Anteros1986 | 30.04.2015 11:43 | Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-04-2015 01
Ran by ##### ##### at 2015-04-30 12:06:51
Running from C:\Users\##### #####\Downloads
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1931906367-3255308075-3261805128-500 - Administrator - Disabled)
Gast (S-1-5-21-1931906367-3255308075-3261805128-501 - Limited - Disabled)
##### ##### (S-1-5-21-1931906367-3255308075-3261805128-1001 - Administrator - Enabled) => C:\Users\##### #####
##### Mitarbeiter (S-1-5-21-1931906367-3255308075-3261805128-1002 - Limited - Enabled) => C:\Users\##### Mitarbeiter
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Acronis True Image 2015 (HKLM-x32\...\{08DC7D7A-1CA0-4E96-B12F-9B9577FCF0F8}Visible) (Version: 18.0.6525 - Acronis)
Acronis True Image 2015 (x32 Version: 18.0.6525 - Acronis) Hidden
Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.10 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.144 - Adobe Systems Incorporated)
AirDroid 3.0.4.0 (HKLM-x32\...\AirDroid) (Version: 3.0.4.0 - Sand Studio)
Anzeige am Bildschirm (HKLM\...\OnScreenDisplay) (Version: 8.51.01 - )
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.9.504 - Avira Operations GmbH & Co. KG)
Bonjour (HKLM\...\{E4F5E48E-7155-4CF9-88CD-7F377EC9AC54}) (Version: 2.0.4.0 - Apple Inc.)
Brother P-touch Address Book 1.1 (HKLM-x32\...\InstallShield_{B2023017-DEE4-44F7-8A71-CA6084BF534C}) (Version: 1.1.100 - Brother Industries, Ltd.)
Brother P-touch Address Book 1.1 (x32 Version: 1.1.100 - Brother Industries, Ltd.) Hidden
Brother P-touch Editor 5.0 (HKLM-x32\...\InstallShield_{DF9A6075-9308-4572-8932-A4316243C4D9}) (Version: 5.0.110 - Brother Industries, Ltd.)
Brother P-touch Editor 5.0 (x32 Version: 5.0.110 - Brother Industries, Ltd.) Hidden
CameraHelperMsi (x32 Version: 13.51.815.0 - Logitech) Hidden
CDex - Open Source Digital Audio CD Extractor (HKLM-x32\...\CDex) (Version: 1.78.0.2015 - Georgy Berdyshev)
Citrix Online Plug-in - Web (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 11.2.0.31560 - Citrix Systems, Inc.)
Dependency Package Update (Version: 1.6.29.00 - Lenovo Inc.) Hidden
Dependency Package Update (Version: 1.6.32.00 - Lenovo Inc.) Hidden
Dependency Package Update (Version: 1.6.36.00 - Lenovo Inc.) Hidden
Dependency Package Update (x32 Version: 1.6.32.00 - Lenovo Group Limited) Hidden
DisplayLink Core Software (HKLM\...\{BB07E020-7224-4EC3-864E-2AA0BF42A7DD}) (Version: 7.4.51572.0 - DisplayLink Corp.)
Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc)
Dropbox (HKU\S-1-5-21-1931906367-3255308075-3261805128-1001\...\Dropbox) (Version: 3.4.4 - Dropbox, Inc.)
Dropbox 15 GB (HKLM-x32\...\{597A58EC-42D6-4940-8739-FB94491B013C}) (Version: 0.9.0 - Dropbox, Inc.)
erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
FormatFactory 3.6.0.0 (HKLM-x32\...\FormatFactory) (Version: 3.6.0.0 - Format Factory)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.90 - Google Inc.)
Google Drive (HKLM-x32\...\{6C36881B-0E51-4231-9D02-BF2149664D34}) (Version: 1.20.8672.3137 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
ImageCapture Suite 9.3 Trial (HKLM-x32\...\{EBC426BF-74D6-4228-BFED-97C84504B5D3}) (Version: 9.3.0 - Dynamsoft)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
inPhoto ID Webcam 3.1.12 (HKLM-x32\...\inPhoto ID Webcam) (Version: - IDPhotoCapture)
inPhoto/IDPhoto Activation Service (HKLM-x32\...\inPhoto IDPhoto Activation Service) (Version: 1.7 - inPhoto/IDPhoto Products)
Integrated Camera (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.4.7.37 - SunplusIT)
Intel Collaborative Processor Performance Control (HKLM-x32\...\0E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1018 - Intel Corporation)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.30.1072 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4099 - Intel Corporation)
Intel(R) Technology Access (HKLM-x32\...\{a3294ccc-6d01-43c2-9249-3f50bd113bb8}) (Version: 1.3.2.1030 - Intel Corporation)
Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.0.0.17 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{4A86E113-A881-4DE7-81A2-6DADCE9183AF}) (Version: 17.1.1450.0402 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden
Intel® PROSet/Wireless Software (HKLM-x32\...\{a9888f41-68ae-43df-bd7d-d93405a44106}) (Version: 17.13.11 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Kodi (HKU\S-1-5-21-1931906367-3255308075-3261805128-1001\...\Kodi) (Version: - XBMC-Foundation)
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.13 - )
Lenovo Dependency Package (HKLM\...\Lenovo Dependency Package_is1) (Version: 1.6.36.00 - Lenovo Group Limited)
Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 1.0.19.0 - Lenovo)
Lenovo HID HW Radio Driver 1.0.0.58 (HKLM\...\{E5325F32-D15A-4131-B029-4A5B7609E532}_is1) (Version: 1.0.0.58 - Lenovo)
Lenovo Multimedia and Communications Core Runtime (HKLM\...\{033DC0E0-DA89-4C33-B66C-89B64D312CD1}_is1) (Version: 5.0.13.94 - Lenovo Corporation)
Lenovo Patch Utility (x32 Version: 1.3.2.6 - Lenovo Group Limited) Hidden
Lenovo Patch Utility 64 bit (Version: 1.3.2.6 - Lenovo Group Limited) Hidden
Lenovo Peer Connect SDK (HKLM\...\{75C87855-9CBB-4892-B1A9-74C73A19CACA}_is1) (Version: 1.0.0.7 - Lenovo)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.09.03 - )
Lenovo QuickControl (HKLM-x32\...\{ABA0A3F7-649E-4338-BDC9-18437D9699D6}) (Version: 2.40 - Lenovo Group Limited)
Lenovo Settings - Camera Audio (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 4.3.19.209 - Lenovo Corporation)
Lenovo Settings - Location Awareness (HKLM-x32\...\{C79D4402-E622-4922-9C02-89F9080BF081}_is1) (Version: 1.4.0.5 - Lenovo Group Limited)
Lenovo Settings - MultiMode (HKLM-x32\...\{2DCC613D-E94E-4BA6-9642-77C4CA45DB7B}_is1) (Version: 1.1.0.8 - Lenovo Group Limited)
Lenovo Settings Dependency Package (HKLM\...\{3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1) (Version: 2.3.3.37 - Lenovo Group Limited)
Lenovo Settings Mobile Hotspot (HKLM\...\{42603F7D-B08D-436B-B0D8-3E2DEF1AFD41}_is1) (Version: 2.3.0.88 - Lenovo)
Lenovo Settings Service (HKLM\...\{8C6F1EBA-17F1-4481-B688-9777E63E985F}_is1) (Version: 2.3.3.10 - Lenovo Group Limited)
Lenovo Settings UMDF driver (HKLM\...\{2BDC7413-65EA-4B99-8C4B-02F11075BE6D}_is1) (Version: 1.2.0.7 - Lenovo Group Limited)
Lenovo Solution Center (HKLM\...\{1CA74803-5CB2-4C03-BDBE-061EDC81CC7F}) (Version: 2.8.004.00 - Lenovo Group Limited)
Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.06.0034 - Lenovo)
Lenovo USB Graphics (HKLM\...\{7257526E-B74A-488E-BA2E-56327482B06B}) (Version: 7.4.51587.0 - Lenovo)
Lenovo USB3.0 to DVI VGA Monitor Adapter (HKLM-x32\...\{454D32AD-C149-49BE-9F2E-8C089C3D6620}) (Version: 1.07.15 - Lenovo)
Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0012.00 - Lenovo Group Limited)
Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0011.00 - Lenovo)
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Logitech Unifying-Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
Logitech Webcam-Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.80 - Logitech Inc.)
Malwarebytes Anti-Malware Version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
MASnet Version 6.3.9 (HKLM-x32\...\MASnet) (Version: - Merkur Versicherung AG)
Metal Gear Solid V Ground Zeroes (HKLM-x32\...\Metal Gear Solid V Ground Zeroes_is1) (Version: 1.0 - PLAZA)
Metric Collection SDK (x32 Version: 1.1.0008.00 - Lenovo Group Limited) Hidden
Metric Collection SDK 35 (x32 Version: 1.2.0006.00 - Lenovo Group Limited) Hidden
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 15.0.4701.1002 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1931906367-3255308075-3261805128-1001\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{D285FC5F-3021-32E9-9C59-24CA325BDC5C}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{3c3aafc8-d898-43ec-998f-965ffdae065a}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 37.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 37.0.1 (x86 de)) (Version: 37.0.1 - Mozilla)
NÜRNBERGER Tarifrechner (HKLM-x32\...\{C51206D1-26B0-4450-981B-2F5C97713D12}) (Version: 7.10 - NÜRNBERGER Versicherung Aktiengesellschaft Österreich)
NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)
NVIDIA Grafiktreiber 345.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 345.20 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4701.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden
#####_Mobile_RIA_extern (HKU\S-1-5-21-1931906367-3255308075-3261805128-1001\...\854bf6f10f4d3ef2) (Version: 2.5.0.431 - ##### Mobile RIA)
Password Safe Pro (HKLM-x32\...\{4D12E739-1DDC-403A-B04F-42580EDEB2AF}) (Version: 3.4.27.0 - Kuffs Software)
Pillars of Eternity (HKLM-x32\...\1207666813_is1) (Version: 2.0.0.1 - GOG.com)
Plantronics Calisto Driver (64-bit) (Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics CSR Driver (64-bit) (Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics CsrDfu Installer (x32 Version: 3.1.50883.11482 - Plantronics, Inc.) Hidden
Plantronics CsrDfu Installer (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics HidDfu Installer (x32 Version: 3.1.50883.11482 - Plantronics, Inc.) Hidden
Plantronics HidDfu Installer (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Hub DFU Handlers (32-bit) (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Hub Install Check (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Hub Native Runtime (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Hub Plugins (32-bit) (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Hub Runtime (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Hub Software (HKLM-x32\...\{ddd867da-abc0-494c-8b8a-a97dee816af0}) (Version: 3.4.50964.14834 - Plantronics, Inc.)
Plantronics Hub Startup (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Hub Update Service (x32 Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Hub WMP Plugin (64-bit) (Version: 3.4.50964.14834 - Plantronics, Inc.) Hidden
Plantronics Legacy Hub SDK (x32 Version: 3.0.0.0 - Plantronics, Inc.) Hidden
Plantronics MyHeadset Updater (HKLM-x32\...\{782cbc1e-3ae8-4a3f-9b3a-fa2206396621}) (Version: 3.1.50883.11482 - Plantronics, Inc.)
Plantronics MyHeadset Updater (x32 Version: 3.1.50883.11482 - Plantronics, Inc.) Hidden
Plantronics MyHeadset Updater Device Handlers (32-bit) (x32 Version: 3.1.50883.11482 - Plantronics, Inc.) Hidden
Plantronics MyHeadset Updater DFU Handlers (32-bit) (x32 Version: 3.1.50883.11482 - Plantronics, Inc.) Hidden
Plantronics MyHeadset Updater MLS (Version: 3.0.0.0 - Plantronics, Inc.) Hidden
Plantronics MyHeadset Updater Runtime (x32 Version: 3.1.50883.11482 - Plantronics, Inc.) Hidden
Plantronics MyHeadset Updater Startup (x32 Version: 3.1.50883.11482 - Plantronics, Inc.) Hidden
Polar FlowSync Version 2.3.8 (HKLM-x32\...\{A1538F5C-7B65-4DB6-9FFB-FFC0DF2E85D8}_is1) (Version: 2.3.8 - Polar Electro Oy)
REACHit (HKLM-x32\...\{4532E4C5-C84D-4040-A044-ECFCC5C6995B}) (Version: 2.1.0.3 - Lenovo, Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21260 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7363 - Realtek Semiconductor Corp.)
Scan2Encrypt 2 (HKLM-x32\...\{07092199-993B-4D17-B72F-532B59C1658F}) (Version: 21.14.13 - BinaryNow, Inc.)
SHAREit (HKLM-x32\...\SHAREit_is1) (Version: 2.1.15.0 - Lenovo Group Limited)
SHARP MX/MX-M Series PCL/PS Printer Driver (HKLM-x32\...\SHARP MX-2310U PCL PS Printer Driver) (Version: 1.00.000 - SHARP)
SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden
Sigma Data Center 4.0 (HKLM-x32\...\Sigma Data Center4.0) (Version: 4.0 - Sigma Elektro GmbH)
SimpleMind desktop Pro 1.9.4d (HKLM-x32\...\SMPRO1_is1) (Version: 1.9.4d - ModelMaker Tools BV)
Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.)
Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 2.6.2.4 - Splashtop Inc.)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.41459 - TeamViewer)
ThinkPad OneLink Dock (HKLM-x32\...\{8E1CACF5-2493-4950-9AD5-189903FE57E7}) (Version: 1.08.30 - Lenovo)
ThinkPad UltraNav Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.216.1616.118 - ALPS ELECTRIC CO., LTD.)
Thinkpad USB Ethernet Adapter Driver (HKLM-x32\...\{D8102684-7BA1-4948-88B9-535F84E6E588}) (Version: 8.18.923.2014 - Lenovo)
ThinkVantage Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.80.03.00 - Lenovo)
Tomb Raider (HKLM-x32\...\Tomb Raider_is1) (Version: - )
TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.340 - TuneUp Software) Hidden
TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities) (Version: 14.0.1000.340 - TuneUp Software)
TuneUp Utilities 2014 (x32 Version: 14.0.1000.340 - TuneUp Software) Hidden
UltraISO Premium V9.62 (HKLM-x32\...\UltraISO_is1) (Version: - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN)
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows-Treiberpaket - Cambridge Silicon Radio (CSRBC) USB (10/26/2012 2.4.0.0) (HKLM\...\20C7EDA3129B3FF8F72F9BF59252B718B554FBDC) (Version: 10/26/2012 2.4.0.0 - Cambridge Silicon Radio)
Windows-Treiberpaket - Intel Corporation (iaStorA) HDC (07/25/2014 13.2.4.1000) (HKLM\...\17BBDB2CE6FC18A4FA7D02835BA704A72B196AC1) (Version: 07/25/2014 13.2.4.1000 - Intel Corporation)
Windows-Treiberpaket - Lenovo 1.67.09.03 (11/07/2014 1.67.09.03) (HKLM\...\FA3F6F3D6E8958FDDEE1E09CC77DFA71B0D7835A) (Version: 11/07/2014 1.67.09.03 - Lenovo)
Windows-Treiberpaket - Plantronics, Inc. (usbser.ntamd64) Ports (04/21/2009 5.1) (HKLM\...\07AFE62D73C8799E9E5689F86FB9F48389717BA3) (Version: 04/21/2009 5.1 - Plantronics, Inc.)
Windows-Treiberpaket - SIGMA Elektro GmbH (usbser) Ports (04/27/2012 5.1.2600.5512) (HKLM\...\A4116E16EA28F359FEA424C9A3780F9D6A08961B) (Version: 04/27/2012 5.1.2600.5512 - SIGMA Elektro GmbH)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\##### #####\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1931906367-3255308075-3261805128-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\##### #####\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
==================== Restore Points =========================
29-04-2015 00:17:38 Windows Update
29-04-2015 00:25:24 test
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {1748DFB1-44B6-4D45-AEE5-C572B766AB49} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-23] (Google Inc.)
Task: {1B6734BF-D35B-4D6A-A698-22E61968C49D} - System32\Tasks\Lenovo\Lenovo Settings Power => Rundll32.exe "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
Task: {28192926-D5B2-4D20-9049-D2D4C77A5B38} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-10-22] (Realtek Semiconductor)
Task: {2A663F74-ABAD-4FA2-AD60-976E8566F799} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-10-22] (Realtek Semiconductor)
Task: {33A6387D-8F38-4CC2-9346-F81149CB463D} - System32\Tasks\Lenovo\Experience Improvement Logon => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2015-03-23] (Lenovo)
Task: {347E0EAD-FE1D-4A9A-9BF6-E27A7CE14628} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2014-09-10] (Lenovo)
Task: {3E3B9804-ADFD-49B1-A85A-17A07C7CA03E} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2014-12-12] ()
Task: {42A35C62-0785-4C0F-A17D-51E7DEA65082} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\webAgent.exe [2015-02-09] (Lenovo)
Task: {43BB0EB1-6721-45DC-8120-727C6444DFCB} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {4B2B8275-C3DB-4DBD-BB99-D6BAC80B08E1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-23] (Google Inc.)
Task: {4B443148-8367-4641-AD9C-E8A4CB92FFBB} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2014-07-16] (TuneUp Software)
Task: {4D0D0E3D-DDBB-4003-936D-FA73C138F3A9} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {57C65E26-F246-48A3-8663-769D5C9FB3FD} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-04-15] (Microsoft Corporation)
Task: {75393540-DFDE-4580-ABAC-B3FA22B36EA8} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\webAgent.exe [2015-02-09] (Lenovo)
Task: {80F60CCA-6746-49C4-9868-BC66E575BA7A} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-24] (Microsoft Corporation)
Task: {8E0EBF37-04AA-4D4B-8732-C3EC512CEE5E} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-03-25] (Microsoft Corporation)
Task: {9094427C-3D6D-40DD-8CE2-53BF95ED12D2} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {969D29CB-68D8-4C4F-8FAC-0CD03FC13543} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2015-03-27] ()
Task: {9E185FF6-65F0-4BF2-B628-A50C874C2E1C} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1931906367-3255308075-3261805128-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe
Task: {A0F91848-A460-43A6-92DB-F4586504DD37} - System32\Tasks\RtHDVBg_LENOVO_MICPKEY => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-10-22] (Realtek Semiconductor)
Task: {A2EC308E-F564-4A7D-B461-63F7CD76DA97} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {A7F3A355-5824-41FC-94FA-ACAA9C86E8F5} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe
Task: {ACEF3972-7E5F-4173-8329-6D4929BD628B} - System32\Tasks\Wiederherstellungspunkt => C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe [2014-11-21] (Microsoft Corporation)
Task: {B0052C6C-F89D-4002-A3AB-989AD143FA01} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
Task: {B5A2FD9B-D46E-42FC-AB3E-5983530CF015} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation)
Task: {CDB16075-46AA-475F-A3E1-25984DDEDD1D} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-03-09] ()
Task: {E8E36D13-36C2-445C-A588-23BF17FD17C4} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-03-09] (Lenovo)
Task: {EA590EC7-A500-4057-889C-9F437A7C3E66} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-03-07] (Oracle Corporation)
Task: {ED17EC25-A09F-443C-8E24-C9945579D0F7} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe [2015-03-06] ()
Task: {ED3560BD-8525-4FBA-A7EC-9F02384715EE} - System32\Tasks\Microsoft Office 15 Sync Maintenance for FILMIC-##### ##### Filmic => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-03-25] (Microsoft Corporation)
Task: {F48E4E4E-DB7B-4224-9771-2EEC7E8BE981} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation)
Task: {F6F63C55-7A58-45FC-8A07-432D71D8372C} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-09-02] (Lenovo)
Task: {FFEE4757-1B0F-4A35-9CB3-F3457BA98F7F} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-03-09] (Lenovo)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) ==============
2015-03-15 12:43 - 2015-02-04 22:29 - 00115912 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-03-24 17:44 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-01-23 17:42 - 2015-01-23 17:42 - 00087552 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\libglog.dll
2015-01-23 17:58 - 2015-01-23 17:58 - 01795976 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\cpprest120_1_4.dll
2015-01-23 17:58 - 2015-01-23 17:58 - 00357768 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\JsonCpp.dll
2014-07-16 11:24 - 2014-07-16 11:24 - 00699704 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll
2015-03-15 12:54 - 2015-01-16 08:49 - 00118272 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.dll
2015-03-15 12:54 - 2015-01-09 16:40 - 00469720 _____ () C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
2015-03-15 12:54 - 2015-01-09 16:40 - 00013528 _____ () C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
2015-03-15 12:54 - 2015-01-16 08:49 - 00118272 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.DLL
2015-04-28 22:52 - 2015-04-28 22:52 - 00025088 _____ () C:\Users\##### #####\AppData\Local\Temp\c35c5300abdcd94c37a763bb4ae0bd20\3a60df686e81c6d8e65a072aa3075313.dll
2015-04-28 22:52 - 2015-04-28 22:52 - 00057856 _____ () C:\Users\##### #####\AppData\Local\Temp\c35c5300abdcd94c37a763bb4ae0bd20\0082901dfdda40649ecb9b24468a98d7.dll
2012-09-13 01:38 - 2012-09-13 01:38 - 00264040 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
2015-03-15 12:46 - 2014-10-22 08:33 - 00078880 _____ () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
2012-09-23 21:43 - 2012-09-23 21:43 - 00024064 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Locale\de_de\ADIST64.deu
2015-03-15 12:50 - 2015-03-15 12:50 - 00183296 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\ErrorReporting.dll
2014-10-10 10:37 - 2014-10-10 10:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 00799232 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Networking\7b6f5d791c7cd68b32aafd29acb2e71c\Windows.Networking.ni.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 00228864 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Foundation\833b8df73b9caf0c73759a6d4b85c6be\Windows.Foundation.ni.dll
2014-11-27 11:42 - 2014-11-27 11:42 - 00034624 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\thread_pool.dll
2014-11-27 11:47 - 2014-11-27 11:47 - 00420160 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll
2014-11-27 11:44 - 2014-11-27 11:44 - 00129344 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\EXPAT.dll
2015-03-25 19:35 - 2015-03-25 19:35 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 01282048 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Devices\bd9568d53459ad96625ccca026823507\Windows.Devices.ni.dll
2015-04-18 16:30 - 2015-04-13 23:55 - 01252680 _____ () C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\libglesv2.dll
2015-04-18 16:30 - 2015-04-13 23:55 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\libegl.dll
2015-04-30 10:40 - 2015-04-30 10:40 - 00098816 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32api.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00110080 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\pywintypes27.dll
2015-04-30 10:40 - 2015-04-30 10:40 - 00364544 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\pythoncom27.dll
2015-04-30 10:40 - 2015-04-30 10:40 - 00045568 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\_socket.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 01161216 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\_ssl.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00320512 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32com.shell.shell.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00713216 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\_hashlib.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 01175040 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\wx._core_.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00805888 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\wx._gdi_.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00811008 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\wx._windows_.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 01062400 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\wx._controls_.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00735232 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\wx._misc_.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00682496 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\pysqlite2._sqlite.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00128512 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\_elementtree.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00127488 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\pyexpat.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00087552 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\_ctypes.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00119808 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32file.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00108544 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32security.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00007168 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\hashobjs_ext.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00167936 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32gui.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00018432 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32event.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00038912 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32inet.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00011264 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32crypt.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00070656 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\wx._html2.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00027136 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\_multiprocessing.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00020480 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\_yappi.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00035840 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32process.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00686080 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\unicodedata.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00122368 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\wx._wizard.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00024064 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32pipe.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00010240 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\select.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00025600 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32pdh.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00525640 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\windows._lib_cacheinvalidation.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00017408 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32profile.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00022528 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\win32ts.pyd
2015-04-30 10:40 - 2015-04-30 10:40 - 00078336 _____ () C:\Users\##### #####\AppData\Local\Temp\_MEI83122\wx._animate.pyd
2015-03-25 19:29 - 2015-03-25 19:29 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
2015-04-30 10:40 - 2015-04-30 10:40 - 00043008 _____ () c:\Users\##### #####\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppglnxb.dll
2015-03-04 23:45 - 2015-03-04 23:45 - 00750080 _____ () C:\Users\##### #####\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2015-03-04 23:45 - 2015-03-04 23:45 - 00047616 _____ () C:\Users\##### #####\AppData\Roaming\Dropbox\bin\libEGL.dll
2015-03-04 23:45 - 2015-03-04 23:45 - 00865280 _____ () C:\Users\##### #####\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll
2015-03-04 23:45 - 2015-03-04 23:45 - 00200704 _____ () C:\Users\##### #####\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll
2014-11-27 11:42 - 2014-11-27 11:42 - 00037696 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\qt_icontray_ex.dll
2012-09-23 21:43 - 2012-09-23 21:43 - 00010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\de_de\acrotray.deu
2015-03-05 17:59 - 2015-03-05 17:59 - 36625920 _____ () C:\Program Files (x86)\Plantronics\Spokes3G\libcef.dll
2012-09-13 01:38 - 2012-09-13 01:38 - 02144104 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll
2012-09-13 01:38 - 2012-09-13 01:38 - 07955304 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll
2012-09-13 01:38 - 2012-09-13 01:38 - 00341352 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll
2012-09-13 01:38 - 2012-09-13 01:38 - 00028008 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll
2012-09-13 01:38 - 2012-09-13 01:38 - 00127336 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll
2012-09-13 01:39 - 2012-09-13 01:39 - 00336232 _____ () C:\Program Files (x86)\Common Files\logishrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 03530752 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.UI.Xaml\0103f05d0b0a57a74f732b78ed30c54e\Windows.UI.Xaml.ni.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 01131008 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.App640a3541#\748a5c72e270d3ba99456fa9eb215c80\Windows.ApplicationModel.ni.dll
2015-03-25 07:00 - 2015-03-25 07:00 - 01340928 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\ReactiveUI\94f9c954389e90cbff8d487d6630b378\ReactiveUI.ni.dll
2015-03-25 07:00 - 2015-03-25 07:00 - 00304640 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\Splat\8df336410e4077341c5794bd91256839\Splat.ni.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 00960000 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.UI\2413ca0672d32a711bb597067f1f9f39\Windows.UI.ni.dll
2015-03-25 07:00 - 2015-03-25 07:00 - 00021504 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\AdjustWS\d267ce05feab8c0b668f44f5e64bd8e1\AdjustWS.ni.dll
2015-03-25 07:00 - 2015-03-25 07:00 - 00193024 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\WindowsPcl\7c7f39df335dd0bd0d54b753b5dda377\WindowsPcl.ni.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 00808448 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Storage\ea5a0a1c726e8cf0533fea3a74382fa0\Windows.Storage.ni.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 00402432 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Security\203b89de94bc0e8dc616d0b77000c07c\Windows.Security.ni.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 00304128 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Graphics\5fb69d21200f184c89b8b0b170835844\Windows.Graphics.ni.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 00133120 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.System\8a0a0788d2ff4a5c78aec753ec9dddcb\Windows.System.ni.dll
2015-04-29 21:48 - 2015-04-29 21:48 - 00149504 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\StoreSerializer\c2b7dff6dba1725992bbdca5226aeb85\StoreSerializer.ni.dll
2015-03-25 06:59 - 2015-03-25 06:59 - 00337920 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Data\fa785161bc5d323c3bc888599f4b0fd7\Windows.Data.ni.dll
2015-03-25 07:00 - 2015-03-25 07:00 - 00092672 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\WindowsUap\430c73692fce7719fe3cffd417585fd2\WindowsUap.ni.dll
2015-03-25 07:00 - 2015-03-25 07:00 - 00069120 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\PCLStorage.0cbfed36#\85376483da6df559762d7f297ed80532\PCLStorage.Abstractions.ni.dll
2015-03-25 07:00 - 2015-03-25 07:00 - 00150528 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\PCLStorage\eaf06bcf09a896d55aa74490bb671cb4\PCLStorage.ni.dll
2015-03-25 07:00 - 2015-03-25 07:00 - 00011264 _____ () C:\Users\##### #####\AppData\Local\Packages\6Wunderkinder.Wunderlist_b4cwydgxqx59r\AC\Microsoft\CLR_v4.0_32\NativeImages\WindowsPclNet40\e3a7e1153e739bb323a97cd890648e39\WindowsPclNet40.ni.dll
2015-03-15 12:54 - 2015-01-07 10:29 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll
2015-03-15 12:54 - 2015-01-07 10:29 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll
2014-07-16 11:21 - 2014-07-16 11:21 - 00611128 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUKernel.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00152888 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUBasic.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00820024 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\MainControls.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00119096 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUTransl.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00129336 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\SchedAgent_2007.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00278840 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\AppInitialization.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00493368 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\Html.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00449848 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\GR32_D6.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00335672 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUCompression.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00307000 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\ntrtl60.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00307000 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\DEC.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00210744 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\XMLComponents.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00470328 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\SysInfo.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00458040 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\PowerManager.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00154424 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\cefcomponent.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00423224 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\VisControls.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00144184 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUIcoEngineerDirTree.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00076600 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUShell.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00069944 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxGDIPlusD12.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00044856 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxCoreD12.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00632632 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUDiskCleanerClass.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00656184 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\MSI_D6.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00092984 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUApps.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00215864 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\ProgramRating.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00962872 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TuningWizard.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00068408 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\SysControls.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00047928 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUApplications.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00083256 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUOperaClass.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00107320 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\Internet.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00489272 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\Traces.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00042808 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUSafariClass.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 01145144 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxBarD12.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00852280 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\cxLibraryD12.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00055608 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxThemeD12.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00033080 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUBase.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00609080 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\VirtualTreesR.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00207672 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxBarExtItemsD12.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00809272 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxSkinsCoreD12.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00329016 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxDockingD12.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00928056 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxRibbonD12.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00140088 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\CommonForms.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00161080 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\PerlRegEx.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00107320 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUShredder.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00065848 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUIECacheClass.bpl
2014-07-16 11:21 - 2014-07-16 11:21 - 00042808 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TURar.bpl
2014-07-16 11:22 - 2014-07-16 11:22 - 00016184 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxComnD12.bpl
2014-06-23 09:44 - 2014-06-23 09:44 - 13417496 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\libcef.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\Users\##### #####\OneDrive:ms-properties
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service"
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, the associated entry will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1931906367-3255308075-3261805128-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\##### #####\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-1931906367-3255308075-3261805128-1001\...\StartupApproved\StartupFolder: => "Logitech . Produktregistrierung.lnk"
==================== FirewallRules (whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{981E0391-422B-4C88-B542-551543A4AE04}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{242EC7E7-0AF0-483A-BC03-216CF50820B0}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{C76086AA-29AC-4FFA-87CD-570A2DA9300B}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{CF039633-6540-4406-A338-0781E9430D04}] => (Allow) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
FirewallRules: [{9324AEAB-41B9-4054-8C4E-E64F357381E9}] => (Allow) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
FirewallRules: [{194ABEB3-1601-423C-87B0-0ED15CEE7BF1}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{588D3554-168F-4DB1-A192-706AF3F06BF8}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{F2DFDCB1-6ABB-486B-96FD-B471124546BC}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{F25773FE-DB7C-4E6A-AF06-1D941E0C859D}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{A2AF4803-4663-4407-ACA4-76F723D6A16C}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
FirewallRules: [{AA76CCDD-9BBE-47C6-89D9-A436426B9303}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
FirewallRules: [TCP Query User{559B3184-1556-484F-8F46-A671B16F1BD9}C:\program files (x86)\kuffs software\kps\kps.exe] => (Allow) C:\program files (x86)\kuffs software\kps\kps.exe
FirewallRules: [UDP Query User{AEC43A9E-FD6C-47D8-81FF-2E8EF2824B37}C:\program files (x86)\kuffs software\kps\kps.exe] => (Allow) C:\program files (x86)\kuffs software\kps\kps.exe
FirewallRules: [{3ADE76A5-E674-468F-A869-A91570C538A5}] => (Allow) LPort=5354
FirewallRules: [{9AB95035-4B16-4BAA-AEA6-7CC5A26D0EB9}] => (Allow) LPort=5354
FirewallRules: [{CA1E24CC-4B86-4315-8F73-F71A1BCA28D8}] => (Allow) LPort=5354
FirewallRules: [{A7AD1126-2EB8-49E1-9F11-3EB12AB64778}] => (Allow) LPort=5354
FirewallRules: [{807DB919-E4A5-4EA3-AD69-A7CBDDE3894C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{152BA465-4FC0-48EE-B11C-C00A88D0ADA0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{5C3CA3AE-0573-4AD5-8E60-19DF0AE90D39}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [UDP Query User{55B46992-3222-4414-A90F-6EACAA44A775}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [TCP Query User{95F3635C-BDE9-4D6A-8742-483706AAFF8B}C:\users\##### #####\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\##### #####\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{BD49444F-C1B5-441C-8005-7E320C539AC1}C:\users\##### #####\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\##### #####\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{DFF4D469-1F79-4FCD-BC1F-E371AFFD3F07}] => (Allow) C:\Program Files (x86)\ModelMakerTools\SimpleMind\1.9.4\iPhoneLink.exe
FirewallRules: [{323730A7-274A-4973-8B5D-A529CD1D152D}] => (Allow) C:\Users\##### #####\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{2EE7AF2E-C80E-428A-A2D7-4A97EB46E226}] => (Allow) C:\Users\##### #####\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{6BFD09BA-E5FA-43F5-9AD8-28DF4CA67AC1}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [TCP Query User{F4CBEFC7-25EA-4730-8AF1-52C75C72063A}C:\program files (x86)\modelmakertools\simplemind\1.9.4\iphonelink.exe] => (Allow) C:\program files (x86)\modelmakertools\simplemind\1.9.4\iphonelink.exe
FirewallRules: [UDP Query User{8BD95462-7F00-4440-8BF6-560ABC027834}C:\program files (x86)\modelmakertools\simplemind\1.9.4\iphonelink.exe] => (Allow) C:\program files (x86)\modelmakertools\simplemind\1.9.4\iphonelink.exe
FirewallRules: [TCP Query User{98730808-EE81-4593-B963-6F04061400AA}C:\merkur\masnet\java\bin\javaw.exe] => (Allow) C:\merkur\masnet\java\bin\javaw.exe
FirewallRules: [UDP Query User{06824DF2-69D1-4ECA-9A41-0A0708E26130}C:\merkur\masnet\java\bin\javaw.exe] => (Allow) C:\merkur\masnet\java\bin\javaw.exe
FirewallRules: [{21585B97-240B-4064-AC18-B4800240B5CF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{E90DFAE3-D5A1-4F6F-B581-4CC2656018F2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{A942849C-78F8-4FA0-96B5-0E687523C697}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{F1B23F77-EEBB-409A-8B94-324D7C2E7DC2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [TCP Query User{99A68734-688D-47E9-A279-EB67C8FBC80E}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [UDP Query User{45C119DD-053E-40CA-B697-F96F76C47D2E}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [TCP Query User{4902D01A-1BEB-4805-B913-91E708139361}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [UDP Query User{7F3F2CC2-4EF7-4FD7-A200-F5F626E13BDD}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [{8FB57E47-73EC-4D58-9D21-27E414062A00}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{2AC02B9A-FC78-426C-BA93-C3F3E4FA0493}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{808A98A9-B7F7-406C-9D64-2263BDE5A3E6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7DB65F50-92F4-4ED0-951F-FB3473B699CF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{34F11DF1-3E55-4F58-887A-8EC27A330ADD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{3C0216F3-4900-4E82-BCBE-C2C1E602E7C4}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{6502AABA-E9E3-4C33-BECB-9114CD22E1B6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{EC7FDB9D-ADF2-473F-A39D-4963E419EB61}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{C6735267-2227-4FBF-BA63-E4D5A1A55697}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{4EB2125F-4A8E-46CA-B923-63E6C3A7B1DD}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRServer.exe
FirewallRules: [{173E1D2A-4B12-4A5E-A76B-6D2B9614C0AC}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe
FirewallRules: [{3D2CDCCD-F797-4910-83A2-B2F0A2808054}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\DataProxy.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (04/30/2015 11:19:47 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: wfcrun32.exe, Version: 11.2.0.31560, Zeitstempel: 0x4aac1955
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17736, Zeitstempel: 0x550f42c2
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00018ad9
ID des fehlerhaften Prozesses: 0x2824
Startzeit der fehlerhaften Anwendung: 0xwfcrun32.exe0
Pfad der fehlerhaften Anwendung: wfcrun32.exe1
Pfad des fehlerhaften Moduls: wfcrun32.exe2
Berichtskennung: wfcrun32.exe3
Vollständiger Name des fehlerhaften Pakets: wfcrun32.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: wfcrun32.exe5
Error: (04/30/2015 11:19:47 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (04/30/2015 10:43:14 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (04/30/2015 10:43:13 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (04/30/2015 10:40:52 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (04/30/2015 09:09:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: wfcrun32.exe, Version: 11.2.0.31560, Zeitstempel: 0x4aac1955
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17736, Zeitstempel: 0x550f42c2
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00018ad9
ID des fehlerhaften Prozesses: 0x2728
Startzeit der fehlerhaften Anwendung: 0xwfcrun32.exe0
Pfad der fehlerhaften Anwendung: wfcrun32.exe1
Pfad des fehlerhaften Moduls: wfcrun32.exe2
Berichtskennung: wfcrun32.exe3
Vollständiger Name des fehlerhaften Pakets: wfcrun32.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: wfcrun32.exe5
Error: (04/30/2015 09:09:51 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (04/29/2015 08:57:29 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (04/29/2015 08:57:29 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (04/29/2015 03:31:36 PM) (Source: NV) (EventID: 0) (User: )
Description: Fehler: ForceDelete4Vista fehlgeschlagen, Der Zugriff auf den Pfad wurde verweigert.
System errors:
=============
Error: (04/30/2015 10:35:00 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Gruppenrichtlinienclient" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (04/30/2015 10:35:00 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst gpsvc erreicht.
Error: (04/30/2015 10:34:30 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst Appinfo erreicht.
Error: (04/30/2015 09:10:32 AM) (Source: DCOM) (EventID: 10010) (User: FILMIC)
Description: {D085A4AB-CAB1-4729-9DF8-FCEEDDBD19E4}
Error: (04/30/2015 09:08:58 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst SplashtopRemoteService erreicht.
Error: (04/30/2015 09:07:34 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst Appinfo erreicht.
Error: (04/30/2015 09:07:34 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Der Dienst Acronis Sync Agent Service konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
Error: (04/29/2015 00:55:05 AM) (Source: DCOM) (EventID: 10010) (User: FILMIC)
Description: {D085A4AB-CAB1-4729-9DF8-FCEEDDBD19E4}
Error: (04/29/2015 00:53:49 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 29.04.2015 um 00:52:08 unerwartet heruntergefahren.
Error: (04/29/2015 00:51:36 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst Appinfo erreicht.
Microsoft Office Sessions:
=========================
Error: (04/30/2015 11:19:47 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: wfcrun32.exe11.2.0.315604aac1955ntdll.dll6.3.9600.17736550f42c2c000000500018ad9282401d08326cda12b48C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exeC:\WINDOWS\SYSTEM32\ntdll.dll0b6c31e0-ef1a-11e4-8270-6057185ffe64
Error: (04/30/2015 11:19:47 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80.DLL
Error: (04/30/2015 10:43:14 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80.DLL
Error: (04/30/2015 10:43:13 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80.DLL
Error: (04/30/2015 10:40:52 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80.DLL
Error: (04/30/2015 09:09:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: wfcrun32.exe11.2.0.315604aac1955ntdll.dll6.3.9600.17736550f42c2c000000500018ad9272801d08314a41f289bC:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exeC:\WINDOWS\SYSTEM32\ntdll.dlle68a778e-ef07-11e4-826f-6057185ffe64
Error: (04/30/2015 09:09:51 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80.DLL
Error: (04/29/2015 08:57:29 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80.DLL
Error: (04/29/2015 08:57:29 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_cbf21254470d8752\MFC80.DLL
Error: (04/29/2015 03:31:36 PM) (Source: NV) (EventID: 0) (User: )
Description: Fehler: ForceDelete4Vista fehlgeschlagen, Der Zugriff auf den Pfad wurde verweigert.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i7-5500U CPU @ 2.40GHz
Percentage of memory in use: 30%
Total physical RAM: 16294.39 MB
Available physical RAM: 11309.14 MB
Total Pagefile: 18726.39 MB
Available Pagefile: 12922.35 MB
Total Virtual: 131072 MB
Available Virtual: 131071.79 MB
==================== Drives ================================
Drive c: (Windows8_OS) (Fixed) (Total:462.56 GB) (Free:91.66 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: () (Removable) (Total:31.99 GB) (Free:23.99 GB) FAT32
Drive z: () (Network) (Total:3664.62 GB) (Free:2443.43 GB)
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: D8614434)
Partition: GPT Partition Type.
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 58.8 GB) (Disk ID: 00000000)
Partition: GPT Partition Type.
==================== End Of Log ============================ |