|
Netzwerk und Hardware: Computer hängt zunehmend häufigWindows 7 Hilfe zu Motherboards, CPUs, Lüfter, Raid-Controller, Digitalkameras, Treiber usw. Bitte alle relevanten Angaben zur Hardware machen. Welche Hardware habe ich? Themen zum Trojaner Entfernen oder Viren Beseitigung bitte in den Bereinigungsforen des Trojaner-Boards posten. |
02.12.2017, 22:05 | #1 |
| Computer hängt zunehmend häufig Hallo, ich habe vor 2-3 Jahren hier im Forum schon mal Hilfe bei einem ähnlichen Problem bekommen und melde mich nun zurück. Mein PC (Lenovo Baujahr 2011, 2 GB RAM) bleibt immer wieder mal für einige Minuten hängen und macht nichts mehr. Davor und danach arbeitet er weitgehend normal, wobei ich den Eindruck habe, dass in letzter Zeit die Seiten länger brauchen, um zu laden. Auch gibt es manchmal Verzögerungen beim Hin- und Herschlaten zwischen den Tabs. Betriebssystem ist Windows 10 (upgrade von Windows 7). Als Mailprogramm Thunderbird. Der verwendete Browser (Firefox und Edge) spielte dabei keine Rolle. In einigen Fällen (aber wirklich nur gelegentlich) kommt die Meldung, das ein Skript nicht antworten würde (jedesmal ein anderes). AdwareCleaner, Malwarebytes und ESET haben kürzlich nichts gefunden. Hier ist der FRST-log: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:13-04-2016 durchgeführt von xxx (Administrator) auf xxx-PC (02-12-2017 21:34:14) Gestartet von C:\Users\xxx\Desktop\Security Geladene Profile: xxx (Verfügbare Profile: xxx & DefaultAppPool) Platform: Windows 10 Home Version 1703 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe (HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Corporation) C:\Windows\System32\SecurityHealthService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe konnte nicht auf den Prozess zugreifen -> Memory Compression (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc.) C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.271\McCHSvc.exe (AMD) C:\Windows\System32\atieclxx.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.271\SSScheduler.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11710.1001.27.0_x64__8wekyb3d8bbwe\WinStore.App.exe () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17102.13911.0_x64__8wekyb3d8bbwe\Video.UI.exe () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17085.22311.0_x64__8wekyb3d8bbwe\Music.UI.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\scalc.exe (Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe (Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.bin (Microsoft Corporation) C:\Windows\splwow64.exe (Irfan Skiljan) C:\Program Files (x86)\IrfanView\i_view32.exe (Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7936032 2009-06-26] (Realtek Semiconductor) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [pczeit] => C:\Program Files (x86)\PC-Zeit\trap.exe [32768 2001-03-21] () HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [StatusAlerts] => C:\Program Files (x86)\HP\StatusAlerts\bin\HPStatusAlerts.exe [329992 2015-06-17] (HP Development Company, L.P.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation) HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10024624 2017-11-08] (Piriform Ltd) HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\Run: [NokiaSuite.exe] => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1092448 2014-11-19] (Nokia) HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\Run: [Amazon Music] => C:\Users\xxx\AppData\Local\Amazon Music\Amazon Music.exe [23668200 2017-11-14] (Amazon Services LLC) HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\Run: [Amazon Music Helper] => C:\Users\xxx\AppData\Local\Amazon Music\Amazon Music Helper.exe [3981288 2017-11-13] (Amazon Services LLC) HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000 ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-03-12] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.271\SSScheduler.exe (McAfee, Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{da14a638-219a-41a4-ab37-fc662bd4d999}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKU\S-1-5-21-838575733-3782424441-3606765584-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-838575733-3782424441-3606765584-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-838575733-3782424441-3606765584-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-838575733-3782424441-3606765584-1001 -> OldSearch URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C010DE0D20150826&p={searchTerms} BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-04-28] (McAfee, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-10-23] (Oracle Corporation) BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-04-28] (McAfee, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-23] (Oracle Corporation) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-04-28] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-04-28] (McAfee, Inc.) Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-04-28] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-04-28] (McAfee, Inc.) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-838575733-3782424441-3606765584-1001 -> file:///C:/Users/xxx/Documents/Profi%2620Startseite/ProfiStartseite%26201.0%2620beta/4.0.1.html FireFox: ======== FF ProfilePath: C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\ltbtdxsc.default-1487780589569-1511940209601 FF Homepage: file:///C:/Users/xxx/Documents/Profi%20Startseite/ProfiStartseite%202.1.0/Firefox/Home1.html FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN) FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-23] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-23] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation) FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2014-11-19] ( ) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-04] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-838575733-3782424441-3606765584-1001: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\xxx\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-04-16] (Amazon.com, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2017-11-04] (Adobe Systems Inc.) FF Extension: Kein Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\ltbtdxsc.default-1487780589569-1511940209601\Extensions\{d04b0b40-3dab-4f0b-97a6-04ec3eddbfb0}.xpi [2017-11-29] FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2017-06-21] [ist nicht signiert] FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2017-06-21] [ist nicht signiert] FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2017-06-21] [ist nicht signiert] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-04-18] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi FF Extension: Kein Name - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi [2017-09-21] Chrome: ======= CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-06-16] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-06-16] CHR HKLM-x32\...\Chrome\Extension: [ggpcleoagckefcmekcbgdhhmcfcdofhj] - C:\Users\xxx\AppData\Local\adStartPage\unifinder.crx <nicht gefunden> ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 CDPUserSvc; C:\Windows\System32\CDPUserSvc.dll [524288 2017-03-18] (Microsoft Corporation) R2 CDPUserSvc_4e1eee9; C:\WINDOWS\system32\svchost.exe [47664 2017-03-18] (Microsoft Corporation) R2 CDPUserSvc_4e1eee9; C:\WINDOWS\SysWOW64\svchost.exe [40904 2017-03-18] (Microsoft Corporation) S3 DevicesFlowUserSvc; C:\Windows\System32\DevicesFlowBroker.dll [689152 2017-03-18] (Microsoft Corporation) S3 DevicesFlowUserSvc_4e1eee9; C:\WINDOWS\system32\svchost.exe [47664 2017-03-18] (Microsoft Corporation) S3 DevicesFlowUserSvc_4e1eee9; C:\WINDOWS\SysWOW64\svchost.exe [40904 2017-03-18] (Microsoft Corporation) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [440808 2017-03-06] (Digital Wave Ltd.) R2 DusmSvc; C:\Windows\System32\dusmsvc.dll [304640 2017-09-29] (Microsoft Corporation) S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\ElfoService.exe [1283304 2017-03-24] () S3 FrameServer; C:\Windows\system32\FrameServer.dll [600576 2017-07-28] (Microsoft Corporation) R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-08-13] (Freemake) [Datei ist nicht signiert] R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [176128 2014-06-24] (HP) [Datei ist nicht signiert] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [323952 2017-09-27] (HP Inc.) R2 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-23] (HP Inc.) S3 HvHost; C:\Windows\System32\hvhostsvc.dll [59800 2017-03-18] (Microsoft Corporation) S3 IpxlatCfgSvc; C:\Windows\System32\IpxlatCfg.dll [64000 2017-03-18] (Microsoft Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [589800 2017-04-28] (McAfee, Inc.) R3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.271\McCHSvc.exe [237272 2012-03-13] (McAfee, Inc.) S3 NaturalAuthentication; C:\Windows\System32\NaturalAuth.dll [723968 2017-03-18] (Microsoft Corporation) S3 RmSvc; C:\Windows\System32\RMapi.dll [153088 2017-11-02] (Microsoft Corporation) R2 SecurityHealthService; C:\Windows\system32\SecurityHealthService.exe [336320 2017-09-30] (Microsoft Corporation) S3 SEMgrSvc; C:\Windows\system32\SEMgrSvc.dll [1191424 2017-03-18] (Microsoft Corporation) S4 shpamsvc; C:\Windows\system32\Windows.SharedPC.AccountManager.dll [192512 2017-07-11] (Microsoft Corporation) S3 spectrum; C:\Windows\system32\spectrum.exe [891904 2017-03-18] (Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10216688 2016-11-28] (TeamViewer GmbH) R3 TimeBrokerSvc; C:\Windows\System32\TimeBrokerServer.dll [165888 2017-03-18] (Microsoft Corporation) R3 TokenBroker; C:\Windows\System32\TokenBroker.dll [1052672 2017-09-29] (Microsoft Corporation) R3 TokenBroker; C:\WINDOWS\SysWOW64\TokenBroker.dll [798720 2017-09-29] (Microsoft Corporation) S3 vmicrdv; C:\Windows\System32\icsvcext.dll [307712 2017-03-18] (Microsoft Corporation) S3 vmicvss; C:\Windows\System32\icsvcext.dll [307712 2017-03-18] (Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) S3 WFDSConMgrSvc; C:\Windows\System32\wfdsconmgrsvc.dll [555008 2017-07-11] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-07-11] (Microsoft Corporation) S3 wisvc; C:\Windows\system32\flightsettings.dll [719872 2017-11-02] (Microsoft Corporation) S3 wlpasvc; C:\Windows\System32\lpasvc.dll [1298432 2017-07-28] (Microsoft Corporation) S2 WpnUserService; C:\Windows\System32\WpnUserService.dll [72704 2017-03-18] (Microsoft Corporation) R2 WpnUserService_4e1eee9; C:\WINDOWS\system32\svchost.exe [47664 2017-03-18] (Microsoft Corporation) R2 WpnUserService_4e1eee9; C:\WINDOWS\SysWOW64\svchost.exe [40904 2017-03-18] (Microsoft Corporation) S3 xbgm; C:\Windows\System32\xbgmsvc.dll [301216 2017-03-18] (Microsoft Corporation) S3 XboxGipSvc; C:\Windows\System32\XboxGipSvc.dll [18944 2017-03-18] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AcpiDev; C:\Windows\System32\drivers\AcpiDev.sys [20480 2017-03-18] (Microsoft Corporation) S3 applockerfltr; C:\Windows\System32\drivers\applockerfltr.sys [17920 2017-03-18] (Microsoft Corporation) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-07-21] (Advanced Micro Devices) S0 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [533920 2017-03-18] (QLogic Corporation) S3 CAD; C:\Windows\System32\drivers\CAD.sys [53664 2017-03-18] (Microsoft Corporation) S3 cht4iscsi; C:\Windows\System32\drivers\cht4sx64.sys [347032 2017-03-18] (Chelsio Communications) S3 cht4vbd; C:\Windows\System32\drivers\cht4vx64.sys [2104224 2017-03-18] (Chelsio Communications) S2 CldFlt; C:\Windows\System32\drivers\cldflt.sys [12288 2017-03-18] (Microsoft Corporation) R2 clreg; C:\Windows\System32\drivers\registry.sys [14336 2017-03-18] (Microsoft Corporation) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [77440 2017-11-29] () S3 hvservice; C:\Windows\System32\drivers\hvservice.sys [74648 2017-03-18] (Microsoft Corporation) S3 iagpio; C:\Windows\System32\drivers\iagpio.sys [33280 2017-03-18] (Intel(R) Corporation) S3 iaLPSS2i_GPIO2; C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [70656 2017-03-18] (Intel Corporation) S3 iaLPSS2i_GPIO2_BXT_P; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [85504 2017-03-18] (Intel Corporation) S3 iaLPSS2i_I2C_BXT_P; C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [168448 2017-03-18] (Intel Corporation) S3 IndirectKmd; C:\Windows\System32\drivers\IndirectKmd.sys [36864 2017-03-18] (Microsoft Corporation) R0 iorate; C:\Windows\System32\drivers\iorate.sys [49568 2017-03-18] (Microsoft Corporation) S3 mausbhost; C:\Windows\System32\drivers\mausbhost.sys [405408 2017-03-18] (Microsoft Corporation) S3 mausbip; C:\Windows\System32\drivers\mausbip.sys [51104 2017-03-18] (Microsoft Corporation) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [192952 2017-11-29] (Malwarebytes) R3 MBAMFarflt; C:\Windows\system32\DRIVERS\farflt.sys [110016 2017-11-30] (Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [45504 2017-11-30] (Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [252232 2017-11-30] (Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [94144 2017-12-02] (Malwarebytes) S0 megasas2i; C:\Windows\System32\drivers\MegaSas2i.sys [64416 2017-03-18] (Avago Technologies) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.) R1 MpKsl8613914e; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EFAF297B-EFF3-4BBC-B5DC-70D69E57C936}\MpKsl8613914e.sys [58120 2017-11-29] (Microsoft Corporation) R1 MpKsla90039f0; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4F598BE2-CE38-4DE7-B55A-6D9F64ACD0FD}\MpKsla90039f0.sys [58120 2017-12-02] (Microsoft Corporation) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [122368 2017-03-18] (Microsoft Corporation) S3 nvdimmn; C:\Windows\System32\drivers\nvdimmn.sys [80896 2017-03-18] (Microsoft Corporation) S0 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [58784 2017-03-18] (Avago Technologies) S3 pmem; C:\Windows\System32\drivers\pmem.sys [101376 2017-03-18] (Microsoft Corporation) R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] () S3 pwdspio; C:\windows\system32\pwdspio.sys [12504 2013-09-30] () R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [604160 2017-03-18] (Realtek ) S0 scmbus; C:\Windows\System32\drivers\scmbus.sys [91040 2017-03-18] (Microsoft Corporation) S3 SDFRd; C:\Windows\System32\drivers\SDFRd.sys [31128 2017-03-18] () S3 SpatialGraphFilter; C:\Windows\System32\drivers\SpatialGraphFilter.sys [40352 2017-03-20] (Microsoft Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 UcmTcpciCx0101; C:\Windows\System32\Drivers\UcmTcpciCx.sys [179200 2017-03-18] (Microsoft Corporation) S3 vmgid; C:\Windows\System32\drivers\vmgid.sys [10240 2017-03-18] (Microsoft Corporation) R0 volume; C:\Windows\System32\drivers\volume.sys [16288 2017-03-18] (Microsoft Corporation) R2 wcifs; C:\Windows\system32\drivers\wcifs.sys [142752 2017-07-11] (Microsoft Corporation) S3 wcnfs; C:\Windows\system32\drivers\wcnfs.sys [72192 2017-03-18] (Microsoft Corporation) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) R2 WinI2C-DDC; C:\windows\system32\drivers\DDCDrv.sys [20832 2008-04-08] (Nicomsoft Ltd.) R2 WinI2C-DDC; C:\windows\SysWOW64\drivers\DDCDrv.sys [16200 2009-03-02] (Nicomsoft Ltd.) S3 WinNat; C:\Windows\System32\drivers\winnat.sys [217088 2017-03-18] (Microsoft Corporation) U3 idsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) NETSVC: shpamsvc -> C:\Windows\system32\Windows.SharedPC.AccountManager.dll (Microsoft Corporation) NETSVC: NaturalAuthentication -> C:\Windows\System32\NaturalAuth.dll (Microsoft Corporation) NETSVC: xbgm -> C:\Windows\System32\xbgmsvc.dll (Microsoft Corporation) NETSVC: TokenBroker -> C:\Windows\System32\TokenBroker.dll (Microsoft Corporation) NETSVC: wisvc -> C:\Windows\system32\flightsettings.dll (Microsoft Corporation) NETSVC: WpnService -> C:\Windows\system32\WpnService.dll (Microsoft Corporation) NETSVC: XboxGipSvc -> C:\Windows\System32\XboxGipSvc.dll (Microsoft Corporation) NETSVCx32: TokenBroker -> C:\Windows\SysWOW64\TokenBroker.dll (Microsoft Corporation) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-12-02 06:48 - 2017-12-02 06:49 - 39531376 _____ C:\Users\xxx\Downloads\Piano Tiles 2™_v3.0.0.754_apkpure.com.apk 2017-11-29 07:36 - 2017-12-02 20:28 - 00094144 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2017-11-29 07:36 - 2017-11-30 16:25 - 00252232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2017-11-29 07:36 - 2017-11-30 16:25 - 00110016 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2017-11-29 07:36 - 2017-11-30 16:25 - 00045504 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2017-11-29 07:36 - 2017-11-29 07:36 - 00192952 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2017-11-29 07:31 - 2017-11-29 07:35 - 00077440 _____ C:\WINDOWS\system32\Drivers\mbae64.sys 2017-11-29 07:31 - 2017-11-29 07:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-11-29 07:31 - 2017-11-29 07:31 - 00000000 ____D C:\Program Files\Malwarebytes 2017-11-29 07:30 - 2017-11-29 07:30 - 00000000 ____D C:\ProgramData\MB2Migration 2017-11-28 23:41 - 2017-11-28 23:47 - 08261584 _____ (Malwarebytes) C:\Users\xxx\Downloads\adwcleaner_7.0.4.0.exe 2017-11-23 09:52 - 2017-11-23 09:52 - 00000000 ____D C:\Program Files\HP 2017-11-19 13:25 - 2017-11-19 13:25 - 00000000 ____D C:\Users\xxx\AppData\Local\Deshaker 2017-11-19 12:57 - 2017-11-19 12:57 - 00000000 ____D C:\Users\xxx\AppData\Local\CrashRpt 2017-11-19 12:54 - 2017-11-19 12:54 - 00000000 ____D C:\Program Files\FlashIntegro 2017-11-19 12:54 - 2017-11-19 12:54 - 00000000 ____D C:\Program Files\Common Files\FlashIntegro 2017-11-19 12:54 - 2017-10-04 18:19 - 00076472 _____ (Flash-Integro LLC) C:\WINDOWS\system32\mslvddsfilter4.ax 2017-11-19 12:54 - 2011-12-07 18:32 - 00216064 _____ ( ) C:\WINDOWS\system32\Lagarith.dll 2017-11-19 12:54 - 2005-08-01 18:43 - 00245760 _____ () C:\WINDOWS\system32\lame.ax 2017-11-19 12:54 - 2004-12-10 09:03 - 00438272 _____ (On2.com) C:\WINDOWS\system32\vp6vfw.dll 2017-11-19 12:54 - 2004-09-06 15:06 - 00053248 _____ C:\WINDOWS\system32\xvid.ax 2017-11-19 12:54 - 2004-07-03 20:08 - 00139264 _____ C:\WINDOWS\system32\xvidvfw.dll 2017-11-19 12:54 - 2004-07-03 19:59 - 00524288 _____ C:\WINDOWS\system32\xvidcore.dll 2017-11-19 12:54 - 2004-02-04 20:11 - 00081920 _____ (fccHandler) C:\WINDOWS\system32\AC3ACM.acm 2017-11-19 12:54 - 2003-05-22 11:26 - 00638976 _____ (DivXNetworks, Inc.) C:\WINDOWS\system32\divx.dll 2017-11-19 12:54 - 2003-05-22 11:26 - 00221215 _____ (DivXNetworks, Inc.) C:\WINDOWS\system32\divxdec.ax 2017-11-19 12:54 - 2003-05-21 22:50 - 00261632 _____ (MainConcept) C:\WINDOWS\system32\mcdvd_32.dll 2017-11-19 12:54 - 2003-05-21 22:50 - 00082944 _____ (Voxware, Inc.) C:\WINDOWS\system32\vct3216.acm 2017-11-19 12:54 - 2003-05-21 22:50 - 00038912 _____ (NCT Company) C:\WINDOWS\system32\alf2cd.acm 2017-11-19 12:54 - 2003-05-21 22:50 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3a.dll 2017-11-19 12:54 - 2003-03-25 04:49 - 00098304 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\L3CODECX.AX 2017-11-19 12:54 - 2002-08-19 23:41 - 00413760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg4c32.dll 2017-11-19 12:54 - 2000-03-14 19:55 - 00013239 _____ (SHARP Corporation) C:\WINDOWS\system32\Scg726.acm 2017-11-19 12:52 - 2017-11-19 12:53 - 44403360 _____ (Flash-Integro LLC ) C:\Users\xxx\Downloads\video_editor_x64.exe 2017-11-18 19:01 - 2017-11-21 15:30 - 00000000 ____D C:\Users\xxx\Downloads\Telegram Desktop 2017-11-16 16:43 - 2017-11-16 16:43 - 10849904 _____ (Piriform Ltd) C:\Users\xxx\Downloads\ccsetup537.exe 2017-11-15 21:48 - 2017-11-15 21:49 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.4 2017-11-15 21:48 - 2017-11-15 21:48 - 00001132 _____ C:\Users\Public\Desktop\OpenOffice 4.1.4.lnk 2017-11-15 16:43 - 2017-11-02 06:04 - 01292360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2017-11-15 16:43 - 2017-11-02 06:03 - 00223640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2017-11-15 16:43 - 2017-11-02 05:49 - 01838848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2017-11-15 16:43 - 2017-11-02 05:45 - 00703056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2017-11-15 16:43 - 2017-11-02 05:45 - 00613136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2017-11-15 16:43 - 2017-11-02 05:45 - 00362144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2017-11-15 16:43 - 2017-11-02 05:45 - 00354360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2017-11-15 16:43 - 2017-11-02 05:45 - 00283544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2017-11-15 16:43 - 2017-11-02 05:45 - 00172952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2017-11-15 16:43 - 2017-11-02 05:45 - 00133896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2017-11-15 16:43 - 2017-11-02 05:44 - 05808640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-11-15 16:43 - 2017-11-02 05:44 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2017-11-15 16:43 - 2017-11-02 05:43 - 20372896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-11-15 16:43 - 2017-11-02 05:30 - 02953216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-11-15 16:43 - 2017-11-02 05:30 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2017-11-15 16:43 - 2017-11-02 05:30 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2017-11-15 16:43 - 2017-11-02 05:27 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2017-11-15 16:43 - 2017-11-02 05:26 - 05963776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-11-15 16:43 - 2017-11-02 05:26 - 02671616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-11-15 16:43 - 2017-11-02 05:26 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2017-11-15 16:43 - 2017-11-02 05:25 - 03377664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-11-15 16:43 - 2017-11-02 05:25 - 00370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2017-11-15 16:43 - 2017-11-02 05:25 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2017-11-15 16:43 - 2017-11-02 05:24 - 07598080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2017-11-15 16:43 - 2017-11-02 05:24 - 00506368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-11-15 16:43 - 2017-11-02 05:23 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll 2017-11-15 16:43 - 2017-11-02 05:22 - 02859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-11-15 16:43 - 2017-11-02 05:22 - 01494528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2017-11-15 16:43 - 2017-11-02 05:21 - 04417024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2017-11-15 16:43 - 2017-11-02 05:21 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-11-15 16:43 - 2017-10-15 16:09 - 02259760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2017-11-15 16:43 - 2017-10-15 16:03 - 06765728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-11-15 16:43 - 2017-10-15 16:01 - 00583160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2017-11-15 16:43 - 2017-10-15 15:49 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2017-11-15 16:43 - 2017-10-15 15:45 - 01292288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2017-11-15 16:43 - 2017-10-15 15:45 - 01248768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-11-15 16:43 - 2017-10-15 15:44 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2017-11-15 16:43 - 2017-10-15 15:44 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll 2017-11-15 16:43 - 2017-10-15 15:42 - 05225984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2017-11-15 16:43 - 2017-10-15 15:42 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-11-15 16:43 - 2017-10-15 15:41 - 04559360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2017-11-15 16:43 - 2017-10-15 15:41 - 01019904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-11-15 16:43 - 2017-10-15 15:38 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-11-15 16:42 - 2017-11-02 06:16 - 08319384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-11-15 16:42 - 2017-11-02 06:16 - 02398696 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2017-11-15 16:42 - 2017-11-02 06:16 - 02327448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-11-15 16:42 - 2017-11-02 06:15 - 01239448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2017-11-15 16:42 - 2017-11-02 06:13 - 00546712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2017-11-15 16:42 - 2017-11-02 06:13 - 00212888 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2017-11-15 16:42 - 2017-11-02 06:13 - 00095640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2017-11-15 16:42 - 2017-11-02 06:12 - 00727336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2017-11-15 16:42 - 2017-11-02 06:12 - 00654976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2017-11-15 16:42 - 2017-11-02 06:12 - 00430848 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2017-11-15 16:42 - 2017-11-02 06:12 - 00412752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2017-11-15 16:42 - 2017-11-02 06:12 - 00319384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2017-11-15 16:42 - 2017-11-02 06:12 - 00144248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2017-11-15 16:42 - 2017-11-02 06:10 - 06557520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-11-15 16:42 - 2017-11-02 06:05 - 00187800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2017-11-15 16:42 - 2017-11-02 05:44 - 23680000 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-11-15 16:42 - 2017-11-02 05:37 - 03668992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-11-15 16:42 - 2017-11-02 05:36 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2017-11-15 16:42 - 2017-11-02 05:35 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2017-11-15 16:42 - 2017-11-02 05:35 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2017-11-15 16:42 - 2017-11-02 05:34 - 12803072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-11-15 16:42 - 2017-11-02 05:34 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-11-15 16:42 - 2017-11-02 05:34 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2017-11-15 16:42 - 2017-11-02 05:34 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2017-11-15 16:42 - 2017-11-02 05:34 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2017-11-15 16:42 - 2017-11-02 05:34 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2017-11-15 16:42 - 2017-11-02 05:32 - 08213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2017-11-15 16:42 - 2017-11-02 05:31 - 20512256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-11-15 16:42 - 2017-11-02 05:30 - 13381120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2017-11-15 16:42 - 2017-11-02 05:30 - 07339008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-11-15 16:42 - 2017-11-02 05:30 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll 2017-11-15 16:42 - 2017-11-02 05:30 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2017-11-15 16:42 - 2017-11-02 05:30 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2017-11-15 16:42 - 2017-11-02 05:30 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2017-11-15 16:42 - 2017-11-02 05:29 - 19338240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-11-15 16:42 - 2017-11-02 05:29 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2017-11-15 16:42 - 2017-11-02 05:29 - 00757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2017-11-15 16:42 - 2017-11-02 05:29 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-11-15 16:42 - 2017-11-02 05:29 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-11-15 16:42 - 2017-11-02 05:28 - 23684096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-11-15 16:42 - 2017-11-02 05:28 - 00939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2017-11-15 16:42 - 2017-11-02 05:28 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2017-11-15 16:42 - 2017-11-02 05:28 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2017-11-15 16:42 - 2017-11-02 05:27 - 02078720 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2017-11-15 16:42 - 2017-11-02 05:27 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2017-11-15 16:42 - 2017-11-02 05:27 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2017-11-15 16:42 - 2017-11-02 05:27 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertPKICmdlet.dll 2017-11-15 16:42 - 2017-11-02 05:26 - 08197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-11-15 16:42 - 2017-11-02 05:26 - 01937408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll 2017-11-15 16:42 - 2017-11-02 05:26 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2017-11-15 16:42 - 2017-11-02 05:26 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll 2017-11-15 16:42 - 2017-11-02 05:25 - 12227072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2017-11-15 16:42 - 2017-11-02 05:25 - 11888128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-11-15 16:42 - 2017-11-02 05:25 - 04727808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-11-15 16:42 - 2017-11-02 05:25 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2017-11-15 16:42 - 2017-11-02 05:24 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2017-11-15 16:42 - 2017-11-02 05:24 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll 2017-11-15 16:42 - 2017-11-02 05:24 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-11-15 16:42 - 2017-11-02 05:23 - 02516480 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2017-11-15 16:42 - 2017-11-02 05:23 - 00680960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2017-11-15 16:42 - 2017-11-02 05:23 - 00664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-11-15 16:42 - 2017-11-02 05:23 - 00476160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll 2017-11-15 16:42 - 2017-11-02 05:22 - 06254080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-11-15 16:42 - 2017-11-02 05:22 - 02009600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2017-11-15 16:42 - 2017-11-02 05:22 - 01884160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll 2017-11-15 16:42 - 2017-11-02 05:21 - 03653120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-11-15 16:42 - 2017-11-02 05:21 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2017-11-15 16:42 - 2017-10-25 08:40 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2017-11-15 16:42 - 2017-10-15 15:59 - 00923040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2017-11-15 16:42 - 2017-10-15 15:55 - 07910960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-11-15 16:42 - 2017-10-15 15:53 - 02969880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll 2017-11-15 16:42 - 2017-10-15 15:53 - 00387928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2017-11-15 16:42 - 2017-10-15 15:49 - 00094616 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-11-15 16:42 - 2017-10-15 15:14 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrPS.dll 2017-11-15 16:42 - 2017-10-15 15:13 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2017-11-15 16:42 - 2017-10-15 15:10 - 01303040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2017-11-15 16:42 - 2017-10-15 15:05 - 04396032 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-11-15 16:42 - 2017-10-15 15:04 - 05557760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2017-11-15 16:42 - 2017-10-15 15:02 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll 2017-11-15 16:42 - 2017-10-15 15:00 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2017-11-15 16:41 - 2017-11-02 06:21 - 01578904 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-11-15 16:41 - 2017-11-02 06:21 - 00678808 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-11-15 16:41 - 2017-11-02 06:21 - 00612248 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-11-15 16:41 - 2017-11-02 06:21 - 00379288 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-11-15 16:41 - 2017-11-02 06:21 - 00190360 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-11-15 16:41 - 2017-11-02 06:21 - 00136088 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2017-11-15 16:41 - 2017-11-02 06:20 - 02032536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2017-11-15 16:41 - 2017-11-02 06:20 - 01144728 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-11-15 16:41 - 2017-11-02 06:20 - 01015704 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-11-15 16:41 - 2017-11-02 06:20 - 00965016 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2017-11-15 16:41 - 2017-11-02 06:20 - 00821656 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2017-11-15 16:41 - 2017-11-02 06:20 - 00613784 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-11-15 16:41 - 2017-11-02 06:20 - 00543640 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2017-11-15 16:41 - 2017-11-02 06:20 - 00484248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2017-11-15 16:41 - 2017-11-02 06:20 - 00469568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2017-11-15 16:41 - 2017-11-02 06:20 - 00259992 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2017-11-15 16:41 - 2017-11-02 06:20 - 00034712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2017-11-15 16:41 - 2017-11-02 06:15 - 00503704 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2017-11-15 16:41 - 2017-11-02 06:14 - 00667040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2017-11-15 16:41 - 2017-11-02 06:14 - 00067992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2017-11-15 16:41 - 2017-11-02 06:13 - 05477088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2017-11-15 16:41 - 2017-11-02 06:13 - 02443672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-11-15 16:41 - 2017-11-02 06:13 - 01345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2017-11-15 16:41 - 2017-11-02 06:12 - 00714648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2017-11-15 16:41 - 2017-11-02 06:12 - 00643192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2017-11-15 16:41 - 2017-11-02 06:12 - 00038808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Diskdump.sys 2017-11-15 16:41 - 2017-11-02 06:12 - 00026472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2017-11-15 16:41 - 2017-11-02 06:11 - 21353200 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-11-15 16:41 - 2017-11-02 06:05 - 00871408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2017-11-15 16:41 - 2017-11-02 05:37 - 01278976 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2017-11-15 16:41 - 2017-11-02 05:37 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2017-11-15 16:41 - 2017-11-02 05:37 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2017-11-15 16:41 - 2017-11-02 05:37 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2017-11-15 16:41 - 2017-11-02 05:36 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2017-11-15 16:41 - 2017-11-02 05:35 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2017-11-15 16:41 - 2017-11-02 05:35 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dumpstorport.sys 2017-11-15 16:41 - 2017-11-02 05:35 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2017-11-15 16:41 - 2017-11-02 05:34 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll 2017-11-15 16:41 - 2017-11-02 05:34 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageLiveTileTask.exe 2017-11-15 16:41 - 2017-11-02 05:34 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2017-11-15 16:41 - 2017-11-02 05:33 - 00529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2017-11-15 16:41 - 2017-11-02 05:33 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageHandlers.dll 2017-11-15 16:41 - 2017-11-02 05:33 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll 2017-11-15 16:41 - 2017-11-02 05:33 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-11-15 16:41 - 2017-11-02 05:33 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertPKICmdlet.dll 2017-11-15 16:41 - 2017-11-02 05:32 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2017-11-15 16:41 - 2017-11-02 05:32 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll 2017-11-15 16:41 - 2017-11-02 05:31 - 00434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2017-11-15 16:41 - 2017-11-02 05:31 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2017-11-15 16:41 - 2017-11-02 05:31 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2017-11-15 16:41 - 2017-11-02 05:30 - 00635392 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2017-11-15 16:41 - 2017-11-02 05:30 - 00601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll 2017-11-15 16:41 - 2017-11-02 05:30 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe 2017-11-15 16:41 - 2017-11-02 05:29 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-11-15 16:41 - 2017-11-02 05:28 - 01468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-11-15 16:41 - 2017-11-02 05:28 - 00772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll 2017-11-15 16:41 - 2017-11-02 05:27 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll 2017-11-15 16:41 - 2017-11-02 05:27 - 00537600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2017-11-15 16:41 - 2017-11-02 05:26 - 04445696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2017-11-15 16:41 - 2017-11-02 05:26 - 03060224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2017-11-15 16:41 - 2017-11-02 05:26 - 02809344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-11-15 16:41 - 2017-11-02 05:26 - 00986624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-11-15 16:41 - 2017-11-02 05:25 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-11-15 16:41 - 2017-11-02 05:25 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-11-15 16:41 - 2017-11-02 05:25 - 01886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-11-15 16:41 - 2017-11-02 05:25 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2017-11-15 16:41 - 2017-11-02 05:25 - 00972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2017-11-15 16:41 - 2017-11-02 05:25 - 00877568 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2017-11-15 16:41 - 2017-11-02 05:25 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-11-15 16:41 - 2017-11-02 05:24 - 04707840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2017-11-15 16:41 - 2017-11-02 05:23 - 02449408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-11-15 16:41 - 2017-11-02 05:23 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-11-15 16:41 - 2017-11-02 05:19 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys 2017-11-15 16:41 - 2017-10-15 15:57 - 00712600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2017-11-15 16:41 - 2017-10-15 15:57 - 00409496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2017-11-15 16:41 - 2017-10-15 15:56 - 00872464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2017-11-15 16:41 - 2017-10-15 15:51 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2017-11-15 16:41 - 2017-10-15 15:15 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2017-11-15 16:41 - 2017-10-15 15:09 - 01878016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-11-15 16:41 - 2017-10-15 15:09 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-11-15 16:41 - 2017-10-15 15:08 - 01260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2017-11-15 16:41 - 2017-10-15 15:08 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll 2017-11-15 16:41 - 2017-10-15 15:07 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2017-11-15 16:41 - 2017-10-15 15:05 - 01293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-11-14 07:15 - 2017-11-14 07:15 - 00001216 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Music.lnk 2017-11-11 20:58 - 2017-11-11 20:58 - 00000000 ____D C:\Users\xxx\AppData\Local\Abelssoft 2017-11-11 20:57 - 2017-11-11 22:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiRansomware 2017-11-11 20:57 - 2017-11-11 22:55 - 00000000 ____D C:\Program Files (x86)\AntiRansomware 2017-11-11 20:57 - 2017-11-11 20:57 - 00000000 ____D C:\ProgramData\Abelssoft 2017-11-05 12:23 - 2017-12-01 07:51 - 00000000 ____D C:\Users\xxx\Documents\Profi Startseite ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-12-02 21:34 - 2015-09-16 07:06 - 00000000 ____D C:\FRST 2017-12-02 21:34 - 2015-03-22 09:03 - 00000000 ____D C:\Users\xxx\Desktop\Security 2017-12-02 21:13 - 2016-11-18 07:18 - 00000000 ____D C:\Users\xxx\AppData\LocalLow\Mozilla 2017-12-02 21:00 - 2011-02-19 19:22 - 00000000 ____D C:\Users\xxx\Documents\Marcus DaCD 2017-12-02 19:26 - 2017-07-30 06:29 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-12-02 19:05 - 2017-07-30 06:58 - 00004172 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{0F8B6F48-4F25-4677-A62C-9170F0EEB9A1} 2017-12-02 06:46 - 2015-11-07 17:43 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-12-02 06:38 - 2017-03-18 22:03 - 00000000 ___HD C:\Program Files\WindowsApps 2017-12-02 06:38 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-12-01 16:14 - 2017-06-21 07:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-12-01 16:14 - 2014-12-11 17:49 - 00001159 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2017-12-01 16:14 - 2012-04-25 21:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-12-01 09:24 - 2011-02-19 19:24 - 00000000 ____D C:\Users\xxx\Documents\Thea 2017-12-01 08:49 - 2015-12-17 22:10 - 00000000 ____D C:\Users\xxx\AppData\Roaming\MuseScore 2017-11-30 16:53 - 2013-09-09 10:00 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-11-30 16:41 - 2017-10-15 18:53 - 127017032 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2017-11-30 16:39 - 2011-02-22 06:51 - 127017032 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-11-30 16:24 - 2017-07-30 06:58 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-11-30 16:24 - 2017-05-11 21:58 - 00000374 _____ C:\WINDOWS\Tasks\HPCeeScheduleForxxx.job 2017-11-30 10:51 - 2017-03-18 12:40 - 01048576 _____ C:\WINDOWS\system32\config\BBI 2017-11-30 09:24 - 2017-07-30 06:58 - 00003282 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForxxx 2017-11-29 10:35 - 2017-03-18 21:51 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-11-29 10:16 - 2015-03-20 07:32 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2017-11-29 08:23 - 2017-06-15 14:33 - 00000000 ____D C:\Users\xxx\Desktop\Alte Firefox-Daten 2017-11-29 07:31 - 2016-04-14 19:31 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2017-11-29 07:31 - 2015-03-20 07:33 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-11-28 23:47 - 2015-09-01 20:35 - 00000000 ____D C:\AdwCleaner 2017-11-28 13:09 - 2016-11-25 16:16 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Telegram Desktop 2017-11-23 09:52 - 2016-08-10 14:08 - 00000000 ____D C:\ProgramData\HP 2017-11-21 15:32 - 2011-02-19 19:01 - 00545440 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-11-19 12:57 - 2015-08-20 09:11 - 00000000 ____D C:\Users\xxx\AppData\Roaming\FlashIntegro 2017-11-19 12:57 - 2014-12-02 08:49 - 00000000 ____D C:\Users\xxx\Desktop\Video + Media 2017-11-18 14:39 - 2014-09-25 09:19 - 00000000 ___RD C:\Users\xxx\Google Drive 2017-11-18 09:14 - 2017-07-30 06:34 - 02485786 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-11-18 09:14 - 2017-03-20 05:35 - 01100366 _____ C:\WINDOWS\system32\perfh007.dat 2017-11-18 09:14 - 2017-03-20 05:35 - 00258526 _____ C:\WINDOWS\system32\perfc007.dat 2017-11-18 09:07 - 2017-07-30 06:29 - 00294472 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-11-17 21:21 - 2015-04-21 20:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2017-11-17 12:19 - 2011-02-19 17:30 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Mozilla 2017-11-16 18:23 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\rescache 2017-11-16 16:49 - 2011-02-26 08:10 - 00000000 ____D C:\Users\xxx\AppData\Local\Google 2017-11-16 16:49 - 2011-02-26 08:10 - 00000000 ____D C:\Program Files (x86)\Google 2017-11-16 16:46 - 2017-10-28 06:58 - 00003938 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2017-11-16 16:46 - 2015-03-27 21:57 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2017-11-16 16:26 - 2017-07-30 06:58 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2017-11-15 21:49 - 2015-08-26 19:46 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4 2017-11-15 18:06 - 2017-03-18 22:01 - 00000000 ____D C:\WINDOWS\INF 2017-11-15 18:03 - 2014-07-27 13:42 - 00000000 ____D C:\Users\xxx\AppData\Local\Amazon Music 2017-11-15 18:01 - 2017-07-29 20:09 - 00000000 ___DC C:\WINDOWS\Panther 2017-11-15 18:01 - 2016-04-28 04:39 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-11-15 17:56 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\system32\appraiser 2017-11-15 17:56 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\ShellExperiences 2017-11-15 17:56 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\Provisioning 2017-11-15 17:56 - 2017-03-18 22:03 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-11-15 17:56 - 2017-03-18 22:03 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-11-14 23:16 - 2017-07-30 06:58 - 00003628 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-11-14 23:16 - 2017-07-30 06:58 - 00003504 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-11-11 20:58 - 2017-07-30 06:33 - 00000000 ____D C:\ProgramData\Package Cache 2017-11-11 17:09 - 2017-07-30 06:35 - 00000000 ____D C:\Users\xxx 2017-11-07 22:35 - 2017-07-30 09:39 - 00003378 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-838575733-3782424441-3606765584-1001 2017-11-07 22:35 - 2016-04-28 06:10 - 00002437 _____ C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-11-07 22:35 - 2016-04-28 06:10 - 00000000 ___RD C:\Users\xxx\OneDrive 2017-11-05 02:40 - 2017-03-18 22:06 - 00835568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-11-05 02:40 - 2017-03-18 22:06 - 00177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-03-24 07:16 - 2012-03-24 07:18 - 49924670 _____ () C:\Program Files\skat_win.zip 2016-07-31 06:25 - 2016-07-31 06:25 - 7065600 _____ () C:\Program Files (x86)\GUTEA3.tmp 2014-11-13 09:32 - 2014-11-13 09:32 - 5082084 _____ (The Public) C:\Users\xxx\AppData\Roaming\Avisynth.exe 2014-11-13 09:32 - 2014-11-13 09:32 - 5243208 _____ ( ) C:\Users\xxx\AppData\Roaming\AvsP.exe 2014-11-13 09:32 - 2014-11-13 09:32 - 1357348 _____ () C:\Users\xxx\AppData\Roaming\MatroskaSplitter.exe 2014-11-13 09:32 - 2014-11-13 09:32 - 7760687 _____ (Boraxsoft) C:\Users\xxx\AppData\Roaming\SetupGFD.exe 2012-10-07 21:53 - 2014-04-17 20:14 - 0001181 _____ () C:\Users\xxx\AppData\Roaming\trace_FilterInstaller.1.txt 2012-10-07 21:53 - 2014-04-17 20:10 - 0000919 _____ () C:\Users\xxx\AppData\Roaming\trace_FilterInstaller.2.txt 2012-10-07 21:53 - 2012-10-07 21:53 - 0001181 _____ () C:\Users\xxx\AppData\Roaming\trace_FilterInstaller.3.txt 2012-10-07 21:53 - 2014-04-17 20:21 - 0000919 _____ () C:\Users\xxx\AppData\Roaming\trace_FilterInstaller.txt 2012-10-07 21:53 - 2014-04-17 20:21 - 0000000 _____ () C:\Users\xxx\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2015-03-12 21:33 - 2015-03-12 21:33 - 0119839 _____ () C:\Users\xxx\AppData\Local\242322F9_stp.CIS 2015-03-12 21:33 - 2015-03-12 21:33 - 0000306 _____ () C:\Users\xxx\AppData\Local\242322F9_stp.CIS.part 2015-03-12 21:34 - 2015-03-12 21:34 - 0194409 _____ () C:\Users\xxx\AppData\Local\24FA7854_stp.CIS 2015-03-12 21:34 - 2015-03-12 21:34 - 0000246 _____ () C:\Users\xxx\AppData\Local\24FA7854_stp.CIS.part 2015-03-12 21:33 - 2015-03-12 21:33 - 0385602 _____ () C:\Users\xxx\AppData\Local\5D515C96_stp.CIS 2015-03-12 21:33 - 2015-03-12 21:33 - 0000220 _____ () C:\Users\xxx\AppData\Local\5D515C96_stp.CIS.part 2012-06-12 12:47 - 2017-10-03 18:02 - 0028672 _____ () C:\Users\xxx\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-02-28 10:03 - 2015-04-03 16:50 - 0007632 _____ () C:\Users\xxx\AppData\Local\Resmon.ResmonCfg 2016-11-10 07:34 - 2016-11-10 07:34 - 0000000 _____ () C:\Users\xxx\AppData\Local\{FAC94C4C-D8BC-48A6-BAE2-10AACF16339E} 2017-05-18 19:48 - 2017-05-18 19:48 - 0005085 _____ () C:\ProgramData\cgbpfizu.hkv 2017-05-18 19:48 - 2017-05-18 19:48 - 0000016 _____ () C:\ProgramData\mntemp 2014-04-17 14:24 - 2014-04-17 14:24 - 0001534 _____ () C:\ProgramData\ss.ini Einige Dateien in TEMP: ==================== C:\Users\xxx\AppData\Local\Temp\k3ax_cdw.dll C:\Users\xxx\AppData\Local\Temp\TAInstaller.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-11-26 09:25 ==================== Ende von FRST.txt ============================ |
02.12.2017, 22:06 | #2 |
| Computer hängt zunehmend häufig Und hier Addition.txt:
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:13-04-2016 durchgeführt von xxx (2017-12-02 21:44:01) Gestartet von C:\Users\xxx\Desktop\Security Windows 10 Home Version 1703 (X64) (2017-07-30 06:07:58) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-838575733-3782424441-3606765584-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-838575733-3782424441-3606765584-503 - Limited - Disabled) Gast (S-1-5-21-838575733-3782424441-3606765584-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-838575733-3782424441-3606765584-1003 - Limited - Enabled) xxx (S-1-5-21-838575733-3782424441-3606765584-1001 - Administrator - Enabled) => C:\Users\xxx ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) "Durchstarten mit Ponky - Mathe 3+4" (HKLM-x32\...\"Durchstarten mit Ponky - Mathe 3+4") (Version: 2.00 - Engel Edition) 7-PDF Split & Merge Version 2.7.0 (Build 176) (HKLM-x32\...\7-PDF Split & Merge_is1) (Version: 7-PDF Split & Merge - Version 2.7.0 (Build 176) - 7-PDF, Germany - Thorsten Hodes) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated) Adobe Digital Editions 2.0 (HKLM-x32\...\Adobe Digital Editions 2.0) (Version: 2.0 - Adobe Systems Incorporated) Adobe Digital Editions 4.5 (HKLM-x32\...\Adobe Digital Editions 4.5) (Version: 4.5.1 - Adobe Systems Incorporated) Amazon MP3-Downloader 1.0.18 (HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC) Amazon Music (HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\Amazon Amazon Music) (Version: 6.1.3.1192 - Amazon Services LLC) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AntiRansomware 2018 (HKLM-x32\...\AbAppId-82_is1) (Version: 18.1 - Abelssoft) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team) AVI Splitter (HKLM-x32\...\AVI Splitter_is1) (Version: - ) calibre 64bit (HKLM\...\{B16F2206-747F-4758-ADA9-76148D2C0C35}) (Version: 3.7.0 - Kovid Goyal) CCleaner (HKLM\...\CCleaner) (Version: 5.37 - Piriform) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6623 - CDBurnerXP) Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) CrystalDiskInfo 6.3.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.3.1 - Crystal Dew World) Die große Kartenspiele-Box (HKLM-x32\...\{7AD24EE1-1982-4B80-BA00-EC260C88AB5A}_is1) (Version: Die große Kartenspiele-Box - rondomedia Marketing & Vertriebs GmbH) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 18.4 - Thüringer Landesfinanzdirektion) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Eumex RNDIS64 Driver V1.03 (HKLM\...\{293C4FDD-FB80-48F8-8B40-F085392FDAA1}) (Version: 1.03.0000 - Deutsche Telekom) Exact Audio Copy 1.1 (HKLM-x32\...\Exact Audio Copy) (Version: 1.1 - Andre Wiethoff) EXIF Date Changer v3.5.5 (HKLM-x32\...\{26CA1B07-BC53-4196-B9C2-A11C6F6F3E08}_is1) (Version: 3.5.5 - Rellik Software) Free Video Editor version 1.4.11.301 (HKLM-x32\...\Free Video Editor_is1) (Version: 1.4.11.301 - DVDVideoSoft Ltd.) Free YouTube Download version 3.2.60.713 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.60.713 - DVDVideoSoft Ltd.) Freemake Video Converter Version 4.1.4 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.4 - Ellora Assets Corporation) FreewareSchach (HKLM-x32\...\FreewareSchach) (Version: - ) FUJIFILM MyFinePix Studio 3.2 (HKLM-x32\...\MyFinePix Studio_is1) (Version: - ) Genesys USB Mass Storage Device (HKLM-x32\...\{C987EFC8-2681-4744-86F4-BC085041957F}) (Version: 1.0.0.0 - Genesys Logic) Google Drive (HKLM-x32\...\{9BC95947-92FD-438B-A168-C01F9A5B7292}) (Version: 2.34.7529.6838 - Google, Inc.) Google Earth Pro (HKLM-x32\...\{ECF2E224-42F5-4E50-B58E-94CA70E85697}) (Version: 7.3.0.3832 - Google) Google Update Helper (x32 Version: 1.3.33.7 - Google Inc.) Hidden HiJackThis (HKLM-x32\...\{45A66726-69BC-466B-A7A4-12FCBA4883D7}) (Version: 1.0.0 - Trend Micro) HP Color LaserJet Pro MFP M274 (HKLM-x32\...\{3fa5d990-3d84-4a9b-9265-bd8131355383}) (Version: 14.0.15182.125 - Hewlett-Packard) HP Dropbox Plugin (HKLM-x32\...\{C7455839-4126-4E3B-9DDE-817267B64527}) (Version: 36.0.35.54984 - Hewlett-Packard Co.) HP Google Drive Plugin (HKLM-x32\...\{D648BAB3-E21A-4EEE-9378-DF249984AFAD}) (Version: 36.0.35.54984 - Hewlett-Packard Co.) HP Support Assistant (HKLM-x32\...\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}) (Version: 8.5.37.19 - HP Inc.) HP Support Solutions Framework (HKLM-x32\...\{D549B5E2-DBE8-4190-ABA5-71106264398C}) (Version: 12.8.37.11 - HP Inc.) HP Touchpoint Analytics Client (HKLM\...\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}) (Version: 4.0.2.1439 - HP Inc.) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPCLJProMFPM274 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden HPDXP (x32 Version: 3.0.26.8 - HP) Hidden HPLJUTCore (x32 Version: 014.000.0001 - HP) Hidden HPLJUTM274_n (x32 Version: 017.000.0001 - HP) Hidden hppLaserJetService (x32 Version: 009.033.00926 - Hewlett-Packard) Hidden hppM274LaserJetService (x32 Version: 001.034.00689 - Hewlett-Packard) Hidden hpStatusAlerts (x32 Version: 170.040.00259 - HP Development Company, L.P.) Hidden hpStatusAlertsM274 (x32 Version: 170.046.0140 - HP Development Company, L.P.) Hidden HyperCam 2 (HKLM-x32\...\HyperCam 2) (Version: 2.28.01 - Hyperionics Technology LLC) I.R.I.S. OCR (HKLM-x32\...\{CF10F6BC-C710-4F6F-B7E1-4057699A59AA}) (Version: 12.3.6.10 - HP) IrfanView 4.44 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.44 - Irfan Skiljan) Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden Lenovo Healthcare Software (HKLM-x32\...\{9610EC3A-C7A0-4C31-9F3B-F9020C582B47}) (Version: 3.0.0.090928 - Lenovo) Lenovo Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3321a3 - CyberLink Corp.) Lenovo Power2Go (x32 Version: 6.0.3321a3 - CyberLink Corp.) Hidden Lenovo Rescue System (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 3.0.1029 - CyberLink Corp.) Lenovo Rescue System (Version: 3.0.1029 - CyberLink Corp.) Hidden Lenovo Software Instruction (HKLM-x32\...\{A79C1D34-2831-4A5D-91C7-279EF892B5CF}) (Version: 1.0.0.090907 - Lenovo) Lenovo Treiber- und Anwendungsinstallation (HKLM-x32\...\{45970CD1-D599-47D4-938F-3E9800D54ED1}) (Version: 5.1.0.1126 - Lenovo) LJDXPHelperUI (x32 Version: 140.069.007 - HP) Hidden LMMS 1.1.3 (HKLM-x32\...\LMMS) (Version: 1.1.3 - LMMS Developers) LVT (HKLM-x32\...\{D3063097-EC84-4D21-84A4-9D852E974355}) (Version: 4.1.1.0930 - Lenovo) LXH-JME2207FN Hotkey Driver (HKLM-x32\...\{42B21298-C850-4272-AFD9-636CBC005421}) (Version: 5.1.0804 - Lenovo) Malwarebytes Version 3.2.2.2029 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.2.2.2029 - Malwarebytes) McAfee Security Scan Plus (HKLM-x32\...\McAfee Security Scan) (Version: 3.0.271.4 - McAfee, Inc.) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.216 - McAfee, Inc.) Microsoft Office 97, Professional Edition (HKLM-x32\...\Office8.0) (Version: - ) Microsoft Office Word Viewer 2003 (HKLM-x32\...\{90850407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{e6e75766-da0f-4ba2-9788-6ea593ce702d}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) MiniTool Partition Wizard Free 9.1 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.) Mozilla Firefox 57.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 57.0.1 (x86 de)) (Version: 57.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 57.0.1.6541 - Mozilla) Mozilla Thunderbird 52.4.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 52.4.0 (x86 de)) (Version: 52.4.0 - Mozilla) Mp3tag v2.78 (HKLM-x32\...\Mp3tag) (Version: v2.78 - Florian Heidenreich) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MuseScore 2 (HKLM-x32\...\{DC8A2B29-D9A7-4D67-A049-BC0A659A2B57}) (Version: 2.1.0 - Werner Schweer and Others) Nokia Connectivity Cable Driver (HKLM-x32\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia) Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.8.54.0 - Nokia) Nokia Suite (x32 Version: 3.8.54.0 - Nokia) Hidden oCam version 13.0.0.0 (HKLM-x32\...\oCam_is1) (Version: 13.0.0.0 - hxxp://ohsoft.net/) OpenOffice 4.1.4 (HKLM-x32\...\{5E9128B1-0AB8-40F5-9F71-69089C490855}) (Version: 4.14.9788 - Apache Software Foundation) PaperPort Image Printer 64-bit (HKLM\...\{ABA4FAF1-6389-45F9-92CE-3914A4E5C471}) (Version: 1.00.0000 - Nuance Communications, Inc.) PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PC-Zeit 2.01 (HKLM-x32\...\PC-Zeit) (Version: 2.01 - BAxBEx Software) QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) Realtek 8136 8168 8169 Ethernet Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0006 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5882 - Realtek Semiconductor Corp.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) ScanSoft PaperPort 11 (HKLM-x32\...\{02570AE0-BEE0-4A6C-BE3F-D806E9F2EA17}) (Version: 11.2.0000 - Nuance Communications, Inc.) Teachmaster 4.3 (nur Entfernen) (HKLM-x32\...\Teachmaster 4.3) (Version: - ) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.71503 - TeamViewer) Telegram Desktop version 1.1.23 (HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 1.1.23 - Telegram Messenger LLP) Ultimate EPubsoft DRM Removal 8.4.6 (HKLM-x32\...\{49617AB8-5A31-44A7-95A6-BE6CE251A6F1}) (Version: 8.4.6 - EPUBSOFT) Video Capture for VC (HKLM-x32\...\Video Capture for VC) (Version: 1.0.0.0 - ) Video Capture for VC (x32 Version: 1.0.0.0 - Roland Corporation) Hidden VideoPad Video-Editor (HKLM-x32\...\VideoPad) (Version: 4.49 - NCH Software) VLC media player (HKLM\...\VLC media player) (Version: 2.2.0 - VideoLAN) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vokabeltrainer 1 (HKLM-x32\...\Vokabeltrainer 1) (Version: - ) VSDC Free Video Editor Version 5.5.0.601 (HKLM-x32\...\VSDC Free Video Editor_is1) (Version: 5.5.0.601 - Flash-Integro LLC) VSDC Free Video Editor Version 5.8.1.790 (HKLM\...\VSDC Free Video Editor_is1) (Version: 5.8.1.790 - Flash-Integro LLC) Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation) Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation) Windows Live Sync (HKLM-x32\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation) Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) Windows-Treiberpaket - T-Home Net (04/13/2012 6.0.6000.16384) (HKLM\...\C7DD251F4B6025D69B6ACC9FD647E009517A6069) (Version: 04/13/2012 6.0.6000.16384 - T-Home) Winmail Opener 1.4 (HKLM-x32\...\Winmail Opener) (Version: 1.4 - Eolsoft) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-838575733-3782424441-3606765584-1001_Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\localserver32 -> C:\Users\xxx\AppData\Local\Microsoft\OneDrive\17.3.7076.1026\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-838575733-3782424441-3606765584-1001_Classes\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\localserver32 -> C:\Users\xxx\AppData\Local\Microsoft\OneDrive\17.3.7076.1026\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-838575733-3782424441-3606765584-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\xxx\AppData\Local\Microsoft\OneDrive\17.3.7076.1026\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-838575733-3782424441-3606765584-1001_Classes\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\localserver32 -> C:\Users\xxx\AppData\Local\Microsoft\OneDrive\17.3.7076.1026\FileCoAuth.exe (Microsoft Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {03236C56-19A4-4CA6-B76C-7987E95C935A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {0554F263-AE1F-4A38-9456-993516B21680} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleCommand Task: {05E2082C-D22E-4C31-BFAB-672A358AD81A} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefreshTask Task: {086EA53E-BA72-4ADF-A764-28EAF69F8684} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition => C:\Windows\system32\ClipRenew.exe [2017-03-20] (Microsoft Corporation) Task: {08A7B13E-CF7A-4187-AD71-3A01D2F5B333} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {0C518199-F01B-42CF-9CB7-16710B002812} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask => C:\Windows\system32\MDMAgent.exe [2017-03-18] (Microsoft Corporation) Task: {12E75930-C76E-404D-840C-255E61860D48} - System32\Tasks\{808B82F6-E6DD-43C7-92FD-292E2A1A394B} => pcalua.exe -a "C:\Program Files (x86)\VoipCheapCom\unins000.exe" Task: {14D171A5-B436-44B1-88B3-A8C757209BB6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {1845ECCB-4338-4A6A-9593-C7F2D4B583DC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {192E7AF0-5BC4-4C69-8EAB-99947E4BDA3B} - System32\Tasks\{4D99A1DF-197C-4BEF-9B35-FCD55FF0BC37} => pcalua.exe -a D:\setup.exe -d D:\ Task: {1963D8EA-AFF7-445E-8DC5-5B696519CF63} - System32\Tasks\{938109D7-C7A0-4064-9226-DC9A5C45A08E} => pcalua.exe -a "C:\Program Files (x86)\OpenOffice 4\program\scalc.exe" -c -o "C:\Users\xxx\Documents\Marcus DaCD\ZZ Häufiges\kg.ods" Task: {1D6A22D9-6657-4E1B-A8C3-E03C7B62B6B5} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {2255CBFF-9B1F-48A8-A8EC-55D62CB73B57} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {2865AD18-CD5A-4B09-A5AC-5B6CA7B5267F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {32FAA271-1432-4D6E-BA25-C186B50BCA17} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {366B9987-4C1D-43B8-90D7-2E409D101F79} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {3EDAF9A0-CC33-4FD4-B705-9B2F01B8F349} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession Task: {42D630E8-9310-4113-9E7C-BDC74AB35FB6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {434DFEB0-9EB6-4FBE-87C5-D9AEAC7B47D7} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange Task: {47BBE619-792A-4ADF-809E-9CCBA5758F7D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated) Task: {4AC7A8C2-F0D1-4AE5-A1A6-C57FCAAB90E1} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition => C:\Windows\system32\ClipRenew.exe [2017-03-20] (Microsoft Corporation) Task: {53AA8AC9-E5A0-4178-80A7-EC6DDF124373} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-11-08] (Piriform Ltd) Task: {5C326114-085E-444C-9B7A-D3E2E59C549E} - System32\Tasks\Microsoft\Windows\Device Information\Device => C:\Windows\system32\devicecensus.exe [2017-11-02] (Microsoft Corporation) Task: {5C43827A-D8C9-495B-AC43-3E0C135AA98D} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange Task: {5DCB5A99-BE73-43E3-B2F6-6AF0299832D8} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {60494D21-C02B-4560-A61F-E218FB9D48A6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-10-11] (HP Inc.) Task: {60ECA01D-DA53-442F-B332-6A3FC93FF4C4} - System32\Tasks\Microsoft\Windows\EDP\EDP Auth Task Task: {64D227A1-CAF2-4F62-893C-CB71B7F5593F} - System32\Tasks\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task Task: {6772AC65-7600-4DF2-9BD5-F17292FAAE4B} - System32\Tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask => C:\Windows\system32\speech_onecore\common\SpeechModelDownload.exe [2017-03-18] (Microsoft Corporation) Task: {68861600-8DE1-4D43-8F44-847C6947AA70} - System32\Tasks\Microsoft\Windows\EDP\EDP App Launch Task Task: {693F02EA-12F7-4661-8730-A5DF1AFD642F} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh Task: {6BD9FDA3-C8EE-4C02-95CB-1B221BF24F79} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged Task: {7072963F-3763-4E9F-A1F5-DE9703BAE827} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask Task: {748782E2-365C-4329-8F16-F92531452DCA} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {786E9D92-5BB1-4399-958E-2550B6CEEFA8} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand Task: {78F76D6D-0B70-46A9-8DEB-4FCB650A6627} - System32\Tasks\Microsoft\Windows\SharedPC\Account Cleanup => Rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance Task: {7E48EB16-2459-437A-B3B5-DD91866302CC} - System32\Tasks\Microsoft\Windows\EDP\StorageCardEncryption Task Task: {7E91DF22-788E-4210-80E5-54912982771B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {8478C771-AE7D-47EA-9D79-22DC82C4E3F6} - System32\Tasks\Microsoft\Windows\DiskFootprint\StorageSense Task: {84C769A5-B556-4626-BEA9-F371CD899722} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {88E18EB0-E633-47C9-8FE5-84CEAB8F5EF7} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierdaily => C:\Windows\system32\AppHostRegistrationVerifier.exe [2017-03-18] (Microsoft Corporation) Task: {922F14C2-7D2E-4B55-BD54-AA0D9915ECBD} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2014-10-19] (Hewlett Packard) Task: {994BE051-FE97-4D1E-9A8C-C1F980AE5F4A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {9BFBFF63-27D1-4C7C-ADFA-AE5B98B90F78} - System32\Tasks\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask Task: {9C9AEE43-69AF-41C9-9EEE-534D3239D924} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {A16FC514-FEF4-4275-9E9D-4EB4A5635C37} - System32\Tasks\{CE43EF8E-0790-4261-86CA-21BEAB18B2A6} => pcalua.exe -a D:\autorun.exe -d D:\ Task: {A5B8DE99-38A6-4CD5-97A5-3A2E8FD7B835} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant printer driver installation => C:\WINDOWS\TEMP\HP_Color_LaserJet_Pro_MFP_M274-full-solution-15344.exe Task: {A6357AF3-EDBF-40BB-853C-0F2D56C1E386} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Keine Datei <==== ACHTUNG Task: {A99FA582-91C6-4BCF-8C69-D9F885C220C1} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {AFE2DCD6-4A4A-4E83-986D-D69E34E1B962} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {B38FF98F-BBE7-4734-A5C3-FF4E6E118246} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon => C:\Windows\System32\XblGameSaveTask.exe [2017-03-18] (Microsoft Corporation) Task: {BCA5FB3C-7C10-4337-B848-58C8E6F40936} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK Task: {BD00B13A-9732-4E4B-9B15-5C69C8EB4237} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Keine Datei <==== ACHTUNG Task: {BD69C6ED-AD55-467C-B787-533200C3B376} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTask => C:\Windows\System32\XblGameSaveTask.exe [2017-03-18] (Microsoft Corporation) Task: {C05E2FFD-7D0D-4F6B-952B-A3318F829D19} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Cellular => C:\Windows\system32\ProvTool.exe [2017-03-18] (Microsoft Corporation) Task: {C0F38714-F677-439F-9367-85D44ACC24D2} - System32\Tasks\Microsoft\Windows\UNP\RunCampaignManager => C:\Windows\System32\UNP\UNPCampaignManager.exe [2017-05-19] (Microsoft Corporation) Task: {CFB92C2D-AA16-4276-B876-1F87B3089897} - System32\Tasks\HPCeeScheduleForxxx => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.) Task: {CFE9501D-B60F-45DB-B48F-19C572F7F30E} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierinstall => C:\Windows\system32\AppHostRegistrationVerifier.exe [2017-03-18] (Microsoft Corporation) Task: {D32D4490-39D9-46B8-9915-B8FBC2FF8C01} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-838575733-3782424441-3606765584-1001 => C:\Users\xxx\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [2017-11-07] (Microsoft Corporation) Task: {D9545F6B-0116-4E02-9D8E-B333462276FB} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Keine Datei <==== ACHTUNG Task: {E0E6CBB2-616E-45AF-AA04-905215C1DFB3} - System32\Tasks\{C863AD29-3E43-4719-A718-C3CCC5A9EF57} => pcalua.exe -a C:\Users\xxx\Downloads\lyricsplugin03.exe -d C:\Users\xxx\Downloads Task: {E7604A76-E87C-45CC-9298-72D21CA4A96D} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Keine Datei <==== ACHTUNG Task: {E94CF290-0426-458D-8320-7817E9F54C0D} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe Task: {EAFD2843-6D0D-4399-98AA-C9C9848D28FD} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-11-08] (Piriform Ltd) Task: {F134B0FC-873E-46DA-81C0-178979726BF1} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {F6DB93BC-AA6F-439E-88A8-21874B0AB931} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2017-11-23] () (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\HPCeeScheduleForxxx.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2017-11-29 07:31 - 2017-11-29 07:35 - 02289096 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2017-11-29 07:31 - 2017-11-29 07:35 - 02358728 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2017-03-18 21:58 - 2017-03-18 21:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-03-18 21:59 - 2017-03-20 05:36 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-11-30 07:39 - 2017-11-30 07:39 - 00087040 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-11-30 07:39 - 2017-11-30 07:39 - 00202752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-11-30 07:39 - 2017-11-30 07:39 - 25600000 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-11-30 07:39 - 2017-11-30 07:39 - 02546176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\skypert.dll 2017-11-08 22:35 - 2017-11-08 22:35 - 00090376 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2017-09-14 13:34 - 2017-09-14 13:34 - 03553704 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11710.1001.27.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-12-01 07:47 - 2017-12-01 07:47 - 26657792 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17102.13911.0_x64__8wekyb3d8bbwe\Video.UI.exe 2017-12-01 07:47 - 2017-12-01 07:47 - 09162240 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17102.13911.0_x64__8wekyb3d8bbwe\EntCommon.dll 2017-09-26 08:20 - 2017-09-26 08:21 - 03553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17102.13911.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-11-17 13:27 - 2017-11-17 13:27 - 35241472 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17085.22311.0_x64__8wekyb3d8bbwe\Music.UI.exe 2017-11-17 13:27 - 2017-11-17 13:27 - 09218560 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17085.22311.0_x64__8wekyb3d8bbwe\EntCommon.dll 2017-08-23 18:03 - 2017-08-23 18:03 - 00957952 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17085.22311.0_x64__8wekyb3d8bbwe\Microsoft.Membership.MeControl.UI.Xaml.dll 2017-09-26 08:20 - 2017-09-26 08:21 - 03553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17085.22311.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-11-17 13:27 - 2017-11-17 13:27 - 13224960 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17085.22311.0_x64__8wekyb3d8bbwe\Music.Visuals.dll 2014-09-30 22:09 - 2017-03-03 11:27 - 00114664 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2014-09-30 22:09 - 2017-03-02 17:57 - 00108008 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2014-09-30 22:09 - 2017-03-02 17:57 - 00024040 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2014-09-30 22:09 - 2017-03-02 17:57 - 00048104 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll 2017-10-12 05:23 - 2017-10-12 05:23 - 00988160 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxml2.dll 2017-10-12 05:23 - 2017-10-12 05:23 - 00170496 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxslt.dll 2011-02-26 08:10 - 2017-06-26 16:12 - 00180224 _____ () C:\Program Files (x86)\IrfanView\Languages\DEUTSCH.DLL ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetSetupSvc => ""="Service" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\localhost -> localhost ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2015-03-22 08:30 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-838575733-3782424441-3606765584-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\xxx\AppData\Local\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: BrMfcWnd => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe" MSCONFIG\startupreg: DelaypluginInstall => C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe MSCONFIG\startupreg: Dropbox Update => "C:\Users\xxx\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c MSCONFIG\startupreg: GoogleDriveSync => "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart MSCONFIG\startupreg: Healthcare => C:\Program Files\Lenovo\HealthCare\HealthCare.exe /hide MSCONFIG\startupreg: IndexSearch => "C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe" MSCONFIG\startupreg: jmekey => C:\Program Files (x86)\jmesoft\hotkey.exe MSCONFIG\startupreg: NokiaSuite.exe => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray MSCONFIG\startupreg: PaperPort PTD => "C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe" MSCONFIG\startupreg: PPort11reminder => "C:\Program Files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe MSCONFIG\startupreg: SSBkgdUpdate => "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe HKLM\...\StartupApproved\Run32: => "pczeit" HKLM\...\StartupApproved\Run32: => "StatusAlerts" HKLM\...\StartupApproved\Run32: => "HP Software Update" HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\StartupApproved\Run: => "NokiaSuite.exe" HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\StartupApproved\Run: => "Amazon Music" HKU\S-1-5-21-838575733-3782424441-3606765584-1001\...\StartupApproved\Run: => "Amazon Music Helper" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [WirelessDisplay-Infra-In-TCP] => (Allow) %systemroot%\system32\CastSrv.exe FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [UDP Query User{131E5A32-3D33-4710-827B-DA138D87C726}C:\users\xxx\appdata\local\amazon music\amazon music helper.exe] => (Block) C:\users\xxx\appdata\local\amazon music\amazon music helper.exe FirewallRules: [TCP Query User{BA16D092-FAE0-4EA1-BDD3-224FD74787D6}C:\users\xxx\appdata\local\amazon music\amazon music helper.exe] => (Block) C:\users\xxx\appdata\local\amazon music\amazon music helper.exe FirewallRules: [{B5D7D156-7307-4FA8-B672-F5BE02FFAA00}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS4677\HPDiagnosticCoreUI.exe FirewallRules: [{BEAEC0D3-8471-46A4-B29C-6DA1D9C514AD}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS4677\HPDiagnosticCoreUI.exe FirewallRules: [{C80324D3-4EAC-405D-9361-7BECAA9F8FDD}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS460B\HPDiagnosticCoreUI.exe FirewallRules: [{4262FE3C-ABD5-40F9-98BE-4EED40A1E754}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS460B\HPDiagnosticCoreUI.exe FirewallRules: [UDP Query User{7D946EFC-80CC-421F-8ED6-62B05321B572}C:\users\xxx\appdata\local\amazon music\amazon music helper.exe] => (Allow) C:\users\xxx\appdata\local\amazon music\amazon music helper.exe FirewallRules: [TCP Query User{0B997920-9CEA-40FF-BEAE-EE7CEBC3CE48}C:\users\xxx\appdata\local\amazon music\amazon music helper.exe] => (Allow) C:\users\xxx\appdata\local\amazon music\amazon music helper.exe FirewallRules: [{E5679653-641C-42FF-80D2-6D1E98A1497A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{57E0CE79-2D56-43A9-8B35-DFE3392731C7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{039478F1-9F63-4272-B982-4FFDBA9146EF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{F8CEE1C1-5700-4BFD-8E6C-C22E8F070C66}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{7448A120-FEA0-400A-83BB-5315FE1A58A5}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS3A69\HPDiagnosticCoreUI.exe FirewallRules: [{0D01838F-7620-415E-8181-03730ACC4CF4}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS3A69\HPDiagnosticCoreUI.exe FirewallRules: [{C25E4791-E7A7-433E-BE59-51F3C1842A60}] => (Allow) C:\Program Files (x86)\FlashIntegro\VideoEditor\Updater.exe FirewallRules: [{CB4431AA-5D2D-479A-BB54-84A43C23E186}] => (Allow) C:\Program Files (x86)\FlashIntegro\VideoEditor\Updater.exe FirewallRules: [{673F3E4B-907F-4E2B-980D-90DE0B7430CD}] => (Allow) C:\Program Files (x86)\FlashIntegro\VideoEditor\Activation.exe FirewallRules: [{0A58AB17-D76E-40F6-BAEC-EF312111CBF3}] => (Allow) C:\Program Files (x86)\FlashIntegro\VideoEditor\Activation.exe FirewallRules: [{9935CB4F-1F52-4451-8B7E-7C1E78B6B0CF}] => (Allow) C:\Program Files (x86)\FlashIntegro\VideoEditor\VideoEditor.exe FirewallRules: [{83566D13-77DA-4403-8B72-79650C72D97D}] => (Allow) C:\Program Files (x86)\FlashIntegro\VideoEditor\VideoEditor.exe FirewallRules: [{CD04DB4F-B67D-4600-9C32-7DB7609215FC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B02EBBF6-1B92-43B8-B8FA-ACDAA33D7E5B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A972C1AE-4EB5-47C2-951D-A0FE4AED467A}] => (Allow) C:\Program Files (x86)\nokia\nokia suite\nokiasuite.exe FirewallRules: [{FC251005-90AF-4403-91B3-371EE531F0AC}] => (Allow) C:\Program Files (x86)\nokia\nokia suite\nokiasuite.exe FirewallRules: [UDP Query User{BEDC01D7-065A-44F2-B3EB-2585A44D6B0A}C:\program files (x86)\wondershare\video converter ultimate\dscheck.exe] => (Allow) C:\program files (x86)\wondershare\video converter ultimate\dscheck.exe FirewallRules: [TCP Query User{C3DCBCE2-5C9E-43E2-8964-0675F073C600}C:\program files (x86)\wondershare\video converter ultimate\dscheck.exe] => (Allow) C:\program files (x86)\wondershare\video converter ultimate\dscheck.exe FirewallRules: [UDP Query User{316423D8-FFCB-45D0-8FA1-9D9FD05978A8}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{8C6F3D0B-4D4C-433F-803A-6D46C75B078C}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{7A159C44-E2DC-41EB-A48A-D0607A1D0E6E}] => (Allow) C:\Users\xxx\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{444B5BBE-9BBF-4F18-BEA7-B6CED18A8DD1}] => (Allow) C:\Users\xxx\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{6F11E2AA-3AF3-41BC-A793-37D32F9169D8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{EDB634A6-920D-4769-916A-4A3A812CFF98}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [UDP Query User{653A3E82-2892-4F5F-8FCA-EA20D689AD58}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Block) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [TCP Query User{780A5B6E-C4CC-4353-8054-2CBCD82EACB5}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Block) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [{72D93441-F986-40FF-BDCA-4F532DCAE1FD}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{A44AE74D-B785-4BA4-BACB-03B508B0665C}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{3FC975D4-4718-4701-AFEB-27FCE7445EB4}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{8CE55165-5F13-4C1C-9313-E71E87219AF3}] => (Allow) C:\Users\xxx\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{C0CF8296-DD2D-46BB-99E6-648082BB418B}] => (Allow) C:\Users\xxx\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [UDP Query User{A0B402F1-0A30-4B0B-93F0-0C5F2B44B8A5}C:\program files (x86)\google\google earth\plugin\geplugin.exe] => (Allow) C:\program files (x86)\google\google earth\plugin\geplugin.exe FirewallRules: [TCP Query User{EAA1E63B-F597-40DE-8AD1-91A852F19274}C:\program files (x86)\google\google earth\plugin\geplugin.exe] => (Allow) C:\program files (x86)\google\google earth\plugin\geplugin.exe FirewallRules: [UDP Query User{C554A6CB-3D2A-48A2-B98E-B7EBC0B3B544}C:\program files (x86)\google\google earth\client\googleearth.exe] => (Allow) C:\program files (x86)\google\google earth\client\googleearth.exe FirewallRules: [TCP Query User{4216BFED-E871-4B31-90D4-EE27A100E1B6}C:\program files (x86)\google\google earth\client\googleearth.exe] => (Allow) C:\program files (x86)\google\google earth\client\googleearth.exe FirewallRules: [{7996DEA3-6EA0-4F35-9E3C-0A4B4CFF9037}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [{FCE6BA23-3F5F-4505-898C-A50358D552F3}] => (Allow) svchost.exe FirewallRules: [{CCBF7288-7B16-49F8-AE6F-A65F8E4C3107}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{97979E4F-D94D-4DA5-BD0F-1DD3E5700780}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS34DB\HPDiagnosticCoreUI.exe FirewallRules: [{13FF7C51-C93C-4BD1-9FFE-7BA90759852F}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS34DB\HPDiagnosticCoreUI.exe FirewallRules: [{AED11D3D-1F60-483A-BB36-DC46C33CB7E2}] => (Allow) C:\Program Files (x86)\HP\csiInstaller\3fa5d990-3d84-4a9b-9265-bd8131355383\Installer\hpbcsiInstaller.exe FirewallRules: [{0E4BD464-CA0B-4A19-A23D-475BB9960722}] => (Allow) C:\Program Files (x86)\HP\csiInstaller\3fa5d990-3d84-4a9b-9265-bd8131355383\Installer\hpbcsiInstaller.exe FirewallRules: [{75C04B21-D292-4649-A421-CE5FFB505F22}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS4C50\HPDiagnosticCoreUI.exe FirewallRules: [{424BD229-C4B7-4717-814C-5CF2FC18F4E8}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS4C50\HPDiagnosticCoreUI.exe FirewallRules: [{A2304535-BDBD-4C3A-8E41-4AFAC018E707}] => (Allow) C:\Program Files (x86)\HP\HP Color LaserJet Pro MFP M274\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{648D8876-05BE-4D8D-A1B1-6CB395D6ACE2}] => (Allow) C:\Program Files (x86)\HP\HP Color LaserJet Pro MFP M274\bin\DigitalWizards.exe FirewallRules: [{9F99D2CE-C0E3-43FD-90CD-E91D7B5AC594}] => (Allow) C:\Program Files (x86)\HP\HP Color LaserJet Pro MFP M274\bin\EWSProxy.exe FirewallRules: [{4C6BE850-F000-4411-ABCD-65E47B2FA4A3}] => (Allow) C:\HP_Color_LaserJet_Pro_MFP_M274\Installer\hpbcsiInstaller.exe FirewallRules: [{B9E45E66-03A5-4658-8506-D6339DAD35F4}] => (Allow) C:\HP_Color_LaserJet_Pro_MFP_M274\Installer\hpbcsiInstaller.exe FirewallRules: [{E579CEFC-49B3-4CF9-94AE-0CEF6815E1DA}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPPSdr\HPDiagnosticCoreUI.exe FirewallRules: [{3A256ECA-17E0-4495-BC2F-C548F87FFBBA}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPPSdr\HPDiagnosticCoreUI.exe FirewallRules: [{20706854-90B3-4A5C-8C1A-5E56C7C8A9A1}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS00F0\HPDiagnosticCoreUI.exe FirewallRules: [{E25B5BD1-77AE-4041-8003-A4F8A01C512A}] => (Allow) C:\Users\xxx\AppData\Local\Temp\7zS00F0\HPDiagnosticCoreUI.exe FirewallRules: [{A45C26FB-D09F-4726-B890-82513A1B36DA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{68AE022D-7AB3-4D59-B4CA-C78F95F0168D}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe FirewallRules: [{E7C523D1-5E02-4115-B179-2E7651AF7CC6}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe FirewallRules: [{248512DC-4791-415A-B4FB-709605E8993D}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe FirewallRules: [{28282810-BC62-4EB4-8BCB-94BF67D54365}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe FirewallRules: [{7BE4A032-9ACF-4947-B39F-70D3667CE41A}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe FirewallRules: [{243D9B86-E354-4277-B312-5561FDBBB79A}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe ==================== Wiederherstellungspunkte ========================= 22-11-2017 23:06:40 Geplanter Prüfpunkt 30-11-2017 16:35:55 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/02/2017 09:43:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: xxx-PC) Description: Das Paket „Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy+CortanaUI“ wurde beendet, da das Anhalten zu lange dauerte. Error: (12/02/2017 09:02:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mbamtray.exe, Version: 3.0.0.1208, Zeitstempel: 0x59d52b74 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xe0464645 Fehleroffset: 0x59dfc1ed ID des fehlerhaften Prozesses: 0xe78 Startzeit der fehlerhaften Anwendung: 0xmbamtray.exe0 Pfad der fehlerhaften Anwendung: mbamtray.exe1 Pfad des fehlerhaften Moduls: mbamtray.exe2 Berichtskennung: mbamtray.exe3 Vollständiger Name des fehlerhaften Pakets: mbamtray.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbamtray.exe5 Error: (12/02/2017 04:20:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: xxx-PC) Description: Bei der Aktivierung der App „Microsoft.Getstarted_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (12/02/2017 12:51:22 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (12/01/2017 04:11:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: xxx-PC) Description: Bei der Aktivierung der App „Microsoft.Getstarted_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (12/01/2017 07:39:21 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (12/01/2017 12:02:58 AM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Der Windows-Anmeldeprozess wurde unerwartet beendet. Error: (11/30/2017 04:37:50 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (11/30/2017 04:25:20 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: xxx-PC) Description: Bei der Aktivierung der App „Microsoft.Getstarted_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (11/30/2017 09:15:20 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: xxx-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Systemfehler: ============= Error: (11/30/2017 04:24:41 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (11/30/2017 04:24:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet: %%50 Error: (11/30/2017 10:51:23 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst MBAMService erreicht. Error: (11/30/2017 10:50:29 AM) (Source: DCOM) (EventID: 10010) (User: xxx-PC) Description: {D63B10C5-BB46-4990-A94F-E40B9D520160} Error: (11/30/2017 07:59:29 AM) (Source: DCOM) (EventID: 10010) (User: xxx-PC) Description: Microsoft.MicrosoftSolitaireCollection_3.18.11201.0_x64__8wekyb3d8bbwe!App.AppXcc14htf1fp3nt27stc0fcm9dshkn3y7m.mca Error: (11/29/2017 06:39:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (11/29/2017 06:39:27 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\MEICHS~1\AppData\Local\Temp\ehdrv.sys Error: (11/29/2017 06:39:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (11/29/2017 06:39:26 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\MEICHS~1\AppData\Local\Temp\ehdrv.sys Error: (11/29/2017 06:39:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 CodeIntegrity: =================================== Date: 2017-11-29 13:52:21.389 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:48:27.574 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:48:05.164 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:46:53.763 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:42:03.601 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:40:47.446 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:40:46.883 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:40:28.427 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:40:22.063 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-29 13:40:18.494 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Pentium(R) Dual-Core CPU E5500 @ 2.80GHz Prozentuale Nutzung des RAM: 87% Installierter physikalischer RAM: 2047.24 MB Verfügbarer physikalischer RAM: 253.04 MB Summe virtueller Speicher: 5698.76 MB Verfügbarer virtueller Speicher: 1880.41 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:439.74 GB) (Free:245.15 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive e: (500 GB weiß) (Fixed) (Total:465.73 GB) (Free:290.75 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: B86A5A7A) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=439.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=866 MB) - (Type=27) Partition 4: (Not Active) - (Size=25.1 GB) - (Type=12) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 465.7 GB) (Disk ID: 4D8F5439) Partition 1: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
03.12.2017, 17:06 | #3 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Computer hängt zunehmend häufigCode:
ATTFilter Prozessor: Pentium(R) Dual-Core CPU E5500 @ 2.80GHz Installierter physikalischer RAM: 2047.24 MB 1. neuen Rechner kaufen 2. Windows wegformatieren und auf dieses sehr schwach ausgerüstetet System besser mit Ubuntu MATE oder Lubuntu verwenden Eine dritte Möglichkeit wäre: RAM erweitern. Ergibt auf diesem uralten System mit Lahmarsch-Prozessor keinen Sinn, das wäre aus dem Fenster geworfenes Geld.
__________________ |
03.12.2017, 18:53 | #4 | |
/// Helfer-Team | Computer hängt zunehmend häufigZitat:
__________________ LG Der Felix Keine Hilfe per PN und E-Mail |
03.12.2017, 18:54 | #5 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Computer hängt zunehmend häufig Auch Windows 7 macht keinen Spaß mit 2 GiB RAM... ...dann lieber Ubuntu MATE
__________________ Logfiles bitte immer in CODE-Tags posten |
03.12.2017, 19:08 | #6 | |
/// Helfer-Team | Computer hängt zunehmend häufigZitat:
Ich stelle hier aber fest, dass sich viele TOs vor Linux scheuen, obwohl es keinen Grund dafür gibt.
__________________ --> Computer hängt zunehmend häufig |
03.12.2017, 19:11 | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Computer hängt zunehmend häufig Weil man das ja nicht kennt. Und weil es nicht Windows ist. Kann also nicht funktionieren
__________________ Logfiles bitte immer in CODE-Tags posten |
11.12.2017, 07:42 | #8 |
| Computer hängt zunehmend häufig Danke für die klaren Antworten! Ich werd mich mal mit Linux / Ubuntu beschäftigen, auch weil ich aus prinzipiellen und ökologischen Gründen der Meinung bin, dass man versuchen sollte, ein Gerät zu verwenden, solange es geht. |
Themen zu Computer hängt zunehmend häufig |
.dll, adobe, browser, computer, defender, desktop, explorer, firefox, helper, helper.exe, home, homepage, hängen, hängt, mozilla, problem, prozesse, realtek, registry, scan, seiten, services.exe, siteadvisor, software, webadvisor, windows, windowsapps, winlogon.exe |