Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Zip Datei von DirectPay GmbH & Co. KG

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 11.07.2018, 14:34   #1
Zeddius
 
Zip Datei von DirectPay GmbH & Co. KG - Standard

Zip Datei von DirectPay GmbH & Co. KG



Hallo, ich habe dieses Problem an sich hier schon gefunden, aber wollte nochmal meinen speziellen Fall schildern: Da ich schon mit einer ausstehenden Forderung von Paypal gerechnet habe, habe ich leichtfertig die ZIP-Datei einer Mail von DirectPay GmbH & Co. KG geöffnet.

Ich habe die Datei entpackt und eine .txt Datei geöffnet.

In einem anderen Thread habe ich gelesen, solange man keine ausführbare Datei öffnet, muss man sich keine Sorgen machen. Ich bin nicht sicher, ob das auf mich zutrifft. Dateien wurden dann natürlich sehr schnell in Quarantäne geschoben und gelöscht.

Meint ihr es sind weitere Schritte nötig und falls ja, welche?

Danke schonmal

Alt 11.07.2018, 14:37   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Zip Datei von DirectPay GmbH & Co. KG - Standard

Zip Datei von DirectPay GmbH & Co. KG



Scan mit Farbar's Recovery Scan Tool (FRST)

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)




Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________

__________________

Alt 11.07.2018, 15:00   #3
Zeddius
 
Zip Datei von DirectPay GmbH & Co. KG - Standard

Zip Datei von DirectPay GmbH & Co. KG



Vielen Dank für die schnell Antwort. Ich habe gerade auch den ESET Online Scanner laufen, falls das das Ergebnis beeinflusst oder verfälscht, kann ich FRST nochmal als einzige geöffnete Anwendung durchlaufen lassen

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 20.06.2018
durchgeführt von Alexander Zacharias (Administrator) auf MASCHINE (11-07-2018 15:46:04)
Gestartet von C:\Users\Alexander Zacharias\Downloads
Geladene Profile: Alexander Zacharias (Verfügbare Profile: Alexander Zacharias)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Spotify Ltd) C:\Users\Alexander Zacharias\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(iMobie Inc.) C:\Program Files (x86)\iMobie\PhoneClean\SilentCleanServer.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Spotify Ltd) C:\Users\Alexander Zacharias\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Alexander Zacharias\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Alexander Zacharias\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Alexander Zacharias\AppData\Roaming\Spotify\Spotify.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(ESET) C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerApp.exe
() C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [316392 2018-05-11] (Adobe Systems, Incorporated)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech, Inc.)
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3752768 2018-06-25] (Dropbox, Inc.)
HKLM-x32\...\Run: [SilentCleanService] => C:\Program Files (x86)\iMobie\PhoneClean\SilentCleanServer.exe [491496 2017-04-06] (iMobie Inc.)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [98024 2018-07-04] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: E - E:\setup.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: F - F:\autoinst.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: G - G:\autorun.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: H - H:\setup.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {00cb76c6-ea43-11e4-aa8e-f07959644bf0} - E:\setup.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {055db709-e3e5-11e4-bc8c-f07959644bf0} - H:\setup.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {055db746-e3e5-11e4-bc8c-f07959644bf0} - E:\setup.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {42208566-aa19-11e5-870c-f07959644bf0} - F:\SETUP.EXE
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {47a22c67-a469-11e5-b233-f07959644bf0} - H:\setup.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {6915c676-a192-11e5-8433-f07959644bf0} - G:\setup.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {a683e662-b25e-11e5-a2fc-f07959644bf0} - F:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {a683e6cf-b25e-11e5-a2fc-f07959644bf0} - F:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {e7675368-e2f9-11e4-8f3e-f07959644bf0} - F:\Autorun.exe
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\MountPoints2: {fa2af087-e022-11e5-a2fd-f07959644bf0} - H:\SETUP.EXE
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Beschränkung - Chrome <==== ACHTUNG
CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{548E50C5-DB75-4A40-892A-40583AC3309A}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{7847EC62-95FA-4112-9489-62F730C57C48}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://de.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_anvsft_16_50&param1=1&param2=f%3D1%26b%3DIE%26cc%3Dde%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0FtDyBzyyDzyyCyEyE0B0FtDyBtAzzyBtN0D0Tzu0StCzztDyBtN1L2XzutAtFtByDtFtCtFyDtBtN1L1Czu1ByDtN1L1G1B1V1N2Y1L1Qzu2StA0AyD0Czz0AyEyDtGtByBtCzztG0E0AtAyEtGtAtC0CyCtG0EyEzz0CtCtAtBtAtB0A0CtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyD0FzyyBtCtAyCtGyB0D0AyDtGyEtBtAzztGzzzyyC0AtG0FtCyEyByEtCyBzy0DtCtC0B2QtN0A0LzuyE%26cr%3D1281356873%26a%3Dwbf_anvsft_16_50%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://de.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_anvsft_16_50&param1=1&param2=f%3D1%26b%3DIE%26cc%3Dde%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0FtDyBzyyDzyyCyEyE0B0FtDyBtAzzyBtN0D0Tzu0StCzztDyBtN1L2XzutAtFtByDtFtCtFyDtBtN1L1Czu1ByDtN1L1G1B1V1N2Y1L1Qzu2StA0AyD0Czz0AyEyDtGtByBtCzztG0E0AtAyEtGtAtC0CyCtG0EyEzz0CtCtAtBtAtB0A0CtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyD0FzyyBtCtAyCtGyB0D0AyDtGyEtBtAzztGzzzyyC0AtG0FtCyEyByEtCyBzy0DtCtC0B2QtN0A0LzuyE%26cr%3D1281356873%26a%3Dwbf_anvsft_16_50%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q=
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://de.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_anvsft_16_50&param1=1&param2=f%3D1%26b%3DIE%26cc%3Dde%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0FtDyBzyyDzyyCyEyE0B0FtDyBtAzzyBtN0D0Tzu0StCzztDyBtN1L2XzutAtFtByDtFtCtFyDtBtN1L1Czu1ByDtN1L1G1B1V1N2Y1L1Qzu2StA0AyD0Czz0AyEyDtGtByBtCzztG0E0AtAyEtGtAtC0CyCtG0EyEzz0CtCtAtBtAtB0A0CtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyD0FzyyBtCtAyCtGyB0D0AyDtGyEtBtAzztGzzzyyC0AtG0FtCyEyByEtCyBzy0DtCtC0B2QtN0A0LzuyE%26cr%3D1281356873%26a%3Dwbf_anvsft_16_50%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q=
HKU\S-1-5-21-783658327-2260165228-4089948070-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q=
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM -> {2211d4a5-48d0-47f5-a7cd-81e861470f7f} URL = hxxps://de.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_anvsft_16_50&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dde%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0FtDyBzyyDzyyCyEyE0B0FtDyBtAzzyBtN0D0Tzu0StCzztDyBtN1L2XzutAtFtByDtFtCtFyDtBtN1L1Czu1ByDtN1L1G1B1V1N2Y1L1Qzu2StA0AyD0Czz0AyEyDtGtByBtCzztG0E0AtAyEtGtAtC0CyCtG0EyEzz0CtCtAtBtAtB0A0CtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyD0FzyyBtCtAyCtGyB0D0AyDtGyEtBtAzztGzzzyyC0AtG0FtCyEyByEtCyBzy0DtCtC0B2QtN0A0LzuyE%26cr%3D1281356873%26a%3Dwbf_anvsft_16_50%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> {2211d4a5-48d0-47f5-a7cd-81e861470f7f} URL = hxxps://de.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_anvsft_16_50&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dde%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0FtDyBzyyDzyyCyEyE0B0FtDyBtAzzyBtN0D0Tzu0StCzztDyBtN1L2XzutAtFtByDtFtCtFyDtBtN1L1Czu1ByDtN1L1G1B1V1N2Y1L1Qzu2StA0AyD0Czz0AyEyDtGtByBtCzztG0E0AtAyEtGtAtC0CyCtG0EyEzz0CtCtAtBtAtB0A0CtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyD0FzyyBtCtAyCtGyB0D0AyDtGyEtBtAzztGzzzyyC0AtG0FtCyEyByEtCyBzy0DtCtC0B2QtN0A0LzuyE%26cr%3D1281356873%26a%3Dwbf_anvsft_16_50%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
BHO-x32: AviraBrowserSafety.BrowserSafety -> {c3c77255-42c0-499f-b664-6e981a0b1647} -> C:\Windows\system32\mscoree.dll [2010-11-21] (Microsoft Corporation)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation.)
Handler-x32: abs - {E00957BD-D0E1-4eb9-A025-7743FDC8B27B} - C:\Windows\system32\mscoree.dll [2010-11-21] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF DefaultProfile: sg14n2lh.default
FF ProfilePath: C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default [2018-07-11]
FF Homepage: Mozilla\Firefox\Profiles\sg14n2lh.default -> hxxps://www.google.com/
FF NewTab: Mozilla\Firefox\Profiles\sg14n2lh.default -> about:newtab
FF Extension: (realonlineradio) - C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default\Extensions\@realonlineradio.xpi [2017-12-23]
FF Extension: (Avira Browserschutz) - C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default\Extensions\abs@avira.com.xpi [2017-12-23]
FF Extension: (AdBlocker Ultimate) - C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default\Extensions\adblockultimate@adblockultimate.net.xpi [2018-02-28]
FF Extension: (AdBlocker for YouTube™) - C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2017-11-19]
FF Extension: (youtubetmadblock) - C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default\Extensions\jid1-w4wG5nJhx4LJZr@jetpack.xpi [2017-03-19]
FF SearchPlugin: C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default\searchplugins\bing-lavasoft.xml [2016-12-12]
FF SearchPlugin: C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default\searchplugins\yahoo! powered.xml [2016-12-12]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2018-03-03] [Legacy] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [@realonlineradio] - C:\Users\Alexander Zacharias\AppData\Roaming\Mozilla\Firefox\Profiles\sg14n2lh.default\extensions\@realonlineradio.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_134.dll [2018-07-10] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-05] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-12] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_134.dll [2018-07-10] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [Keine Datei]
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-05] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-05-11] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-12] (Adobe Systems)

Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxps://www.google.de/
CHR Profile: C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default [2018-07-11]
CHR Extension: (Präsentationen) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-02]
CHR Extension: (Google-Suche) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Tabellen) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Google Docs Offline) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (AdBlock) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-07-01]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Google Mail) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-14]
CHR Extension: (Chrome Media Router) - C:\Users\Alexander Zacharias\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-14]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-783658327-2260165228-4089948070-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bhldmkghjkldhclddpjebfjpaijaajmm] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gcioehpdkimlbaaniodlfkhmdmhiheep] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-12] (Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [880040 2018-07-04] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [225384 2018-07-04] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [225384 2018-07-04] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1164808 2018-07-04] (Avira Operations GmbH & Co. KG)
S2 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [137584 2014-01-08] ()
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc.)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [428072 2018-07-04] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6076936 2018-03-29] ()
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-05-30] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-05-30] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [51024 2018-06-25] (Dropbox, Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1368408 2015-11-30] (Disc Soft Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342240 2015-11-05] (Futuremark)
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [281152 2016-10-25] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8174664 2018-06-04] (GOG.com)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe [289256 2015-07-31] (McAfee, Inc.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2120032 2017-09-25] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3000168 2017-09-25] (Electronic Arts)
R2 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [218248 2016-11-08] (Geek Software GmbH)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.) [Datei ist nicht signiert]
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2017-01-16] (DEVGURU Co., LTD.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\Windows\system32\WirelessKB850NotificationService.exe [174256 2018-05-14] (Microsoft Corporation)
S4 sppsvc; %SystemRoot%\system32\sppsvc.exe [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AODDriver4.3.0; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [59624 2014-01-08] (Advanced Micro Devices)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2016-07-26] ()
R0 avdevprot; C:\Windows\System32\DRIVERS\avdevprot.sys [64504 2017-06-14] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [199920 2018-07-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [153040 2018-07-04] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [35328 2017-03-21] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [78600 2017-03-21] (Avira Operations GmbH & Co. KG)
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-12-13] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [46392 2015-12-13] (Disc Soft Ltd)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2016-07-26] ()
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
S3 xb1usb; C:\Windows\System32\DRIVERS\xb1usb.sys [42760 2016-02-21] (Microsoft Corporation)
U3 aswbdisk; kein ImagePath

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2018-07-11 15:46 - 2018-07-11 15:46 - 000028567 _____ C:\Users\Alexander Zacharias\Downloads\FRST.txt
2018-07-11 15:45 - 2018-07-11 15:46 - 000000000 ____D C:\FRST
2018-07-11 15:13 - 2018-07-11 15:13 - 002870984 _____ (ESET) C:\Users\Alexander Zacharias\Downloads\esetsmartinstaller_deu.exe
2018-07-11 15:13 - 2018-07-11 15:13 - 000000000 ____D C:\Program Files (x86)\ESET
2018-07-11 15:08 - 2018-07-11 15:08 - 002412544 _____ (Farbar) C:\Users\Alexander Zacharias\Downloads\FRST64.exe
2018-07-11 15:06 - 2018-07-11 15:06 - 000000819 _____ C:\Users\Alexander Zacharias\Downloads\Fixlist.txt
2018-07-11 14:55 - 2018-07-11 15:03 - 000213360 _____ C:\TDSSKiller.3.1.0.17_11.07.2018_14.55.10_log.txt
2018-07-11 14:55 - 2018-07-11 14:55 - 004949824 _____ (AO Kaspersky Lab) C:\Users\Alexander Zacharias\Downloads\tdsskiller (1).exe
2018-07-11 14:54 - 2018-07-11 14:54 - 004949824 _____ (AO Kaspersky Lab) C:\Users\Alexander Zacharias\Downloads\tdsskiller.exe
2018-07-10 02:18 - 2018-07-10 02:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2018-07-07 16:59 - 2018-07-07 16:59 - 000936448 _____ C:\Users\Alexander Zacharias\Downloads\kognitive_typologie1.ppt
2018-07-07 13:43 - 2018-07-07 13:43 - 000255272 _____ C:\Users\Alexander Zacharias\Desktop\1513181916447-Bystander_000017.webp
2018-07-06 22:29 - 2018-07-06 22:29 - 000000000 ____D C:\Users\Alexander Zacharias\AppData\Local\FromSoftware
2018-07-06 01:22 - 2018-07-06 01:22 - 009108990 _____ C:\Users\Alexander Zacharias\Downloads\Jesus Christoph Rap (Alle 7 Folgen).mp4
2018-07-05 23:19 - 2018-07-05 23:19 - 006037817 _____ C:\Users\Alexander Zacharias\Downloads\hmI2k5q32fKsSICCc1nFcMnXxFizSV2cr2zkRBvSqvXvQWtKZeWNeJmdzrChleIw.mp4
2018-06-27 18:32 - 2018-06-27 18:32 - 000000000 ____D C:\Program Files\KeyboardNotification
2018-06-27 14:53 - 2018-06-27 14:53 - 007886712 _____ (Microsoft Corporation) C:\Users\Alexander Zacharias\Downloads\Xbox360_64Deu (6).exe
2018-06-27 14:53 - 2018-06-27 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories
2018-06-27 14:53 - 2018-06-27 14:53 - 000000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2018-06-27 12:01 - 2018-06-27 12:01 - 000055809 _____ C:\Users\Alexander Zacharias\Desktop\RechnungZachariasJuni.pdf
2018-06-27 00:03 - 2018-06-27 00:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2018-06-26 23:46 - 2018-06-27 00:09 - 000000000 ____D C:\Users\Alexander Zacharias\Desktop\kleinanzeigen
2018-06-25 19:24 - 2018-06-25 19:24 - 000051024 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2018-06-25 19:24 - 2018-06-25 19:24 - 000050232 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2018-06-25 19:24 - 2018-06-25 19:24 - 000045672 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2018-06-25 19:24 - 2018-06-25 19:24 - 000045640 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2018-06-24 20:32 - 2018-06-24 20:32 - 000000000 ____D C:\ProgramData\Brother
2018-06-24 20:26 - 2018-06-24 20:26 - 044781986 _____ (A.I.SOFT,INC.) C:\Users\Alexander Zacharias\Downloads\5890-INST-WIN7-A.EXE
2018-06-23 23:22 - 2018-06-23 23:22 - 001878490 _____ C:\Users\Alexander Zacharias\Downloads\d3dcompiler_47.zip
2018-06-23 23:22 - 2017-05-05 15:23 - 004396032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2018-06-23 12:11 - 2018-06-23 12:11 - 001232566 _____ C:\Users\Alexander Zacharias\Downloads\KriminalitaetImKontextVonZuwanderung_2017.pdf
2018-06-20 23:03 - 2018-06-20 23:03 - 007886712 _____ (Microsoft Corporation) C:\Users\Alexander Zacharias\Downloads\Xbox360_64Deu (5).exe
2018-06-20 23:02 - 2018-06-20 23:02 - 007886712 _____ (Microsoft Corporation) C:\Users\Alexander Zacharias\Downloads\Xbox360_64Deu (4).exe
2018-06-20 23:00 - 2018-06-20 23:00 - 007522680 _____ (Microsoft Corporation) C:\Users\Alexander Zacharias\Downloads\Xbox360_32Deu.exe
2018-06-11 20:28 - 2018-06-11 20:28 - 000042778 _____ C:\Users\Alexander Zacharias\Downloads\DialogspielWohnungMieten.pdf
2018-06-11 20:27 - 2018-06-11 20:27 - 000140504 _____ C:\Users\Alexander Zacharias\Downloads\lokalePRÄPO.pdf
2018-06-11 20:07 - 2018-06-11 20:07 - 000131574 _____ C:\Users\Alexander Zacharias\Downloads\studio21_A1_E3_AB1_Lesetext.pdf
2018-06-11 20:06 - 2018-06-11 20:06 - 000029377 _____ C:\Users\Alexander Zacharias\Downloads\studio21_A1_E4_AB1_Lesetext.pdf
2018-06-11 20:05 - 2018-06-11 20:05 - 000116228 _____ C:\Users\Alexander Zacharias\Downloads\Leseverstehen Fußball.pdf
2018-06-11 20:05 - 2018-06-11 20:05 - 000029752 _____ C:\Users\Alexander Zacharias\Downloads\studio21_A1_E1_AB1_Lesetext.pdf
2018-06-11 01:35 - 2018-06-26 23:47 - 000000000 ____D C:\Users\Alexander Zacharias\Desktop\aktuell

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2018-07-11 15:42 - 2016-12-12 21:42 - 000000300 _____ C:\Windows\Tasks\{67246B79-F5E9-4164-26B1-09A69A60DDBC}.job
2018-07-11 15:08 - 2017-09-19 19:09 - 000003292 _____ C:\Windows\System32\Tasks\Avira_Antivirus_Systray
2018-07-11 14:51 - 2017-05-30 22:39 - 000001240 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2018-07-11 14:31 - 2016-06-11 02:08 - 000000000 ____D C:\Users\Alexander Zacharias\AppData\Roaming\Spotify
2018-07-11 14:03 - 2011-04-12 09:43 - 000699092 _____ C:\Windows\system32\perfh007.dat
2018-07-11 14:03 - 2011-04-12 09:43 - 000149232 _____ C:\Windows\system32\perfc007.dat
2018-07-11 14:03 - 2009-07-14 07:13 - 001619284 _____ C:\Windows\system32\PerfStringBackup.INI
2018-07-11 14:03 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2018-07-11 13:58 - 2017-05-30 22:39 - 000001236 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2018-07-11 13:58 - 2016-02-24 05:46 - 000065536 _____ C:\Windows\system32\Ikeext.etl
2018-07-11 13:58 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-07-11 13:08 - 2016-08-17 02:33 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2018-07-11 02:00 - 2015-04-16 05:53 - 000000000 ____D C:\Users\Alexander Zacharias\AppData\Local\Adobe
2018-07-11 00:13 - 2016-07-27 16:31 - 000003986 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{A60B96B3-62D1-49E9-8B12-7C9EB721C538}
2018-07-10 22:35 - 2016-06-11 02:45 - 000000000 ____D C:\Users\Alexander Zacharias\AppData\Local\Spotify
2018-07-10 15:32 - 2018-03-13 23:58 - 000004544 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2018-07-10 15:32 - 2015-05-09 19:54 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-07-10 15:32 - 2015-05-09 19:54 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-07-10 15:32 - 2015-05-09 19:54 - 000004366 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2018-07-10 15:32 - 2015-05-09 19:54 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-07-10 15:32 - 2015-05-09 19:54 - 000000000 ____D C:\Windows\system32\Macromed
2018-07-10 15:27 - 2017-11-18 03:01 - 000003868 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1430313722
2018-07-10 15:27 - 2015-04-29 15:21 - 000000000 ____D C:\Program Files (x86)\Opera
2018-07-10 02:18 - 2015-04-14 01:13 - 000000000 ____D C:\ProgramData\Package Cache
2018-07-06 22:29 - 2016-03-03 05:25 - 000000000 ____D C:\Users\Alexander Zacharias\Documents\NBGI
2018-07-06 22:24 - 2018-05-25 20:19 - 000000000 ____D C:\Users\Alexander Zacharias\Desktop\D
2018-07-06 21:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2018-07-04 19:26 - 2015-12-06 05:25 - 000199920 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2018-07-04 19:26 - 2015-12-06 05:25 - 000153040 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2018-07-04 03:45 - 2015-04-14 00:54 - 000000000 ____D C:\Users\Alexander Zacharias\AppData\Local\Battle.net
2018-07-04 00:27 - 2015-04-14 00:54 - 000000000 ____D C:\Program Files (x86)\Battle.net
2018-07-03 02:06 - 2015-04-16 04:52 - 000000000 ____D C:\Users\Alexander Zacharias\AppData\Local\ElevatedDiagnostics
2018-06-30 23:36 - 2015-04-14 03:28 - 000000000 ____D C:\Users\Alexander Zacharias\AppData\Local\JDownloader v2.0
2018-06-28 19:37 - 2015-04-14 03:50 - 000000000 ____D C:\Users\Alexander Zacharias\AppData\Roaming\vlc
2018-06-27 21:19 - 2015-04-16 05:03 - 000000000 ___RD C:\Users\Alexander Zacharias\Desktop\¯_(ツ)_¯
2018-06-27 14:55 - 2017-11-02 16:06 - 000002149 _____ C:\Users\Alexander Zacharias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
2018-06-27 00:04 - 2016-11-10 06:01 - 000002216 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-06-27 00:03 - 2017-05-30 22:39 - 000000000 ____D C:\Program Files (x86)\Dropbox
2018-06-24 20:31 - 2018-02-04 01:57 - 000035840 ___SH C:\Users\Alexander Zacharias\Thumbs.db
2018-06-22 22:51 - 2017-10-05 19:16 - 000000000 ____D C:\Users\Alexander Zacharias\Documents\FIFA 18
2018-06-22 22:41 - 2015-04-16 07:03 - 000018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2018-06-22 22:07 - 2015-04-14 01:31 - 000000000 ____D C:\Program Files (x86)\Steam
2018-06-22 00:08 - 2017-07-27 00:43 - 000003200 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-783658327-2260165228-4089948070-1000
2018-06-22 00:08 - 2016-04-13 16:36 - 000002218 _____ C:\Users\Alexander Zacharias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2017-04-13 16:08 - 2017-04-13 16:08 - 000000478 _____ () C:\Program Files (x86)\Volume 2 (F) - Verknüpfung.lnk
2016-12-13 01:42 - 2016-12-13 01:42 - 000000045 _____ () C:\Users\Alexander Zacharias\AppData\Roaming\WB.CFG
2017-05-16 07:33 - 2017-05-16 07:33 - 000001456 _____ () C:\Users\Alexander Zacharias\AppData\Local\Adobe Für Web speichern 13.0 Prefs
2016-12-13 18:03 - 2016-12-13 18:19 - 000006144 _____ () C:\Users\Alexander Zacharias\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-12-12 00:41 - 2017-12-12 00:41 - 000000068 _____ () C:\Users\Alexander Zacharias\AppData\Local\DndTDndTDn
2018-05-31 01:18 - 2018-05-31 01:18 - 000001382 _____ () C:\Users\Alexander Zacharias\AppData\Local\recently-used.xbel
2017-05-02 01:39 - 2017-05-02 01:39 - 000007618 _____ () C:\Users\Alexander Zacharias\AppData\Local\Resmon.ResmonCfg

Dateien, die verschoben oder gelöscht werden sollten:
====================
C:\Windows\Tasks\{67246B79-F5E9-4164-26B1-09A69A60DDBC}.job


Einige Dateien in TEMP:
====================
2015-12-06 05:27 - 2016-11-01 01:34 - 000000000 ____D () C:\Users\Alexander Zacharias\AppData\Local\Temp\avgnt.exe

==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert

LastRegBack: 2018-07-01 18:02

==================== Ende von FRST.txt ============================
         
__________________

Alt 11.07.2018, 15:01   #4
Zeddius
 
Zip Datei von DirectPay GmbH & Co. KG - Standard

Zip Datei von DirectPay GmbH & Co. KG



Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 20.06.2018
durchgeführt von Alexander Zacharias (11-07-2018 15:46:25)
Gestartet von C:\Users\Alexander Zacharias\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2015-04-13 22:11:08)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-783658327-2260165228-4089948070-500 - Administrator - Disabled)
Alexander Zacharias (S-1-5-21-783658327-2260165228-4089948070-1000 - Administrator - Enabled) => C:\Users\Alexander Zacharias
Gast (S-1-5-21-783658327-2260165228-4089948070-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-783658327-2260165228-4089948070-1002 - Limited - Enabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avira Antivirus (Disabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F}
AS: Avira Antivirus (Disabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

3D-Fahrschule Demo (HKLM-x32\...\3D-Fahrschule Demo) (Version:  - )
3DMark 11 (HKLM\...\{FD67BFA0-E205-47AA-BA09-123B3B72DB5E}) (Version: 1.0.132.0 - Futuremark)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 18.011.20040 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.0.327 - Adobe Systems Incorporated)
Adobe Flash Player 30 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 30.0.0.134 - Adobe Systems Incorporated)
Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_0) (Version: 18.0.0 - Adobe Systems Incorporated)
AMD OverDrive (HKLM-x32\...\{34D5220A-58D0-473C-90E4-15136C3FB0E3}) (Version: 4.3.1.0690 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.)
Ancestors Legacy MULTi10 - ElAmigos Version 1.0 (HKLM-x32\...\{B033A74E-E7DC-4EB2-B58F-DF7D272B3333}_is1) (Version: 1.0 - 1C Company)
Anno 1701 A.D. (HKLM-x32\...\1438075172_is1) (Version: 2.0.0.4 - GOG.com)
Any Video Converter 6.0.7 (HKLM-x32\...\Any Video Converter) (Version: 6.0.7 - Anvsoft)
Apple Application Support (32-Bit) (HKLM-x32\...\{543F829B-4591-4B2F-AF63-6E6E6AE59EB2}) (Version: 6.4 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{0ECA3BB5-4410-414B-B226-241FF1C12CD0}) (Version: 6.4 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{0A596141-97D5-45FA-9281-98DFAF48D579}) (Version: 10.3.2.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Assassin's Creed Origins Gold Edition MULTi2 1.21 (HKLM-x32\...\Assassin's Creed Origins Gold Edition MULTi2 1.21) (Version: 1.21 - x.X.RIDDICK.X.x)
Avira (HKLM-x32\...\{0bb4751a-1ff2-4c79-80df-5bab5da63823}) (Version: 1.2.116.18787 - Avira Operations GmbH & Co. KG)
Avira (HKLM-x32\...\{218C5045-A3A1-486C-91F5-A1B4D4772F8D}) (Version: 1.2.116.18787 - Avira Operations GmbH & Co. KG) Hidden
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.36.211 - Avira Operations GmbH & Co. KG)
Avira Browser Safety (HKLM-x32\...\{9E10EA90-5E97-43B7-A246-FC7B4F5E9493}) (Version: 1.4.5.509 - Avira Operations GmbH & Co KG)
Bandicam (HKLM-x32\...\Bandicam) (Version: 2.2.2.790 - Bandisoft.com)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - Bandisoft.com)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB)
Bing Bar (HKLM-x32\...\{16793295-2366-40F7-A045-A3E42A81365E}) (Version: 7.1.362.0 - Microsoft Corporation)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
calibre 64bit (HKLM\...\{69892FF1-CBA3-49AF-B80A-E074B3B755E5}) (Version: 2.85.1 - Kovid Goyal)
Call of Duty WWII Digital Deluxe Edition MULTi2 1.0 (HKLM-x32\...\Call of Duty WWII Digital Deluxe Edition MULTi2 1.0) (Version: 1.0 - x.X.RIDDICK.X.x)
CCleaner (HKLM\...\CCleaner) (Version: 5.17 - Piriform)
CopyTrans Control Center deinstallieren (HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\CopyTrans Suite) (Version: 4.004 - WindSolutions)
Cuttermaran 1.70 (HKLM-x32\...\{5F499D33-546A-442B-B0F9-4C58F3B5B6E3}) (Version: 1.7.0 - toarnold)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0114 - Disc Soft Ltd)
Dark Souls III The Fire Fades Edition MULTi12 1.13 (HKLM-x32\...\Dark Souls III The Fire Fades Edition MULTi12 1.13) (Version: 1.13 - .x.X.RIDDICK.X.x.)
Deus Ex Mankind Divided Digital Deluxe Edition MULTi2 v1.11 build 616.0 (HKLM-x32\...\Deus Ex Mankind Divided Digital Deluxe Edition MULTi2 v1.11 build 616.0) (Version: v1.11 build 616.0 - x.X.RIDDICK.X.x)
Diablo II (HKLM-x32\...\Diablo II) (Version:  - )
Diablo II (HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\Diablo II) (Version:  - )
Die Völker 2 Gold Edition (HKLM-x32\...\{8C0A88AE-8388-42D5-9134-149BCD77E4F2}) (Version: 2.0.2 - JoWooD Productions Software AG)
DiRT Showdown Version 1.2 (HKLM-x32\...\DiRT Showdown_is1) (Version: 1.2 - Codemasters)
Dishonored 2 Das Vermächtnis der Maske Day One Edition MULTi2 1.77.5.0 (HKLM-x32\...\Dishonored 2 Das Vermächtnis der Maske Day One Edition MULTi2 1.77.5.0) (Version: 1.77.5.0 - x.X.RIDDICK.X.x)
Dropbox (HKLM-x32\...\Dropbox) (Version: 52.4.60 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.75.1 - Dropbox, Inc.) Hidden
EA SPORTS™ FIFA 15 (HKLM-x32\...\{3D4ADA2B-F028-4307-ADF4-6F9AA44725DA}) (Version: 1.4.0.0 - Electronic Arts)
Epic Games Launcher (HKLM-x32\...\{86F434AF-1A92-4BDB-93CD-31BF0ED78C9C}) (Version: 1.1.144.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
f.lux (HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\Flux) (Version:  - f.lux Software LLC)
Far Cry 5 Gold Edition MULTi15 - ElAmigos Version 1.2.0 (HKLM-x32\...\{94EF50C3-1479-48BE-8E80-D54680BCB911}_is1) (Version: 1.2.0 - Ubisoft)
FIFA 17 DEMO (HKLM-x32\...\{39C00B2C-EA3C-4A6B-AECF-DADA0F09C2AE}) (Version: 1.0.45.26330 - Electronic Arts)
FIFA 18 DEMO (HKLM-x32\...\{5D17162D-8095-4B35-B41F-6F55D154E9F9}) (Version: 1.0.49.32463 - Electronic Arts)
FIFA 18 MULTi2 1.0 (HKLM-x32\...\FIFA 18 MULTi2 1.0) (Version: 1.0 - x.X.RIDDICK.X.x)
FIFA 18 Title Update 2 MULTi2 1.03 (HKLM-x32\...\FIFA 18 Title Update 2 MULTi2 1.03) (Version: 1.03 - x.X.RIDDICK.X.x)
FlyVPN (HKLM-x32\...\FlyVPN) (Version: 3.3.0.7 - FlyVPN)
Fotogalerie (HKLM-x32\...\{41BF4A3B-D60A-4E92-883F-C88C8C157261}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free Fire Screensaver (HKLM-x32\...\Free Fire Screensaver) (Version:  - Laconic Software)
Frostpunk Incl. Update 1 MULTi7 1.0.1 (HKLM-x32\...\Frostpunk Incl. Update 1 MULTi7 1.0.1) (Version: 1.0.1 - x.X.RIDDICK.X.x)
Futuremark SystemInfo (HKLM-x32\...\{70690D9E-3D00-47D6-9CE9-BC3B6F900447}) (Version: 4.41.563.0 - Futuremark)
Getting Over It with Bennett Foddy MULTi5 - ElAmigos version 1.572 (HKLM-x32\...\{EE7C557E-E266-4910-B7D5-C9095CEAE335}_is1) (Version: 1.572 - Bennett Foddy)
GOG.com The Settlers 3 (HKLM\...\{f707a2f1-2ed1-4560-a087-97aa176c3777}.sdb) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.99 - Google Inc.)
Google Drive (HKLM-x32\...\{A8DC81F2-D365-4248-892A-FA3B5951F731}) (Version: 2.34.9392.7803 - Google, Inc.)
Google Earth Pro (HKLM-x32\...\{FA1BBF34-E994-4310-95D7-BE93092B8E61}) (Version: 7.3.1.4507 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Grand Theft Auto San Andreas (HKLM-x32\...\{2BB114DA-C718-45FE-8AB9-DEFFF0EA5569}_is1) (Version: v1.0/1.1 - Grosses_K)
Grand Theft Auto: Episodes from Liberty City (HKLM-x32\...\{5454083B-1308-4485-BF17-111000028701}) (Version: 1.0.0002.135 - Rockstar Games Inc.) Hidden
Grand Theft Auto: Episodes from Liberty City (HKLM-x32\...\{5454083B-1308-4485-BF17-111000028702}) (Version: 1.0.0002.135 - Rockstar Games Inc.) Hidden
Grand Theft Auto: Episodes from Liberty City (HKLM-x32\...\{5454083B-1308-4485-BF17-111000028703}) (Version: 1.0.0002.135 - Rockstar Games Inc.) Hidden
Grand Theft Auto: Episodes from Liberty City (HKLM-x32\...\{5454083B-1308-4485-BF17-111000028704}) (Version: 1.0.0002.135 - Rockstar Games Inc.) Hidden
Grand Theft Auto: Episodes from Liberty City (HKLM-x32\...\{5454083B-1308-4485-BF17-111000028705}) (Version: 1.0.0002.135 - Rockstar Games Inc.) Hidden
Gwent (HKLM-x32\...\1971477531_is1) (Version: 0.9.24.2.431 - GOG.com)
Half-Life 2 Uncut Complete Edition MULTI-2 1.0 (HKLM-x32\...\Half-Life 2 Uncut Complete Edition MULTI-2 1.0) (Version:  - )
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Human Fall Flat (HKLM-x32\...\1203767418_is1) (Version: 1.2g - GOG.com)
iCloud (HKLM\...\{5BD11939-D2C2-4F1B-AAAF-5ECE19A801F7}) (Version: 7.4.0.111 - Apple Inc.)
INSIDE MULTi14 1.0 (HKLM-x32\...\INSIDE MULTi14 1.0) (Version:  - )
iTunes (HKLM\...\{F0C7385A-9D20-45F3-8101-05D383885180}) (Version: 12.6.1.25 - Apple Inc.)
Jalopy MULTi19 - ElAmigos Version 1.03 (HKLM-x32\...\{31CF1D95-E0B2-4AC2-9DDB-0FE686073D8E}_is1) (Version: 1.03 - Excalibur Games)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\{517CC397-B22F-4593-8DCB-DE72CC541E9A}) (Version: 3.0.1 - Riot Games ) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech)
Mario Kart 8 MULTi8 1.0 (HKLM-x32\...\Mario Kart 8 MULTi8 1.0) (Version: 1.0 - x.X.RIDDICK.X.x)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.163.2 - McAfee, Inc.)
Metal Slug Complete PC 1.0 (HKLM-x32\...\Metal Slug Complete PC) (Version: 1.0 - SNK PLAYMORE)
Microsoft .NET Framework 4.6.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01590 - Microsoft Corporation)
Microsoft .NET Framework 4.6.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01590 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Word Viewer 2003 (HKLM-x32\...\{90850407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\OneDriveSetup.exe) (Version: 18.091.0506.0007 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft)
Mini Metro MULTi36 - ElAmigos Version gamma 34 (HKLM-x32\...\{B2892A71-A725-46A5-8EA9-C8E7C2A7BF4D}_is1) (Version: gamma 34 - Dinosaur Polo Club)
MKVToolNix 9.6.0 (64bit) (HKLM-x32\...\MKVToolNix) (Version: 9.6.0 - Moritz Bunkus)
Movie Maker (HKLM-x32\...\{70C91B91-61E8-4D06-86D6-A9DCC291983A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 41.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 41.0.1 (x86 de)) (Version: 41.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 57.0.2.6549 - Mozilla)
NBA Playgrounds (HKLM-x32\...\NBA Playgrounds_is1) (Version:  - )
Northgard MULTi7 - ElAmigos Version 1.0.8796 (HKLM-x32\...\{A75E7CE5-C3FE-4B34-AA67-8962AD1C8769}_is1) (Version: 1.0.8796 - Shiro Games)
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenIV (HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\OpenIV) (Version: 2.8.703 - .black/OpenIV Team)
OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation)
Opera Stable 54.0.2952.51 (HKLM-x32\...\Opera 54.0.2952.51) (Version: 54.0.2952.51 - Opera Software)
Origin (HKLM-x32\...\Origin) (Version: 10.5.3.59240 - Electronic Arts, Inc.)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
paint.net (HKLM\...\{1F895C18-6A2F-4A9E-BBE9-246783070F37}) (Version: 4.0.16 - dotPDN LLC)
PhoneClean (HKLM-x32\...\PhoneClean) (Version: 5.0.1.0 - iMobie Inc.)
PhotoScape (HKLM-x32\...\PhotoScape) (Version:  - )
Prison Architect MULTi20 - ElAmigos Version 12b (HKLM-x32\...\{C53F1F2A-F731-486B-AC00-89F90EED151E}_is1) (Version: 12b - Introversion Software)
PSD Viewer (HKLM-x32\...\{D8EEDC94-EE82-46A0-A7DB-812E3C6A0A6E}_is1) (Version:  - IdeaMK)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.10-r123135-release - Raptr, Inc)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.87.529.2014 - Realtek)
Resident Evil HD REMASTER MULTi2 1.0 (HKLM-x32\...\Resident Evil HD REMASTER MULTi2 1.0) (Version:  - )
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.63.0 - Samsung Electronics Co., Ltd.)
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.2.18034.11 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.2.18034.11 - Samsung Electronics Co., Ltd.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Spotify (HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\Spotify) (Version: 1.0.84.344.gfc674f6f - Spotify AB)
StarCraft (HKLM-x32\...\StarCraft) (Version:  - Blizzard Entertainment)
StarCraft II (HKLM-x32\...\StarCraft II) (Version:  - Blizzard Entertainment)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Subnautica MULTi33 - ElAmigos Version 59783 (HKLM-x32\...\{6187BFC9-CEFE-4872-AAEF-354DDF956576}_is1) (Version: 59783 - Unknown Worlds Entertainment)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
TEKKEN 7 Digital Deluxe Edition MULTi11 1.0 (HKLM-x32\...\TEKKEN 7 Digital Deluxe Edition MULTi11 1.0) (Version: 1.0 - x.X.RIDDICK.X.x)
The Binding of Isaac Rebirth MULTi3 - ElAmigos version 1.0 u21 (HKLM-x32\...\{16FA778B-E5D3-43A3-80A4-D043BCF67090}_is1) (Version: 1.0 u21 - Nicalis, Inc.)
The Legend of Zelda Breath of the Wild MULTi6 - ElAmigos Version 1.5.0 (HKLM-x32\...\{50A96236-7492-422E-A9E5-E15036F3D137}_is1) (Version: 1.5.0 - Nintendo)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.31.0.0 - GOG.com)
The Witcher 3 Wild Hunt Hearts of Stone DLC Incl. Update 12 MULTi2 1.12 (HKLM-x32\...\The Witcher 3 Wild Hunt Hearts of Stone DLC Incl. Update 12 MULTi2 1.12) (Version:  - )
The Witcher 3 Wild Hunt Hearts of Stone DLC MULTi2 1.10 (HKLM-x32\...\The Witcher 3 Wild Hunt Hearts of Stone DLC MULTi2 1.10) (Version:  - )
Unravel MULTi6 - ElAmigos Version 1.0 (HKLM-x32\...\{AAFE00E6-6E37-4B70-8884-2EC2AF74C23D}_is1) (Version: 1.0 - EA Games)
Uplay (HKLM-x32\...\Uplay) (Version: 4.8 - Ubisoft)
VIDEOBALL (HKLM\...\dmlkZW9iYWxs_is1) (Version: 1 - )
Virtua Tennis 4 Version 1.0 (HKLM-x32\...\{250511B4-1E2A-43A6-A75F-F532366AF52A}_is1) (Version: 1.0 - SEGA)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
Vulkan Run Time Libraries 1.0.17.0 (HKLM\...\VulkanRT1.0.17.0) (Version: 1.0.17.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
WinZip 19.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240E5}) (Version: 19.0.11293 - WinZip Computing, S.L. )

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-783658327-2260165228-4089948070-1000_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-783658327-2260165228-4089948070-1000_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\Alexander Zacharias\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileCoAuthLib64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-783658327-2260165228-4089948070-1000_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-783658327-2260165228-4089948070-1000_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-783658327-2260165228-4089948070-1000_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-783658327-2260165228-4089948070-1000_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-783658327-2260165228-4089948070-1000_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-783658327-2260165228-4089948070-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Keine Datei
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2018-04-23] (Google)
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2018-03-18] (Apple Inc.)
ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2014-06-24] (Safer-Networking Ltd.)
ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2014-06-24] (Safer-Networking Ltd.)
ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2018-07-04] (Avira Operations GmbH & Co. KG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-20] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-20] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2014-10-25] (WinZip Computing, S.L.)
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2018-04-23] (Google)
ContextMenuHandlers4: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2014-10-25] (WinZip Computing, S.L.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-11-02] (Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-06-25] (Dropbox, Inc.)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2014-06-24] (Safer-Networking Ltd.)
ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2014-06-24] (Safer-Networking Ltd.)
ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2018-07-04] (Avira Operations GmbH & Co. KG)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-20] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-20] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2014-10-25] (WinZip Computing, S.L.)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {1B815E21-22B5-400D-9DEB-0BB0DF159855} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Command(1): %windir%\system32\rundll32.exe -> aepdu.dll,AePduRunUpdate -nolegacy
Task: {1B815E21-22B5-400D-9DEB-0BB0DF159855} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Command(2): %windir%\system32\rundll32.exe -> appraiser.dll,DoScheduledTelemetryRun
Task: {252269D2-A1CA-43CE-A456-A2A59D40EBDA} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-05-30] (Dropbox, Inc.)
Task: {26FC845D-F46F-4428-8A5C-5F2D47EE3E9D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {2926C624-ED6F-4D2E-B660-B6B28C34C12E} - System32\Tasks\{F7D10FC2-84FE-49C3-B843-DED607F88B70} => C:\Windows\system32\pcalua.exe -a "D:\Downloads\JDown\AC O GE M2\AC.O.GE_M2\AC.O.GE_M2\Assassin's Creed Origins Gold Edition MULTi2\AC.O.GE_M2.exe" -d "D:\Downloads\JDown\AC O GE M2\AC.O.GE_M2\AC.O.GE_M2\Assassin's Creed Origins Gold Edition MULTi2"
Task: {2BF40A4B-E3A4-4B2C-891E-B3BE3ED646E0} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2018-01-08] (Apple Inc.)
Task: {2EA72B7B-B851-4948-A497-8FB1D66F7E16} - System32\Tasks\{47EBF2D8-EA0D-4E30-BA40-ADE2CD325EA8} => D:\Diablo II\Diablo II.exe [2016-11-17] (Blizzard North)
Task: {31A55520-B148-426E-9387-A7B582ADE88F} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Command(1): %windir%\system32\rundll32.exe -> aepdu.dll,AePduRunUpdate
Task: {31A55520-B148-426E-9387-A7B582ADE88F} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Command(2): %windir%\system32\rundll32.exe -> invagent.dll,RunUpdate
Task: {3AD5DC4A-B821-47E2-9CD7-38304ACF08D3} - System32\Tasks\{6E4D13CC-C316-4E13-8181-629DE1C5FF55} => C:\Windows\system32\pcalua.exe -a "D:\Downloads\JDown\D\D.S.R_M2\D.S.R_M2\Dark Souls Remastered MULTi2\D.S.R_M2.exe" -d "D:\Downloads\JDown\D\D.S.R_M2\D.S.R_M2\Dark Souls Remastered MULTi2"
Task: {3F751853-7C5E-4BC4-92F7-9C3C97DCD102} - System32\Tasks\{F78E286B-7FE6-453E-96D2-007597CF4D00} => C:\Windows\system32\pcalua.exe -a H:\SETUP.EXE -d "C:\Program Files\DAEMON Tools Lite"
Task: {48569590-BFD3-4F81-B0A3-8DAB67DC09B6} - System32\Tasks\{67246B79-F5E9-4164-26B1-09A69A60DDBC} => C:\Users\ALEXAN~1\AppData\Local\Penebeh\updtask.exe <==== ACHTUNG
Task: {4B16F283-B602-4DCA-88A6-71EC1E0A1ABB} - System32\Tasks\Opera scheduled Autoupdate 1430313722 => C:\Program Files (x86)\Opera\launcher.exe [2018-07-06] (Opera Software)
Task: {56B5F0E6-1FD3-447F-83D5-EABC62F79885} - System32\Tasks\{A234B6B3-1A0D-44BE-97DC-0BF9D4CF4736} => C:\Windows\system32\pcalua.exe -a D:\EFLC\Regsetup.exe -d D:\EFLC
Task: {5D8B8A32-F1AC-425C-956F-39916126215D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {67E5F055-C29C-4A96-BBDE-8781E3AC0C5C} - System32\Tasks\{5504F763-57D0-4F2A-8448-64B58039D867} => C:\Windows\system32\pcalua.exe -a "D:\Downloads\JDown\extracted\G.V.DDE_M11\Grand Theft Auto V Digital Deluxe Edition MULTi11\G.V.DDE_M11.exe" -d "D:\Downloads\JDown\extracted\G.V.DDE_M11\Grand Theft Auto V Digital Deluxe Edition MULTi11"
Task: {818C8CB3-DED7-4903-B4E9-7EB3C959E365} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated)
Task: {826AB30B-FE3C-46F4-B083-F7130DC3B124} - System32\Tasks\{E82DB303-4081-4163-9883-2DB6BC5B2092} => C:\Windows\system32\pcalua.exe -a E:\SETUP.EXE -d "C:\Program Files\DAEMON Tools Lite"
Task: {8579F201-7E17-45A5-9006-B0B32ED3C548} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-07-10] (Adobe Systems Incorporated)
Task: {9CF40909-5DB6-40C0-8C78-964DE1DCA914} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-14] (Google Inc.)
Task: {A2714C96-46D7-4D86-AD0D-DFD06A979DA0} - System32\Tasks\{35DB0978-6F6A-4AD8-BFD0-8499611423A1} => C:\Windows\system32\pcalua.exe -a "C:\Users\Alexander Zacharias\Downloads\SmartSwitchPC_34setup.exe" -d "C:\Users\Alexander Zacharias\Downloads"
Task: {A7696F9D-59C6-4DA6-8640-8EF5DA108A76} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2017-11-02] (Advanced Micro Devices, Inc.)
Task: {AF540F96-A52E-4EDE-B5C6-180A1B267DF0} - System32\Tasks\Avira Browser Safety Updater Task => C:\Program Files (x86)\Avira\Browser Safety\AviraBrowserSafetyUpdater.exe [2015-03-11] (Avira Operations GmbH & Co. KG)
Task: {BCDDF86B-0EB7-4CA8-A0BF-1F993FB1D774} - System32\Tasks\AdobeAAMUpdater-1.0-Maschine-Alexander Zacharias => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated)
Task: {CB0557A1-1869-45DC-A719-EDC846F51D42} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_134_Plugin.exe [2018-07-10] (Adobe Systems Incorporated)
Task: {CB49E5BE-2E82-4FF1-A9AA-9D0C6001089C} - System32\Tasks\{13145D07-2BA7-48DD-951D-33AD8A86B894} => C:\Windows\system32\pcalua.exe -a "D:\Downloads\JDown\extracted\SW.II.DE_M7\Shadow Warrior 2 Deluxe Edition MULTi7\SW.II.DE_M7.exe" -d "D:\Downloads\JDown\extracted\SW.II.DE_M7\Shadow Warrior 2 Deluxe Edition MULTi7"
Task: {CC81E1BA-D614-4B64-8FB2-5EC88EBFE3D6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-14] (Google Inc.)
Task: {D8A4538D-E195-4357-B912-A91BBBD5203E} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2018-07-04] (Avira Operations GmbH & Co. KG)
Task: {E7926CEF-482F-40DB-AB71-C48589C53CAC} - \CCleanerSkipUAC -> Keine Datei <==== ACHTUNG
Task: {E8CDF6DD-64AB-48E8-A52C-777DB4892248} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {EAF2C8B2-668F-483D-ADBD-9DF3262915A8} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-05-30] (Dropbox, Inc.)
Task: {EB342947-17AA-4A8A-8DB2-B43CE40E7AB8} - System32\Tasks\AdobeGCInvoker-1.0-Maschine-Alexander Zacharias => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-05-11] (Adobe Systems, Incorporated)
Task: {EEA50151-E951-4D6C-8E9B-3499C0E3B18B} - System32\Tasks\{8656C1DC-3641-4D68-9CBD-5A79879B229D} => C:\Windows\system32\pcalua.exe -a "C:\Users\Alexander Zacharias\AppData\Roaming\istartsurf\UninstallManager.exe" -c -ptid=smt

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\{67246B79-F5E9-4164-26B1-09A69A60DDBC}.job => C:\Users\ALEXAN~1\AppData\Local\Penebeh\updtask.exe <==== ACHTUNG

==================== Verknüpfungen & WMI ========================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)


Shortcut: C:\Users\Alexander Zacharias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JoWooD\Die Völker 2 Gold Edition\Die Völker 2 Gold Edition online registrieren.lnk -> hxxp://register.jowood.de/?gamenr=5
Shortcut: C:\Users\Alexander Zacharias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JoWooD\Die Völker 2 Gold Edition\JoWooD Productions Website besuchen.lnk -> hxxp://www.jowood.com

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-06-10 01:41 - 2016-06-10 01:41 - 000491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2017-09-06 15:39 - 2016-12-12 03:47 - 000068016 _____ () C:\Program Files (x86)\iMobie\PhoneClean\iTunesMobileDevice.dll
2018-03-16 15:19 - 2018-03-16 15:19 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2018-03-16 15:19 - 2018-03-16 15:19 - 000088888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-07-25 13:25 - 2017-07-25 13:25 - 000015360 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2017-07-25 13:25 - 2017-07-25 13:25 - 002519040 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2018-06-27 00:04 - 2018-06-22 21:15 - 004608856 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\libglesv2.dll
2018-06-27 00:04 - 2018-06-22 21:15 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\libegl.dll
2018-07-11 15:13 - 2015-05-14 11:54 - 000422600 _____ () C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe
2018-06-27 00:03 - 2018-06-25 19:24 - 001107272 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_watchdog.dll
2018-06-27 00:03 - 2018-06-25 19:24 - 002079048 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_crashpad.dll
2018-05-16 09:47 - 2018-06-25 19:29 - 000021328 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000022384 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000135656 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 001881448 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000023400 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:24 - 000111576 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes35.dll
2018-05-16 09:47 - 2018-06-25 19:24 - 000103392 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000068952 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000079688 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:24 - 000399832 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom35.dll
2018-05-16 09:47 - 2018-06-25 19:24 - 000024544 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000043496 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:24 - 000021472 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000124896 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000114664 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000392024 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000028520 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000024552 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000175584 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000024544 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000026080 _____ () C:\Program Files (x86)\Dropbox\Client\win32job.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000023904 _____ () C:\Program Files (x86)\Dropbox\Client\winshell.compiled._winshell.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000048616 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000057824 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000022360 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000023392 _____ () C:\Program Files (x86)\Dropbox\Client\crashpad.compiled._Crashpad.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000069992 _____ () C:\Program Files (x86)\Dropbox\Client\winenumhandles.compiled._WinEnumHandles.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000025960 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:27 - 003865936 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000088904 _____ () C:\Program Files (x86)\Dropbox\Client\sip.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 001800528 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 001960272 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000028640 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:27 - 000155480 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000521552 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:27 - 000051032 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineCore.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000043352 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:27 - 000130896 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:27 - 000220504 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000205144 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000060896 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000056160 _____ () C:\Program Files (x86)\Dropbox\Client\winrpcserver.compiled._RPCServer.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000024040 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000024424 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32.compiled._winffi_user32.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000023400 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi.compiled._winffi_iphlpapi.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000022376 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror.compiled._winffi_winerror.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000023400 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet.compiled._winffi_wininet.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000028016 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:24 - 000348128 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.cp35-win32.pyd
2018-05-16 09:47 - 2018-06-25 19:29 - 000024432 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000026464 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:24 - 000036312 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2018-05-16 09:47 - 2018-06-25 19:29 - 000023400 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.advapi32.compiled._winffi_advapi32.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000181064 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2018-05-16 09:47 - 2018-06-25 19:29 - 000031584 _____ () C:\Program Files (x86)\Dropbox\Client\wind3d11.compiled._wind3d11.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000024384 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.DLL
2018-06-27 00:03 - 2018-06-25 19:26 - 001638208 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2018-05-16 09:47 - 2018-06-25 19:29 - 000026984 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000546640 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.cp35-win32.pyd
2018-06-27 00:03 - 2018-06-25 19:26 - 000359760 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.cp35-win32.pyd
2016-09-28 00:33 - 2014-05-13 12:04 - 000109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2016-09-28 00:33 - 2014-05-13 12:04 - 000416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2016-09-28 00:33 - 2014-05-13 12:04 - 000167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2016-09-28 00:33 - 2012-08-23 10:38 - 000574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2016-09-28 00:33 - 2012-04-03 17:06 - 000565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2016-06-11 02:45 - 2018-07-01 15:26 - 085627792 _____ () C:\Users\Alexander Zacharias\AppData\Roaming\Spotify\libcef.dll
2016-06-11 02:45 - 2018-07-01 15:26 - 003867536 _____ () C:\Users\Alexander Zacharias\AppData\Roaming\Spotify\libglesv2.dll
2016-06-11 02:45 - 2018-07-01 15:26 - 000088464 _____ () C:\Users\Alexander Zacharias\AppData\Roaming\Spotify\libegl.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

Da befinden sich 7914 mehr Seiten.

IE trusted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\webcompanion.com -> hxxp://webcompanion.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-783658327-2260165228-4089948070-1000\...\123simsen.com -> www.123simsen.com

Da befinden sich 7914 mehr Seiten.


==================== Hosts Inhalt: ==========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 04:34 - 2017-04-06 05:15 - 000453296 ____R C:\Windows\system32\Drivers\etc\hosts

0.0.0.1	mssplus.mcafee.com
127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123haustiereundmehr.com
127.0.0.1	123moviedownload.com

Da befinden sich 15557 zusätzliche Einträge.


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-783658327-2260165228-4089948070-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Alexander Zacharias\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
MSCONFIG\startupreg: ApplePhotoStreams => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: BingSvc => C:\Users\Alexander Zacharias\AppData\Local\Microsoft\BingSvc\BingSvc.exe
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
MSCONFIG\startupreg: EvtMgr6 => C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
MSCONFIG\startupreg: GalaxyClient => C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe /launchViaAutoStart
MSCONFIG\startupreg: iCloudDrive => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
MSCONFIG\startupreg: iCloudPhotos => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
MSCONFIG\startupreg: iCloudServices => "C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe"
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
MSCONFIG\startupreg: PDFPrint => "C:\Program Files (x86)\PDF24\pdf24.exe"
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: Raptr => "C:\Program Files (x86)\Raptr\raptrstub.exe" --startup
MSCONFIG\startupreg: SDTray => "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent
MSCONFIG\startupreg: World of Warplanes => "D:\warplanes\WargamingGameUpdater.exe"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [{F6EC27A3-7952-4896-AAFA-048EDDC2592F}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{1E3B2F5E-EBCE-48E8-8FDD-84FB1BE08F76}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{F22D5CFD-5019-4828-969C-5D52EB00584B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{EA94BD01-85D7-42CE-9996-8C00B3452F56}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{D2298097-86EF-4C43-B2DD-ED44DAC8D3F9}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{AD5A64FF-DF3E-477C-AD8B-A3E55F84AB1C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{89990E3A-1504-42AA-BFD9-B9B7671F1813}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{2C463D93-544C-42A6-9C84-C45308088B9D}C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{004CA135-8957-4CF6-A551-1DF5D89689C9}C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [{5E32DAB1-43A4-4A47-9F07-BEA070C0892B}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{7C45CBE1-14AE-4AFF-8C78-7E67B8E907A2}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [TCP Query User{F6D1B3DB-4BE8-42FD-A606-086713EC44EC}C:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe] => (Allow) C:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe
FirewallRules: [UDP Query User{604C2E51-E84A-46E6-BF99-6C2BCBE2E6D7}C:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe] => (Allow) C:\program files (x86)\gog.com\the witcher 2 enhanced edition\bin\witcher2.exe
FirewallRules: [TCP Query User{028E5A5D-3BFB-4F6F-9863-9E4713BC6E3D}D:\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) D:\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [UDP Query User{C715F300-747E-45FB-A712-BD906CFBB076}D:\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) D:\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [TCP Query User{6E4292F8-D09E-45F6-8B5B-5C3B4248A507}C:\program files (x86)\dishonored die maske des zorns game of the year edition\binaries\win32\dishonored.exe] => (Block) C:\program files (x86)\dishonored die maske des zorns game of the year edition\binaries\win32\dishonored.exe
FirewallRules: [UDP Query User{1E562022-A9D7-421A-A74E-7201835851B1}C:\program files (x86)\dishonored die maske des zorns game of the year edition\binaries\win32\dishonored.exe] => (Block) C:\program files (x86)\dishonored die maske des zorns game of the year edition\binaries\win32\dishonored.exe
FirewallRules: [{68B2B51F-B316-4BA0-8B31-2B94222DB589}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{153DD1C3-33F2-4548-9521-46F1BBD3D223}] => (Allow) D:\Downloads\JDown\extracted\DLL-Files Fixer 2.7.72.2072  mit.Crack\DLL-Files Fixer 2.7.72.2072  mit Crack\DLL-Files Fixer 2.7.72.2072 Crack\DLLFixer.exe
FirewallRules: [{6880F8FD-9918-474E-BBC3-7D195D6E10CF}] => (Allow) D:\Downloads\JDown\extracted\DLL-Files Fixer 2.7.72.2072  mit.Crack\DLL-Files Fixer 2.7.72.2072  mit Crack\DLL-Files Fixer 2.7.72.2072 Crack\DLLFixer.exe
FirewallRules: [{07B3BD19-ECBB-4972-AEE0-C3275142E6A1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{4CF332CF-4C31-4F9C-969A-80A5B78498FC}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{A79DBEC7-CF37-4DA9-9A9C-9EEAB369D29B}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{BDAD20AA-4CF3-4552-97C7-3A649C6E4D14}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{9FF2C0DA-BC44-40D8-9F39-6D63DD16823B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{52DA8A7A-12D9-41A3-8891-3A2299906E8D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{42E21FAB-BB9E-4CBD-91BE-DAD1F82B094E}] => (Allow) D:\StarCraft II\StarCraft II.exe
FirewallRules: [{36154686-4350-4389-9E9B-52EE99BBF78C}] => (Allow) D:\StarCraft II\StarCraft II.exe
FirewallRules: [TCP Query User{A12E248C-E2E7-45A2-8C48-A7B670EB17FA}D:\starcraft ii\versions\base32283\sc2.exe] => (Allow) D:\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [UDP Query User{3084580B-C2A7-4ADC-826E-FB3754353B0F}D:\starcraft ii\versions\base32283\sc2.exe] => (Allow) D:\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [{9FADB32C-FCAE-4EC4-B3D0-A8B828FA224B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [TCP Query User{99F2B3B3-E4D9-49C6-AC09-7AADAA387A65}D:\grand theft auto v\gta5.exe] => (Block) D:\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{8902702E-5546-4AE1-8F94-9D3473D1CC0E}D:\grand theft auto v\gta5.exe] => (Block) D:\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{C5C76496-1A31-44E0-B781-0CE026E83646}C:\program files (x86)\far cry 4\bin\farcry4.exe] => (Block) C:\program files (x86)\far cry 4\bin\farcry4.exe
FirewallRules: [UDP Query User{7E7AA794-19F4-42A4-85B1-8367FE5359DB}C:\program files (x86)\far cry 4\bin\farcry4.exe] => (Block) C:\program files (x86)\far cry 4\bin\farcry4.exe
FirewallRules: [{117BD36B-81D9-41B0-B9A4-BD882D80965F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{70D8F669-81F0-49DF-9CAA-69B6D7B5379E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C22BC38F-68D7-4452-94B1-7D04937951D7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{EABF3B4C-AE6F-4593-B8C9-6F1D2256CC25}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{F8A552DD-A708-49F7-A2DB-F3373ABA09FF}C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe] => (Block) C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe
FirewallRules: [UDP Query User{DC3C541D-44D7-4D4A-B063-ECFED4CE56F3}C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe] => (Block) C:\program files (x86)\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe
FirewallRules: [{BACC4412-35F9-4283-B7E7-1F251798FA44}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{0ACAAD95-4E02-46AE-A16D-E294A6C66C18}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [TCP Query User{C95A0B6C-0E7B-4137-A97A-412B53EAC42F}C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [UDP Query User{2BA17B9F-640F-447B-A0E5-6C5CF3E8A3C1}C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [{3D6D8982-41B0-42EA-9F59-7B095D22D273}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{390C4473-C29D-4ED3-9803-3F4D846ABA82}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{1993C94E-0A38-48BC-88FF-811425263D8A}D:\mass effect 3 - ultimate edition\binaries\win32\masseffect3.exe] => (Block) D:\mass effect 3 - ultimate edition\binaries\win32\masseffect3.exe
FirewallRules: [UDP Query User{44BAB1F2-C35B-4587-BD67-464F7D36ECDB}D:\mass effect 3 - ultimate edition\binaries\win32\masseffect3.exe] => (Block) D:\mass effect 3 - ultimate edition\binaries\win32\masseffect3.exe
FirewallRules: [TCP Query User{CEA8C61A-AFD7-433A-84B1-CAD25E16F4F5}D:\fifa 15 ultimate team edition\fifa15.exe] => (Block) D:\fifa 15 ultimate team edition\fifa15.exe
FirewallRules: [UDP Query User{BE45F8E7-A274-4268-9901-A6E93F6A1FE4}D:\fifa 15 ultimate team edition\fifa15.exe] => (Block) D:\fifa 15 ultimate team edition\fifa15.exe
FirewallRules: [TCP Query User{362749EC-1786-4C6A-9790-B16F54EDEF47}D:\halo spartan strike\data\game.exe] => (Block) D:\halo spartan strike\data\game.exe
FirewallRules: [UDP Query User{8D3C4A50-BC36-4450-A2A9-634745C061F1}D:\halo spartan strike\data\game.exe] => (Block) D:\halo spartan strike\data\game.exe
FirewallRules: [TCP Query User{C92AE54D-6562-4637-8A19-7DFC78744D9F}D:\brothers in arms - hell's highway\binaries\biahh.exe] => (Block) D:\brothers in arms - hell's highway\binaries\biahh.exe
FirewallRules: [UDP Query User{384DE5F4-AD23-4CEE-958F-9BF2F111A5B6}D:\brothers in arms - hell's highway\binaries\biahh.exe] => (Block) D:\brothers in arms - hell's highway\binaries\biahh.exe
FirewallRules: [TCP Query User{70B515B2-1673-4A8A-883C-08D18E260881}C:\program files (x86)\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{B69D6282-EA44-484C-919E-755D87A37518}C:\program files (x86)\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe
FirewallRules: [{D71D34EB-DBD9-4686-A0C5-8FFBC5F4602D}] => (Allow) D:\Origins\Battlefield 4\bf4_x86.exe
FirewallRules: [{F852AE98-FC0D-46A5-A0AB-1D2451DC1E20}] => (Allow) D:\Origins\Battlefield 4\bf4_x86.exe
FirewallRules: [{BF2FB0FE-92C9-4573-A75C-6B28AC57EBD9}] => (Allow) D:\Origins\Battlefield 4\bf4.exe
FirewallRules: [{B3F91BF4-ED8B-42B9-974B-B0C16AD8CAC2}] => (Allow) D:\Origins\Battlefield 4\bf4.exe
FirewallRules: [{2E6B8EA4-EAD2-45BF-966A-13167008F28E}] => (Allow) D:\steam\steamapps\common\Source SDK Base 2007\hl2.exe
FirewallRules: [{614D2C85-26DA-4C9D-A51B-94B110F86435}] => (Allow) D:\steam\steamapps\common\Source SDK Base 2007\hl2.exe
FirewallRules: [TCP Query User{0219F886-3C14-4E6D-A686-ED186FCA5607}C:\program files (x86)\return to castle wolfenstein\wolfmp.exe] => (Block) C:\program files (x86)\return to castle wolfenstein\wolfmp.exe
FirewallRules: [UDP Query User{D18E6B0C-C640-4B13-8BEC-3779D213A935}C:\program files (x86)\return to castle wolfenstein\wolfmp.exe] => (Block) C:\program files (x86)\return to castle wolfenstein\wolfmp.exe
FirewallRules: [{24C9F473-071A-4A24-9A90-70B99A65DF11}] => (Allow) D:\steam\steamapps\common\Age of Mythology\Launcher.exe
FirewallRules: [{E6B10749-4CF0-40E9-B0E2-62166B79B9A8}] => (Allow) D:\steam\steamapps\common\Age of Mythology\Launcher.exe
FirewallRules: [TCP Query User{A5B1DA85-7C11-4689-8755-E8DA569419EF}D:\steam\steamapps\common\age of mythology\aomx.exe] => (Allow) D:\steam\steamapps\common\age of mythology\aomx.exe
FirewallRules: [UDP Query User{012A6347-0A75-4CDD-901A-B200DDB75004}D:\steam\steamapps\common\age of mythology\aomx.exe] => (Allow) D:\steam\steamapps\common\age of mythology\aomx.exe
FirewallRules: [{F3A7F439-A1F2-4ED3-9BFC-45824C631326}] => (Allow) D:\EFLC\LaunchEFLC.exe
FirewallRules: [{6947D906-FD5B-41A1-88FB-69FF9EB35FCF}] => (Allow) D:\EFLC\LaunchEFLC.exe
FirewallRules: [{B69E5179-FDBA-4E28-BEBF-84A9DAEC6145}] => (Allow) D:\steam\steamapps\common\Besiege\Besiege.exe
FirewallRules: [{C9E7189A-A5B8-45ED-AAC1-7D0F8EE65301}] => (Allow) D:\steam\steamapps\common\Besiege\Besiege.exe
FirewallRules: [{19E67709-B05F-4E5F-96E1-0DCC2044A250}] => (Allow) D:\steam\steamapps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [{D57B1E3E-F64C-4B5E-A5FB-86E5FFEB18B8}] => (Allow) D:\steam\steamapps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [{3E4ADE43-E5EC-4F08-91DC-DF8996E28C2A}] => (Allow) D:\Origins\STAR WARS Battlefront Beta\starwarsbattlefront.exe
FirewallRules: [{B6A3FA80-6E8E-402B-A0AF-DF2261D3CCF9}] => (Allow) D:\Origins\STAR WARS Battlefront Beta\starwarsbattlefront.exe
FirewallRules: [{3BE34DAA-9BD7-4050-91B6-C6D056010745}] => (Allow) D:\steam\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{DBCFE1D3-0489-4EAA-84B8-B087B84B6A27}] => (Allow) D:\steam\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{2606FFFF-7631-4DB2-89DD-31E2C05216C6}] => (Allow) D:\steam\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{8A57925F-13DC-4B9E-BC60-E2AB1CC1BEF6}] => (Allow) D:\steam\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{03759FA2-127F-4581-B9CA-9F12A28045EB}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{6B7D00E5-6BA0-42E9-8CF2-56F44882083D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{96E2B3A2-5B5E-484E-A107-A8FEA5FA8FD6}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{7F8A640B-CD7D-4B25-8733-63DF5A5D0ECF}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{F7A4F1AD-E961-438A-89F2-505A12E4A1B9}] => (Allow) D:\Origins\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{22731222-BA75-404D-B01C-25AE8DF05C0A}] => (Allow) D:\Origins\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{3CEF31D5-D7A4-45B0-97A9-4C61C197FA54}] => (Allow) D:\Origins\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{63E76065-6E74-4E61-B0B0-9D928BB54E47}] => (Allow) D:\Origins\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [TCP Query User{32B68A39-B20F-4F45-9C03-17434B854737}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{DFE804BF-7B3A-4554-8FF3-5B8928952410}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [{93F9C93F-6767-42D0-B43E-EC5AE6C473CC}] => (Allow) C:\Program Files (x86)\Heroes of the Storm\Versions\Base39445\HeroesOfTheStorm_x64.exe
FirewallRules: [{EFF2CE12-4AB8-4690-B6F1-F302680D9200}] => (Allow) C:\Program Files (x86)\Heroes of the Storm\Versions\Base39445\HeroesOfTheStorm_x64.exe
FirewallRules: [{527E76FC-1280-4B84-8BE6-9B69E1C51B6E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{05BE6C69-8EF6-463A-A3B9-9A3AD872393F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{14CEA93E-3B04-4F75-B4DE-6B9D8E434F1E}D:\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) D:\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [UDP Query User{875E0228-1CB9-4F78-B9AA-529D8F5B08CA}D:\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) D:\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [TCP Query User{792AA84D-A8F0-42E6-B8B6-461EBF6FDC74}D:\fifa 15 ultimate team edition\fifa15.exe] => (Block) D:\fifa 15 ultimate team edition\fifa15.exe
FirewallRules: [UDP Query User{10980AEE-4C1D-479A-9365-ECFA793BBA53}D:\fifa 15 ultimate team edition\fifa15.exe] => (Block) D:\fifa 15 ultimate team edition\fifa15.exe
FirewallRules: [{EB8998D5-CC80-4B01-97A2-D307CF79B6CA}] => (Allow) D:\Origins\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{7E24280B-956A-4CD4-8A22-E5071A8EDBB7}] => (Allow) D:\Origins\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{568DED9E-DF41-476C-BE63-4C3F03F9BA69}] => (Allow) D:\Origins\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{4F8A8265-DFB4-404D-96AE-01C741EF6E78}] => (Allow) D:\Origins\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{42D3813E-B0DA-49C5-9CFE-5DF7F47AD0E6}] => (Allow) D:\steam\steamapps\common\Age2HD\Launcher.exe
FirewallRules: [{58D33827-A8FD-4233-92D1-21F4FA09B1BA}] => (Allow) D:\steam\steamapps\common\Age2HD\Launcher.exe
FirewallRules: [TCP Query User{DDC86873-DC5C-4228-A365-CD34E4F91DE5}D:\steam\steamapps\common\don't starve together\bin\dontstarve_steam.exe] => (Allow) D:\steam\steamapps\common\don't starve together\bin\dontstarve_steam.exe
FirewallRules: [UDP Query User{B83CB259-1128-4257-808C-A45B1B43D107}D:\steam\steamapps\common\don't starve together\bin\dontstarve_steam.exe] => (Allow) D:\steam\steamapps\common\don't starve together\bin\dontstarve_steam.exe
FirewallRules: [{92068090-51C3-4076-895A-4D268BE4C6F3}] => (Allow) C:\Program Files (x86)\Heroes of the Storm\Versions\Base39709\HeroesOfTheStorm_x64.exe
FirewallRules: [{858BF904-EA53-44EC-8A81-87AE5CD6484C}] => (Allow) C:\Program Files (x86)\Heroes of the Storm\Versions\Base39709\HeroesOfTheStorm_x64.exe
FirewallRules: [{F178072A-4F66-4CDF-99CF-1BEB7F2F2091}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{FAADA2F5-D18C-4861-87D3-A2AC9A7B0A8B}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{A9FB73F9-3CA7-4906-883E-21E97B4D08DC}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{7D555A3C-CDED-4496-8CFC-9FA48DBF092D}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{34C0AD3A-E168-489E-A05F-CB5F3F1A8CF8}] => (Allow) D:\StarCraft II\Versions\Base39576\SC2_x64.exe
FirewallRules: [{FEDAFD88-1DF0-40F9-8A9C-C85DE2653CCC}] => (Allow) D:\StarCraft II\Versions\Base39576\SC2_x64.exe
FirewallRules: [TCP Query User{772793E0-74E1-48DF-A092-2A9A439A48C5}D:\origins\battlefield 4\bf4.exe] => (Allow) D:\origins\battlefield 4\bf4.exe
FirewallRules: [UDP Query User{402A1342-2DD3-4687-89E8-AF359AB343EF}D:\origins\battlefield 4\bf4.exe] => (Allow) D:\origins\battlefield 4\bf4.exe
FirewallRules: [TCP Query User{ED68EFC4-402A-4B10-BECC-5FEA78E98FD7}C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [UDP Query User{64FC7339-F2E9-4BE5-9BBB-54E4B48291E6}C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [{66B05192-7199-4EF9-A5E7-BD5C4D4797D4}] => (Allow) D:\steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{F09C7353-9C45-442E-B747-2632F797FD68}] => (Allow) D:\steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{9C27DE10-BB31-45F7-B3E9-0BEDE5972219}] => (Allow) D:\steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{76637A46-A020-42B7-B567-2AC711FF0448}] => (Allow) D:\steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{69EF402F-6E0B-465E-8255-BCD662A07F04}] => (Allow) D:\steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{72C06C35-C927-4278-B8EB-14CCE5B2BB03}] => (Allow) D:\steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{2428C6C0-5224-41BE-B603-6ABA08523932}] => (Allow) D:\steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{70B95864-279A-4CF4-8DC0-7BDDB4776FDA}] => (Allow) D:\steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{6D4A6C2C-5D2F-4A75-AFC5-11FAFAE76E86}] => (Allow) D:\steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{867B736A-0E6F-4E30-BC2E-E2D33FA8E33A}] => (Allow) D:\steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{5F78E7FA-6B47-478E-BEF7-03CCCE874835}] => (Allow) D:\steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{6ABCCBB9-7817-4D16-A153-A60625384C6F}] => (Allow) D:\steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [TCP Query User{DE6CC119-25AB-4A9F-BAE8-D1BEC5F030FE}D:\blackops.exe] => (Allow) D:\blackops.exe
FirewallRules: [UDP Query User{A7A2B2CB-BD23-4C90-847A-40FDA7F0FCF7}D:\blackops.exe] => (Allow) D:\blackops.exe
FirewallRules: [TCP Query User{51A307E4-DA67-41E0-83AB-67F19ABCD46C}D:\blackopsmp.exe] => (Allow) D:\blackopsmp.exe
FirewallRules: [UDP Query User{3F046D9C-4570-4AEB-958B-0A1ED2C562CD}D:\blackopsmp.exe] => (Allow) D:\blackopsmp.exe
FirewallRules: [TCP Query User{C9AC12DB-E36E-46BE-A3AD-3FAB2827A977}D:\black ops\blackops.exe] => (Allow) D:\black ops\blackops.exe
FirewallRules: [UDP Query User{7637BE5C-8F90-4CE7-A21F-3F9BA5A251B2}D:\black ops\blackops.exe] => (Allow) D:\black ops\blackops.exe
FirewallRules: [TCP Query User{5A8AE41B-02B7-4CC8-854F-418FC1DD1A2D}D:\black ops\blackopsmp.exe] => (Allow) D:\black ops\blackopsmp.exe
FirewallRules: [UDP Query User{86AEC465-CF5B-40BE-BB23-0C6AAB7362CD}D:\black ops\blackopsmp.exe] => (Allow) D:\black ops\blackopsmp.exe
FirewallRules: [{B5597EAB-DBAC-4CCA-98B1-B0D4C605217C}] => (Allow) D:\steam\steamapps\common\Call of Duty Black Ops\BlackOpsMP.exe
FirewallRules: [{02FAE5BB-0F47-4CCB-A959-8B6F5B7DEA7E}] => (Allow) D:\steam\steamapps\common\Call of Duty Black Ops\BlackOpsMP.exe
FirewallRules: [{9BE5356C-1F26-4B7A-90CB-9D29053E35E8}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{F199E498-0483-442C-BF86-6717C5A7C777}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{BEAB8B8D-8BB4-43F0-81C7-4AE36A9820E8}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{9AA2BE43-F48B-4470-947F-5A2E64007306}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{9ED88E7C-5B19-4563-8171-200AAC627CC9}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{512778C8-0A2E-4931-A253-76DEE5460B25}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{DADCEE5D-30AF-4E33-969D-14E6714DC604}] => (Allow) C:\Users\Alexander Zacharias\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{23068AFB-ADD4-4046-8FCF-1AA0E8504564}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{F47F7E67-2799-4BCF-812E-1C53C06D62DA}] => (Allow) LPort=2869
FirewallRules: [{E94F44A9-15B0-4200-A305-B71C966070A8}] => (Allow) LPort=1900
FirewallRules: [{6AB07BB7-10DC-41EB-9181-A02254FB3AF4}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [TCP Query User{25E7F81E-3881-42EE-ADF4-7F4C013D7F81}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe
FirewallRules: [UDP Query User{6A9E9A60-319B-4C25-8340-BEA1AC709E27}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe
FirewallRules: [{F611E983-7D17-41F5-A7D4-4B6ECF562793}] => (Allow) D:\StarCraft II\Versions\Base42932\SC2_x64.exe
FirewallRules: [{A2B30E41-DB61-440F-B068-B06A11030D0A}] => (Allow) D:\StarCraft II\Versions\Base42932\SC2_x64.exe
FirewallRules: [TCP Query User{688B8766-E68C-49A2-907E-F5175686A231}C:\users\alexander zacharias\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\alexander zacharias\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{4DFBD916-B929-4BCE-8E12-8E0917136116}C:\users\alexander zacharias\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\alexander zacharias\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{C17C8937-A204-4FF9-9B7D-AC0AEE5BA526}C:\users\alexander zacharias\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\alexander zacharias\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{3E034CDF-F9CB-41A6-A2BA-FF904AACAAAD}C:\users\alexander zacharias\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\alexander zacharias\appdata\roaming\spotify\spotify.exe
FirewallRules: [{7004BDFD-7E8C-44FB-B644-54CC6C210C6F}] => (Allow) D:\StarCraft II\Versions\Base43478\SC2_x64.exe
FirewallRules: [{30C469A9-7247-4796-99B2-4C46A3812231}] => (Allow) D:\StarCraft II\Versions\Base43478\SC2_x64.exe
FirewallRules: [{99CA0B83-4733-43D7-ADEE-861D489A0001}] => (Allow) D:\StarCraft II\Versions\Base44983\SC2_x64.exe
FirewallRules: [{6B41AF59-0ECD-4D16-9E75-CDEE2FD5F672}] => (Allow) D:\StarCraft II\Versions\Base44983\SC2_x64.exe
FirewallRules: [TCP Query User{D86E6F1B-2F17-4577-98A8-DD3D198BCA76}D:\dying light\dyinglightgame.exe] => (Block) D:\dying light\dyinglightgame.exe
FirewallRules: [UDP Query User{83098961-7A3D-4CB7-9D61-1FFF2C0A963D}D:\dying light\dyinglightgame.exe] => (Block) D:\dying light\dyinglightgame.exe
FirewallRules: [{40F01090-077B-478E-8D58-473DF7279A56}] => (Allow) D:\Grand Theft Auto V\GTA5.exe
FirewallRules: [{B2424313-71BE-46FE-959F-A91F0BF655F1}] => (Allow) D:\Grand Theft Auto V\GTA5.exe
FirewallRules: [{A00CEF2D-6381-437C-9A29-C86FA53B8B31}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{E2D6B660-1028-4B33-A7B6-04421752A3B5}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{A72D80D4-AB28-4677-ADDF-A109840C6145}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{9D8A0827-F413-4890-8414-D2C21B6E0220}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{86D0D1C5-3381-44C2-8400-3EEB24F6C73D}] => (Allow) D:\Origins\FIFA 17 DEMO\FIFASetup\fifaconfig.exe
FirewallRules: [{0CFFC9E8-96E8-4670-B60F-76DA850B3290}] => (Allow) D:\Origins\FIFA 17 DEMO\FIFASetup\fifaconfig.exe
FirewallRules: [TCP Query User{C3E7B108-591D-46DD-87AC-385D1B04A090}D:\origins\fifa 17 demo\fifa17_demo.exe] => (Allow) D:\origins\fifa 17 demo\fifa17_demo.exe
FirewallRules: [UDP Query User{691AAEA8-A6D9-477B-88CB-A7016CF242DF}D:\origins\fifa 17 demo\fifa17_demo.exe] => (Allow) D:\origins\fifa 17 demo\fifa17_demo.exe
FirewallRules: [{39685898-7E9F-4FC4-9003-6E36F0962A8E}] => (Allow) D:\StarCraft II\Versions\Base46154\SC2_x64.exe
FirewallRules: [{D427C953-57B4-447D-830F-54C921CD31FB}] => (Allow) D:\StarCraft II\Versions\Base46154\SC2_x64.exe
FirewallRules: [TCP Query User{DA377059-01A5-4761-A764-033FE664FFC7}D:\mafia iii\launcher.exe] => (Allow) D:\mafia iii\launcher.exe
FirewallRules: [UDP Query User{E696C15B-BDFA-4C35-A327-00E98B458A5E}D:\mafia iii\launcher.exe] => (Allow) D:\mafia iii\launcher.exe
FirewallRules: [TCP Query User{9A88621E-7000-44DF-805B-197E010CFA6B}D:\mafia iii\mafia3.exe] => (Allow) D:\mafia iii\mafia3.exe
FirewallRules: [UDP Query User{FD8B3103-8A75-4F73-B160-24895BF6E782}D:\mafia iii\mafia3.exe] => (Allow) D:\mafia iii\mafia3.exe
FirewallRules: [{345D4749-EA94-4F1A-9BB4-275446528964}] => (Allow) D:\warplanes\WoWPLauncher.exe
FirewallRules: [{53DF2F96-DAAC-4DDA-9F6B-6A93FA6A3DE7}] => (Allow) D:\warplanes\WoWPLauncher.exe
FirewallRules: [{14ECB4F5-F715-430E-BAFC-89F104371AB4}] => (Allow) D:\warplanes\worldofwarplanes.exe
FirewallRules: [{1AD9544F-47C7-405D-9F85-B6666C67CA07}] => (Allow) D:\warplanes\worldofwarplanes.exe
FirewallRules: [{8885F1A0-2E9C-4F72-8595-9BDB90126540}] => (Allow) D:\StarCraft II\Versions\Base47185\SC2_x64.exe
FirewallRules: [{EA798C9A-C01F-4D8F-A026-0410FC019F97}] => (Allow) D:\StarCraft II\Versions\Base47185\SC2_x64.exe
FirewallRules: [{900B334A-5FF9-45A6-A5DE-A08255046383}] => (Allow) D:\steam\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{DFB17C0A-BCA2-4D01-8803-ED03E9455C6A}] => (Allow) D:\steam\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{36AA0C7D-D5A2-499B-BD39-BE2F56B50A24}] => (Allow) D:\steam\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{79D56D65-BAB6-4DB5-9E6A-3A2BE9605A91}] => (Allow) D:\steam\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [TCP Query User{C76AC988-1A9D-4992-81E4-6A680E6A5A9D}C:\program files (x86)\battle.net\battle.net.8142\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8142\battle.net.exe
FirewallRules: [UDP Query User{852E2B8C-6803-44B3-BD79-91C4F3260C40}C:\program files (x86)\battle.net\battle.net.8142\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8142\battle.net.exe
FirewallRules: [{9309196F-BB27-4505-9BAD-3381A2AA83F7}] => (Allow) D:\StarCraft II\Versions\Base48258\SC2_x64.exe
FirewallRules: [{755A01E6-A538-48C4-9DB9-2A741927CF4F}] => (Allow) D:\StarCraft II\Versions\Base48258\SC2_x64.exe
FirewallRules: [{93BCF80C-AE51-4394-A55B-8A83EF10E4F9}] => (Allow) D:\StarCraft II\Versions\Base49716\SC2_x64.exe
FirewallRules: [{C32BC8A8-F11A-4891-A7E5-9FADACFABADD}] => (Allow) D:\StarCraft II\Versions\Base49716\SC2_x64.exe
FirewallRules: [{92BB17FD-A08D-4968-9907-5D2C8921114B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{899469A5-1D3C-4E88-8295-0407BB3EE062}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [TCP Query User{2FC012DE-8911-4DA3-8529-D1A347D8A47E}C:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe
FirewallRules: [UDP Query User{ED522CF7-1984-4AD3-B525-703266310939}C:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe
FirewallRules: [TCP Query User{9F6D6759-3315-4EF9-B2C3-0C2B3D9C2BCE}D:\hearthstone\hearthstone.exe] => (Allow) D:\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{3F3AD299-7F20-49EE-8BB1-FE5F4E86C391}D:\hearthstone\hearthstone.exe] => (Allow) D:\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{F80F6A37-D5CC-4D03-9F67-39BCF501E670}C:\program files (x86)\dishonored die maske des zorns game of the year edition\binaries\win32\dishonored.exe] => (Allow) C:\program files (x86)\dishonored die maske des zorns game of the year edition\binaries\win32\dishonored.exe
FirewallRules: [UDP Query User{02274647-2399-4410-8804-C9A261DB74FC}C:\program files (x86)\dishonored die maske des zorns game of the year edition\binaries\win32\dishonored.exe] => (Allow) C:\program files (x86)\dishonored die maske des zorns game of the year edition\binaries\win32\dishonored.exe
FirewallRules: [TCP Query User{46F18F43-2A97-4CF6-A3B3-F214619A119F}C:\gog games\star wars - battlefront 2\gamedata\battlefrontii.exe] => (Allow) C:\gog games\star wars - battlefront 2\gamedata\battlefrontii.exe
FirewallRules: [UDP Query User{F99D3642-F604-45BF-9BB4-EE36203BD3DB}C:\gog games\star wars - battlefront 2\gamedata\battlefrontii.exe] => (Allow) C:\gog games\star wars - battlefront 2\gamedata\battlefrontii.exe
FirewallRules: [TCP Query User{527F9B16-CBAC-47F4-828C-1BBDED99F7A3}D:\star wars - battlefront 2\gamedata\battlefrontii.exe] => (Allow) D:\star wars - battlefront 2\gamedata\battlefrontii.exe
FirewallRules: [UDP Query User{50A37328-E98A-4553-B8B6-FB8203C69256}D:\star wars - battlefront 2\gamedata\battlefrontii.exe] => (Allow) D:\star wars - battlefront 2\gamedata\battlefrontii.exe
FirewallRules: [TCP Query User{0EEC53EE-6AF8-4A4B-807A-E0DC1DB15B4B}D:\battlefield 1\bf1.exe] => (Block) D:\battlefield 1\bf1.exe
FirewallRules: [UDP Query User{E951F64B-2E23-4458-B038-8CED557C7A6E}D:\battlefield 1\bf1.exe] => (Block) D:\battlefield 1\bf1.exe
FirewallRules: [{D2F58D11-2AC6-417D-A81C-9861DCFF3529}] => (Allow) C:\Program Files (x86)\StarCraft\StarCraft.exe
FirewallRules: [{4F8D1513-4F8B-4020-8301-6E280BDE7F82}] => (Allow) C:\Program Files (x86)\StarCraft\StarCraft.exe
FirewallRules: [{F9E8B9D8-1E65-49F9-B322-AE11AE528204}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{80CBD058-C6A9-4382-B353-77C26F01CE0C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{CE817797-7C4C-440A-AF54-1F1EE16AC902}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{F8AE5FD7-6463-4B0D-BEA9-7F401492D21A}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{B3BB4610-4DC7-4B02-8E9D-FB5EA4C41AF1}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{677C317E-1A56-430B-B561-1B73A1D606E2}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{A253B1FA-F31E-4E6D-A5E2-E617BE7467CA}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [TCP Query User{FC89444A-4861-4957-9FD5-100FA9CEDB08}D:\prototype 2\prototype2.exe] => (Block) D:\prototype 2\prototype2.exe
FirewallRules: [UDP Query User{3E4E2705-AC31-4B2F-8BF9-69B728702CE7}D:\prototype 2\prototype2.exe] => (Block) D:\prototype 2\prototype2.exe
FirewallRules: [TCP Query User{EF451355-5576-4AB0-844C-B1463B8E5A23}D:\total war shogun 2 gold edition\shogun2.exe] => (Block) D:\total war shogun 2 gold edition\shogun2.exe
FirewallRules: [UDP Query User{3B1FA8FE-4BF5-45EA-A080-AB4A5B53DCB8}D:\total war shogun 2 gold edition\shogun2.exe] => (Block) D:\total war shogun 2 gold edition\shogun2.exe
FirewallRules: [TCP Query User{526415D2-A9D6-4182-9499-95C48C98E16A}D:\halo spartan strike\data\game.exe] => (Allow) D:\halo spartan strike\data\game.exe
FirewallRules: [UDP Query User{70470D22-F288-486E-B629-A67EAA09883B}D:\halo spartan strike\data\game.exe] => (Allow) D:\halo spartan strike\data\game.exe
FirewallRules: [TCP Query User{9D12B11F-3C0E-49D0-8E61-893768BD118C}D:\assassins creed iii washington edition\ac3sp.exe] => (Block) D:\assassins creed iii washington edition\ac3sp.exe
FirewallRules: [UDP Query User{93CF79C4-6F4A-4E85-8109-F12AD027D87B}D:\assassins creed iii washington edition\ac3sp.exe] => (Block) D:\assassins creed iii washington edition\ac3sp.exe
FirewallRules: [{3C156DE9-414F-462A-8213-F954FE9810ED}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{B40EC619-C0D4-4F55-AD8D-A40147FA1036}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{163B6F6F-2A7A-43F1-817A-9E6AB15D05F9}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{013D5FAE-DEBA-4FA5-8768-64C4051EFEE6}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [TCP Query User{CF9ACE9C-C91E-4181-BBC7-C2E94792F607}D:\prey 2017\binaries\danielle\x64\release\prey.exe] => (Block) D:\prey 2017\binaries\danielle\x64\release\prey.exe
FirewallRules: [UDP Query User{33CCC183-FABB-4456-BB3C-E18492C3431C}D:\prey 2017\binaries\danielle\x64\release\prey.exe] => (Block) D:\prey 2017\binaries\danielle\x64\release\prey.exe
FirewallRules: [{51E66C2F-A5D1-4FF2-BAF8-94C098F4AC37}] => (Allow) D:\StarCraft II\Versions\Base53644\SC2_x64.exe
FirewallRules: [{D488442E-73EA-4DDB-A074-0CE520A89D37}] => (Allow) D:\StarCraft II\Versions\Base53644\SC2_x64.exe
FirewallRules: [TCP Query User{09D9C731-A9FB-4FD2-A42C-A0154864075D}D:\downloads\jdown\extracted\server tool\game\gangbeasts.exe] => (Allow) D:\downloads\jdown\extracted\server tool\game\gangbeasts.exe
FirewallRules: [UDP Query User{7D3273F6-031C-4D6D-BBBD-439AAB34FF31}D:\downloads\jdown\extracted\server tool\game\gangbeasts.exe] => (Allow) D:\downloads\jdown\extracted\server tool\game\gangbeasts.exe
FirewallRules: [TCP Query User{9F0BCE7F-5FFA-48CF-B62A-2533AAA4A503}D:\gang beasts v0.5.5\gang beasts.exe] => (Allow) D:\gang beasts v0.5.5\gang beasts.exe
FirewallRules: [UDP Query User{75D51712-DBF4-44C9-8B4A-745D034B66B6}D:\gang beasts v0.5.5\gang beasts.exe] => (Allow) D:\gang beasts v0.5.5\gang beasts.exe
FirewallRules: [{2DDEC6DD-AE6A-43A7-AB30-ECA2593B80A6}] => (Allow) D:\StarCraft II\Versions\Base54518\SC2_x64.exe
FirewallRules: [{D84B7F1B-5E35-41BA-BECE-844872B1DB35}] => (Allow) D:\StarCraft II\Versions\Base54518\SC2_x64.exe
FirewallRules: [TCP Query User{DC6C0F55-8093-47DF-84E2-5F2C99A73624}D:\anno 1701 ad\anno1701.exe] => (Allow) D:\anno 1701 ad\anno1701.exe
FirewallRules: [UDP Query User{807F2937-39B9-471C-8199-678EC0EB5BB7}D:\anno 1701 ad\anno1701.exe] => (Allow) D:\anno 1701 ad\anno1701.exe
FirewallRules: [TCP Query User{B56C1B77-90E1-44B8-BE49-C6524608F817}D:\anno 1701 ad\anno1701addon.exe] => (Block) D:\anno 1701 ad\anno1701addon.exe
FirewallRules: [UDP Query User{91C51DB7-4DD7-44E6-BF7C-FF5C1EADD465}D:\anno 1701 ad\anno1701addon.exe] => (Block) D:\anno 1701 ad\anno1701addon.exe
FirewallRules: [TCP Query User{A85D37D3-9C72-400A-9D82-C7AD73AA7B7E}D:\anno 1404 gold edition\tools\addonweb.exe] => (Block) D:\anno 1404 gold edition\tools\addonweb.exe
FirewallRules: [UDP Query User{242B2D55-5AC8-49CE-94A5-F9F0AF978276}D:\anno 1404 gold edition\tools\addonweb.exe] => (Block) D:\anno 1404 gold edition\tools\addonweb.exe
FirewallRules: [TCP Query User{6367F5CD-B7FF-4BAB-874B-308DE088B0AF}D:\games\total war - warhammer\warhammer.exe] => (Block) D:\games\total war - warhammer\warhammer.exe
FirewallRules: [UDP Query User{9ECF39FC-C629-404D-9DCE-06C0E36C80E0}D:\games\total war - warhammer\warhammer.exe] => (Block) D:\games\total war - warhammer\warhammer.exe
FirewallRules: [{44394C7E-9ED2-4E63-BA76-5A6B5C8A1165}] => (Allow) D:\StarCraft II\Versions\Base56787\SC2_x64.exe
FirewallRules: [{0E0AB14C-6234-4E2D-9545-912E20A20CD3}] => (Allow) D:\StarCraft II\Versions\Base56787\SC2_x64.exe
FirewallRules: [TCP Query User{F2C8E4F4-6C23-459E-AADA-AF898879BB8D}D:\assassin's creed ii\assassinscreediigame.exe] => (Allow) D:\assassin's creed ii\assassinscreediigame.exe
FirewallRules: [UDP Query User{68832700-F0A1-40ED-B0BB-96D318B82D07}D:\assassin's creed ii\assassinscreediigame.exe] => (Allow) D:\assassin's creed ii\assassinscreediigame.exe
FirewallRules: [{60FD0A25-B985-4677-B6D8-6AB9B8EC165D}] => (Allow) D:\StarCraft II\Versions\Base57507\SC2_x64.exe
FirewallRules: [{AB34DD6E-72FC-4621-9C4B-A9694904B09E}] => (Allow) D:\StarCraft II\Versions\Base57507\SC2_x64.exe
FirewallRules: [{B38BB3A8-9334-40D0-9D7F-48F4E85B50D5}] => (Allow) D:\Origins\FIFA 18 DEMO\FIFASetup\fifaconfig.exe
FirewallRules: [{94B82192-B334-46E0-BE55-F51B83A125A4}] => (Allow) D:\Origins\FIFA 18 DEMO\FIFASetup\fifaconfig.exe
FirewallRules: [TCP Query User{E9C43D89-8942-4FC9-8B8B-99EC4A0C295E}D:\origins\fifa 18 demo\fifa18_demo.exe] => (Allow) D:\origins\fifa 18 demo\fifa18_demo.exe
FirewallRules: [UDP Query User{0D051E31-6565-4185-A205-FF1CA11842EE}D:\origins\fifa 18 demo\fifa18_demo.exe] => (Allow) D:\origins\fifa 18 demo\fifa18_demo.exe
FirewallRules: [TCP Query User{4ACD9124-D4EF-4805-B0E3-46770A4533D8}D:\tom clancys ghost recon wildlands\grw.exe] => (Block) D:\tom clancys ghost recon wildlands\grw.exe
FirewallRules: [UDP Query User{B9FCEF37-0F4F-4161-A733-EFB47C69DC0F}D:\tom clancys ghost recon wildlands\grw.exe] => (Block) D:\tom clancys ghost recon wildlands\grw.exe
FirewallRules: [TCP Query User{B38D7EBF-6B57-48E3-AA28-9A5B209694D3}D:\total war warhammer ii\warhammer2.exe] => (Block) D:\total war warhammer ii\warhammer2.exe
FirewallRules: [UDP Query User{E48B5D61-BC4D-4C2E-9785-D004DD094206}D:\total war warhammer ii\warhammer2.exe] => (Block) D:\total war warhammer ii\warhammer2.exe
FirewallRules: [{71FA5043-A3E9-4C9C-B152-5035265AA9F0}] => (Allow) D:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{43A5FD92-DD74-448B-A818-96ED3911E1A1}] => (Allow) D:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{210F3EA1-94C7-41DA-93E9-46EAED979181}D:\fifa 18 multi2\fifa18.exe] => (Block) D:\fifa 18 multi2\fifa18.exe
FirewallRules: [UDP Query User{856DFD20-5F90-473B-A32D-4EBBC59AE857}D:\fifa 18 multi2\fifa18.exe] => (Block) D:\fifa 18 multi2\fifa18.exe
FirewallRules: [{B490C250-6091-4CEF-B36C-895721E3ACEF}] => (Allow) D:\StarCraft II\Versions\Base58400\SC2_x64.exe
FirewallRules: [{A3622475-E36C-4821-B703-81E753267883}] => (Allow) D:\StarCraft II\Versions\Base58400\SC2_x64.exe
FirewallRules: [{4715C0B9-7496-40D1-8CE8-9B20241C4E8A}] => (Allow) D:\StarCraft II\Versions\Base59587\SC2_x64.exe
FirewallRules: [{740C1493-B2F8-4769-995D-5E1936D4AC63}] => (Allow) D:\StarCraft II\Versions\Base59587\SC2_x64.exe
FirewallRules: [{CC618BAA-75D7-475A-B038-CBAB2F448B21}] => (Allow) D:\steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{8202F0E9-169B-4F85-855A-1B97113AFC86}] => (Allow) D:\steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [TCP Query User{1B2FC9D3-FE6F-432E-A300-4A834B704248}D:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{40526EAE-6E2E-4589-A0C4-7C6B171208A4}D:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{23D3604D-AF51-45E7-B70A-78EFA5AAB2FE}D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{3661555D-0FD7-4368-8F2B-DF9C7A856568}D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{60D1452C-FF5F-4B27-A748-E5086B2D309B}] => (Allow) D:\StarCraft II\Versions\Base60321\SC2_x64.exe
FirewallRules: [{CD950301-A150-4BEB-A731-CFB03A3275E5}] => (Allow) D:\StarCraft II\Versions\Base60321\SC2_x64.exe
FirewallRules: [TCP Query User{C55AA4D2-54A0-4510-8604-B24242034023}D:\subnautica\subnautica.exe] => (Allow) D:\subnautica\subnautica.exe
FirewallRules: [UDP Query User{F891C419-824E-465D-AC3F-780D10E7EC94}D:\subnautica\subnautica.exe] => (Allow) D:\subnautica\subnautica.exe
FirewallRules: [TCP Query User{98CDEB72-6CC1-405B-B9C2-2A79FEA67809}D:\kingdom come deliverance\bin\win64\kingdomcome.exe] => (Block) D:\kingdom come deliverance\bin\win64\kingdomcome.exe
FirewallRules: [UDP Query User{E0D2631D-05F5-4E20-8F1A-3685E8EACAF2}D:\kingdom come deliverance\bin\win64\kingdomcome.exe] => (Block) D:\kingdom come deliverance\bin\win64\kingdomcome.exe
FirewallRules: [{59907D26-C8EA-4D1D-B3F6-ABA33AC54230}] => (Allow) D:\StarCraft II\Versions\Base62347\SC2_x64.exe
FirewallRules: [{9A11201E-74B9-4709-BAA5-E0F38B05B705}] => (Allow) D:\StarCraft II\Versions\Base62347\SC2_x64.exe
FirewallRules: [TCP Query User{D284B116-57A9-472E-9517-B99E70469D48}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{562C8A4F-4EB6-4CA1-81B1-B32E7473611D}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{94185241-4BE3-4A5E-8BF2-8C1058DF11C5}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{F2813733-1DC4-493C-B79A-325DAD55DE26}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{4FA0939D-FD95-47FF-B095-68056FB1509C}] => (Allow) D:\steam\steamapps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [{AF65705A-E17B-4066-9363-3971848BA969}] => (Allow) D:\steam\steamapps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [TCP Query User{E776C9A1-0498-45E2-B493-EFFD16F012E8}C:\users\alexander zacharias\appdata\local\jdownloader v2.0\jdownloader2.exe] => (Allow) C:\users\alexander zacharias\appdata\local\jdownloader v2.0\jdownloader2.exe
FirewallRules: [UDP Query User{F93214F7-802B-47E4-98E6-FC44620AB877}C:\users\alexander zacharias\appdata\local\jdownloader v2.0\jdownloader2.exe] => (Allow) C:\users\alexander zacharias\appdata\local\jdownloader v2.0\jdownloader2.exe
FirewallRules: [{7829D585-FECA-431C-B1F5-4B7CBF76F63B}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
FirewallRules: [{3159145A-A0E0-44C9-B513-BCFDE49E4D41}] => (Allow) D:\steam\steamapps\common\TotallyAccurateBattlegrounds\TotallyAccurateBattlegrounds.exe
FirewallRules: [{E152AC4D-03C6-467C-A170-B7703BFB36CA}] => (Allow) D:\steam\steamapps\common\TotallyAccurateBattlegrounds\TotallyAccurateBattlegrounds.exe
FirewallRules: [{EC0A1A3C-2F23-49A7-AEE8-5F693C5D4C66}] => (Allow) D:\steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{8287ECF4-6846-45C9-B158-4C5EA6686630}] => (Allow) D:\steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{41D40C9A-0C60-43C6-AE3A-4B185C2B925A}] => (Allow) C:\Program Files (x86)\Opera\53.0.2907.99\opera.exe
FirewallRules: [{A904E865-9675-4877-9F6B-080206EB4E98}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{14D7DBF8-225A-42EE-A24C-D06A5D3098D3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{A40D6BD9-11C5-4649-8180-66ECFFBF934F}C:\users\alexander zacharias\appdata\local\jdownloader v2.0\jdownloader2.exe] => (Allow) C:\users\alexander zacharias\appdata\local\jdownloader v2.0\jdownloader2.exe
FirewallRules: [UDP Query User{13CC713D-0D57-4CB1-B7C5-AB86724FB77C}C:\users\alexander zacharias\appdata\local\jdownloader v2.0\jdownloader2.exe] => (Allow) C:\users\alexander zacharias\appdata\local\jdownloader v2.0\jdownloader2.exe
FirewallRules: [{1D986D71-3C99-4882-A456-24773A99C707}] => (Allow) C:\Program Files (x86)\Opera\54.0.2952.51\opera.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

==================== Wiederherstellungspunkte =========================


==================== Fehlerhafte Geräte im Gerätemanager =============

Name: USB (Universal Serial Bus)-Controller
Description: USB (Universal Serial Bus)-Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Xbox 360 Wireless Receiver for Windows
Description: Xbox 360 Wireless Receiver for Windows
Class Guid: {d61ca365-5af4-4486-998b-9db4734c6ca3}
Manufacturer: Microsoft
Service: xusb21
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: SM-Bus-Controller
Description: SM-Bus-Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (07/11/2018 03:46:06 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Alexander Zacharias\Downloads\esetsmartinstaller_deu.exe". Fehler in
Manifest- oder Richtliniendatei "" in Zeile .
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_41e554362bd82458.manifest.

Error: (07/11/2018 03:13:24 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Alexander Zacharias\Downloads\esetsmartinstaller_deu.exe". Fehler in
Manifest- oder Richtliniendatei "" in Zeile .
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_41e554362bd82458.manifest.

Error: (07/11/2018 03:13:22 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Alexander Zacharias\Downloads\esetsmartinstaller_deu.exe". Fehler in
Manifest- oder Richtliniendatei "" in Zeile .
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_41e554362bd82458.manifest.

Error: (07/11/2018 02:06:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4243

Error: (07/11/2018 02:06:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4243

Error: (07/11/2018 02:06:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (07/11/2018 01:59:19 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (07/11/2018 01:58:41 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Fehler bei der Windows-Lizenzaktivierung. Fehler 0x80070002.


Systemfehler:
=============
Error: (07/11/2018 03:15:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Treiber konnte nicht geladen werden.

Error: (07/11/2018 03:15:44 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\ALEXAN~1\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.

Error: (07/11/2018 03:15:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Treiber konnte nicht geladen werden.

Error: (07/11/2018 03:15:43 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\ALEXAN~1\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.

Error: (07/11/2018 03:15:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Treiber konnte nicht geladen werden.

Error: (07/11/2018 03:15:43 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\ALEXAN~1\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.

Error: (07/11/2018 03:14:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Treiber konnte nicht geladen werden.

Error: (07/11/2018 03:14:02 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\ALEXAN~1\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.


CodeIntegrity:
===================================

Date: 2015-07-10 16:51:03.720
Description: 
Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

Date: 2015-07-10 16:51:03.705
Description: 
Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

Date: 2015-07-10 16:50:53.418
Description: 
Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

Date: 2015-07-10 16:50:53.401
Description: 
Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Prozentuale Nutzung des RAM: 46%
Installierter physikalischer RAM: 8135.24 MB
Verfügbarer physikalischer RAM: 4349.95 MB
Summe virtueller Speicher: 16268.68 MB
Verfügbarer virtueller Speicher: 11316.71 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:238.37 GB) (Free:23.41 GB) NTFS
Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:61.41 GB) NTFS
Drive e: (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive f: (Volume 2) (Fixed) (Total:452.66 GB) (Free:191.09 GB) NTFS
Drive i: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]

\\?\Volume{429c1a48-0f01-11e7-b9e5-806e6f6e6963}\ (PQSERVICE) (Fixed) (Total:13 GB) (Free:2.06 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: A991883A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=238.4 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 599BF171)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 28514BEE)
Partition 1: (Not Active) - (Size=13 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=452.7 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         

Alt 11.07.2018, 15:02   #5
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Zip Datei von DirectPay GmbH & Co. KG - Standard

Zip Datei von DirectPay GmbH & Co. KG



Zitat:
DLL-Files Fixer 2.7.72.2072 Crack\DLLFixer.exe
Lesestoff:
Illegale Software: Cracks, Keygens und Co

Bitte lesen => http://www.trojaner-board.de/95393-c...-software.html

Es geht weiter wenn du alles Illegale entfernt hast.

Bei wiederholten Crack/Keygen Verstößen behalte ich es mir vor, den Support einzustellen, d.h. Hilfe nur noch bei der Datensicherung und Neuinstallation des Betriebssystems.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 11.07.2018, 16:06   #6
Zeddius
 
Zip Datei von DirectPay GmbH & Co. KG - Standard

Zip Datei von DirectPay GmbH & Co. KG



Hallo, ich konnte die angegebene Datei im Verzeichnis Programme x86 leider nicht finden. Aber die Einwände verstehe ich natürlich. Da in diesem Thread mein Klarname auftaucht, bitte ich darum, diesen zu löschen.

Alt 11.07.2018, 21:29   #7
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Zip Datei von DirectPay GmbH & Co. KG - Standard

Zip Datei von DirectPay GmbH & Co. KG



Nachträgliche Namensschwärzung macht nur unser Admin siehe https://www.trojaner-board.de/108422...-anfragen.html

Ich sehe auch gerade, dass der Crack nur ein verwaister Eintrag im Windows-Firewall-Regelwerk war.



Avira bitte komplett deinstallieren

Von Avira wird hier schon schon lange abgeraten, außerdem will ich für eine Analyse und Bereinigung so wenig Störquellen wie nur möglich. Zum Abschluss gibt es Hinweise zur Absicherung deines Windows-Systems.

Wir deinstallieren dann am besten auch gleich weiteren unnötigen oder veralteten Krempel.

Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:


    Adobe Acrobat Reader DC - Deutsch

    Adobe Flash Player 30 NPAPI

    Avira

    Avira Antivirus

    Avira Browser Safety

    CCleaner

    McAfee Security Scan Plus

    Microsoft Office Word Viewer 2003

    OpenOffice 4.1.1

    QuickTime 7

    WinRAR 5.21 (64-Bit)

    WinZip 19.0


  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 





Gib Bescheid wenn das weg ist; wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen, Infos folgen dann im Abschlussposting. Bitte JETZT nix mehr ohne Absprache installieren!
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu Zip Datei von DirectPay GmbH & Co. KG
andere, anderen, ausführbare, ausführbare datei, datei, dateien, fertig, gefunde, mail, natürlich, nicht sicher, nötig, paypal, problem, quara, quarantäne, schnell, schonmal, schritte, sorge, sorgen, spezielle, thread, zip datei, zip-datei




Ähnliche Themen: Zip Datei von DirectPay GmbH & Co. KG


  1. Online Pay GmbH zip datei geöffnet ! Trojaner ?
    Plagegeister aller Art und deren Bekämpfung - 21.02.2017 (15)
  2. Directpay 24 Virus
    Plagegeister aller Art und deren Bekämpfung - 07.01.2017 (7)
  3. Zip-Datei aus Anhang der Online Pay GmbH auf Mac geöffnet
    Alles rund um Mac OSX & Linux - 14.11.2016 (7)
  4. Directpay zip mit Iphone versucht zu öffnen
    Smartphone, Tablet & Handy Security - 03.10.2016 (1)
  5. Directpay AG Email, Betrug
    Smartphone, Tablet & Handy Security - 17.06.2016 (0)
  6. Zip-datei DirectPay
    Log-Analyse und Auswertung - 02.06.2016 (9)
  7. Trojaner durch Directpay Email
    Plagegeister aller Art und deren Bekämpfung - 14.05.2016 (22)
  8. Inkasso DirectPay AG auf Android Handy geöffnet Zip&Datei
    Smartphone, Tablet & Handy Security - 10.04.2016 (2)
  9. Windows 7: Datei mit Virus entpackt: "21.03.2016 Beauftragter Rechtsanwalt Directpay AG.zip"
    Log-Analyse und Auswertung - 04.04.2016 (26)
  10. Trojaner von Directpay AG heruntergeladen
    Log-Analyse und Auswertung - 06.10.2015 (13)
  11. Bereinigung Trojanerproblem DirectPay durch schrauber
    Lob, Kritik und Wünsche - 06.09.2015 (1)
  12. Windows Vista; Trojaner von Directpay AG; Zip-Datei mit exe. anhang geöffnet
    Plagegeister aller Art und deren Bekämpfung - 05.05.2015 (7)
  13. Inkasso Bank-Pay GmbH
    Diskussionsforum - 05.05.2015 (4)
  14. DirectPay Zip Datei Handy Trojaner Hilfe!
    Log-Analyse und Auswertung - 28.04.2015 (3)
  15. Trojaner im zip-Ordner von Directpay GmbH via Mail geöffnet und ausgeführt
    Log-Analyse und Auswertung - 20.04.2015 (11)
  16. Zip-Datei von Inkasso Directpay ausgeführt
    Log-Analyse und Auswertung - 30.03.2015 (19)
  17. Rechtsanwalt-Mail von Directpay: zip-Datei geöffnet
    Plagegeister aller Art und deren Bekämpfung - 26.03.2015 (1)

Zum Thema Zip Datei von DirectPay GmbH & Co. KG - Hallo, ich habe dieses Problem an sich hier schon gefunden, aber wollte nochmal meinen speziellen Fall schildern: Da ich schon mit einer ausstehenden Forderung von Paypal gerechnet habe, habe ich - Zip Datei von DirectPay GmbH & Co. KG...
Archiv
Du betrachtest: Zip Datei von DirectPay GmbH & Co. KG auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.