779-48A5-A78C-52D23BDC9196}] => (Allow) LPort=9009 FirewallRules: [{20462780-B71E-4635-AD45-FA40AA15AC2A}] => (Allow) LPort=9009 FirewallRules: [{8F6C89EE-7CE1-455D-9BFB-FF5D6388B166}] => (Allow) LPort=9009 FirewallRules: [{1C764211-29B3-433A-8D31-756592B46C26}] => (Allow) LPort=9009 FirewallRules: [{8D8A3FEA-2D31-4B8F-877E-A4EDADA31D77}] => (Allow) LPort=9009 FirewallRules: [{75D159EF-61DB-487D-8BB3-CEC4B04A8859}] => (Allow) LPort=9009 FirewallRules: [{F54180E2-BA98-4E3A-B609-78DE8DC8DCF6}] => (Allow) LPort=9009 FirewallRules: [{C8571C00-2EA6-4AD9-859E-C6A40BEEC181}] => (Allow) LPort=9009 FirewallRules: [{56202E3E-1A66-45D1-AF00-7CE01FCD2E6B}] => (Allow) LPort=9009 FirewallRules: [{CE140267-D01E-4CD1-A789-767E800AF2F3}] => (Allow) LPort=9009 FirewallRules: [{94EFA414-6F0B-484C-B8A0-FB9C99A6A5F0}] => (Allow) LPort=9009 FirewallRules: [{46DD615D-AC08-46FB-A6D8-85462B45C195}] => (Allow) LPort=9009 FirewallRules: [{8C8E3540-DB89-43C2-B509-005441688778}] => (Allow) LPort=9009 FirewallRules: [{6A2296E4-FD13-4B4F-8AD7-26409CBE269A}] => (Allow) LPort=9009 FirewallRules: [{C9C82E5B-5E8A-4C1F-AD7F-4BF150982D92}] => (Allow) LPort=9009 FirewallRules: [{150240FA-7A5C-4EBA-8063-BA377C180AE1}] => (Allow) LPort=9009 FirewallRules: [{AA1DDFC3-358E-4A2C-A325-3CB346FD43F4}] => (Allow) LPort=9009 FirewallRules: [{7D05CE03-9ED2-461D-A60C-C3BB5BCE6C45}] => (Allow) LPort=9009 FirewallRules: [{F4A5D220-7403-49C0-A3F2-567BF39F1D49}] => (Allow) LPort=9009 FirewallRules: [{BFD01769-DA79-4C73-868A-936332C9FA4D}] => (Allow) LPort=9009 FirewallRules: [{AFDDC2F8-E40F-41BF-B679-710C2E126E39}] => (Allow) LPort=9009 FirewallRules: [{2C325E0B-C07D-49A2-ADE3-E7B5D48970EC}] => (Allow) LPort=9009 FirewallRules: [{6A78CF23-8AE8-41D9-827B-5CA976EC4F6E}] => (Allow) LPort=9009 FirewallRules: [{28764CE5-A242-4A34-8B4B-33D22E225FCA}] => (Allow) LPort=9009 FirewallRules: [{4FD2476A-4C16-4120-BE74-DB1C79C919BC}] => (Allow) LPort=9009 FirewallRules: [{B2F7AF8B-CD1F-4966-9683-531575DD0E1F}] => (Allow) LPort=9009 FirewallRules: [{16A106C4-65BE-4F6D-8F84-58F7C7B0C3A9}] => (Allow) LPort=9009 FirewallRules: [TCP Query User{D596E53F-36BF-49F9-8DEB-7F4CEAF19A5E}F:\ubisoft game launcher\games\forhonortts\forhonor.exe] => (Allow) F:\ubisoft game launcher\games\forhonortts\forhonor.exe FirewallRules: [UDP Query User{F4620D4B-C439-4F55-9F7E-F3870886981B}F:\ubisoft game launcher\games\forhonortts\forhonor.exe] => (Allow) F:\ubisoft game launcher\games\forhonortts\forhonor.exe FirewallRules: [{7682A39C-BA77-4693-931C-6B6BEFAC1BA7}] => (Block) F:\ubisoft game launcher\games\forhonortts\forhonor.exe FirewallRules: [{3E0FC410-E895-4E83-A066-16FAB27B6A61}] => (Block) F:\ubisoft game launcher\games\forhonortts\forhonor.exe FirewallRules: [{2D640ED3-1F8D-456D-90DE-99BCAA548025}] => (Allow) LPort=9009 FirewallRules: [{634FCF78-4442-4109-A175-48A3B69416C7}] => (Allow) LPort=9009 FirewallRules: [{7C04387F-4AA9-4C56-A026-8AB03CA360C6}] => (Allow) LPort=9009 FirewallRules: [{B8A37C12-311A-499F-9177-FAEE45B01989}] => (Allow) LPort=9009 FirewallRules: [{A2A1614D-66C4-454C-8CC2-4C19BFCD6CBA}] => (Allow) LPort=9009 FirewallRules: [{43A7EAEC-9B5B-4F5C-A273-FD0D33DA91B0}] => (Allow) LPort=9009 FirewallRules: [{06774C6D-C538-412A-9ECF-A8184C441092}] => (Allow) LPort=9009 FirewallRules: [{70ABBB01-880F-4FD6-AD5F-2206C85E1341}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{5B0BC88A-97B2-43C6-BF61-E51C8D99EC7C}] => (Allow) LPort=9009 FirewallRules: [{D831140F-7854-491E-B3C5-90DB69FB50BF}] => (Allow) LPort=9009 FirewallRules: [{74C55332-F007-4F5D-9D00-61FC41BDAC98}] => (Allow) LPort=9009 FirewallRules: [{18A53290-EADC-4871-AF69-67611BE59DF7}] => (Allow) LPort=9009 FirewallRules: [{25CA6247-CA7A-4FF0-A781-D5A1EA132ACC}] => (Allow) LPort=9009 FirewallRules: [{3DBE043C-4B3E-43BA-82C5-7D9398745BEC}] => (Allow) LPort=9009 FirewallRules: [TCP Query User{243952D1-84F8-44DB-B610-2282990BBEA8}F:\program files (x86)\origin games\fifa 18\fifa18.exe] => (Allow) F:\program files (x86)\origin games\fifa 18\fifa18.exe FirewallRules: [UDP Query User{1C4609BB-C137-44D6-875D-D8944EE772F1}F:\program files (x86)\origin games\fifa 18\fifa18.exe] => (Allow) F:\program files (x86)\origin games\fifa 18\fifa18.exe FirewallRules: [{BABC7541-C059-49FC-9737-5BBC05F9CBD8}] => (Block) F:\program files (x86)\origin games\fifa 18\fifa18.exe FirewallRules: [{7DAB6AB3-E62B-48FC-888A-2EAFDAAD700E}] => (Block) F:\program files (x86)\origin games\fifa 18\fifa18.exe FirewallRules: [{B231EC2E-EE29-4CEC-B7C5-588272348BD6}] => (Allow) LPort=9009 FirewallRules: [{92973014-1BF9-4046-84ED-36C3CA66CBE9}] => (Allow) LPort=9009 FirewallRules: [{BCF7E6EE-AC35-487C-A480-713E4FD10804}] => (Allow) LPort=9009 FirewallRules: [{DF1EBDA3-CDD4-47D0-B0C3-DA0B993923D5}] => (Allow) LPort=9009 FirewallRules: [{AE11B924-69FF-46BF-920B-4DEF8850351E}] => (Allow) LPort=9009 FirewallRules: [{4788BFA3-B130-4EFE-B614-315CF603502A}] => (Allow) LPort=9009 FirewallRules: [{D45B0A52-DD01-4C3A-81B4-9283FE0BD682}] => (Allow) LPort=9009 FirewallRules: [{92E13A5E-8562-44DA-B27B-F544A51F9A8C}] => (Allow) LPort=9009 FirewallRules: [{950663B6-6E2A-4F52-A650-0D18C3BE91BF}] => (Allow) LPort=9009 FirewallRules: [{66CE1B8F-2ECD-42DA-969A-40C32741D62C}] => (Allow) LPort=9009 FirewallRules: [{D2F2EED4-E386-4907-B83D-B7050CC67546}] => (Allow) LPort=9009 FirewallRules: [{84E83E51-819B-414E-BFB9-50A03AC68272}] => (Allow) LPort=9009 FirewallRules: [{85E3A401-4FCE-4776-A993-9E295251420F}] => (Allow) LPort=9009 FirewallRules: [{DB12F814-FC84-42B4-95FA-AF5DBDF05329}] => (Allow) LPort=9009 FirewallRules: [{ED4BEB8E-E4AD-4B3B-A532-97621AD65ACB}] => (Allow) LPort=9009 FirewallRules: [{37C555EB-54B6-45C8-AE43-DC3FA183C5DA}] => (Allow) LPort=9009 FirewallRules: [{3473BEC4-EAE5-4346-BF8A-91D32BF7EE0E}] => (Allow) F:\Program Files (x86)\Origin Games\FIFA 18\FIFASetup\fifaconfig.exe FirewallRules: [{565D7012-43B0-4360-BEF1-7C4E79CE9317}] => (Allow) F:\Program Files (x86)\Origin Games\FIFA 18\FIFASetup\fifaconfig.exe FirewallRules: [{E02B96B9-1E61-4A51-89BB-8750DABAB3A2}] => (Allow) LPort=9009 FirewallRules: [{7D50C937-72B8-4946-B8E9-05B8B34FC759}] => (Allow) LPort=9009 FirewallRules: [{535B0643-E748-4729-880C-6C7C8EA05682}] => (Allow) LPort=9009 FirewallRules: [{CAFF82F6-631C-486A-AD01-13787BA32D04}] => (Allow) LPort=9009 FirewallRules: [{D5762A25-AD6C-4B87-A115-72E73DB5D649}] => (Allow) LPort=9009 FirewallRules: [{1321BDC0-DE62-487A-B3D5-CFFBC5449A24}] => (Allow) LPort=9009 FirewallRules: [{00AD1D69-C3FD-456B-828B-D7FF6FE502B9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{753D4372-17AA-4BCF-8A4F-5F7BE6EFFBBC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{C3ED3F68-5258-4274-ADC0-0023B4E64C84}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{FA3A0044-86FF-4538-A819-F69F356D8C9C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{C492152B-B926-42F9-9418-75C7F9E19D2B}] => (Allow) LPort=9009 FirewallRules: [TCP Query User{1B6F6DEB-6106-4946-A5E8-6424385D557A}C:\program files\filezilla ftp client\filezilla.exe] => (Allow) C:\program files\filezilla ftp client\filezilla.exe FirewallRules: [UDP Query User{CB33133E-201C-4605-925F-DD9F5A8C84AD}C:\program files\filezilla ftp client\filezilla.exe] => (Allow) C:\program files\filezilla ftp client\filezilla.exe FirewallRules: [{1EE13CD9-33C7-4218-9523-508719756460}] => (Block) C:\program files\filezilla ftp client\filezilla.exe FirewallRules: [{BE3F37C7-1B9A-4BFE-923F-077DEB58F3AD}] => (Block) C:\program files\filezilla ftp client\filezilla.exe FirewallRules: [{420C8580-6BB0-451A-85ED-52855C6D8D95}] => (Allow) LPort=9009 FirewallRules: [{0FB06D87-2483-4ED6-BCEC-04CC91730133}] => (Allow) LPort=9009 FirewallRules: [{422FAAC0-B7A6-4A72-A7A6-A75206ED69A7}] => (Allow) LPort=9009 ==================== Wiederherstellungspunkte ========================= ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (10/15/2017 08:46:25 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-O6T60EA) Description: Bei der Aktivierung der App „Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Error: (10/15/2017 04:01:27 PM) (Source: PHP-7.1.7) (EventID: 4) (User: ) Description: Event-ID 4 Systemfehler: ============= Error: (10/16/2017 08:50:39 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet: Die Anforderung wird nicht unterstützt. Error: (10/15/2017 08:46:29 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-O6T60EA) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (10/15/2017 08:46:27 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-O6T60EA) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (10/15/2017 08:46:25 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-O6T60EA) Description: Der Server "Microsoft.Windows.ContentDeliveryManager_10.0.15063.0_neutral_neutral_cw5n1h2txyewy!App.AppXwdz8g2fxr36xz0tdtagygnvemf85s7gg.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (10/15/2017 02:52:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet: Die Anforderung wird nicht unterstützt. Error: (10/15/2017 12:58:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet: Die Anforderung wird nicht unterstützt. Error: (10/14/2017 02:30:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet: Die Anforderung wird nicht unterstützt. Error: (10/13/2017 05:02:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} und der APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (10/13/2017 11:20:43 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet: Die Anforderung wird nicht unterstützt. Error: (10/13/2017 09:35:10 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-O6T60EA) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. CodeIntegrity: =================================== Date: 2017-09-10 18:10:37.004 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements. Date: 2017-09-02 11:26:45.706 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements. Date: 2017-08-25 15:22:26.001 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements. Date: 2017-08-23 11:08:35.163 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements. Date: 2017-08-23 11:08:02.722 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements. Date: 2017-08-17 18:55:18.375 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements. Date: 2017-08-07 09:34:47.947 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz Prozentuale Nutzung des RAM: 22% Installierter physikalischer RAM: 16337.85 MB Verfügbarer physikalischer RAM: 12726.95 MB Summe virtueller Speicher: 18769.85 MB Verfügbarer virtueller Speicher: 14728.57 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:231.56 GB) (Free:166.45 GB) NTFS Drive f: (Spiele) (Fixed) (Total:292.96 GB) (Free:141.93 GB) NTFS Drive g: (Web) (Fixed) (Total:316.27 GB) (Free:315.19 GB) NTFS Drive i: (Persönliche Daten) (Fixed) (Total:158.15 GB) (Free:137.77 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 232.9 GB) (Disk ID: E0252E54) Partition: GPT. ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: BB4E60E2) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=OF Extended) ==================== Ende von Addition.txt ============================ |
Themen zu Trojanisches Pferd durch AntivirenProgramm erkannt |
anderes, antivirenprogramm, dateien, einiger, erkannt, gefunde, infiziert, installier, installiert, keylogger, meinem, nochmals, pferd, profis, programm, programme, system, troja, trojaner, trojanisches, trojanisches pferd, verdacht, weiteres, windows, windows10, windowsapps |