|
Log-Analyse und Auswertung: MFResident-20230328-55Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
08.04.2023, 18:51 | #1 |
| MFResident-20230328-55 Hallo zusammen, seit gestern bekomme ich ca. alle 8 Sekunden ein pop-up Fenster geöffnet. Die Benutzerkontensteuerung fragt mich, ob ich Änderungen einer unbekannten App zulasse. Ihr Name: MFResident-20230328-55.exe Klicke immer auf nein Bin mit einem nicht-admin-Konto unterwegs, und gebe bei Bedarf das Admin Kennwort ein. Ein scan mit dem Windows Defender (auch offline Modus) brachte keine Bedrohungen. Haben den scan mit frst mit meinem nicht-admin Benutzerkonto durchgeführt. Wenn es erforderlich ist, den unter einem Admin-Konto durchzuführen, dann bitte Info (möchte es ansonsten vermeiden, mich derzeit mit einem admin-Konto anzumelden...) Der Windows Defender schlug bereits bei der Installation des tools an, habe da trotzdem installieren angeklickt. Während des scans schlug er wieder an und meldete Bedrohungen. Hab nur irgendwas mit PUA erkannt, das Fenster aber klein gemacht, weil ich zunächst den scan durchlaufen lassen wollte. Danach stand dort nur noch was von Bedrohungen gefunden. Den Defender zum beseitigen gestartet, das kam heraus: Erkannt: Backdoor:Win32/Bladabindi.YPS!MTB Status: Unter Quarantäne Betroffene Elemente: file: C:\Users\Eltern\Downloads\FreeVideoEditor_CB-DL-Manager.exe Vielen Dank für Eure Unterstützung Hier die Ergebnisse von frst: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 06-04-2023 durchgeführt von Eltern (ACHTUNG: der Benutzer ist kein Administrator) auf SCHILLINGFAMILY (Gigabyte Technology Co., Ltd. GA-890GPA-UD3H) (08-04-2023 19:04:16) Gestartet von C:\Users\Eltern\Downloads Geladene Profile: Eltern Plattform: Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Edge Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) () [Datei ist nicht signiert] C:\Users\Eltern\AppData\Local\Temp\is-VDL1T.tmp\MFResident-20230328-55.tmp (DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe <39> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23022.140.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Shenzhen iMyFone Technology Co., Ltd -> ) C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\MFResident.exe (Shenzhen iMyFone Technology Co., Ltd -> ) C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\ResidentAutoUpdate.exe konnte nicht auf den Prozess zugreifen -> app_updater.exe konnte nicht auf den Prozess zugreifen -> AppleMobileDeviceService.exe konnte nicht auf den Prozess zugreifen -> armsvc.exe konnte nicht auf den Prozess zugreifen -> BCUService.exe konnte nicht auf den Prozess zugreifen -> consent.exe konnte nicht auf den Prozess zugreifen -> csrss.exe konnte nicht auf den Prozess zugreifen -> csrss.exe konnte nicht auf den Prozess zugreifen -> dasHost.exe konnte nicht auf den Prozess zugreifen -> dwm.exe konnte nicht auf den Prozess zugreifen -> fontdrvhost.exe konnte nicht auf den Prozess zugreifen -> fontdrvhost.exe konnte nicht auf den Prozess zugreifen -> ForwardDaemon.exe konnte nicht auf den Prozess zugreifen -> Fuel.Service.exe konnte nicht auf den Prozess zugreifen -> HWDeviceService64.exe konnte nicht auf den Prozess zugreifen -> LocalService.exe konnte nicht auf den Prozess zugreifen -> lsass.exe konnte nicht auf den Prozess zugreifen -> mDNSResponder.exe konnte nicht auf den Prozess zugreifen -> mqsvc.exe konnte nicht auf den Prozess zugreifen -> MsMpEng.exe konnte nicht auf den Prozess zugreifen -> NisSrv.exe konnte nicht auf den Prozess zugreifen -> NVDisplay.Container.exe konnte nicht auf den Prozess zugreifen -> NVDisplay.Container.exe konnte nicht auf den Prozess zugreifen -> ouc.exe konnte nicht auf den Prozess zugreifen -> SearchIndexer.exe konnte nicht auf den Prozess zugreifen -> SecurityHealthService.exe konnte nicht auf den Prozess zugreifen -> services.exe konnte nicht auf den Prozess zugreifen -> SgrmBroker.exe konnte nicht auf den Prozess zugreifen -> SilhouetteLinkServer.32.exe konnte nicht auf den Prozess zugreifen -> smss.exe konnte nicht auf den Prozess zugreifen -> SMSvcHost.exe konnte nicht auf den Prozess zugreifen -> SMSvcHost.exe konnte nicht auf den Prozess zugreifen -> spoolsv.exe konnte nicht auf den Prozess zugreifen -> sppsvc.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> wininit.exe konnte nicht auf den Prozess zugreifen -> winlogon.exe konnte nicht auf den Prozess zugreifen -> WmiPrvSE.exe konnte nicht auf den Prozess zugreifen -> XSrvSetup.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM-x32\...\Run: [BCU] => C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [375000 2009-10-15] (DeviceVM Inc. -> DeviceVM, Inc.) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [Google Update] => C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\GoogleUpdateCore.exe [230360 2022-08-29] (Google LLC -> Google LLC) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [AmazonMP3DownloaderHelper] => C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-22] (Amazon Services LLC -> ) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKLM\...\Windows x64\Print Processors\Canon iP4300 Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD86.DLL [27136 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX520 series: C:\WINDOWS\system32\CNCALBO.DLL [303104 2012-09-21] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Print\Monitors\Canon BJ Language Monitor iP4300: C:\WINDOWS\system32\CNMLM86.DLL [234496 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MX520 series: C:\WINDOWS\system32\CNMLMBO.DLL [390656 2012-09-20] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2012-07-31] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [53248 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> Startup: C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2013-01-04] ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) GroupPolicy: Beschränkung ? <==== ACHTUNG GroupPolicy\User: Beschränkung ? <==== ACHTUNG Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => <==== ACHTUNG Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => <==== ACHTUNG Task: C:\WINDOWS\Tasks\DigitalSite.job => <==== ACHTUNG Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core.job => <==== ACHTUNG Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA.job => <==== ACHTUNG Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job => Task: C:\WINDOWS\Tasks\MetaCrawler.job => ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{1533b570-916a-43ef-a95f-2771cf3347c2}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{63e8b743-5869-48f3-b34a-8f4038bdaffe}: [NameServer] 10.74.210.210 10.74.210.211 Edge: ======= Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden] Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden] Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden] Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden] Edge DefaultProfile: Default Edge Profile: C:\Users\Eltern\AppData\Local\Microsoft\Edge\User Data\Default [2023-04-02] FireFox: ======== FF ProfilePath: C:\Users\Eltern\AppData\Roaming\Nvu\Profiles\l9ncqul6.default [2012-11-29] FF ProfilePath: C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default [2019-03-30] FF user.js: detected! => C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default\user.js [2015-09-30] FF Extension: (Telemetry coverage) - C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default\features\{8be4ee0a-5a7c-4dfc-b1a8-b23c5451a190}\telemetry-coverage-bug1487578@mozilla.org.xpi [2019-03-30] [] FF HKLM\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-03-21] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [Datei ist nicht signiert] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 -> C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll [2011-08-03] (Sony Computer Entertainment Inc. -> Sony Computer Entertainment Inc.) FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 -> C:\Program Files (x86)\Sony\Media Go\npmediago.dll [2013-02-14] (Sony Network Entertainment International LLC) [Datei ist nicht signiert] FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1003: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-22] (Amazon Services LLC -> Amazon.com, Inc.) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-10-06] <==== ACHTUNG (Zeigt auf eine *.cfg Datei) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-10-06] <==== ACHTUNG Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default [2023-04-08] CHR Notifications: Default -> hxxp://kleinanzeigen.ebay.de; hxxps://de10.forgeofempires.com; hxxps://lichess.org; hxxps://www.ebay.de CHR Extension: (FoE - Helfer) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2023-03-26] CHR Extension: (Complitly plugin for chrome) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda [2014-04-12] [UpdateUrl:hxxp://www.predictad.com/update/chrome/?si=28188&ver=1.1] <==== ACHTUNG CHR Extension: (Adobe Acrobat: Werkzeuge zum Bearbeiten, Konvertieren und Signieren von PDF-Dateien) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-03-26] CHR Extension: (Google Docs Offline) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-04-07] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31] CHR HKLM\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [cfcbmgbfdbijmjgjihagbomfbjfjmgon] - C:\Users\Schilling Family\AppData\Roaming\SpeedanAlysis\speedanalysis.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [dlfienamagdnkekbbbocojppncdambda] - C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx [2012-05-28] CHR HKLM-x32\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] StartMenuInternet: Google Chrome - C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe StartMenuInternet: Google Chrome.Eltern - C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [440808 2017-06-06] (Digital Wave Ltd -> Digital Wave Ltd.) S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1113864 2020-07-04] (Bayerisches Landesamt fuer Steuern -> ) S2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] (Giga-Byte Technology -> ) R2 HWDeviceService64.exe; C:\Program Files (x86)\DatacardService\HWDeviceService64.exe [351888 2016-03-24] (Huawei Technologies Co.,Ltd. -> ) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Datei ist nicht signiert] S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [682072 2015-07-06] (Huawei Technologies Co.,Ltd. -> ) R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] (JMicron Technology Corp. -> ) R3 lmhosts; C:\WINDOWS\System32\svchost.exe [55320 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation) R3 lmhosts; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation) R2 MFLocalService; C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe [54664 2022-04-28] (Shenzhen iMyFone Technology Co., Ltd -> ) S4 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-11-15] (Motorola Mobility Inc. -> Motorola Mobility LLC) R2 NlaSvc; C:\WINDOWS\System32\svchost.exe [55320 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NlaSvc; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation) R2 nsi; C:\WINDOWS\system32\svchost.exe [55320 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation) R2 nsi; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation) R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [Datei ist nicht signiert] S4 Roxio UPnP Renderer 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUPnPRenderer11.exe [313840 2008-08-14] (Sonic Solutions -> Sonic Solutions) S4 Roxio Upnp Server 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUpnpService11.exe [367088 2008-08-14] (Sonic Solutions -> Sonic Solutions) S4 RoxMediaDB11; C:\Program Files (x86)\Common Files\Roxio Shared\11.0\SharedCOM\RoxMediaDB11.exe [1122304 2009-01-09] (Sonic Solutions) [Datei ist nicht signiert] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [226976 2023-03-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SilhouetteLink; C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe [897200 2016-12-06] (Silhouette Research & Technology Ltd -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe [3224328 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe [133544 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] R3 gdrv; C:\Windows\gdrv.sys [25640 2023-04-07] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider) S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2014-02-08] (GIGA-BYTE TECHNOLOGY CO., LTD -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49608 2023-03-28] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [495896 2023-03-28] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99624 2023-03-28] (Microsoft Windows -> Microsoft Corporation) U3 idsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-04-08 19:04 - 2023-04-08 19:06 - 000026171 _____ C:\Users\Eltern\Downloads\FRST.txt 2023-04-08 19:03 - 2023-04-08 19:05 - 000000000 ____D C:\FRST 2023-04-08 19:01 - 2023-04-08 19:02 - 002379776 _____ (Farbar) C:\Users\Eltern\Downloads\FRST64.exe 2023-04-08 00:11 - 2023-04-08 00:27 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2023-03-18 17:05 - 2023-03-18 17:05 - 000000000 ___HD C:\$WinREAgent 2023-03-09 23:24 - 2023-03-09 23:24 - 000000000 ____D C:\Users\Eltern\AppData\Local\SolidDocuments ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-04-08 18:33 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-04-08 17:47 - 2023-01-24 22:03 - 000000000 ____D C:\Users\Eltern\AppData\Local\CrashDumps 2023-04-07 23:32 - 2017-12-28 22:49 - 000000000 ____D C:\ProgramData\NVIDIA 2023-04-07 23:29 - 2021-06-21 11:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-04-07 23:29 - 2012-05-05 21:40 - 000025640 _____ (Windows (R) Server 2003 DDK provider) C:\WINDOWS\gdrv.sys 2023-04-07 22:32 - 2021-06-21 10:56 - 000002396 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-04-07 22:32 - 2021-06-21 10:56 - 000002234 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-04-07 22:32 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-04-07 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-04-07 22:28 - 2012-05-06 09:23 - 000002540 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-04-07 22:28 - 2012-05-06 09:23 - 000002503 _____ C:\Users\Eltern\Desktop\Google Chrome.lnk 2023-04-07 22:26 - 2021-06-21 10:59 - 000002443 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-04-04 23:44 - 2021-06-21 10:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-04-02 11:37 - 2021-06-21 11:15 - 001917326 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-04-02 11:37 - 2019-12-07 16:51 - 000820884 _____ C:\WINDOWS\system32\perfh007.dat 2023-04-02 11:37 - 2019-12-07 16:51 - 000177416 _____ C:\WINDOWS\system32\perfc007.dat 2023-04-02 11:37 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2023-03-28 01:10 - 2018-05-27 22:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-03-25 15:06 - 2023-03-07 09:26 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-03-25 15:06 - 2023-03-07 09:26 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-03-19 01:32 - 2021-06-21 10:50 - 000523208 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-03-19 01:28 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-03-18 17:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-03-18 17:29 - 2021-06-21 10:55 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-03-18 16:56 - 2013-08-03 13:53 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-03-18 16:35 - 2012-05-05 17:39 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-03-09 23:24 - 2012-05-06 09:25 - 000000000 ____D C:\Users\Eltern\AppData\Roaming\Adobe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2012-05-28 11:46 - 2012-05-28 11:46 - 007106104 _____ () C:\Program Files (x86)\FLV PlayerFCSetup.exe 2015-07-14 15:52 - 2013-06-26 13:51 - 000884736 _____ () C:\Program Files (x86)\vkaraoke.exe 2020-05-12 20:16 - 2020-05-12 20:16 - 000000008 _____ () C:\Users\Eltern\AppData\Roaming\com.silhouettesoftware.id 2012-06-09 15:54 - 2012-06-09 15:54 - 000000000 _____ () C:\Users\Eltern\AppData\Local\rx_image32.Cache 2012-06-02 17:13 - 2012-06-02 17:13 - 000017408 _____ () C:\Users\Eltern\AppData\Local\WebpageIcons.db ==================== FLock ============================== 2023-03-25 15:08 C:\Config.Msi 2012-06-16 17:06 C:\MSOCache 2019-12-07 11:14 C:\PerfLogs 2023-04-08 00:27 C:\WINDOWS\system32\config 2019-12-07 11:31 C:\WINDOWS\system32\Configuration 2019-12-07 11:14 C:\WINDOWS\system32\DriverState 2019-12-07 16:52 C:\WINDOWS\system32\FxsTmp 2019-12-07 11:14 C:\WINDOWS\system32\ias 2021-06-21 11:49 C:\WINDOWS\system32\MsDtc 2021-06-21 10:42 C:\WINDOWS\system32\msmq 2019-12-07 11:14 C:\WINDOWS\system32\networklist 2023-04-04 23:44 C:\WINDOWS\system32\SleepStudy 2023-04-08 18:55 C:\WINDOWS\system32\sru 2023-04-07 22:26 C:\WINDOWS\system32\Tasks 2021-06-21 11:49 C:\WINDOWS\system32\Tasks_Migrated 2023-01-12 22:50 C:\WINDOWS\system32\WDI 2015-07-30 23:52 C:\WINDOWS\system32\wfp 2023-04-07 22:32 C:\Program Files\WindowsApps 2012-05-28 11:46 C:\Program Files (x86)\FLV PlayerFCSetup.exe 2021-06-21 11:39 C:\WINDOWS\diagerr.xml 2021-06-21 11:39 C:\WINDOWS\diagwrn.xml 2022-07-22 13:45 C:\WINDOWS\iis.log 2019-08-11 18:23 C:\WINDOWS\InfusedApps 2022-07-22 22:15 C:\WINDOWS\LiveKernelReports 2023-03-04 12:51 C:\WINDOWS\Minidump 2019-12-07 11:14 C:\WINDOWS\ModemLogs 2023-04-08 19:07 C:\WINDOWS\Prefetch 2021-06-21 11:49 C:\WINDOWS\ServiceState 2021-12-16 00:32 C:\WINDOWS\SystemTemp 2023-04-08 17:49 C:\WINDOWS\Temp 2019-12-07 11:31 C:\WINDOWS\SysWOW64\config 2019-12-07 11:31 C:\WINDOWS\SysWOW64\Configuration 2019-12-07 16:52 C:\WINDOWS\SysWOW64\FxsTmp 2019-12-07 11:14 C:\WINDOWS\SysWOW64\Msdtc 2019-12-07 11:14 C:\WINDOWS\SysWOW64\networklist 2019-12-07 11:14 C:\WINDOWS\SysWOW64\sru 2019-12-07 11:31 C:\WINDOWS\SysWOW64\Tasks 2019-12-07 11:14 C:\WINDOWS\system32\Drivers\DriverData 2016-11-13 04:30 C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-09-20 16:28 C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job 2015-09-20 16:28 C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job 2015-09-20 15:11 C:\WINDOWS\Tasks\DigitalSite.job 2017-11-27 00:04 C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core.job 2017-11-27 00:04 C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA.job 2021-06-21 11:16 C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job 2015-09-20 15:11 C:\WINDOWS\Tasks\MetaCrawler.job 2021-06-21 11:24 C:\Users\DefaultAppPool 2021-06-21 11:24 C:\Users\Henrike 2022-09-17 13:51 C:\Users\Schilling Family 2022-06-25 09:04 C:\ProgramData\Packages 2019-12-07 16:54 C:\ProgramData\WindowsHolographicDevices ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ACHTUNG: ==> Auf den BCD konnte nicht zugegriffen werden. der Benutzer ist kein Administrator -> Der Speicher fr die Startkonfigurationsdaten konnte nicht ge”ffnet werden. Zugriff verweigert ==================== Ende von FRST.txt ======================== Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-04-2023 durchgeführt von Eltern (08-04-2023 19:09:40) Gestartet von C:\Users\Eltern\Downloads Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) (2021-06-21 09:41:50) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-607273383-903765569-4108737559-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-607273383-903765569-4108737559-503 - Limited - Disabled) Eltern (S-1-5-21-607273383-903765569-4108737559-1003 - Limited - Enabled) => C:\Users\Eltern Gast (S-1-5-21-607273383-903765569-4108737559-501 - Limited - Disabled) Henrike (S-1-5-21-607273383-903765569-4108737559-1004 - Limited - Enabled) => C:\Users\Henrike HomeGroupUser$ (S-1-5-21-607273383-903765569-4108737559-1002 - Limited - Enabled) Schilling Family (S-1-5-21-607273383-903765569-4108737559-1001 - Administrator - Enabled) => C:\Users\Schilling Family WDAGUtilityAccount (S-1-5-21-607273383-903765569-4108737559-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Kaspersky Total Security (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} AV: Kaspersky Total Security (Disabled - Up to date) {0AB30972-4BAC-7BEE-CBCA-B8F9E68797D8} AS: Kaspersky Total Security (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) @BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.08 - GIGABYTE) 4K Video Downloader (HKLM\...\{B3C67C95-860B-4362-98C2-0444F8A9B490}) (Version: 4.20.4.4870 - Open Media LLC) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 23.001.20093 - Adobe) Adobe AIR (HKLM-x32\...\{10166660-0C51-4355-BD74-D4700EFDB83B}) (Version: 28.0.0.127 - Adobe Systems Incorporated) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 28.0.0.127 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Advanced IP Scanner 2.5 (HKLM-x32\...\{804CED37-7CED-45A5-AEC8-0F1F0FEE17E1}) (Version: 2.5.3784 - Famatech) Amazon MP3-Downloader 1.0.17 (HKLM-x32\...\Amazon MP3-Downloader) (Version: 1.0.17 - Amazon Services LLC) Amazon MP3-Downloader 1.0.18 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AMD Drag and Drop Transcoding (HKLM\...\{203DE003-C392-FF19-BCA2-3F775477BC94}) (Version: 2.00.0000 - ATI Technologies Inc.) Hidden Apple Mobile Device Support (HKLM\...\{527DD209-8A66-482F-8779-C7B3BACCA8F1}) (Version: 15.0.0.16 - Apple Inc.) Applian FLV Player (HKLM-x32\...\Applian FLV Player2.0.24) (Version: 2.0.24 - Applian Technologies Inc.) ATI AVIVO64 Codecs (HKLM\...\{33A49BF2-CB4F-5E54-D7F5-25502CAB6B70}) (Version: 11.6.0.50706 - ATI Technologies Inc.) Hidden ATI Catalyst Install Manager (HKLM\...\{397878FC-1B1B-EED7-04A8-3184CE494A3B}) (Version: 3.0.782.0 - ATI Technologies, Inc.) Auto Clicker v6.1 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 6.1 - MurGee.com) AutoGreen B10.0517.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE) Bonanza Deals (remove only) (HKLM-x32\...\Bonanza Deals) (Version: 5.0.1.0 - Bonanza Deals) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Browser Configuration Utility (HKLM-x32\...\{A2F991E7-DDCD-42B7-AFEC-47789A099FDC}) (Version: 1.1.18.0 - DeviceVM Inc.) BUDNI Fotowelt (HKLM-x32\...\BUDNI Fotowelt) (Version: 6.1.2 - CEWE Stiftung u Co. KGaA) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.4.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\...\MyCamera Download Plugin) (Version: 3.1.0.1 - Canon Inc.) CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.8.0.1 - Canon Inc.) Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.7.0.1 - Canon Inc.) Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.) Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.7.0.6 - Canon Inc.) Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.5.0.3 - Canon Inc.) Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.6.0.5 - Canon Inc.) Canon Utilities CameraWindow DC 8 (HKLM-x32\...\CameraWindowDC8) (Version: 8.3.0.6 - Canon Inc.) Canon Utilities CameraWindow Launcher (HKLM-x32\...\CameraWindowLauncher) (Version: 7.5.0.2 - Canon Inc.) Canon Utilities Digital Photo Professional 3.9 (HKLM-x32\...\DPP) (Version: 3.9.0.3 - Canon Inc.) Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.1.0.4 - Canon Inc.) Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 7.4.0.2 - Canon Inc.) Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.) Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.6.0.23 - Canon Inc.) Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.4.0.4 - Canon Inc.) Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center - Branding (HKLM-x32\...\{87323561-58BA-4D5B-BADA-A791B69D1705}) (Version: 1.00.0000 - ATI) Hidden ChessBase Reader (HKLM-x32\...\{52A3CA50-6E19-40B2-AD6D-2B7B2D89A8E4}) (Version: 12.44.0.0 - ChessBase) Complitly (HKLM-x32\...\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1) (Version: - Complitly) DirectX 9 Runtime (HKLM-x32\...\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}) (Version: 1.00.0000 - Sonic Solutions) Hidden Easy Tune 6 B10.0516.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE) EasySaver B9.1214.1 (HKLM-x32\...\{07300F01-89CA-4CF8-92BD-2A605EB83C95}) (Version: 1.00.0000 - Gigabyte) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 21.3 - Thüringer Landesfinanzdirektion) EMC 11 Content (HKLM-x32\...\{21ABEA96-CCAB-4C40-8699-6BDFEC5FD63C}) (Version: 1.1.019 - Ihr Firmenname) Hidden FastImageResizer (remove only) (HKLM-x32\...\FastImageResizer) (Version: - ) FastStone Image Viewer 7.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.4 - FastStone Soft) FileZilla Client 3.10.1.1 (HKLM-x32\...\FileZilla Client) (Version: 3.10.1.1 - Tim Kosse) FLV Runner Toolbar (HKLM-x32\...\FLV_Runner Toolbar) (Version: 6.9.0.16 - FLV Runner) Fotobuchexpress24 Bestellsoftware (HKLM-x32\...\Fotobuchexpress24) (Version: 4.0 - ) fotofoto Software (HKLM-x32\...\fotofotoSoftware) (Version: 4.0 - ) Free Video Dub version 2.0.21.827 (HKLM-x32\...\Free Video Dub_is1) (Version: 2.0.21.827 - DVDVideoSoft Ltd.) Free Video Editor (HKLM-x32\...\Free Video Editor_is1) (Version: 1.4.54.606 - Digital Wave Ltd) Freecorder 5 (HKLM-x32\...\Freecorder5.11) (Version: 5.11 - Applian Technologies Inc.) Fritz 12 (HKLM-x32\...\{4F4182DA-3D58-41E3-913D-480F8DA5C863}) (Version: 12.0.0 - ChessBase) Fritz und Fertig 3 (HKLM-x32\...\Fritz und Fertig 3) (Version: - ) Gigabyte Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0001 - GIGABYTE Technologies, Inc.) Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Google Chrome) (Version: 112.0.5615.49 - Google LLC) Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.23.0 - BonanzaDeals) Hidden Houdini 4 64-bit (HKLM\...\{BD221DF2-6078-42BE-9C09-EF1213E6DEAD}) (Version: 14.2.0.0 - ChessBase) HydraVision (HKLM-x32\...\{D5134D14-A38D-A217-4310-5C8B6DFA08D0}) (Version: 4.2.174.0 - ATI Technologies Inc.) Hidden iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.) Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.19.18.55 - Huawei Technologies Co.,Ltd) Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation) jZip (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\jZip) (Version: 2.0.0.134914 - Bandoo Media Inc) Media Go (HKLM-x32\...\{362AB21A-E2C4-40CE-81C2-8C4D62B0635A}) (Version: 2.4.256 - Sony) Media Go Video Playback Engine 1.116.101.02020 (HKLM-x32\...\{54215B8A-6212-8DB8-39B4-98EE2BB98BD1}) (Version: 1.116.101.02020 - Sony) Microsoft .NET Framework 4.5.1 (DEU) (HKLM\...\{C513739C-5F16-37B5-9ACF-99925FF1C1F3}) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.2 (HKLM\...\{26784146-6E05-3FF9-9335-786C7C0FB5BE}) (Version: 4.5.51209 - Microsoft Corporation) Hidden Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) (HKLM\...\{25E80DAA-FD87-DCE5-202C-CC02F6673002}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 112.0.1722.34 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 112.0.1722.34 - Microsoft Corporation) Microsoft Office Access MUI (German) 2010 (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2010 (HKLM\...\{90140000-002A-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Proof (English) 2010 (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2010 (HKLM\...\{90140000-002A-0407-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Single Image 2010 (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2010 (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\OneDriveSetup.exe) (Version: 23.061.0319.0003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.4.5 - Motorola Mobility) Motorola Device Software Update (HKLM-x32\...\{894AB83D-A9AF-4E54-BFF3-A7262A0A6C13}) (Version: 13.09.3001 - Motorola Mobility) Hidden Motorola Mobile Drivers Installation 6.3.0 (HKLM\...\{759E6A2F-1F01-45EF-A0C4-22F1B56CB975}) (Version: 6.3.0 - Motorola Mobility LLC) Mozilla Firefox 62.0.2 (x64 de) (HKLM\...\Mozilla Firefox 62.0.2 (x64 de)) (Version: 62.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0 - Mozilla) MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NVIDIA Grafiktreiber 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation) Nvu 1.0 (HKLM-x32\...\Nvu_is1) (Version: 1.0 - Thorsten Fritz) PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PC Speed Maximizer v3.2 (HKLM-x32\...\PC Speed Maximizer_is1) (Version: 3.2 - Smart PC Solutions) <==== ACHTUNG PlayStation(R)Network Downloader (HKLM-x32\...\{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}) (Version: 2.07.00849 - Sony Computer Entertainment Inc.) PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: 4.14.6.15183 - Sony Computer Entertainment Inc.) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.18.322.2010 - Realtek) Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6034 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6083 - Realtek Semiconductor Corp.) Roxio Activation Module (HKLM-x32\...\{1D53B6F9-E66E-42D8-A221-4FF8AC134FD7}) (Version: 1.0 - Roxio) Hidden Roxio BackOnTrack (HKLM-x32\...\{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}) (Version: 1.3.1 - Roxio) Hidden Roxio CinePlayer (HKLM-x32\...\{AA749D64-3741-4D5F-B804-B0BC05D179D1}) (Version: 5.0 - Roxio) Hidden Roxio CinePlayer Decoder Pack (HKLM-x32\...\{C0FE37FA-0886-4B66-B01B-76CF70FB77AB}) (Version: 4.3.0 - Roxio) Hidden Roxio File Backup (HKLM-x32\...\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}) (Version: 1.3.0 - Roxio) Hidden Roxio Update Manager (HKLM-x32\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 6.0.0 - Roxio) Roxio WinOnCD 2009 (HKLM-x32\...\{3383136B-4F86-4F05-8612-DD4BB16A1EAE}) (Version: 4.5.0 - Roxio) Hidden Roxio WinOnCD 2009 (HKLM-x32\...\{7919D8D9-69FB-4E94-B330-04C4AF251867}) (Version: 11.0 - Roxio) Roxio WinOnCD 2009 (HKLM-x32\...\{9F8C7AAF-CF7E-4FC9-ADD6-9EAE4304A161}) (Version: 1.1.110 - Roxio) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{09A9DF49-DA06-4093-A2FD-F339211E39EA}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{ECC1D579-DC17-4B90-929C-B4A0BB35F7B3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{97099817-53F1-4CA1-ACEA-DA6D74371689}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{E4D76E88-C65F-4003-9C71-EC4306679D17}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0407-1000-0000000FF1CE}_Office14.SingleImage_{3B0FF7FF-0E85-4907-A511-3F8C27349FA4}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}_Office14.SingleImage_{996096F8-956B-41C9-A7E3-9BA1E801014F}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}_Office14.SingleImage_{D505EC85-885F-4BE3-8A89-3EFE4F855692}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Silhouette Link (HKLM-x32\...\{C2136C80-F9D4-4096-86D4-C641BB36DFF3}) (Version: 1.0.096 - Silhouette America) SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.8.0 - SmartSound Software Inc) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation) vanBasco's Karaoke Player (HKLM-x32\...\VMidi) (Version: - ) VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN) VSDC Free Video Editor Version 6.4.2.102 (HKLM\...\VSDC Free Video Editor_is1) (Version: 6.4.2.102 - Flash-Integro LLC) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) YTD Video Downloader 5.9.13 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.9.13 - GreenTree Applications SRL) <==== ACHTUNG Packages: ========= Fotos-Add-On -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) [MS Ad] Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.16.3140.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Studios) [MS Ad] Unpacker -> C:\Program Files\WindowsApps\AFF540DC.Unpacker_1.1.14.24_x64__v7353qx4kg3sa [0000-00-00] (Jujuba Software) [MS Ad] WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) Zip RAR 7Z -> C:\Program Files\WindowsApps\E7F9CCC0.ZipRAR7Z_1.5.0.0_neutral__58whwn0mv7c6y [0000-00-00] (D and V Limited) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\ChromeHTML: -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ACHTUNG CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{041F9391-C79D-44EE-AA4E-AF4E029C4B47}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.112\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1F9E0710-2073-435F-9C1B-F29946205947}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.442\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.422\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{69545769-8D02-4B07-A481-AD374CD8D5D1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.132\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{6D264B70-DA18-401D-910C-B202D89670C6}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.32\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{84EB3779-151B-4C71-AEF0-A0FEE9481401}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.342\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.11\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{8B480070-D37D-4090-A063-7A429F849652}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.92\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\112.0.5615.49\notification_helper.exe (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{BE5C2E39-090F-46A2-AFAA-47540743B4FE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.102\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.83\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA919489-0396-4164-A6E7-94CDED45A707}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.52\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{DEDF773D-E27B-485E-8E7D-85C5B0EB5A67}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.72\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.302\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => Keine Datei ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2015-04-26] (Apple Inc. -> Apple Inc.) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Drivers32: [msacm.voxacm160] => C:\WINDOWS\system32\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.scg726] => C:\WINDOWS\system32\scg726.acm [13239 2000-03-14] (SHARP Corporation) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.alf2cd] => C:\WINDOWS\system32\alf2cd.acm [38912 2003-05-21] (NCT Company) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\AC3ACM.acm [81920 2004-02-04] (fccHandler) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.lame] => C:\WINDOWS\system32\lame.ax [245760 2005-08-01] () [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.dvsd] => C:\WINDOWS\system32\mcdvd_32.dll [261632 2003-05-21] (MainConcept) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.mpg4] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.mp42] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.mp43] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.xvid] => C:\WINDOWS\system32\xvidvfw.dll [139264 2004-07-03] () [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.DIVX] => C:\WINDOWS\system32\DivX.dll [638976 2003-05-22] (DivXNetworks, Inc.) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.VP62] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.LAGS] => C:\WINDOWS\system32\lagarith.dll [216064 2011-12-07] () [Datei ist nicht signiert] ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] ShortcutWithArgument: C:\Users\Eltern\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7b8281b05742e423\Google Chrome.lnk -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2009-06-27 10:11 - 2009-06-27 10:11 - 000503202 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.spiegel.de/ HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com URLSearchHook: HKLM-x32 - FLV Runner Toolbar - {3bbd3c14-4c16-4989-8366-95bc9179779d} - C:\Users\Eltern\AppData\LocalLow\FLV_Runner\prxtbFLV2.dll Keine Datei URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.) URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.) SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> DefaultScope {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {CAFC8535-FC41-4BE5-849D-E5224432519B} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318 SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.) Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> Kein Name - {1392B8D2-5C05-419F-A8F6-B9F15A596612} - Keine Datei Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> Kein Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} - Keine Datei DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;C:\Program Files (x86)\Common Files\Roxio Shared\11.0\DLLShared\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-607273383-903765569-4108737559-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Keine Datei) ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: Motorola Device Manager => 2 MSCONFIG\Services: Roxio UPnP Renderer 11 => 3 MSCONFIG\Services: Roxio Upnp Server 11 => 2 MSCONFIG\Services: RoxLiveShare11 => 2 MSCONFIG\Services: RoxMediaDB11 => 3 MSCONFIG\Services: RoxWatch11 => 2 MSCONFIG\Services: ServiceLayer => 3 MSCONFIG\Services: Sony PC Companion => 3 HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\StartupApproved\Run: => "AmazonMP3DownloaderHelper" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [UDP Query User{547E83B5-1313-4049-8C6C-7FEFCE3032C8}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{39484926-44D0-4DAF-B0F8-866441E6D21A}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{25FC2CF9-26C7-4801-865C-540B37D8F053}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{AF857C3D-3AD8-4EF9-85EA-8449CCA07F0B}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{2967DE4D-3ECD-4166-834C-BAA04DC11964}] => (Allow) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe (Silhouette Research & Technology Ltd -> ) FirewallRules: [{DCC44E91-DA96-404D-9C1F-EE280941DD29}] => (Allow) C:\Program Files (x86)\Silhouette America\Silhouette Link\SilhouetteLinkConsole.exe (Silhouette Research & Technology Ltd -> ) FirewallRules: [{73C5997B-A60F-4423-ABB7-310B58259BC2}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC) FirewallRules: [{6E0F8CA7-3119-4E34-8D0F-457FE24884BF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC) FirewallRules: [{79C30040-27F1-41BA-9061-5E6863DD79EF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC) FirewallRules: [{63D3CFC8-E445-4908-92DE-C1EF9B169D01}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC) FirewallRules: [{7AA2976B-1696-433C-951B-3638144151F5}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC) FirewallRules: [{56DA2F88-0B42-4F5C-9AD1-87CECFB8F21A}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC) FirewallRules: [{0427B960-2364-4061-8D5A-B5D5238E0652}] => (Allow) C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.) FirewallRules: [{55CD2498-99BC-4878-9393-A93EEEF53276}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{34FBCA88-D993-4E7D-AE9D-F75335CF1BD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{75721B46-B736-4981-A30C-9C4A7DFA293F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{25ABFAB1-10A6-4C85-9498-4465BA7A8D25}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{32F2A2BD-95DF-41FB-86E2-E4FA4F05F363}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{22EAF1AB-1A96-40C1-8142-3CEBDF58A647}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{2D4667B5-F3E5-4885-882A-680251907CC5}] => (Allow) F:\o2CD.exe => Keine Datei FirewallRules: [{A1F82616-54EE-4B24-BAF1-9FC9A59E06C9}] => (Allow) F:\o2CD.exe => Keine Datei FirewallRules: [{BC62CBD5-D590-40D7-B254-2F6B63EA0A51}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{3207EC1A-AC96-41C7-A43B-E0449E4CFD8C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{BB65DA61-3AEF-4723-839F-8614B4B2DCE6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{CEF21CCF-81CB-46AF-BF32-D50B57107806}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{E7D017EE-5A08-4B83-8ABD-0E231E05E21A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{97EEE3EA-74AC-4C81-A147-4062BE737487}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{27AA07D2-29F9-4C0A-8FA7-D5ACDA31A49C}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => Keine Datei FirewallRules: [{25F5F1FF-2414-4F37-8B6A-27EAF4331A0D}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => Keine Datei FirewallRules: [{64711767-0BEA-4E26-93C0-E7067F35F510}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{6267537C-2A47-4D0A-855E-11982B6C2CE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{19C62B83-B546-4D25-84EC-CF4188C945BE}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [{847E80AE-8076-4540-9C12-38B8CED2229E}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [TCP Query User{2C96EF38-3E0E-4B56-BE5F-66C94FBA7BF4}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => Keine Datei FirewallRules: [UDP Query User{DCAE0FD6-BE9F-423F-9A44-CF663BE220E3}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => Keine Datei FirewallRules: [{13F44943-2753-4C2C-A854-B02E880FD681}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.) FirewallRules: [{1DE1C6EB-EC9E-4562-BAD8-1EF4A6F74758}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.) FirewallRules: [{CED1E8BF-8A0D-46A0-8671-8FBC100F75E8}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe => Keine Datei FirewallRules: [{23C90C72-420C-4C0A-85BA-B2D6AE6C60ED}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{82195564-A0F6-465D-8DB4-102C09B6763D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{BCC5757C-BEA8-4EEF-90D5-F7581CFB61CE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{B602402A-086F-4281-B5D3-5862449D5F53}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{31A42FDB-DD04-4C37-A8F1-4208EE877C44}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{76B60587-7B61-4637-BEA2-7CAB8A4B0CB0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{189FA84B-B945-43A6-893F-CC12EAE178B9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{0E12E48C-5C80-40A2-BA71-1905CEF567CD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{9AAB57D9-E18D-48FA-9EF4-83B52D7B34A8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\112.0.1722.34\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:107.89 GB) (Free:18.13 GB) (17%) Überprüfen Sie den "VSS" Dienst ==================== Fehlerhafte Geräte im Gerätemanager ============ Name: Kaspersky Security Data Escort Adapter #2 Description: Kaspersky Security Data Escort Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: SAMSUNG Electronics Co., Ltd. Service: kltap Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19) Resolution: A registry problem was detected. This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options: On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver. ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (04/08/2023 05:47:27 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.19041.2673, Zeitstempel: 0x4aa1ce82 Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.19041.546, Zeitstempel: 0x564f9f39 Ausnahmecode: 0x40000015 Fehleroffset: 0x000000000000ae22 ID des fehlerhaften Prozesses: 0x21e4 Startzeit der fehlerhaften Anwendung: 0x01d96a3116ba964b Pfad der fehlerhaften Anwendung: C:\Windows\ImmersiveControlPanel\SystemSettings.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\msvcrt.dll Berichtskennung: 32924120-d70a-4eee-85c7-e9792f980003 Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 31125 Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 31125 Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15438 Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15438 Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (04/02/2023 11:42:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_WaaSMedicSvc, Version: 10.0.19041.1806, Zeitstempel: 0x7dcad237 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.19041.2130, Zeitstempel: 0xb5ced1c6 Ausnahmecode: 0xc0000409 Fehleroffset: 0x00000000000281da ID des fehlerhaften Prozesses: 0x858 Startzeit der fehlerhaften Anwendung: 0x01d965462c926a07 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\svchost.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: a925920e-ff58-4635-b132-3e66a692e988 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Systemfehler: ============= Error: (04/08/2023 05:40:47 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Speicherdienst" wurde nicht richtig gestartet. Error: (04/08/2023 05:37:15 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "MessagingService_16ec59" wurde mit folgendem Fehler beendet: Das Gerät ist nicht bereit. Error: (04/07/2023 11:32:29 PM) (Source: DCOM) (EventID: 10010) (User: SchillingFamily) Description: Der Server "{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (04/07/2023 11:30:38 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "MessagingService_8b8a4" wurde mit folgendem Fehler beendet: Das Gerät ist nicht bereit. Error: (04/07/2023 11:29:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Internet Manager. RunOuc" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (04/07/2023 11:29:17 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. RunOuc erreicht. Error: (04/07/2023 11:08:40 PM) (Source: DCOM) (EventID: 10010) (User: SchillingFamily) Description: Der Server "{9AA46009-3CE0-458A-A354-715610A075E6}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (04/07/2023 10:59:00 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) Description: Der Server "{B91D5831-B1BD-4608-8198-D72E155020F7}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Windows Defender: ================ Date: 2023-04-08 19:09:26 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 19:09:25 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 19:08:42 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=Backdoor:Win32/Bladabindi.YPS!MTB&threatid=2147793448&enterprise=0 Name: Backdoor:Win32/Bladabindi.YPS!MTB Schweregrad: Schwerwiegend Kategorie: Hintertür Pfad: file:_C:\Users\Eltern\Downloads\FreeVideoEditor_CB-DL-Manager.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 19:08:42 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0 Name: PUABundler:Win32/CandyOpen Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe; file:_C:\Users\Eltern\Downloads\FreeStudio.exe Erkennungsursprung: Lokaler Computer Erkennungstype: FastPath Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 19:08:32 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0 Name: PUABundler:Win32/CandyOpen Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe Erkennungsursprung: Lokaler Computer Erkennungstype: FastPath Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Event[0]: Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiSpyware Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:10:52 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3495.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80070102 Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. Date: 2023-02-14 22:10:52 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3495.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80070102 Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. CodeIntegrity: =============== Date: 2023-04-02 11:55:38 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-04-02 11:42:03 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2023-03-19 23:21:24 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-01-12 23:00:54 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2022-11-11 00:26:40 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2022-11-11 00:13:09 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== BIOS: Award Software International, Inc. FD 07/23/2010 Hauptplatine: Gigabyte Technology Co., Ltd. GA-890GPA-UD3H Prozessor: AMD Phenom(tm) II X4 955 Processor Prozentuale Nutzung des RAM: 51% Installierter physikalischer RAM: 8189.55 MB Verfügbarer physikalischer RAM: 3991.38 MB Summe virtueller Speicher: 16381.55 MB Verfügbarer virtueller Speicher: 10758.98 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:107.89 GB) (Free:18.13 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS Drive d: () (Fixed) (Total:97.56 GB) (Free:25.19 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS Drive e: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) Drive f: (ELM327 software) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS Drive g: (System) (Fixed) (Total:232.88 GB) (Free:44.68 GB) (Model: ST3250823AS ATA Device) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] \\?\Volume{dbb0575c-96c5-11e1-b743-806e6f6e6963}\ (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==================== MBR & Partitionstabelle ==================== ==================== Ende von Addition.txt ======================= Geändert von cosinus (08.04.2023 um 19:29 Uhr) Grund: CODE-Tags |
08.04.2023, 19:31 | #2 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | MFResident-20230328-55Zitat:
Weches Benuterkonto ist denn nun betroffen? Und wenn muss FRST mit Adminrechten ausgeführt werden.
__________________ |
08.04.2023, 20:15 | #3 |
| MFResident-20230328-55 Sinnfrei gehört zu meinen Kernkompetenzen :-))
__________________Hab das frst nochmals durchgeführt, jetzt zwar vom gleichen Benutzerkonto (Eltern, das ist kein Adminkonto) aber als Admimistrator ausgeführt. FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-04-2023 Ran by Schilling Family (administrator) on SCHILLINGFAMILY (Gigabyte Technology Co., Ltd. GA-890GPA-UD3H) (08-04-2023 20:55:54) Running from C:\Users\Eltern\Downloads Loaded Profiles: Schilling Family & Eltern Platform: Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) Language: Deutsch (Deutschland) -> Deutsch (Deutschland) Default browser: Edge Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (C:\Program Files (x86)\DataCardService\HWDeviceService64.exe ->) (Huawei Technologies Co.,Ltd. -> Huawei Technologies Co., Ltd.) C:\Program Files (x86)\DataCardService\DCSHelper.exe (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCopyAccelerator.exe (DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe (services.exe ->) (Huawei Technologies Co.,Ltd. -> ) C:\Program Files (x86)\DataCardService\HWDeviceService64.exe (services.exe ->) (JMicron Technology Corp. -> ) C:\Windows\SysWOW64\XSrvSetup.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Shenzhen iMyFone Technology Co., Ltd -> ) C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe (services.exe ->) (Silhouette Research & Technology Ltd -> ) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM-x32\...\Run: [BCU] => C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [375000 2009-10-15] (DeviceVM Inc. -> DeviceVM, Inc.) HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmprph.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Roxio Central 4\Plugins\Launch.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\Setup_wm.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\VPREVIEW.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\ChessBase\ChessProgram12\ChessProgram12.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSACCESS.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSPUB.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Internet Explorer <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpsideshowgadget.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Sidebar <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\downloads\minecraft (1).exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnetwk.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\POWERPNT.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\program files (x86)\adobe\reader 10.0\reader\eula.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Roxio Central 4\RoxioCentralFx.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmlaunch.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Media Import 11\MediaCapture11.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmprph.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpsideshowgadget.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\program files (x86)\java\jre7\bin\javaw.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\Wordconv.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\Setup_wm.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpconfig.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\downloads\minecraft.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\desktop\minecraft (1).exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\GRAPH.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpshare.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\excelcnv.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\XLICONS.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\PPTICO.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmplayer.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WORDICON.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Creator Classic 11\Creator11.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Sidebar <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Retrieve 11\Launch_Retrieve.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmlaunch.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Retrieve 11\Retrieve11.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpconfig.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Defender <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpenc.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OIS.EXE <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\desktop\minecraft.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Internet Explorer <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpshare.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpenc.exe <==== ATTENTION HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Run: [Google Update] => C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\GoogleUpdateCore.exe [601680 2017-11-25] (Google Inc -> Google Inc.) HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [Google Update] => C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\GoogleUpdateCore.exe [230360 2022-08-29] (Google LLC -> Google LLC) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [AmazonMP3DownloaderHelper] => C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-22] (Amazon Services LLC -> ) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [MicrosoftEdgeAutoLaunch_EB8D6C06E991CEDBC9E4E65F13805E5D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4140496 2023-04-06] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKLM\...\Windows x64\Print Processors\Canon iP4300 Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD86.DLL [27136 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX520 series: C:\WINDOWS\system32\CNCALBO.DLL [303104 2012-09-21] (CANON INC.) [File not signed] HKLM\...\Print\Monitors\Canon BJ Language Monitor iP4300: C:\WINDOWS\system32\CNMLM86.DLL [234496 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MX520 series: C:\WINDOWS\system32\CNMLMBO.DLL [390656 2012-09-20] (CANON INC.) [File not signed] HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2012-07-31] (CANON INC.) [File not signed] HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [53248 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> Startup: C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2013-01-04] ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\Users\Henrike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2014-04-08] ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) GroupPolicy: Restriction ? <==== ATTENTION GroupPolicy\User: Restriction ? <==== ATTENTION GroupPolicyUsers\S-1-5-21-607273383-903765569-4108737559-1004\User: Restriction <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0BBB9B25-3E0B-41C4-8417-BC0AA3E8469A} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (No File) Task: {0D20E039-9151-46FD-B974-33451D8D8893} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (No File) Task: {0D32098A-3809-485B-B4B1-FB99532A9F8A} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION Task: {0F32F71B-0E80-453C-84AA-62B937EFC571} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (No File) Task: {16715D28-05B1-4839-82FC-3FBDE0233F64} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (No File) Task: {1C55A462-FD73-403B-A09F-984CB07A8C39} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.) Task: {22BE8BFB-1E32-4605-8FE7-032BE3370959} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (No File) Task: {2C9910E7-21E4-4BC3-A649-8476A15F8916} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION Task: {2C9A41E5-EAA4-47BD-A47C-649959DD4C96} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (No File) Task: {2D4F42E6-6553-4563-A4DA-5C64C00F3A24} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (No File) Task: {2F254FB2-238A-4DDD-BB1A-5CD7BD36CFB9} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe -crl -hms -pscn 15 (No File) Task: {308E3245-B76B-4F4C-9420-DC711CD8B6AA} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (No File) Task: {355E2600-47CE-46FE-9A7E-1F5F735531F9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {45381A70-9F15-40C7-9DAB-84FE23E9CA62} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (No File) Task: {479F023B-EDFA-4153-B8AB-686E66D34909} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (No File) Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {48A446E7-59BC-49E8-B070-033DCC730F02} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {4FEE6216-5B1C-4CCD-B930-8E7E961AED44} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.) Task: {5235F070-0423-4841-A880-4C5C6E95D792} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {5288861F-AA80-42F5-965F-271A29651414} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {540F9B5D-6DB9-4419-8E0B-36E4220B76D6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.) Task: {57B8B6B7-8B6E-4186-94DF-1155B3FB3CF1} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (No File) Task: {57F6E612-D826-46E6-86F9-C9951328AFB3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5BE104DB-21E9-45AE-90C2-1E8585816213} - \MetaCrawler -> No File <==== ATTENTION Task: {60E899E7-67BD-4316-94B1-5F9C60C66F8F} - \BonanzaDealsLiveUpdateTaskMachineCore -> No File <==== ATTENTION Task: {62AB03D9-9674-4F82-9B03-79854C0C4188} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {68A2DC77-4326-45B0-A2EB-FC0A3F784C40} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {6CE9B4C3-7B27-4764-9B0A-152BBAECC232} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {6F37C2F7-DADB-49AE-A204-2C9AD19C6CFE} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION Task: {6F47A56B-CADB-4C5E-B30B-85487FC6CC88} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.) Task: {71C3C4D2-0F58-4A47-A69A-D46E959D7336} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (No File) Task: {71D74DD1-F182-473C-A98A-587C247548CF} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {73A44D9D-5152-45D9-B5ED-09FE3C3EA042} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (No File) Task: {801268F4-4131-4543-95C3-8B78C47D63B5} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {83C55439-989B-45A6-A08E-F552847E1327} - \DigitalSite -> No File <==== ATTENTION Task: {84608AB1-FDFC-4CBE-9B6E-87A86EC99DCE} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (No File) Task: {88F5F492-6208-4730-A9B2-F754D5D964BB} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {89AA7B43-6F43-4665-B455-35250B2775B6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core1d36619e3cf49df => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.) Task: {964B9BE3-0E0D-4477-9935-97A3378361C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9B5544EC-58CA-4789-AAD4-BC7E3AC6823A} - \BonanzaDealsLiveUpdateTaskMachineUA -> No File <==== ATTENTION Task: {A25CFF11-8701-4725-B4FF-B3E3A26322F7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA1d36619e3f56ec3 => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.) Task: {A62B6259-A517-463A-87F7-5AC214BA12C1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA1d264fa72e45b7c => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.) Task: {A644AF47-F72C-415B-87DA-AC26713AA924} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (No File) Task: {A764CB31-E10A-4748-87C2-78B1A074C2C5} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {AE3B097F-0458-44AD-B075-30716ECFED1E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B48C01BC-3898-4438-ACBC-3CBB676128C9} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (No File) Task: {BC82C7F7-E333-4612-B4DA-B144C7B04EC6} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (No File) Task: {C5CFDFCD-19A8-459D-B137-419863D933E0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C81A5F30-FAB1-46FE-8C78-248273597C96} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {C9CE2E2F-74C8-4420-A9A6-6C5270140972} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (No File) Task: {CC1E0B3B-991C-48FD-A12D-87AD1C6A5AB4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {CEC66727-43C2-4046-877F-5E52D2579E6A} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (No File) Task: {D4B27E49-E70B-42CF-9F59-391892C74007} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {D8373EC5-C2D0-47AA-A6E5-134DB4404626} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (No File) Task: {D8BBE133-E46B-46C1-91B4-19BE93F6CB55} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (No File) Task: {E32C8471-92F1-4FDE-B901-8FB47EC87899} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {E9EB6BC0-96CB-4A0D-888D-CE6AD2CFAA11} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.) Task: {EEF562D5-1A49-4011-9839-10FE2C739B33} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core1d264fa72b23a21 => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.) Task: {FCAE2C9E-7790-484C-B719-C3622CADC1D6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (No File) Task: {FD4F3315-361A-4584-98C3-A29243C37660} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\DigitalSite.job => C:\Users\SCHILL~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core.job => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA.job => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe Task: C:\WINDOWS\Tasks\MetaCrawler.job => C:\Users\SCHILL~1\AppData\Roaming\METACR~1\UPDATE~1\UPDATE~1.EXE ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{1533b570-916a-43ef-a95f-2771cf3347c2}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{63e8b743-5869-48f3-b34a-8f4038bdaffe}: [NameServer] 10.74.210.210 10.74.210.211 Edge: ======= Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found] Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found] FireFox: ======== FF ProfilePath: C:\Users\Schilling Family\AppData\Roaming\Nvu\Profiles\0l2t5pjb.default [2012-11-29] FF HKLM\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => not found FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru => not found FF HKLM-x32\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com FF Extension: (SpeedAnalysis.com) - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com [2013-04-02] [Legacy] [not signed] FF HKLM-x32\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => not found FF HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-03-21] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [File not signed] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 -> C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll [2011-08-03] (Sony Computer Entertainment Inc. -> Sony Computer Entertainment Inc.) FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 -> C:\Program Files (x86)\Sony\Media Go\npmediago.dll [2013-02-14] (Sony Network Entertainment International LLC) [File not signed] FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-25] (Google Inc -> Google Inc.) FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-25] (Google Inc -> Google Inc.) FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1001: amazon.com/AmazonMP3DownloaderPlugin -> C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10174.dll [2012-12-07] (Amazon.com, Inc.) [File not signed] FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1003: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-22] (Amazon Services LLC -> Amazon.com, Inc.) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-10-06] <==== ATTENTION (Points to *.cfg file) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-10-06] <==== ATTENTION Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default [2018-01-28] CHR HomePage: Default -> hxxp://www.google.com CHR Extension: (Präsentationen) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-25] CHR Extension: (Docs) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-25] CHR Extension: (Google Drive) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-11-25] CHR Extension: (YouTube) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-11-25] CHR Extension: (Complitly plugin for chrome) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda [2017-11-25] [UpdateUrl:hxxp://www.predictad.com/update/chrome/?si=28188&ver=1.1] <==== ATTENTION CHR Extension: (Metacrawler Neuer Tab) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\doobfiogmfmpjnoofjhhgjehmlofngfp [2017-11-25] [UpdateUrl:hxxp://update.speedial.com/addons/metacrawler-ch.xml] <==== ATTENTION CHR Extension: (Tabellen) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-25] CHR Extension: (Kaspersky Protection) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhoibnponjcgjgcnfacekaijdbbplhib [2017-11-25] CHR Extension: (Google Docs Offline) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-01-28] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-11-25] CHR Extension: (Google Mail) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-11-25] CHR Extension: (Chrome Media Router) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-01-28] CHR HKLM\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx [2013-11-16] CHR HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\SCHILL~1\AppData\Local\metacrawler-speeddial.crx [2013-11-16] CHR HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx <not found> CHR HKLM-x32\...\Chrome\Extension: [cfcbmgbfdbijmjgjihagbomfbjfjmgon] - C:\Users\Schilling Family\AppData\Roaming\SpeedanAlysis\speedanalysis.crx <not found> CHR HKLM-x32\...\Chrome\Extension: [dlfienamagdnkekbbbocojppncdambda] - C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx [2012-05-28] CHR HKLM-x32\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx [2013-11-16] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] StartMenuInternet: Google Chrome - C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe StartMenuInternet: Google Chrome.Eltern - C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.) S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1113864 2020-07-04] (Bayerisches Landesamt fuer Steuern -> ) S2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] (Giga-Byte Technology -> ) R2 HWDeviceService64.exe; C:\Program Files (x86)\DatacardService\HWDeviceService64.exe [351888 2016-03-24] (Huawei Technologies Co.,Ltd. -> ) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed] S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [682072 2015-07-06] (Huawei Technologies Co.,Ltd. -> ) R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] (JMicron Technology Corp. -> ) R2 MFLocalService; C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe [54664 2022-04-28] (Shenzhen iMyFone Technology Co., Ltd -> ) S4 Roxio UPnP Renderer 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUPnPRenderer11.exe [313840 2008-08-14] (Sonic Solutions -> Sonic Solutions) S4 Roxio Upnp Server 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUpnpService11.exe [367088 2008-08-14] (Sonic Solutions -> Sonic Solutions) S4 RoxMediaDB11; C:\Program Files (x86)\Common Files\Roxio Shared\11.0\SharedCOM\RoxMediaDB11.exe [1122304 2009-01-09] (Sonic Solutions) [File not signed] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [226976 2023-03-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SilhouetteLink; C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe [897200 2016-12-06] (Silhouette Research & Technology Ltd -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe [3224328 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe [133544 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed] R3 gdrv; C:\Windows\gdrv.sys [25640 2023-04-08] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider) S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2014-02-08] (GIGA-BYTE TECHNOLOGY CO., LTD -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49608 2023-03-28] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [495896 2023-03-28] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99624 2023-03-28] (Microsoft Windows -> Microsoft Corporation) U3 idsvc; no ImagePath ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) (Whitelisted) ========= (If an entry is included in the fixlist, the file/folder will be moved.) 2023-04-08 19:09 - 2023-04-08 19:14 - 000072558 _____ C:\Users\Eltern\Downloads\Addition.txt 2023-04-08 19:04 - 2023-04-08 20:57 - 000043570 _____ C:\Users\Eltern\Downloads\FRST.txt 2023-04-08 19:03 - 2023-04-08 20:56 - 000000000 ____D C:\FRST 2023-04-08 19:01 - 2023-04-08 19:02 - 002379776 _____ (Farbar) C:\Users\Eltern\Downloads\FRST64.exe 2023-04-08 00:27 - 2023-04-08 20:36 - 113508352 _____ C:\WINDOWS\system32\config\SOFTWARE 2023-04-08 00:11 - 2023-04-08 00:27 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2023-03-18 17:05 - 2023-03-18 17:05 - 000000000 ___HD C:\$WinREAgent 2023-03-09 23:24 - 2023-03-09 23:24 - 000000000 ____D C:\Users\Eltern\AppData\Local\SolidDocuments ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2023-04-08 20:49 - 2014-03-03 21:44 - 000000000 ____D C:\Program Files (x86)\Motorola Mobility 2023-04-08 20:49 - 2012-05-05 21:20 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2023-04-08 20:46 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2023-04-08 20:39 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-04-08 20:38 - 2012-05-05 21:40 - 000025640 _____ (Windows (R) Server 2003 DDK provider) C:\WINDOWS\gdrv.sys 2023-04-08 20:37 - 2021-06-21 11:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-04-08 20:37 - 2017-12-28 22:49 - 000000000 ____D C:\ProgramData\NVIDIA 2023-04-08 20:36 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-04-08 20:21 - 2012-06-14 08:40 - 000000000 ____D C:\Users\Schilling Family\AppData\Roaming\DVDVideoSoft 2023-04-08 17:47 - 2023-01-24 22:03 - 000000000 ____D C:\Users\Eltern\AppData\Local\CrashDumps 2023-04-07 22:32 - 2021-06-21 10:56 - 000002396 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-04-07 22:32 - 2021-06-21 10:56 - 000002234 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-04-07 22:32 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-04-07 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-04-07 22:28 - 2012-05-06 09:23 - 000002540 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-04-07 22:28 - 2012-05-06 09:23 - 000002503 _____ C:\Users\Eltern\Desktop\Google Chrome.lnk 2023-04-07 22:27 - 2021-06-21 11:40 - 000004170 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{7B8873E7-2F6A-4D04-BC4D-C1178DC4E0A8} 2023-04-07 22:26 - 2021-12-11 16:19 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-607273383-903765569-4108737559-1003 2023-04-07 22:26 - 2021-06-21 11:40 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-607273383-903765569-4108737559-1003 2023-04-07 22:26 - 2021-06-21 10:59 - 000002443 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-04-04 23:44 - 2021-06-21 10:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-04-04 21:51 - 2021-06-24 07:57 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-04-04 21:51 - 2021-06-24 07:57 - 000003662 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7667dcba7b542 2023-04-02 11:37 - 2021-06-21 11:15 - 001917326 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-04-02 11:37 - 2019-12-07 16:51 - 000820884 _____ C:\WINDOWS\system32\perfh007.dat 2023-04-02 11:37 - 2019-12-07 16:51 - 000177416 _____ C:\WINDOWS\system32\perfc007.dat 2023-03-28 01:10 - 2018-05-27 22:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-03-25 15:07 - 2021-06-21 11:40 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2023-03-25 15:06 - 2023-03-07 09:26 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-03-25 15:06 - 2023-03-07 09:26 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-03-19 01:32 - 2021-06-21 10:50 - 000523208 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-03-19 01:28 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-03-18 17:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-03-18 17:29 - 2021-06-21 10:55 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-03-18 16:56 - 2013-08-03 13:53 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-03-18 16:35 - 2012-05-05 17:39 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-03-09 23:24 - 2012-05-06 09:25 - 000000000 ____D C:\Users\Eltern\AppData\Roaming\Adobe ==================== Files in the root of some directories ======== 2015-07-14 15:52 - 2013-06-26 13:51 - 000884736 _____ () C:\Program Files (x86)\vkaraoke.exe 2014-02-08 16:11 - 2014-02-08 16:11 - 000000047 _____ () C:\Users\Schilling Family\AppData\Roaming\WB.CFG 2013-11-16 13:11 - 2013-11-16 13:11 - 000356766 _____ () C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx 2012-05-12 00:26 - 2012-05-12 10:48 - 000007597 _____ () C:\Users\Schilling Family\AppData\Local\Resmon.ResmonCfg 2012-05-05 18:17 - 2012-05-05 18:17 - 000017408 _____ () C:\Users\Schilling Family\AppData\Local\WebpageIcons.db ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ======================== |
08.04.2023, 20:15 | #4 |
| MFResident-20230328-55 FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-04-2023 Ran by Schilling Family (08-04-2023 21:00:43) Running from C:\Users\Eltern\Downloads Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) (2021-06-21 09:41:50) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= (If an entry is included in the fixlist, it will be removed.) Administrator (S-1-5-21-607273383-903765569-4108737559-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-607273383-903765569-4108737559-503 - Limited - Disabled) Eltern (S-1-5-21-607273383-903765569-4108737559-1003 - Limited - Enabled) => C:\Users\Eltern Gast (S-1-5-21-607273383-903765569-4108737559-501 - Limited - Disabled) Henrike (S-1-5-21-607273383-903765569-4108737559-1004 - Limited - Enabled) => C:\Users\Henrike HomeGroupUser$ (S-1-5-21-607273383-903765569-4108737559-1002 - Limited - Enabled) Schilling Family (S-1-5-21-607273383-903765569-4108737559-1001 - Administrator - Enabled) => C:\Users\Schilling Family WDAGUtilityAccount (S-1-5-21-607273383-903765569-4108737559-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Kaspersky Total Security (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} AV: Kaspersky Total Security (Disabled - Up to date) {0AB30972-4BAC-7BEE-CBCA-B8F9E68797D8} AS: Kaspersky Total Security (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) @BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.08 - GIGABYTE) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 23.001.20093 - Adobe) Adobe AIR (HKLM-x32\...\{10166660-0C51-4355-BD74-D4700EFDB83B}) (Version: 28.0.0.127 - Adobe Systems Incorporated) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 28.0.0.127 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Advanced IP Scanner 2.5 (HKLM-x32\...\{804CED37-7CED-45A5-AEC8-0F1F0FEE17E1}) (Version: 2.5.3784 - Famatech) Amazon MP3-Downloader 1.0.17 (HKLM-x32\...\Amazon MP3-Downloader) (Version: 1.0.17 - Amazon Services LLC) Amazon MP3-Downloader 1.0.18 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AMD Drag and Drop Transcoding (HKLM\...\{203DE003-C392-FF19-BCA2-3F775477BC94}) (Version: 2.00.0000 - ATI Technologies Inc.) Hidden Apple Mobile Device Support (HKLM\...\{527DD209-8A66-482F-8779-C7B3BACCA8F1}) (Version: 15.0.0.16 - Apple Inc.) Applian FLV Player (HKLM-x32\...\Applian FLV Player2.0.24) (Version: 2.0.24 - Applian Technologies Inc.) ATI AVIVO64 Codecs (HKLM\...\{33A49BF2-CB4F-5E54-D7F5-25502CAB6B70}) (Version: 11.6.0.50706 - ATI Technologies Inc.) Hidden ATI Catalyst Install Manager (HKLM\...\{397878FC-1B1B-EED7-04A8-3184CE494A3B}) (Version: 3.0.782.0 - ATI Technologies, Inc.) Auto Clicker v6.1 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 6.1 - MurGee.com) AutoGreen B10.0517.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE) BlueStacks X (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\BlueStacks X) (Version: 0.18.30.9 - BlueStack Systems, Inc.) Bonanza Deals (remove only) (HKLM-x32\...\Bonanza Deals) (Version: 5.0.1.0 - Bonanza Deals) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Browser Configuration Utility (HKLM-x32\...\{A2F991E7-DDCD-42B7-AFEC-47789A099FDC}) (Version: 1.1.18.0 - DeviceVM Inc.) BUDNI Fotowelt (HKLM-x32\...\BUDNI Fotowelt) (Version: 6.1.2 - CEWE Stiftung u Co. KGaA) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.4.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\...\MyCamera Download Plugin) (Version: 3.1.0.1 - Canon Inc.) CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.8.0.1 - Canon Inc.) Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.7.0.1 - Canon Inc.) Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.) Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.7.0.6 - Canon Inc.) Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.5.0.3 - Canon Inc.) Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.6.0.5 - Canon Inc.) Canon Utilities CameraWindow DC 8 (HKLM-x32\...\CameraWindowDC8) (Version: 8.3.0.6 - Canon Inc.) Canon Utilities CameraWindow Launcher (HKLM-x32\...\CameraWindowLauncher) (Version: 7.5.0.2 - Canon Inc.) Canon Utilities Digital Photo Professional 3.9 (HKLM-x32\...\DPP) (Version: 3.9.0.3 - Canon Inc.) Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.1.0.4 - Canon Inc.) Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 7.4.0.2 - Canon Inc.) Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.) Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.6.0.23 - Canon Inc.) Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.4.0.4 - Canon Inc.) Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center - Branding (HKLM-x32\...\{87323561-58BA-4D5B-BADA-A791B69D1705}) (Version: 1.00.0000 - ATI) Hidden ChessBase Reader (HKLM-x32\...\{52A3CA50-6E19-40B2-AD6D-2B7B2D89A8E4}) (Version: 12.44.0.0 - ChessBase) Complitly (HKLM-x32\...\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1) (Version: - Complitly) DirectX 9 Runtime (HKLM-x32\...\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}) (Version: 1.00.0000 - Sonic Solutions) Hidden Easy Tune 6 B10.0516.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE) EasySaver B9.1214.1 (HKLM-x32\...\{07300F01-89CA-4CF8-92BD-2A605EB83C95}) (Version: 1.00.0000 - Gigabyte) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 21.3 - Thüringer Landesfinanzdirektion) EMC 11 Content (HKLM-x32\...\{21ABEA96-CCAB-4C40-8699-6BDFEC5FD63C}) (Version: 1.1.019 - Ihr Firmenname) Hidden FastImageResizer (remove only) (HKLM-x32\...\FastImageResizer) (Version: - ) FastStone Image Viewer 7.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.4 - FastStone Soft) FileZilla Client 3.10.1.1 (HKLM-x32\...\FileZilla Client) (Version: 3.10.1.1 - Tim Kosse) FLV Runner Toolbar (HKLM-x32\...\FLV_Runner Toolbar) (Version: 6.9.0.16 - FLV Runner) Fotobuchexpress24 Bestellsoftware (HKLM-x32\...\Fotobuchexpress24) (Version: 4.0 - ) fotofoto Software (HKLM-x32\...\fotofotoSoftware) (Version: 4.0 - ) Free Video Dub version 2.0.21.827 (HKLM-x32\...\Free Video Dub_is1) (Version: 2.0.21.827 - DVDVideoSoft Ltd.) Freecorder 5 (HKLM-x32\...\Freecorder5.11) (Version: 5.11 - Applian Technologies Inc.) Fritz 12 (HKLM-x32\...\{4F4182DA-3D58-41E3-913D-480F8DA5C863}) (Version: 12.0.0 - ChessBase) Fritz und Fertig 3 (HKLM-x32\...\Fritz und Fertig 3) (Version: - ) Gigabyte Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0001 - GIGABYTE Technologies, Inc.) Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Google Chrome) (Version: 112.0.5615.49 - Google LLC) Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.23.0 - BonanzaDeals) Hidden Houdini 4 64-bit (HKLM\...\{BD221DF2-6078-42BE-9C09-EF1213E6DEAD}) (Version: 14.2.0.0 - ChessBase) HydraVision (HKLM-x32\...\{D5134D14-A38D-A217-4310-5C8B6DFA08D0}) (Version: 4.2.174.0 - ATI Technologies Inc.) Hidden iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.) Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.19.18.55 - Huawei Technologies Co.,Ltd) Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation) jZip (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\jZip) (Version: 2.0.0.134914 - Bandoo Media Inc) Media Go (HKLM-x32\...\{362AB21A-E2C4-40CE-81C2-8C4D62B0635A}) (Version: 2.4.256 - Sony) Media Go Video Playback Engine 1.116.101.02020 (HKLM-x32\...\{54215B8A-6212-8DB8-39B4-98EE2BB98BD1}) (Version: 1.116.101.02020 - Sony) Microsoft .NET Framework 4.5.1 (DEU) (HKLM\...\{C513739C-5F16-37B5-9ACF-99925FF1C1F3}) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.2 (HKLM\...\{26784146-6E05-3FF9-9335-786C7C0FB5BE}) (Version: 4.5.51209 - Microsoft Corporation) Hidden Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) (HKLM\...\{25E80DAA-FD87-DCE5-202C-CC02F6673002}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 112.0.1722.34 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 112.0.1722.34 - Microsoft Corporation) Microsoft Office Access MUI (German) 2010 (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2010 (HKLM\...\{90140000-002A-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Proof (English) 2010 (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2010 (HKLM\...\{90140000-002A-0407-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Single Image 2010 (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2010 (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\OneDriveSetup.exe) (Version: 17.3.7131.1115 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\OneDriveSetup.exe) (Version: 23.061.0319.0003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden Mozilla Firefox 62.0.2 (x64 de) (HKLM\...\Mozilla Firefox 62.0.2 (x64 de)) (Version: 62.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0 - Mozilla) MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NVIDIA Grafiktreiber 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation) PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PC Speed Maximizer v3.2 (HKLM-x32\...\PC Speed Maximizer_is1) (Version: 3.2 - Smart PC Solutions) <==== ATTENTION PDF Reader (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\PDF Reader) (Version: - ) PDF Reader Packages (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\PDF Reader Packages) (Version: - ) <==== ATTENTION PlayStation(R)Network Downloader (HKLM-x32\...\{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}) (Version: 2.07.00849 - Sony Computer Entertainment Inc.) PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: 4.14.6.15183 - Sony Computer Entertainment Inc.) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.18.322.2010 - Realtek) Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6034 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6083 - Realtek Semiconductor Corp.) Roxio Activation Module (HKLM-x32\...\{1D53B6F9-E66E-42D8-A221-4FF8AC134FD7}) (Version: 1.0 - Roxio) Hidden Roxio BackOnTrack (HKLM-x32\...\{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}) (Version: 1.3.1 - Roxio) Hidden Roxio CinePlayer (HKLM-x32\...\{AA749D64-3741-4D5F-B804-B0BC05D179D1}) (Version: 5.0 - Roxio) Hidden Roxio CinePlayer Decoder Pack (HKLM-x32\...\{C0FE37FA-0886-4B66-B01B-76CF70FB77AB}) (Version: 4.3.0 - Roxio) Hidden Roxio File Backup (HKLM-x32\...\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}) (Version: 1.3.0 - Roxio) Hidden Roxio Update Manager (HKLM-x32\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 6.0.0 - Roxio) Roxio WinOnCD 2009 (HKLM-x32\...\{3383136B-4F86-4F05-8612-DD4BB16A1EAE}) (Version: 4.5.0 - Roxio) Hidden Roxio WinOnCD 2009 (HKLM-x32\...\{7919D8D9-69FB-4E94-B330-04C4AF251867}) (Version: 11.0 - Roxio) Roxio WinOnCD 2009 (HKLM-x32\...\{9F8C7AAF-CF7E-4FC9-ADD6-9EAE4304A161}) (Version: 1.1.110 - Roxio) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{09A9DF49-DA06-4093-A2FD-F339211E39EA}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{ECC1D579-DC17-4B90-929C-B4A0BB35F7B3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{97099817-53F1-4CA1-ACEA-DA6D74371689}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{E4D76E88-C65F-4003-9C71-EC4306679D17}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0407-1000-0000000FF1CE}_Office14.SingleImage_{3B0FF7FF-0E85-4907-A511-3F8C27349FA4}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}_Office14.SingleImage_{996096F8-956B-41C9-A7E3-9BA1E801014F}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}_Office14.SingleImage_{D505EC85-885F-4BE3-8A89-3EFE4F855692}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Silhouette Link (HKLM-x32\...\{C2136C80-F9D4-4096-86D4-C641BB36DFF3}) (Version: 1.0.096 - Silhouette America) SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.8.0 - SmartSound Software Inc) Update for PDF Reader (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\DigitalSite) (Version: - ) <==== ATTENTION Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation) VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN) VSDC Free Video Editor Version 6.4.2.102 (HKLM\...\VSDC Free Video Editor_is1) (Version: 6.4.2.102 - Flash-Integro LLC) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) YTD Video Downloader 5.9.13 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.9.13 - GreenTree Applications SRL) <==== ATTENTION Packages: ========= WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2015-11-12] (Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\ChromeHTML: -> C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll (Google Inc -> Google Inc.) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll (Google Inc -> Google Inc.) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\ChromeHTML: -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ATTENTION CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{041F9391-C79D-44EE-AA4E-AF4E029C4B47}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.112\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1F9E0710-2073-435F-9C1B-F29946205947}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.442\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.422\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.7\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{69545769-8D02-4B07-A481-AD374CD8D5D1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.132\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{6D264B70-DA18-401D-910C-B202D89670C6}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.32\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{84EB3779-151B-4C71-AEF0-A0FEE9481401}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.342\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.11\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{8B480070-D37D-4090-A063-7A429F849652}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.92\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\112.0.5615.49\notification_helper.exe (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{BE5C2E39-090F-46A2-AFAA-47540743B4FE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.102\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.83\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA919489-0396-4164-A6E7-94CDED45A707}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.52\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{DEDF773D-E27B-485E-8E7D-85C5B0EB5A67}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.72\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.302\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2015-04-26] (Apple Inc. -> Apple Inc.) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> No File ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation) ==================== Codecs (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Drivers32: [msacm.voxacm160] => C:\WINDOWS\system32\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [File not signed] HKLM\...\Drivers32: [msacm.scg726] => C:\WINDOWS\system32\scg726.acm [13239 2000-03-14] (SHARP Corporation) [File not signed] HKLM\...\Drivers32: [msacm.alf2cd] => C:\WINDOWS\system32\alf2cd.acm [38912 2003-05-21] (NCT Company) [File not signed] HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\AC3ACM.acm [81920 2004-02-04] (fccHandler) [File not signed] HKLM\...\Drivers32: [msacm.lame] => C:\WINDOWS\system32\lame.ax [245760 2005-08-01] () [File not signed] HKLM\...\Drivers32: [vidc.dvsd] => C:\WINDOWS\system32\mcdvd_32.dll [261632 2003-05-21] (MainConcept) [File not signed] HKLM\...\Drivers32: [vidc.mpg4] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [File not signed] HKLM\...\Drivers32: [vidc.mp42] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [File not signed] HKLM\...\Drivers32: [vidc.mp43] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [File not signed] HKLM\...\Drivers32: [vidc.xvid] => C:\WINDOWS\system32\xvidvfw.dll [139264 2004-07-03] () [File not signed] HKLM\...\Drivers32: [vidc.DIVX] => C:\WINDOWS\system32\DivX.dll [638976 2003-05-22] (DivXNetworks, Inc.) [File not signed] HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed] HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed] HKLM\...\Drivers32: [vidc.VP62] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed] HKLM\...\Drivers32: [vidc.LAGS] => C:\WINDOWS\system32\lagarith.dll [216064 2011-12-07] () [File not signed] ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] ShortcutWithArgument: C:\Users\Schilling Family\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Games.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /c "start hxxp://socialgames.splashtop.com/gbsp/mb/?p=w" ==================== Loaded Modules (Whitelisted) ============= 2009-06-27 10:11 - 2009-06-27 10:11 - 000503202 _____ () [File not signed] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 000817152 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2015-11-04 17:43 - 2015-11-04 17:43 - 000214528 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 003650560 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2015-09-20 16:47 - 2012-09-21 06:00 - 000303104 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNCALBO.DLL 2015-09-20 16:47 - 2012-09-20 06:00 - 000390656 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNMLMBO.DLL 2014-02-08 16:03 - 2012-07-31 11:18 - 000359936 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNMN6PPM.DLL 2022-09-17 13:49 - 2022-09-16 17:05 - 000036352 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qdds.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000381952 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qjp2.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000218624 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qmng.dll 2022-09-17 13:51 - 2022-04-12 12:17 - 001269760 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LIBEAY32.dll 2022-09-17 13:51 - 2022-04-12 12:17 - 000276480 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\SSLEAY32.dll 2022-09-17 13:51 - 2017-09-14 08:45 - 000037888 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\bearer\qgenericbearer.dll 2022-09-17 13:51 - 2017-09-14 08:45 - 000039424 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\bearer\qnativewifibearer.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000029696 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\iconengines\qsvgicon.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000024576 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qgif.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000030720 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qicns.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000025088 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qico.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000243200 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qjpeg.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000018944 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qsvg.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000017920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qtga.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000313344 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qtiff.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000017920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qwbmp.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 000324608 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qwebp.dll 2022-09-17 13:49 - 2022-09-16 17:05 - 001012224 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\platforms\qwindows.dll ==================== Alternate Data Streams (Whitelisted) ======== ==================== Safe Mode (Whitelisted) ================== ==================== Association (Whitelisted) ================= ==================== Internet Explorer (Whitelisted) ========== HKU\S-1-5-21-607273383-903765569-4108737559-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=10&cc=&mi=fe28521d0000000000001c6f653e2346 HKU\S-1-5-21-607273383-903765569-4108737559-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.spiegel.de/ HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com HKU\S-1-5-21-607273383-903765569-4108737559-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.dell.com HKU\S-1-5-21-607273383-903765569-4108737559-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com URLSearchHook: HKLM-x32 - (No Name) - {3bbd3c14-4c16-4989-8366-95bc9179779d} - No File URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.) URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.) URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - (No Name) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - No File URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - (No Name) - {3bbd3c14-4c16-4989-8366-95bc9179779d} - No File URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.) URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.) SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> DefaultScope {122F3846-0AE4-492e-81DE-906A0C4A482E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {122F3846-0AE4-492e-81DE-906A0C4A482E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {80C392F7-933D-4333-97C9-6836482FE614} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=fe28521d0000000000001c6f653e2346&r=378 SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {A000C9A9-4946-4842-88A3-E552A02BCA8E} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318 SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> DefaultScope {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {CAFC8535-FC41-4BE5-849D-E5224432519B} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318 SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.) Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> No Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} - No File Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> No Name - {1392B8D2-5C05-419F-A8F6-B9F15A596612} - No File Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> No Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} - No File Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1004 -> No Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} - No File DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab ==================== Hosts content: ========================= (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Other Areas =========================== (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;C:\Program Files (x86)\Common Files\Roxio Shared\11.0\DLLShared\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-607273383-903765569-4108737559-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Dell\Win7 LtBlue 1920x1200.jpg HKU\S-1-5-21-607273383-903765569-4108737559-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg HKU\S-1-5-21-607273383-903765569-4108737559-1004\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (If an entry is included in the fixlist, it will be removed.) MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: Motorola Device Manager => 2 MSCONFIG\Services: Roxio UPnP Renderer 11 => 3 MSCONFIG\Services: Roxio Upnp Server 11 => 2 MSCONFIG\Services: RoxLiveShare11 => 2 MSCONFIG\Services: RoxMediaDB11 => 3 MSCONFIG\Services: RoxWatch11 => 2 MSCONFIG\Services: ServiceLayer => 3 MSCONFIG\Services: Sony PC Companion => 3 HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\StartupApproved\Run: => "AmazonMP3DownloaderHelper" ==================== FirewallRules (Whitelisted) ================ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [UDP Query User{547E83B5-1313-4049-8C6C-7FEFCE3032C8}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{39484926-44D0-4DAF-B0F8-866441E6D21A}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{25FC2CF9-26C7-4801-865C-540B37D8F053}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{AF857C3D-3AD8-4EF9-85EA-8449CCA07F0B}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{2967DE4D-3ECD-4166-834C-BAA04DC11964}] => (Allow) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe (Silhouette Research & Technology Ltd -> ) FirewallRules: [{DCC44E91-DA96-404D-9C1F-EE280941DD29}] => (Allow) C:\Program Files (x86)\Silhouette America\Silhouette Link\SilhouetteLinkConsole.exe (Silhouette Research & Technology Ltd -> ) FirewallRules: [{73C5997B-A60F-4423-ABB7-310B58259BC2}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC) FirewallRules: [{6E0F8CA7-3119-4E34-8D0F-457FE24884BF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC) FirewallRules: [{79C30040-27F1-41BA-9061-5E6863DD79EF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC) FirewallRules: [{63D3CFC8-E445-4908-92DE-C1EF9B169D01}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC) FirewallRules: [{7AA2976B-1696-433C-951B-3638144151F5}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC) FirewallRules: [{56DA2F88-0B42-4F5C-9AD1-87CECFB8F21A}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC) FirewallRules: [{0427B960-2364-4061-8D5A-B5D5238E0652}] => (Allow) C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.) FirewallRules: [{55CD2498-99BC-4878-9393-A93EEEF53276}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe => No File FirewallRules: [{34FBCA88-D993-4E7D-AE9D-F75335CF1BD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe => No File FirewallRules: [{75721B46-B736-4981-A30C-9C4A7DFA293F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File FirewallRules: [{25ABFAB1-10A6-4C85-9498-4465BA7A8D25}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File FirewallRules: [{32F2A2BD-95DF-41FB-86E2-E4FA4F05F363}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File FirewallRules: [{22EAF1AB-1A96-40C1-8142-3CEBDF58A647}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File FirewallRules: [{2D4667B5-F3E5-4885-882A-680251907CC5}] => (Allow) F:\o2CD.exe => No File FirewallRules: [{A1F82616-54EE-4B24-BAF1-9FC9A59E06C9}] => (Allow) F:\o2CD.exe => No File FirewallRules: [{BC62CBD5-D590-40D7-B254-2F6B63EA0A51}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{3207EC1A-AC96-41C7-A43B-E0449E4CFD8C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{BB65DA61-3AEF-4723-839F-8614B4B2DCE6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{CEF21CCF-81CB-46AF-BF32-D50B57107806}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{E7D017EE-5A08-4B83-8ABD-0E231E05E21A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{97EEE3EA-74AC-4C81-A147-4062BE737487}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{27AA07D2-29F9-4C0A-8FA7-D5ACDA31A49C}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => No File FirewallRules: [{25F5F1FF-2414-4F37-8B6A-27EAF4331A0D}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => No File FirewallRules: [{64711767-0BEA-4E26-93C0-E7067F35F510}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{6267537C-2A47-4D0A-855E-11982B6C2CE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{19C62B83-B546-4D25-84EC-CF4188C945BE}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [{847E80AE-8076-4540-9C12-38B8CED2229E}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [TCP Query User{2C96EF38-3E0E-4B56-BE5F-66C94FBA7BF4}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => No File FirewallRules: [UDP Query User{DCAE0FD6-BE9F-423F-9A44-CF663BE220E3}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => No File FirewallRules: [{13F44943-2753-4C2C-A854-B02E880FD681}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.) FirewallRules: [{1DE1C6EB-EC9E-4562-BAD8-1EF4A6F74758}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.) FirewallRules: [{CED1E8BF-8A0D-46A0-8671-8FBC100F75E8}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe => No File FirewallRules: [{23C90C72-420C-4C0A-85BA-B2D6AE6C60ED}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{82195564-A0F6-465D-8DB4-102C09B6763D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{BCC5757C-BEA8-4EEF-90D5-F7581CFB61CE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{B602402A-086F-4281-B5D3-5862449D5F53}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{31A42FDB-DD04-4C37-A8F1-4208EE877C44}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{76B60587-7B61-4637-BEA2-7CAB8A4B0CB0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{189FA84B-B945-43A6-893F-CC12EAE178B9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{0E12E48C-5C80-40A2-BA71-1905CEF567CD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{9AAB57D9-E18D-48FA-9EF4-83B52D7B34A8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\112.0.1722.34\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Restore Points ========================= ATTENTION: System Restore is disabled (Total:107.89 GB) (Free:24.31 GB) (23%) ==================== Faulty Device Manager Devices ============ Name: Kaspersky Security Data Escort Adapter #2 Description: Kaspersky Security Data Escort Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: SAMSUNG Electronics Co., Ltd. Service: kltap Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19) Resolution: A registry problem was detected. This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options: On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver. ==================== Event log errors: ======================== Application errors: ================== Error: (04/08/2023 05:47:27 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.19041.2673, Zeitstempel: 0x4aa1ce82 Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.19041.546, Zeitstempel: 0x564f9f39 Ausnahmecode: 0x40000015 Fehleroffset: 0x000000000000ae22 ID des fehlerhaften Prozesses: 0x21e4 Startzeit der fehlerhaften Anwendung: 0x01d96a3116ba964b Pfad der fehlerhaften Anwendung: C:\Windows\ImmersiveControlPanel\SystemSettings.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\msvcrt.dll Berichtskennung: 32924120-d70a-4eee-85c7-e9792f980003 Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 31125 Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 31125 Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15438 Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15438 Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (04/02/2023 11:42:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_WaaSMedicSvc, Version: 10.0.19041.1806, Zeitstempel: 0x7dcad237 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.19041.2130, Zeitstempel: 0xb5ced1c6 Ausnahmecode: 0xc0000409 Fehleroffset: 0x00000000000281da ID des fehlerhaften Prozesses: 0x858 Startzeit der fehlerhaften Anwendung: 0x01d965462c926a07 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\svchost.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: a925920e-ff58-4635-b132-3e66a692e988 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: System errors: ============= Error: (04/08/2023 08:44:55 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Manager für heruntergeladene Karten" wurde nicht richtig gestartet. Error: (04/08/2023 08:39:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Net.Msmq-Listeneradapter" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (04/08/2023 08:39:02 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst Net.Msmq-Listeneradapter erreicht. Error: (04/08/2023 08:38:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Internet Manager. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (04/08/2023 08:38:43 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. OUC erreicht. Error: (04/08/2023 08:38:37 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (04/08/2023 08:38:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "NetTcpPortSharing" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (04/08/2023 08:38:37 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst NetTcpPortSharing erreicht. Windows Defender: ================ Date: 2023-04-08 20:59:50 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 20:59:49 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 20:59:32 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0 Name: PUABundler:Win32/CandyOpen Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe; file:_C:\Users\Eltern\Downloads\FreeStudio.exe Erkennungsursprung: Lokaler Computer Erkennungstype: FastPath Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 20:59:29 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Eltern Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 20:58:30 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=SoftwareBundler:Win32/OutBrowse&threatid=207835&enterprise=0 Name: SoftwareBundler:Win32/OutBrowse Schweregrad: Hoch Kategorie: Softwarebundler Pfad: file:_C:\Program Files (x86)\FLV PlayerFCSetup.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: SchillingFamily\Schilling Family Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Event[0]: Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiSpyware Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:10:52 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3495.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80070102 Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. Date: 2023-02-14 22:10:52 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3495.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80070102 Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. CodeIntegrity: =============== Date: 2023-04-02 11:55:38 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-04-02 11:42:03 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2023-03-19 23:21:24 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-01-12 23:00:54 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2022-11-11 00:26:40 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2022-11-11 00:13:09 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== BIOS: Award Software International, Inc. FD 07/23/2010 Motherboard: Gigabyte Technology Co., Ltd. GA-890GPA-UD3H Processor: AMD Phenom(tm) II X4 955 Processor Percentage of memory in use: 40% Total physical RAM: 8189.55 MB Available physical RAM: 4864.76 MB Total Virtual: 16381.55 MB Available Virtual: 12716.57 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:107.89 GB) (Free:24.31 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS Drive d: () (Fixed) (Total:97.56 GB) (Free:25.19 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS Drive e: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) Drive f: (ELM327 software) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS Drive g: (System) (Fixed) (Total:232.88 GB) (Free:44.68 GB) (Model: ST3250823AS ATA Device) NTFS ==>[system with boot components (obtained from drive)] \\?\Volume{dbb0575c-96c5-11e1-b743-806e6f6e6963}\ (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==================== MBR & Partition Table ==================== ========================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 232.9 GB) (Disk ID: E419C3C7) Partition 1: (Not Active) - (Size=232.9 GB) - (Type=0F Extended) ========================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 973E7CF0) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=390.6 GB) - (Type=06) Partition 4: (Not Active) - (Size=107.9 GB) - (Type=07 NTFS) ==================== End of Addition.txt ======================= |
08.04.2023, 20:19 | #5 |
/// Winkelfunktion /// TB-Süch-Tiger™ | MFResident-20230328-55 Ja, aber betroffen ist doch das von den "Eltern" oder?
__________________ Logfiles bitte immer in CODE-Tags posten |
08.04.2023, 20:30 | #6 |
| MFResident-20230328-55 ja, das ist betroffen, nutze eigentlich nur das Eltern Benutzerkonto |
08.04.2023, 20:56 | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ | MFResident-20230328-55 Dann bitte diesem Konto alle Rechte. Damach ein reboot und neue RST-Logs bitte.
__________________ Logfiles bitte immer in CODE-Tags posten |
08.04.2023, 21:54 | #8 |
| MFResident-20230328-55 ok, das Konto hat jetzt Adminrechte. Seitdem tauchen die pop up Fenster nicht mehr auf FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 06-04-2023 durchgeführt von Eltern (Administrator) auf SCHILLINGFAMILY (Gigabyte Technology Co., Ltd. GA-890GPA-UD3H) (08-04-2023 22:28:10) Gestartet von C:\Users\Eltern\Downloads Geladene Profile: Schilling Family & Eltern Plattform: Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Edge Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\MFResident.exe (C:\Program Files (x86)\DataCardService\HWDeviceService64.exe ->) (Huawei Technologies Co.,Ltd. -> Huawei Technologies Co., Ltd.) C:\Program Files (x86)\DataCardService\DCSHelper.exe (C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.34\identity_helper.exe (DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe <2> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe <2> (Huawei Technologies Co.,Ltd. -> ) C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe (services.exe ->) (Huawei Technologies Co.,Ltd. -> ) C:\Program Files (x86)\DataCardService\HWDeviceService64.exe (services.exe ->) (JMicron Technology Corp. -> ) C:\Windows\SysWOW64\XSrvSetup.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <3> (services.exe ->) (Shenzhen iMyFone Technology Co., Ltd -> ) C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe (services.exe ->) (Silhouette Research & Technology Ltd -> ) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.1271.0_x64__8wekyb3d8bbwe\GameBar.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.1271.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe <2> (winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM-x32\...\Run: [BCU] => C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [375000 2009-10-15] (DeviceVM Inc. -> DeviceVM, Inc.) HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmprph.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Roxio Central 4\Plugins\Launch.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\Setup_wm.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\VPREVIEW.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\ChessBase\ChessProgram12\ChessProgram12.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSACCESS.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSPUB.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Internet Explorer <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpsideshowgadget.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Sidebar <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\downloads\minecraft (1).exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnetwk.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\POWERPNT.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\program files (x86)\adobe\reader 10.0\reader\eula.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Roxio Central 4\RoxioCentralFx.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmlaunch.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Media Import 11\MediaCapture11.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmprph.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpsideshowgadget.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\program files (x86)\java\jre7\bin\javaw.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\Wordconv.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\Setup_wm.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpconfig.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\downloads\minecraft.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\desktop\minecraft (1).exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\GRAPH.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpshare.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\excelcnv.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\XLICONS.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\PPTICO.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmplayer.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WORDICON.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Creator Classic 11\Creator11.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Sidebar <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Retrieve 11\Launch_Retrieve.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmlaunch.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Retrieve 11\Retrieve11.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpconfig.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Defender <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpenc.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OIS.EXE <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\desktop\minecraft.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Internet Explorer <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpshare.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpenc.exe <==== ACHTUNG HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Run: [Google Update] => C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.36.201\GoogleUpdateCore.exe [223000 2023-04-08] (Google LLC -> Google LLC) HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [Google Update] => C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\GoogleUpdateCore.exe [230360 2022-08-29] (Google LLC -> Google LLC) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [AmazonMP3DownloaderHelper] => C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-22] (Amazon Services LLC -> ) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [MicrosoftEdgeAutoLaunch_EB8D6C06E991CEDBC9E4E65F13805E5D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4140496 2023-04-06] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKLM\...\Windows x64\Print Processors\Canon iP4300 Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD86.DLL [27136 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX520 series: C:\WINDOWS\system32\CNCALBO.DLL [303104 2012-09-21] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Print\Monitors\Canon BJ Language Monitor iP4300: C:\WINDOWS\system32\CNMLM86.DLL [234496 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MX520 series: C:\WINDOWS\system32\CNMLMBO.DLL [390656 2012-09-20] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2012-07-31] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [53248 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> Startup: C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2013-01-04] ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\Users\Henrike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2014-04-08] ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) GroupPolicy: Beschränkung ? <==== ACHTUNG GroupPolicy\User: Beschränkung ? <==== ACHTUNG GroupPolicyUsers\S-1-5-21-607273383-903765569-4108737559-1004\User: Beschränkung <==== ACHTUNG Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0BBB9B25-3E0B-41C4-8417-BC0AA3E8469A} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (Keine Datei) Task: {0D20E039-9151-46FD-B974-33451D8D8893} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (Keine Datei) Task: {0D32098A-3809-485B-B4B1-FB99532A9F8A} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {0F32F71B-0E80-453C-84AA-62B937EFC571} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (Keine Datei) Task: {16715D28-05B1-4839-82FC-3FBDE0233F64} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (Keine Datei) Task: {1C55A462-FD73-403B-A09F-984CB07A8C39} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.) Task: {22BE8BFB-1E32-4605-8FE7-032BE3370959} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (Keine Datei) Task: {2C9910E7-21E4-4BC3-A649-8476A15F8916} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Keine Datei <==== ACHTUNG Task: {2C9A41E5-EAA4-47BD-A47C-649959DD4C96} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (Keine Datei) Task: {2D4F42E6-6553-4563-A4DA-5C64C00F3A24} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (Keine Datei) Task: {2F254FB2-238A-4DDD-BB1A-5CD7BD36CFB9} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe -crl -hms -pscn 15 (Keine Datei) Task: {308E3245-B76B-4F4C-9420-DC711CD8B6AA} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (Keine Datei) Task: {355E2600-47CE-46FE-9A7E-1F5F735531F9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {45381A70-9F15-40C7-9DAB-84FE23E9CA62} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (Keine Datei) Task: {479F023B-EDFA-4153-B8AB-686E66D34909} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (Keine Datei) Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {48A446E7-59BC-49E8-B070-033DCC730F02} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {4FEE6216-5B1C-4CCD-B930-8E7E961AED44} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.) Task: {5235F070-0423-4841-A880-4C5C6E95D792} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {5288861F-AA80-42F5-965F-271A29651414} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {540F9B5D-6DB9-4419-8E0B-36E4220B76D6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.) Task: {57B8B6B7-8B6E-4186-94DF-1155B3FB3CF1} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (Keine Datei) Task: {57F6E612-D826-46E6-86F9-C9951328AFB3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5BE104DB-21E9-45AE-90C2-1E8585816213} - \MetaCrawler -> Keine Datei <==== ACHTUNG Task: {60E899E7-67BD-4316-94B1-5F9C60C66F8F} - \BonanzaDealsLiveUpdateTaskMachineCore -> Keine Datei <==== ACHTUNG Task: {62AB03D9-9674-4F82-9B03-79854C0C4188} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {68A2DC77-4326-45B0-A2EB-FC0A3F784C40} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {6CE9B4C3-7B27-4764-9B0A-152BBAECC232} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {6F37C2F7-DADB-49AE-A204-2C9AD19C6CFE} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {6F47A56B-CADB-4C5E-B30B-85487FC6CC88} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.) Task: {71C3C4D2-0F58-4A47-A69A-D46E959D7336} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (Keine Datei) Task: {71D74DD1-F182-473C-A98A-587C247548CF} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {73A44D9D-5152-45D9-B5ED-09FE3C3EA042} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (Keine Datei) Task: {801268F4-4131-4543-95C3-8B78C47D63B5} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {83C55439-989B-45A6-A08E-F552847E1327} - \DigitalSite -> Keine Datei <==== ACHTUNG Task: {84608AB1-FDFC-4CBE-9B6E-87A86EC99DCE} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (Keine Datei) Task: {88F5F492-6208-4730-A9B2-F754D5D964BB} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {89AA7B43-6F43-4665-B455-35250B2775B6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core1d36619e3cf49df => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.) Task: {964B9BE3-0E0D-4477-9935-97A3378361C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9B5544EC-58CA-4789-AAD4-BC7E3AC6823A} - \BonanzaDealsLiveUpdateTaskMachineUA -> Keine Datei <==== ACHTUNG Task: {A25CFF11-8701-4725-B4FF-B3E3A26322F7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA1d36619e3f56ec3 => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.) Task: {A62B6259-A517-463A-87F7-5AC214BA12C1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA1d264fa72e45b7c => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.) Task: {A644AF47-F72C-415B-87DA-AC26713AA924} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (Keine Datei) Task: {A764CB31-E10A-4748-87C2-78B1A074C2C5} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {AE3B097F-0458-44AD-B075-30716ECFED1E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B48C01BC-3898-4438-ACBC-3CBB676128C9} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (Keine Datei) Task: {BC82C7F7-E333-4612-B4DA-B144C7B04EC6} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (Keine Datei) Task: {C5CFDFCD-19A8-459D-B137-419863D933E0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C81A5F30-FAB1-46FE-8C78-248273597C96} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {C9CE2E2F-74C8-4420-A9A6-6C5270140972} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (Keine Datei) Task: {CC1E0B3B-991C-48FD-A12D-87AD1C6A5AB4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {CEC66727-43C2-4046-877F-5E52D2579E6A} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (Keine Datei) Task: {D4B27E49-E70B-42CF-9F59-391892C74007} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {D8373EC5-C2D0-47AA-A6E5-134DB4404626} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (Keine Datei) Task: {D8BBE133-E46B-46C1-91B4-19BE93F6CB55} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (Keine Datei) Task: {E32C8471-92F1-4FDE-B901-8FB47EC87899} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {E9EB6BC0-96CB-4A0D-888D-CE6AD2CFAA11} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.) Task: {EEF562D5-1A49-4011-9839-10FE2C739B33} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core1d264fa72b23a21 => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.) Task: {FCAE2C9E-7790-484C-B719-C3622CADC1D6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (Keine Datei) Task: {FD4F3315-361A-4584-98C3-A29243C37660} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ACHTUNG Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ACHTUNG Task: C:\WINDOWS\Tasks\DigitalSite.job => C:\Users\SCHILL~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ACHTUNG Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core.job => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA.job => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe Task: C:\WINDOWS\Tasks\MetaCrawler.job => C:\Users\SCHILL~1\AppData\Roaming\METACR~1\UPDATE~1\UPDATE~1.EXE ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{1533b570-916a-43ef-a95f-2771cf3347c2}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{63e8b743-5869-48f3-b34a-8f4038bdaffe}: [NameServer] 10.74.210.210 10.74.210.211 Edge: ======= Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden] Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden] Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden] Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden] Edge DefaultProfile: Default Edge Profile: C:\Users\Eltern\AppData\Local\Microsoft\Edge\User Data\Default [2023-04-08] Edge Extension: (Edge relevant text changes) - C:\Users\Eltern\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-04-08] FireFox: ======== FF ProfilePath: C:\Users\Eltern\AppData\Roaming\Nvu\Profiles\l9ncqul6.default [2012-11-29] FF ProfilePath: C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default [2019-03-30] FF user.js: detected! => C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default\user.js [2015-09-30] FF Extension: (Telemetry coverage) - C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default\features\{8be4ee0a-5a7c-4dfc-b1a8-b23c5451a190}\telemetry-coverage-bug1487578@mozilla.org.xpi [2019-03-30] [] FF HKLM\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com FF Extension: (SpeedAnalysis.com) - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com [2013-04-02] [] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden FF HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-03-21] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [Datei ist nicht signiert] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 -> C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll [2011-08-03] (Sony Computer Entertainment Inc. -> Sony Computer Entertainment Inc.) FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 -> C:\Program Files (x86)\Sony\Media Go\npmediago.dll [2013-02-14] (Sony Network Entertainment International LLC) [Datei ist nicht signiert] FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1001: amazon.com/AmazonMP3DownloaderPlugin -> C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10174.dll [2012-12-07] (Amazon.com, Inc.) [Datei ist nicht signiert] FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1003: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-22] (Amazon Services LLC -> Amazon.com, Inc.) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-10-06] <==== ACHTUNG (Zeigt auf eine *.cfg Datei) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-10-06] <==== ACHTUNG Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default [2023-04-08] CHR Notifications: Default -> hxxp://kleinanzeigen.ebay.de; hxxps://de10.forgeofempires.com; hxxps://lichess.org; hxxps://www.ebay.de CHR Extension: (FoE - Helfer) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2023-03-26] CHR Extension: (Complitly plugin for chrome) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda [2014-04-12] [UpdateUrl:hxxp://www.predictad.com/update/chrome/?si=28188&ver=1.1] <==== ACHTUNG CHR Extension: (Adobe Acrobat: Werkzeuge zum Bearbeiten, Konvertieren und Signieren von PDF-Dateien) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-03-26] CHR Extension: (Google Docs Offline) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-04-07] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31] CHR HKLM\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx [2013-11-16] CHR HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\SCHILL~1\AppData\Local\metacrawler-speeddial.crx [2013-11-16] CHR HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [cfcbmgbfdbijmjgjihagbomfbjfjmgon] - C:\Users\Schilling Family\AppData\Roaming\SpeedanAlysis\speedanalysis.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [dlfienamagdnkekbbbocojppncdambda] - C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx [2012-05-28] CHR HKLM-x32\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx [2013-11-16] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] StartMenuInternet: Google Chrome - C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe StartMenuInternet: Google Chrome.Eltern - C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.) S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1113864 2020-07-04] (Bayerisches Landesamt fuer Steuern -> ) S2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] (Giga-Byte Technology -> ) R2 HWDeviceService64.exe; C:\Program Files (x86)\DatacardService\HWDeviceService64.exe [351888 2016-03-24] (Huawei Technologies Co.,Ltd. -> ) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Datei ist nicht signiert] S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [682072 2015-07-06] (Huawei Technologies Co.,Ltd. -> ) R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] (JMicron Technology Corp. -> ) R2 MFLocalService; C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe [54664 2022-04-28] (Shenzhen iMyFone Technology Co., Ltd -> ) S4 Roxio UPnP Renderer 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUPnPRenderer11.exe [313840 2008-08-14] (Sonic Solutions -> Sonic Solutions) S4 Roxio Upnp Server 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUpnpService11.exe [367088 2008-08-14] (Sonic Solutions -> Sonic Solutions) S4 RoxMediaDB11; C:\Program Files (x86)\Common Files\Roxio Shared\11.0\SharedCOM\RoxMediaDB11.exe [1122304 2009-01-09] (Sonic Solutions) [Datei ist nicht signiert] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [226976 2023-03-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SilhouetteLink; C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe [897200 2016-12-06] (Silhouette Research & Technology Ltd -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe [3224328 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe [133544 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] R3 gdrv; C:\Windows\gdrv.sys [25640 2023-04-08] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider) S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2014-02-08] (GIGA-BYTE TECHNOLOGY CO., LTD -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49608 2023-03-28] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [495896 2023-03-28] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99624 2023-03-28] (Microsoft Windows -> Microsoft Corporation) U3 idsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-04-08 22:37 - 2023-04-08 22:37 - 000000000 ____D C:\Users\Schilling Family\AppData\Roaming\com.adobe.dunamis 2023-04-08 22:37 - 2023-04-08 22:37 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\SolidDocuments 2023-04-08 22:37 - 2023-04-08 22:37 - 000000000 ____D C:\Users\Schilling Family\.ms-ad 2023-04-08 22:14 - 2023-04-08 22:14 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\D3DSCache 2023-04-08 19:09 - 2023-04-08 21:03 - 000079412 _____ C:\Users\Eltern\Downloads\Addition.txt 2023-04-08 19:04 - 2023-04-08 22:35 - 000044115 _____ C:\Users\Eltern\Downloads\FRST.txt 2023-04-08 19:03 - 2023-04-08 22:33 - 000000000 ____D C:\FRST 2023-04-08 19:01 - 2023-04-08 19:02 - 002379776 _____ (Farbar) C:\Users\Eltern\Downloads\FRST64.exe 2023-04-08 00:27 - 2023-04-08 22:19 - 113508352 _____ C:\WINDOWS\system32\config\SOFTWARE 2023-04-08 00:11 - 2023-04-08 00:27 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2023-03-18 17:05 - 2023-03-18 17:05 - 000000000 ___HD C:\$WinREAgent 2023-03-09 23:24 - 2023-03-09 23:24 - 000000000 ____D C:\Users\Eltern\AppData\Local\SolidDocuments ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-04-08 22:39 - 2017-12-29 01:39 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\Packages 2023-04-08 22:39 - 2016-07-14 19:02 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\Publishers 2023-04-08 22:39 - 2012-05-05 20:54 - 000002590 _____ C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-04-08 22:39 - 2012-05-05 20:54 - 000002553 _____ C:\Users\Schilling Family\Desktop\Google Chrome.lnk 2023-04-08 22:37 - 2021-06-21 11:40 - 000004190 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{715B1F11-FA8F-4631-820D-9B3102438278} 2023-04-08 22:37 - 2021-06-21 10:59 - 000000000 ____D C:\Users\Schilling Family 2023-04-08 22:37 - 2012-05-05 20:55 - 000000000 ____D C:\Users\Schilling Family\AppData\Roaming\Adobe 2023-04-08 22:36 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-04-08 22:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-04-08 22:31 - 2021-06-21 11:40 - 000004234 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA1d36619e3f56ec3 2023-04-08 22:31 - 2021-06-21 11:40 - 000003966 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core1d36619e3cf49df 2023-04-08 22:25 - 2017-12-28 22:49 - 000000000 ____D C:\ProgramData\NVIDIA 2023-04-08 22:24 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-04-08 22:21 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-04-08 22:20 - 2021-06-21 11:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-04-08 22:20 - 2012-05-05 21:40 - 000025640 _____ (Windows (R) Server 2003 DDK provider) C:\WINDOWS\gdrv.sys 2023-04-08 22:19 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-04-08 22:18 - 2021-06-21 11:40 - 000003398 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-607273383-903765569-4108737559-1001 2023-04-08 22:18 - 2021-06-21 10:59 - 000002457 _____ C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-04-08 22:18 - 2016-07-14 19:09 - 000000000 ___RD C:\Users\Schilling Family\OneDrive 2023-04-08 22:13 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-04-08 22:12 - 2018-01-01 16:22 - 000000000 ___RD C:\Users\Schilling Family\3D Objects 2023-04-08 22:12 - 2017-11-25 20:14 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\ConnectedDevicesPlatform 2023-04-08 22:12 - 2015-09-10 07:44 - 000000000 __RHD C:\Users\Public\AccountPictures 2023-04-08 21:03 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2023-04-08 20:49 - 2014-03-03 21:44 - 000000000 ____D C:\Program Files (x86)\Motorola Mobility 2023-04-08 20:49 - 2012-05-05 21:20 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2023-04-08 20:21 - 2012-06-14 08:40 - 000000000 ____D C:\Users\Schilling Family\AppData\Roaming\DVDVideoSoft 2023-04-08 17:47 - 2023-01-24 22:03 - 000000000 ____D C:\Users\Eltern\AppData\Local\CrashDumps 2023-04-07 22:32 - 2021-06-21 10:56 - 000002396 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-04-07 22:32 - 2021-06-21 10:56 - 000002234 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-04-07 22:28 - 2012-05-06 09:23 - 000002540 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-04-07 22:28 - 2012-05-06 09:23 - 000002503 _____ C:\Users\Eltern\Desktop\Google Chrome.lnk 2023-04-07 22:27 - 2021-06-21 11:40 - 000004170 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{7B8873E7-2F6A-4D04-BC4D-C1178DC4E0A8} 2023-04-07 22:26 - 2021-12-11 16:19 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-607273383-903765569-4108737559-1003 2023-04-07 22:26 - 2021-06-21 11:40 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-607273383-903765569-4108737559-1003 2023-04-07 22:26 - 2021-06-21 10:59 - 000002443 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-04-04 23:44 - 2021-06-21 10:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-04-04 21:51 - 2021-06-24 07:57 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-04-04 21:51 - 2021-06-24 07:57 - 000003662 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7667dcba7b542 2023-04-02 11:37 - 2021-06-21 11:15 - 001917326 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-04-02 11:37 - 2019-12-07 16:51 - 000820884 _____ C:\WINDOWS\system32\perfh007.dat 2023-04-02 11:37 - 2019-12-07 16:51 - 000177416 _____ C:\WINDOWS\system32\perfc007.dat 2023-03-28 01:10 - 2018-05-27 22:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-03-25 15:07 - 2021-06-21 11:40 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2023-03-25 15:06 - 2023-03-07 09:26 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-03-25 15:06 - 2023-03-07 09:26 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-03-19 01:32 - 2021-06-21 10:50 - 000523208 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-03-19 01:28 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-03-18 17:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-03-18 17:29 - 2021-06-21 10:55 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-03-18 16:56 - 2013-08-03 13:53 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-03-18 16:35 - 2012-05-05 17:39 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-03-09 23:24 - 2012-05-06 09:25 - 000000000 ____D C:\Users\Eltern\AppData\Roaming\Adobe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2015-07-14 15:52 - 2013-06-26 13:51 - 000884736 _____ () C:\Program Files (x86)\vkaraoke.exe 2020-05-12 20:16 - 2020-05-12 20:16 - 000000008 _____ () C:\Users\Eltern\AppData\Roaming\com.silhouettesoftware.id 2012-06-09 15:54 - 2012-06-09 15:54 - 000000000 _____ () C:\Users\Eltern\AppData\Local\rx_image32.Cache 2012-06-02 17:13 - 2012-06-02 17:13 - 000017408 _____ () C:\Users\Eltern\AppData\Local\WebpageIcons.db ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
08.04.2023, 21:55 | #9 |
| MFResident-20230328-55 FRST Additions Logfile: Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-04-2023 durchgeführt von Eltern (08-04-2023 22:40:15) Gestartet von C:\Users\Eltern\Downloads Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) (2021-06-21 09:41:50) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-607273383-903765569-4108737559-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-607273383-903765569-4108737559-503 - Limited - Disabled) Eltern (S-1-5-21-607273383-903765569-4108737559-1003 - Administrator - Enabled) => C:\Users\Eltern Gast (S-1-5-21-607273383-903765569-4108737559-501 - Limited - Disabled) Henrike (S-1-5-21-607273383-903765569-4108737559-1004 - Limited - Enabled) => C:\Users\Henrike HomeGroupUser$ (S-1-5-21-607273383-903765569-4108737559-1002 - Limited - Enabled) Schilling Family (S-1-5-21-607273383-903765569-4108737559-1001 - Administrator - Enabled) => C:\Users\Schilling Family WDAGUtilityAccount (S-1-5-21-607273383-903765569-4108737559-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Kaspersky Total Security (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} AV: Kaspersky Total Security (Disabled - Up to date) {0AB30972-4BAC-7BEE-CBCA-B8F9E68797D8} AS: Kaspersky Total Security (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) @BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.08 - GIGABYTE) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 23.001.20093 - Adobe) Adobe AIR (HKLM-x32\...\{10166660-0C51-4355-BD74-D4700EFDB83B}) (Version: 28.0.0.127 - Adobe Systems Incorporated) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 28.0.0.127 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Advanced IP Scanner 2.5 (HKLM-x32\...\{804CED37-7CED-45A5-AEC8-0F1F0FEE17E1}) (Version: 2.5.3784 - Famatech) Amazon MP3-Downloader 1.0.17 (HKLM-x32\...\Amazon MP3-Downloader) (Version: 1.0.17 - Amazon Services LLC) Amazon MP3-Downloader 1.0.18 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AMD Drag and Drop Transcoding (HKLM\...\{203DE003-C392-FF19-BCA2-3F775477BC94}) (Version: 2.00.0000 - ATI Technologies Inc.) Hidden Apple Mobile Device Support (HKLM\...\{527DD209-8A66-482F-8779-C7B3BACCA8F1}) (Version: 15.0.0.16 - Apple Inc.) Applian FLV Player (HKLM-x32\...\Applian FLV Player2.0.24) (Version: 2.0.24 - Applian Technologies Inc.) ATI AVIVO64 Codecs (HKLM\...\{33A49BF2-CB4F-5E54-D7F5-25502CAB6B70}) (Version: 11.6.0.50706 - ATI Technologies Inc.) Hidden ATI Catalyst Install Manager (HKLM\...\{397878FC-1B1B-EED7-04A8-3184CE494A3B}) (Version: 3.0.782.0 - ATI Technologies, Inc.) Auto Clicker v6.1 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 6.1 - MurGee.com) AutoGreen B10.0517.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE) BlueStacks X (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\BlueStacks X) (Version: 0.18.30.9 - BlueStack Systems, Inc.) Bonanza Deals (remove only) (HKLM-x32\...\Bonanza Deals) (Version: 5.0.1.0 - Bonanza Deals) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Browser Configuration Utility (HKLM-x32\...\{A2F991E7-DDCD-42B7-AFEC-47789A099FDC}) (Version: 1.1.18.0 - DeviceVM Inc.) BUDNI Fotowelt (HKLM-x32\...\BUDNI Fotowelt) (Version: 6.1.2 - CEWE Stiftung u Co. KGaA) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.4.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\...\MyCamera Download Plugin) (Version: 3.1.0.1 - Canon Inc.) CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.8.0.1 - Canon Inc.) Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.7.0.1 - Canon Inc.) Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.) Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.7.0.6 - Canon Inc.) Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.5.0.3 - Canon Inc.) Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.6.0.5 - Canon Inc.) Canon Utilities CameraWindow DC 8 (HKLM-x32\...\CameraWindowDC8) (Version: 8.3.0.6 - Canon Inc.) Canon Utilities CameraWindow Launcher (HKLM-x32\...\CameraWindowLauncher) (Version: 7.5.0.2 - Canon Inc.) Canon Utilities Digital Photo Professional 3.9 (HKLM-x32\...\DPP) (Version: 3.9.0.3 - Canon Inc.) Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.1.0.4 - Canon Inc.) Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 7.4.0.2 - Canon Inc.) Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.) Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.6.0.23 - Canon Inc.) Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.4.0.4 - Canon Inc.) Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center - Branding (HKLM-x32\...\{87323561-58BA-4D5B-BADA-A791B69D1705}) (Version: 1.00.0000 - ATI) Hidden ChessBase Reader (HKLM-x32\...\{52A3CA50-6E19-40B2-AD6D-2B7B2D89A8E4}) (Version: 12.44.0.0 - ChessBase) Complitly (HKLM-x32\...\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1) (Version: - Complitly) DirectX 9 Runtime (HKLM-x32\...\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}) (Version: 1.00.0000 - Sonic Solutions) Hidden Easy Tune 6 B10.0516.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE) EasySaver B9.1214.1 (HKLM-x32\...\{07300F01-89CA-4CF8-92BD-2A605EB83C95}) (Version: 1.00.0000 - Gigabyte) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 21.3 - Thüringer Landesfinanzdirektion) EMC 11 Content (HKLM-x32\...\{21ABEA96-CCAB-4C40-8699-6BDFEC5FD63C}) (Version: 1.1.019 - Ihr Firmenname) Hidden FastImageResizer (remove only) (HKLM-x32\...\FastImageResizer) (Version: - ) FastStone Image Viewer 7.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.4 - FastStone Soft) FileZilla Client 3.10.1.1 (HKLM-x32\...\FileZilla Client) (Version: 3.10.1.1 - Tim Kosse) FLV Runner Toolbar (HKLM-x32\...\FLV_Runner Toolbar) (Version: 6.9.0.16 - FLV Runner) Fotobuchexpress24 Bestellsoftware (HKLM-x32\...\Fotobuchexpress24) (Version: 4.0 - ) fotofoto Software (HKLM-x32\...\fotofotoSoftware) (Version: 4.0 - ) Free Video Dub version 2.0.21.827 (HKLM-x32\...\Free Video Dub_is1) (Version: 2.0.21.827 - DVDVideoSoft Ltd.) Freecorder 5 (HKLM-x32\...\Freecorder5.11) (Version: 5.11 - Applian Technologies Inc.) Fritz 12 (HKLM-x32\...\{4F4182DA-3D58-41E3-913D-480F8DA5C863}) (Version: 12.0.0 - ChessBase) Fritz und Fertig 3 (HKLM-x32\...\Fritz und Fertig 3) (Version: - ) Gigabyte Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0001 - GIGABYTE Technologies, Inc.) Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Google Chrome) (Version: 112.0.5615.49 - Google LLC) Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Google Chrome) (Version: 112.0.5615.49 - Google LLC) Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.23.0 - BonanzaDeals) Hidden Houdini 4 64-bit (HKLM\...\{BD221DF2-6078-42BE-9C09-EF1213E6DEAD}) (Version: 14.2.0.0 - ChessBase) HydraVision (HKLM-x32\...\{D5134D14-A38D-A217-4310-5C8B6DFA08D0}) (Version: 4.2.174.0 - ATI Technologies Inc.) Hidden iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.) Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.19.18.55 - Huawei Technologies Co.,Ltd) Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation) jZip (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\jZip) (Version: 2.0.0.134914 - Bandoo Media Inc) Media Go (HKLM-x32\...\{362AB21A-E2C4-40CE-81C2-8C4D62B0635A}) (Version: 2.4.256 - Sony) Media Go Video Playback Engine 1.116.101.02020 (HKLM-x32\...\{54215B8A-6212-8DB8-39B4-98EE2BB98BD1}) (Version: 1.116.101.02020 - Sony) Microsoft .NET Framework 4.5.1 (DEU) (HKLM\...\{C513739C-5F16-37B5-9ACF-99925FF1C1F3}) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.2 (HKLM\...\{26784146-6E05-3FF9-9335-786C7C0FB5BE}) (Version: 4.5.51209 - Microsoft Corporation) Hidden Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) (HKLM\...\{25E80DAA-FD87-DCE5-202C-CC02F6673002}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 112.0.1722.34 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 112.0.1722.34 - Microsoft Corporation) Microsoft Office Access MUI (German) 2010 (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2010 (HKLM\...\{90140000-002A-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Proof (English) 2010 (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2010 (HKLM\...\{90140000-002A-0407-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Single Image 2010 (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2010 (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\OneDriveSetup.exe) (Version: 19.043.0304.0013 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\OneDriveSetup.exe) (Version: 23.061.0319.0003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden Mozilla Firefox 62.0.2 (x64 de) (HKLM\...\Mozilla Firefox 62.0.2 (x64 de)) (Version: 62.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0 - Mozilla) MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NVIDIA Grafiktreiber 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation) PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PC Speed Maximizer v3.2 (HKLM-x32\...\PC Speed Maximizer_is1) (Version: 3.2 - Smart PC Solutions) <==== ACHTUNG PDF Reader (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\PDF Reader) (Version: - ) PDF Reader Packages (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\PDF Reader Packages) (Version: - ) <==== ACHTUNG PlayStation(R)Network Downloader (HKLM-x32\...\{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}) (Version: 2.07.00849 - Sony Computer Entertainment Inc.) PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: 4.14.6.15183 - Sony Computer Entertainment Inc.) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.18.322.2010 - Realtek) Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6034 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6083 - Realtek Semiconductor Corp.) Roxio Activation Module (HKLM-x32\...\{1D53B6F9-E66E-42D8-A221-4FF8AC134FD7}) (Version: 1.0 - Roxio) Hidden Roxio BackOnTrack (HKLM-x32\...\{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}) (Version: 1.3.1 - Roxio) Hidden Roxio CinePlayer (HKLM-x32\...\{AA749D64-3741-4D5F-B804-B0BC05D179D1}) (Version: 5.0 - Roxio) Hidden Roxio CinePlayer Decoder Pack (HKLM-x32\...\{C0FE37FA-0886-4B66-B01B-76CF70FB77AB}) (Version: 4.3.0 - Roxio) Hidden Roxio File Backup (HKLM-x32\...\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}) (Version: 1.3.0 - Roxio) Hidden Roxio Update Manager (HKLM-x32\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 6.0.0 - Roxio) Roxio WinOnCD 2009 (HKLM-x32\...\{3383136B-4F86-4F05-8612-DD4BB16A1EAE}) (Version: 4.5.0 - Roxio) Hidden Roxio WinOnCD 2009 (HKLM-x32\...\{7919D8D9-69FB-4E94-B330-04C4AF251867}) (Version: 11.0 - Roxio) Roxio WinOnCD 2009 (HKLM-x32\...\{9F8C7AAF-CF7E-4FC9-ADD6-9EAE4304A161}) (Version: 1.1.110 - Roxio) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{09A9DF49-DA06-4093-A2FD-F339211E39EA}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{ECC1D579-DC17-4B90-929C-B4A0BB35F7B3}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{97099817-53F1-4CA1-ACEA-DA6D74371689}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{E4D76E88-C65F-4003-9C71-EC4306679D17}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0407-1000-0000000FF1CE}_Office14.SingleImage_{3B0FF7FF-0E85-4907-A511-3F8C27349FA4}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}_Office14.SingleImage_{996096F8-956B-41C9-A7E3-9BA1E801014F}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}_Office14.SingleImage_{D505EC85-885F-4BE3-8A89-3EFE4F855692}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version: - Microsoft) Hidden Silhouette Link (HKLM-x32\...\{C2136C80-F9D4-4096-86D4-C641BB36DFF3}) (Version: 1.0.096 - Silhouette America) SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.8.0 - SmartSound Software Inc) Update for PDF Reader (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\DigitalSite) (Version: - ) <==== ACHTUNG Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation) VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN) VSDC Free Video Editor Version 6.4.2.102 (HKLM\...\VSDC Free Video Editor_is1) (Version: 6.4.2.102 - Flash-Integro LLC) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) YTD Video Downloader 5.9.13 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.9.13 - GreenTree Applications SRL) <==== ACHTUNG Packages: ========= Fotos-Add-On -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-06-21] (Microsoft Corporation) Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-12-31] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-06-22] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-06-22] (Microsoft Corporation) [MS Ad] Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.16.3140.0_x64__8wekyb3d8bbwe [2023-03-21] (Microsoft Studios) [MS Ad] Unpacker -> C:\Program Files\WindowsApps\AFF540DC.Unpacker_1.1.14.24_x64__v7353qx4kg3sa [2017-08-08] (Jujuba Software) [MS Ad] WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2015-11-12] (Microsoft Corporation) Zip RAR 7Z -> C:\Program Files\WindowsApps\E7F9CCC0.ZipRAR7Z_1.5.0.0_neutral__58whwn0mv7c6y [2017-08-07] (D and V Limited) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\ChromeHTML: -> C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ACHTUNG CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{2919A592-BF5E-4AF5-A658-84454D70841E}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.36.202\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.36.202\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\112.0.5615.49\notification_helper.exe (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.36.202\psuser_64.dll (Google LLC -> Google LLC) HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\ChromeHTML: -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ACHTUNG CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{041F9391-C79D-44EE-AA4E-AF4E029C4B47}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.112\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1F9E0710-2073-435F-9C1B-F29946205947}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.442\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.422\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{69545769-8D02-4B07-A481-AD374CD8D5D1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.132\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{6D264B70-DA18-401D-910C-B202D89670C6}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.32\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{84EB3779-151B-4C71-AEF0-A0FEE9481401}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.342\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.11\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{8B480070-D37D-4090-A063-7A429F849652}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.92\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\112.0.5615.49\notification_helper.exe (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{BE5C2E39-090F-46A2-AFAA-47540743B4FE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.102\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.83\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA919489-0396-4164-A6E7-94CDED45A707}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.52\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{DEDF773D-E27B-485E-8E7D-85C5B0EB5A67}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.72\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.302\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => Keine Datei ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2015-04-26] (Apple Inc. -> Apple Inc.) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Drivers32: [msacm.voxacm160] => C:\WINDOWS\system32\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.scg726] => C:\WINDOWS\system32\scg726.acm [13239 2000-03-14] (SHARP Corporation) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.alf2cd] => C:\WINDOWS\system32\alf2cd.acm [38912 2003-05-21] (NCT Company) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\AC3ACM.acm [81920 2004-02-04] (fccHandler) [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.lame] => C:\WINDOWS\system32\lame.ax [245760 2005-08-01] () [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.dvsd] => C:\WINDOWS\system32\mcdvd_32.dll [261632 2003-05-21] (MainConcept) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.mpg4] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.mp42] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.mp43] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.xvid] => C:\WINDOWS\system32\xvidvfw.dll [139264 2004-07-03] () [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.DIVX] => C:\WINDOWS\system32\DivX.dll [638976 2003-05-22] (DivXNetworks, Inc.) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.VP62] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.LAGS] => C:\WINDOWS\system32\lagarith.dll [216064 2011-12-07] () [Datei ist nicht signiert] ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] ShortcutWithArgument: C:\Users\Eltern\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7b8281b05742e423\Google Chrome.lnk -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2009-06-27 10:11 - 2009-06-27 10:11 - 000503202 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 000817152 _____ () [Datei ist nicht signiert] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2015-11-04 17:43 - 2015-11-04 17:43 - 000214528 _____ () [Datei ist nicht signiert] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 003650560 _____ () [Datei ist nicht signiert] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2020-01-18 14:56 - 2013-08-16 08:53 - 000043008 _____ () [Datei ist nicht signiert] C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll 2020-01-18 14:56 - 2013-08-16 08:53 - 000011362 _____ () [Datei ist nicht signiert] C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll 2020-01-18 14:56 - 2014-02-15 09:31 - 002416640 _____ () [Datei ist nicht signiert] C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll 2020-01-18 14:56 - 2014-02-15 09:33 - 001148416 _____ () [Datei ist nicht signiert] C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll 2015-09-20 16:47 - 2012-09-21 06:00 - 000303104 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNCALBO.DLL 2015-09-20 16:47 - 2012-09-20 06:00 - 000390656 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNMLMBO.DLL 2014-02-08 16:03 - 2012-07-31 11:18 - 000359936 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNMN6PPM.DLL 2022-09-17 13:49 - 2022-09-16 17:05 - 001012224 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\platforms\qwindows.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKU\S-1-5-21-607273383-903765569-4108737559-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=10&cc=&mi=fe28521d0000000000001c6f653e2346 HKU\S-1-5-21-607273383-903765569-4108737559-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.spiegel.de/ HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com HKU\S-1-5-21-607273383-903765569-4108737559-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.dell.com HKU\S-1-5-21-607273383-903765569-4108737559-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com URLSearchHook: HKLM-x32 - FLV Runner Toolbar - {3bbd3c14-4c16-4989-8366-95bc9179779d} - C:\Users\Eltern\AppData\LocalLow\FLV_Runner\prxtbFLV2.dll Keine Datei URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.) URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.) URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - (Kein Name) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - Keine Datei URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - FLV Runner Toolbar - {3bbd3c14-4c16-4989-8366-95bc9179779d} - C:\Users\Eltern\AppData\LocalLow\FLV_Runner\prxtbFLV2.dll Keine Datei URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.) URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.) SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> DefaultScope {122F3846-0AE4-492e-81DE-906A0C4A482E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {122F3846-0AE4-492e-81DE-906A0C4A482E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {80C392F7-933D-4333-97C9-6836482FE614} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=fe28521d0000000000001c6f653e2346&r=378 SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {A000C9A9-4946-4842-88A3-E552A02BCA8E} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318 SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> DefaultScope {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {CAFC8535-FC41-4BE5-849D-E5224432519B} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318 SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.) Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> Kein Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} - Keine Datei Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> Kein Name - {1392B8D2-5C05-419F-A8F6-B9F15A596612} - Keine Datei Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> Kein Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} - Keine Datei Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1004 -> Kein Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} - Keine Datei DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;C:\Program Files (x86)\Common Files\Roxio Shared\11.0\DLLShared\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-607273383-903765569-4108737559-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Dell\Win7 LtBlue 1920x1200.jpg HKU\S-1-5-21-607273383-903765569-4108737559-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg HKU\S-1-5-21-607273383-903765569-4108737559-1004\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Keine Datei) ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: Motorola Device Manager => 2 MSCONFIG\Services: Roxio UPnP Renderer 11 => 3 MSCONFIG\Services: Roxio Upnp Server 11 => 2 MSCONFIG\Services: RoxLiveShare11 => 2 MSCONFIG\Services: RoxMediaDB11 => 3 MSCONFIG\Services: RoxWatch11 => 2 MSCONFIG\Services: ServiceLayer => 3 MSCONFIG\Services: Sony PC Companion => 3 HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\StartupApproved\Run: => "AmazonMP3DownloaderHelper" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [UDP Query User{547E83B5-1313-4049-8C6C-7FEFCE3032C8}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{39484926-44D0-4DAF-B0F8-866441E6D21A}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{25FC2CF9-26C7-4801-865C-540B37D8F053}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{AF857C3D-3AD8-4EF9-85EA-8449CCA07F0B}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{73C5997B-A60F-4423-ABB7-310B58259BC2}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC) FirewallRules: [{6E0F8CA7-3119-4E34-8D0F-457FE24884BF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC) FirewallRules: [{79C30040-27F1-41BA-9061-5E6863DD79EF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC) FirewallRules: [{63D3CFC8-E445-4908-92DE-C1EF9B169D01}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC) FirewallRules: [{7AA2976B-1696-433C-951B-3638144151F5}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC) FirewallRules: [{56DA2F88-0B42-4F5C-9AD1-87CECFB8F21A}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC) FirewallRules: [{0427B960-2364-4061-8D5A-B5D5238E0652}] => (Allow) C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{55CD2498-99BC-4878-9393-A93EEEF53276}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe => Keine Datei FirewallRules: [{34FBCA88-D993-4E7D-AE9D-F75335CF1BD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe => Keine Datei FirewallRules: [{75721B46-B736-4981-A30C-9C4A7DFA293F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei FirewallRules: [{25ABFAB1-10A6-4C85-9498-4465BA7A8D25}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei FirewallRules: [{32F2A2BD-95DF-41FB-86E2-E4FA4F05F363}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => Keine Datei FirewallRules: [{22EAF1AB-1A96-40C1-8142-3CEBDF58A647}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => Keine Datei FirewallRules: [{2D4667B5-F3E5-4885-882A-680251907CC5}] => (Allow) F:\o2CD.exe => Keine Datei FirewallRules: [{A1F82616-54EE-4B24-BAF1-9FC9A59E06C9}] => (Allow) F:\o2CD.exe => Keine Datei FirewallRules: [{BC62CBD5-D590-40D7-B254-2F6B63EA0A51}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{3207EC1A-AC96-41C7-A43B-E0449E4CFD8C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{BB65DA61-3AEF-4723-839F-8614B4B2DCE6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{CEF21CCF-81CB-46AF-BF32-D50B57107806}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{E7D017EE-5A08-4B83-8ABD-0E231E05E21A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{97EEE3EA-74AC-4C81-A147-4062BE737487}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{27AA07D2-29F9-4C0A-8FA7-D5ACDA31A49C}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => Keine Datei FirewallRules: [{25F5F1FF-2414-4F37-8B6A-27EAF4331A0D}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => Keine Datei FirewallRules: [{64711767-0BEA-4E26-93C0-E7067F35F510}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{6267537C-2A47-4D0A-855E-11982B6C2CE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{19C62B83-B546-4D25-84EC-CF4188C945BE}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [{847E80AE-8076-4540-9C12-38B8CED2229E}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [TCP Query User{2C96EF38-3E0E-4B56-BE5F-66C94FBA7BF4}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => Keine Datei FirewallRules: [UDP Query User{DCAE0FD6-BE9F-423F-9A44-CF663BE220E3}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => Keine Datei FirewallRules: [{13F44943-2753-4C2C-A854-B02E880FD681}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.) FirewallRules: [{1DE1C6EB-EC9E-4562-BAD8-1EF4A6F74758}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.) FirewallRules: [{CED1E8BF-8A0D-46A0-8671-8FBC100F75E8}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe => Keine Datei FirewallRules: [{31A42FDB-DD04-4C37-A8F1-4208EE877C44}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{76B60587-7B61-4637-BEA2-7CAB8A4B0CB0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{189FA84B-B945-43A6-893F-CC12EAE178B9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{0E12E48C-5C80-40A2-BA71-1905CEF567CD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> ) FirewallRules: [{9AAB57D9-E18D-48FA-9EF4-83B52D7B34A8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\112.0.1722.34\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:107.89 GB) (Free:24.06 GB) (22%) ==================== Fehlerhafte Geräte im Gerätemanager ============ Name: Kaspersky Security Data Escort Adapter #2 Description: Kaspersky Security Data Escort Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: SAMSUNG Electronics Co., Ltd. Service: kltap Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19) Resolution: A registry problem was detected. This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options: On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver. ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (04/08/2023 05:47:27 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.19041.2673, Zeitstempel: 0x4aa1ce82 Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.19041.546, Zeitstempel: 0x564f9f39 Ausnahmecode: 0x40000015 Fehleroffset: 0x000000000000ae22 ID des fehlerhaften Prozesses: 0x21e4 Startzeit der fehlerhaften Anwendung: 0x01d96a3116ba964b Pfad der fehlerhaften Anwendung: C:\Windows\ImmersiveControlPanel\SystemSettings.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\msvcrt.dll Berichtskennung: 32924120-d70a-4eee-85c7-e9792f980003 Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 31125 Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 31125 Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15438 Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15438 Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (04/02/2023 11:42:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_WaaSMedicSvc, Version: 10.0.19041.1806, Zeitstempel: 0x7dcad237 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.19041.2130, Zeitstempel: 0xb5ced1c6 Ausnahmecode: 0xc0000409 Fehleroffset: 0x00000000000281da ID des fehlerhaften Prozesses: 0x858 Startzeit der fehlerhaften Anwendung: 0x01d965462c926a07 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\svchost.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: a925920e-ff58-4635-b132-3e66a692e988 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Systemfehler: ============= Error: (04/08/2023 10:38:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246010 fehlgeschlagen: 9NSTH9KHZDLQ-Microsoft.UI.Xaml.2.8 Error: (04/08/2023 10:38:09 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246010 fehlgeschlagen: 9P7VS8XHG9G5-Microsoft.WindowsAppRuntime.1.2 Error: (04/08/2023 10:25:50 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "MessagingService_240ee3" wurde mit folgendem Fehler beendet: Das Gerät ist nicht bereit. Error: (04/08/2023 10:21:19 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "MessagingService_72646" wurde mit folgendem Fehler beendet: Das Gerät ist nicht bereit. Error: (04/08/2023 10:21:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Internet Manager. RunOuc" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (04/08/2023 10:21:13 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. RunOuc erreicht. Error: (04/08/2023 10:12:10 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "MessagingService_d8f50a" wurde mit folgendem Fehler beendet: Das Gerät ist nicht bereit. Error: (04/08/2023 10:08:34 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "MessagingService_c2f7c9" wurde mit folgendem Fehler beendet: Das Gerät ist nicht bereit. Windows Defender: ================ Date: 2023-04-08 22:40:52 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: Prozessname: C:\Windows\explorer.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 22:40:51 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0 Name: PUABundler:Win32/CandyOpen Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe; file:_C:\Users\Eltern\Downloads\FreeStudio.exe Erkennungsursprung: Lokaler Computer Erkennungstype: FastPath Erkennungsquelle: Echtzeitschutz Benutzer: Prozessname: C:\Windows\explorer.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 22:39:28 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0 Name: PUABundler:Win32/CandyOpen Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe; file:_C:\Users\Eltern\Downloads\FreeStudio.exe Erkennungsursprung: Lokaler Computer Erkennungstype: FastPath Erkennungsquelle: Echtzeitschutz Benutzer: Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 22:39:24 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: Prozessname: C:\Users\Eltern\Downloads\FRST64.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Date: 2023-04-08 22:27:55 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Echtzeitschutz Benutzer: Prozessname: C:\Windows\explorer.exe Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0 Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4 Event[0]: Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiSpyware Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:12:26 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3589.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x8050a003 Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". Date: 2023-02-14 22:10:52 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3495.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80070102 Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. Date: 2023-02-14 22:10:52 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.3495.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80070102 Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. CodeIntegrity: =============== Date: 2023-04-02 11:55:38 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-04-02 11:42:03 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2023-03-19 23:21:24 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-01-12 23:00:54 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2022-11-11 00:26:40 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2022-11-11 00:13:09 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== BIOS: Award Software International, Inc. FD 07/23/2010 Hauptplatine: Gigabyte Technology Co., Ltd. GA-890GPA-UD3H Prozessor: AMD Phenom(tm) II X4 955 Processor Prozentuale Nutzung des RAM: 53% Installierter physikalischer RAM: 8189.55 MB Verfügbarer physikalischer RAM: 3798.63 MB Summe virtueller Speicher: 16381.55 MB Verfügbarer virtueller Speicher: 11333.5 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:107.89 GB) (Free:24.35 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS Drive d: () (Fixed) (Total:97.56 GB) (Free:25.19 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS Drive e: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) Drive f: (ELM327 software) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS Drive g: (System) (Fixed) (Total:232.88 GB) (Free:44.68 GB) (Model: ST3250823AS ATA Device) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] \\?\Volume{dbb0575c-96c5-11e1-b743-806e6f6e6963}\ (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 232.9 GB) (Disk ID: E419C3C7) Partition 1: (Not Active) - (Size=232.9 GB) - (Type=0F Extended) ========================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 973E7CF0) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=390.6 GB) - (Type=06) Partition 4: (Not Active) - (Size=107.9 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ======================= |
09.04.2023, 12:06 | #10 |
/// TB-Ausbilder | MFResident-20230328-55 So ein vermülltes System habe ich schon lange nicht mehr gesehen... Du solltest ganz dringend auf deine Downloadquellen achten. Du lädst dir ja alles Mögliche an Adware und unerwünschter Software auf das System. Das bedeutet sehr viel Arbeit für dich, wenn wir das System wieder in Ordnung bekommen sollen. Eine kurze Information vorab: Downloadquellen Die folgenden Seiten verteilen Software häufig mit einem sog. "Installer", mit dem Potentiell Unerwünschte Programme (PUP) oder Adware installiert werden können. Vereinzelt beinhalten diese "Installer" sogar Trojaner. Vermeide daher unbedingt die folgenden Seiten:
Für Windows gibt es seit einiger Zeit einen brauchbaren Paketmanager, der mit einfachen Befehlen es erlaubt, automatisiert Software herunterzuladen und zu installieren. Das erspart eine Menge Arbeit, denn ohne einen Paketmanager muss man jedes Programm selbst prüfen und separat manuell updaten, vorher manuell noch runterladen etc. pp. - siehe auch --> chocolatey Paketmanager für Windows Wir empfehlen dringend, alle Programme, sofern verfügbar, über chocolatey zu installieren. Falls du schon mit Linux zu tun hattest, wird dir die Syntax sehr vertraut sein. Die FAQs zu choco findest du da --> Chocolatey: Häufig gestellte Fragen (englisch) Selbstverständlich darfst du auch Fragen zu chocolatey im o.g. Thread zu chocolatey stellen. Für den seltenen Fall, dass du das benötigte Programm nicht im repository von chocolatey findest: Lade diese Software immer direkt beim jeweiligen Hersteller / Entwickler. Schritt 1 Führe Malwarebytes' AntiMalware (MBAM) gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei. Schritt 2 Führe AdwCleaner gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei. Schritt 3 Führe Emsisoft Emergency Kit (EEK) gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei. Bitte poste mit deiner nächsten Antwort:
|
09.04.2023, 12:38 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | MFResident-20230328-55 Vorher sollte mindestens Kaspersky deinstalliert werden.
__________________ Logfiles bitte immer in CODE-Tags posten |
09.04.2023, 21:46 | #12 |
| MFResident-20230328-55 Kaspersky hatt ich schon vor über einem Jahr eigentlich gelöscht, es findet sich auch nichts mehr zum deinstallieren bei den Programmen. aber vielleicht hat sich da noch das eine oder andere von dem versteckt. Ansonsten die scans durchgeführt. Zunächst 3 Beiträge MBAM, dann die anderen beiden Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 09.04.23 Scan-Zeit: 18:42 Protokolldatei: 8dd4d886-d6f5-11ed-a7b1-1c6f653e2346.json -Softwaredaten- Version: 4.5.26.259 Komponentenversion: 1.0.1976 Version des Aktualisierungspakets: 1.0.67783 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 10 (Build 19044.2728) CPU: x64 Dateisystem: NTFS Benutzer: SchillingFamily\Eltern -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Scan gestartet von: Manuell Ergebnis: Abgeschlossen Gescannte Objekte: 444201 Erkannte Bedrohungen: 1057 In die Quarantäne verschobene Bedrohungen: 1057 Abgelaufene Zeit: 57 Min., 8 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Heuristik: Aktiviert PUP: Erkennung PUM: Erkennung -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 92 PUP.Optional.Complitly, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1, In Quarantäne, 3015, 236681, , , , , , PUP.Optional.PCSpeedMaximizer, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PC Speed Maximizer_is1, In Quarantäne, 3672, 241606, , , , , , Adware.Revizer.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, In Quarantäne, 7549, -1, 0.0.0, , action, , , PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\BONANZADEALS, In Quarantäne, 1380, 235914, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\BonanzaDealsLive, In Quarantäne, 1380, 235917, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, HKLM\SOFTWARE\WOW6432NODE\FLV_Runner, In Quarantäne, 2746, 238426, 1.0.67783, , ame, , , PUP.Optional.InstallCore, HKLM\SOFTWARE\WOW6432NODE\InstallCore, In Quarantäne, 91, 239564, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\BonanzaDealsLive, In Quarantäne, 1380, 235915, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\APPDATALOW\SOFTWARE\FLV_Runner, In Quarantäne, 2746, 238424, 1.0.67783, , ame, , , PUP.Optional.PriceGong, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\APPDATALOW\SOFTWARE\PriceGong, In Quarantäne, 1508, 241946, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{29494049-211F-4F5C-8545-7DA8BF7A6CF8}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLive.OneClickCtrl.9, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLive.OneClickProcessLauncherMachine.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLive.OneClickProcessLauncherMachine, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\CONDUIT\Toolbar, In Quarantäne, 7214, 421478, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLive.Update3WebControl.3, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoCreateAsync.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoCreateAsync, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoreClass.1, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A7CF66EF-4F0D-46B1-AF71-A500378D6C34}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{A7CF66EF-4F0D-46B1-AF71-A500378D6C34}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoreClass, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoreMachineClass.1, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoreMachineClass, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CredentialDialogMachine.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CredentialDialogMachine, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassMachine.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassMachine, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassMachineFallback.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassMachineFallback, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassSvc.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D34F391D-4CB7-467F-A543-F583857C63B0}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{D34F391D-4CB7-467F-A543-F583857C63B0}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassSvc, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.ProcessLauncher.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.ProcessLauncher, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3COMClassService.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{9EA8702C-EEDB-4731-BE68-E9A167DD3597}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{9EA8702C-EEDB-4731-BE68-E9A167DD3597}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3COMClassService, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebMachine.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebMachine, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Bonanza Deals, In Quarantäne, 1380, 182151, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebMachineFallback.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebMachineFallback, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebSvc.1.0, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{118E1BF6-6279-432F-A285-373A77B90C7A}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{118E1BF6-6279-432F-A285-373A77B90C7A}, In Quarantäne, 1380, 235913, , , , , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebSvc, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B437D705-A317-48B0-8541-D3AF3EB72116}, In Quarantäne, 7214, 443513, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{CAFC8535-FC41-4BE5-849D-E5224432519B}, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{9E92257F-3F0A-451D-B231-6E2DB60CDC71}, In Quarantäne, 7214, 443525, , , , , , PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\CLASSES\Toolbar.CT1060933, In Quarantäne, 7214, 443525, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\CLASSES\Toolbar.CT3201318, In Quarantäne, 7214, 443525, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\BONANZADEALS, In Quarantäne, 1380, 235916, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\BonanzaDealsLive, In Quarantäne, 1380, 235915, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\FLV_Runner, In Quarantäne, 2746, 238425, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\Tbccint_HKLM, In Quarantäne, 112, 236872, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\APPDATALOW\SOFTWARE\ConduitSearchScopes, In Quarantäne, 112, 236861, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\APPDATALOW\SOFTWARE\FLV_Runner, In Quarantäne, 2746, 238424, 1.0.67783, , ame, , , PUP.Optional.PriceGong, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\APPDATALOW\SOFTWARE\PriceGong, In Quarantäne, 1508, 241946, 1.0.67783, , ame, , , PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{60E899E7-67BD-4316-94B1-5F9C60C66F8F}, In Quarantäne, 4200, 183578, 1.0.67783, , ame, , , PUP.Optional.DigitalSites, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{83C55439-989B-45A6-A08E-F552847E1327}, In Quarantäne, 1398, 551749, 1.0.67783, , ame, , , PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9B5544EC-58CA-4789-AAD4-BC7E3AC6823A}, In Quarantäne, 4200, 183578, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\BonanzaDealsLive, In Quarantäne, 1380, 235915, 1.0.67783, , ame, , , PUP.Optional.DigitalSites, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\DSiteProducts, In Quarantäne, 1398, 237780, 1.0.67783, , ame, , , PUP.Optional.InstallCore, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\InstallCore, In Quarantäne, 91, 239563, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\ConduitSearchScopes, In Quarantäne, 112, 236861, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\FLV_Runner, In Quarantäne, 2746, 238424, 1.0.67783, , ame, , , PUP.Optional.PriceGong, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\PriceGong, In Quarantäne, 1508, 241946, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A000C9A9-4946-4842-88A3-E552A02BCA8E}, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , PUP.Optional.PCSpeedMaximizer, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\PC SPEED MAXIMIZER, In Quarantäne, 3672, 241610, 1.0.67783, , ame, , , PUP.Optional.PCPerformer, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\PERFORMERSOFT\PC Performer, In Quarantäne, 285, 241585, 1.0.67783, , ame, , , PUP.Optional.Tarma, HKLM\SOFTWARE\Tarma Installer, In Quarantäne, 883, 821259, 1.0.67783, , ame, , , PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{60E899E7-67BD-4316-94B1-5F9C60C66F8F}, In Quarantäne, 4200, 183580, , , , , , PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\BonanzaDealsLiveUpdateTaskMachineCore, In Quarantäne, 4200, 183580, 1.0.67783, , ame, , , PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{9B5544EC-58CA-4789-AAD4-BC7E3AC6823A}, In Quarantäne, 4200, 183580, , , , , , PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\BonanzaDealsLiveUpdateTaskMachineUA, In Quarantäne, 4200, 183580, 1.0.67783, , ame, , , PUP.Optional.DigitalSite, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{83C55439-989B-45A6-A08E-F552847E1327}, In Quarantäne, 4846, 237777, , , , , , PUP.Optional.DigitalSite, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\DigitalSite, In Quarantäne, 4846, 237777, 1.0.67783, , ame, , , PUP.Optional.Complitly, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\dlfienamagdnkekbbbocojppncdambda, In Quarantäne, 3015, 236683, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B437D705-A317-48B0-8541-D3AF3EB72116}, In Quarantäne, 7214, 443512, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, 1.0.67783, , ame, , , PUP.Optional.YTDVideoDownloader, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}, In Quarantäne, 9888, 883300, , , , , , Registrierungswert: 28 Adware.Revizer.PrxySvrRST, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , Adware.Revizer.PrxySvrRST, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , Adware.Revizer.PrxySvrRST, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , Adware.Revizer.PrxySvrRST, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , Adware.Revizer.PrxySvrRST, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYOVERRIDE, In Quarantäne, 7549, -1, 0.0.0, , action, , , Adware.Revizer.PrxySvrRST, HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\BONANZADEALS|CHROMECRXPATH, In Quarantäne, 1380, 235914, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B437D705-A317-48B0-8541-D3AF3EB72116}|APPPATH, In Quarantäne, 7214, 443513, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{CAFC8535-FC41-4BE5-849D-E5224432519B}|FAVICONURL, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{CAFC8535-FC41-4BE5-849D-E5224432519B}|SUGGESTIONSURL_JSON, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{CAFC8535-FC41-4BE5-849D-E5224432519B}|URL, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\BONANZADEALS|CHROMECRXPATH, In Quarantäne, 1380, 235916, 1.0.67783, , ame, , , PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{60E899E7-67BD-4316-94B1-5F9C60C66F8F}|PATH, In Quarantäne, 4200, 183578, 1.0.67783, , ame, , , PUP.Optional.DigitalSites, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{83C55439-989B-45A6-A08E-F552847E1327}|PATH, In Quarantäne, 1398, 551749, 1.0.67783, , ame, , , PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9B5544EC-58CA-4789-AAD4-BC7E3AC6823A}|PATH, In Quarantäne, 4200, 183578, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A000C9A9-4946-4842-88A3-E552A02BCA8E}|URL, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A000C9A9-4946-4842-88A3-E552A02BCA8E}|FAVICONURL, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , PUP.Optional.PCSpeedMaximizer, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\PC SPEED MAXIMIZER|ADSBUYNOWURL, In Quarantäne, 3672, 241610, 1.0.67783, , ame, , , PUP.Optional.PCSpeedMaximizer, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\PC SPEED MAXIMIZER|BUYNOWURL, In Quarantäne, 3672, 260427, 1.0.67783, , ame, , , PUP.Optional.SpeedTestAnalysis, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|SPEEDANALYSIS@SPEEDANALYSIS.COM, In Quarantäne, 3831, 243406, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B437D705-A317-48B0-8541-D3AF3EB72116}|APPPATH, In Quarantäne, 7214, 443512, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\FLV_Runner Toolbar|URLINFOABOUT, In Quarantäne, 7214, 404165, 1.0.67783, , ame, , , PUP.Optional.SpeedTestAnalysis, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|SPEEDANALYSIS@SPEEDANALYSIS.COM, In Quarantäne, 3831, 243408, 1.0.67783, , ame, , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , PUP.Optional.Conduit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 182 PUP.Optional.OpenCandy, C:\Users\Schilling Family\AppData\Roaming\OpenCandy\E96353E8D0C74285AE3654BEA67A8B19, In Quarantäne, 87, 173202, , , , , , PUP.Optional.PCPerformer, C:\USERS\ELTERN\APPDATA\ROAMING\PERFORMERSOFT\PC PERFORMER, In Quarantäne, 285, 174326, 1.0.67783, , ame, , , PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\defaults\preferences, In Quarantäne, 3015, 236681, , , , , , PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content, In Quarantäne, 3015, 236681, , , , , , PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\defaults, In Quarantäne, 3015, 236681, , , , , , PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome, In Quarantäne, 3015, 236681, , , , , , PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com, In Quarantäne, 3015, 236681, , , , , , PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\chrome, In Quarantäne, 3015, 236681, , , , , , PUP.Optional.Complitly, C:\PROGRAM FILES (X86)\COMPLITLY, In Quarantäne, 3015, 236681, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, C:\ProgramData\BonanzaDealsLive\Update\Log, In Quarantäne, 1380, 175693, , , , , , PUP.Optional.BonanzaDeals, C:\ProgramData\BonanzaDealsLive\Update, In Quarantäne, 1380, 175693, , , , , , PUP.Optional.BonanzaDeals, C:\PROGRAMDATA\BONANZADEALSLIVE, In Quarantäne, 1380, 175693, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, C:\Users\Schilling Family\AppData\Local\BonanzaDealsLive\CrashReports, In Quarantäne, 1380, 175694, , , , , , PUP.Optional.BonanzaDeals, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\BONANZADEALSLIVE, In Quarantäne, 1380, 175694, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\Offline\{5C094A47-936E-4F43-9E45-10E6FE114694}, In Quarantäne, 1380, 175696, , , , , , PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0, In Quarantäne, 1380, 175696, , , , , , PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\Download, In Quarantäne, 1380, 175696, , , , , , PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\Install, In Quarantäne, 1380, 175696, , , , , , PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\Offline, In Quarantäne, 1380, 175696, , , , , , PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\CrashReports, In Quarantäne, 1380, 175696, , , , , , PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update, In Quarantäne, 1380, 175696, , , , , , PUP.Optional.BonanzaDeals, C:\PROGRAM FILES (X86)\BONANZADEALSLIVE, In Quarantäne, 1380, 175696, 1.0.67783, , ame, , , PUP.Optional.PCSpeedMaximizer, C:\PROGRAM FILES (X86)\PC SPEED MAXIMIZER, In Quarantäne, 3672, 241606, 1.0.67783, , ame, , , PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Roaming\Complitly\64, In Quarantäne, 3015, 176148, , , , , , PUP.Optional.Complitly, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\COMPLITLY, In Quarantäne, 3015, 176148, 1.0.67783, , ame, , , PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons, In Quarantäne, 3015, 176151, , , , , , PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1, In Quarantäne, 3015, 176151, , , , , , PUP.Optional.Complitly, C:\USERS\ELTERN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\DLFIENAMAGDNKEKBBBOCOJPPNCDAMBDA, In Quarantäne, 3015, 176151, 1.0.67783, , ame, , , PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons, In Quarantäne, 3015, 176151, , , , , , PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1, In Quarantäne, 3015, 176151, , , , , , PUP.Optional.Complitly, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\DLFIENAMAGDNKEKBBBOCOJPPNCDAMBDA, In Quarantäne, 3015, 176151, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, C:\PROGRAM FILES (X86)\FLV_Runner, In Quarantäne, 2746, 177202, 1.0.67783, , ame, , , PUP.Optional.UpdateProc, C:\Users\Schilling Family\AppData\Roaming\DigitalSite\UpdateProc, In Quarantäne, 5207, 244360, , , , , , PUP.Optional.UpdateProc, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\DigitalSite, In Quarantäne, 5207, 244360, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UninstallDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DefualtImages, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\UserDefinedItems, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\SearchInNewTab, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\MyStuffApps, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\RadioPlayer, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Logs, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\USERS\ELTERN\APPDATA\LOCALLOW\FLV_Runner, In Quarantäne, 2746, 177204, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DefualtImages, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\UserDefinedItems, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\SearchInNewTab, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\RadioPlayer, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\MyStuffApps, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Logs, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\USERS\HENRIKE\APPDATA\LOCALLOW\FLV_Runner, In Quarantäne, 2746, 177204, 1.0.67783, , ame, , , PUP.Optional.FLVRunner, C:\Users\Schilling Family\AppData\LocalLow\FLV_Runner\Logs, In Quarantäne, 2746, 177204, , , , , , PUP.Optional.FLVRunner, C:\USERS\SCHILLING FAMILY\APPDATA\LOCALLOW\FLV_Runner, In Quarantäne, 2746, 177204, 1.0.67783, , ame, , , PUP.Optional.PCSpeedMaximizer, C:\Users\Schilling Family\AppData\Roaming\PC Speed Maximizer\Backup, In Quarantäne, 3672, 178839, , , , , , PUP.Optional.PCSpeedMaximizer, C:\Users\Schilling Family\AppData\Roaming\PC Speed Maximizer\Undo, In Quarantäne, 3672, 178839, , , , , , PUP.Optional.PCSpeedMaximizer, C:\Users\Schilling Family\AppData\Roaming\PC Speed Maximizer\Log, In Quarantäne, 3672, 178839, , , , , , PUP.Optional.PCSpeedMaximizer, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\PC SPEED MAXIMIZER, In Quarantäne, 3672, 178839, 1.0.67783, , ame, , , PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data, In Quarantäne, 1508, 179000, , , , , , PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\tmp, In Quarantäne, 1508, 179000, , , , , , PUP.Optional.PriceGong, C:\USERS\ELTERN\APPDATA\LOCALLOW\PRICEGONG, In Quarantäne, 1508, 179000, 1.0.67783, , ame, , , PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data, In Quarantäne, 1508, 179000, , , , , , PUP.Optional.PriceGong, C:\USERS\HENRIKE\APPDATA\LOCALLOW\PRICEGONG, In Quarantäne, 1508, 179000, 1.0.67783, , ame, , , PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data, In Quarantäne, 1508, 179000, , , , , , PUP.Optional.PriceGong, C:\USERS\SCHILLING FAMILY\APPDATA\LOCALLOW\PRICEGONG, In Quarantäne, 1508, 179000, 1.0.67783, , ame, , , PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\mz, In Quarantäne, 2924, 179770, , , , , , PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content, In Quarantäne, 2924, 179770, , , , , , PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\skin, In Quarantäne, 2924, 179770, , , , , , PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome, In Quarantäne, 2924, 179770, , , , , , PUP.Optional.SpeedAnalysis, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\MOZILLA\EXTENSIONS\speedanalysis@SpeedAnalysis.com, In Quarantäne, 2924, 179770, 1.0.67783, , ame, , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\Local\Conduit\BackgroundContainer, In Quarantäne, 112, 182116, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\Local\Conduit\Community Alerts, In Quarantäne, 112, 182116, , , , , , PUP.Optional.Conduit, C:\USERS\ELTERN\APPDATA\LOCAL\CONDUIT, In Quarantäne, 112, 182116, 1.0.67783, , ame, , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\Local\Conduit\CT3201318, In Quarantäne, 112, 182116, , , , , , PUP.Optional.Conduit, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\CONDUIT, In Quarantäne, 112, 182116, 1.0.67783, , ame, , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\localStorage\appsFiles\2d2f2f16-9432-4890-9f93-624a84cf6261, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Feeds, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\localStorage\appsFiles, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Log, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\localStorage, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\USERS\ELTERN\APPDATA\LOCALLOW\CONDUIT, In Quarantäne, 112, 182117, 1.0.67783, , ame, , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\localStorage\appsFiles\2d2f2f16-9432-4890-9f93-624a84cf6261, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Feeds, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\localStorage\appsFiles, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Log, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\localStorage, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\USERS\HENRIKE\APPDATA\LOCALLOW\CONDUIT, In Quarantäne, 112, 182117, 1.0.67783, , ame, , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Feeds, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Log, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts, In Quarantäne, 112, 182117, , , , , , PUP.Optional.Conduit, C:\USERS\SCHILLING FAMILY\APPDATA\LOCALLOW\CONDUIT, In Quarantäne, 112, 182117, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\BONANZADEALS, In Quarantäne, 1380, 182138, 1.0.67783, , ame, , , PUP.Optional.BonanzaDeals, C:\PROGRAM FILES (X86)\BONANZADEALS, In Quarantäne, 1380, 182151, 1.0.67783, , ame, , , PUP.Optional.PCSpeedMaximizer, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\PC SPEED MAXIMIZER, In Quarantäne, 3672, 343976, 1.0.67783, , ame, , , PUP.Optional.Conduit.Generic, C:\PROGRAM FILES (X86)\CONDUIT\COMMUNITY ALERTS, In Quarantäne, 7214, 443543, 1.0.67783, , ame, , , PUP.Optional.InstallCore, C:\Users\Schilling Family\AppData\Roaming\0D0S1L2Z1P1B\PDF Reader Packages, In Quarantäne, 91, 468080, , , , , , PUP.Optional.InstallCore, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\0D0S1L2Z1P1B, In Quarantäne, 91, 468080, 1.0.67783, , ame, , , Datei: 755 PUP.Optional.Bonanza, C:\WINDOWS\TASKS\BonanzaDealsLiveUpdateTaskMachineCore.job, In Quarantäne, 4200, 183576, 1.0.67783, , ame, , 5018B531BF28ECAD31C24914F8F5856A, F5B500495AE0CC2E5253F00D09CC050BF76ABDE4B0292194F96FCC99BDF30960 PUP.Optional.OpenCandy, C:\Users\Schilling Family\AppData\Roaming\OpenCandy\E96353E8D0C74285AE3654BEA67A8B19\Setupsft_chr_p1v7.exe, In Quarantäne, 87, 173202, , , , , E2D636A72ED4AAFF0AD3186C0F27EA69, 3552EBD3B9BE41B10CF036FFD20C5D22A8A035C782D9B1B54CC3F48C431C9C79 PUP.Optional.Bonanza, C:\WINDOWS\TASKS\BonanzaDealsLiveUpdateTaskMachineUA.job, In Quarantäne, 4200, 183576, 1.0.67783, , ame, , F59E275AD2EF4269519A2F45F78BE009, A30060FFAE2CE6069217C11CC13150ECB61B1F9D454C02F4ADF20D77F5906939 PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\eng_rcp.dat, In Quarantäne, 285, 174326, , , , , 3ECA835BE6911B8A2E9A5C7041F5338E, 5B7F517DDEA0D6E325071CBB25791B18DA47AD19C47BC2D3443C8F70958CAE0B PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\ExcludeList.rcp, In Quarantäne, 285, 174326, , , , , 7319468847D7B1AEE40DBF5DD963C999, B0F66ADC83641586656866813FD9DD0B8EBB63796075661BA45D1AA8089E1D44 PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\log_04-03-2013.log, In Quarantäne, 285, 174326, , , , , B1E3560059679ABA54FB70B04C6C8107, 3FDF7126EEA84F93DFD3CFD04FFADA4A7645F02466A906E722134BA27F3CBE5B PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\results.rcp, In Quarantäne, 285, 174326, , , , , A302A771EE0E3127B8950F0A67D17E49, 5DCC1B5872DD9FF1C234501F1FEFDA01F664164E1583C3E1BB3DBEA47588AB31 PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\TempHLList.rcp, In Quarantäne, 285, 174326, , , , , 7319468847D7B1AEE40DBF5DD963C999, B0F66ADC83641586656866813FD9DD0B8EBB63796075661BA45D1AA8089E1D44 PUP.Optional.Complitly, C:\PROGRAM FILES (X86)\COMPLITLY\UNINS000.DAT, In Quarantäne, 3015, 236681, 1.0.67783, , ame, , 08204E85BA5A52F89CC8F017835C1E6D, AD2A6BED4E0AA77B3C4EEEC0A297CF9AFA8CD72000468197EB6C27C61FF8517D PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx, In Quarantäne, 3015, 236681, , , , , A3ABC7F4741708A5790C0A04A7477471, 76B48C29BA3768805740536C65DC67DF13E2AA3A2A9383BD89D750A881358813 PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\appIcon.png, In Quarantäne, 3015, 236681, , , , , 1A112A3F2CAE78A073DAE308F4B70266, BEA746615E19D7398D4AB00373A2503BF336E002D8A6B0E16B2598A186D780B0 PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\browserOverlay.xul, In Quarantäne, 3015, 236681, , , , , 06BBD697505CD1652D6C0DA47C80EB35, BC645EA82A91E13DFED15176A72267B693170019B0F7C12BFDED102BB076D60B PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\options.js, In Quarantäne, 3015, 236681, , , , , C29DF68B8BC24772AC61504FA1677AFE, F7E349C1408AB33707A91ED93829412A4365C83D6A97D8E4EB926E029FAFCDF1 PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\options.xul, In Quarantäne, 3015, 236681, , , , , 4216DAE17FC46779596B35E4F14B36FA, D4D57BDDFC62081656EDC0060725C1B089ED5B64EEA05CE59F447EDB13ECABCA PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\utils.js, In Quarantäne, 3015, 236681, , , , , , PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\defaults\preferences\predictad.js, In Quarantäne, 3015, 236681, , , , , AAFCE2CF73CB7BC60C7621893001BA6C, EA2A8545A390026CA4EFED437CA07466FBA2ABE3171D30271000A20AED3440E1 PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome.manifest, In Quarantäne, 3015, 236681, , , , , CEC02E3F71671E91A21B6D74B8C2BC96, 3BD2459E9F65F3902F33594AAEFF6E0A45F6884F1B0ED3AD17960DA626F96953 PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\install.rdf, In Quarantäne, 3015, 236681, , , , , E74FF9E3A66C91A79280EEDB4CB3623D, 1737FDBFE8D5084D756EFE10FDEFA74843A709AFBE82F79FEF8FFAFD09CA8ED5 PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\FireFoxExtensionWithFF8Fix.exe, In Quarantäne, 3015, 236681, , , , , 2D52F0EE90EFF39D4A1A0B99DC4C8251, B0D04B57D22509E27EB7168B3856A0B60099B708102461FC01BA127F134FE664 PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\FireFoxUninstaller.exe, In Quarantäne, 3015, 236681, , , , , 53961C179D28C075C5202FFEA1A1CA27, 964395FEEDFA4F5D03CE1AE3EFB72CF4ACED6A401F187305D578CB93936A03B9 PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\InstTracker.exe, In Quarantäne, 3015, 236681, , , , , E364D4AC3137D0C11254A57F31B62F0C, DEFE9D734E43121005EB7FCC8A9E27CDCC929BC18462317CDBE8FAA2364ECE2A PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\System.Data.SQLite.dll, In Quarantäne, 3015, 236681, , , , , 80725A732ABA27911402F9CA09FEDE23, 49261BE7F20C9D9DFD1FF35D71E9F3B1B7DE17F65581C67BEED43D933F1EB85C PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\unins000.exe, In Quarantäne, 3015, 236681, , , , , 27646B03BD2AFE21C34F05CF342D915A, 0F228522A3A240C8B5F868BA5B73FAF5106E079DF5A130040D5D71FFB44F49B0 PUP.Optional.BonanzaDeals, C:\ProgramData\BonanzaDealsLive\Update\Log\BonanzaDealsLive.log, In Quarantäne, 1380, 175693, , , , , 3A6234C6585744FDE935B12657855DB3, BC85D664DC0C35ACE3CAA8FEE91465E55156462ACA6ED71F07551DA3A4F56EAA PUP.Optional.DigitalSite, C:\WINDOWS\TASKS\DIGITALSITE.JOB, In Quarantäne, 4846, 237776, 1.0.67783, , ame, , E6B907BFFFAB49CCC4AA69090A112BC4, BF7D0DCEF2538B2083470E7819C22C1A3890C398FAAE1C13E0C4106767C26CE4 PUP.Optional.PCSpeedMaximizer, C:\PROGRAM FILES (X86)\PC SPEED MAXIMIZER\UNINS000.DAT, In Quarantäne, 3672, 241606, 1.0.67783, , ame, , 358E41A5F74CB6A5C595AC0B1CF52F5C, 78574D8111CA3D3E6331AEAD7D7BEC38E111D7F8CB0D2E13D9A217F2C0A28E3C PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Brazilian.ini, In Quarantäne, 3672, 241606, , , , , 07ED1BEE7BC80849CAB1432ACEB8349D, FE79FE1CC35FC73AE686A71E1E7CB02BCBA98FB178F08C3333A22C89D37FB6F9 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\BuildsList.ini, In Quarantäne, 3672, 241606, , , , , 59BFA4FF6C32A95929804B82B7198328, DC561BB845D7141E6085E05A767E708DA3E94244C95131782A62B5E872F6CABB PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\CookiesException.txt, In Quarantäne, 3672, 241606, , , , , ADF1E0B95E3F048A59B91541C0528D03, F7C75102D9E51BD13057787717D3C6DFD01ACC1BED231C8F08C97BDFED109FB8 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Danish.ini, In Quarantäne, 3672, 241606, , , , , 490A4544FB01F65938CDD6B63A9ADFAE, 711FFBB06185F3B07EA7351649D31F409EC9EF454A5E4472B0FE6BD0E6B7B201 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Dutch.ini, In Quarantäne, 3672, 241606, , , , , 76B55628D86CF3DCC7EF6F7539D074FA, FD496D34B1884E76FD33CCB0AF387FFF1BCCB64AA4936495132EE7F0BDE133DA PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\English.ini, In Quarantäne, 3672, 241606, , , , , A204502E45F15980AB383B2CE058449D, 31A74F094B7DD5BF22F68F314140761CCE6663EAB678CB568757105224775A33 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\file_id.diz, In Quarantäne, 3672, 241606, , , , , 47CD9567CA5294D3BA2920C9131DF5B4, B12D00AE8960E053B3013180B589627D54EA8F9D6843633DA7A8B8A83AEF6206 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Finnish.ini, In Quarantäne, 3672, 241606, , , , , 9424DFF3C6EBDAEACB570F2B3DF71968, D8CCF268C1E34145903B4BA38E02CA5F1C6DC6FB2679FF85D63839ADB2886E8F PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\French.ini, In Quarantäne, 3672, 241606, , , , , 0AE0FD17C9FD5A6D00DB9854F475EDB3, F1416FEE39042BC22CBA014AE9219B4FCB66821F9AA835EC25AB9093F45BE681 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\German.ini, In Quarantäne, 3672, 241606, , , , , E0F535692C8A22965DA4E5B96235ED9A, 4B926C9ED1680CB58B0728C28B1F22FABC987C7CDB4B205991A70A6DD657C029 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\HomePage.url, In Quarantäne, 3672, 241606, , , , , FB6232B5C21FC949574359BC090A2E29, 613CBC5217D2EBC718CE82E241ADF75B11FBA38777F9FD6B5F7F4D3D80E53DE0 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Italian.ini, In Quarantäne, 3672, 241606, , , , , 4544C4012FF92CE32101FE0CB3A70689, 8DF7001950A0D7A45067627FAEA19A67B4AF74F2302CA85D5908297F812AB9DF PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Norwegian.ini, In Quarantäne, 3672, 241606, , , , , 1BDC78F480895D3BADE15D06E3DCAD16, 9B5ECFE1A5F509AB44DC5319DC1DA91EC4ADDA91F13E3EA73B77DF1635675A0F PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\PCSMSetup.bmp, In Quarantäne, 3672, 241606, , , , , 91648672DB3A2643E28B25EE4BA67787, E242898A837836748CD95F5C6E34FB76E4E67A8ECD1BB08D826022F779E2F8A9 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\PCSpeedMaximizer.chm, In Quarantäne, 3672, 241606, , , , , E7263025631FC2AD0CA10BDC4A18B5C3, 7707F986BED83C4C8FF73D5376AC78922829E3D645C29D1E7B0D76951B2BB4F2 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Polish.ini, In Quarantäne, 3672, 241606, , , , , CB8259A308B1B72E8874B5A50B639368, 1281A50454935563E0CAAC76859D51C61629FC8268863838430A3EE61F20B33A PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Portuguese.ini, In Quarantäne, 3672, 241606, , , , , 3126770D35E9CE56C64976ECB91E78F2, 704814C367C37E3B2F5C211714B87FE8FAEC0ACFAD60C6E11D5A37B51853E459 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Russian.ini, In Quarantäne, 3672, 241606, , , , , 5ADC9C72B225826BFC6103059654CFE7, 6AE74DAE94CD9377FBF01515F8323A4D5E5B0175360CC244C2C521436C6322A1 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\scan.gif, In Quarantäne, 3672, 241606, , , , , 6858A1CE31E5F92785FB525CE9725B8A, D576F0C14F855954701B054D625F7A95A5BFCD97ACE82D83A4F00BDA7A4CC908 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Spanish.ini, In Quarantäne, 3672, 241606, , , , , A262C31C3095DF2FD130A5797E71DD77, 4B996C72D51B476CD4EF175A737318E105497A588780A0D594C0A99DF8EAA420 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMGuard.exe, In Quarantäne, 3672, 241606, , , , , 4252F0A5373731EEE9075045455B43C2, EA655AF7CAC9E46CBAFB047021965764D0453A127EA5BFB860089A1167873275 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMReminder.exe, In Quarantäne, 3672, 241606, , , , , DF4DA50D888D71385B99ABEE46D9FFC1, 9E8CB1EDBAA4EEA3FAE10D36212A8832147DD3DC8A2873F8D46621323B0F64E5 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMSchedule.exe, In Quarantäne, 3672, 241606, , , , , 3B90014D4F121900BE297EBC6EF35335, 38243EC1FCF7B7CA82465B3CFDB46B57D895AA2303C0BD3433F0A699944A9573 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMSmartScan.exe, In Quarantäne, 3672, 241606, , , , , 6F4FA78DFE3416A8837EC6AB8388D675, 82C0C957AAE5F0EC256D910E4F5AE8E1046C770E49D5F8E3D87D8B118040EA90 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMUninstaller.exe, In Quarantäne, 3672, 241606, , , , , 10F2CA057BC3A4D72FF20E7293E13DD3, 089AB265F72DA56077A87BB04FA0EDC14C32ECB613AFEA1118658217E5CC90EB PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\sqlite3.dll, In Quarantäne, 3672, 241606, , , , , 0F66E8E2340569FB17E774DAC2010E31, DE818C832308B82C2FABD5D3D4339C489E6F4E9D32BB8152C0DCD8359392695F PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\StartupList.txt, In Quarantäne, 3672, 241606, , , , , 7375C084A9F65CB3C411BC09124FBA94, 3E0C53A22B6570F9FF2AAF19C4C6CAAD2970F86FE53D958396754EA1349DA647 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Startw3i.exe, In Quarantäne, 3672, 241606, , , , , 4AA9C233F2959C244E4E1288E3BD56CE, 9A8BFB54ECE437BD63B8096FB3A9E1A8F5DCBCE10FEA04EE79BD51924CF1691E PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Swedish.ini, In Quarantäne, 3672, 241606, , , , , 8FAFC73554E02D09AB70169255EEF28E, 9DCDADF8E2FD85C0352D88528873BE33640F624EF91093128C43CA462BF6B191 PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\unins000.exe, In Quarantäne, 3672, 241606, , , , , B593AADDE88473C5E67EBC0812E5FB30, 17E62913FA8ED07DFC314D5009514AB67D5891657F342504DDBDACB754C76D44 PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Roaming\Complitly\64\KeepMeUpdated.exe, In Quarantäne, 3015, 176148, , , , , 6C0DF6A6B687358008A09A203CB3D767, 262175E1053C76D37B884E442E1C0B7F44A22E3FE5E5A63FC608FEF1D187A31A PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Roaming\Complitly\KeepMeUpdated.exe, In Quarantäne, 3015, 176148, , , , , 6C0DF6A6B687358008A09A203CB3D767, 262175E1053C76D37B884E442E1C0B7F44A22E3FE5E5A63FC608FEF1D187A31A PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\128.png, In Quarantäne, 3015, 176151, , , , , F6BB25608413F7A376E729832742ECCB, AC8E5ED28DAA1E05AAE41A51B49BF2EFA8023A148065A1BEBF93F9495DB5CE53 PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\16.png, In Quarantäne, 3015, 176151, , , , , 0B1908B2FD5AFFC2EB1AC656EF966CB8, 1D6F6171FB7AEC1DCB02F5D2653E90D49B7DF7389D0C07AED1B252BB32F8BBA0 PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\256.png, In Quarantäne, 3015, 176151, , , , , B46C2A964948B821E134BAF30CF39A6B, 2AEA5036627CA318CCE856A4500037E8B5BF4EB1E6F2B5FBE49B37458A555EDE PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\32.png, In Quarantäne, 3015, 176151, , , , , D64F985251FCC1630564C563E4C2447E, 347D5738896C01FBC7D9206176E82067BFFA41486D02258CF7FF358DE9B6B395 PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\48.png, In Quarantäne, 3015, 176151, , , , , 8FDF35DDDE1CD7B379A90E7F22DAB853, 76C940D85582C411D2C6387E4AFD45B105641A6B6DD68644C862CD4B1FBB06CB PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\64.png, In Quarantäne, 3015, 176151, , , , , DBB1463E8A0730C79C965DCF59C12911, 51130F1FC548E5DDD3E1572F7BB9836CC115EC53C80F7CBFBD9A9939DA86CA2C PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\bg.html, In Quarantäne, 3015, 176151, , , , , 080E612CC21B4D5F4516027C724C548E, A6C82BB4B32CAF5BDE2328FF97A4003D1BD695DBA7AEB390649C04743098FA26 PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\contentscript.js, In Quarantäne, 3015, 176151, , , , , 4B8D987AB90FE7E8E3CBF533261CE905, 81686BE39BB064D11FA081B8966D3B1ABBF3699446224301F89C1F41640B84EC PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\manifest.json, In Quarantäne, 3015, 176151, , , , , 13A35ADB85C861EFE57905476F12A0FC, C57321A12E6006A935592A1C459BADAC4BA254ACCDA983028266AAB2DFCE0421 PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\128.png, In Quarantäne, 3015, 176151, , , , , 71E94983804AB94BFAFC0F31ED09FC48, 2E8F7377ADAFD4E2E6B4D9F7422EC6A8AB49C4C56A0E7F8DE8BDB438FFD75980 PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\16.png, In Quarantäne, 3015, 176151, , , , , DD1BF5203CA2D7985D1DC86C8EBA19DA, 86883AE5B5707A20162B748BB4103D634EC0A92BFDA3F435766B7494EF68ECAC PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\256.png, In Quarantäne, 3015, 176151, , , , , A36B751A35AE3308041E9B71B4058D93, C5EE22E9974B682F7E79AA70E9FDFDBC5A8029CB8C9E621360C36DB3184D5A1A PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\32.png, In Quarantäne, 3015, 176151, , , , , 979BE937DD4790CFBD4252EDBD75B6ED, 45A74E8714719723C4ED273DC35B45E5F70801069FE580996A58C7F9C34547BC PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\48.png, In Quarantäne, 3015, 176151, , , , , 5438576A3FCD2E9A3C5DE8F18409DE1E, C75438CD2169030A02B2BC65204D9BF676F55994939E6B10198C75E5F3331F3B PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\64.png, In Quarantäne, 3015, 176151, , , , , 93504D38836D9468B64E8584D81346E5, 1EB9BDCD75255E38118786A542184E06B0115B587B1558373D3FF06B6E6AC0EB PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\bg.html, In Quarantäne, 3015, 176151, , , , , 080E612CC21B4D5F4516027C724C548E, A6C82BB4B32CAF5BDE2328FF97A4003D1BD695DBA7AEB390649C04743098FA26 PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\contentscript.js, In Quarantäne, 3015, 176151, , , , , 4B8D987AB90FE7E8E3CBF533261CE905, 81686BE39BB064D11FA081B8966D3B1ABBF3699446224301F89C1F41640B84EC PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\manifest.json, In Quarantäne, 3015, 176151, , , , , 13A35ADB85C861EFE57905476F12A0FC, C57321A12E6006A935592A1C459BADAC4BA254ACCDA983028266AAB2DFCE0421 PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\GottenAppsContextMenu.xml, In Quarantäne, 2746, 177202, , , , , CE0449AC66B68DD896965167D460B135, 2BD5FE03A596D7F710D96519F26EC939DC8FE0050FA7B81FC374F70542663F50 PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\OtherAppsContextMenu.xml, In Quarantäne, 2746, 177202, , , , , A9CAA49F5C0DDD88168E857E3670EBDF, 9F8A27EAE626D22DAD3E03924C901377F0EC867053692C9DCCE1BC168E4F5948 PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\SharedAppsContextMenu.xml, In Quarantäne, 2746, 177202, , , , , 6816D08A668E0D9A3A79831400177C04, 4FEE6BF88796021D856F865E44BBB2807447E99615430D07BFD29DBF3A009DF8 PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\toolbar.cfg, In Quarantäne, 2746, 177202, , , , , 1B7DACCBAD0E677C1CE7AEDA637152C5, 9CFC24ED1D0DA443D5A0333BAF84D1BBDC281FAB59D7280243A20960A04F26A7 PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\ToolbarContextMenu.xml, In Quarantäne, 2746, 177202, , , , , 815C07C40CEC4CF53861DA7A7C6EC639, 960F1E3B2703DB7CE51BD76F0F8A3D377B5C63F29773857AF7CF9F8D621EBC18 PUP.Optional.UpdateProc, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\DigitalSite\UPDATEPROC\prod.dat, In Quarantäne, 5207, 244360, 1.0.67783, , ame, , A61C1B27F2CA2276B87FA7ACD59007ED, BFB035032C34B929B6A468590E75C5C733D081B72257F44FF58CD7E437E4B4DC PUP.Optional.UpdateProc, C:\Users\Schilling Family\AppData\Roaming\DigitalSite\UpdateProc\config.dat, In Quarantäne, 5207, 244360, , , , , 9F15763BB30976D39D9F82DC1741FB64, AB5882CC04CF936442023773667FD8AFEBB68FA7AEA9CFB49BDE6E5EA1C3D825 PUP.Optional.UpdateProc, C:\Users\Schilling Family\AppData\Roaming\DigitalSite\UpdateProc\STTL.DAT, In Quarantäne, 5207, 244360, , , , , 8EA5C12C59CD338FCB9490FFE7AA37E0, AE5DE77CC18C19175A519F0B1937BC31159311EC380D35F62CB76A0474CC1679 PUP.Optional.UpdateProc, C:\Users\Schilling Family\AppData\Roaming\DigitalSite\UpdateProc\TTL.DAT, In Quarantäne, 5207, 244360, , , , , EF8446F35513A8D6AA2308357A268A7E, E5E53C784D5D49DE1CABB6E904BF3380026AADCB9769775A268DD304DD9AA2DF PUP.Optional.SofTonic, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\LOCAL STORAGE\http_search.softonic.com_0.localstorage, In Quarantäne, 210, 256877, 1.0.67783, , ame, , F353360D74D4532256CFF2BC1D810699, 5F589A84B3155C7C528D43A0D881FD695B61BEB5AEA4E7328A1E55A5C104D149 PUP.Optional.SofTonic, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\LOCAL STORAGE\http_search.softonic.com_0.localstorage-journal, In Quarantäne, 210, 256877, 1.0.67783, , ame, , BF619EAC0CDF3F68D496EA9344137E8B, 076A27C79E5ACE2A3D47F9DD2E83E4FF6EA8872B3C2218F66C92B89B55F36560 Geändert von Skipper39 (09.04.2023 um 21:52 Uhr) |
09.04.2023, 21:50 | #13 |
| MFResident-20230328-55Code:
ATTFilter PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calculator_gif.gif, In Quarantäne, 2746, 177204, , , , , 1A7E6B0492BC10D028AEC63C056BCB2A, 2B774950106B073BE6CB1177712550DFBC8F6042460E890348CBD3907D5F8E75 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calculator_sci_gif.gif, In Quarantäne, 2746, 177204, , , , , 3F3AEF2AF80BAF7902F242BAC1F6EAFE, 4B3FB6283A490EE94CB587C20052BE70A998129A86294906C30A1A68A501A741 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calendar_png.png, In Quarantäne, 2746, 177204, , , , , 24B8E06632E70AEC654193135091B152, D22B7CF6594D85D942763EBE8E87E36B5C05D09CE11F3A25C599DA4872631B0B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calories_png.png, In Quarantäne, 2746, 177204, , , , , 69A35DA7D3AE145D859AE5817B43212E, 4F3CEEE36C70E2420280B2C3408DD5B79320672ADCC99FD6E54E0A224D7CB0B5 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_clock_ico.ico, In Quarantäne, 2746, 177204, , , , , A8167C3A39DE38F1B3E37610CEDFF686, 93CFEAD179B08CF4A7941CEC3F60BAED70A546E7846426F7A2D1B62BED82DDC8 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_clothes_ico.ico, In Quarantäne, 2746, 177204, , , , , 8E511F837C57E857E0538752A3174D5B, 91C83BF2C7D56562A63E69FBEB133183ED61B19BEE0FB196350796E9B678A4E3 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_coins_png.png, In Quarantäne, 2746, 177204, , , , , DCD59CAAB29B2276CB60641409059800, D3DDD0DE45E88EC5975F3E42A5A28F049CB57E83AE478CB1592490132FA6C6D4 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_datecalc_ico.ico, In Quarantäne, 2746, 177204, , , , , EE567735CBD5F50784DA4433B1A5EB98, BBA9737A5107607BDB79E32370D14F0594519B9493824C2777E71ACF5C9E262D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_fileconverter_png.png, In Quarantäne, 2746, 177204, , , , , 16F9DB97AAF05299F531BA56DE05F7D6, 1C7534DB6E40B7172A36953438078ACC0A46D697383B4D263BC6386B50E1C8EA PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_map_gif.gif, In Quarantäne, 2746, 177204, , , , , E6B65891B44CB67BC504745B8DE150D2, D136513B3A701A61C0F3AC92ECFB391E4D21FC37745A9049A8974DD22BB4E4BB PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_spellchecker_png.png, In Quarantäne, 2746, 177204, , , , , 5DFF9E69E0933B99AD33BF641A2F6248, 39DED9E8B9D047BE2F704B189CC7DB1030A7C9577D10E73DECEA258E88A5271D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_stopwatch_ico.ico, In Quarantäne, 2746, 177204, , , , , 3CFC9BE6DE039F17A1C9EE7DD1D59955, 798A77B791F376168E52FCBF0781F1DD625D57B5C77CE3B322A7D325495EC6FA PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_translator_png.png, In Quarantäne, 2746, 177204, , , , , F18D6D5204CB35F54FBDB293F24F491F, B3BC8FA221E9C386C00CC8EC6AFB1EAD798BAB0C0728B2997BAC55A91954337A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_unitconverter_gif.gif, In Quarantäne, 2746, 177204, , , , , 78F9B0691783729E3BDB7B43E6549400, 07DD95C2DBF6A1F4566EDCA9552209F42BE846D5A152045F69FCB02BBC27AC4A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_widget_png.png, In Quarantäne, 2746, 177204, , , , , 7786863E04E906A21DB8AEC16BDCED1D, 2BAD427009D6E681B96F7DFC7B2864816011574F06E54A59E94C240869CDB9FC PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_worddef_png.png, In Quarantäne, 2746, 177204, , , , , 6624397E92BF545B51D9CF112C0BC823, 7A46F144CE7A72A8A5C5360065874D1BE78BAB6A78550021ADD0A84EAEA358B6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_todo_img_favicon_ico.ico, In Quarantäne, 2746, 177204, , , , , E2717A85F61FB59C604F05A29CCF10B9, F65CA71120455E0905A76598C385B5682A8E864EBECC135F184ED9BBD3F1C00F PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_16_319_CT3196716_images_635082718918012385_24PX_png.png, In Quarantäne, 2746, 177204, , , , , DB7B471C8CC0F7E2D8DD61D4A94BAAB9, 500FF5DF15458BEC0E542245C73D67CF1070F95056C533AFAE6EBCF0884B375C PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_18_320_CT3201318_Images_634688351076901355_png.png, In Quarantäne, 2746, 177204, , , , , EBEB7FA24C02CFF6CB1FAE4746C5017B, 400210211E44A6E734C4387334EBFF5EB152CDCB1BF7274A2A2DE5A695616DDC PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_18_320_CT3201318_Images_634770106353717500_gif.gif, In Quarantäne, 2746, 177204, , , , , 32CB1985EEF98ABD790A7098FA8F85A6, 09EB1558EB439254F8135F475FD89CA9A3AF8228B2982925E1E26271C34EAC19 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590750635300000_gif.gif, In Quarantäne, 2746, 177204, , , , , 13485B11123192C02E94DCDB99EE273D, 687C87AD74ADBCB714C676A447BAB89555502BDD652343361C0D028FC10C67AA PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590751044362500_gif.gif, In Quarantäne, 2746, 177204, , , , , 2E545DAC1D7D0AA651B763530C1024E1, 8875BEA27749154F2461225E4E916F786CB39F2A8625454FD5E6172FCB733D89 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590751926237500_gif.gif, In Quarantäne, 2746, 177204, , , , , 311E103C22854F5DD8AA1767E248BD39, 2603D322E3690339D9C945D6AB9F8540DB849A7EE3EA542CABE784DEFE45B61D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590752453893750_gif.gif, In Quarantäne, 2746, 177204, , , , , C1645838163893576AABC3B474F4807A, 5952745DDEE393C1AA28633D6F130971AA1D78824F95B0A4B4F681CF5F0A04D9 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590753577643750_gif.gif, In Quarantäne, 2746, 177204, , , , , 58F91A9328FDCE8949CAC0CB71B635E4, 584436DBF8CCEC153C4A87DA8A75FD2F3BC893F801C83B941A81F4D581ECDBD9 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633629754211018750_gif.gif, In Quarantäne, 2746, 177204, , , , , ADC9632CBA729C91BF14DA372F26E507, 04ACA121C53E5327E992954FD76A82BF280D0A10F95926E143D722E34D98C992 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_Email_xml-10-Classic-633439771938243750_gif.gif, In Quarantäne, 2746, 177204, , , , , 98A6A440A943BAC09445ECBB40E79EB1, 22BD80FF19C7D9E41B59239EBB45586C9B2BB978F4F160EF9A08800810AD1EBA PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_SearchActivationButton-go_but01_gif-General-633629754908675000_gif.gif, In Quarantäne, 2746, 177204, , , , , D98754949232C20B38E52EC493111E9F, E8F4F0F2EF4AF6B4B536C2DE3891BC743F2073064E212D08C90D8B809FDFD11A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_commandcomps_block_gif.gif, In Quarantäne, 2746, 177204, , , , , FF164EABA285C2E614EBFD967FEF9732, E887DF7BFD20AEFD24E99A0BE0D08FD315C2EAEAA4E07476CE6041D4F64C6C5A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_calculator_gif.gif, In Quarantäne, 2746, 177204, , , , , E7ACB20C8E56B1EFAD7DED3DC4DE35F5, 80632FBB53D696A8ABD7CDECAB34C6CBF520859B5B0DDA3D0869CBE90F7F8699 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_excel_gif.gif, In Quarantäne, 2746, 177204, , , , , 68D5FB9046516B872BEB1AADF30EA86B, 2E08DB89C1A09E18492E0DE72265070741384E363F4EF57E2698B9576286D001 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_MsAccess_gif.gif, In Quarantäne, 2746, 177204, , , , , 095BEB6B08F7F24F33F56C56096BFD12, C7889E9AF456C55324D0AF7B5C1227F9346836032DD61E8B7758988296507141 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_msnmessenger_gif.gif, In Quarantäne, 2746, 177204, , , , , A3E464E993C0C45AF0D94BD84AE3C5F8, BED8743F49E9B150137AE8224FB49FDDCCF2114EA4FA7CF89FE88295974EA289 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_notepad_gif.gif, In Quarantäne, 2746, 177204, , , , , 077089FFB4BF6554C885B0F49A4BE6C5, FF71C7D4E6168D0E953A885E0754E78F1E2BBEBC52931B9B6EEFB878785C6C5A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_office_gif.gif, In Quarantäne, 2746, 177204, , , , , 9882F9A7CFAD12AC3CCBA0B17D4EE1DF, 815A4DE7F57A6ED72C752AAEED3047C1D5873493188DDE9A2859CC6A7C764160 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_OutlookExpress_gif.gif, In Quarantäne, 2746, 177204, , , , , 4F7BC53CDB2B21F96C251C1F1AC19BAF, 52E81ADA3C16C5E44F8330E9BAF5CEFD4EB63CE96C5E0D421ACCABF7AC55B558 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_Outlook_gif.gif, In Quarantäne, 2746, 177204, , , , , 6ECB8335D7BDE23A66A49235DEEA9BF5, BA3D7D30604B0D4040CE6FD66D146A4B57F80B31C885BD43EB1D87093676BB07 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_paint_gif.gif, In Quarantäne, 2746, 177204, , , , , 42EBAF2F8410D0967D65522B561FED25, 14A7B69FDE56631B4F22A91C37322958821F659B41A3CE968ED436D6277061F2 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_powerpoint_gif.gif, In Quarantäne, 2746, 177204, , , , , 268465ED967348C69F50412768DE13C6, 11DCE19AE4612A0CD3A4C85AFCE4916BD29AD949A2F655989E15C99C153CAAC8 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_RegistryEditor_gif.gif, In Quarantäne, 2746, 177204, , , , , D8F68ED8F0AF6D52089C29343EB66A6C, 0669C83EFB3AE614061DE21FF8924989AE43FD3B4E06D74AB9560BBC1DE31A94 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_winword_gif.gif, In Quarantäne, 2746, 177204, , , , , CD58F4779A272B7C41D0830BA80B772C, CAF8BB0F76CA2AB8EA8C9B0F541B2F9B64B631E846AECA57344A16B90592D645 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_WMPlayer_gif.gif, In Quarantäne, 2746, 177204, , , , , 0E1907FEDB863CE6BB19A4580DC6B418, F7CFCC37D3FCA531BAEA9163DFAB1CE8B7620317E2ADE804788BDDCEBACE2DEF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_About_png.png, In Quarantäne, 2746, 177204, , , , , 99D5F75C338F2A877CBF891E0F18746E, 1DB19F8F95EED4B2F2C2845C320FE8F2DB4E2ACEF959D0105ECD7502D3440FA0 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Browse_png.png, In Quarantäne, 2746, 177204, , , , , F2291FAB46ED9291A1A2FFE9F88E9D84, 39E9D22A1AE7377AA7F03E07A3FF8E5ABF51C1CE13A71E16053824BD8805B85B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Contact_png.png, In Quarantäne, 2746, 177204, , , , , A847C5F6CE2C700048749892DD2E0619, 1F350432752BC9BABDFA133871B5019F79F0BE32ACF56FC7FD1ECF8FA30CD7BC PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Hide_png.png, In Quarantäne, 2746, 177204, , , , , FED9E00C76F647EE6A0B7CC684C89F0C, 1B476BDD92C2B29A15D1C41BF5343500095514FD283B30D8D04ADA337B8DA6B9 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, In Quarantäne, 2746, 177204, , , , , 36BD416D16391EFAAAFB2C3C54EAE986, 9A34261683F03AFDCD13683580F43BA45449B8D0336F7DB574EE3833CFEFA9A3 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_MoreFromPublisher_png.png, In Quarantäne, 2746, 177204, , , , , 943ADFD9E0DF1507F7BC419802BF4303, 838D658A4E1BC0D85A54C47211FC8C13A695D2E4DA63B28AB9F9305B785A5D6D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_More_png.png, In Quarantäne, 2746, 177204, , , , , 36C6FB9C84D4AF5C5D7C5B277A0E4A01, B92357BFD011205FEB03F2D78E5D560993A19970C0B06346C057F7154CBFDC97 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Options_png.png, In Quarantäne, 2746, 177204, , , , , 275C9DA2D536F18F528C80E050C3D705, B8FE2DCC9F4CF3A165E1E6AF9C74DE8E1ABCA7C2F11ADD52E9242E9421FDC2E1 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Privacy_png.png, In Quarantäne, 2746, 177204, , , , , 3AD88BD8E832DA39FAAEDF07AD595F94, FF9FF228132810D4E8B195E977EEC38BF0F1D7764B962793CB2394047289FDE1 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Refresh_png.png, In Quarantäne, 2746, 177204, , , , , 650731EEF807C292E699779B12CBE552, 251C465549555F06EF64103A7577A2C35E27904FE00FD79A50ACB0FE045FD67D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Upgrade_png.png, In Quarantäne, 2746, 177204, , , , , 9B4D914888BCFFCBAE6757A0E450551C, CAE27562716D6FA19F8886CC610182AF35895D3DD4A9ED6A4B2B44DFD0197657 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_BankImages_Facebook_Facebook_png.png, In Quarantäne, 2746, 177204, , , , , 1805E8470C0EE167396751BA3E9B0AAA, 1222C9EB5400F5FDE4AE810240B96A705831AF8E559C1BBD54E448D66A467188 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_ClientImages_radio_gif.gif, In Quarantäne, 2746, 177204, , , , , 01B83C91554738F6AFFB7895BBBA73FB, B3665EA0A7CBD7F507C6EFE20C397BA830F0043B153827D1DCD101F208AE6D9B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_Images_ClientResources_mini_browser_gif.gif, In Quarantäne, 2746, 177204, , , , , EE3DCA0EABAE8D7DDEAC14E36B1142CD, CE7BA469C1F33DC1E087F3B9516EE09543CC8C1BC92F60DE8E2B9260F8CA776B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_eula_png.png, In Quarantäne, 2746, 177204, , , , , F43944209A64CCD0C9B5A92743F0F787, E61C14D116319601BCD0DC095EE2E8A1E064A8DA20E8280A2BE266F9EFB14D89 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_about_gif.gif, In Quarantäne, 2746, 177204, , , , , EC3C2B4E0DEC4D880BAFF88ABBF94188, 1C7438C8F94DB6D015672F254B755F539D86D675B37A2FE0D6FD95293F528BFE PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_clear_history_gif.gif, In Quarantäne, 2746, 177204, , , , , A9E001CBC00B06B121DFBC80707F5298, 2B8C1604B4F038882949280301026F13F7267709B682C8DE54ED86C11FAEA0FF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_contact_gif.gif, In Quarantäne, 2746, 177204, , , , , 15DEF39E438E807E2F0E22D44FDC7FB7, 9519268B2D9F87F4C9B6ED82669705903A5334C5F96ACE760E8FB07C783F68B5 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_help_gif.gif, In Quarantäne, 2746, 177204, , , , , 995595D4C685D659E8F03CD0A287EDDF, 5621F6CEF155DB4F5A50AA245596591369BAB728B92EC820AE062285BAD3EDEC PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_home_page_gif.gif, In Quarantäne, 2746, 177204, , , , , AA39D8A6B65E208901EBA9F3D4728D3E, DEA3E1E10D9A399FF13DC35A9B7A3F491155D4AD1ED39A8D132C8AD2F0CA0AEF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_options_gif.gif, In Quarantäne, 2746, 177204, , , , , 464E244E7E2F27FB85E0C3AB69D72104, 9C6D0AA0C1C5CE456C60FFF511D76A28B68AA1E36282ACFCB112560453E068C5 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_privacy_gif.gif, In Quarantäne, 2746, 177204, , , , , 6427565C7105DC497287866100F260BB, 122A82AE9C1F450875CB1734CFADE638DD18468C47216A5121AD15034BBFFD5C PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_refresh_gif.gif, In Quarantäne, 2746, 177204, , , , , AE7C9F67594A84B096D225601ACB0B2A, 55831B9D34119A8C48BEBBE2BF71DE3124FB0FB30AB22429DD3A1137D24E3026 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_shrink_gif.gif, In Quarantäne, 2746, 177204, , , , , C3EBA0237D68F665AF6D663906221092, 59AC274AEC9386E0ED6CA2E816B24080FE8EDE2AED8A6E811FAD1E8C602FD320 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_upgrade_gif.gif, In Quarantäne, 2746, 177204, , , , , 8BE02D510B4B2E05AD2611B1E9A0BD56, 66EED2D662211BB59A4DB21DA15AC83FC1D07C1200DCC0C4E01A449E9A03FE9D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_Menu_uninstall-icon_png.png, In Quarantäne, 2746, 177204, , , , , 80648ABDB2DEB2D53DBFD77D57A9C886, 64980FB23863921B0740D26818B64F0885C1D5B5549FCF4DD55B5EFEFAC54B81 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_dictionary_search_gif.gif, In Quarantäne, 2746, 177204, , , , , E69C08AFA2BE65DEDC462A2B5AD24DAE, A3CA972B4ACF618DEFB5DB4FF2129A87BEEA374D4E8A23CFA4A2DDE1590E5CC0 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_ebay_search_gif.gif, In Quarantäne, 2746, 177204, , , , , 44A5718F3E1C5785F969C82B2C1D0904, 3C8BDD8CCCC963A95FAB52F0E92D876421B9E9C6FDE5630831130A36E55E9428 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_encyc_search_gif.gif, In Quarantäne, 2746, 177204, , , , , 64134CF20CCCE87340B53E9C73AF105E, 64532497DEB06E1DFB849B8ACBABB474618BDD4DE9CA9D4F180AAFF7EC54415B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_images_search_gif.gif, In Quarantäne, 2746, 177204, , , , , 66018EAE0906C9831A821CAE5D1089BB, 58503BE96C68DADFE55393CEAC737333AF5F79F9066524CB497EB0DECC9FA96E PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_news_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 84896837EDB1A78C14DB6A2F3A0AEE3A, 46FD799A9A390D79DB83B6C0EBD28AE8610CF51F28F0C8EEE04D5BC1229C3966 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_searchengines_search_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 948781E4B6478290050ECA4423B89B1E, D09EA480C0CE6FFDA2BCC94B2B01458E48CD62161EADFA846FE69178111D61B2 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_shopping_search_gif.gif, In Quarantäne, 2746, 177204, , , , , 9AC6288F268598A1A29B2295CEBC7C3D, 8FE72B4269D47551C8BA6EE86C708E4FD663F98956FCCB5812C86EAD755112B4 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_weather_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 04E3A42E439747474D80EC47A083B76D, 0A6FD1CE86D228C4FFB56AA14631672937C8BCEEC0C357D9811724CAAA759B52 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_16_319_CT3196716_images_635082718918012385_24PX_png.png, In Quarantäne, 2746, 177204, , , , , DB7B471C8CC0F7E2D8DD61D4A94BAAB9, 500FF5DF15458BEC0E542245C73D67CF1070F95056C533AFAE6EBCF0884B375C PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_18_320_CT3201318_Images_634688351076901355_png.png, In Quarantäne, 2746, 177204, , , , , EBEB7FA24C02CFF6CB1FAE4746C5017B, 400210211E44A6E734C4387334EBFF5EB152CDCB1BF7274A2A2DE5A695616DDC PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_68_300_CT3008668_Images_Email_xml-10-Classic-633439771938243750_gif.gif, In Quarantäne, 2746, 177204, , , , , 98A6A440A943BAC09445ECBB40E79EB1, 22BD80FF19C7D9E41B59239EBB45586C9B2BB978F4F160EF9A08800810AD1EBA PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_68_300_CT3008668_Images_SearchActivationButton-go_but01_gif-General-633629754908675000_gif.gif, In Quarantäne, 2746, 177204, , , , , D98754949232C20B38E52EC493111E9F, E8F4F0F2EF4AF6B4B536C2DE3891BC743F2073064E212D08C90D8B809FDFD11A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, In Quarantäne, 2746, 177204, , , , , 36BD416D16391EFAAAFB2C3C54EAE986, 9A34261683F03AFDCD13683580F43BA45449B8D0336F7DB574EE3833CFEFA9A3 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_ClientImages_radio_gif.gif, In Quarantäne, 2746, 177204, , , , , 01B83C91554738F6AFFB7895BBBA73FB, B3665EA0A7CBD7F507C6EFE20C397BA830F0043B153827D1DCD101F208AE6D9B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_eula_png.png, In Quarantäne, 2746, 177204, , , , , F43944209A64CCD0C9B5A92743F0F787, E61C14D116319601BCD0DC095EE2E8A1E064A8DA20E8280A2BE266F9EFB14D89 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_about_gif.gif, In Quarantäne, 2746, 177204, , , , , EC3C2B4E0DEC4D880BAFF88ABBF94188, 1C7438C8F94DB6D015672F254B755F539D86D675B37A2FE0D6FD95293F528BFE PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_clear_history_gif.gif, In Quarantäne, 2746, 177204, , , , , A9E001CBC00B06B121DFBC80707F5298, 2B8C1604B4F038882949280301026F13F7267709B682C8DE54ED86C11FAEA0FF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_contact_gif.gif, In Quarantäne, 2746, 177204, , , , , 15DEF39E438E807E2F0E22D44FDC7FB7, 9519268B2D9F87F4C9B6ED82669705903A5334C5F96ACE760E8FB07C783F68B5 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_help_gif.gif, In Quarantäne, 2746, 177204, , , , , 995595D4C685D659E8F03CD0A287EDDF, 5621F6CEF155DB4F5A50AA245596591369BAB728B92EC820AE062285BAD3EDEC PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_home_page_gif.gif, In Quarantäne, 2746, 177204, , , , , AA39D8A6B65E208901EBA9F3D4728D3E, DEA3E1E10D9A399FF13DC35A9B7A3F491155D4AD1ED39A8D132C8AD2F0CA0AEF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_options_gif.gif, In Quarantäne, 2746, 177204, , , , , 464E244E7E2F27FB85E0C3AB69D72104, 9C6D0AA0C1C5CE456C60FFF511D76A28B68AA1E36282ACFCB112560453E068C5 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_privacy_gif.gif, In Quarantäne, 2746, 177204, , , , , 6427565C7105DC497287866100F260BB, 122A82AE9C1F450875CB1734CFADE638DD18468C47216A5121AD15034BBFFD5C PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_refresh_gif.gif, In Quarantäne, 2746, 177204, , , , , AE7C9F67594A84B096D225601ACB0B2A, 55831B9D34119A8C48BEBBE2BF71DE3124FB0FB30AB22429DD3A1137D24E3026 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_shrink_gif.gif, In Quarantäne, 2746, 177204, , , , , C3EBA0237D68F665AF6D663906221092, 59AC274AEC9386E0ED6CA2E816B24080FE8EDE2AED8A6E811FAD1E8C602FD320 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_upgrade_gif.gif, In Quarantäne, 2746, 177204, , , , , 8BE02D510B4B2E05AD2611B1E9A0BD56, 66EED2D662211BB59A4DB21DA15AC83FC1D07C1200DCC0C4E01A449E9A03FE9D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_Menu_uninstall-icon_png.png, In Quarantäne, 2746, 177204, , , , , 80648ABDB2DEB2D53DBFD77D57A9C886, 64980FB23863921B0740D26818B64F0885C1D5B5549FCF4DD55B5EFEFAC54B81 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_searchengines_search_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 948781E4B6478290050ECA4423B89B1E, D09EA480C0CE6FFDA2BCC94B2B01458E48CD62161EADFA846FE69178111D61B2 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_archive_icon_png.png, In Quarantäne, 2746, 177204, , , , , 57CF5324FD329CD91788A072F1E7407F, 8CEAC5ED570B6862515A2EE0370CFCE0BDA54F6BEC2CF1A95C5958178E03B70D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_audio_icon_png.png, In Quarantäne, 2746, 177204, , , , , 29D46CA8500FADDBD52203C0EB12A969, 5D5FA2D01B1C7A291E2223410F963EC79C7CF438ACE3E4D32D5FA5F308C1C2CE PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_file_tools_icon_png.png, In Quarantäne, 2746, 177204, , , , , 9F5534F9E634D7C06A8DBF6F5928EE2D, 1F1E6B0074BB33C8444F71E54E6940905F9E46E05D2E6A6FDD16FD0AD14C0617 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_flv_icon_png.png, In Quarantäne, 2746, 177204, , , , , 7A0E48275A3956A2936F8F2428763528, 73053D43EC59ECA802B7E07A09294B7724263CEC6ED4CCD2631690FC9133C6CC PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_image_icon_png.png, In Quarantäne, 2746, 177204, , , , , E7B96E2167CF64AF5624B36E0DD099FA, 83B068079786136F121E9A52C3BB64B9DF480AC00C62C5BBDEEE920A2E36FB95 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_open_documents_png.png, In Quarantäne, 2746, 177204, , , , , BE28F3DCCDD4A8D18981D48F0CDBCC08, 0E98C71208BA1EAFC4B9987956E2EAE80894F28769495914A8B65111FC2FAB20 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_pdf_icon_png.png, In Quarantäne, 2746, 177204, , , , , A74673F322ED7213ABF3D359B913A466, 670311CCA7138D5758024536696170918CDEC328F5198AE10FD646BACC1859AF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_video_icon_png.png, In Quarantäne, 2746, 177204, , , , , 9F0D3D78A3C2FE4DC6EB3E21D598DC7F, 10C28A7C1202AEDDD1798ED3681E7BBFD9392F42A9F60AA9C0ED43FFED889B30 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_view_pdf_icon_png.png, In Quarantäne, 2746, 177204, , , , , C8742B363732F6BC958A3B3C47EFC86D, E75F1B10FDB86BA46D1587B7F5109286E85B5A5CD1ABEC15E6B1F9E3711E0099 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_cloudy_gif.gif, In Quarantäne, 2746, 177204, , , , , 61A76264B50BF0E425D6BD7DB73F40B4, 5B0BAE219D324D456E18ABA53B2FAD7CDCBD57472A946BC0C61F20FDF1056685 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_drizzle_gif.gif, In Quarantäne, 2746, 177204, , , , , 703A98E0FBFB8C9B617E732C9E62DB04, BBFACA977B097B1227AD43939F37A2820938D89EA0975EA7A15D24EF56B43FC6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_foggy_gif.gif, In Quarantäne, 2746, 177204, , , , , 959F03FF0A86063171C80A504E62D2E5, 0568489CE8CE16CADFA1ED81AA4BA3E9CFB875154106AF23551FDE9B81E8BAED PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_foggy_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 0E4E164871B63462E3FD3EB9982C7C45, 4ADA80B749561AA1428BF4C99F8ADF413B011A6D6799A23F4F55FF0C53AFC2B6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_hazy_gif.gif, In Quarantäne, 2746, 177204, , , , , 25C37C070415AAC32DD6C50BD64276CC, CB2A0C0E586AE00A5A9EB985F988BF7A71A1EAA2A8810F5F9DD068CEA85D8349 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_hazy_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 279120757E0459B90E5E0DD853E82359, EF8D049162A72E1F752E8B79683BCF074CF79A69E27BD9FC91FE0D3B188AA140 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_partly_cloudy_gif.gif, In Quarantäne, 2746, 177204, , , , , E509575F473727B14C87367068C42353, BB445D3ADC94EA6F62BF927CDCF6D50C13E18C17E272B0071A04893E4FD8E14C PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_partly_cloudy_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 88CD5B8D6F007347115A8A602E5D158B, EB3175D0A4CCEA6E0E743AB98863887DB00F3A3351E1E52366F10A3013588CB0 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_rain_gif.gif, In Quarantäne, 2746, 177204, , , , , 8006B1A5A88AB3451A5E58AA361815DD, 3CD6EE0CD8B5B1E284904F114DFC8476A3A447820782BF044E7F6DAEF27CE0E6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_showers_gif.gif, In Quarantäne, 2746, 177204, , , , , 8ACA902931FBDF51B3BB293D6E15D70F, E4E23A6ABC478E91A34B16B6CBA16E94CB71701E5190607BB1EB972F46D23B7A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_sunny_gif.gif, In Quarantäne, 2746, 177204, , , , , 110EC9BCA8470D6488B626EA28914A6C, 8ED3B9AEE57C0262D1BE3779D87BB41AEE671825AF788C58B7179E36407D9730 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_sunny_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 5EBD213E8A460652C883CBF68C152B5B, 6CCFC2DEC55455929A3C519CDCD3AB5A453996F79A5BC65873ED7E96AAB64E1F PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog\app-added.js, In Quarantäne, 2746, 177204, , , , , 3062897A714E8F924C0207078150E308, 6AA90A2F09A6497B304E8E2641A6B07FCC08F25E7A2F767FCDB594BB675D24FA PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , D5B203DF653C692204139992A1407C3D, 64541954B078EFB314CBDC8AF998A5CDBF515EACD41FF5E204060CE22108F1E1 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DefualtImages\icon.png, In Quarantäne, 2746, 177204, , , , , 20F345ACB306D80871F1293EC1A46A5B, 9F64407DB3F1A320A97F0564F8EA1FFDD0143E097D81C470C61F1FCA77D0D376 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog\app-2go.js, In Quarantäne, 2746, 177204, , , , , CC308EC93CE44DCD6748D524E7575439, 37597E7DB6F492D7D1C70F006ADEBBC6BECA3B5CA4C52466B4433D49CA5B3726 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , 2E9EFDCB59B7D11C9FDBCDDB56ABAAF4, FDC21D9B2DF2701F6E3412680F51A63CFDE1AC6607147B346621DE642CFCEB25 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\EngineFirstTimeDialog.js, In Quarantäne, 2746, 177204, , , , , 83482EADEF93E5A22D657E9B2B44EAC2, BE4FF4BFBEB367E092CF13C7B1DE9507040F26BFECF10DFA8A305A7238A2A22C PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\main.html, In Quarantäne, 2746, 177204, , , , , 9E2083328286081888D76227CA528596, F0BD425B9278BB439B493FF69C9967790FBD91B48602EEAE49BAE102997DC956 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\right-click.gif, In Quarantäne, 2746, 177204, , , , , 0E41C44D287E9676050C180CFEF41CD6, B72E40C74BC1B66039400421C763B9A411D6B13671E1A372874CAF3ED962E562 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\ok-button.png, In Quarantäne, 2746, 177204, , , , , 33CC18D8138802FD7D7A259AE439FD96, AD544E99250076D74CFCEC2C91C9CCAA64592E1B678C7F11E79C2681446BF784 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\separation-line.png, In Quarantäne, 2746, 177204, , , , , F43B589A96E6AB7B171F8C66989419F4, 7D903F28EE0BDDF45A9492E2843509AA6582A8D06C9E6DDC16C6F5B8C30998FE PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\warning.png, In Quarantäne, 2746, 177204, , , , , 92A7FC466575CFC32532EAE392711035, 960B2D36AD3F8DAC9AA90810563D75524B02C0C8555F9CB9AC1FC84076A9E6C3 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\main.html, In Quarantäne, 2746, 177204, , , , , D086B40511EB6A167BDE87D61C721225, BBB433B00A5FEE5DF12435CF3912E900B62257EC1AD3205F79E0FE64FBA814E1 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\SearchProtector.css, In Quarantäne, 2746, 177204, , , , , 3207F2DDCDC729F05E4095DC9D79497C, AFFE7EBC4C7D11D9BCC2BC0ED0DCD562009B1C1AABB31D55B9C77E84C7D6CB5B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\SearchProtector.js, In Quarantäne, 2746, 177204, , , , , C0ECC7B7922AE2D9F8E0160C9152B0DE, 876465E3CF919DE1D91C8B28AA126C21B98C6C65E159ED2E83EAD7BD0C66E257 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\information.png, In Quarantäne, 2746, 177204, , , , , 37A7AF251C518F6B310B5681B786316B, 861C7924205D2FD421C18B150F50C2FBC3ED2F8479956501B84F31C985ED210A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-default-LTR.png, In Quarantäne, 2746, 177204, , , , , 5B1E5F6468CD5D48B2F8B8738C7B80E0, 485E87666146AF299D3A53D065027DDC36C6A1F37288F6873D77A01EEDF35D63 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-default-RTL.png, In Quarantäne, 2746, 177204, , , , , FF4F6B41DFAB60FDE151847AF6AFDB4F, E54B1D02D6B66D42AB9D58AE8C4A27F6BFC888009CE404FE6177D866CA251A5B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-LTR.png, In Quarantäne, 2746, 177204, , , , , 45CA78FCDC4FAED43EA9F8536286D017, 95A02518943BDFE314655CDE87B7C7A7B46D09933646424FF42C7F354DEAF58E PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-RTL.png, In Quarantäne, 2746, 177204, , , , , 1EB77884D8E761843AC9C2796804021A, 40A4BD837AE98F6B621AD51EDF185CDA1656F32BC9C3D88492875B0203523304 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\bubble.css, In Quarantäne, 2746, 177204, , , , , A49BDDB2E8D5D29D0250377CBFEBBEAE, 4B0EC524E6C9D3A307E9E13A1E449BD2002D6F402B7CD33E6F320248C0729001 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\bubble.js, In Quarantäne, 2746, 177204, , , , , C81AD347AC89DFEDEE80F6DDAF1E5142, 6437129AE6D8CBC6ABCD20AAD507C7C1ACB3AF0227C105A831AF53F60A7CAED8 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\main.html, In Quarantäne, 2746, 177204, , , , , 2943D8A7794466EEA793E7002E12BA02, CBB9F56FD5294D4849EFFE448306E87D89FF759B40E6658FA7E4DC15A5C3395B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\info.png, In Quarantäne, 2746, 177204, , , , , EAB14BDC52F4BBAB6987DF49E5B2AC5F, C01CDC5E15A3D96B1B2B5D8D9997BC134975C0BCF358C0D71E830ECE47202B89 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\ok-on.png, In Quarantäne, 2746, 177204, , , , , B31A5514F5201CF88D32023B5712C073, 70E996FB88FB969FA77357F918CC3D384F7EFF8180D611D495B2E0726CD01600 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\ok.png, In Quarantäne, 2746, 177204, , , , , 84F3D235A70703484E9D1ABF722247B5, F47C4ED1F768665B7A8A92564F7501C6090793A0161F023D489788E653AFC7D6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\main.html, In Quarantäne, 2746, 177204, , , , , E9213FC935165A8A5BAD88626C0CA63E, 2A5DF466F0336284EB7222788C83A4176B08BFB42223E3AA08A189D571C66AEB PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\SearchProtector.css, In Quarantäne, 2746, 177204, , , , , 30B6213E5CC1BF8EF0837746F11E7094, 34C877C353D8990E52117D68E70F1E558060CEC48EEABF395B0F0F5E9E92F012 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\SearchProtector.js, In Quarantäne, 2746, 177204, , , , , 9939730BBCE8C3FDD43719466581DE40, 44096B6C4E28B9D588CFE95FDA13B6A5EC978DDD55A89A30E643C18C2C1FF082 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\Icon.jpg, In Quarantäne, 2746, 177204, , , , , B0A8AD8D9F888409CDB17F590E9B8860, AC04E7156509A035E7B7295EEC7E1D21D9707175DFC13F959372854C80DA9BA7 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\Icon.png, In Quarantäne, 2746, 177204, , , , , 9CC824FE255EE01788FED8AE69D0C2A9, 1DE807C48FE5370E914A0EBC414135965D4CDB7B1BA1C69FE9FA4E9A35FE03BE PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\info.png, In Quarantäne, 2746, 177204, , , , , EAB14BDC52F4BBAB6987DF49E5B2AC5F, C01CDC5E15A3D96B1B2B5D8D9997BC134975C0BCF358C0D71E830ECE47202B89 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\ok-on.png, In Quarantäne, 2746, 177204, , , , , B31A5514F5201CF88D32023B5712C073, 70E996FB88FB969FA77357F918CC3D384F7EFF8180D611D495B2E0726CD01600 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\ok.png, In Quarantäne, 2746, 177204, , , , , 84F3D235A70703484E9D1ABF722247B5, F47C4ED1F768665B7A8A92564F7501C6090793A0161F023D489788E653AFC7D6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\main.html, In Quarantäne, 2746, 177204, , , , , 83BE98DAFAEE8752988F35EF457F3C3A, AC1007E29A43E1CE0185EC3E658B23B50B0E1F5BD32B0E923F8137EF5402D05F PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.css, In Quarantäne, 2746, 177204, , , , , 615784EC0F9F3322A1865ABD3DF0E2AA, 645B7A840F2DD19BCF5871C84EF7A73C2D95F39423650A3679C00054EF517FD7 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.js, In Quarantäne, 2746, 177204, , , , , 8CF24B278DA351A7D641901D11D37884, 4454302192E134B87782418241773B38158530EA2F0F8FE9B070DC7ECB4D5987 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\app-store-icon.png, In Quarantäne, 2746, 177204, , , , , 849F1EAFD2164C46FD73A143AD206B66, 91B45E368605F6A114995169D4D6E296F10EB423EAE68137FD28E944556828A9 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\arrow.png, In Quarantäne, 2746, 177204, , , , , 75441E6BEAF79D1646529403E7EF991E, F2E34A164F4BF54ED5BA8CF7B400354C8B6E233E7C5955D95BA9343F38D59B2A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\divider.png, In Quarantäne, 2746, 177204, , , , , E0CBD8E658F678497C7E9EC0FCAA367D, BEF76F9034DE4D3DE7000D884945444B6244CFD43208B7F21DACC8A6376A7E93 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\emailNotifier.gif, In Quarantäne, 2746, 177204, , , , , F863F573944EBD1EE7115874A572EF3A, 13294646475286319718D9676C00B7B423AAC5016DDBF1DF549497C1D4267E42 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\facebook.png, In Quarantäne, 2746, 177204, , , , , 5AAE3708BF987C7BB7356C2F102D8AFF, 94992D29EE6F2E19B6B4915B54FD4F1ED7E12D62558AABD2488310C151284228 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\radio.GIF, In Quarantäne, 2746, 177204, , , , , FB3B7EE5EAEDF1979D123BB78A880FE9, E90D2BFC978C87B8B28E37BB55F1F2C97F6B67588D32E3C1221F4221A17E470A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\Thumbs.db, In Quarantäne, 2746, 177204, , , , , 678A2975E961CF9C32CFF7F1A8FE317B, 49CDC5C502DE85547FECEC990840CF968358FE88A7D6E4EFDE0A38C0C1AA44E1 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\truste_welcome.GIF, In Quarantäne, 2746, 177204, , , , , 4FBDE15B2B96D0C5F00D1AC16FED78F4, 8D41C8B8BCD83B2C45D0C91C78A0D777A91CAE97741D060CCADD84232E534DEF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\weather.GIF, In Quarantäne, 2746, 177204, , , , , C014B05B57F644AF608106016C9BDA0B, F96960D45EA0C6513150A4386B2B256312ED2B9B37B8818F50A03F72AF2C37C1 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\main.html, In Quarantäne, 2746, 177204, , , , , 66A1085869258D7D34553C523289EB6C, 86DB3C367D6509733DA94933C679632986F213395010559E4BF0BA58D1A48597 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.css, In Quarantäne, 2746, 177204, , , , , D84B16BCA0FE92CFF16A9A96258ABE22, 7462AA23951EBC0B48A4FA0C3171D4A34B5B549CF685471293F6973F538E3615 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.js, In Quarantäne, 2746, 177204, , , , , 6EFEF7FD0AEFBB94AC56346AA54C8343, 9F74C273EBB63BB7C86C2243C2AD3703516D745FA248EE4F35362C7FDE79D7A5 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog\main.html, In Quarantäne, 2746, 177204, , , , , 3466F9FA13475F3EE0C3C5DABB976E4B, 029E601AFA39277FE3D8D92A172E1EE0C0493D17BFDAB9CB11B4C3737FB0F04C PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog\ToolbarUntrustedAppsApprovalDialog.js, In Quarantäne, 2746, 177204, , , , , B1D381F22E6C07E426CCDF056E005827, F6AF8C9D393608AA88E7AAA9D0F13F4CEA08813E5DBBFFC2C35C5A6A06C603AF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , 7AC661F3618C8C39A435CEC17EF4142F, F51968D7C06A42481CA93196D37A152061F197C5E816D110C25090755BF41CB5 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog\UT-app-dialog-added.js, In Quarantäne, 2746, 177204, , , , , 96AEE707020CB18410B84DD582335402, 649571210F8B3E90B048C4ED84E13F14293711E801D45527D592F9345E10D264 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog\main.html, In Quarantäne, 2746, 177204, , , , , 627C60F1BF6F532251760AA288FCFB40, DD5DF104EFAD90B4FED4908AE802534750DABC09E7214F863B25D5F1BB982F42 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog\UT-app-dialog-needs-your-approval.js, In Quarantäne, 2746, 177204, , , , , 1B65439686C78B69896E7FDBB274465D, 182DA8CED186CAA8449F1C054E48C0D7E496A15429A258D6396AC9B600984F93 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog\main.html, In Quarantäne, 2746, 177204, , , , , 66FFDDCCFF58E4FD0C1E991DE61E710D, A0CE19A5BABEE76633631C620C13BB24222427AA6962AD3D41EE2F4B26D1A782 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog\UT-app-dialog-is-waiting.js, In Quarantäne, 2746, 177204, , , , , 69F0F1668657051C6628499B1DEA8ABC, 594EF61F9A5CC954CCF0AD4BC52F4A4AD31D47843E4C0E913CBD8DF957C03438 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DialogsAPI.js, In Quarantäne, 2746, 177204, , , , , 2C2A9007258B6C8948147271631CE811, D575E8078E6D34A96493617B7BD960A07FA61CAC7DE8781B2B34ABCD4BC1A240 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\excanvas.js, In Quarantäne, 2746, 177204, , , , , C0CAD58F958C967912D024BBD714323E, EB83B648BE468F90407BDD8E210AAC8C167B9167A7770287CA771428A6986997 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\generalDialogStyle.css, In Quarantäne, 2746, 177204, , , , , 3B0B0EC566CF13FD7CB5DB7BD5A594AD, 4E711A12A393CC7DF6F47206B62A68CCF97B9EBACCD10FF97C215113134FF555 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\PIE.htc, In Quarantäne, 2746, 177204, , , , , E781697FFED7CF6F50919824269F69FE, 7E7C35FEACF71871EB72423DD701B0BB1A5E99A380FF8FB769ADC6C4FDE2904F PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\RoundedCorners.css, In Quarantäne, 2746, 177204, , , , , 260E3C55F268D13268C717680B5998D8, 0344C7C77F77F1A39A3339800B53BFF39F3148A495901CF1CC5DBA1D3E964276 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\RoundedCornersIE9.css, In Quarantäne, 2746, 177204, , , , , D5B6CBCC0A1EFA9E717CB3029E577960, 879D16F5D074379B3CB9F50E7D02F6E1C4895C9CB7075A01338E0E81660BC0EB PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\version.txt, In Quarantäne, 2746, 177204, , , , , A716FE6BFC054C904BB96D2B7710FEFD, F60F1042073236E19D436FE9F789176E2C9F2C8AFC6D3B9219866EE6B86FA035 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\AccountTypes.xml, In Quarantäne, 2746, 177204, , , , , 08034E61F5D45FF987D495DD43F55221, DC2B5D40148AEBC3828FE8271C7BAD587AE5A50E1BCEEFDBE293995051208F8E PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\aol.com.xml, In Quarantäne, 2746, 177204, , , , , A19839E458AAA9AF6CF9F69948E07A2F, 2DEE60459554AE95614805D3CBA8F6A51BA062D10CF9B91037B9A1E035B3A6B3 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\comcast.net.xml, In Quarantäne, 2746, 177204, , , , , A91B92C34FB6837B29C913773D3E3FF9, 927D4919FA31C55376AC94C13C72744ABD5C30CF44549097282B0C2AECA283AE PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\google.com.xml, In Quarantäne, 2746, 177204, , , , , 080D9FF2CA13A3F4492C15C10743778C, 38575B8175296C8BEE671832A4910D623C11D03F49D6ADA5C49092F2D803982F PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\hotmail.com.xml, In Quarantäne, 2746, 177204, , , , , 9BC6A419147F048EE6C22AC7C279746F, F638CAB4F9CCBB788CCCCE8ACF8D3F33DF8E9114F67D7C0F22D5D38107C6632B PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\yahoo.com.xml, In Quarantäne, 2746, 177204, , , , , 7E91AFCB6E11C7F36801AA0DE89FEE22, 7229DAF98B746291B9A64A7A6D79FC37D92155CEA5D4442E0201B917CCA8E2D6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=EB_LOCALE.xml, In Quarantäne, 2746, 177204, , , , , 1BD996EE1793FFCC485F57EB71DBAED0, 6275A9A72E39F27A09F3DEFC752A1CD81C32C8BF254490E1F7620382D1868B8D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 480F1FFD845FB3A575F709002BF23A08, 5D0F0BBB4303F54CB4B9950E34B3C48809CC0E9961241A372A18736D82182FBA PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=en.xml, In Quarantäne, 2746, 177204, , , , , 1BD996EE1793FFCC485F57EB71DBAED0, 6275A9A72E39F27A09F3DEFC752A1CD81C32C8BF254490E1F7620382D1868B8D PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=EB_LOCALE.xml, In Quarantäne, 2746, 177204, , , , , 99F43BD1FBE50F6CEE0714818FCAD0A8, CF0FFB8040C5A979A732E2D2F182DEAD350845C7A5093606FE4C9D270ACC61A9 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 07A217E51E400C4CFB8D9D5D4D8E25A5, 1EC56DBBD56D55CD6CBDF3CFA0EBA11C0BAD0B161C09495D6AD16978B316E671 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=en.xml, In Quarantäne, 2746, 177204, , , , , D84D7FBFB11F0840DBBF755A0503042E, 86FABDF8CB6B05820A82F20A15C811DB01E2BF4B654061720194168616810396 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=EB_LOCALE.xml, In Quarantäne, 2746, 177204, , , , , 93DBA7DBB3A402F930076666BD7C539C, 9BD5605C5C458C15039F62202A6BA69BAF84A31FA89937A38A4B9A05040A1B8F PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , F0F7FE64D94800B405126E77692F4547, 50CE5F919769FDD47CBE5525B6AFA0B0F60AA770474B3E95EAE9B0D28DD7DAF4 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=en.xml, In Quarantäne, 2746, 177204, , , , , 520CD78D6EC12247DDC7EC77F51BAFDF, 8604092A0275BF0CD3C604C2F5B5C721C4EF90593146E1CD90B0AE730DE6FA23 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=EB_LOCALE.xml, In Quarantäne, 2746, 177204, , , , , E0180CE0C845FEC3A03EC0CD988B3763, 4796CDD715B89E306498457CCB864798A4A1BAD36C54FD5D7205FD06C052046A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3201318&UM=UM_UNINSTALL_ID.xml, In Quarantäne, 2746, 177204, , , , , 12ACA2FAB9C1FFC0CFEC31D746D32B2E, EE0D1FD73868EE53679F3AC45825D23B4FAC025C33899C4D0B657175E6062FB0 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 648E3558B6E6D5F160C78827D1BB3DF5, A9101981CBCB418566BC08A73AC010264C969546E15837197E92B39E0C0EFA34 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en.xml, In Quarantäne, 2746, 177204, , , , , E0180CE0C845FEC3A03EC0CD988B3763, 4796CDD715B89E306498457CCB864798A4A1BAD36C54FD5D7205FD06C052046A PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___oryte_com_content_translate_xml_tools_xml.xml, In Quarantäne, 2746, 177204, , , , , 7F29014F385D8D05754C46A8ECF231E2, D07616E68BE6C167582FEF842A35B705DC6144A681CCA37AF2312D65454EB475 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___tools_wiseconvert_com_tools_xml.xml, In Quarantäne, 2746, 177204, , , , , D386F3154E3BC61779389EAC4C5F21EA, B7D6EB5860E59F328D55039D06BE8D715DB812FDC77A88A0124667D77CA94139 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGong_16.png, In Quarantäne, 2746, 177204, , , , , B5ECF14044E4FD55F61A7499D5687118, 62516E9E15CB969D3580FC1AB5717D6FBC1B9A1C71D7317DC50A4E0FF03F4DA6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGongIE.dll, In Quarantäne, 2746, 177204, , , , , 99BE18B1B3A6402D4546C5C563804C90, FB7178C2C39B5DF56BACD7B18F29A37F667B02C2043260A76F0141531C1FFBD4 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGong_16.png, In Quarantäne, 2746, 177204, , , , , B5ECF14044E4FD55F61A7499D5687118, 62516E9E15CB969D3580FC1AB5717D6FBC1B9A1C71D7317DC50A4E0FF03F4DA6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\manifest.xml, In Quarantäne, 2746, 177204, , , , , 31D1B93DC1FAC8E1DFC6C0BF8F2B9C24, 7F29F45B1EAAA8BFD600895FE46EACB03F99391E64F67409D65163B8B87E2E31 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\RadioPlayer\IP_Stations_Media_List.xml, In Quarantäne, 2746, 177204, , , , , AAD25DA0576B1E876E9646B085064E79, 184243431EBFC18CE2EEF0E10B0E2D9C4CD1D0E6A78BF2362C46D84916C560DA PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\RadioPlayer\Predefined_Media_List.xml, In Quarantäne, 2746, 177204, , , , , 2DFF6F89AE4D8271A26F23FD86F858B0, E2286CF554F686B6F94AD1C274BF815597AC5F120DDBBCBB28481D1B647FFAE2 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 9A2B018CE04F20B91C1176B34A082456, E0338260E4B5FEE120861C4F646CE45874AB34DADDCB3F762868D95BB90B1681 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData\data.txt, In Quarantäne, 2746, 177204, , , , , 9A2B018CE04F20B91C1176B34A082456, E0338260E4B5FEE120861C4F646CE45874AB34DADDCB3F762868D95BB90B1681 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs\data.bck.txt, In Quarantäne, 2746, 177204, , , , , A1C16988159E726D83809D189D3EFFF8, 00B7000F542F5BE7FA4E2AE74595C353F6E27C2190A8A6ABF946C2BCC5C11AA6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs\data.txt, In Quarantäne, 2746, 177204, , , , , A1C16988159E726D83809D189D3EFFF8, 00B7000F542F5BE7FA4E2AE74595C353F6E27C2190A8A6ABF946C2BCC5C11AA6 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin\data.bck.txt, In Quarantäne, 2746, 177204, , , , , DF29306861FBB5E1304104DB60995547, 98FDF2CC6AD405FF8542418440012BCC1AC2C6922D7D16720CB9554918CE3CBF PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin\data.txt, In Quarantäne, 2746, 177204, , , , , ECE4CDA1D32F4537E13C5223BFE3FB80, BE791B07AB14D4CD4CCEA87859E14D1C2138302DF99A9C4F6B481AAB9531CEB0 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 2412982EB297EFCB79D1FD0883F843A7, 0FF9FC49A98F6001C104BF387898D3A85D4A36C5D4131EA20142869947F3BDBD PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings\data.txt, In Quarantäne, 2746, 177204, , , , , 2412982EB297EFCB79D1FD0883F843A7, 0FF9FC49A98F6001C104BF387898D3A85D4A36C5D4131EA20142869947F3BDBD PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation\data.bck.txt, In Quarantäne, 2746, 177204, , , , , AE7D6B0428F027BE41529C8E39D05F2A, FF0B5ED9038BFE2A3E28359682EDC5805C634E9D0AE33F7875807A6ACDB8A769 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation\data.txt, In Quarantäne, 2746, 177204, , , , , B209E3C3354F325D0E2A5AB27392FB30, E822E7703DDE94B429DB67DD9013B949AB93C1AD9DBD1D9AD4DB8FFE7AAD2823 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\SearchInNewTab\SearchInNewTabContent.xml, In Quarantäne, 2746, 177204, , , , , DAA4623848A2F4259601B191E448C6BB, 4A505F8B3DA2FD0E69EF600C6CE487BF6CF0D0E2ACB569FEE60A77C830D358C3 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ThirdPartyComponents.xml, In Quarantäne, 2746, 177204, , , , , AC5061A6EC103B07B6269CF4C0C7E44A, CCCFA14142BBFF2B42FC4C5FCE27D3DA480713C0B3E776307266F72CCE079C54 PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\toolbar.cfg, In Quarantäne, 2746, 177204, , , , , 1B7DACCBAD0E677C1CE7AEDA637152C5, 9CFC24ED1D0DA443D5A0333BAF84D1BBDC281FAB59D7280243A20960A04F26A7 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calculator_gif.gif, In Quarantäne, 2746, 177204, , , , , 1A7E6B0492BC10D028AEC63C056BCB2A, 2B774950106B073BE6CB1177712550DFBC8F6042460E890348CBD3907D5F8E75 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calculator_sci_gif.gif, In Quarantäne, 2746, 177204, , , , , 3F3AEF2AF80BAF7902F242BAC1F6EAFE, 4B3FB6283A490EE94CB587C20052BE70A998129A86294906C30A1A68A501A741 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calendar_png.png, In Quarantäne, 2746, 177204, , , , , 24B8E06632E70AEC654193135091B152, D22B7CF6594D85D942763EBE8E87E36B5C05D09CE11F3A25C599DA4872631B0B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calories_png.png, In Quarantäne, 2746, 177204, , , , , 69A35DA7D3AE145D859AE5817B43212E, 4F3CEEE36C70E2420280B2C3408DD5B79320672ADCC99FD6E54E0A224D7CB0B5 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_clock_ico.ico, In Quarantäne, 2746, 177204, , , , , A8167C3A39DE38F1B3E37610CEDFF686, 93CFEAD179B08CF4A7941CEC3F60BAED70A546E7846426F7A2D1B62BED82DDC8 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_clothes_ico.ico, In Quarantäne, 2746, 177204, , , , , 8E511F837C57E857E0538752A3174D5B, 91C83BF2C7D56562A63E69FBEB133183ED61B19BEE0FB196350796E9B678A4E3 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_coins_png.png, In Quarantäne, 2746, 177204, , , , , DCD59CAAB29B2276CB60641409059800, D3DDD0DE45E88EC5975F3E42A5A28F049CB57E83AE478CB1592490132FA6C6D4 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_datecalc_ico.ico, In Quarantäne, 2746, 177204, , , , , EE567735CBD5F50784DA4433B1A5EB98, BBA9737A5107607BDB79E32370D14F0594519B9493824C2777E71ACF5C9E262D PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_fileconverter_png.png, In Quarantäne, 2746, 177204, , , , , 16F9DB97AAF05299F531BA56DE05F7D6, 1C7534DB6E40B7172A36953438078ACC0A46D697383B4D263BC6386B50E1C8EA PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_map_gif.gif, In Quarantäne, 2746, 177204, , , , , E6B65891B44CB67BC504745B8DE150D2, D136513B3A701A61C0F3AC92ECFB391E4D21FC37745A9049A8974DD22BB4E4BB PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_spellchecker_png.png, In Quarantäne, 2746, 177204, , , , , 5DFF9E69E0933B99AD33BF641A2F6248, 39DED9E8B9D047BE2F704B189CC7DB1030A7C9577D10E73DECEA258E88A5271D PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_stopwatch_ico.ico, In Quarantäne, 2746, 177204, , , , , 3CFC9BE6DE039F17A1C9EE7DD1D59955, 798A77B791F376168E52FCBF0781F1DD625D57B5C77CE3B322A7D325495EC6FA PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_translator_png.png, In Quarantäne, 2746, 177204, , , , , F18D6D5204CB35F54FBDB293F24F491F, B3BC8FA221E9C386C00CC8EC6AFB1EAD798BAB0C0728B2997BAC55A91954337A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_unitconverter_gif.gif, In Quarantäne, 2746, 177204, , , , , 78F9B0691783729E3BDB7B43E6549400, 07DD95C2DBF6A1F4566EDCA9552209F42BE846D5A152045F69FCB02BBC27AC4A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_widget_png.png, In Quarantäne, 2746, 177204, , , , , 7786863E04E906A21DB8AEC16BDCED1D, 2BAD427009D6E681B96F7DFC7B2864816011574F06E54A59E94C240869CDB9FC PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_worddef_png.png, In Quarantäne, 2746, 177204, , , , , 6624397E92BF545B51D9CF112C0BC823, 7A46F144CE7A72A8A5C5360065874D1BE78BAB6A78550021ADD0A84EAEA358B6 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_todo_img_favicon_ico.ico, In Quarantäne, 2746, 177204, , , , , E2717A85F61FB59C604F05A29CCF10B9, F65CA71120455E0905A76598C385B5682A8E864EBECC135F184ED9BBD3F1C00F PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_16_319_CT3196716_images_635082718918012385_24PX_png.png, In Quarantäne, 2746, 177204, , , , , DB7B471C8CC0F7E2D8DD61D4A94BAAB9, 500FF5DF15458BEC0E542245C73D67CF1070F95056C533AFAE6EBCF0884B375C PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_18_320_CT3201318_Images_634688351076901355_png.png, In Quarantäne, 2746, 177204, , , , , EBEB7FA24C02CFF6CB1FAE4746C5017B, 400210211E44A6E734C4387334EBFF5EB152CDCB1BF7274A2A2DE5A695616DDC PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_18_320_CT3201318_Images_634770106353717500_gif.gif, In Quarantäne, 2746, 177204, , , , , 32CB1985EEF98ABD790A7098FA8F85A6, 09EB1558EB439254F8135F475FD89CA9A3AF8228B2982925E1E26271C34EAC19 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_Email_xml-10-Classic-633439771938243750_gif.gif, In Quarantäne, 2746, 177204, , , , , 98A6A440A943BAC09445ECBB40E79EB1, 22BD80FF19C7D9E41B59239EBB45586C9B2BB978F4F160EF9A08800810AD1EBA PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_SearchActivationButton-go_but01_gif-General-633629754908675000_gif.gif, In Quarantäne, 2746, 177204, , , , , D98754949232C20B38E52EC493111E9F, E8F4F0F2EF4AF6B4B536C2DE3891BC743F2073064E212D08C90D8B809FDFD11A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_About_png.png, In Quarantäne, 2746, 177204, , , , , 99D5F75C338F2A877CBF891E0F18746E, 1DB19F8F95EED4B2F2C2845C320FE8F2DB4E2ACEF959D0105ECD7502D3440FA0 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Browse_png.png, In Quarantäne, 2746, 177204, , , , , F2291FAB46ED9291A1A2FFE9F88E9D84, 39E9D22A1AE7377AA7F03E07A3FF8E5ABF51C1CE13A71E16053824BD8805B85B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Contact_png.png, In Quarantäne, 2746, 177204, , , , , A847C5F6CE2C700048749892DD2E0619, 1F350432752BC9BABDFA133871B5019F79F0BE32ACF56FC7FD1ECF8FA30CD7BC PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Hide_png.png, In Quarantäne, 2746, 177204, , , , , FED9E00C76F647EE6A0B7CC684C89F0C, 1B476BDD92C2B29A15D1C41BF5343500095514FD283B30D8D04ADA337B8DA6B9 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, In Quarantäne, 2746, 177204, , , , , 36BD416D16391EFAAAFB2C3C54EAE986, 9A34261683F03AFDCD13683580F43BA45449B8D0336F7DB574EE3833CFEFA9A3 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_MoreFromPublisher_png.png, In Quarantäne, 2746, 177204, , , , , 943ADFD9E0DF1507F7BC419802BF4303, 838D658A4E1BC0D85A54C47211FC8C13A695D2E4DA63B28AB9F9305B785A5D6D PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_More_png.png, In Quarantäne, 2746, 177204, , , , , 36C6FB9C84D4AF5C5D7C5B277A0E4A01, B92357BFD011205FEB03F2D78E5D560993A19970C0B06346C057F7154CBFDC97 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Options_png.png, In Quarantäne, 2746, 177204, , , , , 275C9DA2D536F18F528C80E050C3D705, B8FE2DCC9F4CF3A165E1E6AF9C74DE8E1ABCA7C2F11ADD52E9242E9421FDC2E1 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Privacy_png.png, In Quarantäne, 2746, 177204, , , , , 3AD88BD8E832DA39FAAEDF07AD595F94, FF9FF228132810D4E8B195E977EEC38BF0F1D7764B962793CB2394047289FDE1 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Refresh_png.png, In Quarantäne, 2746, 177204, , , , , 650731EEF807C292E699779B12CBE552, 251C465549555F06EF64103A7577A2C35E27904FE00FD79A50ACB0FE045FD67D PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Upgrade_png.png, In Quarantäne, 2746, 177204, , , , , 9B4D914888BCFFCBAE6757A0E450551C, CAE27562716D6FA19F8886CC610182AF35895D3DD4A9ED6A4B2B44DFD0197657 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_ClientImages_radio_gif.gif, In Quarantäne, 2746, 177204, , , , , 01B83C91554738F6AFFB7895BBBA73FB, B3665EA0A7CBD7F507C6EFE20C397BA830F0043B153827D1DCD101F208AE6D9B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_eula_png.png, In Quarantäne, 2746, 177204, , , , , F43944209A64CCD0C9B5A92743F0F787, E61C14D116319601BCD0DC095EE2E8A1E064A8DA20E8280A2BE266F9EFB14D89 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_about_gif.gif, In Quarantäne, 2746, 177204, , , , , EC3C2B4E0DEC4D880BAFF88ABBF94188, 1C7438C8F94DB6D015672F254B755F539D86D675B37A2FE0D6FD95293F528BFE PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_clear_history_gif.gif, In Quarantäne, 2746, 177204, , , , , A9E001CBC00B06B121DFBC80707F5298, 2B8C1604B4F038882949280301026F13F7267709B682C8DE54ED86C11FAEA0FF PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_contact_gif.gif, In Quarantäne, 2746, 177204, , , , , 15DEF39E438E807E2F0E22D44FDC7FB7, 9519268B2D9F87F4C9B6ED82669705903A5334C5F96ACE760E8FB07C783F68B5 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_help_gif.gif, In Quarantäne, 2746, 177204, , , , , 995595D4C685D659E8F03CD0A287EDDF, 5621F6CEF155DB4F5A50AA245596591369BAB728B92EC820AE062285BAD3EDEC PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_home_page_gif.gif, In Quarantäne, 2746, 177204, , , , , AA39D8A6B65E208901EBA9F3D4728D3E, DEA3E1E10D9A399FF13DC35A9B7A3F491155D4AD1ED39A8D132C8AD2F0CA0AEF PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_options_gif.gif, In Quarantäne, 2746, 177204, , , , , 464E244E7E2F27FB85E0C3AB69D72104, 9C6D0AA0C1C5CE456C60FFF511D76A28B68AA1E36282ACFCB112560453E068C5 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_privacy_gif.gif, In Quarantäne, 2746, 177204, , , , , 6427565C7105DC497287866100F260BB, 122A82AE9C1F450875CB1734CFADE638DD18468C47216A5121AD15034BBFFD5C PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_refresh_gif.gif, In Quarantäne, 2746, 177204, , , , , AE7C9F67594A84B096D225601ACB0B2A, 55831B9D34119A8C48BEBBE2BF71DE3124FB0FB30AB22429DD3A1137D24E3026 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_shrink_gif.gif, In Quarantäne, 2746, 177204, , , , , C3EBA0237D68F665AF6D663906221092, 59AC274AEC9386E0ED6CA2E816B24080FE8EDE2AED8A6E811FAD1E8C602FD320 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_upgrade_gif.gif, In Quarantäne, 2746, 177204, , , , , 8BE02D510B4B2E05AD2611B1E9A0BD56, 66EED2D662211BB59A4DB21DA15AC83FC1D07C1200DCC0C4E01A449E9A03FE9D PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_Menu_uninstall-icon_png.png, In Quarantäne, 2746, 177204, , , , , 80648ABDB2DEB2D53DBFD77D57A9C886, 64980FB23863921B0740D26818B64F0885C1D5B5549FCF4DD55B5EFEFAC54B81 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_searchengines_search_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 948781E4B6478290050ECA4423B89B1E, D09EA480C0CE6FFDA2BCC94B2B01458E48CD62161EADFA846FE69178111D61B2 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_16_319_CT3196716_images_635082718918012385_24PX_png.png, In Quarantäne, 2746, 177204, , , , , DB7B471C8CC0F7E2D8DD61D4A94BAAB9, 500FF5DF15458BEC0E542245C73D67CF1070F95056C533AFAE6EBCF0884B375C PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_18_320_CT3201318_Images_634688351076901355_png.png, In Quarantäne, 2746, 177204, , , , , EBEB7FA24C02CFF6CB1FAE4746C5017B, 400210211E44A6E734C4387334EBFF5EB152CDCB1BF7274A2A2DE5A695616DDC PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_18_320_CT3201318_Images_634770106353717500_gif.gif, In Quarantäne, 2746, 177204, , , , , 32CB1985EEF98ABD790A7098FA8F85A6, 09EB1558EB439254F8135F475FD89CA9A3AF8228B2982925E1E26271C34EAC19 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_68_300_CT3008668_Images_Email_xml-10-Classic-633439771938243750_gif.gif, In Quarantäne, 2746, 177204, , , , , 98A6A440A943BAC09445ECBB40E79EB1, 22BD80FF19C7D9E41B59239EBB45586C9B2BB978F4F160EF9A08800810AD1EBA PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_68_300_CT3008668_Images_SearchActivationButton-go_but01_gif-General-633629754908675000_gif.gif, In Quarantäne, 2746, 177204, , , , , D98754949232C20B38E52EC493111E9F, E8F4F0F2EF4AF6B4B536C2DE3891BC743F2073064E212D08C90D8B809FDFD11A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, In Quarantäne, 2746, 177204, , , , , 36BD416D16391EFAAAFB2C3C54EAE986, 9A34261683F03AFDCD13683580F43BA45449B8D0336F7DB574EE3833CFEFA9A3 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_ClientImages_radio_gif.gif, In Quarantäne, 2746, 177204, , , , , 01B83C91554738F6AFFB7895BBBA73FB, B3665EA0A7CBD7F507C6EFE20C397BA830F0043B153827D1DCD101F208AE6D9B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_eula_png.png, In Quarantäne, 2746, 177204, , , , , F43944209A64CCD0C9B5A92743F0F787, E61C14D116319601BCD0DC095EE2E8A1E064A8DA20E8280A2BE266F9EFB14D89 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_about_gif.gif, In Quarantäne, 2746, 177204, , , , , EC3C2B4E0DEC4D880BAFF88ABBF94188, 1C7438C8F94DB6D015672F254B755F539D86D675B37A2FE0D6FD95293F528BFE PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_clear_history_gif.gif, In Quarantäne, 2746, 177204, , , , , A9E001CBC00B06B121DFBC80707F5298, 2B8C1604B4F038882949280301026F13F7267709B682C8DE54ED86C11FAEA0FF PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_contact_gif.gif, In Quarantäne, 2746, 177204, , , , , 15DEF39E438E807E2F0E22D44FDC7FB7, 9519268B2D9F87F4C9B6ED82669705903A5334C5F96ACE760E8FB07C783F68B5 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_help_gif.gif, In Quarantäne, 2746, 177204, , , , , 995595D4C685D659E8F03CD0A287EDDF, 5621F6CEF155DB4F5A50AA245596591369BAB728B92EC820AE062285BAD3EDEC PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_home_page_gif.gif, In Quarantäne, 2746, 177204, , , , , AA39D8A6B65E208901EBA9F3D4728D3E, DEA3E1E10D9A399FF13DC35A9B7A3F491155D4AD1ED39A8D132C8AD2F0CA0AEF PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_options_gif.gif, In Quarantäne, 2746, 177204, , , , , 464E244E7E2F27FB85E0C3AB69D72104, 9C6D0AA0C1C5CE456C60FFF511D76A28B68AA1E36282ACFCB112560453E068C5 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_privacy_gif.gif, In Quarantäne, 2746, 177204, , , , , 6427565C7105DC497287866100F260BB, 122A82AE9C1F450875CB1734CFADE638DD18468C47216A5121AD15034BBFFD5C PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_refresh_gif.gif, In Quarantäne, 2746, 177204, , , , , AE7C9F67594A84B096D225601ACB0B2A, 55831B9D34119A8C48BEBBE2BF71DE3124FB0FB30AB22429DD3A1137D24E3026 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_shrink_gif.gif, In Quarantäne, 2746, 177204, , , , , C3EBA0237D68F665AF6D663906221092, 59AC274AEC9386E0ED6CA2E816B24080FE8EDE2AED8A6E811FAD1E8C602FD320 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_upgrade_gif.gif, In Quarantäne, 2746, 177204, , , , , 8BE02D510B4B2E05AD2611B1E9A0BD56, 66EED2D662211BB59A4DB21DA15AC83FC1D07C1200DCC0C4E01A449E9A03FE9D PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_Menu_uninstall-icon_png.png, In Quarantäne, 2746, 177204, , , , , 80648ABDB2DEB2D53DBFD77D57A9C886, 64980FB23863921B0740D26818B64F0885C1D5B5549FCF4DD55B5EFEFAC54B81 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_searchengines_search_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 948781E4B6478290050ECA4423B89B1E, D09EA480C0CE6FFDA2BCC94B2B01458E48CD62161EADFA846FE69178111D61B2 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_archive_icon_png.png, In Quarantäne, 2746, 177204, , , , , 57CF5324FD329CD91788A072F1E7407F, 8CEAC5ED570B6862515A2EE0370CFCE0BDA54F6BEC2CF1A95C5958178E03B70D PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_audio_icon_png.png, In Quarantäne, 2746, 177204, , , , , 29D46CA8500FADDBD52203C0EB12A969, 5D5FA2D01B1C7A291E2223410F963EC79C7CF438ACE3E4D32D5FA5F308C1C2CE PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_file_tools_icon_png.png, In Quarantäne, 2746, 177204, , , , , 9F5534F9E634D7C06A8DBF6F5928EE2D, 1F1E6B0074BB33C8444F71E54E6940905F9E46E05D2E6A6FDD16FD0AD14C0617 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_flv_icon_png.png, In Quarantäne, 2746, 177204, , , , , 7A0E48275A3956A2936F8F2428763528, 73053D43EC59ECA802B7E07A09294B7724263CEC6ED4CCD2631690FC9133C6CC PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_image_icon_png.png, In Quarantäne, 2746, 177204, , , , , E7B96E2167CF64AF5624B36E0DD099FA, 83B068079786136F121E9A52C3BB64B9DF480AC00C62C5BBDEEE920A2E36FB95 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_open_documents_png.png, In Quarantäne, 2746, 177204, , , , , BE28F3DCCDD4A8D18981D48F0CDBCC08, 0E98C71208BA1EAFC4B9987956E2EAE80894F28769495914A8B65111FC2FAB20 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_pdf_icon_png.png, In Quarantäne, 2746, 177204, , , , , A74673F322ED7213ABF3D359B913A466, 670311CCA7138D5758024536696170918CDEC328F5198AE10FD646BACC1859AF PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_video_icon_png.png, In Quarantäne, 2746, 177204, , , , , 9F0D3D78A3C2FE4DC6EB3E21D598DC7F, 10C28A7C1202AEDDD1798ED3681E7BBFD9392F42A9F60AA9C0ED43FFED889B30 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_view_pdf_icon_png.png, In Quarantäne, 2746, 177204, , , , , C8742B363732F6BC958A3B3C47EFC86D, E75F1B10FDB86BA46D1587B7F5109286E85B5A5CD1ABEC15E6B1F9E3711E0099 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_drizzle_gif.gif, In Quarantäne, 2746, 177204, , , , , 703A98E0FBFB8C9B617E732C9E62DB04, BBFACA977B097B1227AD43939F37A2820938D89EA0975EA7A15D24EF56B43FC6 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_partly_cloudy_gif.gif, In Quarantäne, 2746, 177204, , , , , E509575F473727B14C87367068C42353, BB445D3ADC94EA6F62BF927CDCF6D50C13E18C17E272B0071A04893E4FD8E14C PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_partly_cloudy_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 88CD5B8D6F007347115A8A602E5D158B, EB3175D0A4CCEA6E0E743AB98863887DB00F3A3351E1E52366F10A3013588CB0 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_showers_gif.gif, In Quarantäne, 2746, 177204, , , , , 8ACA902931FBDF51B3BB293D6E15D70F, E4E23A6ABC478E91A34B16B6CBA16E94CB71701E5190607BB1EB972F46D23B7A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_sunny_gif.gif, In Quarantäne, 2746, 177204, , , , , 110EC9BCA8470D6488B626EA28914A6C, 8ED3B9AEE57C0262D1BE3779D87BB41AEE671825AF788C58B7179E36407D9730 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog\app-added.js, In Quarantäne, 2746, 177204, , , , , 3062897A714E8F924C0207078150E308, 6AA90A2F09A6497B304E8E2641A6B07FCC08F25E7A2F767FCDB594BB675D24FA PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , D5B203DF653C692204139992A1407C3D, 64541954B078EFB314CBDC8AF998A5CDBF515EACD41FF5E204060CE22108F1E1 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DefualtImages\icon.png, In Quarantäne, 2746, 177204, , , , , 20F345ACB306D80871F1293EC1A46A5B, 9F64407DB3F1A320A97F0564F8EA1FFDD0143E097D81C470C61F1FCA77D0D376 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog\app-2go.js, In Quarantäne, 2746, 177204, , , , , CC308EC93CE44DCD6748D524E7575439, 37597E7DB6F492D7D1C70F006ADEBBC6BECA3B5CA4C52466B4433D49CA5B3726 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , 2E9EFDCB59B7D11C9FDBCDDB56ABAAF4, FDC21D9B2DF2701F6E3412680F51A63CFDE1AC6607147B346621DE642CFCEB25 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\EngineFirstTimeDialog.js, In Quarantäne, 2746, 177204, , , , , 83482EADEF93E5A22D657E9B2B44EAC2, BE4FF4BFBEB367E092CF13C7B1DE9507040F26BFECF10DFA8A305A7238A2A22C PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\main.html, In Quarantäne, 2746, 177204, , , , , 9E2083328286081888D76227CA528596, F0BD425B9278BB439B493FF69C9967790FBD91B48602EEAE49BAE102997DC956 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\right-click.gif, In Quarantäne, 2746, 177204, , , , , 0E41C44D287E9676050C180CFEF41CD6, B72E40C74BC1B66039400421C763B9A411D6B13671E1A372874CAF3ED962E562 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\ok-button.png, In Quarantäne, 2746, 177204, , , , , 33CC18D8138802FD7D7A259AE439FD96, AD544E99250076D74CFCEC2C91C9CCAA64592E1B678C7F11E79C2681446BF784 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\separation-line.png, In Quarantäne, 2746, 177204, , , , , F43B589A96E6AB7B171F8C66989419F4, 7D903F28EE0BDDF45A9492E2843509AA6582A8D06C9E6DDC16C6F5B8C30998FE PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\warning.png, In Quarantäne, 2746, 177204, , , , , 92A7FC466575CFC32532EAE392711035, 960B2D36AD3F8DAC9AA90810563D75524B02C0C8555F9CB9AC1FC84076A9E6C3 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\main.html, In Quarantäne, 2746, 177204, , , , , D086B40511EB6A167BDE87D61C721225, BBB433B00A5FEE5DF12435CF3912E900B62257EC1AD3205F79E0FE64FBA814E1 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\SearchProtector.css, In Quarantäne, 2746, 177204, , , , , 3207F2DDCDC729F05E4095DC9D79497C, AFFE7EBC4C7D11D9BCC2BC0ED0DCD562009B1C1AABB31D55B9C77E84C7D6CB5B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\SearchProtector.js, In Quarantäne, 2746, 177204, , , , , C0ECC7B7922AE2D9F8E0160C9152B0DE, 876465E3CF919DE1D91C8B28AA126C21B98C6C65E159ED2E83EAD7BD0C66E257 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\information.png, In Quarantäne, 2746, 177204, , , , , 37A7AF251C518F6B310B5681B786316B, 861C7924205D2FD421C18B150F50C2FBC3ED2F8479956501B84F31C985ED210A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-default-LTR.png, In Quarantäne, 2746, 177204, , , , , 5B1E5F6468CD5D48B2F8B8738C7B80E0, 485E87666146AF299D3A53D065027DDC36C6A1F37288F6873D77A01EEDF35D63 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-default-RTL.png, In Quarantäne, 2746, 177204, , , , , FF4F6B41DFAB60FDE151847AF6AFDB4F, E54B1D02D6B66D42AB9D58AE8C4A27F6BFC888009CE404FE6177D866CA251A5B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-LTR.png, In Quarantäne, 2746, 177204, , , , , 45CA78FCDC4FAED43EA9F8536286D017, 95A02518943BDFE314655CDE87B7C7A7B46D09933646424FF42C7F354DEAF58E PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-RTL.png, In Quarantäne, 2746, 177204, , , , , 1EB77884D8E761843AC9C2796804021A, 40A4BD837AE98F6B621AD51EDF185CDA1656F32BC9C3D88492875B0203523304 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\bubble.css, In Quarantäne, 2746, 177204, , , , , A49BDDB2E8D5D29D0250377CBFEBBEAE, 4B0EC524E6C9D3A307E9E13A1E449BD2002D6F402B7CD33E6F320248C0729001 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\bubble.js, In Quarantäne, 2746, 177204, , , , , C81AD347AC89DFEDEE80F6DDAF1E5142, 6437129AE6D8CBC6ABCD20AAD507C7C1ACB3AF0227C105A831AF53F60A7CAED8 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\main.html, In Quarantäne, 2746, 177204, , , , , 2943D8A7794466EEA793E7002E12BA02, CBB9F56FD5294D4849EFFE448306E87D89FF759B40E6658FA7E4DC15A5C3395B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\info.png, In Quarantäne, 2746, 177204, , , , , EAB14BDC52F4BBAB6987DF49E5B2AC5F, C01CDC5E15A3D96B1B2B5D8D9997BC134975C0BCF358C0D71E830ECE47202B89 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\ok-on.png, In Quarantäne, 2746, 177204, , , , , B31A5514F5201CF88D32023B5712C073, 70E996FB88FB969FA77357F918CC3D384F7EFF8180D611D495B2E0726CD01600 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\ok.png, In Quarantäne, 2746, 177204, , , , , 84F3D235A70703484E9D1ABF722247B5, F47C4ED1F768665B7A8A92564F7501C6090793A0161F023D489788E653AFC7D6 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\main.html, In Quarantäne, 2746, 177204, , , , , E9213FC935165A8A5BAD88626C0CA63E, 2A5DF466F0336284EB7222788C83A4176B08BFB42223E3AA08A189D571C66AEB PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\SearchProtector.css, In Quarantäne, 2746, 177204, , , , , 30B6213E5CC1BF8EF0837746F11E7094, 34C877C353D8990E52117D68E70F1E558060CEC48EEABF395B0F0F5E9E92F012 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\SearchProtector.js, In Quarantäne, 2746, 177204, , , , , 9939730BBCE8C3FDD43719466581DE40, 44096B6C4E28B9D588CFE95FDA13B6A5EC978DDD55A89A30E643C18C2C1FF082 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\Icon.png, In Quarantäne, 2746, 177204, , , , , 9CC824FE255EE01788FED8AE69D0C2A9, 1DE807C48FE5370E914A0EBC414135965D4CDB7B1BA1C69FE9FA4E9A35FE03BE PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\info.png, In Quarantäne, 2746, 177204, , , , , EAB14BDC52F4BBAB6987DF49E5B2AC5F, C01CDC5E15A3D96B1B2B5D8D9997BC134975C0BCF358C0D71E830ECE47202B89 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\ok-on.png, In Quarantäne, 2746, 177204, , , , , B31A5514F5201CF88D32023B5712C073, 70E996FB88FB969FA77357F918CC3D384F7EFF8180D611D495B2E0726CD01600 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\ok.png, In Quarantäne, 2746, 177204, , , , , 84F3D235A70703484E9D1ABF722247B5, F47C4ED1F768665B7A8A92564F7501C6090793A0161F023D489788E653AFC7D6 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\main.html, In Quarantäne, 2746, 177204, , , , , 83BE98DAFAEE8752988F35EF457F3C3A, AC1007E29A43E1CE0185EC3E658B23B50B0E1F5BD32B0E923F8137EF5402D05F PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.css, In Quarantäne, 2746, 177204, , , , , 615784EC0F9F3322A1865ABD3DF0E2AA, 645B7A840F2DD19BCF5871C84EF7A73C2D95F39423650A3679C00054EF517FD7 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.js, In Quarantäne, 2746, 177204, , , , , 8CF24B278DA351A7D641901D11D37884, 4454302192E134B87782418241773B38158530EA2F0F8FE9B070DC7ECB4D5987 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\app-store-icon.png, In Quarantäne, 2746, 177204, , , , , 849F1EAFD2164C46FD73A143AD206B66, 91B45E368605F6A114995169D4D6E296F10EB423EAE68137FD28E944556828A9 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\arrow.png, In Quarantäne, 2746, 177204, , , , , 75441E6BEAF79D1646529403E7EF991E, F2E34A164F4BF54ED5BA8CF7B400354C8B6E233E7C5955D95BA9343F38D59B2A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\divider.png, In Quarantäne, 2746, 177204, , , , , E0CBD8E658F678497C7E9EC0FCAA367D, BEF76F9034DE4D3DE7000D884945444B6244CFD43208B7F21DACC8A6376A7E93 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\emailNotifier.gif, In Quarantäne, 2746, 177204, , , , , F863F573944EBD1EE7115874A572EF3A, 13294646475286319718D9676C00B7B423AAC5016DDBF1DF549497C1D4267E42 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\facebook.png, In Quarantäne, 2746, 177204, , , , , 5AAE3708BF987C7BB7356C2F102D8AFF, 94992D29EE6F2E19B6B4915B54FD4F1ED7E12D62558AABD2488310C151284228 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\radio.GIF, In Quarantäne, 2746, 177204, , , , , FB3B7EE5EAEDF1979D123BB78A880FE9, E90D2BFC978C87B8B28E37BB55F1F2C97F6B67588D32E3C1221F4221A17E470A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\Thumbs.db, In Quarantäne, 2746, 177204, , , , , 678A2975E961CF9C32CFF7F1A8FE317B, 49CDC5C502DE85547FECEC990840CF968358FE88A7D6E4EFDE0A38C0C1AA44E1 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\truste_welcome.GIF, In Quarantäne, 2746, 177204, , , , , 4FBDE15B2B96D0C5F00D1AC16FED78F4, 8D41C8B8BCD83B2C45D0C91C78A0D777A91CAE97741D060CCADD84232E534DEF PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\weather.GIF, In Quarantäne, 2746, 177204, , , , , C014B05B57F644AF608106016C9BDA0B, F96960D45EA0C6513150A4386B2B256312ED2B9B37B8818F50A03F72AF2C37C1 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\main.html, In Quarantäne, 2746, 177204, , , , , 66A1085869258D7D34553C523289EB6C, 86DB3C367D6509733DA94933C679632986F213395010559E4BF0BA58D1A48597 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.css, In Quarantäne, 2746, 177204, , , , , D84B16BCA0FE92CFF16A9A96258ABE22, 7462AA23951EBC0B48A4FA0C3171D4A34B5B549CF685471293F6973F538E3615 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.js, In Quarantäne, 2746, 177204, , , , , 6EFEF7FD0AEFBB94AC56346AA54C8343, 9F74C273EBB63BB7C86C2243C2AD3703516D745FA248EE4F35362C7FDE79D7A5 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog\main.html, In Quarantäne, 2746, 177204, , , , , 3466F9FA13475F3EE0C3C5DABB976E4B, 029E601AFA39277FE3D8D92A172E1EE0C0493D17BFDAB9CB11B4C3737FB0F04C PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog\ToolbarUntrustedAppsApprovalDialog.js, In Quarantäne, 2746, 177204, , , , , B1D381F22E6C07E426CCDF056E005827, F6AF8C9D393608AA88E7AAA9D0F13F4CEA08813E5DBBFFC2C35C5A6A06C603AF PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , 7AC661F3618C8C39A435CEC17EF4142F, F51968D7C06A42481CA93196D37A152061F197C5E816D110C25090755BF41CB5 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog\UT-app-dialog-added.js, In Quarantäne, 2746, 177204, , , , , 96AEE707020CB18410B84DD582335402, 649571210F8B3E90B048C4ED84E13F14293711E801D45527D592F9345E10D264 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog\main.html, In Quarantäne, 2746, 177204, , , , , 627C60F1BF6F532251760AA288FCFB40, DD5DF104EFAD90B4FED4908AE802534750DABC09E7214F863B25D5F1BB982F42 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog\UT-app-dialog-needs-your-approval.js, In Quarantäne, 2746, 177204, , , , , 1B65439686C78B69896E7FDBB274465D, 182DA8CED186CAA8449F1C054E48C0D7E496A15429A258D6396AC9B600984F93 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog\main.html, In Quarantäne, 2746, 177204, , , , , 66FFDDCCFF58E4FD0C1E991DE61E710D, A0CE19A5BABEE76633631C620C13BB24222427AA6962AD3D41EE2F4B26D1A782 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog\UT-app-dialog-is-waiting.js, In Quarantäne, 2746, 177204, , , , , 69F0F1668657051C6628499B1DEA8ABC, 594EF61F9A5CC954CCF0AD4BC52F4A4AD31D47843E4C0E913CBD8DF957C03438 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DialogsAPI.js, In Quarantäne, 2746, 177204, , , , , 2C2A9007258B6C8948147271631CE811, D575E8078E6D34A96493617B7BD960A07FA61CAC7DE8781B2B34ABCD4BC1A240 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\excanvas.js, In Quarantäne, 2746, 177204, , , , , C0CAD58F958C967912D024BBD714323E, EB83B648BE468F90407BDD8E210AAC8C167B9167A7770287CA771428A6986997 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\generalDialogStyle.css, In Quarantäne, 2746, 177204, , , , , 3B0B0EC566CF13FD7CB5DB7BD5A594AD, 4E711A12A393CC7DF6F47206B62A68CCF97B9EBACCD10FF97C215113134FF555 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\PIE.htc, In Quarantäne, 2746, 177204, , , , , E781697FFED7CF6F50919824269F69FE, 7E7C35FEACF71871EB72423DD701B0BB1A5E99A380FF8FB769ADC6C4FDE2904F PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\RoundedCorners.css, In Quarantäne, 2746, 177204, , , , , 260E3C55F268D13268C717680B5998D8, 0344C7C77F77F1A39A3339800B53BFF39F3148A495901CF1CC5DBA1D3E964276 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\RoundedCornersIE9.css, In Quarantäne, 2746, 177204, , , , , D5B6CBCC0A1EFA9E717CB3029E577960, 879D16F5D074379B3CB9F50E7D02F6E1C4895C9CB7075A01338E0E81660BC0EB PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\version.txt, In Quarantäne, 2746, 177204, , , , , A716FE6BFC054C904BB96D2B7710FEFD, F60F1042073236E19D436FE9F789176E2C9F2C8AFC6D3B9219866EE6B86FA035 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\AccountTypes.xml, In Quarantäne, 2746, 177204, , , , , 08034E61F5D45FF987D495DD43F55221, DC2B5D40148AEBC3828FE8271C7BAD587AE5A50E1BCEEFDBE293995051208F8E PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\aol.com.xml, In Quarantäne, 2746, 177204, , , , , A19839E458AAA9AF6CF9F69948E07A2F, 2DEE60459554AE95614805D3CBA8F6A51BA062D10CF9B91037B9A1E035B3A6B3 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\comcast.net.xml, In Quarantäne, 2746, 177204, , , , , A91B92C34FB6837B29C913773D3E3FF9, 927D4919FA31C55376AC94C13C72744ABD5C30CF44549097282B0C2AECA283AE PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\google.com.xml, In Quarantäne, 2746, 177204, , , , , 080D9FF2CA13A3F4492C15C10743778C, 38575B8175296C8BEE671832A4910D623C11D03F49D6ADA5C49092F2D803982F PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\hotmail.com.xml, In Quarantäne, 2746, 177204, , , , , 9BC6A419147F048EE6C22AC7C279746F, F638CAB4F9CCBB788CCCCE8ACF8D3F33DF8E9114F67D7C0F22D5D38107C6632B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\yahoo.com.xml, In Quarantäne, 2746, 177204, , , , , 7E91AFCB6E11C7F36801AA0DE89FEE22, 7229DAF98B746291B9A64A7A6D79FC37D92155CEA5D4442E0201B917CCA8E2D6 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 480F1FFD845FB3A575F709002BF23A08, 5D0F0BBB4303F54CB4B9950E34B3C48809CC0E9961241A372A18736D82182FBA PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 07A217E51E400C4CFB8D9D5D4D8E25A5, 1EC56DBBD56D55CD6CBDF3CFA0EBA11C0BAD0B161C09495D6AD16978B316E671 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , F0F7FE64D94800B405126E77692F4547, 50CE5F919769FDD47CBE5525B6AFA0B0F60AA770474B3E95EAE9B0D28DD7DAF4 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3201318&UM=UM_UNINSTALL_ID.xml, In Quarantäne, 2746, 177204, , , , , 12ACA2FAB9C1FFC0CFEC31D746D32B2E, EE0D1FD73868EE53679F3AC45825D23B4FAC025C33899C4D0B657175E6062FB0 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 648E3558B6E6D5F160C78827D1BB3DF5, A9101981CBCB418566BC08A73AC010264C969546E15837197E92B39E0C0EFA34 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___oryte_com_content_translate_xml_tools_xml.xml, In Quarantäne, 2746, 177204, , , , , 28D865FD6DAB91E0041141054B95A546, 118AD41F7299E68A7AE3B940DE3DDDB389B797A9CABD8866566F706B2EFA599B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___tools_wiseconvert_com_tools_xml.xml, In Quarantäne, 2746, 177204, , , , , 2DC5B1A5FB1424BDDD700AAB88952732, 63D69B6C86711D8DB21D6581A986A4514789B16993AAAB37BD2EFAF00525CEC4 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGongIE.dll, In Quarantäne, 2746, 177204, , , , , 99BE18B1B3A6402D4546C5C563804C90, FB7178C2C39B5DF56BACD7B18F29A37F667B02C2043260A76F0141531C1FFBD4 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGong_16.png, In Quarantäne, 2746, 177204, , , , , B5ECF14044E4FD55F61A7499D5687118, 62516E9E15CB969D3580FC1AB5717D6FBC1B9A1C71D7317DC50A4E0FF03F4DA6 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\manifest.xml, In Quarantäne, 2746, 177204, , , , , 31D1B93DC1FAC8E1DFC6C0BF8F2B9C24, 7F29F45B1EAAA8BFD600895FE46EACB03F99391E64F67409D65163B8B87E2E31 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\RadioPlayer\IP_Stations_Media_List.xml, In Quarantäne, 2746, 177204, , , , , AAD25DA0576B1E876E9646B085064E79, 184243431EBFC18CE2EEF0E10B0E2D9C4CD1D0E6A78BF2362C46D84916C560DA PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\RadioPlayer\Predefined_Media_List.xml, In Quarantäne, 2746, 177204, , , , , 2DFF6F89AE4D8271A26F23FD86F858B0, E2286CF554F686B6F94AD1C274BF815597AC5F120DDBBCBB28481D1B647FFAE2 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 7163F82B47793449F8782904A18083A6, A3AA16AB2C58F38AFCD1835F0477B1D6243E409D38F88AC17711FBDF2A674B1B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData\data.txt, In Quarantäne, 2746, 177204, , , , , 7163F82B47793449F8782904A18083A6, A3AA16AB2C58F38AFCD1835F0477B1D6243E409D38F88AC17711FBDF2A674B1B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs\data.bck.txt, In Quarantäne, 2746, 177204, , , , , A1C16988159E726D83809D189D3EFFF8, 00B7000F542F5BE7FA4E2AE74595C353F6E27C2190A8A6ABF946C2BCC5C11AA6 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs\data.txt, In Quarantäne, 2746, 177204, , , , , A1C16988159E726D83809D189D3EFFF8, 00B7000F542F5BE7FA4E2AE74595C353F6E27C2190A8A6ABF946C2BCC5C11AA6 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 0CB91AD4D66DC93318625A2A983E8F87, 5273F918FFF1FA947EFBEE9F6E0068914951DC3C55364B3DDBE47C9C32C1453B PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin\data.txt, In Quarantäne, 2746, 177204, , , , , 15A620C10F700600D7A4979C13416921, CF0DD4EF59129215920270619D4DF4747083379F6624D08FE399705F43F59753 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 6266D3CA5FD23D53DA69E23242FDB3B3, BFB595A2802577C50D8ABFCCC969D2F5D4E8DA98378194C64646C3A577302DF3 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings\data.txt, In Quarantäne, 2746, 177204, , , , , 0D267E351B60D438139751390C122783, 438C5004006444C3D8210FDFEB3BC46B91D25D1F9A5EE1674324FE286483B927 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 00540D2ED1A5D1ECB7465000D8E0BB84, B0F4ADF927199304D0DF73F3BF7618196748939AE2A4614574B053406F79CC8A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation\data.txt, In Quarantäne, 2746, 177204, , , , , 00540D2ED1A5D1ECB7465000D8E0BB84, B0F4ADF927199304D0DF73F3BF7618196748939AE2A4614574B053406F79CC8A PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\SearchInNewTab\SearchInNewTabContent.xml, In Quarantäne, 2746, 177204, , , , , 62A890357135B34F1ECF3F464259D71E, 88C10F0285A40ADDAD77D81449027F1F165C378B2E66CCC16812AF165DBBB4B1 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ThirdPartyComponents.xml, In Quarantäne, 2746, 177204, , , , , AC5061A6EC103B07B6269CF4C0C7E44A, CCCFA14142BBFF2B42FC4C5FCE27D3DA480713C0B3E776307266F72CCE079C54 PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\toolbar.cfg, In Quarantäne, 2746, 177204, , , , , 1B7DACCBAD0E677C1CE7AEDA637152C5, 9CFC24ED1D0DA443D5A0333BAF84D1BBDC281FAB59D7280243A20960A04F26A7 |
09.04.2023, 22:26 | #14 |
| MFResident-20230328-55Code:
ATTFilter Emsisoft Emergency Kit – Version 2023.3 Letztes Update: 09.04.2023 21:45:32 Eigene SchillingFamily\Eltern SCHILLINGFAMILY Windows 10x64 Scan-Einstellungen: Scan-Methode: Malware-Scan Objekte: Speicher, Spuren, Dateien PUPs-Erkennung: An Archive scannen: Aus E-Mail-Archive scannen: Aus ADS-Scan: An Scan-Beginn: 09.04.2023 21:48:54 Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} erkannt: Application.Toolbar (A) [221031] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\CONDUIT erkannt: Application.Toolbar (A) [221047] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\APPDATALOW\SOFTWARE\CONDUIT erkannt: Application.Toolbar (A) [221047] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\CONDUIT erkannt: Application.InstallAd (A) [270274] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1003_CLASSES\WOW6432NODE\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} erkannt: Application.AdReg (A) [271398] Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SUGGESTMEYES.SUGGESTMEYESBHO erkannt: Application.AdReg (A) [272631] Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SUGGESTMEYES.SUGGESTMEYESBHO.1 erkannt: Application.AdReg (A) [272632] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\COMPLITLY erkannt: Application.InstallAd (A) [275207] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\COMPLITLY erkannt: Application.InstallAd (A) [275207] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\METACRAWLER erkannt: Application.InstallAd (A) [275611] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\DOMSTORAGE\SUPERFISH.COM erkannt: Application.AdFish (A) [280167] Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\DOMSTORAGE\WWW.SUPERFISH.COM erkannt: Application.AdFish (A) [280168] Gescannt: 95419 Gefunden 12 Scan-Ende: 09.04.2023 22:06:18 Scan-Zeit: 0:17:24 Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\DOMSTORAGE\WWW.SUPERFISH.COM Application.AdFish (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\DOMSTORAGE\SUPERFISH.COM Application.AdFish (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\METACRAWLER Application.InstallAd (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\COMPLITLY Application.InstallAd (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\COMPLITLY Application.InstallAd (A) Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SUGGESTMEYES.SUGGESTMEYESBHO.1 Application.AdReg (A) Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SUGGESTMEYES.SUGGESTMEYESBHO Application.AdReg (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1003_CLASSES\WOW6432NODE\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Application.AdReg (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\CONDUIT Application.InstallAd (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\APPDATALOW\SOFTWARE\CONDUIT Application.Toolbar (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\CONDUIT Application.Toolbar (A) Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Application.Toolbar (A) In Quarantäne: 12 Code:
ATTFilter PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\1.txt, In Quarantäne, 1508, 179000, , , , , 9B2439E76E2A846BFF84587971B16A7D, 3C2983F568E1783E1E4AF0DA575BDF4D539BCAC9CAAD124732E73A422382BA95 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\15777.txt, In Quarantäne, 1508, 179000, , , , , D43216B8BDDE7A93041F84DD920CED62, 86E39EF683CB479429FC4DCC59225E22B0BAE2A4FA8858ED92DFF47C199E8246 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\16076.txt, In Quarantäne, 1508, 179000, , , , , 5E98033FD33293A6AE320305C5D5C1A1, A9458209974008E99182AAE4BA6E8A7D57B103CDD138AD7F80E4D910399B3D73 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\16080.txt, In Quarantäne, 1508, 179000, , , , , 48B76D3A6F28BCC17A83826D7CE3C59B, 1BEABEF505328C993D8C77F787EAD4ECFBE185E370F7729ADA0D2B11669B9D92 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\16700.txt, In Quarantäne, 1508, 179000, , , , , 24922CF2B1994DBB45E7E757F34F3B32, 586E7736BFC728B9699E1B0130E52B05DD3D22031A88AA97140C9D3094090C98 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\1728.txt, In Quarantäne, 1508, 179000, , , , , EE3F462FB4CB5622E675678751A75F56, CF084358C9A018F00707471C6B18B0AF937814BDF5B442598887A0949A0E5957 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\17807.txt, In Quarantäne, 1508, 179000, , , , , 251ADCF0B786C3850C3BD7797743D922, 3C3821171381F082BBA4FDC6E3C1D9FD0A257AAF8DD4D8EDE88E999932DD3EA2 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\18496.txt, In Quarantäne, 1508, 179000, , , , , EFAB2BA1C4CE39C287EC1B285F0F6D85, 4941482FB40EAABAF96F793927291B579C3732D216F89CE332E4F74878AD0A85 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\2229.txt, In Quarantäne, 1508, 179000, , , , , D58AA468C01FFDCA00A59E6F2C695AE3, C18090EAFC4DB8D0AE913AF8555C8625C1A784E8286FBCD122B5ADF4FA444F18 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\2260.txt, In Quarantäne, 1508, 179000, , , , , 045AE9519C3169132E6B3F3F1F07A328, EDF1A9EF29FED56FAB5B35F5A4DD2AD755C14703BC3CFC2958E77038129C05FC PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\41.txt, In Quarantäne, 1508, 179000, , , , , E27F84309712DFB221E9DD9BDEC10D24, CF1F4838D434FF207D5935E2D5E7BFDDFF404251F2F9A36572390E5269D5A778 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\4258.txt, In Quarantäne, 1508, 179000, , , , , DDD8DD703002C735E13D25B3720C9900, A9DCED3471FB87D8113486E27E7DC49E927846CBF01B9B3D83F4A0C8969BF1D7 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\4436.txt, In Quarantäne, 1508, 179000, , , , , AF8504893C5A4CA94D090EC3D72EFB02, EB7C9D0FE983450EC569D26C5394330BC88554A9B7B8962A039D988BF5501139 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\4489.txt, In Quarantäne, 1508, 179000, , , , , DD3453A3FAD2F34AC702D22B12E650E4, AC4531CD6EDF0AC39FB652C8B15473996C0E97B503914EC7DD75BA1252C93009 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\450.txt, In Quarantäne, 1508, 179000, , , , , BAF298C40BE89D0A02772A8FF356F145, A6FC98996DB02709689BB164CD666B31341F0E945B31BB9F8443F6F92992AE48 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\6627.txt, In Quarantäne, 1508, 179000, , , , , 259B62E141D368897C7079AC55C87187, 5018ED3E7F3A35949977DAC1C6AFE48E904FA4C5E818250E22FC4E4E9F25E401 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\a.txt, In Quarantäne, 1508, 179000, , , , , 8BAAA4F9F009E2AFB6B140AD6B35817A, B2B39692D60124910ABCE0FF599EE43D7810D4F6FE514D654CA7071B032CE801 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\b.txt, In Quarantäne, 1508, 179000, , , , , 614FA3AA3FE574B99B111529BF4EEA9F, 80D8B08420812784BEDE83384CE6D24ED7D9B8467D51FA34A06EB7D6A9822338 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\c.txt, In Quarantäne, 1508, 179000, , , , , 083E3544FB355A593917C1F1272BC84C, 5164F923E516A2EF898DD41C615C8AFC9D3BD36B67A460E0D7BE6DD6362D92C6 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\d.txt, In Quarantäne, 1508, 179000, , , , , E50CAF801F363A26AB160E8A3A642B4E, A68A99E5A2A6680A03A6DBA15D25D9BE664D8091386210635AE570B738A4307C PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\e.txt, In Quarantäne, 1508, 179000, , , , , 99E5256576966DD62EDBC373FD3FE358, CFF9B89132301F3829432D1DD5E49F94D3381AC49A91859469D40AB088CFA63E PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\f.txt, In Quarantäne, 1508, 179000, , , , , 66FB5860719D227E9A0A3CADE1F841A2, 28F789CCFF7DCCCA475823AE44CC6A9D6721D543ED61C4DFFE1B879FDEDC8C9F PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\g.txt, In Quarantäne, 1508, 179000, , , , , F345C7687F817E4CFF2A97576124B104, C5C0B7181E1EA1A6157857FE1234E7EC7A30C8A547DC61AD006A774404CA8180 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\h.txt, In Quarantäne, 1508, 179000, , , , , 570181B96379105FECD83074F72AFEAB, 8A866EAE4235CCB6EB05D59BF1B67A5112DB4487D08B3D50EE082EF4CC1C997E PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\i.txt, In Quarantäne, 1508, 179000, , , , , AB85B6112D6FC0247627D5F486CB222C, 8BF92469FE41800DA339A7D8D609C41F9EBA92BA318DB75C6A3401F074A5C3FE PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\j.txt, In Quarantäne, 1508, 179000, , , , , C8FDB33B4B1FB2CB67A61BD3EC16E0E5, 10A20419B654D8F3838AEEA220D32E607652AF7AAE8B660F0E070B07331BDB7E PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\k.txt, In Quarantäne, 1508, 179000, , , , , 120B3478CEF97057EC733799C37C30CB, 2E03480FA25C3540512640628B84D691C8B5F1B7A5F74E587B8048D31D80B1C8 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\l.txt, In Quarantäne, 1508, 179000, , , , , 1D693E2B686A66FCD89C980C07F7938C, D36F6D63AF5B8AC977C99D3B16BFDCF79FE51F7813C458ECF63094C5722D7F08 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\m.txt, In Quarantäne, 1508, 179000, , , , , 676639A72123CE7BBC7C23A403E6DE37, F38CCC5322050196E5CDB53633331A9CC5C48BC24DBEFFB63ECDA85B24366654 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\mru.xml, In Quarantäne, 1508, 179000, , , , , BD8CDB77BFF902B459D33D200F0B20ED, D86AC0D73A5C7D277E7C1EA8218074CC4B0DC21E61CFBF981D97534CEF03A344 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\n.txt, In Quarantäne, 1508, 179000, , , , , B1BEDEC3074698C006B2D8812A3DFCF5, 7BF162FA3C14BC3ABD770A066E918878216436CE17A685040974A02B11528A49 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\o.txt, In Quarantäne, 1508, 179000, , , , , 7DA980EA9DAB3FF4BEC1E7FB5C3B2B36, 46F3624352B48CD122CCB118E5702575CDE8EC052887B3993DCE9E3130873735 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\p.txt, In Quarantäne, 1508, 179000, , , , , FF6ECDB6DE3446153DDF1A7DAD8D37C7, 3F6F356B1B14207AC289F448787BAAD2527B89751C0B17A6807D15795A5DB278 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\q.txt, In Quarantäne, 1508, 179000, , , , , 41849AC516BB7674D6E9118E19E6A27D, CF2A9A3DEB83B79A627D690F55E3AD23DB7254F70CFC5DDB73BB5CC0E5CCE115 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\r.txt, In Quarantäne, 1508, 179000, , , , , 95A27EA0E710BE76E8BC2A95F6189763, 608C024E7147144D4172E12192E419D210C57142219E1788A949D91A0257000C PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\s.txt, In Quarantäne, 1508, 179000, , , , , F8E21DF610E527D75EC537DBA4068230, 94C358EDE8AC42D52DDFE0E466B62A67B2DB41EB5E444B82791D59281B606062 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\t.txt, In Quarantäne, 1508, 179000, , , , , F3BB8FC9A79EC7D35A239ECDFF8076AB, 333DA5046A86C48CAE856D454067837060831AA463AC75C89CD55845E50DBBB1 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\u.txt, In Quarantäne, 1508, 179000, , , , , B86E024AB20305E92F01428284503A66, CFBE9EDA506D3248ACB63E359B5A92C3BA955FB0367A19713607F33B0DC5AC84 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\v.txt, In Quarantäne, 1508, 179000, , , , , 19721E3D05037E6736E2FC2788388BAF, 33EDF6255F44334ADD90A6237E50A13DC35B50FA7F3132008D87AE5C9F90E491 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\w.txt, In Quarantäne, 1508, 179000, , , , , 93789A29C613BC05145C94861884E82C, BAF8E3D3CFB6E0053A4C87E54F14182DC7427375C80CE95C074046D4F75DFE2D PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\wlu.txt, In Quarantäne, 1508, 179000, , , , , A40CE42A10E720595A2A9791D94D7A3D, 0AAA932561C8933784CD96DA3139E8173D965E7A30065B334922AB345CD8AC81 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\x.txt, In Quarantäne, 1508, 179000, , , , , 23C61C51BEB02CB7773E3A626BA82A39, 1FCF9999166CE424D1F38A2ECDDC77C233F98FF8B15E7A3BEE761C9B558E570E PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\y.txt, In Quarantäne, 1508, 179000, , , , , 22FA0830D63DF6E91273E03E94874BAD, 26462A5C0149C19ED4CD418D1F859F2561A546FF016FBEB1036F9ACBCA9594B2 PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\z.txt, In Quarantäne, 1508, 179000, , , , , 1EE4BB13E33FE0F3DEEBF217676C5D80, 31A03C5B4286112B2EA434A27AE1700BB9A39B76FA0A88ED27770B9C5B89AD2F PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\1.txt, In Quarantäne, 1508, 179000, , , , , F420D9D82E22FB6767ED88BCF9E4B8A4, CC2DEAB594C7FEAFE3181B1CF4DE7D52B5960F1CAA0C37851ADA1E2179AB5E5F PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\1391.txt, In Quarantäne, 1508, 179000, , , , , FE6232B63EB0DF7F15EB9CF5A2D9086F, B3E846BD85C30119BDF94E90F39DF03B90866429B42CD6A0216C0F7FC36E7094 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\21356.txt, In Quarantäne, 1508, 179000, , , , , 81BBC0256DEFF3C8D0383176ECB83367, F450F8D45CAA4F7E1D0B6EC94B595979E495CCC0300D4D832511C1CC27951D12 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\2229.txt, In Quarantäne, 1508, 179000, , , , , 8E131E0C9D5CE10EA46BA577FDAFE3F3, C313A40BBCBCA7A2EE8AD4458F553174768F26334EA947EC5685EA4EFB138065 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\2260.txt, In Quarantäne, 1508, 179000, , , , , 5423A5BF1562F09A400958ADB7113DE8, A82AA8B916D9E910C9BAAD4B7B9E34C3BC3F85E3EA16F67F9303C1C977EE774C PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\23438.txt, In Quarantäne, 1508, 179000, , , , , D521C7B615C25968A99ECA46E51BE9BA, 270B2D6F2E636F8794D98999F8002D994A739D14063D6A6B774105741A66E219 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\29697.txt, In Quarantäne, 1508, 179000, , , , , 449EEFBD8E7F2EEBA6797FCE234B9086, 0ED2A3355993EC0D24EBE0580D4DB8833AC4D984D8F8F78B29AEAC522BD15ABD PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\3721.txt, In Quarantäne, 1508, 179000, , , , , D75B547514C95143B468F9A99BAA7774, 3D813A0B3806363FF38D9DC16545E2BE035CA0E7CCCAD3ED2C258E3E457EB5C1 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\4489.txt, In Quarantäne, 1508, 179000, , , , , DD3453A3FAD2F34AC702D22B12E650E4, AC4531CD6EDF0AC39FB652C8B15473996C0E97B503914EC7DD75BA1252C93009 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\450.txt, In Quarantäne, 1508, 179000, , , , , 4635FD1BA0EF66C5EC61F5729B41EC39, 5C204584376E08754D5B4FB78496897D777CF511140A35875A5B75797AF6D712 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\6627.txt, In Quarantäne, 1508, 179000, , , , , 5406DEC6B33827785C2A6429F21674CB, AE586B3E153C75F4A93FAEA0451BCB48590D7A2CD515ED98F5A17F5614354944 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\8051.txt, In Quarantäne, 1508, 179000, , , , , 739142E6657464F75BDBAA9BF2C8ED23, A5A7ECD3C46164CC1AE18090F424DBA96EE3EDECD8EB608C43457949D5234E10 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\83.txt, In Quarantäne, 1508, 179000, , , , , 2E8475963FD8520488B62BA2AA4BB7FF, 65AB3A27E51EEDCE44FC1321F79A3D50DE039CE1A37C6F00C4B253D34B69E68D PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\a.txt, In Quarantäne, 1508, 179000, , , , , F562532B1D7E44B6E19701443FBC2BA5, AF8D2EEF606102F0308CBB26F4B74AAE053E6FAC52AFD330CF2F7655D34F5D0E PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\b.txt, In Quarantäne, 1508, 179000, , , , , 08324CC493070E30055BB87C9E632E4C, D3881FBBFDA5F6FC8B87EB01FC99E1AA76DC4846ED0A06BF14329104B23EE50D PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\c.txt, In Quarantäne, 1508, 179000, , , , , 1A92EB1400B638FB6909E9383459D420, 00A9D7B90763AAB28066952F4E91233687C600A88AF5C76721E89B6495863C91 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\d.txt, In Quarantäne, 1508, 179000, , , , , B00AA9914EA2E5A3A1F83670303D8FDF, 8021F086B0D1E7F5D00ACDFE5F34F8116C9C7B0304E0FF2FD4B8417216C68FC2 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\e.txt, In Quarantäne, 1508, 179000, , , , , 9B5EACE0622BB285A7B24439B02F5E41, 84C05051E4A4EF66DE27B334687FF3D0454410AAC10653186698EF5FC735DC36 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\f.txt, In Quarantäne, 1508, 179000, , , , , A55C00ADAA3BFED2FD72BAED3A4C1E14, 426C16E7FC1F4912503DD04BD2057C08F8F0A785BF29BB7772295C15000071AA PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\g.txt, In Quarantäne, 1508, 179000, , , , , 07351B273F408FE4ABBA83585F0F196D, 81D5BF7A97EAD22332B6B9F6C895BC4B8B5AF98B38D5BE43D09942A8D36BFAB4 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\h.txt, In Quarantäne, 1508, 179000, , , , , 37903DBA90377590C28EB5DBEBB59B02, C038947EAC5912BE8BAA30882791DF6230031C6276E86C4AC32ABFA705BC01A0 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\i.txt, In Quarantäne, 1508, 179000, , , , , 072E17004508C2030BE8391FA10DEE74, D25BFA8B69194A28848C3F9CEBA988E52A2F9A2F4605B268A33C2504477E4871 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\j.txt, In Quarantäne, 1508, 179000, , , , , B72AA6BD74C8466B2435E9BB6430E4C5, 5C9CD886CCF4668303F108A187CB56EF6965B71451C08B4D4378C1A3D9A7ABF9 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\k.txt, In Quarantäne, 1508, 179000, , , , , F265FE117AC703804ADAA0190ECE5693, AEFBCDF2E555689454F3AFE883599A119FEED98B7B662CF1A8D4736C934ED5DB PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\l.txt, In Quarantäne, 1508, 179000, , , , , 6A92BE8B17EF032E5D53DF803BB0306E, 4828E27EA95110DDE31357F99F76F57004F5CC2501A7FD8673BD432D9ED133DB PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\m.txt, In Quarantäne, 1508, 179000, , , , , 6B6513C90F27F8D08DFEBB8AB45F2C82, FB289FF29D8846EB53098F05AAB07427939DF759A345C44F5A34E806E0E90EB6 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\n.txt, In Quarantäne, 1508, 179000, , , , , CE8743BC574F007B20709EB0FAF00B28, 4C350D8EF981D3E73240C422CB6CAA7E1A08B5C83C1C9E87E63CF652C40EC3E8 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\o.txt, In Quarantäne, 1508, 179000, , , , , 49E519D510AE74D7B58871995044D283, C0709362FB16079448C2BBEFDA2C1E3C684731EA2C96BE95ADF901AC0E3DF118 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\p.txt, In Quarantäne, 1508, 179000, , , , , 0DCE2EDC9BAC33085CD11F4ACF442339, 3C602357340BC38F69CB40A8B93233540502360854EDD111E2715389651245CA PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\q.txt, In Quarantäne, 1508, 179000, , , , , 3395C80CFD077D2092AFF444C78E5BFC, D02E49D1E3A6C0590012C6A09345C76C7CA900A81C4BC5D5EE0A6E19C8729FD1 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\r.txt, In Quarantäne, 1508, 179000, , , , , A3AE1C19DE854037D0D8285F4CB93D21, E4F6D927538CCD0967012AB87D5501197DD6459AA897871D33C1753707630930 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\s.txt, In Quarantäne, 1508, 179000, , , , , C760AD5849B323538F7E7E46B6308FEE, 638D2A81351F9A370BA70D3C8AFDFA52DAD47E56794BB1E808547ECC6B8BE588 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\t.txt, In Quarantäne, 1508, 179000, , , , , DB15D944264B920C8DBADB86408E009A, DB19DC3E5CB57F2D752882B5288AA1F02096733433E9C26E7865515FEAA3A443 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\u.txt, In Quarantäne, 1508, 179000, , , , , DFD89EE1AB3F66FDB9C300F0000BDD99, 3FF1887A12F58F2CFF936BD3DB597D9CFAD143CA604B02F65AAEF110015D7421 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\v.txt, In Quarantäne, 1508, 179000, , , , , 14EE4B963F42C7ACC513BEB65B8F73C7, B11D40215D5307FB05C12A7303AA26F67FBB0C55867B7A01232EA6FFD94EAE8D PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\w.txt, In Quarantäne, 1508, 179000, , , , , 3B12D3FE5FA1E26181882A94D04C58B1, 1A781A8E28A172EBDCD11D81AE7642458FFE1EEC3298944D0DD392CD86F7E549 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\wlu.txt, In Quarantäne, 1508, 179000, , , , , A5F525B72CD5F9A4DC2EAFFBA3C94622, BC6773B84CD1AFC4899C4F817746387E63F3F619571EFB05392725C8A2FFF22D PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\x.txt, In Quarantäne, 1508, 179000, , , , , BD7E8FF2A068F5C93EF55FABBAAA093A, 70EAD8186B31B2737E2D546D9609D30051201C4055CEFEA4F333A0116496E5A9 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\y.txt, In Quarantäne, 1508, 179000, , , , , 93E45E8C3847EDDD15D16916C59B464F, 0175235002CFF582FDF5E09256CB39E827E83C73BAFB1A66E9C0DE1845B35312 PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\z.txt, In Quarantäne, 1508, 179000, , , , , 3311548F3A334144A9E42161A5875064, 5B5DE4DCDD54E24618EC3DADAAAB58FCFA9484D866D4C3D78899AE88619F6041 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\1.txt, In Quarantäne, 1508, 179000, , , , , 187194011BAE11E4F017CC64ACBA4F20, 6554DF6CFD1EFB63D8B617E472C725101616C998D5EDF22A44CCF30F8B0409EF PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\13895.txt, In Quarantäne, 1508, 179000, , , , , 3016862E1ACF6548BA36F23F48FDD213, 075AABEC1C4908F3E4E3C05A925BE80A07FCB7635B47247B69DF1AAAFBC0ABDE PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\6627.txt, In Quarantäne, 1508, 179000, , , , , 964A987864CAF1CC56E1A4F6EB166E43, BBA97311D960D7B3AA041EE7867B9114C55EAC7ED3A578C1F71EB86828377F0A PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\a.txt, In Quarantäne, 1508, 179000, , , , , 6D82484C9B5B796B8F2DC33142D7E795, C90FCF77021E9B550693C0EC2BE4784950E81C1E4848684FEF8F2ABF8E0D374A PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\b.txt, In Quarantäne, 1508, 179000, , , , , 33F43FF02529A66FAF0FB5CE449292FB, 08E3D04A92D0AA5892B1BFADB6E69CC245575FEA17607F5F45015A1FF1DB4F8E PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\c.txt, In Quarantäne, 1508, 179000, , , , , 7106E6D0C312454BDD8BDEF0F27819CE, 9DB30B03E570317FA67A0570FB2D550B4BE421DF8DE2D198F590108C36A5EC71 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\d.txt, In Quarantäne, 1508, 179000, , , , , 7EEA1C82F68D8125DF1BB0A116B8A310, D9DB1371158EF29F48CEDE8FCD3AA6701F9298279E6F05DC7A3FA36EA67D88A6 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\e.txt, In Quarantäne, 1508, 179000, , , , , 1859F97678A0AC67DAEDB23F2A7586D9, 62E4FE2C83ED5E6AF2A5347FAFA77DA580C879F7A3FBFACB76D8DDBA124BBBBF PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\f.txt, In Quarantäne, 1508, 179000, , , , , DD64C0C1C9E78A2F00674A1839F6B726, C1F33DD14FAADC91A1332BA55048E18EF764A3368453542FFFC29AD36E2B421D PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\g.txt, In Quarantäne, 1508, 179000, , , , , 98EC2293A4AF7CC65B54C95065798901, B51C818D12D34A11C05428674F0FCECB0A0BE7990B61CA6DEE2627372C5E00A9 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\h.txt, In Quarantäne, 1508, 179000, , , , , FCDA5DD7906EA6FF580DCAFAAFC83C4D, 5A812FF67B7F87BB25F6640B405957C0E981972FA26240106F30DF090B98B503 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\i.txt, In Quarantäne, 1508, 179000, , , , , DF1B08852EE8DFE71CA4781AF68679DA, 6F903CD7B5796905CA130460B006E7702ABBAC6A47465800E2D9BB20510A697E PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\j.txt, In Quarantäne, 1508, 179000, , , , , EA2D25C40B3DC03831C0355D3A0FD3A5, 3E0334A8220DB092BE59541D62EC3D8D68F980FF62B9733BF7A0031F8D4BBA1E PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\k.txt, In Quarantäne, 1508, 179000, , , , , B087C1DBEE82C08C610AAF85C4981AFE, 3361DD87500B87D0F5F390666245AF762B4D52D5AE059FFBB3BB5DC78164DC01 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\l.txt, In Quarantäne, 1508, 179000, , , , , 213EA3D4F47CC1DF0DD1B3BFB64DE2A2, C1C88F7DEB623B441CFE1EE436A8EB1DFA9F7FAE6AF3736354A665851023AFE5 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\m.txt, In Quarantäne, 1508, 179000, , , , , 12DDADB25A7E2A0829EE1025D3CE20A1, B7F7A55680302058CC6E434ED6D3EFB6CD65B2DA877B747E3D874B6A19E3A402 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\mru.xml, In Quarantäne, 1508, 179000, , , , , BDD7A505366A55C9AABB23213382E3A9, FE3AF8CA67B2322DB0DAFCEA4C88371B4C327A4BBA4A1B733B47A6CE4597E362 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\n.txt, In Quarantäne, 1508, 179000, , , , , 9FF77F0BF671168602378705F481CD57, 0C630141200A206DF1339D772D8A9EA6AC33453A3410BD0EA7A5A574E67E0265 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\o.txt, In Quarantäne, 1508, 179000, , , , , A0113544BE95882BA412A658710930CA, C3F150536A0C9835D863816DB3ECB3AA86509BD7C2FB5D6183D7D3B6A9B93D70 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\p.txt, In Quarantäne, 1508, 179000, , , , , C00021EC8DE6DCB5A8B4F8EB0EC108AC, 6F5E4DCC1A638B885C458B496CDFDEFE6032AE833F7011D5158989752509FE57 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\q.txt, In Quarantäne, 1508, 179000, , , , , 06F9DF67F84F3D656907689C0024A374, F312C2366DC1CB95103CF98E17EDA5A7F8AB059FB4A7668E21C2DD2F19C07C14 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\r.txt, In Quarantäne, 1508, 179000, , , , , 4FC5C2657CD6D55BD40482B56CC4F6AF, E3119F36096C3E78CE1A4A2266BE0EB2EAD08A79BB52FAFD8EEF62FA3AA33622 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\s.txt, In Quarantäne, 1508, 179000, , , , , 3198C5F73F8C2C2EAAFBBC10B4CFA128, 28AF0B1C40161A9B132EF48F15357ABF6C57B2C41EBB5739BCCF8B5389E19985 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\t.txt, In Quarantäne, 1508, 179000, , , , , A2CA45D60FDE01495AE1DBEC9869C372, 33B672A5D8C94A9868869F60A4441BC8CAC6D9225A527BF544CE32B6E9BED63E PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\u.txt, In Quarantäne, 1508, 179000, , , , , 2B7DAEA2FB10EF4CBAA3D5AD45501E82, 534ECA866C947B84A4A8A17A6B27297F236DF2BB0720D06E54DB634C2E3405B2 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\v.txt, In Quarantäne, 1508, 179000, , , , , 540661AFF8CEFA68845D008C18EFC4C1, 02969C84606ABE4E4848CBD98C585FE859F21A84A5044A43D7AEB13E04BBBDB6 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\w.txt, In Quarantäne, 1508, 179000, , , , , EE6BBC3FF46603768D91FF119784F0B5, 322778B5ABB1480A157987B58D2250063E20EA30B1A9494D5B35B054D1B1C2E3 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\wlu.txt, In Quarantäne, 1508, 179000, , , , , , PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\x.txt, In Quarantäne, 1508, 179000, , , , , DE82CCD17CA27E1ECAD7F3D3B5C2059A, D0D961B13DFA7C2A117ED53FC55D907F59D988D7659B0E20FF86585069DDEB7E PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\y.txt, In Quarantäne, 1508, 179000, , , , , AB025D52FD0628EBB1A5C83C723078B7, D378949FB22C995A9ED5BCBE582DCB4347158BFBB7C69FD933EA467718762DB9 PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\z.txt, In Quarantäne, 1508, 179000, , , , , CD5A88F36283941092AD570C1CCDC3B6, 754FD3EDC898ECC3C873C5E72FBAF91334371C27467C59CF5F6D168DB5B77B95 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\mz\background.js, In Quarantäne, 2924, 179770, , , , , 8DFF324912879182CA379039CE01FB17, F326025851218B6B58D5A4DB613462CECF222C0B3D90BE53A11EFC9C0BA68897 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\mz\content.js, In Quarantäne, 2924, 179770, , , , , 6741CF088C4B65C5F1329499EFF92244, 0D9ED35F7805F00C77D9FEF282D8BD7DD42838A3E9F0CAE82B8878898BEE8A77 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\background.html, In Quarantäne, 2924, 179770, , , , , E356DAA3A70411FDE6091CCBDAEC3206, 40DC013D62FAF40ADEC0B898B9636C3B03D1B6265F6309D5678CD9C170116386 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\bg.js, In Quarantäne, 2924, 179770, , , , , CF541436DD731DB1088CC1C9481F7824, 4EFBC5F50451734C6AB2781978AF3341B299DA7C2114BE3A83825E66A87168EB PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\button.xml, In Quarantäne, 2924, 179770, , , , , 598CFAF5BC644B07D585A268185CE11C, 1E02F8C27B087FD7879CBE13C4C39F864B8BBEDA113FC240B585657B6E6CCB4C PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\config.js, In Quarantäne, 2924, 179770, , , , , 9C32051D3EEDA68B1ADDA5B59156E596, 68E0E1652D055D76D7E8B5F88EEC70F38FD89D289E850B0D03E3C83769488B9C PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\content.js, In Quarantäne, 2924, 179770, , , , , 024B82ECE28F3870F3C7F6DEBF8F0CD5, 723EDADF07E76DEEF6BE6E2D4EDADD5DA5D716F73EEE4A0A12CD1CAA4D95A512 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\framework.js, In Quarantäne, 2924, 179770, , , , , 5A37508A9F16B96FFF02EBC51E24081C, F9860026070027DDAA1527BB826180DD1734CE870D420E50179D9C9223C22C9C PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\framework.xul, In Quarantäne, 2924, 179770, , , , , A6335FBB44926EF0E20AC2392723D08C, 3D148CE0C49A77CB88BFFE6F7516EE87ED070FD0076C01F8C30B14BBF53B9025 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon128.png, In Quarantäne, 2924, 179770, , , , , FFBA47C4F0F5F6AC41744A00D201A7B1, 810020F40820385CDE357094D2132EE9B565CB655A6C6ABE72CA1E481DFB4C4E PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon16.png, In Quarantäne, 2924, 179770, , , , , 2501F434C4B7AB3B6318567AC59B0CCC, FD95F5FE0DD8ACC25475BB0719F59C609885E27BCFDA22534C96126173B218FA PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon24.ico, In Quarantäne, 2924, 179770, , , , , 7EC4BA88C2B857869BE04C2658F8DBDF, EC1ACAD6C628EF5BC6591E10B40772563040A3BEA9AB3C024DB550DECEE44A56 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon24.png, In Quarantäne, 2924, 179770, , , , , 87780BF8221F70987F8E5D98134552BF, 551B647D743F13B10ABF16C00C901B13F602E231ADFE268BA05CB04589E52945 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon32.ico, In Quarantäne, 2924, 179770, , , , , 2DBB6446A94DE036790171CDA14AFA1F, 4ABE768350AEF66DCE55DEC5E9E84AC7F61FA48E43E2EDFCD156BC1955EACC54 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon32.png, In Quarantäne, 2924, 179770, , , , , EFC0D60678FB1085D2ADF4491A273487, 8619C1BEC81B21445AA5EC267939FB2E9090F023ED4BB784E6A72DFCE2395F40 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon48.png, In Quarantäne, 2924, 179770, , , , , 1E4F9BD4517AE5CDE8DF390C200CDF7A, C0107B8B9D0412A23152FB93063F3443317DCEA65ED6329A0690377C974DD5D6 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\jquery-1.6.2.min.js, In Quarantäne, 2924, 179770, , , , , 87CD3F6097FA63A278E72FDAAE27498B, A87AF1E095953FCD1DACC5CF3610EAAF4186DE06B375D07B2CDF7E717BD1760B PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\options.xul, In Quarantäne, 2924, 179770, , , , , 08F363447AAFF3B4BAC38AE112230A71, C66D32F42523174C5A9051C46FA72E1BDC77E3C4546388E74615BF635E5AF160 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\settings.json, In Quarantäne, 2924, 179770, , , , , A6394740F78CE30158208D8B46F0DF7B, 7D8603162B9A6F5BE051E7A6D2C4FCDD7ECCE73B41985097CE6F4DB6D359550C PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\skin\framework.css, In Quarantäne, 2924, 179770, , , , , 5C4E916F9FF660ED266AFDB56D96C179, 0955DB947D75A2E69919350D4F03DC1E7E1EE238CA54B9881AED094501434456 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome.manifest, In Quarantäne, 2924, 179770, , , , , C8E16E5FB9EF238DF033F154CD1CC16D, 8611D6CEA5B2DEF26029F45C382AAD48FD16CAD650A4E17AFCB2D9131F6A0DE4 PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\install.rdf, In Quarantäne, 2924, 179770, , , , , 0EA2A5913A2D2B310F747AC1B0301912, 4198B9AF3AE8FAA8303408F1582CC553D893406F8E5E72769A125CCCD0063D55 Adware.Revizer.PrxySvrRST, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\LOCAL STORAGE\http_static.re-markable00.re-markable.net_0.localstorage, In Quarantäne, 7549, 879428, 1.0.67783, , ame, , C3D1FEA935A77B64AA02FE4228AF9148, 75FAE20FA18271CFC9F59E5AFC15D5A55FAF149FD2114C541A04B8BAEDB85D2E Adware.Revizer.PrxySvrRST, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\LOCAL STORAGE\http_static.re-markable00.re-markable.net_0.localstorage-journal, In Quarantäne, 7549, 879428, 1.0.67783, , ame, , 6BBB46056C534F03139CDDF60EB4AF2C, 60AF4FD572E69638EC5C3A2512333677E6A3921B1B32350F1648E004777545D0 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\close.png, In Quarantäne, 112, 182117, , , , , F2F46CE0DDF7FA2D662F81D5B5980E16, 9E21A00F4080650CE150B3E6260D7A8AE1158AEFB51A8F61D4071A9B00C63219 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\closeBtn.png, In Quarantäne, 112, 182117, , , , , 9154A121829BB39EC17A1A3854B4BAD5, 75917B74349C1B8909C2F9B33E548020F04EEDA6E1C3B70E1164DC7644C95CF8 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next.png, In Quarantäne, 112, 182117, , , , , 4EECF5EFD00671CFC019065080FB043C, 1CACC4D8D7895FD651E7C768AAAC1F3A03CF653E10925C2CFE86E32897F6BF94 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next_hover.png, In Quarantäne, 112, 182117, , , , , 28DA4BC294EBEA328DF5FBEE85BF3C2F, F8EF3BAFBBA779B4E60FF349C91BA9922D8A16AE7E520018C286D35A434D65BA PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\powered-by.png, In Quarantäne, 112, 182117, , , , , E97EF28E65A2828E22200A16EF564D8E, 88C5E7F261F3DC35EC95087A03C77D18220435B74E891F0F91D01FC53BF9D5C7 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev.png, In Quarantäne, 112, 182117, , , , , B961B74A05AB150BE16A33FB5E738411, 2FBBAFEE5C10FF420F4E174DDF9FFD9CCA95165A40CE3270ED1F25D47AE1BF6A PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev_hover.png, In Quarantäne, 112, 182117, , , , , EC6F265B66B4656E3CA38E7F4EE75D6B, D7F79A496DDA21F6D1928A0483AC8664FC89480F36948A705D8CA9E7ED32F306 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settings.png, In Quarantäne, 112, 182117, , , , , 0D932BC8C44C82FFF1B1E967EC938ABB, FF89F07E6002B485C9CF985B422F4714DFCFCFFB9DE88787F800FD8A003DD355 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settingsBtn.png, In Quarantäne, 112, 182117, , , , , CB67C0272892FFCD1A719A504744A523, 4C40B37D25BB9BD1BEF4BAC615FA8B55DFF6FCD42551711EB5E8D2F837F1920C PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\closeBtn.png, In Quarantäne, 112, 182117, , , , , 197914BAD88DB8ED06CD19E554E470A8, BE4E1BE45685FCBA6AB01914A0A869623157A03E5F1D44A56ABBAAEA5D801D4E PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\powered-by.png, In Quarantäne, 112, 182117, , , , , C43A66925FABD8C756C9E38399A603B1, 446CA6C93427268FD72B95B7FCD515BBA8F58FB391AB33FDDA3084B554BE827D PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settingsBtn.png, In Quarantäne, 112, 182117, , , , , C424FEAEAD550187B3576DED8AAA3A73, A9C7A06C5414A579269C8F936058D0B05DAD8B4FD43589FD2851A8DFF377F9EE PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Thumbs.db, In Quarantäne, 112, 182117, , , , , EA8C0735979EF78346E233F3877D31DC, B9B6ABDC66605D116C724908B62C6C1FF1FB516F4D12C4AC2885B52BB4E6E11E PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\like.png, In Quarantäne, 112, 182117, , , , , 65CAADF446B45637DDD0C242A8B0B2F7, 91250D8DE3E12ACF9D5AA81FACE1FAEA8DE914F06E03E238EA61714E5975DB41 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\powered-by.png, In Quarantäne, 112, 182117, , , , , C43A66925FABD8C756C9E38399A603B1, 446CA6C93427268FD72B95B7FCD515BBA8F58FB391AB33FDDA3084B554BE827D PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Thumbs.db, In Quarantäne, 112, 182117, , , , , CAD798EE5640AA35D5AD2E75F7E5405B, F6BD407761E42B973256E9ECCC807419F0A901432FFFCFC144138E48CAAD203B PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\AppNotification.js, In Quarantäne, 112, 182117, , , , , 3BD0D7DF7D2B1842C791B908572E2EBF, 8DD9345E8E9F91C09E072598CF27706E2B9BCF338435E8A4455F4D6D91B53C65 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\initialNotification.html, In Quarantäne, 112, 182117, , , , , 05726470862F1FFE30FD19A7EE864607, 793FEADB063407FFA87EF118AAA1366C8130C6A1537F04000236A04F6782BC3E PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\main.html, In Quarantäne, 112, 182117, , , , , 9931E2C2CDDFCA97E5187ED1CB802698, D751B81FB7D9DC7F9ABAC74ACEB87C111217AF72F6FD0EEE2DC0BCFD0248E536 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyle.css, In Quarantäne, 112, 182117, , , , , 420289C7C0345C94AC4FF975A0E88DA2, 7416E7801FABE69080DD1D76CA5A95C695AFEDD001C14F639C2DC38B9AFA09B3 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyleIE9.css, In Quarantäne, 112, 182117, , , , , 2A97C3A8492F58716E37A42D7526242D, 08022066C550DED68D17E87FF5D9B122F1521565596B7B2ADF02F3BC0FF6E857 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\sampleNotification.html, In Quarantäne, 112, 182117, , , , , 702722A7B4F482DCCAD47A02401B9C46, 633DFE61A48BADBAC89937E8B4FDC5041249293D206A88217C7C6956F3D1EF89 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\DialogsAPI.js, In Quarantäne, 112, 182117, , , , , CB0D3F2524FFE7F8EEE5B362451DCB5C, E381313EB8FB3E1473124DA561CBEC8DDD9178416DED9DCA4EF7736D5D7F97FF PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\PIE.htc, In Quarantäne, 112, 182117, , , , , A219E20E2678B66B24B9067A2E228A8D, 172EAF95AE8EE7073D7D2D20A11B13EAAF0A355D426F0C839A06296C534DB344 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\settings.js, In Quarantäne, 112, 182117, , , , , 7DFDB61D311C26389E8C8F014E5904DA, 1BFE18FEFAB1498EDD7A15CF092E2CFB2CEEFB28EF1B3697881B310FEEBD086E PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\version.txt, In Quarantäne, 112, 182117, , , , , 7355BA829B6283328181F06F6B9F260C, 556D85E1D05C48E392652FCB5BCE57B381DCA4274348BD580BA588C237AA8247 PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Feeds\http___alerts_conduit-services_com_root_15651_15317_DE.xml, In Quarantäne, 112, 182117, , , , , 1CF28927FC21C5EE55D09A648AFFCBF9, F9690E43CFCF4B7144B73897C041843A1B20D00A6A73DD296FC67BC54C1CCF7E PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Feeds\http___alerts_conduit-services_com_root_1620587_1613894_DE.xml, In Quarantäne, 112, 182117, , , , , FFB7BAA697EB10DB85791C8CEF198BA5, E32DADC50C8EC076D729FA23794C23422E063305CAB528FE628E1189C507AFAA PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks\en.xml, In Quarantäne, 112, 182117, , , , , 26A4C2B2FE8584012C20CEDFA652C6DB, 3B0428F976A2884785F1C975E7F7DD86AFFBCC68BEA105CEB82DE9512CA65E5B PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\localStorage\appsFiles\2d2f2f16-9432-4890-9f93-624a84cf6261\mam_gk_userId.txt, In Quarantäne, 112, 182117, , , , , A5F90E00489C7E2247E9CE9D0909FA3C, 5E56FC34E3C6E95B86B44E840B025CDC3C67D9DD4C5C372AA0CABD66D8559979 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\close.png, In Quarantäne, 112, 182117, , , , , F2F46CE0DDF7FA2D662F81D5B5980E16, 9E21A00F4080650CE150B3E6260D7A8AE1158AEFB51A8F61D4071A9B00C63219 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\closeBtn.png, In Quarantäne, 112, 182117, , , , , 9154A121829BB39EC17A1A3854B4BAD5, 75917B74349C1B8909C2F9B33E548020F04EEDA6E1C3B70E1164DC7644C95CF8 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next.png, In Quarantäne, 112, 182117, , , , , 4EECF5EFD00671CFC019065080FB043C, 1CACC4D8D7895FD651E7C768AAAC1F3A03CF653E10925C2CFE86E32897F6BF94 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next_hover.png, In Quarantäne, 112, 182117, , , , , 28DA4BC294EBEA328DF5FBEE85BF3C2F, F8EF3BAFBBA779B4E60FF349C91BA9922D8A16AE7E520018C286D35A434D65BA PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\powered-by.png, In Quarantäne, 112, 182117, , , , , C5640EB96B765545FADD17718F0AC09C, E9AA83F5606AA85E0C589EE099E660EE751EF25146A37502FB6C5D71E0D5544C PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev.png, In Quarantäne, 112, 182117, , , , , B961B74A05AB150BE16A33FB5E738411, 2FBBAFEE5C10FF420F4E174DDF9FFD9CCA95165A40CE3270ED1F25D47AE1BF6A PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev_hover.png, In Quarantäne, 112, 182117, , , , , EC6F265B66B4656E3CA38E7F4EE75D6B, D7F79A496DDA21F6D1928A0483AC8664FC89480F36948A705D8CA9E7ED32F306 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settings.png, In Quarantäne, 112, 182117, , , , , 0D932BC8C44C82FFF1B1E967EC938ABB, FF89F07E6002B485C9CF985B422F4714DFCFCFFB9DE88787F800FD8A003DD355 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settingsBtn.png, In Quarantäne, 112, 182117, , , , , CB67C0272892FFCD1A719A504744A523, 4C40B37D25BB9BD1BEF4BAC615FA8B55DFF6FCD42551711EB5E8D2F837F1920C PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\closeBtn.png, In Quarantäne, 112, 182117, , , , , 197914BAD88DB8ED06CD19E554E470A8, BE4E1BE45685FCBA6AB01914A0A869623157A03E5F1D44A56ABBAAEA5D801D4E PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\powered-by.png, In Quarantäne, 112, 182117, , , , , 5B71105A6F89CFAE8CD56757B10674E7, 63F883ADC4D6878B41371CEEECC9CEBD1AF29E387CCACC55F8EAEE9911B6ED8A PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settingsBtn.png, In Quarantäne, 112, 182117, , , , , C424FEAEAD550187B3576DED8AAA3A73, A9C7A06C5414A579269C8F936058D0B05DAD8B4FD43589FD2851A8DFF377F9EE PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Thumbs.db, In Quarantäne, 112, 182117, , , , , EA8C0735979EF78346E233F3877D31DC, B9B6ABDC66605D116C724908B62C6C1FF1FB516F4D12C4AC2885B52BB4E6E11E PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\like.png, In Quarantäne, 112, 182117, , , , , 65CAADF446B45637DDD0C242A8B0B2F7, 91250D8DE3E12ACF9D5AA81FACE1FAEA8DE914F06E03E238EA61714E5975DB41 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\powered-by.png, In Quarantäne, 112, 182117, , , , , 5B71105A6F89CFAE8CD56757B10674E7, 63F883ADC4D6878B41371CEEECC9CEBD1AF29E387CCACC55F8EAEE9911B6ED8A PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Thumbs.db, In Quarantäne, 112, 182117, , , , , CAD798EE5640AA35D5AD2E75F7E5405B, F6BD407761E42B973256E9ECCC807419F0A901432FFFCFC144138E48CAAD203B PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\AppNotification.js, In Quarantäne, 112, 182117, , , , , 220A8D3E011318ECFF0327DAD39B35F6, 5C904F785886BBB615E216F59DC1F164B42C3FC38759A574454F50E1C03A327E PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\initialNotification.html, In Quarantäne, 112, 182117, , , , , 54DA6E44C84EF832A0577565DAFE282C, 777C67AA47B1D395F8AC5F066EC64A372F46A23A3A06823499EB332873EE3E71 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\main.html, In Quarantäne, 112, 182117, , , , , 9931E2C2CDDFCA97E5187ED1CB802698, D751B81FB7D9DC7F9ABAC74ACEB87C111217AF72F6FD0EEE2DC0BCFD0248E536 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyle.css, In Quarantäne, 112, 182117, , , , , 420289C7C0345C94AC4FF975A0E88DA2, 7416E7801FABE69080DD1D76CA5A95C695AFEDD001C14F639C2DC38B9AFA09B3 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyleIE9.css, In Quarantäne, 112, 182117, , , , , 2A97C3A8492F58716E37A42D7526242D, 08022066C550DED68D17E87FF5D9B122F1521565596B7B2ADF02F3BC0FF6E857 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\sampleNotification.html, In Quarantäne, 112, 182117, , , , , 702722A7B4F482DCCAD47A02401B9C46, 633DFE61A48BADBAC89937E8B4FDC5041249293D206A88217C7C6956F3D1EF89 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\DialogsAPI.js, In Quarantäne, 112, 182117, , , , , 1E4032D6AB5B15A9BC0AFCAFD0B4B2F8, 4249251A3C88248F5480F4CF3830E5C7481FA45608980A5D4197284965DD39E2 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\PIE.htc, In Quarantäne, 112, 182117, , , , , A219E20E2678B66B24B9067A2E228A8D, 172EAF95AE8EE7073D7D2D20A11B13EAAF0A355D426F0C839A06296C534DB344 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\version.txt, In Quarantäne, 112, 182117, , , , , F2CE41F3F990AE6FADEB2845C5D9BE72, 52D47A1018F0C483EF441360E05D77DB6985D8D7822EF10CD603E72F812610B7 PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Feeds\http___alerts_conduit-services_com_root_1620587_1613894_DE.xml, In Quarantäne, 112, 182117, , , , , FFB7BAA697EB10DB85791C8CEF198BA5, E32DADC50C8EC076D729FA23794C23422E063305CAB528FE628E1189C507AFAA PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks\en.xml, In Quarantäne, 112, 182117, , , , , 26A4C2B2FE8584012C20CEDFA652C6DB, 3B0428F976A2884785F1C975E7F7DD86AFFBCC68BEA105CEB82DE9512CA65E5B PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\DynamicDialogs.zip, In Quarantäne, 112, 182117, , , , , 634635C9045664398A7F3548AC54D470, AC97468A6E2B65CE42DFCD2D6B115FD0C2EB0180BC4620BB464ECC26405E8CAC PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\localStorage\appsFiles\2d2f2f16-9432-4890-9f93-624a84cf6261\mam_gk_userId.txt, In Quarantäne, 112, 182117, , , , , F18888D83CA812D7B348A69022FC1B96, 414203C614DAA63629B3E75DA4839FF08E1B0DE780F382C0369F18E24B9C2E65 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\close.png, In Quarantäne, 112, 182117, , , , , F2F46CE0DDF7FA2D662F81D5B5980E16, 9E21A00F4080650CE150B3E6260D7A8AE1158AEFB51A8F61D4071A9B00C63219 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next.png, In Quarantäne, 112, 182117, , , , , 4EECF5EFD00671CFC019065080FB043C, 1CACC4D8D7895FD651E7C768AAAC1F3A03CF653E10925C2CFE86E32897F6BF94 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next_hover.png, In Quarantäne, 112, 182117, , , , , 28DA4BC294EBEA328DF5FBEE85BF3C2F, F8EF3BAFBBA779B4E60FF349C91BA9922D8A16AE7E520018C286D35A434D65BA PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\powered-by.png, In Quarantäne, 112, 182117, , , , , C5640EB96B765545FADD17718F0AC09C, E9AA83F5606AA85E0C589EE099E660EE751EF25146A37502FB6C5D71E0D5544C PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev.png, In Quarantäne, 112, 182117, , , , , B961B74A05AB150BE16A33FB5E738411, 2FBBAFEE5C10FF420F4E174DDF9FFD9CCA95165A40CE3270ED1F25D47AE1BF6A PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev_hover.png, In Quarantäne, 112, 182117, , , , , EC6F265B66B4656E3CA38E7F4EE75D6B, D7F79A496DDA21F6D1928A0483AC8664FC89480F36948A705D8CA9E7ED32F306 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settings.png, In Quarantäne, 112, 182117, , , , , 0D932BC8C44C82FFF1B1E967EC938ABB, FF89F07E6002B485C9CF985B422F4714DFCFCFFB9DE88787F800FD8A003DD355 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\close.png, In Quarantäne, 112, 182117, , , , , 7DD805B772208B23BF3BB35B0563A0F7, AD3A0C7B3A2A402676077A8CD9F6B19B820E4AA51CE134B2BA590086239C1D62 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\powered-by.png, In Quarantäne, 112, 182117, , , , , 5B71105A6F89CFAE8CD56757B10674E7, 63F883ADC4D6878B41371CEEECC9CEBD1AF29E387CCACC55F8EAEE9911B6ED8A PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Thumbs.db, In Quarantäne, 112, 182117, , , , , EA8C0735979EF78346E233F3877D31DC, B9B6ABDC66605D116C724908B62C6C1FF1FB516F4D12C4AC2885B52BB4E6E11E PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\like.png, In Quarantäne, 112, 182117, , , , , 65CAADF446B45637DDD0C242A8B0B2F7, 91250D8DE3E12ACF9D5AA81FACE1FAEA8DE914F06E03E238EA61714E5975DB41 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\powered-by.png, In Quarantäne, 112, 182117, , , , , 5B71105A6F89CFAE8CD56757B10674E7, 63F883ADC4D6878B41371CEEECC9CEBD1AF29E387CCACC55F8EAEE9911B6ED8A PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Thumbs.db, In Quarantäne, 112, 182117, , , , , C83724F23A83E54255E06FB0D1B81F12, 0CCEE1925BBE4BB137F61EAEFAFB7050E026FD79E7C7C8AB430155CA09906B6F PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\AppNotification.js, In Quarantäne, 112, 182117, , , , , 7E5F58C7789DE0D4900F5DB35497FB9C, B4D6EF8A6DBC55BD6B6369A60D35DF4E6709C38628A593575B308DE88FF11306 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\initialNotification.html, In Quarantäne, 112, 182117, , , , , 54DA6E44C84EF832A0577565DAFE282C, 777C67AA47B1D395F8AC5F066EC64A372F46A23A3A06823499EB332873EE3E71 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\main.html, In Quarantäne, 112, 182117, , , , , 9931E2C2CDDFCA97E5187ED1CB802698, D751B81FB7D9DC7F9ABAC74ACEB87C111217AF72F6FD0EEE2DC0BCFD0248E536 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyle.css, In Quarantäne, 112, 182117, , , , , AD9807FA69D8441B7A51BB8FD188A6C3, C42652932C1E3F9C113F5B427CB6E4337D0ED4C721E0A6A46D066F815A61AD6B PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\sampleNotification.html, In Quarantäne, 112, 182117, , , , , 702722A7B4F482DCCAD47A02401B9C46, 633DFE61A48BADBAC89937E8B4FDC5041249293D206A88217C7C6956F3D1EF89 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\DialogsAPI.js, In Quarantäne, 112, 182117, , , , , 939828BCEC7BBDFAB505E901D735FA5A, 4D9B445CCA901FB4E5AA4D9585E721BB819D3A6B8A5567E1B89873F2929FC1B2 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\PIE.htc, In Quarantäne, 112, 182117, , , , , A219E20E2678B66B24B9067A2E228A8D, 172EAF95AE8EE7073D7D2D20A11B13EAAF0A355D426F0C839A06296C534DB344 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\version.txt, In Quarantäne, 112, 182117, , , , , 20DFA789C2D17F69D7B957A95712B9F0, D6F917C484E6A48FCF8B90EF09CDE0286C3D86E5DEAD48B42FAF0DAE94FB2DF5 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks\en.xml, In Quarantäne, 112, 182117, , , , , CBAEB8C3DF2171B615285809CEADA5DF, E2DE98E52AD1BCF5CE84CD64480A207F63043C9B608A0BBAB82F671AFAC28B46 PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\DynamicDialogs.zip, In Quarantäne, 112, 182117, , , , , E7E89922EB1D84F117BF6E8D0BDBD3D2, 83555742A21F3DAC58BC4D318558C0378E4CA4AB2DD8969202F46F837868E918 PUP.Optional.BonanzaDeals, C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BonanzaDeals\Bonanza Deals Help.url, In Quarantäne, 1380, 182138, , , , , 3FEF4F3C125E59C1D7990700F3FB6DF6, B77BC0715A64E7DCD42F67C0F0D290E5DC1DF16257A37200E42E4E2A987156DA PUP.Optional.BonanzaDeals, C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BonanzaDeals\Bonanza Deals.url, In Quarantäne, 1380, 182138, , , , , D4F1A7B66BA89CF57E32781BA0DD71D4, B1EF849E33DD99BB8B8832CB6B67AB5CBE9E238242484B6683C9BD7A4DACC865 PUP.Optional.BonanzaDeals, C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BonanzaDeals\Uninstall Bonanza Deals.lnk, In Quarantäne, 1380, 182138, , , , , 1C81C987AFE63D0F97AF76DB76066895, 32F69DE0C5FC8CF1068429A8C2B866B5D1DC2EE238425EF577CE27C55DEC0CE6 PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\BonanzaDealsIE64.dll, In Quarantäne, 1380, 182151, , , , , , PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\BonanzaDealsUpdate.log, In Quarantäne, 1380, 182151, , , , , 847607F1BAA0D0FD858DFA3F6D75C674, 6E8431B431A472214A2E987771C07FE425B43EA606F65EF206516A0D26C2E173 PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\BonanzaDealsUpdateRun.exe, In Quarantäne, 1380, 182151, , , , , B94E0E83BEB5543EF0D68BC0E8958B11, 72D45DDA781853B68ED26B3A241E042816AE5CA2A7B0A90C447C794D49F802D4 PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\icon.ico, In Quarantäne, 1380, 182151, , , , , C56EDCF93E2424C1930F13E60E3346F3, 06EFF961FB4284F470A971A18D7B3C8A6BB97A34C606C68BA66FAA769AF88DB8 PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\uninst.exe, In Quarantäne, 1380, 182151, , , , , C1B47E8D875B63F5DABD81331833B15F, C1BE2B8524DE884B365688FA1A1CF22FDF009FECDA6BA8E5F0E21651145851DB PUP.Optional.PCSpeedMaximizer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer\Hilfe.lnk, In Quarantäne, 3672, 343976, , , , , B16DB2F0B399187D13F9ECD2A3954623, 5B394FAAD3E97AD18A0382A3A6EBE47D2AB71822D39C034087DE0F8FFE4EF86F PUP.Optional.PCSpeedMaximizer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer\PC Speed Maximizer entfernen.lnk, In Quarantäne, 3672, 343976, , , , , 76702A7760A9D03BE8F2B940A3AB5D3C, 3CBAFD4F27E03625059E2C2414D1AB4C12D58BDA7473B58903C13BC17B564E22 PUP.Optional.PCSpeedMaximizer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer\PC Speed Maximizer im Internet.lnk, In Quarantäne, 3672, 343976, , , , , 19D4AFC103A6A5C22A6789B7DCE05A7B, A74B7E59FDEA723AA396C80557193D6BD22D501E1F65E3F89D1DC9F8ABAC9D96 PUP.Optional.Yontoo, C:\PROGRAMDATA\TARMA INSTALLER\{361E80BE-388B-4270-BF54-A10C2B756504}\_SETUPX.DLL, In Quarantäne, 427, 92490, 1.0.67783, , ame, , AE5F4292BD15228853F65A1004517ADC, 1493DDD89D403820DA52440647A41F9F9579E8CB806E679A294A2638295962BA PUP.Optional.YTDVideoDownloader, C:\PROGRAMDATA\YTD VIDEO DOWNLOADER\YTD_INSTALLER.EXE, In Quarantäne, 9888, 883300, 1.0.67783, , ame, , 5927D7CBC00C648D5F26C3F09C25039E, CB441D57324A33CAB00E1FDD1F4EAD37C521FAFEA03C85E78863A11336E32F3A PUP.Optional.ChipDe, C:\USERS\ELTERN\DOWNLOADS\VSDC FREE VIDEO EDITOR - CHIP-INSTALLER (1).EXE, In Quarantäne, 7711, 562568, 1.0.67783, 26B5086165EC74F27E31E5BF, dds, 02245864, 0CCE97E641EBB3AAADBC3616015832D1, 866E6DE4ED802BF4ECD044DA77B78F86725CB71704E6DC63BA3047C8042B9FA2 Generic.Malware/Suspicious, C:\USERS\ELTERN\DOWNLOADS\FREEAUDIODUB.EXE, In Quarantäne, 0, 392686, 1.0.67783, , shuriken, , 6C08D01687C7F97987561C601E206153, 6F32EAB0F93EDACC13DE1D68CF7B374C5B0BCDBBC360BED5AC6F20C599BBD0D4 PUP.Optional.ChipDe, C:\USERS\ELTERN\DOWNLOADS\VSDC FREE VIDEO EDITOR - CHIP-INSTALLER.EXE, In Quarantäne, 7711, 557991, 1.0.67783, 6BCF091B982D3D1A96B50F64, dds, 02245864, A9589589F0EFF2203DFA3CD43D9B36E6, 72CECE72092ADE0D141B441278C1D652059DB8359E4BC4AADC104FDB4ACBE7E3 PUP.Optional.ChipDe, C:\USERS\ELTERN\DOWNLOADS\FASTSTONE IMAGE VIEWER - CHIP-INSTALLER.EXE, In Quarantäne, 7711, 562568, 1.0.67783, , ame, , F776C6CE9DBDA4415A0AF67C692BC366, 9EC1D9EBE21438CEBC5EFE6A4817D5325FA50165BE0F8465FEE4C6B383054ED5 PUP.Optional.ChipDe, C:\USERS\ELTERN\DOWNLOADS\FASTSTONE IMAGE VIEWER - CHIP-INSTALLER (1).EXE, In Quarantäne, 7711, 562568, 1.0.67783, , ame, , 43D7984CD91205D0286592347B2B3EF4, 801A0BB0B7A0DAC50D62AC9B6F4C3A69E0DE2E9BC31F97A6B7C2D54E29D985DC PUP.Optional.YTDVideoDownloader, C:\PROGRAM FILES (X86)\GREENTREE APPLICATIONS\YTD VIDEO DOWNLOADER\UNINSTALL.EXE, In Quarantäne, 9888, 883300, 1.0.67783, , ame, , 2343674E9EB19119106161667733FBD9, D50D0E0B501964A41C92BD9E05B351602A988111888988B1AC810EAE2C9B88F6 Physischer Sektor: 0 (keine bösartigen Elemente erkannt) WMI: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.4.0.0 # ------------------------------- # Build: 08-30-2022 # Database: 2022-10-10.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 04-09-2023 # Duration: 00:00:11 # OS: Windows 10 (Build 19044.2728) # Cleaned: 76 # Failed: 3 ***** [ Services ] ***** Deleted BCUService ***** [ Folders ] ***** Deleted C:\Program Files (x86)\Conduit Deleted C:\Program Files (x86)\DeviceVM Deleted C:\Program Files (x86)\FLV Player Deleted C:\Program Files (x86)\GreenTree Applications Deleted C:\Program Files (x86)\MetaCrawler Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader Deleted C:\ProgramData\Tarma Installer Deleted C:\ProgramData\ytd video downloader Deleted C:\Users\Eltern\AppData\Local\jZip Deleted C:\Users\Eltern\AppData\Roaming\Performersoft Deleted C:\Users\Schilling Family\AppData\LocalLow\Softonic Deleted C:\Users\Schilling Family\AppData\Roaming\MetaCrawler Deleted C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player Deleted C:\Users\Schilling Family\AppData\Roaming\OpenCandy Deleted C:\Users\Schilling Family\Documents\PC Speed Maximizer ***** [ Files ] ***** Deleted C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx Deleted C:\Users\Schilling Family\Desktop\SpeedAnalysis.lnk ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted C:\Windows\Tasks\METACRAWLER.JOB ***** [ Registry ] ***** Deleted HKCU\Software\AppDataLow\Software\BackgroundContainerV2 Deleted HKCU\Software\AppDataLow\Software\Conduit Deleted HKCU\Software\AppDataLow\Software\Smartbar Deleted HKCU\Software\AppDataLow\Toolbar Deleted HKCU\Software\Conduit Deleted HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\jZip Deleted HKCU\Software\PERFORMERSOFT Deleted HKCU\Software\jZip Deleted HKCU\Software\{DAF8B7E5-449D-4180-8281-10E536E597F2} Deleted HKLM\SOFTWARE\Classes\AppID\Complitly.DLL Deleted HKLM\SOFTWARE\Classes\AppID\PropertySync.EXE Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BonanzaDealsLive.exe Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5BE104DB-21E9-45AE-90C2-1E8585816213} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BE104DB-21E9-45AE-90C2-1E8585816213} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MetaCrawler Deleted HKLM\Software\Classes\AppID\{0FA5C13C-4EDA-488A-A8EB-B84CD7395A79} Deleted HKLM\Software\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983} Deleted HKLM\Software\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153} Deleted HKLM\Software\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D} Deleted HKLM\Software\Classes\CLSID\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} Deleted HKLM\Software\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731} Deleted HKLM\Software\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317} Deleted HKLM\Software\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA} Deleted HKLM\Software\Classes\TypeLib\{05E242CB-338E-4A4F-A726-80BAB386D079} Deleted HKLM\Software\Classes\TypeLib\{77AA6435-2488-4A94-9FE5-49519DD2ED9B} Deleted HKLM\Software\Wow6432Node\Conduit Deleted HKLM\Software\Wow6432Node\PIP Deleted HKLM\Software\Wow6432Node\SimplyGen Deleted HKLM\Software\Wow6432Node\\Classes\AppID\Complitly.DLL Deleted HKLM\Software\Wow6432Node\\Classes\AppID\PropertySync.EXE Deleted HKLM\Software\Wow6432Node\\Classes\AppID\{0FA5C13C-4EDA-488A-A8EB-B84CD7395A79} Deleted HKLM\Software\Wow6432Node\\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983} Deleted HKLM\Software\Wow6432Node\\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153} Deleted HKLM\Software\Wow6432Node\\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317} Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{05E242CB-338E-4A4F-A726-80BAB386D079} Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{77AA6435-2488-4A94-9FE5-49519DD2ED9B} Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BonanzaDealsLive.exe Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Stats\{29494049-211F-4F5C-8545-7DA8BF7A6CF8} Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Stats\{C4BEF720-313C-420A-ACF6-77DD95D8F553} Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Applian FLV Player2.0.24 Deleted HKLM\Software\Wow6432Node\{DAF8B7E5-449D-4180-8281-10E536E597F2} Deleted HKLM\System\Setup\FirstBoot\Services\BCUService Deleted HKU\.DEFAULT\Software\IBUpdaterService Deleted HKU\S-1-5-18\Software\IBUpdaterService ***** [ Chromium (and derivatives) ] ***** Not Deleted Complitly plugin for chrome - dlfienamagdnkekbbbocojppncdambda Not Deleted Complitly plugin for chrome - dlfienamagdnkekbbbocojppncdambda Not Deleted Metacrawler Neuer Tab - doobfiogmfmpjnoofjhhgjehmlofngfp ***** [ Chromium URLs ] ***** Deleted metaCrawler Deleted metaCrawler Deleted metaCrawler Deleted metaCrawler ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Hosts File Entries ] ***** No malicious hosts file entries cleaned. ***** [ Preinstalled Software ] ***** No Preinstalled Software cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [8516 octets] - [09/04/2023 21:20:00] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ########## |
10.04.2023, 08:02 | #15 |
/// TB-Ausbilder | MFResident-20230328-55 Vielen Dank für die Logdateien, gut gemacht. Als Nächstes benötige ich neue Logdateien von FRST. Schritt 1
|
Themen zu MFResident-20230328-55 |
adobe, antivirus, backdoor, computer, defender, desktop, excel, flash player, google, home, installation, internet, internet explorer, kaspersky, mfresident-20230328-55, mozilla, port, prozesse, realtek, registry, scan, sekunden, software, temp, udp, windows |