|
Mülltonne: Google Ads ÜberschwemmungWindows 7 Beiträge, die gegen unsere Regeln verstoßen haben, solche, die die Welt nicht braucht oder sonstiger Müll landet hier in der Mülltonne... |
16.01.2020, 15:37 | #1 |
| Google Ads Überschwemmung Hallo! Seit heute ist Google ein Graus. Ich weiß nicht, ob es ein Chrome Update gab, oder ob ich mir was eingefangen habe, jedenfalls bekomme ich - egal nach was ich suche - sechs bis sieben Ads angezeigt, bevor ich zu dem Ergebnis komme, das ich eigentlich möchte. Die Ads werden mir aber erst nach knapp einer Sekunde angezeigt. Für einen Bruchteil schauen die Google Ergebnisse aus wie immer. Auch wenn ich nach Bildern suche.. Ich suche zum Beispiel nach "Baum". Dann bekomme ich in der Bildersuche zuerst 6-7 Ads angezeigt und dann erst entsprechende Bilder. Könnt ihr mir da helfen? Was braucht ihr von mir? Ich kann mich daran erinnern, dass es mal ein Tool gab, dass die Brwoser nach Toolbars usw. gecheckt hat, allerdings fällt mir da der Name nicht mehr ein. |
16.01.2020, 15:46 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Ads ÜberschwemmungLesestoff: Hinweise für Hilfensuchende Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten? Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
16.01.2020, 16:16 | #3 |
| Google Ads Überschwemmung Hallo Cosinus,
__________________hier meine Logfiles: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-01-2020 durchgeführt von chris (Administrator) auf DESKTOP-PG57P95 (LENOVO 9541) (16-01-2020 15:56:23) Gestartet von C:\Users\chris\Downloads Geladene Profile: chris & carol (Verfügbare Profile: chris & carol) Platform: Windows 10 Pro Version 1903 18362.592 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Chrome Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (1&1 Mail & Media GmbH) C:\Program Files\WindowsApps\4659BB81.WEB.DEMail_3.31.1.0_x64__9r8rjdwa12808\Uimam.UwpMail.App.exe (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc\AdobeNotificationClient.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Cisco Video Technologies Israel Ltd. -> Cisco) C:\Users\chris\AppData\Local\Cisco\VideoGuardPlayer\VideoGuardMonitor\CiscoVideoGuardMonitor.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrB.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel(R) Software Development Products -> ) C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Users\carol\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.People_10.1909.2812.0_x64__8wekyb3d8bbwe\PeopleApp.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19081.22010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12001.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe (Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe (Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe (Node.js Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe (Node.js Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (PACE Anti-Piracy, Inc. -> PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe (Siber Systems -> ) C:\Program Files\Siber Systems\GoodSync\gs-server.exe (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-11-21] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [5462496 2018-01-14] (Realtek Semiconductor Corp. -> Realtek semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-05-21] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13886208 2015-05-21] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-05-21] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-05-21] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6261760 2020-01-07] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2084920 2019-09-27] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-21] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5011504 2019-12-02] (Adobe Inc. -> Adobe Systems Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation) HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518144\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518703\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518160\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518740\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3288016 2019-12-16] (Valve -> Valve Corporation) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\Run: [VideoGuardMonitor] => C:\Users\chris\AppData\Local\Cisco\VideoGuardPlayer\VideoGuardMonitor\CiscoVideoGuardMonitor.exe [2345736 2018-04-17] (Cisco Video Technologies Israel Ltd. -> Cisco) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5553712 2019-12-02] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-11-26] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\Run: [Amazon Photos] => C:\Users\chris\AppData\Local\Amazon Drive\AmazonPhotos.exe [9658024 2020-01-13] (Amazon Services LLC -> Amazon.com Inc.) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3288016 2019-12-16] (Valve -> Valve Corporation) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\Run: [VideoGuardMonitor] => C:\Users\chris\AppData\Local\Cisco\VideoGuardPlayer\VideoGuardMonitor\CiscoVideoGuardMonitor.exe [2345736 2018-04-17] (Cisco Video Technologies Israel Ltd. -> Cisco) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5553712 2019-12-02] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-11-26] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\Run: [Amazon Photos] => C:\Users\chris\AppData\Local\Amazon Drive\AmazonPhotos.exe [9658024 2020-01-13] (Amazon Services LLC -> Amazon.com Inc.) HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-1188302669-1672055750-2685224995-1002\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-11-26] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1188302669-1672055750-2685224995-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518540\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-11-26] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1188302669-1672055750-2685224995-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518540\...\RunOnce: [Application Restart #0] => PackagedCWALauncher.exe SpotifyAB.SpotifyMusic_zpdnekdrzrea0!Spotify "Spotify.exe" Spotify.exe --autostart HKU\S-1-5-21-1188302669-1672055750-2685224995-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518540\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe [2487352 2019-09-27] (Adobe Inc. -> Adobe Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.117\Installer\chrmstp.exe [2020-01-08] (Google LLC -> Google LLC) IFEO\SppExtComObj.exe: [Debugger] SppExtComObjPatcher.exe Startup: C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2019-11-14] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Keine Datei) Startup: C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2019-08-16] () Startup: C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2018-03-07] ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) GroupPolicy: Beschränkung ? <==== ACHTUNG FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0203F3F0-9682-4248-8051-1B7F61FDEA1B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-10-14] (HP Inc. -> HP Inc.) Task: {069F5BC9-3FF9-4FCE-B257-2A8BD78AD0A0} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {0722BEF3-08EB-44CF-B937-B35822B55353} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {09AA56C7-94FB-4153-AABA-0FA92F0A3D2C} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {113A861A-F615-4EBB-AE5A-C3DA0D31103B} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-03-29] (Dropbox, Inc -> Dropbox, Inc.) Task: {15D0F62D-FF44-4711-A953-E460DA046581} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {188655F9-0463-4CC0-891D-6C6BF9662165} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe [3157872 2017-03-23] (Easeware Technology Limited -> Easeware) Task: {194B3987-47F3-4107-B51F-1EA27FDB1E4D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.) Task: {1B5A39F6-47CC-44A4-B569-E0753EE9A122} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [238968 2019-06-14] (HP Inc. -> HP Inc.) Task: {2B4C859A-5029-4F94-BCE4-A829E76D5A30} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.) Task: {30BE9875-9F1F-4536-B8E7-46FB705E2098} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK Task: {472A3893-FDCB-4A4F-AECF-BEC18BD274A6} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1179648 2016-03-22] () [Datei ist nicht signiert] Task: {477FEDE5-56FD-4781-93A4-F39F87BF73EB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [145272 2019-10-31] (HP Inc. -> HP Inc.) Task: {4A9D76CE-EF2A-497A-A553-8DC122DA97A3} - System32\Tasks\R@1n-KMS\Office16ProPlus => wmic path SoftwareLicensingProduct where (ID="d450596f-894d-49e0-966a-fd39ed4c4c64") call Activate Task: {4C1604D6-1B19-4254-9028-32D5DB452B79} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24625520 2020-01-07] (Microsoft Corporation -> Microsoft Corporation) Task: {4D400DCD-4A29-4452-B5C5-5096927EEB3D} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {4F3D4078-BE0F-44E2-8BFA-4A5E6E109238} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.) Task: {50953FDB-6787-4E05-8C80-3AAB7D232EA3} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5550A030-C0F5-4180-A2C2-710D6595FB44} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-christian.hempfling@googlemail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) <==== ACHTUNG Task: {5A9C9FF3-970D-4F5B-B205-81E686EEB38D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2019-12-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5ACA8190-E3A1-4214-91F8-F953097971FD} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6148B3EF-0135-44C7-BEDA-8F330AAB00EE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-07-14] (Google Inc -> Google Inc.) Task: {6DA5A979-3999-41A7-AB91-6DAFE070C157} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158544 2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Task: {6DC3B245-25CA-4ECB-A08B-C380EA0F01D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-07-14] (Google Inc -> Google Inc.) Task: {6E0E83E9-90CD-4E99-8DD7-B746D9825244} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6F6DC138-82D6-4750-BFD0-C3277B36B247} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_314_Plugin.exe [1457720 2020-01-14] (Adobe Inc. -> Adobe) Task: {700A513C-0D9A-4501-8303-2911ABCF5253} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24625520 2020-01-07] (Microsoft Corporation -> Microsoft Corporation) Task: {7424404F-D08F-4575-9F4B-C4C8709E3DA6} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-03-29] (Dropbox, Inc -> Dropbox, Inc.) Task: {7B60C66D-6C6F-41EE-A2BE-70DBC833C2DA} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7DBCA2EB-9CAF-445F-B184-BEB5CC4BC06E} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8E0CA7E4-EFC7-4ED4-9516-016CC01D5BDF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9DFBCC6A-714A-470D-8044-AA645E3C6E7A} - System32\Tasks\avast! Windows 10 Start Menu helper => c:\program files\avast software\avast\asww10mon.exe Task: {9E00599E-72D8-48DF-8E7E-47378FFAC597} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158544 2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Task: {A285FB45-1A01-4AB3-A2D3-19E508F9B906} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A52071E9-2ACE-456D-9D59-CB44D9419CAD} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {B131F87E-6CF5-4888-B6C0-6FC49CD66323} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2050448 2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Task: {BAB745EC-E1A0-4A21-848E-F81AB1284759} - System32\Tasks\ByteFence => C:\Program Files\ByteFence\ByteFence.exe <==== ACHTUNG Task: {C76F9E1F-17F4-4ADF-9EDF-1B6C5D7E1843} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-01-14] (Adobe Inc. -> Adobe) Task: {C9C3D9F3-7496-4E7A-AB17-D02D8A3055E7} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [1741576 2016-03-17] (Intel(R) Software -> Intel Corporation) Task: {DCC19413-5D32-4E0E-A098-A4BE2349D792} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2050448 2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Task: {E79B57F9-9885-4A39-90FF-BA107A287117} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\task.vbs" Task: {E8F83682-F137-4607-8D57-2B32F8C1A8CF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems) Task: {ED089C3A-9465-43CA-8C45-3799E547157D} - System32\Tasks\DriverMaxAgent => C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe Task: {EF989BD1-9684-412F-9CF0-BB6236842A4B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {FB8E6DC5-65BE-4241-9112-1461E3F44FE5} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{0e94eb29-81d1-48cb-9509-c03219851548}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{2441912f-a4e4-4318-a15f-570336e6ccce}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{6b7a2aff-0755-4522-a54e-b0d43bb7ca43}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{b1b7edbb-82c9-4cd6-b2b2-4472d73cfff4}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{ce5c2336-e0e2-4101-8078-2ee0a6acd3a0}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{d1901083-a422-4f7b-89ec-30832dfd52a9}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\ssv.dll [2017-10-11] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2018-11-01] (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-10-11] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2019-03-25] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) DPF: HKLM-x32 {FFA7A955-5A33-42F7-A77B-8E46AE2FAA64} hxxps://www.playmemoriescameraapps.com/portal/PMCA/PMCADownloader.cab Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001 -> hxxp://www.google.de/ FireFox: ======== FF DefaultProfile: a3d0ysa2.default FF ProfilePath: C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\hgxama55.default-release [2020-01-16] FF Notifications: Mozilla\Firefox\Profiles\hgxama55.default-release -> hxxps://ww1.ouo.today; hxxps://lnk.news FF Extension: (Touch VPN) - C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\hgxama55.default-release\Extensions\touch-vpn@anchorfree.com.xpi [2019-08-28] FF Extension: (Video DownloadHelper) - C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\hgxama55.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-08-28] FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\hgxama55.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-11-01] FF ProfilePath: C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\a3d0ysa2.default [2019-08-23] FF Extension: (Google Music Downloader) - C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\a3d0ysa2.default\Extensions\jid0-5eJWDQmbUwjlamJxBboir3tKOM4@jetpack [2017-01-23] [] FF Extension: (Show the Image) - C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\a3d0ysa2.default\Extensions\showtheimage@brunwin.net.xpi [2017-01-31] [] FF Extension: (Touch VPN) - C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\a3d0ysa2.default\Extensions\touch-vpn@anchorfree.com.xpi [2019-02-28] FF Extension: (Video DownloadHelper) - C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\a3d0ysa2.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-07-15] FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\chris\AppData\Roaming\Mozilla\Firefox\Profiles\a3d0ysa2.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-08-09] FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2019-05-02] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_314.dll [2020-01-14] (Adobe Inc. -> ) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Keine Datei] FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Keine Datei] FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-09-27] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_314.dll [2020-01-14] (Adobe Inc. -> ) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [Keine Datei] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [Keine Datei] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [Keine Datei] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [Keine Datei] FF Plugin-x32: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-10-11] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-10-11] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-01-12] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC) FF Plugin-x32: @videolan.org/vlc,version=3.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2019-12-02] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-09-27] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: Sony Corporation/PMCADownloader -> C:\ProgramData\Sony Corporation\PMCADownloader\1.2.0.13221\npPMCADownloader.dll [2012-10-17] (Sony Corporation -> Sony Network Entertainment International LLC) FF Plugin-x32: Sony Corporation/PMCADownloaderHelper -> C:\ProgramData\Sony Corporation\PMCADownloader\1.2.0.13221\PMCADownloaderHelper.exe [2012-10-17] (Sony Corporation -> Sony Network Entertainment International LLC) FF Plugin-x32: Sony Corporation/PMCADownloaderLib -> C:\ProgramData\Sony Corporation\PMCADownloader\1.2.0.13221\PMCADownloaderLib.dll [2012-10-17] (Sony Corporation -> Sony Network Entertainment International LLC) FF Plugin HKU\S-1-5-21-1188302669-1672055750-2685224995-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2020-01-07] (Ubisoft Entertainment Sweden AB -> ) FF Plugin HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2020-01-07] (Ubisoft Entertainment Sweden AB -> ) Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxp://www.google.de/ CHR StartupUrls: Default -> "hxxps://de.wikipedia.org/wiki/Mars_(Planet)","chrome://newtab/" CHR Notifications: Default -> hxxps://www.mydealz.de CHR Profile: C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default [2020-01-16] CHR Extension: (Präsentationen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12] CHR Extension: (Docs) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12] CHR Extension: (Google Drive) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-14] CHR Extension: (Web für Instagram™) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\beipdibfdjmngnljfglhmofeoiooddgl [2019-11-07] CHR Extension: (MEGA) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2020-01-16] CHR Extension: (YouTube) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-14] CHR Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-10-22] CHR Extension: (Go Back With Backspace) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\eekailopagacbcdloonjhbiecobagjci [2017-09-12] CHR Extension: (Adobe Acrobat) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-09-30] CHR Extension: (MyJDownloader Browser Erweiterung) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2018-11-07] CHR Extension: (Tabellen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12] CHR Extension: (Google Kalender - August 2018) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\fijibgfnhnddgaifebhdjhpfcnbdpeke [2018-08-08] CHR Extension: (Google Docs Offline) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-01-15] CHR Extension: (WhatsApp Web) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnpfjngllnobngcgfapefoaidbinmjnm [2020-01-16] CHR Extension: (WhatFont) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\jabopobgcpjmedljpbcaablpmlmfcogm [2019-08-06] CHR Extension: (Google Kalender) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjbdgfilnfhdoflbpgamdcdgpehopbep [2019-03-30] CHR Extension: (Enpass extension (requires desktop app)) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmcfomidfpdkfieipokbalgegidffkal [2019-10-17] CHR Extension: (GameStar) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnakjgfelappgfhchmmmdpmjdibngoid [2020-01-04] CHR Extension: (Google Maps) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2017-07-14] CHR Extension: (Buster: Captcha Solver for Humans) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl [2019-06-06] CHR Extension: (dict-cc) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknonnojlmhnmjhpeokdbeineeajcemh [2020-01-16] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03] CHR Extension: (Bitwarden - Kostenloser Passwortmanager) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\nngceckbapebfimnlniiiahkandclblb [2020-01-13] CHR Extension: (GamePro) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\oaobcjifblabclijbgbpgaddpnbjjkgm [2020-01-04] CHR Extension: (PlayMemories Camera Apps Downloader) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohlghnkgcadghcdodlcjfhogekonhdei [2019-12-11] CHR Extension: (Picasa) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2017-07-14] CHR Extension: (Google Mail) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-04] CHR Extension: (Chrome Media Router) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-17] CHR Profile: C:\Users\chris\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-10-02] CHR Profile: C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1 [2019-07-26] CHR Extension: (Präsentationen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-19] CHR Extension: (Docs) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-19] CHR Extension: (Google Drive) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-27] CHR Extension: (YouTube) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-27] CHR Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-07-26] CHR Extension: (Adobe Acrobat) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-07-26] CHR Extension: (Clock für Google Chrome ™) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\emakkfldeggiinnfcdjkakdfcppbfhdg [2017-07-27] CHR Extension: (Google Play Musik) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2018-12-13] CHR Extension: (Tabellen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-19] CHR Extension: (Google Docs Offline) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-12-13] CHR Extension: (Avast Online Security) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-07-26] CHR Extension: (Proxmate) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ifalmiidchkjjmkkbkoaibpmoeichmki [2018-12-13] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-18] CHR Extension: (Hover Zoom) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl [2019-03-27] CHR Extension: (Audio Converter) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ojfphighcpfimfhblaigjckljcoeipga [2017-07-27] CHR Extension: (Google Mail) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-26] CHR Extension: (Chrome Media Router) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-07-26] CHR Profile: C:\Users\chris\AppData\Local\Google\Chrome\User Data\System Profile [2018-10-04] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [823352 2019-09-27] (Adobe Inc. -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11164232 2020-01-07] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-03-29] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-03-29] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-01-07] (Dropbox, Inc -> Dropbox, Inc.) S3 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [824592 2017-03-07] (Intel(R) Software Development Products -> ) S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [663624 2018-03-29] (GOG Sp. z o.o. -> GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8135752 2018-03-29] (GOG Sp. z o.o. -> GOG.com) R2 GsServer; C:\Program Files\Siber Systems\GoodSync\gs-server.exe [7782624 2019-08-22] (Siber Systems -> ) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [361848 2019-12-06] (HP Inc. -> HP Inc.) R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [542016 2018-11-20] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268704 2017-02-13] (Intel Corporation-Wireless Connectivity Solutions -> ) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2475312 2019-12-24] (Electronic Arts, Inc. -> Electronic Arts) S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3352376 2019-12-24] (Electronic Arts, Inc. -> Electronic Arts) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75136 2017-10-30] (Even Balance, Inc. -> ) R2 PnkBstrB; C:\WINDOWS\SysWOW64\PnkBstrB.exe [189248 2017-10-30] (Even Balance, Inc. -> ) S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [258648 2018-11-13] (Synaptics Incorporated -> Synaptics Incorporated) R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe [157456 2017-03-07] (Intel(R) Software Development Products -> ) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11795800 2019-04-15] (TeamViewer GmbH -> TeamViewer GmbH) S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [824592 2017-03-07] (Intel(R) Software Development Products -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppService.exe [495840 2018-01-26] (Wondershare Technology Co.,Ltd -> Wondershare) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [2108752 2019-10-18] (Wacom Technology Corporation -> Wacom Technology, Corp.) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3743648 2017-02-13] (Intel Corporation-Wireless Connectivity Solutions -> Intel® Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u https://activation.paceap.com/InitiateActivation [X] ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [73976 2015-06-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R3 AMPPAL; C:\WINDOWS\System32\drivers\AMPPAL.sys [162344 2012-09-13] (Intel Corporation-Mobile Wireless Group -> Windows (R) Win 7 DDK provider) S3 AMPPALP; C:\WINDOWS\system32\DRIVERS\amppal.sys [162344 2012-09-13] (Intel Corporation-Mobile Wireless Group -> Windows (R) Win 7 DDK provider) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-04-26] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-04-26] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-03-31] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-03-31] (Disc Soft Ltd -> Disc Soft Ltd) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [144528 2018-11-20] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R3 L1C; C:\WINDOWS\System32\drivers\L1C63x64.sys [121344 2019-03-19] (Microsoft Windows -> Qualcomm Atheros Co., Ltd.) R3 L6UX1; C:\WINDOWS\System32\Drivers\L6UX164.sys [777728 2015-08-21] (Line 6 -> Line 6) R2 mi2c; C:\WINDOWS\system32\drivers\mi2c.sys [20784 2019-11-12] (AOC International (Europe) GmbH -> Nicomsoft Ltd.) R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3485696 2019-03-19] (Microsoft Windows -> Intel Corporation) S3 NPF; C:\WINDOWS\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_94587a88187d4f70\nvlddmkm.sys [20747736 2019-04-10] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-12-07] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation) R0 PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation -> Corel Corporation) R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3230696 2018-01-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) S3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [21984 2016-10-18] (Intel(R) Code Signing External -> ) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [46680 2018-11-13] (Synaptics Incorporated -> Synaptics Incorporated) R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> ) R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> ) S3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [134096 2019-10-18] (Microsoft Windows Hardware Compatibility Publisher -> Wacom Technology, Corp.) S3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [35256 2019-10-18] (Microsoft Windows Hardware Compatibility Publisher -> Wacom Technology, Corp.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2019-12-08] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2019-12-08] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-08] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2020-01-16 15:56 - 2020-01-16 15:57 - 000063900 _____ C:\Users\chris\Downloads\FRST.txt 2020-01-16 15:56 - 2020-01-16 15:56 - 000000000 ____D C:\FRST 2020-01-16 15:55 - 2020-01-16 15:55 - 002573312 _____ (Farbar) C:\Users\chris\Downloads\FRST64.exe 2020-01-16 14:51 - 2020-01-16 14:51 - 008218800 _____ (Malwarebytes) C:\Users\chris\Downloads\adwcleaner-8-0.exe 2020-01-16 14:48 - 2020-01-16 14:48 - 001883976 _____ (Malwarebytes) C:\Users\chris\Downloads\MBSetup.exe 2020-01-16 09:17 - 2020-01-16 09:17 - 000001082 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Audition 2020.lnk 2020-01-16 09:16 - 2020-01-16 09:16 - 000001026 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge 2020.lnk 2020-01-15 18:03 - 2020-01-15 18:03 - 025900032 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 008012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 007754752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 007016448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 006520480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 005913600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2020-01-15 18:03 - 2020-01-15 18:03 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 002801152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2020-01-15 18:03 - 2020-01-15 18:03 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2020-01-15 18:03 - 2020-01-15 18:03 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 002494464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 002473976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001985928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001655880 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 001330952 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 001051664 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000678712 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000571392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2020-01-15 18:03 - 2020-01-15 18:03 - 000542496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000432256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2020-01-15 18:03 - 2020-01-15 18:03 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000363840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2020-01-15 18:03 - 2020-01-15 18:03 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000162696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000127520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2020-01-15 18:03 - 2020-01-15 18:03 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\lstelemetry.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll 2020-01-15 18:03 - 2020-01-15 18:03 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll 2020-01-15 18:02 - 2020-01-15 18:02 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tsusbhub.sys 2020-01-15 18:02 - 2020-01-15 18:02 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WSDScan.sys 2020-01-15 17:57 - 2019-12-10 06:15 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2020-01-15 17:57 - 2019-12-10 05:59 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2020-01-15 17:56 - 2020-01-15 17:56 - 000000000 ____D C:\Users\carol\AppData\Roaming\Hewlett-Packard 2020-01-15 14:06 - 2020-01-15 14:06 - 000000000 ____D C:\Users\chris\AppData\Local\Hewlett-Packard 2020-01-15 13:24 - 2020-01-15 13:24 - 000000000 ____D C:\Users\chris\AppData\Roaming\Hewlett-Packard 2020-01-15 13:18 - 2020-01-15 13:18 - 000000000 ____D C:\Users\chris\AppData\Roaming\hpqLog 2020-01-15 13:18 - 2020-01-15 13:18 - 000000000 ____D C:\System.sav 2020-01-15 13:18 - 2020-01-15 13:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2020-01-15 13:17 - 2020-01-15 13:18 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2020-01-15 13:17 - 2020-01-15 13:18 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard 2020-01-15 13:17 - 2020-01-15 13:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard 2020-01-15 10:32 - 2020-01-15 10:32 - 000000000 ____D C:\Users\chris\AppData\Local\Amazon Drive 2020-01-14 15:02 - 2020-01-14 15:02 - 000002157 _____ C:\Users\chris\Desktop\skse64_loader.exe - Verknüpfung.lnk 2020-01-14 11:41 - 2020-01-15 13:17 - 000000000 ____D C:\Users\chris\AppData\Local\HP 2020-01-14 11:39 - 2020-01-14 11:41 - 000000000 ____D C:\a 2020-01-14 11:32 - 2020-01-14 12:02 - 000000000 ____D C:\ProgramData\HP 2020-01-14 11:32 - 2020-01-14 11:32 - 000000000 ____D C:\Users\chris\AppData\Roaming\HP_Easy_Start 2020-01-13 17:38 - 2019-01-19 17:11 - 000088576 _____ C:\Users\chris\Downloads\d3dx9_42.dll 2020-01-13 17:38 - 2018-12-04 10:45 - 000434424 _____ (Intel Corporation) C:\Users\chris\Downloads\tbb.dll 2020-01-13 17:38 - 2018-12-04 10:45 - 000260344 _____ (Intel Corporation) C:\Users\chris\Downloads\tbbmalloc.dll 2020-01-13 17:18 - 2019-11-21 06:17 - 000000000 ____D C:\Users\chris\Downloads\skse64_2_00_17 2020-01-13 14:57 - 2020-01-13 14:57 - 000000000 ____D C:\Users\chris\AppData\Local\Skyrim Special Edition 2020-01-10 12:58 - 2020-01-10 12:58 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator 2020.lnk 2020-01-08 00:12 - 2020-01-08 00:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-01-07 21:29 - 2013-02-08 20:25 - 000374774 _____ C:\Users\chris\Downloads\Handbuch-vCardGrid.pdf 2020-01-07 21:08 - 2020-01-09 01:17 - 000037689 _____ C:\Users\chris\AppData\Roaming\Durch Trennzeichen getrennte Werte.ADR 2020-01-07 20:45 - 2020-01-08 09:15 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1188302669-1672055750-2685224995-1001 2020-01-07 20:45 - 2020-01-08 09:15 - 000002383 _____ C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-01-07 20:43 - 2020-01-07 20:43 - 000002541 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2020-01-07 20:43 - 2020-01-07 20:43 - 000002537 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2020-01-07 20:43 - 2020-01-07 20:43 - 000002516 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2020-01-07 20:43 - 2020-01-07 20:43 - 000002491 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2020-01-07 20:43 - 2020-01-07 20:43 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2020-01-07 20:43 - 2020-01-07 20:43 - 000002427 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2020-01-07 20:43 - 2020-01-07 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2020-01-07 20:41 - 2020-01-07 20:41 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2020-01-07 20:38 - 2020-01-07 20:38 - 000000000 ____D C:\Program Files\Microsoft Office 15 2020-01-07 16:50 - 2020-01-07 16:50 - 000000000 ____D C:\Users\chris\Documents\Outlook-Dateien 2020-01-07 14:21 - 2020-01-07 14:21 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2020-01-07 14:21 - 2020-01-07 14:21 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2020-01-07 14:21 - 2020-01-07 14:21 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2020-01-07 14:21 - 2020-01-07 14:21 - 000044552 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2020-01-04 22:26 - 2020-01-16 14:52 - 000002891 _____ C:\Users\chris\Desktop\GameStar.lnk 2020-01-04 22:21 - 2020-01-16 14:52 - 000002869 _____ C:\Users\chris\Desktop\GamePro.lnk 2020-01-03 15:15 - 2020-01-03 15:15 - 000010708 _____ C:\Users\chris\Downloads\Sinergy - Venomous Vixens.gp4 2020-01-01 22:37 - 2020-01-01 22:41 - 269394849 _____ C:\Users\chris\Downloads\Gerd+Herold+-+Innere+Medizin+2019+(2019_2C+Herold).pdf 2019-12-29 00:15 - 2019-12-29 00:16 - 000000000 ____D C:\Users\carol\AppData\Roaming\vlc 2019-12-29 00:04 - 2019-12-29 00:13 - 620885708 _____ C:\Users\carol\Downloads\AVSEQ01.DAT 2019-12-22 20:22 - 2019-12-22 20:22 - 000019242 _____ C:\Users\chris\Downloads\karelia.gp5 2019-12-22 20:18 - 2019-12-22 20:18 - 000111012 _____ C:\Users\chris\Downloads\Down-With-the-Sun.gp5 2019-12-21 19:13 - 2019-12-21 19:13 - 000000000 ____D C:\Users\carol\AppData\Roaming\WinRAR 2019-12-21 19:10 - 2019-12-21 19:12 - 1443050002 _____ C:\Users\carol\Downloads\Photos (2).zip 2019-12-21 19:10 - 2019-12-21 19:10 - 009022147 _____ C:\Users\carol\Downloads\Photos (3).zip 2019-12-21 19:08 - 2019-12-21 19:11 - 1358248465 _____ C:\Users\carol\Downloads\Photos (1).zip 2019-12-21 19:07 - 2019-12-21 19:08 - 258550813 _____ C:\Users\carol\Downloads\Photos.zip 2019-12-21 19:05 - 2019-12-21 19:05 - 000000000 ____D C:\Users\carol\AppData\Local\CrashDumps 2019-12-18 09:25 - 2019-12-18 09:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Insta360 Studio 2019 2019-12-18 09:24 - 2019-12-18 09:24 - 000000000 ____D C:\Program Files (x86)\Insta360 Studio 2019 2019-12-17 15:56 - 2019-12-17 15:56 - 000001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom Classic.lnk 2019-12-17 15:51 - 2019-12-17 15:51 - 000001050 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk 2019-12-17 15:48 - 2019-12-17 15:48 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2020.lnk ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2020-01-16 15:57 - 2017-05-30 08:30 - 000000000 ____D C:\ProgramData\NVIDIA 2020-01-16 15:55 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-01-16 15:50 - 2019-10-04 02:50 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2020-01-16 15:50 - 2019-10-04 02:50 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData 2020-01-16 15:40 - 2016-11-24 08:32 - 000000000 ____D C:\Users\chris\AppData\LocalLow\Mozilla 2020-01-16 15:39 - 2019-05-09 17:44 - 000000000 ____D C:\Users\chris\AppData\Roaming\WTablet 2020-01-16 15:38 - 2019-10-04 20:52 - 000000000 ___RD C:\Users\carol\OneDrive 2020-01-16 15:38 - 2019-10-04 20:50 - 000000000 ____D C:\Users\carol\AppData\Roaming\WTablet 2020-01-16 15:38 - 2019-10-03 18:30 - 000000000 ___HD C:\OneDriveTemp 2020-01-16 15:30 - 2019-08-16 15:30 - 001723502 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-01-16 15:30 - 2019-03-19 13:16 - 000745142 _____ C:\WINDOWS\system32\perfh007.dat 2020-01-16 15:30 - 2019-03-19 13:16 - 000150430 _____ C:\WINDOWS\system32\perfc007.dat 2020-01-16 15:30 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2020-01-16 15:27 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2020-01-16 15:25 - 2019-08-16 15:32 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-01-16 15:25 - 2019-05-06 10:06 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2020-01-16 15:25 - 2016-03-30 00:00 - 000000000 ___RD C:\Users\chris\Creative Cloud Files 2020-01-16 15:25 - 2016-03-29 21:41 - 000000000 ____D C:\Users\chris\AppData\Local\Adobe 2020-01-16 15:25 - 2016-03-29 14:38 - 000000000 ____D C:\Program Files (x86)\Steam 2020-01-16 15:24 - 2019-03-19 05:37 - 001310720 _____ C:\WINDOWS\system32\config\BBI 2020-01-16 14:52 - 2017-04-24 12:12 - 000000000 ____D C:\AdwCleaner 2020-01-16 14:48 - 2019-01-22 21:23 - 000000000 ____D C:\Users\chris\AppData\Local\cache 2020-01-16 12:02 - 2018-02-12 19:04 - 000000000 ____D C:\Users\chris\AppData\Roaming\vlc 2020-01-16 11:42 - 2018-07-12 20:42 - 000000000 ____D C:\Users\chris\AppData\Roaming\WhatsApp 2020-01-16 09:17 - 2019-08-15 17:57 - 000000000 ___HD C:\adobeTemp 2020-01-16 09:17 - 2016-03-29 23:32 - 000000000 ____D C:\Program Files\Adobe 2020-01-15 21:55 - 2019-08-22 14:33 - 000000000 ____D C:\Users\chris\AppData\Local\GoodSync 2020-01-15 21:43 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-01-15 21:42 - 2019-08-16 15:15 - 005193776 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-01-15 21:42 - 2016-03-29 14:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-01-15 20:58 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\system32\UNP 2020-01-15 20:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources 2020-01-15 20:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-01-15 20:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-01-15 20:25 - 2019-08-16 15:15 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-01-15 18:13 - 2019-10-04 21:06 - 000000000 ____D C:\Users\carol\AppData\Local\PlaceholderTileLogoFolder 2020-01-15 18:10 - 2016-03-29 14:03 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-01-15 18:05 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-01-15 18:05 - 2016-03-29 14:03 - 120202352 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-01-15 17:54 - 2019-10-04 20:50 - 000000000 ____D C:\Users\carol\AppData\Local\Packages 2020-01-15 17:54 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-01-15 14:06 - 2016-03-29 20:25 - 000000000 ____D C:\Users\chris\AppData\Local\CrashDumps 2020-01-15 13:18 - 2016-03-30 09:04 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2020-01-15 10:32 - 2019-12-07 17:11 - 000001223 _____ C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Photos.lnk 2020-01-14 18:47 - 2019-10-29 19:08 - 000000000 ____D C:\Users\chris\AppData\Roaming\.minecraft 2020-01-14 18:42 - 2017-12-26 13:16 - 000000000 ____D C:\Users\chris\AppData\Local\PlaceholderTileLogoFolder 2020-01-14 18:42 - 2017-12-08 11:42 - 000000000 ____D C:\Users\chris\AppData\Local\Packages 2020-01-14 12:20 - 2019-12-08 13:33 - 000000000 ____D C:\Users\chris\AppData\Roaming\Bitwarden 2020-01-14 11:40 - 2018-06-28 05:52 - 000000000 ____D C:\ProgramData\Packages 2020-01-14 10:33 - 2019-08-16 15:32 - 000004642 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-01-14 10:33 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-01-14 10:33 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-01-13 16:18 - 2019-08-16 15:32 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2019-08-16 15:32 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-01-13 16:18 - 2017-05-30 08:30 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2020-01-13 16:18 - 2017-05-30 08:30 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2020-01-13 16:18 - 2017-05-30 08:30 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2020-01-13 15:31 - 2016-06-28 22:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager 2020-01-13 15:31 - 2016-06-28 22:27 - 000000000 ____D C:\Program Files\Nexus Mod Manager 2020-01-13 15:25 - 2016-03-29 14:42 - 000000000 ____D C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2020-01-13 14:57 - 2016-10-23 21:30 - 000000000 ____D C:\Users\chris\Documents\My Games 2020-01-13 14:44 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-01-13 14:43 - 2016-03-29 20:51 - 000000000 ____D C:\Program Files\Microsoft Office 2020-01-10 15:15 - 2016-03-29 14:34 - 000000000 ____D C:\Users\chris\AppData\Local\JDownloader 2.0 2020-01-10 12:58 - 2016-03-29 21:42 - 000000000 ____D C:\Program Files\Common Files\Adobe 2020-01-09 16:13 - 2016-09-13 13:53 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-01-09 16:13 - 2016-03-29 14:30 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-01-08 23:51 - 2017-07-14 12:20 - 000002293 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-01-08 09:15 - 2016-03-29 13:50 - 000000000 ___RD C:\Users\chris\OneDrive 2020-01-08 00:21 - 2019-08-16 13:33 - 000000000 ____D C:\Users\chris 2020-01-08 00:12 - 2016-03-29 14:50 - 000000000 ____D C:\Program Files (x86)\Dropbox 2020-01-07 20:46 - 2019-11-12 16:59 - 000000000 ____D C:\Program Files (x86)\SmartControl-4.3.15 2020-01-07 17:29 - 2016-03-29 13:49 - 000000000 ____D C:\Users\chris\AppData\Local\Comms 2020-01-07 16:00 - 2016-05-23 10:07 - 000000000 ____D C:\Users\chris\AppData\Local\Ubisoft Game Launcher 2020-01-07 15:59 - 2017-09-26 20:12 - 000000000 ____D C:\ProgramData\Ubisoft 2020-01-06 18:21 - 2016-03-31 07:39 - 000000000 ____D C:\Users\chris\dwhelper 2020-01-04 22:26 - 2017-07-27 21:04 - 000000000 ____D C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps 2019-12-24 22:00 - 2016-03-29 14:47 - 000000000 ____D C:\Users\chris\AppData\Roaming\Origin 2019-12-24 20:50 - 2019-04-27 17:03 - 000000000 ____D C:\Program Files (x86)\Origin Games 2019-12-24 20:50 - 2016-03-29 14:43 - 000000000 ____D C:\ProgramData\Origin 2019-12-24 20:49 - 2016-03-29 14:47 - 000000000 ____D C:\Users\chris\AppData\Local\Origin 2019-12-24 20:48 - 2016-03-29 14:43 - 000000000 ____D C:\Program Files (x86)\Origin 2019-12-21 19:04 - 2019-10-04 20:52 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1188302669-1672055750-2685224995-1002 2019-12-21 19:04 - 2019-10-04 20:52 - 000002383 _____ C:\Users\carol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-12-21 19:03 - 2019-10-04 20:50 - 000000000 ___RD C:\Users\carol\3D Objects 2019-12-21 19:03 - 2016-03-29 13:48 - 000000000 __RHD C:\Users\Public\AccountPictures 2019-12-21 11:28 - 2019-05-03 17:19 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2019-12-20 10:02 - 2016-03-29 14:48 - 000000000 ____D C:\Users\chris\AppData\Roaming\MusicBee 2019-12-17 15:48 - 2016-03-29 21:43 - 000000000 ____D C:\Users\chris\Documents\Adobe 2019-12-17 15:48 - 2016-03-29 13:48 - 000000000 ____D C:\Users\chris\AppData\Roaming\Adobe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2017-05-02 20:05 - 2017-05-02 20:07 - 055183360 _____ () C:\Program Files (x86)\GUT2144.tmp 2016-04-01 09:58 - 2016-04-01 09:58 - 000000033 _____ () C:\Users\chris\AppData\Roaming\.pgbias 2016-04-01 16:14 - 2016-04-01 16:14 - 000000030 _____ () C:\Users\chris\AppData\Roaming\.pgbiasfx 2016-08-29 18:15 - 2018-04-23 15:02 - 000000033 _____ () C:\Users\chris\AppData\Roaming\AdobeWLCMCache.dat 2019-01-22 21:18 - 2019-01-22 21:18 - 000000046 _____ () C:\Users\chris\AppData\Roaming\Camdata.ini 2019-01-22 21:18 - 2019-01-22 21:18 - 000000408 _____ () C:\Users\chris\AppData\Roaming\CamLayout.ini 2019-01-22 21:18 - 2019-01-22 21:18 - 000000408 _____ () C:\Users\chris\AppData\Roaming\CamShapes.ini 2019-01-22 21:18 - 2019-01-22 21:18 - 000004536 _____ () C:\Users\chris\AppData\Roaming\CamStudio.cfg 2020-01-07 21:08 - 2020-01-09 01:17 - 000037689 _____ () C:\Users\chris\AppData\Roaming\Durch Trennzeichen getrennte Werte.ADR 2019-05-31 10:31 - 2019-05-31 13:51 - 000000028 _____ () C:\Users\chris\AppData\Roaming\kulerdata.json 2017-12-26 13:56 - 2019-09-02 21:08 - 000002389 _____ () C:\Users\chris\AppData\Roaming\MyMicroBalanceConfig.ini 2016-03-01 20:03 - 2014-09-30 02:33 - 010694392 ___SH (VS Revo Group ) C:\Users\chris\AppData\Roaming\RevoUninProSetup.exe 2019-01-22 21:17 - 2019-01-22 21:17 - 000000096 _____ () C:\Users\chris\AppData\Roaming\version2.xml 2019-06-11 15:17 - 2019-11-11 13:45 - 000001456 _____ () C:\Users\chris\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2016-10-21 20:02 - 2017-01-19 20:01 - 000015360 _____ () C:\Users\chris\AppData\Local\com.dswiss.securesafe.db3 2018-10-02 23:17 - 2018-10-02 23:17 - 000000000 _____ () C:\Users\chris\AppData\Local\oobelibMkey.log 2016-03-31 22:48 - 2018-11-23 09:50 - 000007634 _____ () C:\Users\chris\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
16.01.2020, 16:18 | #4 |
| Google Ads ÜberschwemmungCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-01-2020 durchgeführt von chris (16-01-2020 15:57:58) Gestartet von C:\Users\chris\Downloads Windows 10 Pro Version 1903 18362.592 (X64) (2019-08-16 14:32:50) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1188302669-1672055750-2685224995-500 - Administrator - Disabled) carol (S-1-5-21-1188302669-1672055750-2685224995-1002 - Administrator - Enabled) => C:\Users\carol chris (S-1-5-21-1188302669-1672055750-2685224995-1001 - Administrator - Enabled) => C:\Users\chris DefaultAccount (S-1-5-21-1188302669-1672055750-2685224995-503 - Limited - Disabled) Gast (S-1-5-21-1188302669-1672055750-2685224995-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1188302669-1672055750-2685224995-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) . . (HKLM\...\{12B07FF1-29CB-45AC-B493-1DB88BE717BD}) (Version: 7.1 - Intel) Hidden . . . (HKLM-x32\...\{C01175B6-6575-4526-A55B-2BC2F10BA083}) (Version: 2.7.2.4 - Intel) Hidden 7-Zip 16.00 (x64) (HKLM\...\7-Zip) (Version: 16.00 - Igor Pavlov) Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 19.021.20061 - Adobe Systems Incorporated) Adobe Audition 2020 (HKLM-x32\...\AUDT_13_0_2) (Version: 13.0.2 - Adobe Systems Incorporated) Adobe Bridge 2020 (HKLM-x32\...\KBRG_10_0_2) (Version: 10.0.2 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.0.0.354 - Adobe Systems Incorporated) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.314 - Adobe) Adobe Illustrator 2020 (HKLM-x32\...\ILST_24_0_2) (Version: 24.0.2 - Adobe Systems Incorporated) Adobe Lightroom (HKLM-x32\...\LRCC_3_1) (Version: 3.1 - Adobe Systems Incorporated) Adobe Lightroom Classic (HKLM-x32\...\LTRM_9_1) (Version: 9.1 - Adobe Systems Incorporated) Adobe Media Encoder 2020 (HKLM-x32\...\AME_14_0) (Version: 14.0 - Adobe Systems Incorporated) Adobe Photoshop 2020 (HKLM-x32\...\PHSP_21_0_2) (Version: 21.0.2 - Adobe Systems Incorporated) Amazon Photos (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\Amazon Photos) (Version: 6.3.5 - Amazon.com, Inc.) Amazon Photos (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\Amazon Photos) (Version: 6.3.5 - Amazon.com, Inc.) Apple Application Support (32-Bit) (HKLM-x32\...\{5C028510-A6A1-409A-A2BF-4DCB43B21EF9}) (Version: 7.6 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{5C7D4FCF-80C5-4520-9934-D50532AAC59C}) (Version: 7.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.) BIAS FX Plugins Pack (64bit) (HKLM\...\{77558DEB-4B65-4921-8855-D8593EF5BCDD}) (Version: 1.1.0.745 - PositiveGrid) BIAS Plugins Pack (64bit) (HKLM\...\{6964E9EC-6319-49F3-915B-740F79660AB9}) (Version: 1.2.2.1160 - PositiveGrid) Bitwarden (HKLM\...\{173a9bac-6f0d-50c4-8202-4744c69d091a}) (Version: 1.16.6 - 8bit Solutions LLC) bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - Canon Inc.) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.1 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) Canon MG5400 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5400_series) (Version: 1.01 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.6.1 - Canon Inc.) Cisco VideoGuard Player (HKLM-x32\...\{30e4813e-2a86-4e4f-82ea-23df71ca8ffb}) (Version: 10.1.1.6570 - Cisco Systems, Inc) Direct MIDI to MP3 Converter Version 7.0.0.0 (HKLM-x32\...\Direct MIDI to MP3 Converter_is1) (Version: 7.0.0.0 - Piston Software) DirectWave VSTi (HKLM-x32\...\DirectWave VSTi) (Version: - Image-Line) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 425.31 - NVIDIA Corporation) Hidden Driver Easy 5.5.0 (HKLM\...\DriverEasy_is1) (Version: 5.5.0 - Easeware) Dropbox (HKLM-x32\...\Dropbox) (Version: 88.4.172 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.241.1 - Dropbox, Inc.) Hidden Edison (HKLM-x32\...\Edison) (Version: - Image-Line) EGR-ShellExtension (HKLM-x32\...\EGR-ShellExtension) (Version: 1.2.1.100 - EasternGraphics) eLicenser Control (HKLM-x32\...\eLicenser Control) (Version: 6.8.5.1160 - Steinberg Media Technologies GmbH) Enpass (HKLM-x32\...\{33E7A52A-3D05-4C3B-BA3D-B05B4DD1C065}) (Version: 6.2.0.539 - Sinew Software Systems Private Limited) Hidden Enpass (HKLM-x32\...\{fd67a865-cd40-4926-8db2-d48a246238dc}) (Version: 6.2.0.539 - Sinew Software Systems Private Limited) Evernote v. 6.16.4 (HKLM-x32\...\{69BDFB62-DE11-11E8-B2A0-005056951CAD}) (Version: 6.16.4.8094 - Evernote Corp.) FastStone Image Viewer 6.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 6.4 - FastStone Soft) FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line) FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - ) Fraps (HKLM-x32\...\Fraps) (Version: - ) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) GoodSync (HKLM\...\{B26B00DA-2E5D-4CF2-83C5-911198C0F009}) (Version: 11.0.6.6 - Siber Systems Inc) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 79.0.3945.117 - Google LLC) Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.421 - Google LLC) Hidden Guitar Pro 5.2 (HKLM-x32\...\Guitar Pro 5_is1) (Version: - Arobas Music) Guitar Pro 7 - Soundbanks (HKLM-x32\...\com.arobas-music.guitarpro7-soundbanks_is1) (Version: 1.0.69 - Arobas Music) Guitar Pro 7 (HKLM-x32\...\Guitar Pro 7_is1) (Version: 7.5.0.1322 - Arobas Music) HP Support Solutions Framework (HKLM-x32\...\{049380BE-D614-4E89-8126-3DF5E33011CF}) (Version: 12.14.49.15 - HP Inc.) IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) IL DrumSynth Live (HKLM-x32\...\IL DrumSynth Live) (Version: - Image-Line) IL Gross Beat (HKLM-x32\...\IL Gross Beat) (Version: - Image-Line) IL Harmless (HKLM-x32\...\IL Harmless) (Version: - Image-Line) IL Harmor (HKLM-x32\...\IL Harmor) (Version: - Image-Line) IL Juice Pack (HKLM-x32\...\IL Juice Pack) (Version: - Image-Line) IL Maximus (HKLM-x32\...\IL Maximus) (Version: - Image-Line) IL Minihost Modular (HKLM-x32\...\IL Minihost Modular) (Version: - Image-Line) IL Ogun (HKLM-x32\...\IL Ogun) (Version: - Image-Line) IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line) IL Slicex (HKLM-x32\...\IL Slicex) (Version: - Image-Line) IL Vocodex (HKLM-x32\...\IL Vocodex) (Version: - Image-Line) Insta360 Studio 2019 version 3.4.2 (HKLM-x32\...\{78E34D33-E6EF-442B-A808-2351211989E2}}_is1) (Version: 3.4.2 - Arashi Vision .Ltd) Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{E77289CF-12B9-4CAB-A49E-FEAE947F4D95}) (Version: 15.5.4.0423 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{EEB17A20-0442-4654-8D16-F6007C39F920}) (Version: 19.11.1637.0525 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{e48a2f61-851a-4155-82f9-af1b04db8c3b}) (Version: 10.0.13 - Intel(R) Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{66614300-cd9b-4a62-8b18-c97e9562dc3e}) (Version: 19.50.0 - Intel Corporation) Intel® PROSet/Wireless WiFi-Software (HKLM\...\{5D871D59-6D4C-4619-AC2A-A63604E426B5}) (Version: 15.05.5000.1567 - Intel Corporation) Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.71.1 - JMicron Technology Corp.) K-Lite Mega Codec Pack 12.0.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.0.5 - KLCP) LandscapePro 2.7 (HKLM\...\com.anthropics.landscapeprostd2_is1) (Version: 2.7 - Anthropics Technology Ltd) Line 6 Line 6 Updater Uninstaller (HKLM-x32\...\Line 6 Line 6 Updater Uninstaller) (Version: 1.16 - Line 6) Line 6 Uninstaller (HKLM-x32\...\Line 6 Uninstaller) (Version: - Line 6) Maxon Cinema 4D R21 (HKLM\...\Maxon Cinema 4D R21) (Version: R21 - Maxon) Mein CEWE FOTOBUCH (HKLM-x32\...\Mein CEWE FOTOBUCH) (Version: 6.4.5 - CEWE Stiftung u Co. KGaA) MergeModule_x64 (HKLM\...\{8B591A6B-253E-4E62-B2A8-3668CDA0A907}) (Version: 11.0.00 - Sony Corporation) Hidden MergeModule_x86 (HKLM-x32\...\{51B45206-47B1-4B51-B46A-330B9156D6C1}) (Version: 11.0.00 - Sony Corporation) Hidden Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.12325.20288 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\OneDriveSetup.exe) (Version: 19.192.0926.0012 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\OneDriveSetup.exe) (Version: 19.192.0926.0012 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1188302669-1672055750-2685224995-1002\...\OneDriveSetup.exe) (Version: 19.192.0926.0012 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1188302669-1672055750-2685224995-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518540\...\OneDriveSetup.exe) (Version: 19.192.0926.0012 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.15.26706 (HKLM-x32\...\{95ac1cfa-f4fb-4d1b-8912-7f9d5fbb140d}) (Version: 14.15.26706.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (HKLM-x32\...\{7e9fae12-5bbf-47fb-b944-09c49e75c061}) (Version: 14.15.26706.0 - Microsoft Corporation) Microsoft Visual Studio Code (User) (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.37.1 - Microsoft Corporation) Microsoft Visual Studio Code (User) (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.37.1 - Microsoft Corporation) Minecraft Launcher (HKLM-x32\...\{810F1419-7760-402E-8772-B4054FAA2B72}) (Version: 1.0.0.0 - Mojang) Mozilla Firefox 72.0.1 (x64 de) (HKLM\...\Mozilla Firefox 72.0.1 (x64 de)) (Version: 72.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 72.0.1.7311 - Mozilla) Mozilla Thunderbird 60.9.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 60.9.1 (x86 de)) (Version: 60.9.1 - Mozilla) MusicBee 3.0 (HKLM-x32\...\MusicBee) (Version: 3.0 - Steven Mayall) MyMicroBalance (HKLM-x32\...\{1DC734AB-C574-4A8D-B932-CEACDDD61A80}) (Version: 4.0.0 - MEIKE OG) Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.5.2.880 - Native Instruments) Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.70.5 - Black Tree Gaming) Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden NVIDIA 3D Vision Treiber 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 425.31 - NVIDIA Corporation) NVIDIA GeForce Experience 3.20.2.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.2.34 - NVIDIA Corporation) NVIDIA Grafiktreiber 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 425.31 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.38.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.13 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.12325.20288 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.12325.20280 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.12325.20288 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 10.5.57.35162 - Electronic Arts, Inc.) PACE License Support Win64 (HKLM\...\{D96A09AC-FE52-4624-864D-7A7FE9254178}) (Version: 5.0.2.2530 - PACE Anti-Piracy, Inc.) Hidden PACE License Support Win64 (HKLM-x32\...\InstallShield_{D96A09AC-FE52-4624-864D-7A7FE9254178}) (Version: 5.0.2.2530 - PACE Anti-Piracy, Inc.) pCon.planner STD (HKLM\...\{1AD277B9-2276-4FC1-B834-DA8D9D19C52F}) (Version: 8.1.0.101 - EasternGraphics) ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden PlayMemories Camera Apps Downloader (HKLM-x32\...\{5C42BF1B-4586-4711-81A7-8D0F890A6A31}) (Version: 1.2.0.13221 - Sony Corporation) PlayMemories Home (HKLM-x32\...\{AEB04E0E-0A28-4014-A96A-282E43B7227B}) (Version: 6.0.00.12211 - Sony Corporation) PMB_ModeEditor (HKLM-x32\...\{F8063714-BD75-42DC-8FAA-D0E1EED92519}) (Version: 11.0.00 - Sony Corporation) Hidden PMB_ServiceUploader (HKLM-x32\...\{CF081855-ED80-445A-BF63-025584939230}) (Version: 11.0.00 - Sony Corporation) Hidden PortraitPro 15.7.3 (HKLM-x32\...\PortraitPro 15.7.3) (Version: 15.7.3.0 - RePack by SamuRa1) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7514 - Realtek Semiconductor Corp.) REAPER (x64) (HKLM\...\REAPER) (Version: - ) ReValver 4 x64 (HKLM\...\ReValver 4 x64_is1) (Version: - ) Revo Uninstaller Pro 3.1.0 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.0 - VS Revo Group, Ltd.) SimilarImages (HKLM-x32\...\SimilarImages) (Version: 2013.11 - Nils Maier) Sky Go 1.5.9.0 (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\com.bskyb.skygoplayer_is1) (Version: 1.5.9.0 - Sky) Sky Go 1.5.9.0 (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\com.bskyb.skygoplayer_is1) (Version: 1.5.9.0 - Sky) SmartControl-4.3.15 (HKLM-x32\...\{E55BD19C-E4AA-469F-9474-AE70A1D8A666}) (Version: 4.3.99 - PHL) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Steinberg Cubase LE AI Elements 8 64bit (HKLM\...\{C801D1E6-30E3-46BE-368D-0106B42CCE17}) (Version: 8.0.20 - Steinberg Media Technologies GmbH) Steinberg Groove Agent ONE Content (HKLM-x32\...\{BD86F1AC-B594-46E4-85DC-1258AC9E2232}) (Version: 1.0.0.003 - Steinberg Media Technologies GmbH) Steinberg Groove Agent ONE Vintage Beatboxes (HKLM-x32\...\{DBF4BC99-53F1-4C97-84C3-7557D103E182}) (Version: 1.0.0.000 - Steinberg Media Technologies GmbH) Steinberg Groove Agent SE 64bit (HKLM\...\{A5AB0D21-21BD-4DB8-F097-02E8FC8C486A}) (Version: 4.2.0 - Steinberg Media Technologies GmbH) Steinberg Groove Agent SE Content (HKLM-x32\...\{AFC9D1CE-F050-437C-35A5-62DEDB262DC7}) (Version: 1.2.1 - Steinberg Media Technologies GmbH) Steinberg HALion Sonic SE 64bit (HKLM\...\{B99C316B-C135-43B5-8E77-2BC5E241F964}) (Version: 2.0.2 - Steinberg Media Technologies GmbH) Steinberg Midi Loop Library (HKLM-x32\...\{89DE2651-6DD9-4C15-AC94-8348362D456C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH) Steinberg REVerence Content 01 (HKLM-x32\...\{532B917B-8235-4FA5-BE36-643A8BB053A5}) (Version: 2.0.1.000 - Steinberg Media Technologies GmbH) Steinberg Upload Manager (HKLM-x32\...\{88BBBD8F-4C19-4809-B84B-7A8F8238B48D}) (Version: 1.0.1 - Steinberg Media Technologies GmbH) Steinberg VST Amp Rack Content 01 (HKLM-x32\...\{8CBA7E47-48DA-47DC-8E98-6984BA830295}) (Version: 1.0.1 - Steinberg Media Technologies GmbH) TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.2.8352 - TeamViewer) Tinypic 3.18 (HKLM-x32\...\{E3723A04-A894-4036-A78E-282E18F43C0A}_is1) (Version: Tinypic 3.18 - E. Fiedler) Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.21a - Ghisler Software GmbH) TP-Link PLC Utility (HKLM-x32\...\{A79B7C66-DC26-417A-8BB5-B48721B45623}) (Version: 2.2.2758.8 - TP-Link) Hidden TP-Link PLC Utility (HKLM-x32\...\InstallShield_{A79B7C66-DC26-417A-8BB5-B48721B45623}) (Version: 2.2.2758.8 - TP-Link) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C99F4AFA-B32C-4063-865C-D7B5CC0A78FB}) (Version: 2.54.0.0 - Microsoft Corporation) VdhCoApp 1.2.4 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper) Vegas Pro 13.0 (64-bit) (HKLM\...\{1F8D8040-0BC8-11E5-85C5-F04DA23A5C58}) (Version: 13.0.453 - Sony) VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.8 - VideoLAN) Wacom Tablett (HKLM\...\Wacom Tablet Driver) (Version: 6.3.37-3 - Wacom Technology Corp.) WestwoodChat (HKLM-x32\...\{7CAE6A67-AF7B-4A6A-8705-8AFACA45BB60}) (Version: - ) WhatsApp (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\WhatsApp) (Version: 0.3.9309 - WhatsApp) WhatsApp (HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\WhatsApp) (Version: 0.3.9309 - WhatsApp) Windows 10-Upgrade-Assistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17387 - Microsoft Corporation) Windows-Treiberpaket - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 5.40 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) x264vfw - H.264/MPEG-4 AVC codec (remove only) (HKLM-x32\...\x264vfw) (Version: - ) Packages: ========= Acrobat Notification Client -> C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2019-05-03] (Adobe Systems Incorporated) Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc [2019-07-18] (Adobe Systems Incorporated) Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.8.0.1_neutral__6e5tt8cgb93ep [2019-05-24] (Canon Inc.) Dr. Windows -> C:\Program Files\WindowsApps\52375DrWindows.Dr.Windows_3.4.0.0_x64__chdjs8pthps04 [2019-12-17] (Martin Geuss) Duplicates Cleaner -> C:\Program Files\WindowsApps\6655kaeros.DuplicatesCleaner_3.48.0.0_x64__wbzechdf9an1w [2019-04-05] (kaeros) Enpass -> C:\Program Files\WindowsApps\SinewSoftwareSystems.Enpass_5.5.7.1000_x64__fwdy0m65qb6h2 [2018-11-29] (Sinew Software Systems Private Limited) Fotos-Add-On -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2019-02-25] (Microsoft Corporation) G2A Deal -> C:\Program Files\WindowsApps\18582StarfrostStudio.G2ADeal_1.5.3.0_x64__mj61gzav6bcwe [2017-09-27] (Starfrost Studio) Garantiedatenbank -> C:\Program Files\WindowsApps\3415HenryundFelixGuttbier.Garantiedatenbank_1.1.6.0_x64__tsysqz3k08vhj [2017-06-30] (Henry und Felix Guttbier) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_105.1.623.0_x64__v10z8vjag6ke6 [2020-01-14] (HP Inc.) Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_41.1788.50991.0_x86__8xx8rvfyw5nnt [2018-11-23] (Instagram) iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa [2019-12-12] (Apple Inc.) [Startup Task] Lieferservice.de -> C:\Program Files\WindowsApps\Takeaway.com.Lieferservice.de_4.1.2.0_x64__jjfddhk1apc4g [2017-05-21] (Takeaway.com) Messenger -> C:\Program Files\WindowsApps\Facebook.317180B0BB486_196.2292.59195.0_x86__8xx8rvfyw5nnt [2019-05-17] (Facebook Inc) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-19] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-19] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2019-12-12] (Microsoft Studios) [MS Ad] Minecraft for Windows 10 -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.14.105.0_x64__8wekyb3d8bbwe [2020-01-14] (Microsoft Studios) modTuner -> C:\Program Files\WindowsApps\BurntFuse.modTuner_1.8.1.18_x64__drdfph422cewt [2018-02-16] (Burnt Fuse) MPEG-2-Videoerweiterung -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2019-09-24] (Microsoft Corporation) MSN Wetter -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-19] (Microsoft Corporation) [MS Ad] Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.95.602.0_x64__mcm4njqhnhss8 [2019-10-26] (Netflix, Inc.) One Calendar -> C:\Program Files\WindowsApps\64885BlueEdge.OneCalendar_2019.210.3.0_x64__8kea50m9krsh2 [2019-04-21] (Code Spark) PDF Reader - View, Edit, Annotate -> C:\Program Files\WindowsApps\5E8FC25E.XODODOCS_4.2.6.0_x64__3v3sf0k6w2rec [2019-12-17] (Xodo Technologies Inc.) Saver for Instagram PRO -> C:\Program Files\WindowsApps\YellowElephantProductions.InstaGrabberPRO_1.29.106.0_x64__p3e1zgp7z7szg [2018-12-19] (Yellow Elephant Productions) Sky Go -> C:\Program Files\WindowsApps\SkyDeutschlandAG.SkyGo_2.4.2.0_x64__5syynrx1xchwe [2017-10-04] (Sky Deutschland AG) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0 [2019-12-19] (Spotify AB) [Startup Task] Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-09] (Twitter Inc.) WEB.DE Mail -> C:\Program Files\WindowsApps\4659BB81.WEB.DEMail_3.31.1.0_x64__9r8rjdwa12808 [2019-12-12] (1&1 Mail & Media GmbH) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{004B49B7-11B9-5058-AA22-08DD0A3ADC4B}\InprocServer32 -> {183C3EEC-9468-D082-BAAE-4DE985889A47} => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{004B49B7-11B9-5058-BB22-08DD0A3ADC4B}\InprocServer32 -> {1EDE1365-9468-D082-3383-AFEF85889A47} => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-28421BD89D07} -> [Creative Cloud Files] => C:\Users\chris\Creative Cloud Files [2016-03-30 00:00] CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.34.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.33.3\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{DD0822AA-3A0A-4BDC-B749-4B00B9115850}\InprocServer32 -> {545E7B89-9468-D082-DFEB-2FA585889A47} => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{DD0822BB-3A0A-4BDC-B749-4B00B9115850}\InprocServer32 -> {51600F0F-9468-D082-599F-11A085889A47} => Keine Datei CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{DEDBE4C9-9E87-40C5-B437-9AAB7EB9C667}\InprocServer32 -> C:\Program Files (x86)\EasternGraphics\EGR-ShellExtension\Win64\egr_se.dll (EasternGraphics GmbH -> EasternGraphics) CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => D:\Dropbox [2016-03-29 14:53] CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems) CustomCLSID: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\chris\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => Keine Datei ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-10] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2019-12-02] (Adobe Inc. -> Adobe Systems Inc.) ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Keine Datei ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-10] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-05-07] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-10] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> ) ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2019-12-02] (Adobe Inc. -> Adobe Systems Inc.) ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll [2012-12-29] (VS Revo Group -> VS Revo Group) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\system32\lagarith.dll [148992 2011-12-07] ( ) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\system32\xvidvfw.dll [309248 2015-12-18] () [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [105984 2015-09-05] (Beepa P/L) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] ( ) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [282112 2015-12-18] () [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112128 2015-10-24] () [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2015-09-05] (Beepa P/L) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.vorbis] => C:\Windows\SysWOW64\vorbis.acm [1554944 2009-09-15] (HMS hxxp://hp.vector.co.jp/authors/VA012897/) [Datei ist nicht signiert] ==================== Verknüpfungen & WMI ======================== ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2019-05-03 03:33 - 2019-05-03 03:33 - 000241664 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\de_DE\Adobe Send\SendAsLinkX.DEU 2019-03-25 22:44 - 2019-03-25 22:44 - 000048640 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\de_de\PDFMaker\PDFMOutlookAddin.DEU 2019-05-22 14:27 - 2019-05-22 14:27 - 001194496 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\4659BB81.WEB.DEMail_3.31.1.0_x64__9r8rjdwa12808\e_sqlite3.dll 2019-12-12 17:57 - 2019-12-12 18:01 - 049030144 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\4659BB81.WEB.DEMail_3.31.1.0_x64__9r8rjdwa12808\Uimam.UwpMail.App.dll 2019-05-03 03:33 - 2019-05-03 03:33 - 000056320 _____ (Adobe Systems Incorporated) [Datei ist nicht signiert] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Locale\de_de\Adobe Send\SendAsLinkAddin.DEU 2016-03-30 09:02 - 2012-06-14 16:18 - 000359936 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNMN6PPM.DLL 2016-03-29 14:24 - 2016-05-10 10:29 - 000077312 _____ (Igor Pavlov) [Datei ist nicht signiert] C:\Program Files\7-Zip\7-zip.dll 2013-11-21 07:31 - 2013-11-21 07:31 - 000499200 _____ (Intel Corporation) [Datei ist nicht signiert] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\ISDI2.dll 2013-11-21 07:31 - 2013-11-21 07:31 - 000286720 _____ (Intel Corporation) [Datei ist nicht signiert] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\PsiData.dll 2020-01-07 20:41 - 2020-01-07 20:41 - 000000000 ____L (Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll 2020-01-07 20:41 - 2020-01-07 20:41 - 000000000 ____L (Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\c2r64.dll 2018-02-24 08:52 - 2017-09-27 17:30 - 000489984 _____ (Newtonsoft) [Datei ist nicht signiert] C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\Newtonsoft.Json.dll 2018-02-24 08:52 - 2018-01-26 17:08 - 000088064 _____ (Wondershare) [Datei ist nicht signiert] C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppCollect.dll 2018-02-24 08:52 - 2018-01-26 17:08 - 000200192 _____ (Wondershare) [Datei ist nicht signiert] C:\Program Files (x86)\Wondershare\WAF\2.4.3.236\WsAppCommon.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ========== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\line6.net -> line6.net IE trusted site: HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\line6.net -> line6.net ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-10-30 08:24 - 2019-02-27 17:30 - 000000974 _____ C:\WINDOWS\system32\drivers\etc\hosts 127.0.0.1 127.0.0.1 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 activate.adobe.com ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Common Files\Intel\Shared Libraries\redist\intel64\compiler;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\WINDOWS\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518144\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518703\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518160\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518740\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\Control Panel\Desktop\\Wallpaper -> D:\Bilder\Wallpapers\600921.jpg HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\Control Panel\Desktop\\Wallpaper -> D:\Bilder\Wallpapers\600921.jpg HKU\S-1-5-21-1188302669-1672055750-2685224995-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg HKU\S-1-5-21-1188302669-1672055750-2685224995-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518540\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) ist aktiviert. Network Binding: ============= WLAN 2: Intel® Centrino® Wireless Bluetooth® + High Speed Protokoll -> amppalp (enabled) ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AdobeUpdateService => 2 MSCONFIG\Services: AGSService => 2 MSCONFIG\Services: AMPPALR3 => 2 MSCONFIG\Services: BTHSSecurityMgr => 2 MSCONFIG\Services: GsServer => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: Origin Client Service => 3 MSCONFIG\Services: Origin Web Helper Service => 2 MSCONFIG\Services: ss_conn_service => 2 MSCONFIG\Services: Steam Client Service => 3 HKLM\...\StartupApproved\Run: => "RtHDVBg_LENOVO_MICPKEY" HKLM\...\StartupApproved\Run: => "RtHDVBg_LENOVO_DOLBYDRAGON" HKLM\...\StartupApproved\Run: => "RtHDVBg_Dolby" HKLM\...\StartupApproved\Run: => "EnergyUtility" HKLM\...\StartupApproved\Run: => "Energy Management" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "RtHDVCpl" HKLM\...\StartupApproved\Run: => "RtsFT" HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "WindowsDefender" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run32: => "Dropbox" HKLM\...\StartupApproved\Run32: => "PMBVolumeWatcher" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\StartupFolder: => "EvernoteClipper.lnk" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Google Update" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "MusicManager" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "securesafe" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Amazon Drive" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Amazon Music" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "GoodSync" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "GalaxyClient" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Amazon Music Helper" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "iCloudDrive" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "iCloudPhotos" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "ApplePhotoStreams" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "iCloudServices" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "SmartSwitchPDLR.exe" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Enpass" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "CCXProcess" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001\...\StartupApproved\Run: => "Amazon Photos" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\StartupFolder: => "EvernoteClipper.lnk" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Google Update" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "MusicManager" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "securesafe" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Amazon Drive" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Amazon Music" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "GoodSync" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "GalaxyClient" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Amazon Music Helper" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "iCloudDrive" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "iCloudPhotos" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "ApplePhotoStreams" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "iCloudServices" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "SmartSwitchPDLR.exe" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Enpass" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "CCXProcess" HKU\S-1-5-21-1188302669-1672055750-2685224995-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518175\...\StartupApproved\Run: => "Amazon Photos" HKU\S-1-5-21-1188302669-1672055750-2685224995-1002\...\StartupApproved\Run: => "CCXProcess" HKU\S-1-5-21-1188302669-1672055750-2685224995-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01162020152518540\...\StartupApproved\Run: => "CCXProcess" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [UDP Query User{EC73D3E7-7D12-44AD-88A3-0D7364F0F55A}C:\program files\adobe\adobe dreamweaver cc 2019\node\node.exe] => (Allow) C:\program files\adobe\adobe dreamweaver cc 2019\node\node.exe Keine Datei FirewallRules: [TCP Query User{38458B58-6C55-438B-A25D-3CDC7A1BB55F}C:\program files\adobe\adobe dreamweaver cc 2019\node\node.exe] => (Allow) C:\program files\adobe\adobe dreamweaver cc 2019\node\node.exe Keine Datei FirewallRules: [{CA433E80-9493-4D1B-BD1D-F0B95E3AB3B5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH) FirewallRules: [{D6CB8D2A-DFDC-4572-BC5D-D1C0C49365DB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH) FirewallRules: [{7B1A6489-613B-4E95-86B3-226FD1937142}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH) FirewallRules: [{B3005CD9-3463-4239-B652-E6AF331FDBDD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH) FirewallRules: [{820DB907-9F82-4E3D-A582-D27AD794BF65}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{94BC6483-BE72-4664-8DA2-7A56CC0AF445}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{3DF038AB-C92D-4446-B78C-3EADEFEB4B1E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{9554ECB1-8F40-4CF8-AD1C-3AD5239786EF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{0A16310B-79B0-4240-81AE-632E19511F41}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe Keine Datei FirewallRules: [UDP Query User{7DC3E8AE-5549-4024-B203-463745DB06B5}C:\program files (x86)\tp-link\tp-link plc utility\tpplc.exe] => (Allow) C:\program files (x86)\tp-link\tp-link plc utility\tpplc.exe (TP-Link TECHNOLOGIES CO., LTD.) [Datei ist nicht signiert] FirewallRules: [TCP Query User{8B3190CF-DDD3-4147-ADC6-4FA5A33542AB}C:\program files (x86)\tp-link\tp-link plc utility\tpplc.exe] => (Allow) C:\program files (x86)\tp-link\tp-link plc utility\tpplc.exe (TP-Link TECHNOLOGIES CO., LTD.) [Datei ist nicht signiert] FirewallRules: [{26B4EF6E-4A12-4C9F-AB90-9F2D8AB697BA}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) FirewallRules: [UDP Query User{DBE26C69-2E04-4473-B9AA-7E972B947114}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [TCP Query User{50DBF666-49E8-42BA-A912-D51301DF2D84}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{23E65982-1D9C-48B1-9D94-2FFC6EE07FB4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1F38D8D0-A93C-4FE3-BA00-815992CA2C84}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{5B92D36B-B0DA-4DC8-A5C2-BC1528E72E75}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe Keine Datei FirewallRules: [{1044B714-1399-4D84-819E-E036C5F2D3B8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{0C3F523C-86C6-4B10-8718-3D8871131758}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [UDP Query User{E39D2E42-E966-45FB-A256-7E91CB212CD9}C:\users\chris\appdata\local\jdownloader 2.0\jdownloader2.exe] => (Allow) C:\users\chris\appdata\local\jdownloader 2.0\jdownloader2.exe (Appwork GmbH -> AppWork GmbH) FirewallRules: [TCP Query User{9769E684-7569-4373-AACF-FF10DDCC4BB6}C:\users\chris\appdata\local\jdownloader 2.0\jdownloader2.exe] => (Allow) C:\users\chris\appdata\local\jdownloader 2.0\jdownloader2.exe (Appwork GmbH -> AppWork GmbH) FirewallRules: [UDP Query User{6E99DB4B-A067-4ACD-BE93-A56735B6729D}D:\programme\powerline scan.exe] => (Allow) D:\programme\powerline scan.exe (TP-LINK TECHNOLOGIES CO., LTD.) [Datei ist nicht signiert] FirewallRules: [TCP Query User{95057ABA-B9AC-4940-B009-B27A261B6D72}D:\programme\powerline scan.exe] => (Allow) D:\programme\powerline scan.exe (TP-LINK TECHNOLOGIES CO., LTD.) [Datei ist nicht signiert] FirewallRules: [{11E5B635-B6F7-48EA-A76D-77A850CF2F7E}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation-Wireless Connectivity Solutions -> ) FirewallRules: [{9EE3197B-85F5-4740-A093-D6E62CCFE1C8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{F8F6FF64-C39F-4625-8B52-92337BC547C1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{6F9900DD-74B9-4744-B7ED-180303912713}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Keine Datei FirewallRules: [{3A49D31E-4275-4E72-88DD-CAC093DA6168}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Keine Datei FirewallRules: [{CFC520F8-C866-4B06-9B99-4A34B667B78E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{D468A3C9-FEEC-4DCE-A87A-568DBADC57CD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{E2876709-5451-4C8B-82D4-678B88E1F484}] => (Allow) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe (Easeware Technology Limited -> Easeware) FirewallRules: [TCP Query User{87815BB6-AE7A-459F-8A40-5EF7F4A4D6B8}C:\users\chris\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chris\appdata\roaming\spotify\spotify.exe Keine Datei FirewallRules: [UDP Query User{E0F73A79-F54F-4DA4-85BC-24AB623BC516}C:\users\chris\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chris\appdata\roaming\spotify\spotify.exe Keine Datei FirewallRules: [TCP Query User{C4E7019E-D270-4494-9460-413D1FD84CB5}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{9F90D57B-9237-4288-978A-13BD3A0F03E7}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{B1EA397E-2195-43DD-BCD3-CE7EAD8098DE}C:\users\chris\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chris\appdata\roaming\spotify\spotify.exe Keine Datei FirewallRules: [UDP Query User{5FEBF24C-30B6-433A-A55C-B298F52CFE03}C:\users\chris\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chris\appdata\roaming\spotify\spotify.exe Keine Datei FirewallRules: [TCP Query User{EB777776-CB07-4C1A-8F1C-F094670616F3}C:\program files (x86)\tp-link\tp-link plc utility\tpplc.exe] => (Allow) C:\program files (x86)\tp-link\tp-link plc utility\tpplc.exe (TP-Link TECHNOLOGIES CO., LTD.) [Datei ist nicht signiert] FirewallRules: [UDP Query User{00A084D0-60E0-4EC0-9353-EE97330B4692}C:\program files (x86)\tp-link\tp-link plc utility\tpplc.exe] => (Allow) C:\program files (x86)\tp-link\tp-link plc utility\tpplc.exe (TP-Link TECHNOLOGIES CO., LTD.) [Datei ist nicht signiert] FirewallRules: [{39647EE8-CFE1-49DC-8158-283EE3A4DFA0}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{46B1BF71-1430-46BE-8C8A-95882DA72F57}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{7A920EC4-D2E6-4742-96AA-49DACFDAB9CB}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{DE8BB5CD-904C-4539-BA12-50F249FCE1E8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{7B523683-8807-442E-AE01-B3D1C121494A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{EDDEAF4D-129A-4C61-B386-1FF36C61C700}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{15BF4235-81C5-4F20-B0CD-65E2AD73B26D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe Keine Datei FirewallRules: [{555E3604-BA7D-4F57-B6B9-FB162FFE1DD0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe Keine Datei FirewallRules: [{8025487D-D95A-4189-A63C-73973AF291DB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{755F0449-5B1E-4E4E-B147-E8ADA02FDF18}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{85865ABE-2642-4809-8363-087B9D61CE99}] => (Allow) C:\Users\chris\AppData\Local\Apowersoft\Online Audio Recorder\Online Audio Recorder.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{637CB488-9036-46C2-95A2-EDFC495041F6}] => (Allow) C:\Users\chris\AppData\Local\Apowersoft\Online Audio Recorder\Online Audio Recorder.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [TCP Query User{97A1E5ED-C6CC-4544-88A9-82CA48C71922}C:\program files\adobe\adobe photoshop cc 2019\photoshop.exe] => (Allow) C:\program files\adobe\adobe photoshop cc 2019\photoshop.exe Keine Datei FirewallRules: [UDP Query User{90FB9A77-32A8-4DBE-B204-F0DF699BF088}C:\program files\adobe\adobe photoshop cc 2019\photoshop.exe] => (Allow) C:\program files\adobe\adobe photoshop cc 2019\photoshop.exe Keine Datei FirewallRules: [{15FEB61B-F49F-4C62-969A-3167C0A3C2AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Alan Wake\AlanWake.exe Keine Datei FirewallRules: [{9820F2C9-FF35-41C4-96F8-8B2644ECD816}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Alan Wake\AlanWake.exe Keine Datei FirewallRules: [TCP Query User{A5C22A1E-360E-46F2-B247-35E3F7519594}C:\program files\adobe\adobe photoshop cc 2019\photoshop.exe] => (Allow) C:\program files\adobe\adobe photoshop cc 2019\photoshop.exe Keine Datei FirewallRules: [UDP Query User{DCA3B434-9664-43C8-8F46-DE1846DE743C}C:\program files\adobe\adobe photoshop cc 2019\photoshop.exe] => (Allow) C:\program files\adobe\adobe photoshop cc 2019\photoshop.exe Keine Datei FirewallRules: [TCP Query User{4D9F1342-027D-4DAB-AEA8-D7E0C62034E7}C:\program files\adobe\adobe dreamweaver cc 2019\node\node.exe] => (Allow) C:\program files\adobe\adobe dreamweaver cc 2019\node\node.exe Keine Datei FirewallRules: [UDP Query User{003FBA77-93F7-4A9C-8D41-F9A6AAF27440}C:\program files\adobe\adobe dreamweaver cc 2019\node\node.exe] => (Allow) C:\program files\adobe\adobe dreamweaver cc 2019\node\node.exe Keine Datei FirewallRules: [{2C846FED-A5C2-4EA7-89C9-79D6A54C04A3}] => (Allow) C:\Program Files\Siber Systems\GoodSync\gs-server.exe (Siber Systems -> ) FirewallRules: [TCP Query User{B23E581F-140C-459A-A428-924F8958551A}C:\program files\adobe\adobe photoshop 2020\photoshop.exe] => (Allow) C:\program files\adobe\adobe photoshop 2020\photoshop.exe (Adobe Inc. -> Adobe) FirewallRules: [UDP Query User{03999018-D827-4F5E-974B-EC9F5EE69797}C:\program files\adobe\adobe photoshop 2020\photoshop.exe] => (Allow) C:\program files\adobe\adobe photoshop 2020\photoshop.exe (Adobe Inc. -> Adobe) FirewallRules: [TCP Query User{CEDE70D4-C077-4E9D-96DD-BABA6D696A81}C:\program files\adobe\adobe photoshop 2020\photoshop.exe] => (Allow) C:\program files\adobe\adobe photoshop 2020\photoshop.exe (Adobe Inc. -> Adobe) FirewallRules: [UDP Query User{CB1D67C1-CA7A-453D-9E07-B798A5B0DBA9}C:\program files\adobe\adobe photoshop 2020\photoshop.exe] => (Allow) C:\program files\adobe\adobe photoshop 2020\photoshop.exe (Adobe Inc. -> Adobe) FirewallRules: [{EF03C1A1-1CBB-4C97-8F5D-6E952B020500}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{E526A0D1-3431-448B-9330-37ED04E35424}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{7185EB0F-6CEF-46A2-8A75-A7C32A9EA3D0}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{930197A6-2A7B-4DF2-842C-0BFE8000F840}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{F1E7E953-37C4-445E-B8BF-227D971D0CB7}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{3ACBEFA4-450C-4525-8A58-88C3E5ED6837}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{9D575708-6EDC-48A3-AE33-C9F0E55472AB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{3DB4B609-C354-42C5-BCEC-244A201225AC}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12103.1.43048.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{9298E28B-6331-44C7-BFE3-8387FA404D20}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{48A3B5EF-3D7D-48DD-A92B-A3799C208269}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{39FE3237-CD03-47E7-8BA0-D52E8F3079ED}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{B5E7C38D-0B40-410A-9CF8-2FBF0434FAF5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{1FED8542-2962-4C65-866E-29F99E8FBC2F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{8D978B49-5D23-4129-9A2B-003885E7C1A2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{0165C5EE-8CB6-4C90-B2A2-79E1D33A1E65}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4273A7A4-41BD-448D-988E-3FC2669C89F8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4EE9A5AA-3650-4625-AD3D-08B0C34F6140}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{F777A472-BC9E-41F6-A6EB-1EDE71F6A0D0}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{40C5CE66-AE9A-46F4-9EAC-947098B03670}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{094BEAD7-C1AF-4F9E-94A3-7658DC93BDDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks) [Datei ist nicht signiert] FirewallRules: [{5F2ED8F7-96C6-4AF7-80F8-D91A0883722D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks) [Datei ist nicht signiert] FirewallRules: [{3C030C2A-9FD7-451B-A3C4-EA88D11917CF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\skyrim\skse_steam_boot.exe () [Datei ist nicht signiert] FirewallRules: [{58620582-624F-49DE-B9C7-4223E90571C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\skyrim\skse_steam_boot.exe () [Datei ist nicht signiert] FirewallRules: [{5BCF4AD6-B4BA-4595-B898-7D869EF0D41C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{12902D66-14C3-4FFA-AC8A-2E6283843FD6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{5318F9AD-0B4D-467A-9971-03EC6F632EB7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{06E6E5CB-EACD-4DEA-9F3B-DBCF03EE8612}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{BC330538-0049-4EA7-BAE6-799AAC44AA94}] => (Allow) C:\Users\chris\AppData\Local\Temp\7zS0CB1\HP.EasyStart.exe (HP Inc. -> HP) ==================== Wiederherstellungspunkte ========================= 12-01-2020 15:54:36 Geplanter Prüfpunkt 15-01-2020 13:17:16 Installed HP Support Solutions Framework ==================== Fehlerhafte Geräte im Gerätemanager ============ ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (01/16/2020 03:55:13 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (16800,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/16/2020 03:45:47 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (2736,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/16/2020 03:31:45 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (7952,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/16/2020 03:27:42 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "QueryFullProcessImageNameW" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070006, Das Handle ist ungültig. . Vorgang: Asynchroner Vorgang wird ausgeführt Kontext: Aktueller Status: DoSnapshotSet Error: (01/16/2020 03:26:27 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "QueryFullProcessImageNameW" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070006, Das Handle ist ungültig. . Vorgang: Asynchroner Vorgang wird ausgeführt Kontext: Aktueller Status: DoSnapshotSet Error: (01/16/2020 03:26:09 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert . Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess. Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {7e28743e-c357-4777-86cf-3e0d51785d96} Error: (01/16/2020 03:25:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: OriginWebHelperService.exe, Version: 10.5.57.35162, Zeitstempel: 0x5df243e3 Name des fehlerhaften Moduls: OriginWebHelperService.exe, Version: 10.5.57.35162, Zeitstempel: 0x5df243e3 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00099d50 ID des fehlerhaften Prozesses: 0x1538 Startzeit der fehlerhaften Anwendung: 0x01d5cc78c50587a8 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Origin\OriginWebHelperService.exe Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Origin\OriginWebHelperService.exe Berichtskennung: 57a5f13f-015d-4fc6-9dd3-1f1593eaee04 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (01/16/2020 03:24:35 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Systemfehler: ============= Error: (01/16/2020 03:59:26 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {3C296D07-90AE-4FAC-86F9-65EAA8B82D22}. Fehler: "2147942402" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\SppExtComObj.exe -Embedding Error: (01/16/2020 03:59:26 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {3C296D07-90AE-4FAC-86F9-65EAA8B82D22}. Fehler: "2147942402" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\SppExtComObj.exe -Embedding Error: (01/16/2020 03:58:26 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {3C296D07-90AE-4FAC-86F9-65EAA8B82D22}. Fehler: "2147942402" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\SppExtComObj.exe -Embedding Error: (01/16/2020 03:58:26 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {3C296D07-90AE-4FAC-86F9-65EAA8B82D22}. Fehler: "2147942402" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\SppExtComObj.exe -Embedding Error: (01/16/2020 03:57:26 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {3C296D07-90AE-4FAC-86F9-65EAA8B82D22}. Fehler: "2147942402" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\SppExtComObj.exe -Embedding Error: (01/16/2020 03:57:26 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {3C296D07-90AE-4FAC-86F9-65EAA8B82D22}. Fehler: "2147942402" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\SppExtComObj.exe -Embedding Error: (01/16/2020 03:56:26 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {3C296D07-90AE-4FAC-86F9-65EAA8B82D22}. Fehler: "2147942402" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\SppExtComObj.exe -Embedding Error: (01/16/2020 03:56:26 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {3C296D07-90AE-4FAC-86F9-65EAA8B82D22}. Fehler: "2147942402" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\SppExtComObj.exe -Embedding Windows Defender: =================================== Date: 2019-12-25 23:20:26.844 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {1AB392DE-3643-4214-8C34-A0B129CBEE1D} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2019-12-25 21:20:31.940 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {C1864754-921C-4507-84FD-E57F9AF72F71} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2019-12-20 10:13:08.746 Description: Windows Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=Program:Win32/Uwasson.A!ml&threatid=251745&enterprise=0 Name: Program:Win32/Uwasson.A!ml ID: 251745 Schweregrad: Mittel Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\chris\Downloads\FSPViewer-2.1.0-Setup_CB-DL-Manager.exe Erkennungsursprung: Lokaler Computer Erkennungstype: FastPath Erkennungsquelle: Echtzeitschutz Benutzer: DESKTOP-PG57P95\chris Prozessname: C:\Windows\explorer.exe Sicherheitsversion: AV: 1.307.803.0, AS: 1.307.803.0, NIS: 1.307.803.0 Modulversion: AM: 1.1.16600.7, NIS: 1.1.16600.7 Date: 2019-12-17 17:19:25.719 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {4A8BB5F1-0882-4190-A989-C6254257ED43} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2019-12-12 17:32:43.363 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {2BF93B50-C5ED-4024-8F58-775FC693D1C5} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM CodeIntegrity: =================================== Date: 2020-01-16 15:25:18.528 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\spoolsv.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\AdobePDF.dll that did not meet the Unchecked signing level requirements. Date: 2020-01-16 15:18:07.482 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\spoolsv.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\AdobePDF.dll that did not meet the Unchecked signing level requirements. Date: 2020-01-16 15:12:53.510 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\spoolsv.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\AdobePDF.dll that did not meet the Unchecked signing level requirements. Date: 2020-01-15 21:42:49.795 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\spoolsv.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\AdobePDF.dll that did not meet the Unchecked signing level requirements. Date: 2020-01-07 13:22:57.692 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\spoolsv.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\AdobePDF.dll that did not meet the Unchecked signing level requirements. Date: 2020-01-06 16:38:49.348 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\spoolsv.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\AdobePDF.dll that did not meet the Unchecked signing level requirements. Date: 2019-12-31 11:11:15.300 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system. Date: 2019-12-31 11:11:15.293 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system. ==================== Speicherinformationen =========================== BIOS: LENOVO 6BCN44WW(V2.04) 05/21/2013 Hauptplatine: LENOVO INVALID Prozessor: Intel(R) Core(TM) i7-3630QM CPU @ 2.40GHz Prozentuale Nutzung des RAM: 41% Installierter physikalischer RAM: 16331.28 MB Verfügbarer physikalischer RAM: 9564.5 MB Summe virtueller Speicher: 25035.28 MB Verfügbarer virtueller Speicher: 14537.31 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:231.48 GB) (Free:44.08 GB) NTFS Drive d: (LW D) (Fixed) (Total:931.51 GB) (Free:70.89 GB) NTFS \\?\Volume{a3e7413c-a1be-44e5-9315-8cc6ccf591e8}\ (Wiederherstellung) (Fixed) (Total:0.44 GB) (Free:0.42 GB) NTFS \\?\Volume{23702f05-efee-48c5-9327-92e29d947636}\ () (Fixed) (Total:0.85 GB) (Free:0.32 GB) NTFS \\?\Volume{b7062adc-4200-43a9-98ca-78a5bed83e88}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 232.9 GB) (Disk ID: C3FB043E) Partition: GPT. ========================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 2D01DD7A) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ======================= |
17.01.2020, 07:57 | #5 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Ads ÜberschwemmungZitat:
Hier ist es vorbei dem Support, denn sowas wie R@1n-KMS, KMSnano oder KMSpico sind illegale Freischalter für Windows und Office. Hättest du ein Windows 10 Home hätte ich dich nur Office deinstallieren lassen. Du hast aber ein Windows 10 Pro... Für dich geht es da weiter --> Neuinstallation von Windows 10 Hilfe gibt es nur noch zu Fragen bzgl Datensicherung und Neuinstallation
__________________ Logfiles bitte immer in CODE-Tags posten |
17.01.2020, 20:07 | #6 |
| Google Ads Überschwemmung Hallo, Windows, sowie auch Office sind beide Original. Windows war vorinstalliert und hier siehst du einen Screenshot von meinem Office 365 Abo. Tatsächlich hatte ich aber mal vor Jahren Office gecrackt. Ich würde es dir überlassen, ob du mir trotzdem hilfst, oder wegen einer Sache die Hilfe ablehnst, die ich vor Jahre mal gemacht habe. Geändert von Frederick (17.01.2020 um 20:20 Uhr) |
17.01.2020, 20:56 | #7 | |
/// TB-Ausbilder | Google Ads ÜberschwemmungZitat:
1. Dein Link führt ins "Nichts"... 2. Den Logdateien ist eindeutig zu entnehmen, dass du illegale Software nutzt (Office, Adobe, evtl. auch Windows) und diese vor kurzem installiert hast. 3. Es wurde von cosinus eindeutig kommuniziert, wie unser Support in deinem Fall noch aussieht. |
Themen zu Google Ads Überschwemmung |
ads, angezeigt, bilder, bildern, bildersuche, brauch, chrome, eingefangen, ergebnis, ergebnisse, gefangen, gen, google, heute, knapp, nicht, sieben, suche, update |