|
Plagegeister aller Art und deren Bekämpfung: eatyellowmango.com, Greift meine Klicks auf Links abWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
23.10.2017, 14:10 | #1 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Hallo Community, ich wollte mir heute einen USB Treiber für mein Android Handy (AUB) installieren und habe mir eine obskure Software im Firefox eingehandelt. Sobald ich den Firefox öffne, auf eine Seite gehe und dort z.B. etwas suche, hier im Beispiel ein Bauteil bei einem Distributor, öffnet sich ein neuer Tab und es erscheint das Bild aus dem Anhang. Aus der Adresszeile schließe ich, dass irgendwie meine Auswahl abgegriffen wird. Genauer kann ich es nicht zuordnen. Mit dem Öffnen von Firefox erhöht sich auch massiv meine CPU Auslastung. Ich habe mit Malwarebytes, McAfee, ByteFence, ESET und nochmal Malwarebytes gescannt und einiges an Trojanern entfernen können. Aber oben beschriebenen Code werde ich nicht los. Ich bin mehr oder weniger Laie und bin nun ratlos und benötige Hilfe. - Was ist eatyellowmango? - Wie werde ich das los? Danke! Grüssle, L IronLeaves Anhänge: Bild vom Firefox Scanberichte Malwarebytes |
23.10.2017, 14:42 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | eatyellowmango.com, Greift meine Klicks auf Links abLesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
23.10.2017, 14:58 | #3 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Sorry! Unten ist der letzte Stand nach dem dritten Malwarebytes Scan... Danke für die Mühe!
__________________Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 23.10.17 Scan-Zeit: 15:05 Protokolldatei: e3d605b7-b7f2-11e7-9f43-d850e6402e7d.json Administrator: Ja -Softwaredaten- Version: 3.2.2.2029 Komponentenversion: 1.0.212 Version des Aktualisierungspakets: 1.0.3075 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: System -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Ergebnis: Abgeschlossen Gescannte Objekte: 487557 Erkannte Bedrohungen: 5 In die Quarantäne verschobene Bedrohungen: 5 Abgelaufene Zeit: 2 Min., 23 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Erkennung -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 1 Adware.Wajam, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, Löschen bei Neustart, [489], [-1],0.0.0 Registrierungswert: 3 Adware.Wajam, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Löschen bei Neustart, [489], [-1],0.0.0 Adware.Wajam, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Löschen bei Neustart, [489], [-1],0.0.0 Adware.Wajam, HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Löschen bei Neustart, [489], [-1],0.0.0 Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Datei: 1 Adware.Wajam, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\S2S.EXE, Löschen bei Neustart, [489], [449149],1.0.3075 Physischer Sektor: 0 (keine bösartigen Elemente erkannt) (end) |
23.10.2017, 15:04 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | eatyellowmango.com, Greift meine Klicks auf Links ab Du möchtest bitte ALLE Logs mit Funden so posten...
__________________ Logfiles bitte immer in CODE-Tags posten |
23.10.2017, 15:27 | #5 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Hier der erste Scan. Ich hoffe, es ist nicht zu lang... Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 23.10.17 Scan-Zeit: 09:55 Protokolldatei: 7d9466c4-b7c7-11e7-a55a-d850e6402e7d.json Administrator: Ja -Softwaredaten- Version: 3.2.2.2029 Komponentenversion: 1.0.212 Version des Aktualisierungspakets: 1.0.2951 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: System -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Ergebnis: Abgeschlossen Gescannte Objekte: 484570 Erkannte Bedrohungen: 164 In die Quarantäne verschobene Bedrohungen: 91 Abgelaufene Zeit: 4 Min., 1 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Erkennung -Scan-Details- Prozess: 5 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\beedeeed45182276ce10e6d85d0a6abd.exe, In Quarantäne, [8536], [415982],1.0.2951 Adware.HPDefender, C:\USERS\OX0262\APPDATA\ROAMING\MEDIAPLAYERAPPLICATION\MEDIAPLAYERAPPLICATION.EXE, In Quarantäne, [23], [372174],1.0.2951 PUP.Optional.ByteFence, C:\PROGRAM FILES\BYTEFENCE\BYTEFENCESERVICE.EXE, Keine Aktion durch Benutzer, [626], [388726],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFence.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsLggr.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 Modul: 15 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\beedeeed45182276ce10e6d85d0a6abd.exe, In Quarantäne, [8536], [415982],1.0.2951 Adware.HPDefender, C:\USERS\OX0262\APPDATA\ROAMING\MEDIAPLAYERAPPLICATION\MEDIAPLAYERAPPLICATION.EXE, In Quarantäne, [23], [372174],1.0.2951 PUP.Optional.ByteFence, C:\PROGRAM FILES\BYTEFENCE\BYTEFENCESERVICE.EXE, Keine Aktion durch Benutzer, [626], [388726],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x64\lz4_x64.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Microsoft.Win32.TaskScheduler.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Microsoft.Win32.TaskScheduler.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFence.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFenceGUI.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsEngine.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsEngine.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsLggr.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsLggr.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsUtils.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsUtils.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 Trojan.Wdfload.TskLnk, C:\PROGRAM FILES\HP PHOTOSMAP\HP PHOTOSMAP.DLL, In Quarantäne, [4308], [424430],1.0.2951 Registrierungsschlüssel: 41 Adware.Social2Search.EncJob, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\3df67dd7ebaed60a14050acfbb8f5f6d, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3df67dd7ebaed60a14050acfbb8f5f6d, In Quarantäne, [8536], [-1],0.0.0 Adware.Social2Search.EncJob, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{834C539F-824D-4002-90C5-3783A162F10B}, In Quarantäne, [8536], [-1],0.0.0 Adware.Social2Search.EncJob, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{834C539F-824D-4002-90C5-3783A162F10B}, In Quarantäne, [8536], [-1],0.0.0 Adware.SearchAwesome.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\9a197021e853721f3967b346d5813ba2, In Quarantäne, [2374], [-1],0.0.0 Adware.SearchAwesome.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4ADF8C16-D38C-4399-AAB3-140EC43E9147}, In Quarantäne, [2374], [-1],0.0.0 Adware.SearchAwesome.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4ADF8C16-D38C-4399-AAB3-140EC43E9147}, In Quarantäne, [2374], [-1],0.0.0 PUP.Optional.WinYahoo, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BF5FDFD0-BF01-4D2D-9BB4-CC151964C92A}, In Quarantäne, [71], [254682],1.0.2951 PUP.Optional.WinYahoo, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [71], [254683],1.0.2951 PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [71], [254683],1.0.2951 PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}, In Quarantäne, [71], [254683],1.0.2951 Adware.HPDefender, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaPlayerApplication, In Quarantäne, [23], [372174],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\WOW6432NODE\ByteFence, Keine Aktion durch Benutzer, [626], [388723],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\CLASSES\DIRECTORY\SHELL\ByteFence Folder Scan, Keine Aktion durch Benutzer, [626], [388724],1.0.2951 Adware.SearchAwesome, HKLM\SOFTWARE\WOW6432NODE\SrcAAAesom Browser Enhancer, In Quarantäne, [4682], [424837],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ByteFence, Keine Aktion durch Benutzer, [626], [388725],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\TRACING\ByteFence_RASAPI32, Keine Aktion durch Benutzer, [626], [389038],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\TRACING\ByteFence_RASMANCS, Keine Aktion durch Benutzer, [626], [389038],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{24344A8F-1F7E-4DE3-9CEF-A389C3CBCDF6}, Keine Aktion durch Benutzer, [626], [389376],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{B734F5E3-B220-4EB5-A4C1-EB203DFA786D}, Keine Aktion durch Benutzer, [626], [389376],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\CLASSES\*\SHELL\ByteFence File Scan, Keine Aktion durch Benutzer, [626], [391313],1.0.2951 PUP.Optional.ProductSetup, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\PRODUCTSETUP, In Quarantäne, [14175], [242047],1.0.2951 PUP.Optional.InstallCore, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\csastats, In Quarantäne, [2], [260986],1.0.2951 PUP.Optional.Distromatic, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\Distromatic, In Quarantäne, [2481], [359638],1.0.2951 Adware.HPDefender, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MediaPlayerApplication, In Quarantäne, [23], [423032],1.0.2951 PUP.Optional.Wajam, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\WajIEnhance, In Quarantäne, [83], [244670],1.0.2951 PUP.Optional.Wajam, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, In Quarantäne, [83], [-1],0.0.0 PUP.Optional.ByteFence, HKLM\SOFTWARE\ByteFence, Keine Aktion durch Benutzer, [626], [388723],1.0.2951 Adware.SearchAwesome, HKLM\SOFTWARE\SrcAAAesom Browser Enhancer, In Quarantäne, [4682], [424837],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ByteFence, Keine Aktion durch Benutzer, [626], [389375],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ByteFence Scan, Keine Aktion durch Benutzer, [626], [389375],1.0.2951 Adware.SearchAwesome, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\3df67dd7ebaed60a14050acfbb8f5f6d, In Quarantäne, [4682], [424836],1.0.2951 PUP.Optional.ByteFence, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ByteFenceService, Keine Aktion durch Benutzer, [626], [388726],1.0.2951 PUP.Optional.ByteFence, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\ByteFenceService, Keine Aktion durch Benutzer, [626], [389039],1.0.2951 Adware.Wajam.Generic, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\a4a9e704abb86aa206ec1f873e0daec5, In Quarantäne, [1740], [336669],1.0.2951 Trojan.Wdfload.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HP PhotoSmap, In Quarantäne, [4308], [-1],0.0.0 Trojan.Wdfload.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{778BAD1D-4423-4FFA-8F94-F2F4F34D88BB}, In Quarantäne, [4308], [-1],0.0.0 Trojan.Wdfload.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{778BAD1D-4423-4FFA-8F94-F2F4F34D88BB}, In Quarantäne, [4308], [-1],0.0.0 PUP.Optional.Wajam, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, In Quarantäne, [83], [170024],1.0.2951 PUP.Optional.Wajam, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, In Quarantäne, [83], [170024],1.0.2951 PUP.Optional.Wajam, HKLM\SOFTWARE\CLASSES\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, In Quarantäne, [83], [170024],1.0.2951 Registrierungswert: 16 PUP.Optional.WinYahoo, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BF5FDFD0-BF01-4D2D-9BB4-CC151964C92A}|URL, In Quarantäne, [71], [254682],1.0.2951 PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, In Quarantäne, [71], [254683],1.0.2951 Adware.HPDefender, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|MediaPlayerApplication, In Quarantäne, [23], [372174],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{24344A8F-1F7E-4DE3-9CEF-A389C3CBCDF6}|PATH, Keine Aktion durch Benutzer, [626], [389376],1.0.2951 PUP.Optional.ByteFence, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{B734F5E3-B220-4EB5-A4C1-EB203DFA786D}|PATH, Keine Aktion durch Benutzer, [626], [389376],1.0.2951 PUP.Optional.ProductSetup, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\PRODUCTSETUP|TB, In Quarantäne, [14175], [242047],1.0.2951 PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, In Quarantäne, [71], [254683],1.0.2951 PUP.Optional.Conduit, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, In Quarantäne, [572], [236865],1.0.2951 PUP.Optional.Conduit, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|TOPRESULTURL, In Quarantäne, [572], [236865],1.0.2951 PUP.Optional.Wajam, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, [83], [-1],0.0.0 PUP.Optional.Wajam, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, [83], [-1],0.0.0 PUP.Optional.Wajam, HKU\S-1-5-21-968727657-2353350609-836479209-500\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, [83], [-1],0.0.0 PUP.Optional.Wajam, HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, [83], [-1],0.0.0 Adware.HPDefender, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MEDIAPLAYERAPPLICATION|UNINSTALLSTRING, In Quarantäne, [23], [423035],1.0.2951 Adware.SearchAwesome, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\3df67dd7ebaed60a14050acfbb8f5f6d|DISPLAYNAME, In Quarantäne, [4682], [424836],1.0.2951 Adware.SearchAwesome.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\3df67dd7ebaed60a14050acfbb8f5f6d|PUBLISHER, In Quarantäne, [8906], [437519],1.0.2951 Registrierungsdaten: 3 PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Ersetzt, [71], [293283],1.0.2951 PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Ersetzt, [71], [293283],1.0.2951 PUP.Optional.WinYahoo, HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Ersetzt, [71], [293281],1.0.2951 Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 10 PUP.Optional.StartPage, C:\USERS\OX0262\APPDATA\ROAMING\BROWSERMODULE, In Quarantäne, [46], [335017],1.0.2951 Adware.Social2Search.EncJob, C:\PROGRAM FILES\3df67dd7ebaed60a14050acfbb8f5f6d, In Quarantäne, [8536], [415982],1.0.2951 Adware.HPDefender, C:\Users\ox0262\AppData\Roaming\MediaPlayerApplication\MediaPlayerApplication, In Quarantäne, [23], [372174],1.0.2951 Adware.HPDefender, C:\USERS\OX0262\APPDATA\ROAMING\MEDIAPLAYERAPPLICATION, In Quarantäne, [23], [372174],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Scans, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Logs, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x64, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x86, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\PROGRAM FILES\BYTEFENCE, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ByteFence Anti-Malware, Keine Aktion durch Benutzer, [626], [388719],1.0.2951 Datei: 74 PUP.Optional.StartPage, C:\USERS\OX0262\APPDATA\ROAMING\BROWSERMODULE\COMPONENT.LOG, In Quarantäne, [46], [335017],1.0.2951 PUP.Optional.ByteFence, C:\WINDOWS\SYSTEM32\TASKS\ByteFence, Keine Aktion durch Benutzer, [626], [388721],1.0.2951 PUP.Optional.ByteFence, C:\WINDOWS\SYSTEM32\TASKS\ByteFence Scan, Keine Aktion durch Benutzer, [626], [388721],1.0.2951 PUP.Optional.ByteFence, C:\USERS\OX0262\DESKTOP\ByteFence Anti-Malware.lnk, Keine Aktion durch Benutzer, [626], [389521],1.0.2951 PUP.Optional.Tables, C:\USERS\OX0262\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\I0V75A24.DEFAULT\EXTENSIONS\378507@EXTCORP.NET.XPI, Keine Aktion durch Benutzer, [876], [413446],1.0.2951 Adware.Social2Search.EncJob, C:\PROGRAM FILES\3df67dd7ebaed60a14050acfbb8f5f6d\WBE_uninstall.dat, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\17034131a63cb1b00d1b66114f5aac0a, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\23db88b7b1a976252431b574335d38b5.ico, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\2e855db5e45a801cd69058c6e196bcec.exe, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\7c2ce081746c04780cf8a48f003b6439.exe, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\beedeeed45182276ce10e6d85d0a6abd.exe, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\c9f7e95d51528c262ad777c5d1fd7e07, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\d7d3ae6c456b3f39037377043d54f355, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\mozcrt19.dll, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\nspr4.dll, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\nss3.dll, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\plc4.dll, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\plds4.dll, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\service.dat, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\service_64.dat, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\Program Files\3df67dd7ebaed60a14050acfbb8f5f6d\softokn3.dll, In Quarantäne, [8536], [415982],1.0.2951 Adware.Social2Search.EncJob, C:\WINDOWS\SYSTEM32\TASKS\3df67dd7ebaed60a14050acfbb8f5f6d, In Quarantäne, [8536], [-1],0.0.0 Adware.SearchAwesome.TskLnk, C:\WINDOWS\9a197021e853721f3967b346d5813ba2.ps1, In Quarantäne, [2374], [428239],1.0.2951 Adware.SearchAwesome.TskLnk, C:\WINDOWS\SYSTEM32\TASKS\9a197021e853721f3967b346d5813ba2, In Quarantäne, [2374], [-1],0.0.0 Adware.HPDefender, C:\USERS\OX0262\APPDATA\ROAMING\MEDIAPLAYERAPPLICATION\MEDIAPLAYERAPPLICATION.EXE, In Quarantäne, [23], [372174],1.0.2951 Adware.HPDefender, C:\Users\ox0262\AppData\Roaming\MediaPlayerApplication\MediaPlayerApplication\mplayerc.exe, In Quarantäne, [23], [372174],1.0.2951 Adware.HPDefender, C:\Users\ox0262\AppData\Roaming\MediaPlayerApplication\uninstaller.exe, In Quarantäne, [23], [372174],1.0.2951 PUP.Optional.ByteFence, C:\PROGRAM FILES\BYTEFENCE\BYTEFENCESERVICE.EXE, Keine Aktion durch Benutzer, [626], [388726],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Logs\000003.log, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Logs\CURRENT, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Logs\LOCK, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Logs\LOG, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Logs\MANIFEST-000002, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x64\ext_x64.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x64\lz4_x64.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x64\System.Data.SQLite.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x86\ext_x86.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x86\lz4_x86.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\x86\System.Data.SQLite.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Microsoft.Win32.TaskScheduler.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFence.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFence.exe.config, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFenceGUI.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFenceScan.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFenceScan.exe.config, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFenceService.exe.config, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFenceService.InstallLog, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\ByteFenceService.InstallState, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\EULA.txt, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\InstallUtil.InstallLog, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsEngine.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsEngineHelper.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsEngineHelper.exe.config, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsLggr.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsLggr.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\rsUtils.dll, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Signatures.dat, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\Uninstall.exe, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\Program Files\ByteFence\WhiteList.dat, Keine Aktion durch Benutzer, [626], [388717],1.0.2951 PUP.Optional.ByteFence, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware\ByteFence Anti-Malware.lnk, Keine Aktion durch Benutzer, [626], [388719],1.0.2951 PUP.Optional.WinYahoo, C:\USERS\OX0262\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\I0V75A24.DEFAULT\PREFS.JS, Ersetzt, [71], [303296],1.0.2951 PUP.Optional.Amonetize, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\AMIPIXEL.CFG, In Quarantäne, [6], [302488],1.0.2951 PUP.Optional.BrowserModule, C:\USERS\OX0262\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\I0V75A24.DEFAULT\CHROME\USERCONTENT.CSS, In Quarantäne, [2194], [389741],1.0.2951 PUP.Optional.WinYahoo, C:\USERS\OX0262\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\I0V75A24.DEFAULT\SEARCHPLUGINS\YAHOO! POWERED.XML, In Quarantäne, [71], [302287],1.0.2951 Adware.Wajam.Generic, C:\WINDOWS\SYSTEM32\DRIVERS\A4A9E704ABB86AA206EC1F873E0DAEC5.SYS, In Quarantäne, [1740], [336669],1.0.2951 Trojan.Wdfload.TskLnk, C:\PROGRAM FILES\HP PHOTOSMAP\HP PHOTOSMAP.DLL, In Quarantäne, [4308], [424430],1.0.2951 Trojan.Wdfload.TskLnk, C:\WINDOWS\SYSTEM32\TASKS\HP PhotoSmap, In Quarantäne, [4308], [-1],0.0.0 Adware.Amonetize.Generic, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\SETUP.EXE, In Quarantäne, [1604], [448811],1.0.2951 Heuristics.Shuriken, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\INSTALLER_CAMPAIGN_20521.EXE, In Quarantäne, [1773], [167],1.0.2951 Trojan.Wdfload.Generic, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\WEBFRIEND.EXE, In Quarantäne, [4917], [409038],1.0.2951 Adware.Tuto4PC, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\SETUPTEXTTOTALK.EXE, In Quarantäne, [393], [438990],1.0.2951 PUP.Optional.VideoBox, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\VBD.EXE, In Quarantäne, [2188], [402806],1.0.2951 Adware.FileTour.Generic, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\RAR$EXA0.024\ADBSETUP1_1.EXE, In Quarantäne, [1414], [448983],1.0.2951 Adware.FileTour.Generic, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\ADBSETUP1_1.RAR, In Quarantäne, [1414], [448983],1.0.2951 Physischer Sektor: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 23.10.17 Scan-Zeit: 10:52 Protokolldatei: 730ef84c-b7cf-11e7-9ee2-d850e6402e7d.json Administrator: Ja -Softwaredaten- Version: 3.2.2.2029 Komponentenversion: 1.0.212 Version des Aktualisierungspakets: 1.0.3073 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: System -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Ergebnis: Abgeschlossen Gescannte Objekte: 487733 Erkannte Bedrohungen: 2 In die Quarantäne verschobene Bedrohungen: 2 Abgelaufene Zeit: 2 Min., 5 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Erkennung -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 1 PUP.Optional.ByteFence, HKU\S-1-5-18\SOFTWARE\ByteFence, In Quarantäne, [632], [388728],1.0.3073 Registrierungswert: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Datei: 1 PUP.Optional.ByteFence, C:\USERS\OX0262\APPDATA\LOCAL\TEMP\~NSUA.TMP\UN_A.EXE, In Quarantäne, [632], [389016],1.0.3073 Physischer Sektor: 0 (keine bösartigen Elemente erkannt) (end) |
23.10.2017, 15:54 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | eatyellowmango.com, Greift meine Klicks auf Links ab vollgepumpt mit adware Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ --> eatyellowmango.com, Greift meine Klicks auf Links ab |
26.10.2017, 07:48 | #7 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Na zum Glück nur Adware... Ich habe schon gedacht meine Maschine wäre voll korrumpiert. Hier die FRST, die Addition gibs gleich hinterher. Danke für die Mühe! FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 26-10-2017 durchgeführt von ox0262 (Administrator) auf IPEPETZOLD (26-10-2017 08:45:38) Gestartet von C:\Users\ox0262\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PFE4L2U Geladene Profile: ox0262 (Verfügbare Profile: ox0262 & Administrator) Platform: Windows 7 Enterprise Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Keysight) C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Keysight Technologies) C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe (Keysight) C:\Program Files\Agilent\IO Libraries Suite\AgilentNkoServer.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe (Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe (SafeNet Inc.) C:\Windows\System32\hasplms.exe (Intel Corporation) C:\Program Files (x86)\Intel\MPI-RT\5.0.2.044\intel64\bin\hydra_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\MPI-RT\5.0.2.044\intel64\bin\smpd.exe (Keysight) C:\Program Files (x86)\Keysight\Communications\Fabric\KeysightCommunicationsFabric.exe (National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe (McAfee LLC.) C:\Program Files (x86)\McAfee\Common Framework\macmnsvc.exe (McAfee LLC.) C:\Program Files (x86)\McAfee\Common Framework\masvc.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe ( ) C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe (National Instruments Corporation) D:\NI_488\MAX\nimxs.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (National Instruments Corporation) C:\Windows\SysWOW64\nipalsm.exe (National Instruments Corporation) D:\NI_488\Shared\niauth\niauth_daemon.exe (National Instruments Corporation) D:\NI_488\Shared\Security\nidmsrv.exe (National Instruments Corporation) D:\NI_488\Shared\nisvcloc\nisvcloc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Keysight) C:\Program Files\Agilent\IO Libraries Suite\ACE2-Service.exe (National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe (National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe (National Instruments Corporation) D:\NI_488\Shared\mDNS Responder\nimdnsResponder.exe (National Instruments Corporation) C:\Windows\SysWOW64\nipxism.exe (Keysight) C:\Program Files (x86)\Agilent\ACCL\Licensing\bin\AgilentLicenseService.exe (National Instruments Corporation) D:\NI_488\Shared\NI-VISA\niLxiDiscovery.exe (National Instruments Corporation) D:\NI_488\Shared\NI Network Discovery\niDiscSvc.exe (National Instruments Corporation) D:\NI_488\Shared\NI WebServer\SystemWebServer.exe (National Instruments Corporation) D:\NI_488\Shared\NI WebServer\ApplicationWebServer.exe (National Instruments Corporation) D:\NI_488\Shared\NI WebServer\NIWebServiceContainer.exe (National Instruments Corporation) D:\NI_488\Shared\NI WebServer\NIWebServiceContainer.exe (National Instruments Corporation) D:\NI_488\Shared\NI WebServer\NIWebServiceContainer.exe (National Instruments Corporation) D:\NI_488\Shared\NI WebServer\NIWebServiceContainer.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (McAfee LLC.) C:\Program Files (x86)\McAfee\Common Framework\x86\macompatsvc.exe (McAfee LLC.) C:\Program Files (x86)\McAfee\Common Framework\x86\mfemactl.exe (Keysight Technologies) C:\Program Files\Agilent\IO Libraries Suite\bin\iproc488.exe (Keysight Technologies) C:\Program Files\Agilent\IO Libraries Suite\bin\iproc82357.exe (Keysight) C:\Program Files (x86)\Agilent\IO Libraries Suite\AgilentPXIResourceManager.exe (Flexera Software LLC) C:\Program Files\Keysight\EEsof_License_Tools\bin\lmgrd.exe (Flexera Software LLC) C:\Program Files\Keysight\EEsof_License_Tools\bin\lmgrd.exe (Keysight Technologies) C:\Program Files\Keysight\EEsof_License_Tools\bin\agileesofd.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Keysight Technologies) C:\Program Files\Agilent\IO Libraries Suite\bin\iprocsvr.exe (Keysight Technologies) C:\Program Files\Agilent\IO Libraries Suite\bin\iproc8491.exe (Keysight) C:\Program Files (x86)\Agilent\ACCL\Licensing\bin\AgilentLicenseNotifier.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe (National Instruments Corporation) D:\NI_488\Shared\NI Error Reporting\nierserver.exe (McAfee LLC.) C:\Program Files (x86)\McAfee\Common Framework\x86\UpdaterUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (McAfee LLC.) C:\Program Files (x86)\McAfee\Common Framework\x86\mctray.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrobat.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Source Engine\OSE.EXE (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\AcroExt\AcroExt.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\AcroExt\AcroExt.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (McAfee LLC.) C:\Program Files (x86)\McAfee\Common Framework\x86\McScript_InUse.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6846096 2012-11-19] (Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated) HKLM\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [415680 2012-02-06] (Autodesk, Inc.) HKLM-x32\...\Run: [ShStatEXE] => C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [253880 2017-03-30] (McAfee, Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3500056 2017-07-27] (Adobe Systems Inc.) HKLM-x32\...\Run: [McAfeeUpdaterUI] => C:\Program Files (x86)\McAfee\Common Framework\x86\UpdaterUI.exe [532184 2017-06-14] (McAfee LLC.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\Run: [ISM] => [X] HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\Policies\Explorer: [] HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\MountPoints2: {68099f85-1db0-11e7-be16-d850e6402e7d} - G:\OnePlus_setup.exe /s HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\MountPoints2: {bd89f15a-2929-11e5-9a1d-d850e6402e7d} - F:\setup.exe HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\MountPoints2: {ec03e98b-2db4-11e4-aa51-d850e6402e7d} - F:\LaunchU3.exe -a HKU\S-1-5-21-1202744845-3101423955-345487624-67750\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\IO Control.lnk [2016-09-05] ShortcutTarget: IO Control.lnk -> C:\Windows\Installer\{926ACB16-3E3E-48F2-B591-F6E87B636866}\NewShortcut5_2AA07447F06844BA88FA6CE6A9CE3FFC.exe (Flexera Software LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Keysight License Notifier.lnk [2016-09-05] ShortcutTarget: Keysight License Notifier.lnk -> C:\Windows\Installer\{92F6BFB2-DDD7-4065-92EC-35542435923F}\NewShortcut1_D64C9D6957964F70B3C3E8DC2DBB58DD.exe (Flexera Software LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting.lnk [2016-09-06] ShortcutTarget: NI Error Reporting.lnk -> D:\NI_488\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog5 07 C:\Program Files (x86)\Agilent\IO Libraries Suite\LxiMdnsNsp.dll [144896 2014-11-20] (Keysight Technologies) Winsock: Catalog5 08 D:\NI_488\Shared\mDNS Responder\nimdnsNSP.dll [26936 2016-05-31] (National Instruments Corporation) Winsock: Catalog5-x64 07 C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsNsp.dll [161792 2014-11-20] (Keysight Technologies) Winsock: Catalog5-x64 08 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [30008 2016-05-31] (National Instruments Corporation) Tcpip\Parameters: [DhcpNameServer] 141.52.3.3 141.52.8.18 Tcpip\..\Interfaces\{D404B31E-4CAD-4045-8510-8BC47E5E6431}: [DhcpNameServer] 141.52.3.3 141.52.8.18 Internet Explorer: ================== HKU\S-1-5-21-1202744845-3101423955-345487624-67750\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <==== ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-1202744845-3101423955-345487624-67750\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1202744845-3101423955-345487624-67750\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1202744845-3101423955-345487624-67750 -> {2211d4a5-48d0-47f5-a7cd-81e861470f7f} URL = hxxps://www.ecosia.org/search?q={searchTerms}&addon=opensearch BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-10-19] (Oracle Corporation) BHO: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20170412120455.dll [2017-04-12] (McAfee, Inc.) BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-11] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-19] (Oracle Corporation) BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-10-19] (Oracle Corporation) BHO-x32: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20170412120455.dll [2017-04-12] (McAfee, Inc.) BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-19] (Oracle Corporation) BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated) Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated) Toolbar: HKU\S-1-5-21-1202744845-3101423955-345487624-67750 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated) DPF: HKLM {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\ox0262\AppData\Roaming\Mozilla\Firefox\Profiles\i0v75a24.default [2017-10-23] FF DefaultSearchEngine: Mozilla\Firefox\Profiles\i0v75a24.default -> Yahoo! Powered FF SelectedSearchEngine: Mozilla\Firefox\Profiles\i0v75a24.default -> Yahoo! Powered FF Homepage: Mozilla\Firefox\Profiles\i0v75a24.default -> www.google.de FF Keyword.URL: Mozilla\Firefox\Profiles\i0v75a24.default -> user_pref("keyword.URL", true); FF Extension: (Tables) - C:\Users\ox0262\AppData\Roaming\Mozilla\Firefox\Profiles\i0v75a24.default\Extensions\378507@extcorp.net.xpi [2017-10-19] FF Extension: (Cisco WebEx Extension) - C:\Users\ox0262\AppData\Roaming\Mozilla\Firefox\Profiles\i0v75a24.default\Extensions\ciscowebexstart1@cisco.com.xpi [2017-10-18] FF Extension: (Quick Searcher) - C:\Users\ox0262\AppData\Roaming\Mozilla\Firefox\Profiles\i0v75a24.default\Extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233 [2017-10-23] FF SearchPlugin: C:\Users\ox0262\AppData\Roaming\Mozilla\Firefox\Profiles\i0v75a24.default\searchplugins\bing-lavasoft.xml [2017-10-23] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2017-08-28] FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: (McAfee ScriptScan for Firefox) - C:\Program Files (x86)\Common Files\McAfee\SystemCore [2017-04-19] [ist nicht signiert] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_183.dll [2017-10-26] () FF Plugin: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-19] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-19] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-26] () FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-19] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-19] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-09-23] (VideoLAN) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-08-18] (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2015win32.dll [2016-04-25] (National Instruments) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2017-08-18] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Users\ox0262\AppData\Roaming\mozilla\plugins\npatgpc.dll [2017-10-18] (Cisco WebEx LLC) StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-07-27] ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 Agilent License Service; C:\Program Files (x86)\Agilent\ACCL\Licensing\bin\AgilentLicenseService.exe [526760 2016-04-22] (Keysight) R2 AgilentInstrumentDiscoveryService; C:\Program Files\Agilent\IO Libraries Suite\ACE2-Service.exe [15168 2016-04-18] (Keysight) R2 AgilentIOLibrariesService; C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe [60224 2016-04-18] (Keysight) R3 AgilentPXIResourceManager; C:\Program Files (x86)\Agilent\IO Libraries Suite\AgilentPXIResourceManager.exe [315200 2016-04-18] (Keysight) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated) R2 AgtMdnsResponder; C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe [427008 2014-11-20] (Keysight Technologies) [Datei ist nicht signiert] R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232 2012-10-29] () R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [19232 2012-01-31] (Autodesk, Inc.) S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [15768 2010-02-03] (Microsoft Corporation) R2 EEsof EDA License Server; C:\Program Files\Keysight\EEsof_License_Tools\bin\lmgrd.exe [1998344 2016-03-30] (Flexera Software LLC) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2013-08-22] (Microsoft Corporation) [Datei ist nicht signiert] R2 hasplms; C:\Windows\system32\hasplms.exe [4466120 2013-01-11] (SafeNet Inc.) R2 impi_hydra; C:\Program Files (x86)\Intel\MPI-RT\5.0.2.044\intel64\bin\hydra_service.exe [864456 2014-10-30] (Intel Corporation) R2 impi_smpd; C:\Program Files (x86)\Intel\MPI-RT\5.0.2.044\intel64\bin\smpd.exe [2609056 2014-10-30] (Intel Corporation) R2 KeysightCommunicationsFabric; C:\Program Files (x86)\Keysight\Communications\Fabric\KeysightCommunicationsFabric.exe [26536 2016-07-13] (Keysight) R2 LkCitadelServer; C:\Windows\SysWOW64\lkcitdl.exe [695136 2014-08-07] (National Instruments, Inc.) R2 lkClassAds; C:\Windows\SysWOW64\lkads.exe [53544 2015-09-05] (National Instruments Corporation) R2 lkTimeSync; C:\Windows\SysWOW64\lktsrv.exe [63792 2015-09-05] (National Instruments Corporation) R2 macmnsvc; C:\Program Files (x86)\McAfee\Common Framework\macmnsvc.exe [121648 2017-06-14] (McAfee LLC.) R2 masvc; C:\Program Files (x86)\McAfee\Common Framework\masvc.exe [64384 2017-06-14] (McAfee LLC.) R3 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\x86\macompatsvc.exe [223376 2017-06-14] (McAfee LLC.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [272376 2017-04-12] (McAfee, Inc.) R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [225568 2017-03-30] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [384512 2017-04-12] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [343544 2017-04-12] (McAfee, Inc.) R2 mitsijm2013; C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe [339776 2012-01-31] ( ) R2 mxssvr; D:\NI_488\MAX\nimxs.exe [94752 2016-05-23] (National Instruments Corporation) R2 ni488enumsvc; C:\Windows\SysWOW64\nipalsm.exe [21048 2016-06-08] (National Instruments Corporation) R2 NIApplicationWebServer; D:\NI_488\Shared\NI WebServer\ApplicationWebServer.exe [65096 2016-05-31] (National Instruments Corporation) S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [83528 2016-05-31] (National Instruments Corporation) R2 niauth; D:\NI_488\Shared\niauth\niauth_daemon.exe [594984 2016-05-27] (National Instruments Corporation) R2 NIDomainService; D:\NI_488\Shared\Security\nidmsrv.exe [399152 2015-09-05] (National Instruments Corporation) R2 niLXIDiscovery; D:\NI_488\Shared\NI-VISA\niLxiDiscovery.exe [375160 2015-09-22] (National Instruments Corporation) R2 nimDNSResponder; D:\NI_488\Shared\mDNS Responder\nimdnsResponder.exe [334424 2016-05-31] (National Instruments Corporation) R2 NINetworkDiscovery; D:\NI_488\Shared\NI Network Discovery\niDiscSvc.exe [179304 2016-05-31] (National Instruments Corporation) R2 nipxirmu; C:\Windows\SysWOW64\nipxism.exe [23608 2016-06-10] (National Instruments Corporation) R2 NiSvcLoc; D:\NI_488\Shared\niSvcLoc\nisvcloc.exe [102512 2016-05-19] (National Instruments Corporation) R2 NISystemWebServer; D:\NI_488\Shared\NI WebServer\SystemWebServer.exe [65080 2016-05-31] (National Instruments Corporation) S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [Datei ist nicht signiert] S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-04] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 CST License Manager; C:\Program Files (x86)\CST STUDIO SUITE 2014\License Manager\lmgrd.exe [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 AgPciMem; C:\Program Files\Agilent\IO Libraries Suite\AgPciMem.sys [15584 2016-04-18] (Keysight Technologies) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-21] () R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [331144 2013-03-11] (SafeNet Inc.) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [475152 2017-04-12] (McAfee, Inc.) R3 mfeaacsk; C:\Windows\System32\drivers\mfeaacsk.sys [62992 2017-04-12] (McAfee, Inc.) S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [180272 2014-04-11] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [352784 2017-04-12] (McAfee, Inc.) U3 mfeavfk01; kein ImagePath R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [503824 2017-04-12] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [917008 2017-04-12] (McAfee, Inc.) R3 mfeplk; C:\Windows\System32\drivers\mfeplk.sys [108560 2017-04-12] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [124432 2017-04-12] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [251920 2017-04-12] (McAfee, Inc.) S3 ni1045k; C:\Windows\System32\drivers\ni1045kl.sys [13560 2016-06-10] (National Instruments Corporation) S3 ni1065k; C:\Windows\System32\drivers\ni1065k.sys [27384 2016-06-10] (National Instruments Corporation) S3 ni488k; C:\Windows\System32\DRIVERS\ni488k.sys [367920 2016-06-13] (National Instruments Corporation) R3 nidimk; C:\Windows\System32\drivers\nidimkl.sys [13576 2016-06-09] (National Instruments Corporation) R3 nimdbgk; C:\Windows\System32\drivers\nimdbgkl.sys [13568 2016-06-09] (National Instruments Corporation) R3 nimxdfk; C:\Windows\System32\drivers\nimxdfkl.sys [13560 2016-06-09] (National Instruments Corporation) S3 niorbk; C:\Windows\System32\drivers\niorbkl.sys [13560 2016-06-09] (National Instruments Corporation) S3 nipalfwedl; C:\Windows\System32\drivers\nipalfwedl.sys [13600 2016-06-08] (National Instruments Corporation) R0 NIPALK; C:\Windows\System32\drivers\nipalk.sys [784120 2016-06-08] (National Instruments Corporation) S3 nipalusbedl; C:\Windows\System32\drivers\nipalusbedl.sys [13600 2016-06-08] (National Instruments Corporation) R0 nipbcfk; C:\Windows\System32\drivers\nipbcfk.sys [19288 2016-03-15] (National Instruments Corporation) R0 nipcibrd; C:\Windows\System32\drivers\nipcibrd.sys [98072 2016-06-10] (National Instruments Corporation) R0 nipxibrc; C:\Windows\System32\drivers\nipxibrc.sys [64320 2016-06-10] (National Instruments Corporation) S3 nipxifpk; C:\Windows\System32\drivers\nipxifpk.sys [33088 2016-06-10] (National Instruments Corporation) S3 nipxigpk; C:\Windows\System32\drivers\nipxigpk.sys [22776 2016-06-10] (National Instruments Corporation) R2 nipxirmk; C:\Windows\System32\drivers\nipxirmkl.sys [13560 2016-06-10] (National Instruments Corporation) R3 NiViPciK; C:\Windows\System32\drivers\NiViPciKl.sys [15176 2016-01-21] (National Instruments Corporation) R2 NiViPxiK; C:\Windows\System32\drivers\NiViPxiKl.sys [15176 2016-01-21] (National Instruments Corporation) S3 Usbtmc; C:\Windows\System32\Drivers\ausbtmc.sys [24064 2014-11-07] (IVI Foundation) R1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [117768 2016-01-19] (Oracle Corporation) R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [194976 2016-01-19] (Oracle Corporation) S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-10-26 08:42 - 2017-10-26 08:45 - 000000000 ____D C:\FRST 2017-10-23 15:11 - 2017-10-26 07:21 - 000000230 _____ C:\Windows\pxiesys.ini 2017-10-23 15:11 - 2017-10-26 07:21 - 000000205 _____ C:\Windows\pxisys.ini 2017-10-23 15:09 - 2017-10-23 15:09 - 000001937 _____ C:\Users\ox0262\Desktop\DritterMalwarebytesScan.txt 2017-10-23 15:03 - 2017-10-23 15:03 - 000024365 _____ C:\Users\ox0262\Desktop\ErsterMalwarebytesScan.txt 2017-10-23 15:03 - 2017-10-23 15:03 - 000001486 _____ C:\Users\ox0262\Desktop\ZweiterMalwarebytesScan.txt 2017-10-23 09:53 - 2017-10-23 09:54 - 000000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2017-10-23 09:52 - 2017-10-23 09:52 - 010285040 _____ (Malwarebytes Corporation ) C:\Users\ox0262\Downloads\malwarebytes-anti-malware.exe 2017-10-23 07:20 - 2017-10-23 07:20 - 000000000 ____D C:\Program Files (x86)\ClockworkMod 2017-10-23 07:16 - 2017-10-23 10:15 - 000000008 _____ C:\ProgramData\xkh.3yap 2017-10-23 07:14 - 2017-10-23 07:14 - 000000000 ____D C:\ProgramData\H2O 2017-10-23 07:10 - 2017-10-23 10:21 - 000000000 ____D C:\ProgramData\smartDesigner 2017-10-23 07:10 - 2017-10-23 10:16 - 000000000 _____ C:\ProgramData\srtf.dat 2017-10-23 07:10 - 2017-10-23 09:16 - 000000000 ____D C:\Users\ox0262\AppData\Roaming\uTorrent 2017-10-23 07:10 - 2017-10-23 07:10 - 000000000 ____D C:\Users\ox0262\AppData\Roaming\ReportErr 2017-10-23 07:10 - 2017-10-23 07:10 - 000000000 ____D C:\Users\ox0262\AppData\LocalLow\uTorrent 2017-10-23 07:09 - 2017-10-23 07:42 - 000000000 ____D C:\Windows\SysWOW64\SSL 2017-10-23 07:09 - 2017-10-23 07:10 - 000000000 ____D C:\Users\ox0262\AppData\Local\PCBooster 2017-10-20 14:51 - 2017-10-20 14:51 - 000051614 _____ C:\Windows\uninstaller.dat 2017-10-19 07:28 - 2017-10-19 07:28 - 000110144 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-64.dll 2017-10-18 09:52 - 2017-10-18 09:52 - 000000000 ____D C:\Users\ox0262\AppData\Roaming\webex 2017-10-11 16:37 - 2017-10-11 16:38 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe 2017-10-11 09:38 - 2017-09-13 17:33 - 000631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2017-10-11 09:38 - 2017-09-13 17:32 - 005547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2017-10-11 09:38 - 2017-09-13 17:32 - 000706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2017-10-11 09:38 - 2017-09-13 17:32 - 000154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2017-10-11 09:38 - 2017-09-13 17:32 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2017-10-11 09:38 - 2017-09-13 17:31 - 001732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 001212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000886272 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000448512 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000414208 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2017-10-11 09:38 - 2017-09-13 17:28 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 001460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:27 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:13 - 004001512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2017-10-11 09:38 - 2017-09-13 17:13 - 003945704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2017-10-11 09:38 - 2017-09-13 17:10 - 001314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000830464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000392704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2017-10-11 09:38 - 2017-09-13 17:09 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:08 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 17:05 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2017-10-11 09:38 - 2017-09-13 17:00 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2017-10-11 09:38 - 2017-09-13 17:00 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2017-10-11 09:38 - 2017-09-13 17:00 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2017-10-11 09:38 - 2017-09-13 17:00 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2017-10-11 09:38 - 2017-09-13 16:57 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2017-10-11 09:38 - 2017-09-13 16:56 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2017-10-11 09:38 - 2017-09-13 16:53 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2017-10-11 09:38 - 2017-09-13 16:53 - 000159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2017-10-11 09:38 - 2017-09-13 16:53 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2017-10-11 09:38 - 2017-09-13 16:52 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2017-10-11 09:38 - 2017-09-13 16:52 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2017-10-11 09:38 - 2017-09-13 16:50 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2017-10-11 09:38 - 2017-09-13 16:47 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2017-10-11 09:38 - 2017-09-13 16:46 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2017-10-11 09:38 - 2017-09-13 16:46 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2017-10-11 09:38 - 2017-09-13 16:46 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2017-10-11 09:38 - 2017-09-13 16:46 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 16:46 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 16:46 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 16:46 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2017-10-11 09:38 - 2017-09-13 16:46 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2017-10-11 09:38 - 2017-09-09 02:45 - 000395984 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2017-10-11 09:38 - 2017-09-09 01:47 - 000347344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2017-10-11 09:38 - 2017-09-08 17:34 - 001680616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2017-10-11 09:38 - 2017-09-08 17:30 - 002319872 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 002222080 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 002058240 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000778240 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000149504 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2017-10-11 09:38 - 2017-09-08 17:30 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll 2017-10-11 09:38 - 2017-09-08 17:14 - 000591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2017-10-11 09:38 - 2017-09-08 17:13 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2017-10-11 09:38 - 2017-09-08 17:13 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2017-10-11 09:38 - 2017-09-08 17:10 - 001549824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2017-10-11 09:38 - 2017-09-08 17:10 - 001363968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll 2017-10-11 09:38 - 2017-09-08 17:10 - 000312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2017-10-11 09:38 - 2017-09-08 17:10 - 000109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll 2017-10-11 09:38 - 2017-09-08 17:09 - 001400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2017-10-11 09:38 - 2017-09-08 17:09 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2017-10-11 09:38 - 2017-09-08 17:09 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2017-10-11 09:38 - 2017-09-08 17:09 - 000197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2017-10-11 09:38 - 2017-09-08 17:09 - 000104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll 2017-10-11 09:38 - 2017-09-08 17:09 - 000059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2017-10-11 09:38 - 2017-09-08 17:09 - 000034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll 2017-10-11 09:38 - 2017-09-08 17:00 - 003222016 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2017-10-11 09:38 - 2017-09-08 17:00 - 000427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2017-10-11 09:38 - 2017-09-08 17:00 - 000164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2017-10-11 09:38 - 2017-09-08 16:59 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2017-10-11 09:38 - 2017-09-08 16:59 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll 2017-10-11 09:38 - 2017-09-08 16:20 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll 2017-10-11 09:38 - 2017-09-08 16:20 - 000345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll 2017-10-11 09:38 - 2017-09-08 16:20 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll 2017-10-11 09:38 - 2017-09-07 23:38 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2017-10-11 09:38 - 2017-09-07 23:37 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2017-10-11 09:38 - 2017-09-07 23:19 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2017-10-11 09:38 - 2017-09-07 23:18 - 000417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2017-10-11 09:38 - 2017-09-07 23:18 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2017-10-11 09:38 - 2017-09-07 23:17 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2017-10-11 09:38 - 2017-09-07 23:17 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2017-10-11 09:38 - 2017-09-07 23:15 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2017-10-11 09:38 - 2017-09-07 23:08 - 025729536 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2017-10-11 09:38 - 2017-09-07 23:08 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2017-10-11 09:38 - 2017-09-07 23:07 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2017-10-11 09:38 - 2017-09-07 23:02 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2017-10-11 09:38 - 2017-09-07 23:01 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2017-10-11 09:38 - 2017-09-07 23:01 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2017-10-11 09:38 - 2017-09-07 23:01 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2017-10-11 09:38 - 2017-09-07 23:00 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2017-10-11 09:38 - 2017-09-07 22:52 - 000968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2017-10-11 09:38 - 2017-09-07 22:48 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2017-10-11 09:38 - 2017-09-07 22:40 - 005982208 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2017-10-11 09:38 - 2017-09-07 22:39 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2017-10-11 09:38 - 2017-09-07 22:38 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2017-10-11 09:38 - 2017-09-07 22:37 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2017-10-11 09:38 - 2017-09-07 22:33 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2017-10-11 09:38 - 2017-09-07 22:32 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2017-10-11 09:38 - 2017-09-07 22:29 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2017-10-11 09:38 - 2017-09-07 22:27 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2017-10-11 09:38 - 2017-09-07 22:13 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2017-10-11 09:38 - 2017-09-07 22:10 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2017-10-11 09:38 - 2017-09-07 22:10 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2017-10-11 09:38 - 2017-09-07 22:08 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2017-10-11 09:38 - 2017-09-07 22:08 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2017-10-11 09:38 - 2017-09-07 21:44 - 015262720 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2017-10-11 09:38 - 2017-09-07 21:40 - 003240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2017-10-11 09:38 - 2017-09-07 21:27 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2017-10-11 09:38 - 2017-09-07 21:27 - 001548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2017-10-11 09:38 - 2017-09-07 21:17 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2017-10-11 09:38 - 2017-09-07 21:11 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2017-10-11 09:38 - 2017-09-07 21:10 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2017-10-11 09:38 - 2017-09-07 21:10 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2017-10-11 09:38 - 2017-09-07 21:10 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2017-10-11 09:38 - 2017-09-07 21:09 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2017-10-11 09:38 - 2017-09-07 21:04 - 020267008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2017-10-11 09:38 - 2017-09-07 21:03 - 002292736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2017-10-11 09:38 - 2017-09-07 21:03 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2017-10-11 09:38 - 2017-09-07 21:02 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2017-10-11 09:38 - 2017-09-07 20:59 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2017-10-11 09:38 - 2017-09-07 20:58 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2017-10-11 09:38 - 2017-09-07 20:58 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2017-10-11 09:38 - 2017-09-07 20:58 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2017-10-11 09:38 - 2017-09-07 20:49 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2017-10-11 09:38 - 2017-09-07 20:44 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2017-10-11 09:38 - 2017-09-07 20:44 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2017-10-11 09:38 - 2017-09-07 20:43 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2017-10-11 09:38 - 2017-09-07 20:40 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2017-10-11 09:38 - 2017-09-07 20:39 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2017-10-11 09:38 - 2017-09-07 20:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2017-10-11 09:38 - 2017-09-07 20:36 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2017-10-11 09:38 - 2017-09-07 20:29 - 004547072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2017-10-11 09:38 - 2017-09-07 20:29 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2017-10-11 09:38 - 2017-09-07 20:26 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2017-10-11 09:38 - 2017-09-07 20:25 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2017-10-11 09:38 - 2017-09-07 20:25 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2017-10-11 09:38 - 2017-09-07 20:17 - 013677568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2017-10-11 09:38 - 2017-09-07 20:01 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2017-10-11 09:38 - 2017-09-07 19:57 - 001316864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2017-10-11 09:38 - 2017-09-07 19:57 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2017-10-11 09:38 - 2017-09-07 17:31 - 002851328 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2017-10-11 09:38 - 2017-09-07 17:12 - 002755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll 2017-10-11 09:38 - 2017-09-07 16:55 - 000461312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2017-10-11 09:38 - 2017-09-07 16:55 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2017-10-11 09:38 - 2017-09-07 16:55 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2017-10-11 09:38 - 2017-08-19 17:28 - 004121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2017-10-11 09:38 - 2017-08-19 17:28 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2017-10-11 09:38 - 2017-08-19 17:28 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll 2017-10-11 09:38 - 2017-08-19 17:10 - 003209216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2017-10-11 09:38 - 2017-08-19 17:10 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll 2017-10-11 09:38 - 2017-08-19 17:10 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll 2017-10-11 09:38 - 2017-08-19 17:08 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe 2017-10-11 09:38 - 2017-08-19 17:08 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2017-10-11 09:38 - 2017-08-19 16:57 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe 2017-10-11 09:38 - 2017-08-19 16:57 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe 2017-10-11 09:38 - 2017-08-14 19:35 - 001032192 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2017-10-11 09:38 - 2017-08-14 19:35 - 000827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2017-10-11 09:38 - 2017-08-14 19:35 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2017-10-11 09:38 - 2017-08-13 23:45 - 000040448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-10-26 08:39 - 2014-06-18 14:26 - 000000000 ____D C:\Users\ox0262\Documents\Outlook-Dateien 2017-10-26 08:07 - 2014-07-16 10:03 - 000000548 _____ C:\Windows\Tasks\MATLAB R2014a Startup Accelerator.job 2017-10-26 08:02 - 2009-07-14 06:45 - 000024016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-10-26 08:02 - 2009-07-14 06:45 - 000024016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-10-26 07:55 - 2015-01-08 10:05 - 000004366 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-10-26 07:55 - 2013-12-03 16:12 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-10-26 07:55 - 2013-12-03 16:12 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-10-26 07:55 - 2013-12-03 16:12 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2017-10-26 07:55 - 2013-12-03 16:12 - 000000000 ____D C:\Windows\system32\Macromed 2017-10-26 07:50 - 2013-12-04 15:02 - 000000360 _____ C:\Windows\system32\config\netlogon.ftl 2017-10-26 07:25 - 2010-11-21 08:22 - 000702640 _____ C:\Windows\system32\perfh007.dat 2017-10-26 07:25 - 2010-11-21 08:22 - 000150280 _____ C:\Windows\system32\perfc007.dat 2017-10-26 07:25 - 2009-07-14 07:13 - 001628108 _____ C:\Windows\system32\PerfStringBackup.INI 2017-10-26 07:25 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2017-10-26 07:23 - 2016-09-12 14:10 - 000007303 _____ C:\Users\Public\IPEPETZOLD_server_log.txt 2017-10-26 07:21 - 2016-09-05 16:32 - 000000159 _____ C:\Windows\agPXICfg.ini 2017-10-26 07:21 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2017-10-23 15:13 - 2015-01-26 17:28 - 000000000 ____D C:\ProgramData\Malwarebytes 2017-10-23 15:13 - 2013-12-06 14:31 - 000000000 ____D C:\Users\ox0262\Documents\My PSP8 Files 2017-10-23 10:44 - 2013-12-06 10:50 - 000000000 ____D C:\SPB_Data 2017-10-23 10:21 - 2014-04-24 10:26 - 000000000 ____D C:\Quarantine 2017-10-23 10:15 - 2016-11-29 14:03 - 000000000 ____D C:\Users\ox0262\AppData\LocalLow\Mozilla 2017-10-23 10:10 - 2017-07-03 12:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-10-23 10:10 - 2013-12-03 16:14 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-10-23 10:10 - 2009-07-14 05:20 - 000000000 ____D C:\Program Files\HP PhotoSmap 2017-10-19 07:31 - 2013-12-03 16:11 - 000000000 ____D C:\ProgramData\Oracle 2017-10-19 07:29 - 2014-08-08 13:12 - 000000000 ____D C:\Program Files (x86)\Java 2017-10-19 07:28 - 2016-08-01 09:34 - 000110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2017-10-19 07:28 - 2016-08-01 09:34 - 000000000 ____D C:\Program Files\Java 2017-10-19 07:28 - 2013-12-03 16:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-10-19 07:27 - 2014-08-08 13:12 - 000097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2017-10-18 10:35 - 2016-07-28 10:40 - 000000000 ____D C:\Users\ox0262\AppData\LocalLow\WebEx 2017-10-18 09:52 - 2016-07-28 10:40 - 000000000 ____D C:\ProgramData\WebEx 2017-10-18 09:52 - 2016-07-28 10:36 - 000000000 ____D C:\Users\ox0262\AppData\Local\WebEx 2017-10-12 13:01 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\rescache 2017-10-12 07:50 - 2009-07-14 06:45 - 000544152 _____ C:\Windows\system32\FNTCACHE.DAT 2017-10-11 16:40 - 2013-12-03 16:44 - 000000000 ____D C:\Windows\system32\MRT 2017-10-11 16:37 - 2013-12-03 16:44 - 126925120 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-10-11 16:36 - 2013-12-04 09:50 - 001601452 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-10-11 16:33 - 2014-07-21 16:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2013-10-09 11:42 - 2013-10-09 11:42 - 000431888 ____R (Microsoft Corporation) C:\Program Files (x86)\Common Files\riched20.dll 2015-04-10 09:50 - 2015-04-10 10:19 - 000000600 _____ () C:\Users\ox0262\AppData\Roaming\winscp.rnd 2017-10-23 07:10 - 2017-10-23 10:16 - 000000000 _____ () C:\ProgramData\srtf.dat 2017-10-23 07:16 - 2017-10-23 10:15 - 000000008 _____ () C:\ProgramData\xkh.3yap Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\ProgramData\srtf.dat Einige Dateien in TEMP: ==================== 2013-12-04 15:45 - 2012-05-04 00:09 - 000039336 _____ (Autodesk, Inc.) C:\Users\ox0262\AppData\Local\Temp\AcDeltree.exe 2013-12-19 19:06 - 2013-12-19 19:06 - 000921512 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe 2014-04-15 22:50 - 2014-04-15 22:50 - 000921512 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe 2014-07-11 23:12 - 2014-07-11 23:12 - 000918952 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-7u65-windows-i586-iftw.exe 2014-07-28 07:15 - 2014-07-28 07:15 - 000918440 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe 2016-10-20 08:47 - 2016-10-20 08:47 - 000737856 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-8u111-windows-au.exe 2017-03-07 09:10 - 2017-03-07 09:10 - 000739904 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-8u121-windows-au.exe 2017-04-20 08:20 - 2017-04-20 08:20 - 000739904 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-8u131-windows-au.exe 2017-09-11 07:36 - 2017-09-11 07:36 - 000740416 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-8u144-windows-au.exe 2017-10-19 07:27 - 2017-10-19 07:27 - 001856576 _____ (Oracle Corporation) C:\Users\ox0262\AppData\Local\Temp\jre-8u151-windows-au.exe 2015-07-31 15:51 - 2015-07-31 15:51 - 000202928 ____R (Microsoft Corporation) C:\Users\ox0262\AppData\Local\Temp\ose00000.exe 2013-07-11 18:58 - 2013-07-11 18:58 - 000986624 _____ (TODO: <Название компании>) C:\Users\ox0262\AppData\Local\Temp\PrefJsonCpp.exe 2014-11-08 10:33 - 2015-01-24 11:30 - 000601088 _____ () C:\Users\ox0262\AppData\Local\Temp\Quarantine.exe 2014-11-08 10:47 - 2014-10-17 13:39 - 000665682 _____ (SQLite Development Team) C:\Users\ox0262\AppData\Local\Temp\sqlite3.dll 2013-07-11 18:58 - 2013-07-11 18:58 - 000465408 _____ () C:\Users\ox0262\AppData\Local\Temp\sqlite3.exe 2014-04-24 10:26 - 2013-03-12 10:59 - 000275552 ___RS (Tarma Software Research Pty Ltd) C:\Users\ox0262\AppData\Local\Temp\Tsu10AB4A33.dll 2017-10-23 07:10 - 2017-10-23 07:10 - 001199825 _____ () C:\Users\ox0262\AppData\Local\Temp\unins000.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-10-23 11:22 ==================== Ende von FRST.txt ============================ |
26.10.2017, 07:52 | #8 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Hier die Addition, erster Teil: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 26-10-2017 durchgeführt von ox0262 (26-10-2017 08:46:01) Gestartet von C:\Users\ox0262\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PFE4L2U Windows 7 Enterprise Service Pack 1 (X64) (2013-12-03 13:17:40) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-968727657-2353350609-836479209-500 - Administrator - Enabled) => C:\Users\Administrator Gast (S-1-5-21-968727657-2353350609-836479209-501 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: McAfee VirusScan Enterprise (Enabled - Up to date) {1006DC03-1FB1-9E52-7C81-F2FAB48962E3} AS: McAfee VirusScan Enterprise Antispyware Module (Enabled - Up to date) {AB673DE7-398B-91DC-4631-C988CF0E285E} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.22 - Adobe Systems) Adobe Digital Editions 3.0 (HKLM-x32\...\Adobe Digital Editions 3.0) (Version: 3.0 - Adobe Systems Incorporated) Adobe Flash Player 27 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 27.0.0.183 - Adobe Systems Incorporated) Adobe Flash Player 27 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 27.0.0.183 - Adobe Systems Incorporated) Adobe Reader XI (11.0.01) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.01 - Adobe Systems Incorporated) Advanced Design System 2016.01 (HKLM-x32\...\Advanced Design System 2016.01) (Version: 4.5.0.0 - Keysight Technologies) Analyst 12 (64 bit) (12.02.7671.2) (HKLM\...\{05171856-65BB-4495-97A9-33557073EFF1}) (Version: 12.02.7671.2 - AWR Corporation) Analyst 12 (64 bit) (12.03.7688.1) (HKLM\...\{1702F855-1D91-4611-8BE4-90081F79F01C}) (Version: 12.03.7688.1 - AWR Corporation) AutoCAD Mechanical 2013 - Deutsch (German) (HKLM\...\{5783F2D7-B005-0000-0102-0060B0CE6BBA}) (Version: 17.0.48.0 - Autodesk) Hidden AutoCAD Mechanical 2013 - Deutsch (German) (HKLM\...\{5783F2D7-B005-0407-2102-0060B0CE6BBA}) (Version: 17.0.48.0 - Autodesk) Hidden AutoCAD Mechanical 2013 - Deutsch (German) (HKLM\...\AutoCAD Mechanical 2013 - Deutsch (German)) (Version: 17.0.48.0 - Autodesk) AutoCAD Mechanical 2013 Language Pack - Deutsch (German) (HKLM\...\{5783F2D7-B005-0407-1102-0060B0CE6BBA}) (Version: 17.0.48.0 - Autodesk) Hidden Autodesk Content Service (HKLM-x32\...\{62F029AB-85F2-0000-866A-9FC0DD99DDBC}) (Version: 3.0.84.0 - Autodesk) Hidden Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.0.84.0 - Autodesk) Autodesk Design Review 2013 (HKLM-x32\...\{153DB567-6FF3-49AD-AC4F-86F8A3CCFDFB}) (Version: 13.0.0.82 - Autodesk, Inc.) Hidden Autodesk Design Review 2013 (HKLM-x32\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.) Autodesk Inventor Content Center Libraries 2013 (Desktop Content) (HKLM\...\{B46DECD1-1764-4EF1-0000-22D71E81877C}) (Version: 17.0.13800.0000 - Autodesk) Autodesk Inventor Fusion 2013 (HKLM\...\{FFF5619F-2013-0064-A85E-9994F70A9E5D}) (Version: 2.0.0.206 - Autodesk, Inc.) Hidden Autodesk Inventor Fusion 2013 (HKLM\...\Autodesk Inventor Fusion 2013) (Version: 2.0.0.206 - Autodesk, Inc.) Autodesk Inventor Professional 2013 (HKLM\...\{7F4DD591-1764-0001-0000-7107D70F3DB4}) (Version: 17.0.13800.0000 - Autodesk) Hidden Autodesk Inventor Professional 2013 Deutsch (German) (HKLM\...\Autodesk Inventor Professional 2013) (Version: 17.0.13800.0000 - Autodesk) Autodesk Inventor Professional 2013 Language Pack - Deutsch (German) (HKLM\...\{7F4DD591-1764-0001-1031-7107D70F3DB4}) (Version: 17.0.13800.0000 - Autodesk) Hidden Autodesk Material Library 2013 (HKLM-x32\...\{117EBEEB-5DB0-43C8-9FD6-DD583DB152DD}) (Version: 3.0.13 - Autodesk) Autodesk Material Library Base Resolution Image Library 2013 (HKLM-x32\...\{606E12B9-641F-4644-A22A-FF38AE980AFD}) (Version: 3.0.13 - Autodesk) Autodesk Material Library Low Resolution Image Library 2013 (HKLM-x32\...\{27C6C0A2-2EC9-4FEA-BE2B-659EAAC2C68C}) (Version: 3.0.13 - Autodesk) Autodesk Sync (HKLM\...\{EE5F74BC-5CD5-4EF2-86BA-81E6CF46A18F}) (Version: 3.5.24.0 - Autodesk, Inc.) Autodesk Workflows 2013 (HKLM\...\{06388E0D-A364-478B-8E40-7D76142A8DF1}) (Version: 3.0.12.0 - Autodesk) AzureTools.Notifications (HKLM-x32\...\{3FBFCF2C-392A-4632-9442-14C305B44D5E}) (Version: 2.1.10731.1602 - Microsoft Corporation) Hidden Behaviors SDK (XAML) for Visual Studio (HKLM-x32\...\{0B5E43C7-965D-4AF4-A33E-5FA35B6660C8}) (Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 (HKLM-x32\...\{EBC890A6-DE7C-44B4-AA03-119B6190D3E1}) (Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 DEU resources (HKLM-x32\...\{81ABB3E1-2F83-4422-B836-8F705B850BBB}) (Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (HKLM-x32\...\{37E53780-3944-4A6A-842F-727128E8616E}) (Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Silverlight 5 (HKLM-x32\...\{0C03A66F-1FF0-45F9-8D67-0D806EBFFBA1}) (Version: 3.0.40218.0 - Microsoft Corporation) Hidden Build Tools - amd64 (HKLM\...\{F74753A3-C93C-34F5-A199-993CAF602B7D}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools - x86 (HKLM-x32\...\{FB3A15FD-FC67-3A2F-892B-6890B0C56EA9}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Buildtools-Sprachressourcen - amd64 (HKLM\...\{0C697351-1576-384C-B478-080FEADF30D8}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Buildtools-Sprachressourcen - x86 (HKLM-x32\...\{118528BF-8504-33A4-940B-DCA4EB96C0FB}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Cadence License Manager 11.90 (HKLM-x32\...\{CD9B9FD0-5343-4110-9BC2-975B4F74C876}) (Version: 11.90.0000 - Cadence Design Systems) Cadence SPB 16.5 HDL-AMS Library (HKLM-x32\...\{02D7670C-A306-4C5B-A010-ED05F304976C}) (Version: 16.50.000 - Cadence Design Systems, Inc) Cisco WebEx Meetings (HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\ActiveTouchMeetingClient) (Version: - Cisco WebEx LLC) Corel Shell Extension - 64Bit (HKLM\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF011}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Capture (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF012}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Content (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF016}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Draw (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF013}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Filters (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF017}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - FontNav (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF019}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics SUite X4 - ICA (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF010}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - IPM (HKLM-x32\...\{9D0798D0-AF6C-4E62-94B1-AEBF1A43E00A}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Lang BR (HKLM-x32\...\{1A9DAB4D-46CD-4CBF-A9FC-28D8AA8D2FCF}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Lang DE (HKLM-x32\...\{AEFBAC58-2DDD-4CEF-BDFD-52A5A5F432ED}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Lang EN (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF100}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Lang ES (HKLM-x32\...\{D2827848-7D2A-4547-9AD1-C965FB3E6344}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Lang FR (HKLM-x32\...\{9D306690-3173-42CD-94C6-9EF9318AF24B}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Lang IT (HKLM-x32\...\{D0160DD3-6F62-4F1E-B999-6C68D3AE7390}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - Lang NL (HKLM-x32\...\{A6C27FFF-75EF-4B5B-A64E-F9E128994908}) (Version: 14.0 - Uw bedrijfsnaam) Hidden CorelDRAW Graphics Suite X4 - PP (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF014}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 - VBA (HKLM-x32\...\{BF439B41-0252-48DE-8B8B-0430CB26A181}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X4 (HKLM-x32\...\{7F05E704-30A6-421A-97A7-8EEB1C7FF000}) (Version: 14.0 - Corel Corporation) Hidden CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension (HKLM-x32\...\_{CE2DA11A-917F-4CF5-AB55-755EC115DD10}) (Version: - Corel Corporation) CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension (HKLM-x32\...\{CE2DA11A-917F-4CF5-AB55-755EC115DD10}) (Version: 1.0 - Corel Corporation) Hidden CorelDRAW(R) Graphics Suite X4 (HKLM-x32\...\_{7F05E704-30A6-421A-97A7-8EEB1C7FF010}) (Version: - Corel Corporation) Crystal Reports 2008 Runtime (HKLM-x32\...\{C484CC8D-03CF-4022-89C4-DB4F02E8A15B}) (Version: 12.0.0.683 - Business Objects) Dassault Systemes Software VC9 Prerequisites x86-x64 (HKLM\...\{F2F2DEA7-36AB-4E13-907C-D8BDE775EF97}) (Version: 9.1.2 - Dassault Systemes) Devenv-Ressourcen für Microsoft Visual Studio 2013 (HKLM-x32\...\{B2686344-675D-36A1-8736-708DE7B1FC2E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Distributed Installer (HKLM-x32\...\{59C5AD24-1EAD-4113-A5D5-F531D574C687}) (Version: 1.0 - Intel) Hidden Dotfuscator and Analytics Community Edition (HKLM-x32\...\{2386192E-D6DB-4AD2-9564-65586A0AE53E}) (Version: 5.5.4954.46574 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition Language Pack (HKLM-x32\...\{4288C330-5D64-42EA-886A-8F1FFEB3EF2B}) (Version: 5.5.4954.46574 - PreEmptive Solutions) Hidden DWG TrueView 2013 (HKLM\...\{5783F2D7-B028-0409-0100-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden DWG TrueView 2013 (HKLM\...\DWG TrueView 2013) (Version: 19.0.55.0 - Autodesk) EEsof License Tools (HKLM\...\EEsof License Tools) (Version: 2016.5.0.2128 - Keysight Technologies) EEsof License Tools (HKLM-x32\...\EEsof License Tools) (Version: 2015.5.0.1738 - Keysight Technologies) EMPro 2015.01 (HKLM-x32\...\EMPro 2015.01) (Version: 2.8.0.0 - Keysight Technologies) Entity Framework Tools for Visual Studio 2013 (HKLM-x32\...\{08AEF86A-1956-4846-B906-B01350E96E30}) (Version: 12.0.20912.0 - Microsoft Corporation) Environment Variables (HKLM-x32\...\{72599DC1-FD1B-4EDF-88D5-44779F4E3FD9}) (Version: 5.0.2.044 - Intel) Hidden Erforderliche Komponenten für SSDT (HKLM-x32\...\{3FF082A7-A5DE-4BDA-B56A-1D2BEFD617A3}) (Version: 11.1.3000.0 - Microsoft Corporation) FARO LS 1.1.408.2 (HKLM-x32\...\{91221AAC-F2A0-4028-8016-C7DAF63CB6CC}) (Version: 4.8.2.25521 - FARO Scanner Production) FARO LS 4.8.2.25521 (HKLM-x32\...\FARO LS_is1) (Version: - FARO Technologies) Genesys2015.08 (HKLM-x32\...\Genesys2015.08) (Version: 2015.8.0.0 - Keysight Technologies, Inc) IC-CAP 2016.01 (HKLM-x32\...\IC-CAP 2016.01) (Version: 7.1.0.0 - Agilent Technologies) IC-CAP 2016.01.hf1 (HKLM\...\IC-CAP 2016.01.hf1) (Version: 7.1.0.0 - Agilent Technologies) IIS 8.0 Express (HKLM\...\{7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7}) (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb) (Version: - ) Intel MPI Library 5.0 Runtime Environment Update 2 (HKLM-x32\...\ARP_for_prd_w_mpi-rt_p_5_0_2_044) (Version: 5.0.2.044 - Intel Corporation) Intel(R) MPI Library 5.0 Runtime Environment Update 2 (HKLM-x32\...\{0D151284-C936-4971-9823-12B10D5AD23A}) (Version: 5.0.2.044 - Intel) Hidden Intel(R) MPI Library 5.0 Runtime Environment Update 2 (HKLM-x32\...\{42DDCA11-4AF5-4BED-B155-ED139C23C5FC}) (Version: 5.0.2.044 - Intel) Hidden Intel(R) MPI Library Runtime Environment 4.0 Update 3 for Windows* OS (HKLM-x32\...\{B6365902-066A-4866-B62F-0FE2F3935AFC}) (Version: 4.0 - Intel) Hidden Intel(R) MPI Library Runtime Environment 4.0 Update 3 for Windows* OS (HKLM-x32\...\{B7EB55B8-2A57-4C3B-BDE5-93A152162CD6}) (Version: 4.0.3.010 - Intel) Hidden Intel(R) MPI Library Runtime Environment 4.0 Update 3 for Windows* OS (HKLM-x32\...\SS_{B7EB55B8-2A57-4C3B-BDE5-93A152162CD6}) (Version: 4.0.3.010 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.18.10.3186 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Intel(R) Software Manager (HKLM-x32\...\{BEECE00C-4691-4430-A28F-E61B8443A242}) (Version: 2.0.019 - Intel) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) IVI Shared Component 64-bit (HKLM\...\{5137CA04-5401-465D-A600-F5344198B135}) (Version: 2.30.49156 - IVI Foundation Inc.) Hidden IVI Shared Components 2.3 (HKLM-x32\...\IviSharedComponent) (Version: 2.30.49156 - IVI Foundation) IVI.NET Shared Components 1.1.2 for .NET 2.0 (HKLM\...\{29D49027-A571-4050-AF57-2F6672A1C8D9}) (Version: 1.12.49152 - IVI Foundation) Jasc Paint Shop Pro 8 (HKLM-x32\...\{81A34902-9D0B-4920-A25C-4CDC5D14B328}) (Version: 8.03.0000 - Ihr Firmenname) Java 8 Update 151 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) JavaScript Tooling (HKLM\...\{2044FC4C-4EA3-4113-BC1E-962DF568D201}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Keysight BenchLink Waveform Builder (HKLM-x32\...\{713B2BAD-A9C5-4290-B2D5-764F80BFC9AE}) (Version: 4.2.0.0 - Keysight Technologies) Keysight BenchVue (HKLM-x32\...\{08C0DDF1-C5DD-4DB8-9EED-5DA256A53799}) (Version: 3.6 - Keysight Technologies) Keysight BenchVue DMM (HKLM-x32\...\{6D599487-1E08-4CBC-BC89-7D4D313F0128}) (Version: 3.3 - Keysight Technologies) Hidden Keysight BenchVue Function Generator (HKLM-x32\...\{0D85414F-1E97-4B58-813E-597193A00054}) (Version: 3.1 - Keysight Technologies) Hidden Keysight BenchVue Oscilloscope (HKLM-x32\...\{D0554A93-9ED5-437C-8095-41C6DC12A8F8}) (Version: 3.1 - Keysight Technologies) Hidden Keysight BenchVue Power Supply (HKLM-x32\...\{FE979AD8-7E90-4A7B-BC31-7CFFB520FB7A}) (Version: 3.0 - Keysight Technologies) Hidden Keysight Communications Fabric 2.1.3 (HKLM-x32\...\{95C1AA48-2611-4FF9-A1ED-100CBCB2133C}) (Version: 2.1.21113.12029 - KeysightTechnologies) Keysight Host Processor Platform (HKLM\...\{6A4F353F-A8B8-4F49-B0DF-D2EB54A89061}) (Version: 4.5.21002.12040 - Keysight Technologies) Keysight IO Libraries Suite 17.2 (HKLM-x32\...\{947B9E38-FF0A-48AE-98BF-B0A26045EC68}) (Version: 17.2.20818.0 - Keysight Technologies) Hidden Keysight IO Libraries Suite 17.2 (HKLM-x32\...\InstallShield_{947B9E38-FF0A-48AE-98BF-B0A26045EC68}) (Version: 17.2.20818.0 - Keysight Technologies) Keysight IO Libraries Suite 64-bit (HKLM\...\{926ACB16-3E3E-48F2-B591-F6E87B636866}) (Version: 17.2.20818.0 - Keysight Technologies) Hidden Keysight License Manager (HKLM-x32\...\{6DCF110A-142C-4AA9-AA0B-98101C3B32F3}) (Version: 5.1.20822.10730 - Keysight Technologies) Keysight License Service (HKLM\...\{92F6BFB2-DDD7-4065-92EC-35542435923F}) (Version: 5.1.20822.10730 - Keysight Technologies) Keysight LXI Mdns Responder 64bit (HKLM\...\{7799A758-8008-4F22-B7C8-2B7025B31BBD}) (Version: 1.1.19120.12000 - Keysight Technologies) Hidden Klayout - Layout Viewer And Editor (64bit) (HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\KLayout (64bit)) (Version: 0.23.5 - Matthias Koefferlein) Language Pack (DEU) für freigegebene Windows Azure-Komponenten für Microsoft Visual Studio 2013 - v1.0 (HKLM-x32\...\{49851B40-6615-4D06-82E0-5F7636AA4092}) (Version: 1.0.10829.1601 - Microsoft Corporation) Hidden LocalESPC Dev12 (HKLM-x32\...\{492498A3-F88C-FE2F-755C-9B1B91724CA5}) (Version: 8.100.25984 - Microsoft Corporation) Hidden LocalESPCui for de-de Dev12 (HKLM-x32\...\{C21CC041-4347-804E-1BB0-87AC539335C7}) (Version: 8.100.25984 - Microsoft) Hidden Math Kernel Libraries (64-bit) (HKLM\...\{70107084-C0AE-49B7-B588-C64901E546C3}) (Version: 15.0.6 - National Instruments) Hidden Math Kernel Libraries (64-bit) (HKLM\...\{95E4D734-E2AC-46BD-A0D7-B8E1AD1C0D2E}) (Version: 14.0.6 - National Instruments) Hidden Math Kernel Libraries (HKLM-x32\...\{ECB572E6-5CE3-4E9E-B1B3-16A00E02153A}) (Version: 15.0.6 - National Instruments) Hidden Math Kernel Libraries (HKLM-x32\...\{FDF32877-3B6C-4D67-81A3-7857CBAF4110}) (Version: 14.0.6 - National Instruments) Hidden MATLAB Compiler Runtime 7.16 (32-bit) (HKLM-x32\...\MATLAB Compiler Runtime R2011b) (Version: 7.16 - The MathWorks, Inc.) MATLAB R2014a (HKLM\...\Matlab R2014a) (Version: 8.3 - The MathWorks, Inc.) McAfee Agent (HKLM\...\{80684F9A-6B01-4F3F-A8C7-C4B7BDF072F1}) (Version: 5.0.6.220 - McAfee, Inc.) McAfee VirusScan Enterprise (HKLM-x32\...\{CE15D1B6-19B6-4D4D-8F43-CF5D2C3356FF}) (Version: 8.8.09000 - McAfee, Inc.) Mentor Graphics CAMCAD Runtime install (HKLM-x32\...\{291F65CB-4D0E-48F3-8564-014B46C186B8}) (Version: 1.00.0000 - Mentor Graphics Corporation) Mentor Graphics Licensing (HKLM-x32\...\MentorGraphicsPCLS) (Version: v2012_1 - Mentor Graphics Corporation) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.7 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.7.02053 - Microsoft Corporation) Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation) Microsoft .NET Framework 4.7 (日本語) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1041) (Version: 4.7.02053 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Project Standard 2016 (HKLM-x32\...\Office16.PRJSTD) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK - DEU (HKLM-x32\...\{F351AA2C-723C-4CFE-A7CB-8E43AB164F7F}) (Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{D4E30517-FE6F-491E-942F-AE10E1B18F38}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (HKLM\...\{B4EDAE03-DB34-4DD0-BA7E-2ED80DEA50B1}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{269A8DF6-BBDA-441F-932B-233F9B746D72}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{EC75BD20-F9CA-4E77-825F-ABD77E95BE91}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{0BF65908-D137-4A9E-B7C9-78F32F74F6FD}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{93945D16-4C3D-433E-B7E4-3D0D86B284C8}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{6F173435-3F19-4043-BA3D-A46AA8472859}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL-Sprachdienst (HKLM-x32\...\{1D812D86-D8EF-41AC-A518-BA12E1913747}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (12.0.30919.1) (HKLM-x32\...\{7CC03C58-3471-43D2-A251-EC9AE225E772}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (12.0.30919.1) (HKLM-x32\...\{BCB8A870-2B3D-4CC0-87D6-F931E065AC0C}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{D434E072-F482-4F52-AB97-7B19DD5DAEB5}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{485F4AC6-F79E-4482-A0D2-EDF0CCE1E124}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft Visio Standard 2013 (HKLM-x32\...\Office15.VISSTD) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Professional 2013 (HKLM-x32\...\{06eb36bf-d26a-41a8-bcf3-638a3f6aa7aa}) (Version: 12.0.21005.13 - Microsoft Corporation) Microsoft Web Deploy 3.5 (HKLM\...\{3674F088-9B90-473A-AAC3-20A00D8D810C}) (Version: 3.1237.1762 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{43341417-7882-4F34-8390-53DFD00F6C0F}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{24440413-490E-41CA-BD33-0B30FD3EBE3A}) (Version: 11.1.3366.16 - Microsoft Corporation) MiKTeX 2.9 (HKLM-x32\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org) Mozilla Firefox 56.0.1 (x64 de) (HKLM\...\Mozilla Firefox 56.0.1 (x64 de)) (Version: 56.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 56.0.1.6484 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MySQL Connector/ODBC 3.51 (HKLM-x32\...\{0CB3C535-1171-4A20-B549-E2CB5DEB9723}) (Version: 3.51.12 - MySQL AB) National Instruments - Software (HKLM-x32\...\NI Uninstaller) (Version: - National Instruments) NI .NET Framework 4.6 (HKLM-x32\...\{C2AA69F2-AAA4-4997-A7DD-5B57C0B53328}) (Version: 4.61.49152 - National Instruments) Hidden NI ActiveX Container (64-bit) (HKLM\...\{14BAF455-4623-4703-906D-7FBE49E7ED23}) (Version: 14.0.5 - National Instruments) Hidden NI ActiveX Container (HKLM-x32\...\{B3B56C15-80A8-4972-90CB-D80E64B3F39C}) (Version: 14.0.5 - National Instruments) Hidden NI Atomic PXIe Peripheral Module Driver 16.0.0 (HKLM-x32\...\{B217F366-D7C0-4807-9F07-5FBC80113A87}) (Version: 16.00.49152 - National Instruments) Hidden NI Authentication 2016 (64-bit) (HKLM\...\{043D5974-6B3E-436F-84AD-A36CE1529CCE}) (Version: 16.0.148 - National Instruments) Hidden NI Authentication 2016 (HKLM-x32\...\{95EF69D8-1A5F-4DF6-80CB-FFF178317493}) (Version: 16.0.148 - National Instruments) Hidden NI Certificates 1.0.7 (HKLM-x32\...\{AD9B4F25-F129-4B51-9C05-42F8BF9A5242}) (Version: 1.07.49153 - National Instruments) Hidden NI Controller Driver 16.0 (HKLM-x32\...\{0CADBF06-C737-4310-AC15-5D59AB34A33C}) (Version: 16.00.49152 - National Instruments) Hidden NI Controller Driver 16.0 64-bit (HKLM\...\{26E97959-BE6D-4A91-B56A-6EB97DB04F60}) (Version: 16.00.49152 - National Instruments) Hidden NI Curl 16.0.0 (64-bit) (HKLM\...\{99E6F61D-09DC-43B5-88CF-740FAD0D461D}) (Version: 16.0.100 - National Instruments) Hidden NI Curl 2016 (HKLM-x32\...\{CE9BC910-D93D-4083-93C7-0827EDAABC68}) (Version: 16.0.100 - National Instruments) Hidden NI Error Reporting 2016 (HKLM-x32\...\{5813356B-5CD9-44FD-8CC7-190186D10E44}) (Version: 16.0.177 - National Instruments) Hidden NI Error Reporting Interface 16.0 (HKLM-x32\...\{A64EEEED-6B8D-4369-AEDB-A65ABC3D5C9C}) (Version: 16.0.203 - National Instruments) Hidden NI Error Reporting Interface 16.0 for Windows (64-bit) (HKLM\...\{19723BE5-D757-4269-8128-65AA5235D14E}) (Version: 16.0.203 - National Instruments) Hidden NI EulaDepot (HKLM-x32\...\{1B8AE714-65FA-4A36-8879-0C0CA66422A0}) (Version: 16.0.23 - National Instruments) Hidden NI Help Assistant 2.0 (64bit) (HKLM\...\{DDAAADDD-C57E-4731-A29C-133191587488}) (Version: 2.0.3 - National Instruments) Hidden NI Help Assistant 2.0 (HKLM-x32\...\{C9A0D47F-9A68-4917-868C-79E384E4DEE6}) (Version: 2.0.3 - National Instruments) Hidden NI I/O Trace 16.0.0 (HKLM-x32\...\{CC56BB1F-9FC4-4A37-863B-1A37CEA1E620}) (Version: 16.00.49152 - National Instruments) Hidden NI I/O Trace 64-bit Support 16.0.0 (HKLM\...\{F0C08F83-C0BB-490D-8C46-35975C7108F8}) (Version: 16.00.49152 - National Instruments) Hidden NI LabVIEW 2015 Deployment Framework (HKLM-x32\...\{0B1DB673-4954-48D6-90B7-584AB57E1C93}) (Version: 15.0.340 - National Instruments) Hidden NI LabVIEW 2015 Real-Time Error Dialog (HKLM-x32\...\{E4E6582F-A3A7-48B4-BE6E-B25024498791}) (Version: 15.0.2 - National Instruments) Hidden NI LabVIEW 2015 Real-Time NBFifo (HKLM-x32\...\{B682E9AB-D9F8-4DE3-B103-0CE769835CE8}) (Version: 15.0.339 - National Instruments) Hidden NI LabVIEW 2015 Run-Time Engine Web Server (HKLM-x32\...\{0815C7BF-1A46-4AD0-80D5-E509F9783E5B}) (Version: 15.0.521 - National Instruments) Hidden NI LabVIEW Runtime 2015 SP1 f3 (HKLM-x32\...\{C8D01F7E-129E-4C0A-A623-DBF2DB298EF8}) (Version: 15.1.57 - National Instruments) Hidden NI LabVIEW Runtime 2015 SP1 Non-English Support. (HKLM-x32\...\{1F71BB6C-796E-4E10-84EF-2032F401D03F}) (Version: 15.1.45 - National Instruments) Hidden NI LabVIEW Runtime Interop 2015 (HKLM-x32\...\{97BE751E-F342-4F08-800D-01C89A492C67}) (Version: 15.1.57 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 .NET Library (64-bit) (HKLM\...\{1015A47B-04AC-40BC-9002-78EB2B86B0EB}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 .NET Library (HKLM-x32\...\{EDDAF514-4A52-449B-B382-0B7D92A39F42}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Analysis Library (64-bit) (HKLM\...\{E61BE539-EAA0-446D-9B32-8370F99A31A3}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Analysis Library (HKLM-x32\...\{D5A43D6C-BA44-46AE-95BF-05ED13CD43D8}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Low-Level Driver (Original) (HKLM-x32\...\{581A2852-67B2-4B83-B781-473A561DCC63}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Low-Level Driver (Updated) (HKLM-x32\...\{5C33A68B-0E6B-4839-97B9-7A7896DB2404}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Network Streams Library (64-bit) (HKLM\...\{C9533EB7-AE6E-4374-9BA9-DC9877624DF5}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Network Streams Library (HKLM-x32\...\{E3CB6529-FC39-46E5-AC6D-A97DD2E1286F}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Network Variable Library (64-bit) (HKLM\...\{CFB0239F-E3D1-4F56-A8F0-6532C84EA171}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 Network Variable Library (HKLM-x32\...\{72CB1B11-685B-405A-A8A0-5987CCD593A0}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 TDMS Library (64-bit) (HKLM\...\{729F2480-96E3-4260-B4F1-A3054A98645D}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI 2013 SP2 TDMS Library (HKLM-x32\...\{00BD6260-2A45-423C-9150-2D1516BD96B3}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI Run-Time Engine 2013 SP2 (Updated) (HKLM-x32\...\{23F01A4F-6BDA-4FFA-89A1-50D4EED0B3AE}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI Shared Run-Time Engine 2013 SP2 (64-bit) (HKLM\...\{0DA67E53-EE91-450C-8159-FA1F9B87D300}) (Version: 13.0.2278 - National Instruments) Hidden NI LabWindows/CVI Shared Run-Time Engine 2013 SP2 (HKLM-x32\...\{D3C549FD-7DA5-440B-A1BC-DD92C898949A}) (Version: 13.0.2278 - National Instruments) Hidden NI Launcher (HKLM-x32\...\{B85FCBAE-C431-488D-88F5-2AB59F1528E2}) (Version: 16.0.171 - National Instruments) Hidden NI Logos 5.7 (64-bit) (HKLM\...\{040481AD-53EB-4D04-8A11-F002341BC7D3}) (Version: 5.7.287 - National Instruments) Hidden NI Logos 5.7 (HKLM-x32\...\{A536EF5F-2800-4CE5-A366-3293F6C2D861}) (Version: 5.7.287 - National Instruments) Hidden NI Logos XT Support (HKLM-x32\...\{0CF3F6C3-32FE-45B2-BB99-821B8FB7EBE6}) (Version: 5.7.285 - National Instruments) Hidden NI Logos64 XT Support (HKLM\...\{894E2B1E-356D-4C59-9794-29CE1ECD66D7}) (Version: 5.7.285 - National Instruments) Hidden NI MAX Remote Configuration 64-bit Installer 16.0 (HKLM\...\{CA3FD922-058A-408F-8FCA-38C53B274FEC}) (Version: 16.00.49152 - National Instruments) Hidden NI MAX Remote Configuration Installer 16.0 (HKLM-x32\...\{2909BF38-1E6A-40C8-88B4-DE370A812B01}) (Version: 16.00.49152 - National Instruments) Hidden NI MAX Support for 64 Bit Windows (HKLM\...\{3458CA46-970B-489D-A4DF-B1DBB1555161}) (Version: 16.00.49152 - National Instruments) Hidden NI MDF Support (HKLM-x32\...\{7B27EBE4-BDD1-4048-86D4-D9CFBE7A1937}) (Version: 16.0.171 - National Instruments) Hidden NI mDNS Responder 16.0 for Windows 64-bit (HKLM\...\{769F1B76-71DF-48DC-BABC-E687D2A28F3D}) (Version: 16.00.49152 - National Instruments) Hidden NI mDNS Responder 16.0.0 (HKLM-x32\...\{2DBC2118-DDD0-43E1-BA43-08AEF6863BE6}) (Version: 16.00.49152 - National Instruments) Hidden NI Measurement & Automation Explorer 16.0.0 (HKLM-x32\...\{ACA0F019-8166-47F0-A0A1-03ADD07227A1}) (Version: 16.00.49152 - National Instruments) Hidden NI Measurement Studio ComponentWorks 3D Graph (HKLM-x32\...\{F278392D-547E-4E67-AD1C-2576C2852B50}) (Version: 8.6.10603 - National Instruments) Hidden NI MetaSuite Installer (HKLM-x32\...\{9677A05D-245D-4D65-B21B-C7EF68F4A4CD}) (Version: 16.0.171 - National Instruments) Hidden NI MXI Manager 16.0 (HKLM-x32\...\{6EE383F5-6C4D-497F-8175-75EF7FCCE495}) (Version: 16.00.49152 - National Instruments) Hidden NI MXI Manager 16.0 64-bit (HKLM\...\{F4C7200A-5C79-47E2-8C0D-6594BD7645E1}) (Version: 16.00.49152 - National Instruments) Hidden NI MXS 16.0.0 (HKLM-x32\...\{EDE4907D-CD01-4D95-869B-BB96FFC9FF2B}) (Version: 16.00.49152 - National Instruments) Hidden NI MXS 16.0.0 for 64 Bit Windows (HKLM\...\{FDA65638-5522-4EE7-A407-61411B0C6549}) (Version: 16.00.49152 - National Instruments) Hidden NI Network Discovery 16.0 (HKLM-x32\...\{1583086F-D01F-44F8-82BE-6888AF5CE841}) (Version: 16.00.49152 - National Instruments) Hidden NI Network Discovery 16.0 for Windows 64-bit (HKLM\...\{CC15CE0B-2521-49A0-A688-7DA1754A5789}) (Version: 16.00.49152 - National Instruments) Hidden NI Portable Configuration 16.0.0 (HKLM-x32\...\{09601777-0CAB-490F-AA12-10A51406C2BE}) (Version: 16.00.49152 - National Instruments) Hidden NI Portable Configuration for 64 Bit Windows 16.0.0 (HKLM\...\{1D8DE9F9-A186-4C8A-9108-31F075B8901F}) (Version: 16.00.49152 - National Instruments) Hidden NI PXI Platform Framework 16.0.0 (HKLM-x32\...\{AD02775B-D07D-45F9-80C1-3FD7079FD63C}) (Version: 16.00.49152 - National Instruments) Hidden NI PXI Platform Framework 16.0.0 64-bit (HKLM\...\{873DC8C0-9E77-4FF0-9573-AA40F3B0EF50}) (Version: 16.00.49152 - National Instruments) Hidden NI PXI Platform Services 16.0 Expert (HKLM-x32\...\{5D9D3011-1C42-4AC1-BD45-5C6DDCB1F0DF}) (Version: 16.00.49152 - National Instruments) Hidden NI PXI Platform Services Configuration 16.0 (HKLM-x32\...\{661D91F9-297F-4E68-88C2-E859499DC9D1}) (Version: 16.00.49152 - National Instruments) Hidden NI PXI Platform Services Runtime 16.0 (HKLM-x32\...\{EF31E898-627A-4DDE-B748-2014F93F8D30}) (Version: 16.00.49152 - National Instruments) Hidden NI PXI Platform Services Runtime 16.0 64-bit (HKLM\...\{68AF41B3-04BE-41E3-9DB7-A29109B427F2}) (Version: 16.00.49152 - National Instruments) Hidden NI Registration Wizard (HKLM-x32\...\{B728FC04-737B-4C59-8A9C-41663E4BB657}) (Version: 1.06.49153 - National Instruments) Hidden NI Remote Provider for MAX 16.0.0 (HKLM-x32\...\{E017A2AD-70C7-4A9D-A503-A061CD75B128}) (Version: 16.00.49152 - National Instruments) Hidden NI Remote PXI Provider for MAX 16.0.0 (HKLM-x32\...\{85F17D4E-8788-4E44-A882-8E7514E34668}) (Version: 16.00.49152 - National Instruments) Hidden NI Remote System Discovery Troubleshooting Wizard 16.0 (HKLM-x32\...\{C7E29DC3-BAB1-4DCA-B788-6632797E2119}) (Version: 16.00.49152 - National Instruments) Hidden NI Security Update (KB 67L8LCQW) (64-bit) (HKLM\...\{4A78D9E6-D349-4CCA-9295-45B12BE5BC6C}) (Version: 1.0.29.0 - National Instruments) Hidden NI Security Update (KB 67L8LCQW) (HKLM-x32\...\{20124E21-206B-485F-838F-14BB88161045}) (Version: 1.0.29.0 - National Instruments) Hidden NI Service Locator 2016 (HKLM-x32\...\{0F816C63-EC59-4A1D-9657-536C0A48DA01}) (Version: 16.0.150 - National Instruments) Hidden NI Software Provider for MAX 16.0.0 (HKLM-x32\...\{20D6CEE0-B4E8-4FFF-A9FE-FA095D0C723F}) (Version: 16.00.49152 - National Instruments) Hidden NI SSL LabVIEW RTE 2015 Support (HKLM-x32\...\{CBB0B504-8175-43D0-ACFC-04A7875D5EB1}) (Version: 15.0.353 - National Instruments) Hidden NI SSL Support (64-bit) (HKLM\...\{B4BE40DC-5025-4F17-99EC-3DF401B8732F}) (Version: 16.0.181 - National Instruments) Hidden NI SSL Support (HKLM-x32\...\{5E207DE6-086F-4548-9052-0DCCD3480C6A}) (Version: 16.0.181 - National Instruments) Hidden NI System API Web-Service 32-bit 16.0.0 (HKLM-x32\...\{F0BCE316-B197-4C86-BCC1-385FD776C373}) (Version: 16.0.184 - National Instruments) Hidden NI System API Windows 32-bit 16.0.0 (HKLM-x32\...\{8FD3323C-9C4E-4CA9-BBC6-7EF554625DFE}) (Version: 16.0.183 - National Instruments) Hidden NI System API Windows 64-bit 16.0.0 (HKLM\...\{DAF5F16E-9A9B-42A4-8B17-FC0530BB1BA3}) (Version: 16.0.183 - National Instruments) Hidden NI System Configuration Runtime 16.0.0 (HKLM-x32\...\{9DAB9252-81A5-4578-A7EC-EC62002294D0}) (Version: 16.0.92 - National Instruments) Hidden NI System Configuration Runtime 16.0.0 for Windows 64-bit (HKLM\...\{97A3879D-2C9B-4280-87B9-82EDE8BDCC9E}) (Version: 16.0.92 - National Instruments) Hidden NI System Logging Utilities (HKLM-x32\...\{607BAC56-66B2-4750-BC0F-271C2BE4DA01}) (Version: 1.0.92 - National Instruments) Hidden NI System Monitor 16.0 (HKLM-x32\...\{C7B1EE81-5618-4543-A640-9237E6D22C5B}) (Version: 16.00.49152 - National Instruments) Hidden NI System Monitor 16.0 64-bit (HKLM\...\{3E69B974-16F8-41D6-8D39-32A3B58611EF}) (Version: 16.00.49152 - National Instruments) Hidden NI System State Publisher (64-bit) (HKLM\...\{3B705D57-AD5E-46E3-B326-F156E248008C}) (Version: 15.0.335 - National Instruments) Hidden NI System State Publisher (HKLM-x32\...\{E6891F9D-6730-4D5D-B513-1B70EDB84566}) (Version: 15.0.335 - National Instruments) Hidden NI System Web Server 2016 (HKLM-x32\...\{C734E746-C4DC-4939-8C6A-1C638AA44E58}) (Version: 16.0.164 - National Instruments) Hidden NI System Web Server Base 2016 (64-bit) (HKLM\...\{819C0D91-A5D7-4DCD-9D28-50E16CFC18AA}) (Version: 16.0.149 - National Instruments) Hidden NI System Web Server Base 2016 (HKLM-x32\...\{A311BFB0-C02D-4D56-ADC2-895034F4F923}) (Version: 16.0.149 - National Instruments) Hidden NI TDM Streaming 15.2 (64-bit) (HKLM\...\{0CFF76BE-414D-4D65-BF01-732B0E4ED479}) (Version: 15.2.7 - National Instruments) Hidden NI TDM Streaming 15.2 (HKLM-x32\...\{D48821AA-CFF2-4371-A404-34BA2D8D452C}) (Version: 15.2.7 - National Instruments) Hidden NI Trace Engine (64-bit) (HKLM\...\{C2767E94-7A52-49E9-AAEB-148951C01A87}) (Version: 16.0.141 - National Instruments) Hidden NI Trace Engine (HKLM-x32\...\{9D32496C-C46E-4FBD-B8A9-9DD6437F3B3B}) (Version: 16.0.141 - National Instruments) Hidden NI Uninstaller (HKLM-x32\...\{A41E5391-A6E7-40B8-9374-0E9E8B8B4CB7}) (Version: 16.0.171 - National Instruments) Hidden NI Update Service 16.0 (64-bit) (HKLM\...\{A69F335B-6369-44A9-A39C-B747657D802D}) (Version: 16.00.49155 - National Instruments) Hidden NI Update Service 16.0 (HKLM-x32\...\{D23B6980-DBD3-4BA4-8C95-B64F971DC3AF}) (Version: 16.00.49155 - National Instruments) Hidden NI VC2008MSMs x64 (HKLM\...\{07E00E94-7A78-40FA-9BEF-71C190E98041}) (Version: 9.0.401 - National Instruments) Hidden NI VC2008MSMs x86 (HKLM-x32\...\{E84997A1-4D6F-4C0B-B60D-F85B360D2666}) (Version: 9.0.401 - National Instruments) Hidden NI VC2010SP1MSMs x64 (HKLM\...\{AFC5A844-CA3A-4566-89E7-3E24E6AFF9A3}) (Version: 10.0.100 - National Instruments) Hidden NI VC2010SP1MSMs x86 (HKLM-x32\...\{F2273FA7-117C-43D7-BD59-00B025535442}) (Version: 10.0.100 - National Instruments) Hidden NI Visual C++ 2008 Redistributable Package (HKLM-x32\...\{08505CC2-EA7F-4818-9C45-B74EDA7227F8}) (Version: 9.00.49152 - National Instruments) Hidden NI Visual C++ 2010 Redistributable Package (HKLM-x32\...\{87E698D6-02AC-485E-A6BA-9194C94CC547}) (Version: 10.10.16385 - National Instruments) Hidden NI Web Application Server 2016 (64-bit) (HKLM\...\{1390F380-90CC-4C1D-9BA1-EB51B94595DB}) (Version: 16.0.152 - National Instruments) Hidden NI Web Application Server 2016 (HKLM-x32\...\{AC371F9D-34AC-4AD0-86AC-65AB4876502E}) (Version: 16.0.152 - National Instruments) Hidden NI WS Repl Library 2016 (64-bit) (HKLM\...\{6151AD1C-8A0C-4AE3-A870-634829F7AF70}) (Version: 16.0.133 - National Instruments) Hidden NI WS Repl Library 2016 (HKLM-x32\...\{13077484-2D4C-411C-B2A1-DC558FEA45E6}) (Version: 16.0.133 - National Instruments) Hidden NI Xerces Delay Load 2.7.7 (HKLM-x32\...\{AC2DBB64-C223-486B-88DB-95097232E1D6}) (Version: 2.7.237 - National Instruments) Hidden NI Xerces Delay Load 2.7.7 64-bit (HKLM\...\{9DF9CBF1-5724-4942-A959-377D9723F2A3}) (Version: 2.7.247 - National Instruments) Hidden NI-488.2 16.0 (HKLM-x32\...\{29A4CC66-61FA-46D0-ADEE-8542A3012CE8}) (Version: 16.00.49152 - National Instruments) Hidden NI-488.2 64-bit 16.0 (HKLM\...\{DBFFB9C7-5BB7-4D9F-8578-09B188FD847C}) (Version: 16.00.49152 - National Instruments) Hidden NI-488.2 Runtime 16.0 (64-bit) (HKLM\...\{BD0E7EE6-0C17-459C-99D2-C1B7AFC4A85A}) (Version: 16.00.49152 - National Instruments) Hidden NI-488.2 Runtime 16.0 (HKLM-x32\...\{060A0DD9-6B7B-4AC4-A621-A7A37D08E989}) (Version: 16.00.49152 - National Instruments) Hidden NI-APAL 15.1 64-Bit Error Files (HKLM\...\{B9447E18-0E04-490E-8800-2412FE459A8B}) (Version: 15.10.49152 - National Instruments) Hidden NI-APAL 15.1 Error Files (HKLM-x32\...\{48E3422A-2764-4AC0-9027-D066001158C7}) (Version: 15.10.49152 - National Instruments) Hidden NI-DIM 16.0.0 (HKLM-x32\...\{7B34F0FB-C852-460E-BA4F-305AB0362212}) (Version: 16.00.49152 - National Instruments) Hidden NI-DIM 16.0.0 for 64-bit Windows (HKLM\...\{236173D6-DE87-46DD-858E-3D43B4D1A033}) (Version: 16.00.49152 - National Instruments) Hidden NI-MDBG 16.0.0f0 (HKLM-x32\...\{76808B40-06AB-453D-8DF3-B0997CF6BA2E}) (Version: 16.00.49152 - National Instruments) Hidden NI-MDBG 16.0.0f0 for 64 Bit Windows (HKLM\...\{5C8379C7-6A11-429B-BD72-AEE51484A0AB}) (Version: 16.00.49152 - National Instruments) Hidden NI-Mesa (HKLM\...\{D43C46AB-57CC-48E4-83B1-514CDBF148A5}) (Version: 13.0.3 - National Instruments) Hidden NI-Mesa (HKLM-x32\...\{7F93F26A-E5F7-4AE1-840F-F88DFE2DE3A5}) (Version: 13.0.3 - National Instruments) Hidden NI-MXDF 16.0.0f0 (HKLM-x32\...\{3CBE920F-1BF4-49CE-BC5F-6489930404DB}) (Version: 16.00.49152 - National Instruments) Hidden NI-MXDF 16.0.0f0 for 64 Bit Windows (HKLM\...\{125CE6B7-C356-4A73-9EFE-E79BC2D5A5F0}) (Version: 16.00.49152 - National Instruments) Hidden NI-ORB 16.0 (HKLM-x32\...\{DB97EB98-C805-4510-862C-FACF7C7F9917}) (Version: 16.00.49152 - National Instruments) Hidden NI-ORB 16.0 for 64-bit Windows (HKLM\...\{4322ED67-A2E0-480C-B2F7-7C9CDD82B599}) (Version: 16.00.49152 - National Instruments) Hidden NI-PAL 16.0 64-Bit Error Files (HKLM\...\{876E98C3-90B2-45D0-821D-E7A9C990D46A}) (Version: 16.00.49153 - National Instruments) Hidden NI-PAL 16.0 Error Files (HKLM-x32\...\{1691794E-849D-439E-A0FF-D219981401E4}) (Version: 16.00.49153 - National Instruments) Hidden NI-PAL 16.0.0f1 (HKLM-x32\...\{69C9F553-27CB-49B8-8081-699321DC08EB}) (Version: 16.00.49153 - National Instruments) Hidden NI-PAL 16.0.0f1 for 64 Bit Windows (HKLM\...\{332DBB79-0F98-4939-BA8B-29A6A88BA46A}) (Version: 16.00.49153 - National Instruments) Hidden NI-PCI Bridge Driver 16.0 (HKLM-x32\...\{E3548E19-28AB-41D8-8155-D3A578110A81}) (Version: 16.00.49152 - National Instruments) Hidden NI-PCI Bridge Driver 16.0 64-bit (HKLM\...\{E1C941EB-9622-44E7-AEC6-BEA5EDDAE0BD}) (Version: 16.00.49152 - National Instruments) Hidden NI-PXIPF Error 15.0.5 (HKLM-x32\...\{B1179EA6-D139-42CF-81BE-CCE21E101A20}) (Version: 15.05.49152 - National Instruments) Hidden NI-PXIPF Error 15.0.5 for 64-bit Windows (HKLM\...\{3645FB1A-29A5-48EA-A073-874DA7E4A08A}) (Version: 15.05.49152 - National Instruments) Hidden NI-QPXI 16.0.0 (HKLM-x32\...\{C1812216-15C3-4A08-9547-D96340259541}) (Version: 16.00.49152 - National Instruments) Hidden NI-QPXI 16.0.0 for 64-bit Windows (HKLM\...\{BA8EDFEE-C1B6-4EBE-8BA3-7517C238FF55}) (Version: 16.00.49152 - National Instruments) Hidden NI-RoCo Error Files 16.0.0 (HKLM-x32\...\{7C7042C2-507F-4A22-AE36-422F57AD36B6}) (Version: 16.00.49152 - National Instruments) Hidden NI-ROCO Error Files 16.0.0 for 64-bit Windows (HKLM\...\{D5E21348-13C3-4B30-AC52-584D95D2DC5A}) (Version: 16.00.49152 - National Instruments) Hidden NI-RPC 16.0.0f0 (HKLM-x32\...\{C1731602-D122-42AC-8DE5-FB31E7831B93}) (Version: 16.00.49152 - National Instruments) Hidden NI-RPC 16.0.0f0 for 64 Bit Windows (HKLM\...\{3DF614A4-1BD4-4801-AEBE-5D5A28829FA8}) (Version: 16.00.49152 - National Instruments) Hidden NI-RPC 16.0.0f0 for Phar Lap ETS (HKLM-x32\...\{047392F7-F447-4947-AD5C-D74E7F0F4AA9}) (Version: 16.00.49152 - National Instruments) Hidden NI-VISA 16.0.0 (HKLM-x32\...\{8541EA24-A9D0-4CF3-91C9-1284CB7D3A97}) (Version: 16.00.49152 - National Instruments) Hidden NI-VISA 16.0.0 64-bit Support (HKLM\...\{86F7BCA6-A8BE-42CD-8EC3-4A1E167E59BA}) (Version: 16.00.49152 - National Instruments) Hidden NI-VISA 16.0.0 MAX Provider (HKLM-x32\...\{8FDCABE7-32BE-4BFA-AC20-5C6F1493AE83}) (Version: 16.00.49152 - National Instruments) Hidden NI-VISA 16.0.0 Provider 64-bit Support (HKLM\...\{2D6CA77A-3FBC-4D5B-8B90-FEFBEA4B20FB}) (Version: 16.00.49152 - National Instruments) Hidden NI-VISA 64-bit Headers 16.0.0 (HKLM\...\{F9B39497-C63A-40B9-A53C-EFA7BD813F80}) (Version: 16.00.49152 - National Instruments) Hidden NI-VISA Headers 16.0.0 (HKLM-x32\...\{4C188304-2F21-4B2E-8EC4-45507F030FEF}) (Version: 16.00.49152 - National Instruments) Hidden NI-VISA Runtime 16.0.0 (HKLM-x32\...\{272BF3A9-7DBB-47EE-B2B8-CB893AA8166B}) (Version: 16.00.49152 - National Instruments) Hidden NI-VISA x64 support 16.0.0 (HKLM\...\{0EEB5487-1AEF-4C8A-A1E1-927039C1472F}) (Version: 16.00.49152 - National Instruments) Hidden OnePlus USB Drivers 1.00 (HKLM-x32\...\OnePlus USB Drivers 1.00) (Version: 1.00 - OnePlus, Inc) Open XML SDK 2.5 for Microsoft Office (HKLM-x32\...\{3EA16E23-14D2-466A-8268-D7CD40DC46B6}) (Version: 2.5.5631 - Microsoft Corporation) Hidden Oracle VM VirtualBox 5.0.14 (HKLM\...\{82022940-639B-48A3-86D9-B139864105F7}) (Version: 5.0.14 - Oracle Corporation) Outils de vérification linguistique 2013 de Microsoft Office*- Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Outils de vérification linguistique 2016 de Microsoft Office*- Français (HKLM-x32\...\{90160000-001F-040C-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (HKLM-x32\...\{63045916-32E7-31D6-BD8E-C13406E137B5}) (Version: 4.5.21005 - Microsoft Corporation) Hidden PreEmptive Analytics Client German Language Pack (HKLM-x32\...\{C0C08B71-8D97-47C0-91E2-D8F570A06994}) (Version: 1.2.3197.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (HKLM-x32\...\{943F3FB1-3F9C-4FB7-A4E2-6D53617068C3}) (Version: 1.2.3197.1 - PreEmptive Solutions) Hidden psqlODBC (HKLM-x32\...\{838E187D-8B7A-473D-B93C-C8E970B15D2B}) (Version: 08.02.0200 - PostgreSQL Global Development Group) Python Tools - Umleitungsvorlage (HKLM-x32\...\{24AF7EE2-5C90-4BC6-BAAB-BB8D1EB570A0}) (Version: 1.1 - Microsoft Corporation) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6782 - Realtek Semiconductor Corp.) Reset NI Config 16.0.0 (HKLM-x32\...\{811614CA-C322-4889-A642-08B5A2AA2DA7}) (Version: 16.0.127 - National Instruments) Hidden Schnell-Deinstallations-Tool für Autodesk Inventor 2012 (HKLM\...\{D25FF5C1-1664-469A-9794-69309387C193}) (Version: 16.0.16000.0000 - Autodesk) Schnell-Deinstallations-Tool für Autodesk Inventor 2013 (HKLM\...\{D25FF5C1-1764-469A-9794-69309387C193}) (Version: 17.0.13800.0000 - Autodesk) Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0053-0000-0000-0000000FF1CE}_Office15.VISSTD_{8D2E04ED-3350-4ECE-9D6E-3BC9A9A93A47}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) SharePoint Client Components (HKLM\...\{95150001-1163-0409-1000-0000000FF1CE}) (Version: 15.0.4481.1505 - Microsoft Corporation) Hidden Strumenti di correzione di Microsoft Office 2016 - Italiano (HKLM-x32\...\{90160000-001F-0410-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Target 3001! V16 professional (HKLM-x32\...\Target 3001! V16 professional) (Version: - Ing. Buero FRIEDRICH) Team Explorer for Microsoft Visual Studio 2013 (HKLM-x32\...\{C9E7751E-88ED-36CF-B610-71A1D262E906}) (Version: 12.0.21005 - Microsoft Corporation) Hidden TeXnicCenter Version 2.02 Stable (HKLM\...\TeXnicCenter_is1) (Version: 2.02 Stable - The TeXnicCenter Team) Ultra Librarian (HKLM-x32\...\Product_Name) (Version: - ) Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) VBA (2627.01) (HKLM-x32\...\{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}) (Version: 6.03.00.9402 - Microsoft Corporation) Hidden VBA (2701.01) (HKLM-x32\...\{5545EEE4-FA36-4F76-B6BE-5696E7F4E2D6}) (Version: 6.03.00.9402 - Microsoft Corporation) Hidden VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes) VISA Shared Components 5.7.0 (64-Bit) (HKLM\...\{A54F3E86-C79A-412C-B2B1-67B801D2EEB6}) (Version: 5.7.0303 - IVI Foundation) Hidden VISA Shared Components 5.7.0 (64-Bit) (HKLM-x32\...\VISASharedComponents) (Version: 5.7 - IVI Foundation) VISA.NET Shared Components 5.6.0 (64-Bit) (HKLM\...\{9526BEDD-F0F0-4D90-B732-4C0E9410DEA4}) (Version: 5.6.0301 - IVI Foundation) Hidden VISA.NET Shared Components 5.6.0 (64-Bit) (HKLM-x32\...\VISANETSharedComponents5.6.0) (Version: 5.6.0301 - IVI Foundation) VLC media player 2.1.0 (HKLM-x32\...\VLC media player) (Version: 2.1.0 - VideoLAN) WCF Data Services 5.6.0 DEU Language Pack (HKLM-x32\...\{284F5338-4886-460A-BE3E-E510888517BA}) (Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services 5.6.0 Runtime (HKLM-x32\...\{46910786-E4AC-41E4-A4A0-C086EA85242D}) (Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2013 (HKLM-x32\...\{BF3E2194-F89B-44FB-A801-464BF787599F}) (Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2013 DEU Language Pack (HKLM-x32\...\{7204D64A-D3C5-4781-929C-A8D4BF55819C}) (Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation) Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc) WinRAR 5.40 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) WinSCP 5.7.1 (HKLM-x32\...\winscp3_is1) (Version: 5.7.1 - Martin Prikryl) Workflow Manager Client 1.0 (HKLM\...\{F9286DE4-666B-44A9-8257-7827FF70359F}) (Version: 2.0.30813.2 - Microsoft Corporation) Hidden Workflow Manager Tools 1.0 for Visual Studio (HKLM\...\{CF706662-0A17-4493-846E-721686927968}) (Version: 2.0.30725.1 - Microsoft Corporation) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{00F064D8-FEC3-48ac-B07D-39C314D1727B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{1029ABC3-2457-11D5-8E9D-0010B541CD80}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{13009989-EFB5-48C9-8BD2-943E0392BD71}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxAppCtrl.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{17A14094-F274-44E2-B54B-FC0E966AE5C7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2012\Bin\LUxClientSink.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{18A21864-E37B-42b9-9612-2C1E8C450A29}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{21DB88B0-BFBF-11D4-8DE6-0010B541CAA8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\iDrop.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{244298EC-E661-11d4-BC13-0010B5891E89}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\TI.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{2D5C6B27-86B3-4E81-9F8B-9C68887F5BE6}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2012\Bin\LUxUIMgr.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{2F8377FC-50C1-44EF-AB7A-8FF1BB8EA277}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{3897B445-D5B8-410d-899A-9789B8ADB643}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{3C3F63EA-C7BA-11d4-8E60-0010B541CD80}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2013\en-US\dwgviewrficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{3FC94EB5-AEBD-4f3f-A2A4-B6CE57113C01}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxAppDocView.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{45122C53-8483-4b62-B15A-EAA9FE5FC3D5}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{4C80573A-9150-11d2-B772-0060B0F159EF}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxAppDocView.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{4D29B490-49B2-11D0-93C3-7E0706000000}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{62FBB030-24C7-11D3-B78D-0060B0F159EF}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{644190AE-BD8F-493F-B63D-C79404AC5E07}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2013\dwgviewr.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6FDE7A70-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6FDE7A71-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6FDE7A72-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6FDE7A73-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6FDE7A74-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{6FDE7A77-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtCp.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{714D325C-E9CE-44ab-A72A-36BB410BA19B}\localserver32 -> C:\Program Files\Autodesk\Inventor 2012\Bin\FEAFilesHandler.exe => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{72EC5CC5-88F3-45B1-A865-0A327DF58CC8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{76283A80-50DD-11D3-A7E3-00C04F79D7BC}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{81D07C3D-0350-11D3-B7C2-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxAppCtrl.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{8421A29C-54B8-11D1-9837-0060B03C43C8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\SolidObject.Dll () CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{846217D0-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\UCxTextBtn.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{846217D1-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\UCxTextBtn.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{8B0E6BD9-610C-11D1-9842-0060B03C43C8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\SolidObject.Dll () CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{97E17F04-17DF-11d5-BC38-0010B5891E89}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\BodyReceiver.dll () CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{B6B5DC40-96E3-11d2-B774-0060B0F159EF}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{B8E7214B-25CA-4116-84CB-E86FB9625B36}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{BBF9FDF1-52DC-11D0-8C04-0800090BE8EC}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{BE54741D-E02B-4572-93D6-105AF4EDE777}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{C0E7110B-2136-11D4-8DD0-0010B541CAA8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxInventorMarshal.Dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{C343ED84-A129-11d3-B799-0060B0F159EF}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxApprenticeServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{C92F8F8C-8B2C-11d4-B872-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{CFEE2BAF-14F9-4D23-853D-B6E2BCC14263}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{D7A1987D-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ColorButton.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{D7A1987E-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ColorButton.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{DA1F437C-9BD9-11d4-B87C-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{DB5D476B-3FF4-4E9D-A606-1E2B473BE571}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\AcInetUI.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{DCA7356C-FF94-4b20-AE04-7AA6A8E14117}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{DDA9A20F-5B56-49F5-9465-CE82FC199352}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{DE6B563C-B074-4BF1-A8A0-B3FED8703E99}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E1C85E9F-60B2-4007-80C3-2C5E09474C3B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\RxInventorUtilities.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2013\de-DE\acadficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E60F81E1-49B3-11D0-93C3-7E0706000000}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E6E92821-2731-4AA3-B919-D2BC514FEC64}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Compatibility\Bin\DbxBridgePS.Dll () CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{F13E75B9-6AF6-49CB-80B3-6D2FF6E09932}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{F61064CC-DBFB-47ee-9BC8-CA5A1CBDF0DA}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\InvResc.dll (Autodesk) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{FA62F626-EBD5-4dc5-B970-D9E81E0E20E0}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{FB469644-3F14-4403-ACCA-6B13486FF7BD}\localserver32 -> C:\Program Files\Autodesk\Inventor 2013\Bin\InvTXTStack.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1202744845-3101423955-345487624-67750_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => Keine Datei ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2012-02-07] (Autodesk, Inc.) ShellIconOverlayIdentifiers: [Symbol-Overlay-Steuerprogramm für AutoCAD Digitale Signaturen] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2012-02-07] (Autodesk, Inc.) ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2012-02-07] (Autodesk) ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems Inc.) ContextMenuHandlers1-x32: [Autodesk.DWF.ContextMenu] -> {6C18531F-CA85-45F7-8278-FF33CF0A5964} => C:\Program Files (x86)\Common Files\Autodesk Shared\DWF Common\DWFShellExtension.dll [2012-01-06] (Autodesk, Inc.) ContextMenuHandlers1-x32: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG) ContextMenuHandlers1-x32: [VirusScan] -> {cda2863e-2497-4c49-9b89-06840e070a87} => C:\Program Files (x86)\McAfee\VirusScan Enterprise\x64\shext.dll [2017-03-30] (McAfee, Inc.) ContextMenuHandlers1-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers1-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers2: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG) ContextMenuHandlers4: [VirusScan] -> {cda2863e-2497-4c49-9b89-06840e070a87} => C:\Program Files (x86)\McAfee\VirusScan Enterprise\x64\shext.dll [2017-03-30] (McAfee, Inc.) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2013-05-17] (Intel Corporation) ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems Inc.) ContextMenuHandlers6: [VirusScan] -> {cda2863e-2497-4c49-9b89-06840e070a87} => C:\Program Files (x86)\McAfee\VirusScan Enterprise\x64\shext.dll [2017-03-30] (McAfee, Inc.) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers6_.DEFAULT: [InventorMenu] -> {6FDE7A70-351B-11d6-988B-0010B57A8BB7} => C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll [2012-03-03] (Autodesk, Inc.) ContextMenuHandlers6_S-1-5-21-1202744845-3101423955-345487624-67750: [InventorMenu] -> {6FDE7A70-351B-11d6-988B-0010B57A8BB7} => C:\Program Files\Autodesk\Inventor 2013\Bin\DtBridge.dll [2012-03-03] (Autodesk, Inc.) |
26.10.2017, 07:53 | #9 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Und der zweite Teil... Sind ziemlich viele Fehler drin?! Code:
ATTFilter ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {1FADD172-267D-4F55-9376-D46022D5D6DC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated) Task: {205E0797-3A75-4374-B738-F460605F7213} - System32\Tasks\{A2975168-CFEA-4343-8F58-DB9F539EA713} => C:\Windows\system32\pcalua.exe -a C:\Users\ox0262\Downloads\winsdk_web(1).exe -d C:\Users\ox0262\Downloads Task: {3FFE4CC6-473F-459C-B4B6-C865C61373E9} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe Task: {43104073-5BF7-4592-A0D5-DE3DFC9FFB6C} - System32\Tasks\NIUpdateServiceStartupTask => D:\NI_488\Shared\Update Service\NIUpdateService.exe [2016-06-07] (National Instruments) Task: {5118A60C-3F3E-42C3-BB5A-0B313676DD7C} - System32\Tasks\NIUpdateServiceCheckTask => D:\NI_488\Shared\Update Service\NIUpdateService.exe [2016-06-07] (National Instruments) Task: {666F35BE-F771-4DF3-8F97-61CFCC7CA0D2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-10-26] (Adobe Systems Incorporated) Task: {77298556-2F0D-49E4-B889-132A3D734E85} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {7812878C-08A6-4207-824B-27C84E1788CE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-22] (Microsoft Corporation) Task: {9034D342-C326-4B63-A5E5-8517F69EFA4B} - System32\Tasks\{B2DF333E-BFA0-4E77-B4DE-48A3DF1579D5} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Cadence\LicenseServerConfiguration.exe" Task: {919306F5-4249-4642-BB52-CE7A58EBE78A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {B57E5199-6BED-4E73-B364-9A1D02A3A844} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-22] (Microsoft Corporation) Task: {BA261795-B20D-4976-9819-867EA5DADA73} - \HP PhotoSmap -> Keine Datei <==== ACHTUNG Task: {CE83F933-CF03-4FA0-A0CB-9537DBE46885} - System32\Tasks\MATLAB R2014a Startup Accelerator => C:\Program Files\MATLAB\R2014a\bin\win64\MATLABStartupAccelerator.exe [2014-01-29] () Task: {FF4D8388-8D1D-4A79-9F02-5588A11D6687} - System32\Tasks\Games\UpdateCheck_S-1-5-21-1202744845-3101423955-345487624-67750 (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\MATLAB R2014a Startup Accelerator.job => C:\Program Files\MATLAB\R2014a\bin\win64\MATLABStartupAccelerator.exe ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\ox0262\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TARGET 3001! V16 professional\Online Hilfe.lnk -> hxxp://server.ibfriedrich.com/wiki/ibfwikide/index.ph ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2013-12-03 15:30 - 2012-10-29 09:48 - 000927232 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe 2017-06-14 09:20 - 2017-06-14 09:20 - 000559128 _____ () C:\Program Files (x86)\McAfee\Common Framework\sqlite.dll 2017-06-14 09:18 - 2017-06-14 09:18 - 000058680 _____ () C:\Program Files (x86)\McAfee\Common Framework\MXML.dll 2017-06-14 09:21 - 2017-06-14 09:21 - 000028224 _____ () C:\Program Files (x86)\McAfee\Common Framework\trex.dll 2017-06-14 08:47 - 2017-06-14 08:47 - 000152656 _____ () C:\Program Files (x86)\McAfee\Common Framework\libuv.dll 2017-06-14 09:23 - 2017-06-14 09:23 - 000121176 _____ () C:\Program Files (x86)\McAfee\Common Framework\zlib.dll 2017-06-14 08:46 - 2017-06-14 08:46 - 000033856 _____ () C:\Program Files (x86)\McAfee\Common Framework\libini.dll 2016-04-18 14:24 - 2016-04-18 14:24 - 000023872 _____ () C:\Program Files\Agilent\IO Libraries Suite\intfcfg\CfgAgt8491.dll 2013-09-05 01:17 - 2013-09-05 01:17 - 004300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2013-12-21 08:05 - 2013-12-21 08:05 - 000031744 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Locale\de_de\AcroIEFavClient.DEU 2013-12-03 15:30 - 2017-10-26 07:21 - 000027648 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\PEbiosinterface32.dll 2013-12-03 15:30 - 2012-05-07 18:04 - 000104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\ATKEX.dll 2017-06-14 08:46 - 2017-06-14 08:46 - 000029208 _____ () C:\Program Files (x86)\McAfee\Common Framework\x86\libini.dll 2017-06-14 09:20 - 2017-06-14 09:20 - 000434624 _____ () C:\Program Files (x86)\McAfee\Common Framework\x86\sqlite.dll 2017-06-14 09:18 - 2017-06-14 09:18 - 000048848 _____ () C:\Program Files (x86)\McAfee\Common Framework\x86\MXML.dll 2017-06-14 09:20 - 2017-06-14 09:20 - 000027128 _____ () C:\Program Files (x86)\McAfee\Common Framework\x86\trex.dll 2017-06-14 08:46 - 2017-06-14 08:46 - 000141800 _____ () C:\Program Files (x86)\McAfee\Common Framework\x86\libuv.dll 2012-09-23 21:43 - 2012-09-23 21:43 - 000010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\de_de\acrotray.deu 2013-09-05 01:14 - 2013-09-05 01:14 - 004300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\office14\Cultures\office.odf 2013-09-05 16:04 - 2013-09-05 16:04 - 000131072 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Locale\de_de\PDFMaker\PDFMOutlookAddin.DEU 2017-03-28 19:24 - 2017-03-28 19:24 - 003990136 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\PDFMaker\Common\AdobePDFMakerX.dll 2013-09-05 16:04 - 2013-09-05 16:04 - 001446912 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Locale\de_DE\PDFMaker\AdobePDFMakerX.DEU 2015-11-11 03:42 - 2015-11-11 03:42 - 001045672 _____ () C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll 2012-09-23 21:43 - 2012-09-23 21:43 - 000313992 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\sqlite.dll 2014-09-12 02:44 - 2014-09-12 02:44 - 041313648 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\AcroExt\libcef.dll 2017-06-14 09:22 - 2017-06-14 09:22 - 000104608 _____ () C:\Program Files (x86)\McAfee\Common Framework\x86\zlib.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Windows\System32 [0] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\abengine => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) HKU\S-1-5-21-1202744845-3101423955-345487624-67750\Software\Classes\.scr: DWGTrueViewScriptFile => C:\Windows\system32\notepad.exe "%1" ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\amazon.de -> hxxps://amazon.de IE trusted site: HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\fzk.de -> hxxps://sapwg2.sap.fzk.de IE trusted site: HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-1202744845-3101423955-345487624-67750\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2017-10-23 10:42 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1202744845-3101423955-345487624-67750\Control Panel\Desktop\\Wallpaper -> C:\Users\ox0262\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 141.52.3.3 - 141.52.8.18 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{A407EAA1-AB88-471A-A5AE-87BA2EC0FA66}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{11E97BF8-2168-4E6B-8ABF-917D21833CA3}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{F9621B1C-56E5-4D06-9CC7-A4959F23E67F}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{6E397339-A96E-49D0-9425-268679848648}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{8795D17F-0027-4D11-B81A-9AF4542B4DBF}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{BAFC0021-D74B-431B-BF8D-42029D9BE80D}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{DCBBE4DE-93D7-4542-BC61-24C0AF4D26AC}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{9BCC0D9B-0032-4CBC-908A-CCA38E7444AE}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe FirewallRules: [{C3C9EDAF-3531-4F59-9C04-988F8428B89A}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\CST DESIGN ENVIRONMENT.exe FirewallRules: [{2848D3A9-DE2E-4029-A133-3C300EAE6024}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\CST DESIGN ENVIRONMENT.exe FirewallRules: [{1204E47B-6EB6-4FAE-AE61-2AF5A42A3525}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\modeler.exe FirewallRules: [{1AF6DD52-8421-40B9-9AE0-16304381B2CD}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\modeler.exe FirewallRules: [{D7A5F7CB-E30B-441C-898D-6FA9F240BAA5}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\modeler_AMD64.exe FirewallRules: [{CEC50710-4BE9-4CCA-9EE6-54473F84C644}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\modeler_AMD64.exe FirewallRules: [{025E3B34-9C54-4353-966A-A51F6D342BAF}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\TetMesh.exe FirewallRules: [{6DD2BDDF-644F-4EBC-8AB6-F42BCA6DC112}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\TetMesh.exe FirewallRules: [{C590E983-D9FA-437A-A368-C8A3F126ABA2}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\TetMesh_AMD64.exe FirewallRules: [{D8425E56-A4B1-413B-AD04-1A274D372080}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\TetMesh_AMD64.exe FirewallRules: [{E58324F4-BED0-4F37-ABF9-32F489D92C14}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\DC Solver Server\CSTDCSolverServer.exe FirewallRules: [{38FB480E-CA2F-43A2-95F1-66AD729BB868}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\DC Solver Server\CSTDCSolverServer.exe FirewallRules: [{6A2D3518-800C-474E-A344-4AF6DFDF7FEA}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\DC Main Controller\CSTDCMainController.exe FirewallRules: [{E2E2A2DE-05EC-408A-9D58-E8708D1F89EB}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\DC Main Controller\CSTDCMainController.exe FirewallRules: [{D0F840E5-1AE8-49FD-886A-7819E9124D7F}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\smpd.exe FirewallRules: [{A025D59B-5DA3-41F7-9C78-B8D9CA7EAA55}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\smpd.exe FirewallRules: [{140CC862-F17E-4384-952B-8B027391B8B2}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\smpd.exe FirewallRules: [{42ED80DE-8586-4C82-B389-799EB4364AF2}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\smpd.exe FirewallRules: [{20F2F2ED-D671-4560-BC0E-211100A03EEF}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\mpiexec.exe FirewallRules: [{693B0F0F-921E-403F-ABCE-E3A93B2D865E}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\mpiexec.exe FirewallRules: [{D4DF397E-F2E8-4989-9242-565FB80D0FCB}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\mpiexec.exe FirewallRules: [{1AC0C54F-AE56-4496-8E9D-FAE5A662F7D8}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\mpiexec.exe FirewallRules: [{C032465B-691D-4EEB-B50C-08E7941045AD}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\ParaControl.exe FirewallRules: [{23AE3309-8C92-4A5B-8E48-E843F803B983}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\ParaControl.exe FirewallRules: [{0554C407-B8C2-4E79-82E8-3DC73ACF9AC6}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\ParaControl_AMD64.exe FirewallRules: [{B546D05A-2BE1-40C9-8DE1-C3EFA5B76F14}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\AMD64\ParaControl_AMD64.exe FirewallRules: [{7EE30A12-7229-4D54-8AAB-7C8F02776A83}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\License Manager\lmgrd.exe FirewallRules: [{2C2B8168-9994-4450-A9D0-340DB4B657C8}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\License Manager\lmgrd.exe FirewallRules: [{059A3159-D004-48E4-B528-00FEB4945290}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\License Manager\cstd.exe FirewallRules: [{35C99100-2100-4812-93E8-7755840D6996}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2012\License Manager\cstd.exe FirewallRules: [{2495E939-3A1A-417A-8BC3-699C2C348295}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [TCP Query User{0ECFC3CC-5A0F-44BA-9B23-FB9E37E342A6}C:\mentorgraphics\9.5pads\sdd_home\common\win32\bin\icdbnetserver.exe] => (Allow) C:\mentorgraphics\9.5pads\sdd_home\common\win32\bin\icdbnetserver.exe FirewallRules: [UDP Query User{39FE48D3-9F21-4104-81C7-AF04119549E6}C:\mentorgraphics\9.5pads\sdd_home\common\win32\bin\icdbnetserver.exe] => (Allow) C:\mentorgraphics\9.5pads\sdd_home\common\win32\bin\icdbnetserver.exe FirewallRules: [{6451D846-CD68-4A82-BAAE-717EA857780E}] => (Allow) C:\Program Files (x86)\Intel\MPI-RT\4.0.3.010\em64t\bin\smpd.exe FirewallRules: [{CF2FC19D-8DDC-4434-8F56-B0B7C20C7532}] => (Allow) C:\Program Files (x86)\Intel\MPI-RT\4.0.3.010\em64t\bin\smpd.exe FirewallRules: [TCP Query User{F68A0EB4-2E02-43CE-98FE-EFA27282A551}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{B539C0A6-5375-4AD8-A155-3FCB6127CD41}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe FirewallRules: [{63EA9A19-D7BB-491E-86DE-CD41F2B46691}] => (Allow) LPort=50248 FirewallRules: [{D229BAC1-3DA4-45B7-9EA8-99A880659A30}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\MfeServiceMgr.exe FirewallRules: [{524D1EFC-FF5C-40FD-B75D-3D40160C428B}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\MfeServiceMgr.exe FirewallRules: [{2A646861-0AB3-463E-BEFC-8F2481B04D26}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\MfeServiceMgr.exe FirewallRules: [{5D90926E-498F-462E-851B-6264A454B93E}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\MfeServiceMgr.exe FirewallRules: [{AD2616DA-65D6-4E4A-AE73-B7BC047CC40A}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\MfeServiceMgr.exe FirewallRules: [{54AE902C-672C-478C-B8EE-C2FD632617EE}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\MfeServiceMgr.exe FirewallRules: [{D951DE04-9EBA-4D86-8596-DE084C7EC743}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{FDE17CA0-A513-4E3A-90C2-E7A662333C8C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{7E717974-233F-4147-9F56-7416AB36ACEF}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{36AB6A53-1F8C-4D3F-996B-0852B08B7F9A}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{F104F8FE-D949-444E-986D-6075DF075D2B}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\CST DESIGN ENVIRONMENT.exe FirewallRules: [{C9F0E4B0-77CD-4D2D-A393-11772A7D0C6F}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\modeler.exe FirewallRules: [{38EB1225-41C0-45B9-AE4E-712C83DC656B}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\AMD64\modeler_AMD64.exe FirewallRules: [{1A382136-2A59-45B9-9EC9-83CDA13BB15F}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\schematic.exe FirewallRules: [{B45C0297-F4DB-41D0-9819-B66B073A6255}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\TetMesh.exe FirewallRules: [{23153DEC-9F2F-4902-8F09-F2863B8EB796}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\AMD64\TetMesh_AMD64.exe FirewallRules: [{AE4C319D-DA15-4365-89FD-5D68EF13106F}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\DC Solver Server\CSTDCSolverServer.exe FirewallRules: [{2CABC3CB-7D27-447B-B903-9DE0632D42E4}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\DC Main Controller\CSTDCMainController.exe FirewallRules: [{E8A2ED01-B31B-44B2-B8F2-E9F4D7CD21FE}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\smpd.exe FirewallRules: [{3BB25853-3901-4ED7-B283-D0C5009BFFF8}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\AMD64\smpd.exe FirewallRules: [{D0D71769-069F-4EC7-97A5-CA71AF3101F9}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\mpiexec.exe FirewallRules: [{9DEE17C9-93BC-47AB-B923-DD7A18B114EE}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\AMD64\mpiexec.exe FirewallRules: [{4C9C51AD-4702-416B-8FC1-B09BA2A4CF54}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\ParaControl.exe FirewallRules: [{FA82BCE4-21C7-465E-801E-CC761C10A461}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\AMD64\ParaControl_AMD64.exe FirewallRules: [{18F059C7-98FB-44EB-8BBD-8E3BABCA991C}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\License Manager\lmgrd.exe FirewallRules: [{14785A24-95E3-414F-A237-0BAD499EF02D}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\License Manager\cstd.exe FirewallRules: [{71F01BFA-00F0-4C71-BA4C-E19CF53436EC}] => (Allow) C:\Program Files (x86)\CST STUDIO SUITE 2014\SolverService.exe FirewallRules: [{A0F59B17-18BB-4077-9B8D-2B739AE2E902}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{CCE7FB64-905B-4670-925A-4BCDAC946D60}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\devenv.exe FirewallRules: [{EBC7E70E-0C38-4435-97A4-B427464683E6}] => (Allow) LPort=12292 FirewallRules: [{CE645273-D34B-4A32-AED5-F109619916DF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{26B2FD97-68A2-4BA9-B6AF-0A6DE2F908DA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{7EED355E-B387-433C-BE61-745F36031B31}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\macmnsvc.exe FirewallRules: [{FC134A34-FCAC-45DB-B764-9309CE94D137}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\macmnsvc.exe FirewallRules: [{E87A388E-B89B-40C8-80B4-33B15E0CE23D}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\macmnsvc.exe FirewallRules: [{2666EA17-A2A9-499E-B49A-3E2064C0B630}] => (Allow) C:\Program Files (x86)\McAfee\Common Framework\macmnsvc.exe FirewallRules: [{CAB4F627-8EB2-4A4F-9049-A5BE31E29692}] => (Allow) C:\Program Files\AWR\Analyst\12\mpiexec.exe FirewallRules: [{06253AF4-B98F-4831-B5E1-BC1661F66EC8}] => (Allow) C:\Program Files\AWR\Analyst\12\pmi_proxy.exe FirewallRules: [{30A58200-BC49-404F-B021-F414E660C8B9}] => (Allow) C:\Program Files\AWR\Analyst\12\grsim.exe FirewallRules: [{FC1D554F-3413-4096-964E-A75D9CA56565}] => (Allow) C:\Program Files (x86)\Intel\MPI-RT\5.0.2.044\intel64\bin\smpd.exe FirewallRules: [{7DB85EB7-19F8-4054-B10B-759DB1038A93}] => (Allow) C:\Program Files (x86)\Intel\MPI-RT\5.0.2.044\intel64\bin\smpd.exe FirewallRules: [TCP Query User{FDF9F9EB-58B0-43F9-91C3-80E6C8F7C0A8}C:\users\ox0262\appdata\local\temp\i1462257102\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\ox0262\appdata\local\temp\i1462257102\windows\resource\jre\bin\javaw.exe FirewallRules: [UDP Query User{03B3CEFD-FCA3-4692-82FB-688AA2BBC526}C:\users\ox0262\appdata\local\temp\i1462257102\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\ox0262\appdata\local\temp\i1462257102\windows\resource\jre\bin\javaw.exe FirewallRules: [{7B277598-98F2-4615-8EE6-CA9E3962C11E}] => (Allow) C:\Program Files\Keysight\EEsof_License_Tools\bin\lmgrd.exe FirewallRules: [{4DFB0039-41A9-4721-8513-36E9BF7CE9D9}] => (Allow) C:\Program Files\Keysight\EEsof_License_Tools\bin\agileesofd.exe FirewallRules: [{85D4CC67-BA25-4533-B41D-0134EE5F315A}] => (Allow) C:\Program Files\Keysight\ADS2016_01\bin\hpeesofemx.exe FirewallRules: [{E080C3EE-6437-4B9A-954A-173A23B7A746}] => (Allow) C:\Program Files\Keysight\ADS2016_01\bin\oaFSLockD.exe FirewallRules: [{B22E7851-BD9D-462B-B747-BF15231BF4E7}] => (Allow) C:\Program Files\Keysight\ADS2016_01\Momentum\12.00\win32_64\bin\FemEngine.exe FirewallRules: [{DC372056-DCB2-48BC-ABC4-255844515A8A}] => (Allow) C:\Program Files\Keysight\ADS2016_01\Momentum\12.00\win32_64\bin\femengine.exe FirewallRules: [{EF53EEEE-52EB-4374-965F-044FF0E6650C}] => (Allow) C:\Program Files\Keysight\ADS2016_01\tools\win32_64\python\bin\python.exe FirewallRules: [{5E5F2D01-7C4C-49BF-B98C-EA23DA09B570}] => (Allow) C:\Program Files\Keysight\ADS2016_01\tools\win32_64\python\bin\pythonw.exe FirewallRules: [{FC61771B-66E9-401F-850F-C4A78E8B0469}] => (Allow) C:\Program Files\Keysight\ADS2016_01\fem\2016.01\bin\Win64\tools\win32\python\python.exe FirewallRules: [{196F43AE-7565-4EA6-B72D-C1DDAF572A22}] => (Allow) C:\Program Files\Keysight\ADS2016_01\fem\2016.01\bin\Win64\tools\win32\python\pythonw.exe FirewallRules: [{DD7EBE16-6297-4CAB-BA37-5C825F7E1489}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofcksimsetup.exe FirewallRules: [{6BB02399-EC6B-476D-A6B1-93BE56885A83}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofClmClient.exe FirewallRules: [{4983AEF0-F9A2-4573-AA17-045E0D4B00FB}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpsh.exe FirewallRules: [{ACD1422F-B271-4F8E-B977-E3CC4067ED9D}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpshd.exe FirewallRules: [{AC0CC486-0CA4-48EE-9C60-F7F30A8A833B}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpvm.exe FirewallRules: [{8AD94ED0-CFC4-46C1-A2CA-73D7165EFE78}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpvm_halter.exe FirewallRules: [{DF25B57F-2F50-4BA4-A4EE-FB02BAC9707E}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpvm_imply_kill.exe FirewallRules: [{0AA94999-5A9D-43F2-A7B1-53B42D0679B3}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpvm_multitool.exe FirewallRules: [{EE30B69F-567C-48CF-A125-45C8BD44183A}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpvmd3.exe FirewallRules: [{DB4807F2-B521-43E4-A548-BC0F1832F14F}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpvmgs.exe FirewallRules: [{ABB46241-16AB-4652-88C7-D777172435C0}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpvmhoster.exe FirewallRules: [{107E92BF-68C6-482F-8490-6B96D0117208}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofpvmtracer.exe FirewallRules: [{8A5DEB0B-4C79-42B0-A2D8-875701DCD03F}] => (Allow) C:\Program Files\Keysight\ADS2016_01\pvm3\bin\win32_64\eesofsc.exe FirewallRules: [{49D99D62-7815-451A-BF0B-DC74B10D2BBE}] => (Allow) C:\Program Files (x86)\ICW\Bin\sshd.exe FirewallRules: [TCP Query User{5A55CEAC-074C-4E09-9C62-A41004E524B8}C:\users\ox0262\appdata\local\temp\i1470127292\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\ox0262\appdata\local\temp\i1470127292\windows\resource\jre\bin\javaw.exe FirewallRules: [UDP Query User{AE00EAE6-2291-4023-819D-DE0BCC7CCCE6}C:\users\ox0262\appdata\local\temp\i1470127292\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\ox0262\appdata\local\temp\i1470127292\windows\resource\jre\bin\javaw.exe FirewallRules: [{5BAC1B0A-EBB9-4F12-ACFB-A936C197B651}] => (Allow) C:\Program Files\Keysight\EEsof_License_Tools\bin\lmgrd.exe FirewallRules: [{832EE678-5E82-4ADA-85F7-A489D68BA9AE}] => (Allow) C:\Program Files\Keysight\EEsof_License_Tools\bin\agileesofd.exe FirewallRules: [TCP Query User{56A30A4C-5F69-471B-92C3-D2011460B143}C:\users\ox0262\appdata\local\temp\i1470128289\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\ox0262\appdata\local\temp\i1470128289\windows\resource\jre\bin\javaw.exe FirewallRules: [UDP Query User{E73E84D3-0FF8-4345-AF92-9013D7573DF1}C:\users\ox0262\appdata\local\temp\i1470128289\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\ox0262\appdata\local\temp\i1470128289\windows\resource\jre\bin\javaw.exe FirewallRules: [{043D1078-6820-4A7F-A353-3610FE73F7AA}] => (Allow) C:\Program Files\Keysight\EEsof_License_Tools\bin\lmgrd.exe FirewallRules: [{AF55D9C2-BB2E-4A9A-B01F-B91221A08037}] => (Allow) C:\Program Files\Keysight\EEsof_License_Tools\bin\agileesofd.exe FirewallRules: [{7EDDED47-D878-44C0-BBB2-B716923E409E}] => (Allow) C:\Keysight\ICCAP_2016_01\bin\hpeesofemx.exe FirewallRules: [{49B1B7CC-8FAC-4D34-8CBD-AC5531A32AA8}] => (Allow) LPort=5044 FirewallRules: [{1E3E55FE-75DC-4BD3-86D2-86DC6F355C26}] => (Allow) LPort=5044 FirewallRules: [{D9355EF3-56D9-4D14-A4AE-3D72D5CEF943}] => (Allow) LPort=5044 FirewallRules: [{1AE68155-3006-40B7-B2DD-36926E7080A1}] => (Allow) LPort=5044 FirewallRules: [{376CCB6A-1E3B-439C-B880-93B09DF73EAA}] => (Allow) LPort=319 FirewallRules: [{FAA25315-D5BF-4641-8D5C-92512D6AB87E}] => (Allow) LPort=319 FirewallRules: [{C0336427-8F35-4ED7-9C3E-12578E96A84B}] => (Allow) LPort=320 FirewallRules: [{9561A6AF-A983-475F-A542-2B41350B0261}] => (Allow) LPort=320 FirewallRules: [{0C9DA132-636A-416B-8B97-37F31365C0E2}] => (Allow) LPort=111 FirewallRules: [{3B30A589-A108-4875-B101-08E079E59049}] => (Allow) LPort=111 FirewallRules: [{B276F6D5-B09E-4D40-AB00-A4068FA1DFC6}] => (Allow) C:\Program Files\Agilent\IO Libraries Suite\bin\siclland.exe FirewallRules: [{B88274DD-A127-48E0-8915-16B1B1BCC767}] => (Allow) LPort=8000 FirewallRules: [{3D3882EE-AC2D-4D19-85AC-2258D7B67DA1}] => (Allow) LPort=8020 FirewallRules: [{96D664F9-ACB4-476F-ADD9-13E626FAB3CB}] => (Allow) C:\Program Files (x86)\Agilent\ACCL\Licensing\bin\AgilentLicenseService.exe FirewallRules: [{BA673E5B-790F-4122-BB48-B2B28CDF5A21}] => (Allow) C:\Program Files (x86)\Agilent\Agilent License Manager\KeysightLicenseManager.exe FirewallRules: [{99224100-3D2F-47EB-B025-40D550563C9B}] => (Allow) C:\Program Files (x86)\Agilent\Agilent License Manager\KeysightLicenseManager.exe FirewallRules: [{589818A0-14D0-4945-B0CE-D01B4A769211}] => (Allow) C:\Program Files (x86)\Agilent\Agilent License Manager\KeysightLicenseManager.exe FirewallRules: [{0D9F9AEC-DE31-4248-876A-5F828C36367A}] => (Allow) C:\Program Files (x86)\Agilent\Agilent License Manager\KeysightLicenseManager.exe FirewallRules: [{EA530CF6-CEB8-4099-BA6A-BCB2DADF64EA}] => (Allow) LPort=8001 FirewallRules: [{8D4FFB6D-03D0-43DB-B8FA-7ECCAE223D30}] => (Allow) LPort=8001 FirewallRules: [{10E09C2B-16BF-40DC-BE43-EA36B4EBC25A}] => (Allow) LPort=8766 FirewallRules: [{A9C2A7E2-75FE-4C61-8B15-6FCD44513AE3}] => (Allow) D:\NI_488\Shared\mDNS Responder\nimdnsResponder.exe FirewallRules: [{3B848BF1-A2CB-49D8-BEDD-6E15C4BDB929}] => (Allow) D:\NI_488\Shared\NI WebServer\ApplicationWebServer.exe FirewallRules: [{22EC3136-CADE-4416-9D77-F40268D55AD2}] => (Allow) D:\NI_488\Shared\NI WebServer\ApplicationWebServer.exe FirewallRules: [{C229CA86-D1D2-4089-A45B-2E31E803BAF1}] => (Allow) C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe FirewallRules: [{4F08CF52-B016-4A68-944C-1304C9C0BE35}] => (Allow) C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe FirewallRules: [{CD4A55A3-AC69-4910-B11D-11764353D2A1}] => (Allow) D:\NI_488\Shared\NI WebServer\SystemWebServer.exe FirewallRules: [{E9F3CA92-CAD3-46F6-BDA4-C9D733553497}] => (Allow) D:\NI_488\Shared\NI WebServer\SystemWebServer.exe FirewallRules: [{8A3BB187-468E-4D84-9792-02A814D0A23C}] => (Allow) D:\NI_488\Shared\nisvcloc\nisvcloc.exe FirewallRules: [{DF58609B-7294-4D7B-8E9A-A4EABA727F0B}] => (Allow) D:\NI_488\Shared\nisvcloc\nisvcloc.exe FirewallRules: [{B6867867-83A2-47A8-A0FE-72E3DB15752A}] => (Allow) C:\Program Files\AWR\Analyst\12_7688_1\mpiexec.exe FirewallRules: [{A602C14D-306A-48B1-990D-F1E196974883}] => (Allow) C:\Program Files\AWR\Analyst\12_7688_1\pmi_proxy.exe FirewallRules: [{34A84D82-A2F0-4E07-857B-C4B1B289A400}] => (Allow) C:\Program Files\AWR\Analyst\12_7688_1\grsim.exe FirewallRules: [TCP Query User{9FBCB932-C629-44E8-94D5-DB91EF7ACCDA}C:\users\ox0262\appdata\local\temp\i1474443717\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\ox0262\appdata\local\temp\i1474443717\windows\resource\jre\bin\javaw.exe FirewallRules: [UDP Query User{30D991A8-9979-4B83-837C-891820171FCE}C:\users\ox0262\appdata\local\temp\i1474443717\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\ox0262\appdata\local\temp\i1474443717\windows\resource\jre\bin\javaw.exe FirewallRules: [{2BDEDD25-E46A-4D4E-9B75-F195E936C169}] => (Allow) C:\Program Files\Keysight\EEsof_License_Tools\bin\lmgrd.exe FirewallRules: [{2C601BF3-027D-4787-908A-2673D358FC42}] => (Allow) C:\Program Files\Keysight\EEsof_License_Tools\bin\agileesofd.exe FirewallRules: [{D0B4401F-9CF8-4C88-8BE1-A0CA2AC607D5}] => (Allow) C:\Keysight\ICCAP_2016_01_HF1\bin\hpeesofemx.exe FirewallRules: [TCP Query User{79555EC2-02FD-4304-A641-EEDAB05FA5BF}C:\program files (x86)\agilent\agilent license manager\keysightlicenseactivator.exe] => (Allow) C:\program files (x86)\agilent\agilent license manager\keysightlicenseactivator.exe FirewallRules: [UDP Query User{1CF5AE4C-DEB1-4375-BDAA-2E51CDF2DB9D}C:\program files (x86)\agilent\agilent license manager\keysightlicenseactivator.exe] => (Allow) C:\program files (x86)\agilent\agilent license manager\keysightlicenseactivator.exe FirewallRules: [TCP Query User{681C4ABE-E132-42D3-AE95-E3B5F7FB4892}C:\program files\keysight\ads2016_01\momentum\12.00\win32_64\bin\momengine.exe] => (Allow) C:\program files\keysight\ads2016_01\momentum\12.00\win32_64\bin\momengine.exe FirewallRules: [UDP Query User{ED7C569A-05B4-4E75-ABCD-46CFD8E5FCEF}C:\program files\keysight\ads2016_01\momentum\12.00\win32_64\bin\momengine.exe] => (Allow) C:\program files\keysight\ads2016_01\momentum\12.00\win32_64\bin\momengine.exe FirewallRules: [{8ABA0930-CCA2-4FD8-B894-88347D5E0366}] => (Allow) C:\Windows\system32\rundll32.exe FirewallRules: [{91C9D207-1835-48FF-BFCE-0C626D1F3617}] => (Allow) C:\Users\ox0262\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{10F79BEC-EDFC-42DE-99BB-C3213303B33D}] => (Allow) C:\Users\ox0262\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{63C730D4-FCFB-4BF3-BBB1-6B01AAC09F34}] => (Allow) C:\Windows\System32\rundll32.exe FirewallRules: [{BE6241E9-917E-48BA-B52C-97371DBC6BC7}] => (Allow) C:\Windows\System32\rundll32.exe FirewallRules: [{7638746A-2CA0-4769-A491-D51D4CFA423A}] => (Allow) C:\Windows\System32\rundll32.exe FirewallRules: [{F2341137-3B5F-44EA-AC56-23D522D530D1}] => (Allow) C:\Windows\System32\rundll32.exe DomainProfile\AuthorizedApplications: [[INSTALLDIR]64b\lmgrd.exe] => [INSTALLDIR]64b\lmgrd.exe:*:Enabled:lmgrd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]64b\lmtools.exe] => [INSTALLDIR]64b\lmtools.exe:*:Enabled:lmtools.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]64b\lmutil.exe] => [INSTALLDIR]64b\lmutil.exe:*:Enabled:lmutil.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]CKOUT.exe] => [INSTALLDIR]CKOUT.exe:*:Enabled:CKOUT.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]NEOLINLD.exe] => [INSTALLDIR]NEOLINLD.exe:*:Enabled:NEOLINLD.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]alta.exe] => [INSTALLDIR]alta.exe:*:Enabled:alta.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]ambitd.exe] => [INSTALLDIR]ambitd.exe:*:Enabled:ambitd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]axislmd.exe] => [INSTALLDIR]axislmd.exe:*:Enabled:axislmd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]cadmosd.exe] => [INSTALLDIR]cadmosd.exe:*:Enabled:cadmosd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]cdslmd.exe] => [INSTALLDIR]cdslmd.exe:*:Enabled:cdslmd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]dailmd.exe] => [INSTALLDIR]dailmd.exe:*:Enabled:dailmd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]dsmtlmd.exe] => [INSTALLDIR]dsmtlmd.exe:*:Enabled:dsmtlmd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]flexid\FLEXId_Dongle_Driver_Installer.exe] => [INSTALLDIR]flexid\FLEXId_Dongle_Driver_Installer.exe:*:Enabled:FLEXId_Dongle_Driver_Installer.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]g2c_d.exe] => [INSTALLDIR]g2c_d.exe:*:Enabled:g2c_d.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]hlds.exe] => [INSTALLDIR]hlds.exe:*:Enabled:hlds.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]installs.exe] => [INSTALLDIR]installs.exe:*:Enabled:installs.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]k2techld.exe] => [INSTALLDIR]k2techld.exe:*:Enabled:k2techld.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]lmCheckExpiration.exe] => [INSTALLDIR]lmCheckExpiration.exe:*:Enabled:lmCheckExpiration.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]lmgrd.exe] => [INSTALLDIR]lmgrd.exe:*:Enabled:lmgrd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]lmtools.exe] => [INSTALLDIR]lmtools.exe:*:Enabled:lmtools.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]lmutil.exe] => [INSTALLDIR]lmutil.exe:*:Enabled:lmutil.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]perf_test.exe] => [INSTALLDIR]perf_test.exe:*:Enabled:perf_test.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]platod.exe] => [INSTALLDIR]platod.exe:*:Enabled:platod.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]qtdaemon.exe] => [INSTALLDIR]qtdaemon.exe:*:Enabled:qtdaemon.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]qtrekd.exe] => [INSTALLDIR]qtrekd.exe:*:Enabled:qtrekd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]simplexlmd.exe] => [INSTALLDIR]simplexlmd.exe:*:Enabled:simplexlmd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]spdaemon.exe] => [INSTALLDIR]spdaemon.exe:*:Enabled:spdaemon.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]speedd.exe] => [INSTALLDIR]speedd.exe:*:Enabled:speedd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]verisityd.exe] => [INSTALLDIR]verisityd.exe:*:Enabled:verisityd.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]verplex.exe] => [INSTALLDIR]verplex.exe:*:Enabled:verplex.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]LicenseClientConfiguration.exe] => [INSTALLDIR]LicenseClientConfiguration.exe:*:Enabled:LicenseClientConfiguration.exe (CadenceLicenseManager) DomainProfile\AuthorizedApplications: [[INSTALLDIR]LicenseServerConfiguration.exe] => [INSTALLDIR]LicenseServerConfiguration.exe:*:Enabled:LicenseServerConfiguration.exe (CadenceLicenseManager) ==================== Wiederherstellungspunkte ========================= 21-09-2017 10:27:38 Geplanter Prüfpunkt 28-09-2017 13:08:44 Geplanter Prüfpunkt 09-10-2017 10:51:11 Geplanter Prüfpunkt 11-10-2017 16:32:03 Windows Update 19-10-2017 08:13:13 Geplanter Prüfpunkt 23-10-2017 07:19:52 Installed Universal Adb Driver 23-10-2017 10:43:10 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (10/26/2017 07:53:21 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Windows Kits\8.0\bin\x86\makecat.exe.Manifest". Die abhängige Assemblierung "Microsoft.Windows.Build.Signing.wintrust.dll,version="0.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (10/26/2017 07:53:18 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Windows Kits\8.0\bin\x64\makecat.exe.Manifest". Die abhängige Assemblierung "Microsoft.Windows.Build.Signing.wintrust.dll,version="0.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (10/26/2017 07:51:25 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Visual Studio 12.0\VC\redist\1031\vcredist_arm.exe". Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (10/26/2017 07:41:47 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "c:\program files (x86)\oneplus usb drivers\tool_ia64.exe". Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (10/26/2017 07:26:31 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "c:\users\ox0262\appdata\local\microsoft\windows\temporary internet files\content.ie5\3i8cy1mg\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (10/26/2017 07:23:10 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (10/23/2017 03:16:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (10/23/2017 03:13:19 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (10/23/2017 02:47:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (10/23/2017 12:25:02 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\ox0262\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3I8CY1MG\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Systemfehler: ============= Error: (10/26/2017 07:21:23 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen (Computerstandard) wird der SID (S-1-5-19) für Benutzer NT-AUTORITÄT\LOKALER DIENST von Adresse LocalHost (unter Verwendung von LRPC) keine Berechtigung zum Aktivierung (Lokal) für die COM-Serveranwendung mit CLSID {BC50CF2A-E12C-4F18-90CE-714CC8600CEE} und APPID {BC50CF2A-E12C-4F18-90CE-714CC8600CEE} gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungsprogramm für Komponentendienste geändert werden. Error: (10/26/2017 07:21:19 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CST License Manager" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (10/26/2017 07:21:18 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1055) (User: NT-AUTORITÄT) Description: Fehler bei der Verarbeitung der Gruppenrichtlinie. Der Computername konnte nicht aufgelöst werden. Dies kann mindestens eine der folgenden Ursachen haben: a) Fehler bei der Namensauflösung mit dem aktuellen Domänencontroller. b) Active Directory-Replikationswartezeit (ein auf einem anderen Domänencontroller erstelltes Konto hat nicht auf dem aktuellen Domänencontroller repliziert). Error: (10/26/2017 07:21:18 AM) (Source: NETLOGON) (EventID: 5719) (User: ) Description: Der Computer konnte eine sichere Sitzung mit einem Domänencontroller in der Domäne KIT aufgrund der folgenden Ursache nicht einrichten: Es sind momentan keine Anmeldeserver zum Verarbeiten der Anmeldeanforderung verfügbar. Dies kann zu Authentifizierungsproblemen führen. Stellen Sie sicher, dass der Computer mit dem Netzwerk verbunden ist. Wenden Sie sich an den Domänenadministrator, wenn das Problem weiterhin besteht. ZUSÄTZLICHE INFORMATIONEN Wenn dieser Computer ein Domänencontroller der bestimmten Domäne ist, wird eine sichere Sitzung zum primären Domänencontrolleremulator in der bestimmten Domäne eingerichtet. Andernfalls richtet dieser Computer eine sichere Sitzung zu einem beliebigen Domänencontroller in der bestimmten Domäne ein. Error: (10/23/2017 03:53:17 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung empfangen: 20. Error: (10/23/2017 03:14:50 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen (Computerstandard) wird der SID (S-1-5-19) für Benutzer NT-AUTORITÄT\LOKALER DIENST von Adresse LocalHost (unter Verwendung von LRPC) keine Berechtigung zum Aktivierung (Lokal) für die COM-Serveranwendung mit CLSID {BC50CF2A-E12C-4F18-90CE-714CC8600CEE} und APPID {BC50CF2A-E12C-4F18-90CE-714CC8600CEE} gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungsprogramm für Komponentendienste geändert werden. Error: (10/23/2017 03:14:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CST License Manager" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (10/23/2017 03:14:45 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1055) (User: NT-AUTORITÄT) Description: Fehler bei der Verarbeitung der Gruppenrichtlinie. Der Computername konnte nicht aufgelöst werden. Dies kann mindestens eine der folgenden Ursachen haben: a) Fehler bei der Namensauflösung mit dem aktuellen Domänencontroller. b) Active Directory-Replikationswartezeit (ein auf einem anderen Domänencontroller erstelltes Konto hat nicht auf dem aktuellen Domänencontroller repliziert). Error: (10/23/2017 03:14:45 PM) (Source: NETLOGON) (EventID: 5719) (User: ) Description: Der Computer konnte eine sichere Sitzung mit einem Domänencontroller in der Domäne KIT aufgrund der folgenden Ursache nicht einrichten: Es sind momentan keine Anmeldeserver zum Verarbeiten der Anmeldeanforderung verfügbar. Dies kann zu Authentifizierungsproblemen führen. Stellen Sie sicher, dass der Computer mit dem Netzwerk verbunden ist. Wenden Sie sich an den Domänenadministrator, wenn das Problem weiterhin besteht. ZUSÄTZLICHE INFORMATIONEN Wenn dieser Computer ein Domänencontroller der bestimmten Domäne ist, wird eine sichere Sitzung zum primären Domänencontrolleremulator in der bestimmten Domäne eingerichtet. Andernfalls richtet dieser Computer eine sichere Sitzung zu einem beliebigen Domänencontroller in der bestimmten Domäne ein. Error: (10/23/2017 03:11:32 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen (Computerstandard) wird der SID (S-1-5-19) für Benutzer NT-AUTORITÄT\LOKALER DIENST von Adresse LocalHost (unter Verwendung von LRPC) keine Berechtigung zum Aktivierung (Lokal) für die COM-Serveranwendung mit CLSID {BC50CF2A-E12C-4F18-90CE-714CC8600CEE} und APPID {BC50CF2A-E12C-4F18-90CE-714CC8600CEE} gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungsprogramm für Komponentendienste geändert werden. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-4770 CPU @ 3.40GHz Prozentuale Nutzung des RAM: 18% Installierter physikalischer RAM: 16064.46 MB Verfügbarer physikalischer RAM: 13029.68 MB Summe virtueller Speicher: 32127.1 MB Verfügbarer virtueller Speicher: 28944.07 MB ==================== Laufwerke ================================ Drive c: (System) (Fixed) (Total:232.88 GB) (Free:22.21 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] Drive d: (Daten) (Fixed) (Total:931.51 GB) (Free:880.49 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 4B993C2B) Partition 1: (Active) - (Size=232.9 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 4B993C56) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
26.10.2017, 08:06 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | eatyellowmango.com, Greift meine Klicks auf Links abCode:
ATTFilter Windows 7 Enterprise McAfee VirusScan Enterprise Adobe Acrobat XI Pro Advanced Design System 2016.01 Analyst 12 (64 bit) AutoCAD Mechanical 2013 Microsoft Office Professional Plus 2010
__________________ Logfiles bitte immer in CODE-Tags posten |
26.10.2017, 12:27 | #11 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Leider ja - Sag bitte nichts! Wäre es deshalb möglich, die Outputs der Virenscanner nachträglich wieder aus dem Thread zu entfernen? |
26.10.2017, 12:38 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | eatyellowmango.com, Greift meine Klicks auf Links ab Ist dir eigentlich klar, dass für gewerbliche genutzte Rechner einer deiner sysadmins zuständig ist - und nicht das Trojaner-Board?
__________________ Logfiles bitte immer in CODE-Tags posten |
26.10.2017, 14:30 | #13 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Nunja - natürlich ist mir das bewusst. Ich genieße eine gewisse Freiheit. Deshalb bin ich für den Rechner zuständig, mit Hilfe des Trojaner Boards. Es war dem USB Treibern auch nicht anzusehen: Package vom Hersteller, zertifizierte Quelle, verschlüsselter Link usw. Ich kann behaupten, dass ich vorsichtig war. Der Treiber war trotzdem manipuliert... aber ich verstehe, was Du sagen möchtest. Bzgl. der eigentliche Frage: Wie werde ich die Adware wieder los? Alle bisherigen Scanner haben den PC nicht freiputzen können. Was FRST als Ergebnis gebracht hat, kann ich aus der Durchsicht der Protokolle nicht schließen. |
26.10.2017, 14:43 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | eatyellowmango.com, Greift meine Klicks auf Links ab Nochmal: wenn das Gerät von deinem Chef zur Verfügung gestellt wurde und die Firma sysadmins hat, dann musst du dich an sysadmin wenden.
__________________ Logfiles bitte immer in CODE-Tags posten |
26.10.2017, 14:55 | #15 |
| eatyellowmango.com, Greift meine Klicks auf Links ab Ist schon geschehen. Seiner Aussage nach besteht keine Gefahr für das interne Netz. Die IT Infrastruktur hätte mich sonst sofort getrennt und den Rechner lahmgelegt. Das geht sehr schnell (Sekunden!), wie sich bei einem Kollegen gezeigt hat. Zitat: "Versuch es selbst zu regeln. Wenn Du nicht weiter kommst, setzen wir den Rechner neu auf". Letzteres versuche ich zu vermeiden. |
Themen zu eatyellowmango.com, Greift meine Klicks auf Links ab |
adresszeile, benötige, bild, code, cpu, entfernen, eset, firefox, handy, heute, installieren, links, malwarebytes, mcafee, neuer, ratlos, seite, software, suche, tab, treiber, trojaner, trojanern, usb, öffnet |