addition.txt Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:10-01-2015 01
durchgeführt von Thomas Ratzke (2016-01-14 09:53:37)
Gestartet von C:\Users\Thomas Ratzke\Downloads
Windows 10 Home (X64) (2015-12-12 02:38:40)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1218043409-3151763047-2122344536-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1218043409-3151763047-2122344536-503 - Limited - Disabled)
Gast (S-1-5-21-1218043409-3151763047-2122344536-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1218043409-3151763047-2122344536-1011 - Limited - Enabled)
Luke Ratzke (S-1-5-21-1218043409-3151763047-2122344536-1003 - Limited - Enabled) => C:\Users\Luke Ratzke
Melanie Ratzke (S-1-5-21-1218043409-3151763047-2122344536-1002 - Limited - Enabled) => C:\Users\Melanie Ratzke
Thomas Ratzke (S-1-5-21-1218043409-3151763047-2122344536-1001 - Administrator - Enabled) => C:\Users\Thomas Ratzke
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Spybot - Search and Destroy (Enabled - Out of date) {A16C3F68-9280-E053-1818-342707FECF4D}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.180 - Adobe Systems Incorporated)
Age of Mythology: Extended Edition (HKLM-x32\...\Steam App 266840) (Version: - SkyBox Labs)
AllDup 3.4.24 (HKLM-x32\...\AllDup_is1) (Version: 3.4.24 - Michael Thummerer Software Design)
Amazon Music (HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\Amazon Amazon Music) (Version: 4.0.0.1205 - Amazon Services LLC)
Anno 2070 (HKLM-x32\...\Steam App 48240) (Version: - BlueByte)
Apple Application Support (32-Bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2245 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Corel Painter Essentials 3 (HKLM-x32\...\_{0C180787-F8C8-42FD-A9D3-689BA44BEAAF}) (Version: - Corel Corporation)
Corel Painter Essentials 3 (x32 Version: 3.2 - Corel Corporation) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dawn of War - Dark Crusade (HKLM-x32\...\{FF39FC01-819B-42E4-AE49-1968AF12DDD4}) (Version: 1.00.0000 - THQ)
Dawn of War - Soulstorm (HKLM-x32\...\{20533183-D42D-4261-A125-956736FBEA8C}) (Version: 1.00.0000 - THQ)
Dawn of War - Soulstorm (x32 Version: 1.00.0000 - THQ) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
DIE SIEDLER - Aufstieg eines Königreichs (HKLM-x32\...\{D3F80A98-05AB-4D8C-9272-766CCFA6A48D}) (Version: 1.00.0000 - Ubisoft)
Die Siedler 7 (HKLM-x32\...\{9C916142-C18C-429D-BFED-40094A7E0BEB}) (Version: 1.12.1396 - Ubisoft)
Dropbox (HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\Dropbox) (Version: 3.2.9 - Dropbox, Inc.)
Dungeon Keeper Gold (HKLM-x32\...\GOGPACKDUNGEONKEEPER_is1) (Version: 2.0.0.4 - GOG.com)
DVD Profiler Version 3.9.1 (HKLM-x32\...\InvelosDVDProfiler_is1) (Version: - )
DVD Shrink 3.2 (HKLM-x32\...\DVD Shrink_is1) (Version: - DVD Shrink)
DVD Shrink 3.2 deutsch (DeCSS-frei) (HKLM-x32\...\DVD Shrink DE_is1) (Version: - DVD Shrink)
DVDFab 9.2.0.2 (10/06/2015) (HKLM-x32\...\DVDFab 9_is1) (Version: - Fengtao Software Inc.)
EA Download Manager (HKLM-x32\...\InstallShield_{EF7E931D-DC84-471B-8DB6-A83358095474}) (Version: 4.0.0.396 - Electronic Arts)
EA Download Manager (x32 Version: 4.0.0.396 - Electronic Arts) Hidden
Earthworm Jim (HKLM-x32\...\Steam App 38480) (Version: - Interplay Inc.)
EaseUS Partition Master 10.8 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS)
EaseUS Todo Backup Free 8.9 (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 8.9 - CHENGDU YIWO Tech Development Co., Ltd)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
EPSON Stylus SX400 Series Printer Uninstall (HKLM\...\EPSON Stylus SX400 Series) (Version: - SEIKO EPSON Corporation)
Fallout 3 (HKLM-x32\...\Steam App 22300) (Version: - Bethesda Softworks)
FileZilla Client 3.14.1 (HKLM-x32\...\FileZilla Client) (Version: 3.14.1 - Tim Kosse)
Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{6C5F8503-55D2-4398-858C-362B7A7AF51C}) (Version: 2.1.31.0 - MAGIX AG)
FormatFactory 3.8.0.0 (HKLM-x32\...\FormatFactory) (Version: 3.8.0.0 - Free Time)
Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 3.0.4.9 - Genesys Logic)
Gigaset QuickSync (HKLM\...\{18e951f2-329a-4ed2-833b-d980960db29e}) (Version: 8.2.0865.2 - Gigaset Communications GmbH)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
GOG.com Downloader version 3.6.0 (HKLM-x32\...\{456A5815-604D-4D72-94DF-346D2B978A59}_is1) (Version: 3.6.0 - GOG.com)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve)
Half-Life 2: Episode One (HKLM-x32\...\Steam App 380) (Version: - Valve)
Half-Life 2: Episode Two (HKLM-x32\...\Steam App 420) (Version: - Valve)
Heroes of Might and Magic 5 (HKLM-x32\...\Steam App 15170) (Version: - Ubisoft)
Heroes of Might and Magic V: Hammers of Fate (HKLM-x32\...\Steam App 15380) (Version: - Ubisoft)
Homeworld Remastered Collection (HKLM-x32\...\Steam App 244160) (Version: - Gearbox Software)
iClone v4.2 EX (HKLM-x32\...\{7430B12A-3B67-4191-B0C5-59E57344CB1F}) (Version: 4.2.1718.1 - Reallusion Inc.)
iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.)
Inhaltsmanager-Assistent für PlayStation(R) (HKLM-x32\...\{E6EB4571-5ADB-4557-8F95-0E0EF5D0F833}) (Version: 3.30.7824.86 - Sony Computer Entertainment Inc.)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 15.4 - Intel)
IPTInstaller (HKLM-x32\...\{6965F2F4-1CD2-4F42-A8EF-9EF433F9AA72}) (Version: 4.0.4 - HTC)
iSkysoft DRM Removal(Build 1.1.0.0) (HKLM-x32\...\iSkysoft DRM Removal_is1) (Version: - iSkysoft Software)
iTunes (HKLM\...\{FBEB98F8-64E4-4FA3-A15E-4A9F42FF962E}) (Version: 12.3.2.35 - Apple Inc.)
Java SE Development Kit 7 Update 65 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170650}) (Version: 1.7.0.650 - Oracle)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Lenovo Dynamic Brightness System (HKLM-x32\...\{D9ED6D06-6002-495E-A7BC-46E6AE386996}) (Version: 4.0.00.22080 - Lenovo)
Lenovo Eye Distance System (HKLM-x32\...\{5183D7AB-D09B-411F-A74E-BBAEA61C6505}) (Version: 4.0.00.21090 - Lenovo)
Lenovo Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3720 - CyberLink Corp.)
Lenovo Power2Go (x32 Version: 6.0.3720 - CyberLink Corp.) Hidden
Lenovo Rescue System (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 3.0.1409 - CyberLink Corp.)
Lenovo Rescue System (Version: 3.0.1409 - CyberLink Corp.) Hidden
Lenovo Treiber- und Anwendungsinstallation (HKLM-x32\...\{45970CD1-D599-47D4-938F-3E9800D54ED1}) (Version: 5.10.1809 - Lenovo)
Lenovo USB2.0 UVC Camera (HKLM-x32\...\{70D2C5B8-EB22-45B1-9EAA-5E8C1C408A3B}) (Version: 1.00.0000 - Vimicro Corporation)
Logitech Harmony Remote Software 7 (HKLM-x32\...\{5C6F884D-680C-448B-B4C9-22296EE1B206}) (Version: 7.7.0.0 - Logitech)
LXH-JME2207FN Hotkey Driver (HKLM-x32\...\{42B21298-C850-4272-AFD9-636CBC005421}) (Version: 5.1.0804 - Lenovo)
Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Manager (x32 Version: 4.0.1.25166 - 2015 pdfforge GmbH. All rights reserved) Hidden
Media Go (HKLM-x32\...\{65256C0D-3FE7-4D2E-BB3E-53F1175481C8}) (Version: 3.0.403 - Sony)
Media Go Network Downloader (HKLM-x32\...\{C52148B9-19E0-433A-9422-3451B1BEE20F}) (Version: 1.6.01.0 - Sony)
Media Go Video Playback Engine 2.20.103.05220 (HKLM-x32\...\{17BC85C9-EA45-84A7-F4DB-C0D63BBE98DE}) (Version: 2.20.103.05220 - Sony)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{B636C9B9-A3F2-4DCE-ADCC-72E095018385}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Might & Magic Heroes VI - Game Official Demo (HKLM-x32\...\{A024B9E5-7702-4556-A7BF-A04BFF2DE5D8}) (Version: 1.0 - Ubisoft)
MobileMe Control Panel (HKLM\...\{6DD01FF3-63CE-436B-96DB-61363EAA4EB8}) (Version: 3.1.8.0 - Apple Inc.)
Movie Studio Platinum 13.0 (64-bit) (HKLM\...\{2B593480-2BF0-11E5-9124-F04DA23A5C58}) (Version: 13.0.955 - Sony)
Mozilla Firefox 43.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 43.0.3 (x86 de)) (Version: 43.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.3 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Music Manager (HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\MusicManager) (Version: - Google, Inc.)
MyHarmony (HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\036a0e4fc6a247ec) (Version: 1.0.1.257 - Logitech)
Nero 11 (HKLM-x32\...\{810B7362-6B05-4714-AF6A-EF3A20CCD634}) (Version: 11.2.00600 - Nero AG)
Nero Backup Drivers (HKLM\...\{D600D357-5CB9-4DE9-8FD4-14E208BD1970}) (Version: 12.0.4000 - Nero AG)
Nero Info (HKLM-x32\...\{F030BFE8-8476-4C08-A553-233DE80A2BE1}) (Version: 16.0.1009 - Nero AG)
NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 361.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 361.43 - NVIDIA Corporation)
NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5983 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.8.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.8.1.21 - NVIDIA Corporation)
NVIDIA Grafiktreiber 361.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 361.43 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation)
PDF Architect 4 (HKLM-x32\...\PDF Architect 4) (Version: 4.0.34.26215 - pdfforge GmbH)
PDF Architect 4 Create Module (Version: 4.0.9.25450 - pdfforge GmbH) Hidden
PDF Architect 4 Edit Module (Version: 4.0.9.25450 - pdfforge GmbH) Hidden
PDF Architect 4 View Module (Version: 4.0.9.25450 - pdfforge GmbH) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.2.2 - pdfforge)
PlayMemories Home (HKLM-x32\...\{0657DE52-8F5C-4073-B70C-ED4F3F7FA076}) (Version: 7.0.03.04240 - Sony Corporation)
Portal (HKLM-x32\...\Steam App 400) (Version: - Valve)
Prey (HKLM-x32\...\Steam App 3970) (Version: - Humanhead Studios)
proDAD Heroglyph 2.5 (HKLM-x32\...\proDAD-Heroglyph-2.5) (Version: 2.6.32 - proDAD GmbH)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6151 - Realtek Semiconductor Corp.)
Remote Control USB Driver (HKLM-x32\...\{8471021C-F529-43DE-84DF-3612E10F58C4}) (Version: 2.3.2.317 - )
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
SHIELD Streaming (Version: 4.1.0250 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.8.1.21 - NVIDIA Corporation) Hidden
Sid Meier's Civilization IV (HKLM-x32\...\Steam App 3900) (Version: - Firaxis)
Sid Meier's Civilization IV: Beyond the Sword (HKLM-x32\...\Steam App 8800) (Version: - Firaxis)
Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.)
Sony PC Companion 2.10.289 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.289 - Sony)
Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.14 - Splashtop Inc.)
Splashtop Streamer (HKLM-x32\...\InstallShield_{2EFEAD58-3311-4B2B-9D8A-8D663581D109}) (Version: 2.1.5.2 - Splashtop Inc.)
Splashtop Streamer (x32 Version: 2.1.5.2 - Splashtop Inc.) Hidden
Spotify (HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\Spotify) (Version: 1.0.3.101.gbfa97dfe - Spotify AB)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.5.43 - Safer-Networking Ltd.)
STAR WARS® - Empire At War™ Gold (HKLM-x32\...\1421404887_is1) (Version: 2.0.0.3 - GOG.com)
STAR WARS® - Knights of the Old Republic™ (HKLM-x32\...\1207666283_is1) (Version: 2.0.0.3 - GOG.com)
STAR WARS® Jedi Knight - Dark Forces 2 (HKLM-x32\...\1422286819_is1) (Version: 2.0.0.3 - GOG.com)
STAR WARS™ Jedi Knight™ II - Jedi Outcast™ (HKLM-x32\...\1428935917_is1) (Version: 2.0.0.3 - GOG.com)
StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Steuer-Spar-Erklärung 2011 (HKLM-x32\...\{9F5FD796-86F0-4360-85F8-D54C0F5411EB}) (Version: 16.13 - Akademische Arbeitsgemeinschaft Verlag)
Steuer-Spar-Erklärung 2012 (HKLM-x32\...\{CCD2BAD2-0919-40CB-80CC-E9538B0E4C2E}) (Version: 17.11 - Wolters Kluwer Deutschland GmbH)
Steuer-Spar-Erklärung 2013 (HKLM-x32\...\{AEB61F7A-4BBA-4292-A096-7893E09034A4}) (Version: 18.09 - Wolters Kluwer Deutschland GmbH)
SteuerSparErklärung 2014 (HKLM-x32\...\{A463EB06-22A6-47F5-9593-E52B291EF13E}) (Version: 19.12.92 - Akademische Arbeitsgemeinschaft)
SUPER © v2014.build.62+Recorder (2014/09/21) Version v2014.buil (HKLM-x32\...\{8E2A18E2-96AF-8649-4DE7-5C06C90719A4}_is1) (Version: v2014.build.62+Recorder - eRightSoft)
System Requirements Lab (HKLM-x32\...\SystemRequirementsLab) (Version: - )
The GodFather (HKLM-x32\...\The GodFather) (Version: - )
ThemeWallpaper (HKLM-x32\...\{F29CBF73-C211-4616-898A-379A2679F990}) (Version: 1.1.0.090804 - Lenovo)
Trillian (HKLM-x32\...\Trillian) (Version: - Cerulean Studios, LLC)
Turbo Lister 2 (HKLM-x32\...\{8927E07C-97F7-4A54-88FB-D976F50DD46E}) (Version: 2.00.0000 - eBay Inc.)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Ulead PhotoImpact X3 (HKLM-x32\...\InstallShield_{15803703-25FA-4C01-A062-3F4A59937E87}) (Version: 1.00.0000 - Corel)
Ulead PhotoImpact X3 (x32 Version: 1.00.0000 - Corel) Hidden
Vasco da Gama 4 HDPro (HKLM-x32\...\{05BBF12D-565E-4212-8BDD-C482C72866DD}) (Version: 4.00.0000 - MotionStudios)
VidCoder 1.5.31 (x64) (HKLM\...\VidCoder-x64_is1) (Version: 1.5.31 - RandomEngy)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Warner Bros. Digital Copy Manager (HKLM-x32\...\com.warnerbros.DigitalCopyManager.449F66ACC381FDC604DC2AA255FEECEEBBBEE1E5.1) (Version: 1.70 - Warner Bros. Entertainment Inc.)
Warner Bros. Digital Copy Manager (x32 Version: 1.70 - Warner Bros. Entertainment Inc.) Hidden
Welcome App (Start-up experience) (x32 Version: 11.0.23500.0.0 - Nero AG) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows XP Mode (HKLM\...\{1374CC63-B520-4f3f-98E8-E9020BF01CFF}) (Version: 1.3.7600.16432 - Microsoft Corporation)
WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
XML Notepad 2007 (HKLM-x32\...\{FC7BACF0-1FFA-4605-B3B4-A66AB382752D}) (Version: 2.3.0.0 - Microsoft Corporation)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas Ratzke\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {02E10510-A547-494A-9D5A-40B2FE4D0076} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
Task: {03CF3941-A5EB-4A5D-84DC-A42FC2982F9E} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2015-05-06] (Nero AG)
Task: {07C87CCB-B2E7-4C0E-9051-3A74F49676C5} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2015-06-16] (Safer-Networking Ltd.)
Task: {0CFE2E40-6A97-48C5-9F38-DE82315CF1B0} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {0F80665D-0433-4562-A64D-77D17AE6E51A} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {18328E56-666F-4FBB-8645-6356DC741DBD} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {20107E34-CEFB-4B82-8608-91E485907AB4} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {269751A5-1E8A-4ABC-A55B-D40514BEFEA7} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-11-23] (Microsoft Corporation)
Task: {26CA76CF-7DB1-4F12-88D9-F297C6CB0597} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {280C1E7E-5CB6-4DC7-A61C-4ADEE397CA6E} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {2A880E2A-4823-4B1A-95CC-8A37511BB490} - System32\Tasks\Format Factory => C:\Users\Thomas Ratzke\AppData\Local\Temp\is-1C0LD.tmp\prsetup.exe [2015-10-24] (Free Time ) <==== ACHTUNG
Task: {323601EE-CC47-43D2-9D0E-829756D92381} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {38CFA671-3EBE-45FE-BF10-941FC8258D63} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {3D5737C5-EFDD-47D1-8E65-CE48B02C569D} - System32\Tasks\{86A63F94-FD74-4B2C-AD21-C5082463B96D} => pcalua.exe -a "C:\Users\Thomas Ratzke\Downloads\JavaSetup8u40.exe" -d "C:\Users\Thomas Ratzke\Downloads"
Task: {3E4F7CBB-12A9-4FB6-846C-E4650759363A} - System32\Tasks\{CE52BE5C-8F2F-41B9-9383-F051D5E4B7AB} => pcalua.exe -a "C:\Users\Thomas Ratzke\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZS6UT17X\JavaSetup8u40.exe" -d "C:\Users\Thomas Ratzke\Desktop"
Task: {3EEA0947-99CC-4D10-8CBE-E929E3FDC5EB} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {3F9213D2-BF62-4A8B-92E1-5195E3234256} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {406F4A92-9EB1-4111-83F2-1C8513F341C0} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
Task: {493274B7-99AC-4978-9438-2013DFAAA3F3} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {4CFC482A-7F3F-4574-AC61-DA999D34E63C} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {5010C001-5D4F-44B3-A250-CE27A03DE36E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {54D4B834-8C90-41DB-9FE6-96272BBCC4AD} - System32\Tasks\{335F9BA8-081E-4E9F-AA0C-FA29983082B1} => pcalua.exe -a G:\Safe\Nero\Nero7_chm_deu.exe
Task: {56D221FB-A8BF-4047-B8EE-4FFF0C7D9DF0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2015-06-16] (Safer-Networking Ltd.)
Task: {630AEEDF-CD30-43BB-8A6B-FCDBAD67C73D} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {6843F01E-E280-43C8-A99C-754C2C7F83F6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1218043409-3151763047-2122344536-1001UA => C:\Users\Thomas Ratzke\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {6A6CA0A2-0A16-4AC1-B7F2-8B83130A24D5} - \CCleanerSkipUAC -> Keine Datei <==== ACHTUNG
Task: {6AD6CFFE-0357-4A36-A259-DD9125A57965} - System32\Tasks\{173A6382-5B3C-46CB-993C-B3C4A64480BB} => pcalua.exe -a D:\SETUP.EXE -d D:\
Task: {723638DC-4A6A-4EB4-9328-C6E5591847C4} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {731AED53-0655-439F-BAA6-0ED7E5585FFE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {746835B7-8675-416C-87E7-EB68234BDDBF} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {74714ED8-09FC-4484-A0F8-C1B90F945099} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {79474E7A-89A9-42B8-B1D6-DFA58DCC2DF6} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe
Task: {7E91FD94-C7DE-42FD-9892-259B96CFE314} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {8795F85C-B330-4CF1-949F-A981D06AA86D} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {87E999FF-1C14-4ACB-AA62-7EF4C8DD5904} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {8BB21638-D722-4970-8494-4512DFBBEFA3} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {8E9FB6BA-E80F-448D-8CEC-C10F90DBFB47} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2015-06-16] (Safer-Networking Ltd.)
Task: {932FF5D1-5E38-4DE0-A951-F2A2152ACD03} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {9683E79B-EA41-4ADF-95BC-4DF39B7E698C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {9BDA3F8F-EB93-4067-B2F6-D50065A37800} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-15] (Adobe Systems Incorporated)
Task: {9BF1CCD1-4116-429E-860F-AA055C334D1B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {A0BCA1B8-C642-40A5-B23F-855725EFFC4F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {A1CDD364-365A-40AF-9585-8EFF375F9593} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-12-17] (AVAST Software)
Task: {A5F483D0-280E-4A7F-B7DF-8E871982D929} - System32\Tasks\{AC642351-857E-4F5E-97A5-B91274266F7E} => pcalua.exe -a "C:\Users\Thomas Ratzke\Downloads\jre-8u40-windows-i586.exe" -d "C:\Users\Thomas Ratzke\Desktop"
Task: {A8892BD7-84EA-4896-90A6-CC23E4018A0B} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {A918B0E8-CEFC-4A4F-8B09-29BA61F5F416} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {AC3FC41D-F3DE-472F-8759-748CFBD507B4} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {ACC81702-DF3D-4CB5-BA50-01FC0F20F285} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {B1EF88D3-3686-4EEC-AF3C-25195A94679E} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {B7B600EB-1AE8-4443-8193-C01DCE5D7262} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {CCB8EFB8-C3E9-428F-98FF-D1A152A2689C} - System32\Tasks\{5711C5F7-3642-4CFD-80F9-9937DDC340FB} => pcalua.exe -a D:\Autoplay.exe -d D:\
Task: {CFDBA500-6D37-42ED-9EB9-674E3E89C2DB} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {D33F7650-CAAF-431D-B1B4-2B53D627678A} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {D55D07A2-C7B9-4BF7-BF47-E5DC83277E7E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1218043409-3151763047-2122344536-1001Core => C:\Users\Thomas Ratzke\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {DF46AA32-5F1A-4C17-99AC-752F79708431} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {E329831B-1977-4A22-9F64-F55FA5CAB376} - System32\Tasks\{8C644042-7F3C-48C7-8C93-DCF4A28A5BA2} => pcalua.exe -a D:\fscommand\setup_deutsch.exe -d D:\fscommand
Task: {E40949CB-1B0A-4C07-962D-527AC097DA97} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {E540FF01-0797-47DD-9E13-8FEBF41528C7} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-26] (Apple Inc.)
Task: {EF55379A-60E7-42BF-9DD1-D0B73264760E} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe
Task: {F1CF4C03-ECC0-40FE-B08F-0F5FFDFF5952} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1218043409-3151763047-2122344536-1001Core.job => C:\Users\Thomas Ratzke\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1218043409-3151763047-2122344536-1001UA.job => C:\Users\Thomas Ratzke\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-02-13 04:20 - 2015-02-13 04:20 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-10-13 05:45 - 2015-10-13 05:45 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-12-20 16:12 - 2015-12-09 02:52 - 00217720 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-12-12 02:47 - 2015-12-16 15:54 - 00126256 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-12-12 02:31 - 2015-12-12 02:31 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-12 02:31 - 2015-12-12 02:31 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-12-13 10:24 - 2015-11-03 13:18 - 00249384 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
2015-12-18 15:58 - 2015-12-07 04:33 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-12 02:31 - 2015-12-12 02:31 - 02653816 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-12-18 15:58 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2015-12-18 15:58 - 2015-12-07 05:00 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-12-18 15:58 - 2015-12-07 04:37 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-18 15:58 - 2015-12-07 04:34 - 00936448 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2015-12-18 15:58 - 2015-12-07 04:34 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-12-18 15:58 - 2015-12-07 04:36 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-12-17 16:36 - 2015-12-17 16:36 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-10-19 19:34 - 2015-10-19 19:34 - 00199680 _____ () C:\Program Files\PDF Architect 4\libidn.dll
2015-12-17 10:20 - 2015-12-17 10:20 - 00103888 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-12-17 10:20 - 2015-12-17 10:20 - 00125512 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-01-08 08:46 - 2016-01-08 08:46 - 02809344 _____ () C:\Program Files\AVAST Software\Avast\defs\16010701\algo.dll
2015-12-17 10:20 - 2015-12-17 10:20 - 00469008 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2015-12-17 10:20 - 2015-12-17 10:20 - 00241896 _____ () C:\Program Files\AVAST Software\Avast\browser_pass.dll
2016-01-11 17:59 - 2016-01-11 17:59 - 02821120 _____ () C:\Program Files\AVAST Software\Avast\defs\16011100\algo.dll
2015-12-13 10:24 - 2015-09-21 18:00 - 00080936 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00017448 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00088616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 01296424 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00060968 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll
2015-12-13 10:24 - 2015-11-03 03:45 - 00022568 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CmcTbProxy.dll
2015-12-13 10:24 - 2015-11-03 03:45 - 00186408 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCPipeCenter.dll
2015-12-13 10:24 - 2015-11-03 03:45 - 00165416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCAdapt.dll
2015-12-13 10:24 - 2015-11-03 03:45 - 00058408 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBInfo.dll
2015-12-13 10:24 - 2015-11-03 03:45 - 00015912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCNetTokenProxy.dll
2015-12-13 10:24 - 2015-06-22 17:58 - 00108072 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\logsys.dll
2015-12-13 10:24 - 2015-09-23 17:58 - 00030760 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DiskSearchImg.dll
2015-12-13 10:24 - 2015-09-23 17:58 - 00068136 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\MountImg.dll
2015-12-13 10:24 - 2014-12-14 17:53 - 00158248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFile.dll
2015-12-13 10:24 - 2015-03-14 04:54 - 00281128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DsImgFile.dll
2015-12-13 10:24 - 2015-09-23 17:58 - 00072232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckImg.dll
2015-12-13 10:24 - 2015-09-23 17:58 - 00139816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\vhdvmdk.dll
2015-12-13 10:24 - 2015-06-22 17:58 - 00037416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\BootDriver.dll
2015-12-13 10:24 - 2015-11-02 23:03 - 00769064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00193064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00407080 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidImage.dll
2015-12-13 10:24 - 2015-06-22 17:58 - 00148008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumDisk.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00076840 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FatLib.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00207912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSLib.dll
2015-12-13 10:24 - 2015-11-03 13:18 - 00111656 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileStorage.dll
2015-12-13 10:24 - 2015-11-02 23:03 - 00169512 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudInterface.dll
2015-12-13 10:24 - 2015-11-10 11:07 - 00501800 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\StorageMgr.dll
2015-12-13 10:24 - 2015-06-22 17:58 - 00024616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\GetDriverInfo.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00020520 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CorrectMbr.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00032296 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00034856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00064040 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\RegLib.dll
2015-12-13 10:24 - 2015-08-01 08:10 - 00025128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00115752 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll
2015-12-13 10:24 - 2015-09-23 17:58 - 00201768 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00037928 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll
2015-12-13 10:24 - 2015-06-22 17:58 - 00136232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\VMConfig.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00020008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidDeviceManager.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00043048 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbDataSwap.dll
2015-11-21 11:27 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2015-11-21 11:27 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2015-11-21 11:27 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2015-11-21 11:27 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2015-12-13 10:24 - 2014-12-15 00:53 - 00223784 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SmartBackup.dll
2015-04-09 17:57 - 2015-12-09 02:53 - 00011896 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-12-17 10:20 - 2015-12-17 10:20 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-12-17 16:36 - 2015-12-17 16:36 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2015-12-17 16:36 - 2015-12-17 16:36 - 21845504 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2015-10-13 05:46 - 2015-10-13 05:46 - 01040144 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\123simsen.com -> www.123simsen.com
Da befinden sich 7867 mehr Seiten.
==================== Hosts Inhalt: ==========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 03:34 - 2015-11-21 12:23 - 00450892 ___RA C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
127.0.0.1 www.123moviedownload.com
Da befinden sich 15464 zusätzliche Einträge.
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Thomas Ratzke\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\transcodedwallpaper.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: Apple Mobile Device Service => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: CEEBC40A-FDED-4C59-B354-939132350B01 => 2
MSCONFIG\Services: EPSON_EB_RPCV4_01 => 2
MSCONFIG\Services: EPSON_PM_RPCV4_01 => 2
MSCONFIG\Services: FirebirdServerMAGIXInstance => 3
MSCONFIG\Services: FoxitCloudUpdateService => 2
MSCONFIG\Services: GalaxyClientService => 3
MSCONFIG\Services: GalaxyCommunication => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: gusvc => 3
MSCONFIG\Services: IDriverT => 3
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: LenovoCOMSvc => 2
MSCONFIG\Services: LitModeCtrl => 3
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: nvUpdatusService => 2
MSCONFIG\Services: PassThru Service => 2
MSCONFIG\Services: PDF Architect Helper Service => 2
MSCONFIG\Services: PDF Architect Service => 2
MSCONFIG\Services: PMBDeviceInfoProvider => 2
MSCONFIG\Services: ProtexisLicensing => 2
MSCONFIG\Services: SBSDWSCService => 2
MSCONFIG\Services: Sony PC Companion => 3
MSCONFIG\Services: SSUService => 2
MSCONFIG\Services: StarWindServiceAE => 2
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: Stereo Service => 2
MSCONFIG\Services: WSWNA3100 => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Inhaltsmanager-Assistent für PlayStation(R).lnk => C:\windows\pss\Inhaltsmanager-Assistent für PlayStation(R).lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NETGEAR WNA3100 Setup-Assistent.lnk => C:\windows\pss\NETGEAR WNA3100 Setup-Assistent.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SRServer.exe.lnk => C:\windows\pss\SRServer.exe.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Thomas Ratzke^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\windows\pss\Dropbox.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Thomas Ratzke^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MyPC Backup.lnk => C:\windows\pss\MyPC Backup.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Thomas Ratzke^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk => C:\windows\pss\OpenOffice.org 3.3.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Thomas Ratzke^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk => C:\windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Thomas Ratzke^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Trillian.lnk => C:\windows\pss\Trillian.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: AlcoholAutomount => "C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe" -automount
MSCONFIG\startupreg: Amazon Cloud Player => "C:\Users\Thomas Ratzke\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe"
MSCONFIG\startupreg: Amazon Music => "C:\Users\Thomas Ratzke\AppData\Local\Amazon Music\Amazon Music Helper.exe"
MSCONFIG\startupreg: AmazonMP3DownloaderHelper => C:\Users\Thomas Ratzke\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe
MSCONFIG\startupreg: AnyDVD => C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe
MSCONFIG\startupreg: ApnUpdater => "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
MSCONFIG\startupreg: AppleSyncNotifier => C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: Browser Infrastructure Helper => C:\Users\Thomas Ratzke\AppData\Local\Smartbar\Application\Linkury.exe startup
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe"
MSCONFIG\startupreg: Corel File Shell Monitor => C:\Program Files (x86)\Corel\Corel MediaOne\CorelIOMonitor.exe
MSCONFIG\startupreg: Corel Photo Downloader => "C:\Program Files (x86)\Corel\Corel MediaOne\Corel Photo Downloader.exe" -startup
MSCONFIG\startupreg: dcmsvc => C:\Program Files (x86)\dcmsvc\dcmsvc.exe
MSCONFIG\startupreg: EA Core => C:\Program Files (x86)\Electronic Arts\EADM\Core.exe -silent
MSCONFIG\startupreg: EaseUS EPM tray => C:\Program Files (x86)\Partition Master 9.2.1 Home Edition\bin\EpmNews.exe
MSCONFIG\startupreg: GalaxyClient => C:\Program Files (x86)\GOG.com GalaxyClient\GalaxyClient.exe /launchViaAutoStart
MSCONFIG\startupreg: Garmin Lifetime Updater => C:\Program Files (x86)\Garmin\Lifetime Updater\GarminLifetime.exe /StartMinimized
MSCONFIG\startupreg: Google Update => "C:\Users\Thomas Ratzke\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: GoogleChromeAutoLaunch_42BCF34DF888FA5E24C109D3BA6D368A => "C:\Users\Thomas Ratzke\AppData\Local\Google\Chrome\Application\chrome.exe" --no-startup-window
MSCONFIG\startupreg: HTC Sync Loader => "C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup
MSCONFIG\startupreg: IAStorIcon => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: jmekey => C:\Program Files (x86)\jmesoft\hotkey.exe
MSCONFIG\startupreg: KeePass 2 PreLoad => "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
MSCONFIG\startupreg: Lenovo Dynamic Brightness System => C:\Program Files\Lenovo\Lenovo Brightness System\Lenovo Dynamic Brightness System.exe 1
MSCONFIG\startupreg: Lenovo Eye Distance System => C:\Program Files\Lenovo\Lenovo Eye Distance System\Lenovo Eye Distance System.exe 1
MSCONFIG\startupreg: mbot_de_60 => "C:\Program Files (x86)\mbot_de_60\mbot_de_60.exe"
MSCONFIG\startupreg: Microsoft Default Manager => "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
MSCONFIG\startupreg: MobileDocuments => C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
MSCONFIG\startupreg: ModeSwitch => "C:\Program Files\Lenovo\Power Dial\LitModeSwitch.exe" /AutoRun
MSCONFIG\startupreg: MusicManager => "C:\Users\Thomas Ratzke\AppData\Local\Programs\Google\MusicManager\MusicManager.exe"
MSCONFIG\startupreg: My Movies Tray => "C:\Program Files (x86)\My Movies for Windows Media Center\My Movies Tray.exe"
MSCONFIG\startupreg: NBAgent => "C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe" /WinStart
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: PMBVolumeWatcher => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: SearchSettings => "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
MSCONFIG\startupreg: ShadowPlay => C:\windows\system32\rundll32.exe C:\windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: Sony PC Companion => "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Thomas Ratzke\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
MSCONFIG\startupreg: Steam => "C:\Games\Steam\steam.exe" -silent
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: TrayServer => C:\PROGRA~2\MAGIX\VIDEO_~2\TRAYSE~1.EXE
MSCONFIG\startupreg: Ulead AutoDetector v2 => C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe
MSCONFIG\startupreg: UMonit => C:\windows\SysWOW64\UMonit.exe
MSCONFIG\startupreg: Unattend0000000001{BFA3D12B-66DD-4617-923A-E864BC7D20B5} => C:\Windows\test.bat
MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
MSCONFIG\startupreg: UpdatePRCShortCut => "C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run32: => "SDTray"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Amazon Music"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "EPSON Stylus SX400 Series"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Google Update"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "MusicManager"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Uninstall C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.5892.0626"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Uninstall C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Uninstall C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.5907.0716"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Uninstall C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Uninstall C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.5930.0814"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Uninstall C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Uninstall C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.5951.0827"
HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\...\StartupApproved\Run: => "Uninstall C:\Users\Thomas Ratzke\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [UDP Query User{3A1156B0-05ED-4D16-878F-72E97EA6B181}C:\users\thomas ratzke\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\thomas ratzke\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{7A918BB9-D97E-43D1-BB49-5303D277B4E3}C:\users\thomas ratzke\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\thomas ratzke\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{B23A1530-7A9C-4C50-A309-68FA4F996826}C:\program files (x86)\sony\media go\mediago.exe] => (Allow) C:\program files (x86)\sony\media go\mediago.exe
FirewallRules: [TCP Query User{6559B205-D387-4EA1-9965-6A2A904A7730}C:\program files (x86)\sony\media go\mediago.exe] => (Allow) C:\program files (x86)\sony\media go\mediago.exe
FirewallRules: [UDP Query User{E722F823-91F5-4C14-8A9E-CD5547968ED3}C:\program files (x86)\sony\media go\mediago.exe] => (Allow) C:\program files (x86)\sony\media go\mediago.exe
FirewallRules: [TCP Query User{B48A24F6-CD65-4EFC-BCCF-B65F8ACB8985}C:\program files (x86)\sony\media go\mediago.exe] => (Allow) C:\program files (x86)\sony\media go\mediago.exe
FirewallRules: [UDP Query User{4924AD17-553D-418E-BB8A-EFFA9F974203}C:\games\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) C:\games\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [TCP Query User{BF9BF998-66AD-4ADC-98D7-9CDBA07B59C3}C:\games\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) C:\games\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [UDP Query User{A376ED6D-950B-4522-9675-68B928F811F1}C:\games\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) C:\games\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [TCP Query User{45C80DB8-7D73-40C4-BB2F-7A234063BED6}C:\games\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) C:\games\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [{F643FD75-0E7E-412B-9BBE-893DCAB887B5}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E32EFC61-30B7-4ABE-89C2-40681D312238}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{8A043B09-67C8-4248-A65D-DAA2114EBCF8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{675D2958-C39F-44A2-A24E-18226BCBB24C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{9E153424-0357-4706-911D-CF07E00A1EE1}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{57E800FA-86E7-4605-8751-A2125441C64B}] => (Allow) LPort=2869
FirewallRules: [{A6A7ADE5-F7BE-4024-8CA7-102563C4EE01}] => (Allow) LPort=1900
FirewallRules: [{4E8FB5DE-0169-4987-9EAE-F582C05D3D09}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{5B549BE3-1F72-4730-847B-A4AF437097BD}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{69A23F59-E423-466C-BDF0-2350EA1D8F4F}] => (Allow) C:\Games\StarCraft II\StarCraft II.exe
FirewallRules: [{D2BF4104-F7FB-4EB3-A8E0-5DF4A26E8F31}] => (Allow) C:\Games\StarCraft II\StarCraft II.exe
FirewallRules: [{15FCCBD7-D3DD-4136-84C6-7E204B189FF9}] => (Allow) C:\Games\DIE SIEDLER - Aufstieg eines Königreichs\base\bin\Settlers6.exe
FirewallRules: [{4F713BF0-3C87-4C7A-B6FE-CFCC2EFC9630}] => (Allow) C:\Games\DIE SIEDLER - Aufstieg eines Königreichs\base\bin\Settlers6.exe
FirewallRules: [{D8C4F190-2EA0-445A-99F3-770938063C79}] => (Allow) C:\Games\Die Siedler 7\Data\Base\_Dbg\Bin\Release\Settlers7R.exe
FirewallRules: [{07100F48-97F8-4AFE-8961-125A1907F63E}] => (Allow) C:\Games\Die Siedler 7\Data\Base\_Dbg\Bin\Release\Settlers7R.exe
FirewallRules: [TCP Query User{04C99A30-3EC8-4A60-B142-96C8F789BFA9}C:\program files (x86)\dvd profiler\dvdpro.exe] => (Allow) C:\program files (x86)\dvd profiler\dvdpro.exe
FirewallRules: [UDP Query User{295908BA-E88E-42B5-AD62-AACE4CE186FB}C:\program files (x86)\dvd profiler\dvdpro.exe] => (Allow) C:\program files (x86)\dvd profiler\dvdpro.exe
FirewallRules: [{A311FADA-47BA-4F7A-A743-276481BA68F4}] => (Allow) C:\Program Files (x86)\Ubisoft\Might & Magic Heroes VI - Game Official Demo\Might & Magic Heroes VI.exe
FirewallRules: [{82435B1B-FC97-4A2A-9C68-2DAE8662DE88}] => (Allow) C:\Program Files (x86)\Ubisoft\Might & Magic Heroes VI - Game Official Demo\Might & Magic Heroes VI.exe
FirewallRules: [TCP Query User{11E78D1F-E698-4D88-A7BC-0C613AE68CD0}C:\program files (x86)\trillian\plugins\skypekit.exe] => (Allow) C:\program files (x86)\trillian\plugins\skypekit.exe
FirewallRules: [UDP Query User{FE51D907-EAE6-4FD6-A100-C771BDA16E72}C:\program files (x86)\trillian\plugins\skypekit.exe] => (Allow) C:\program files (x86)\trillian\plugins\skypekit.exe
FirewallRules: [TCP Query User{4B253899-6F83-42AD-8713-9EBE4B22538E}C:\program files (x86)\trillian\plugins\skypekit.exe] => (Allow) C:\program files (x86)\trillian\plugins\skypekit.exe
FirewallRules: [UDP Query User{43A8D277-A809-4E14-ADA5-F10CF12594A6}C:\program files (x86)\trillian\plugins\skypekit.exe] => (Allow) C:\program files (x86)\trillian\plugins\skypekit.exe
FirewallRules: [TCP Query User{F06636C9-EE51-44DA-93FF-027BEB4402F0}C:\program files (x86)\sony\content manager assistant\cma.exe] => (Allow) C:\program files (x86)\sony\content manager assistant\cma.exe
FirewallRules: [UDP Query User{5A7CA666-2E63-4B19-B592-42B661D483E2}C:\program files (x86)\sony\content manager assistant\cma.exe] => (Allow) C:\program files (x86)\sony\content manager assistant\cma.exe
FirewallRules: [TCP Query User{27DA271B-B6B7-4CF2-AB57-59ED06F54FC2}C:\program files (x86)\splashtop\splashtop remote\server\srfeature.exe] => (Allow) C:\program files (x86)\splashtop\splashtop remote\server\srfeature.exe
FirewallRules: [UDP Query User{877BD684-A827-4BE8-91AE-11130C96EE8D}C:\program files (x86)\splashtop\splashtop remote\server\srfeature.exe] => (Allow) C:\program files (x86)\splashtop\splashtop remote\server\srfeature.exe
FirewallRules: [TCP Query User{060982E9-F103-4DD4-A864-7CF051AEFC74}C:\program files (x86)\sony\content manager assistant\cma.exe] => (Allow) C:\program files (x86)\sony\content manager assistant\cma.exe
FirewallRules: [UDP Query User{32CCDA8E-B42E-46A3-B8CE-DEBCFC317A38}C:\program files (x86)\sony\content manager assistant\cma.exe] => (Allow) C:\program files (x86)\sony\content manager assistant\cma.exe
FirewallRules: [{52EFC8AC-89CD-4CB3-8E2A-DA0E89B29B7A}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRServer.exe
FirewallRules: [{00EF4A28-6F85-4F9C-861D-BBBE87F9AF3D}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe
FirewallRules: [{295C08F3-BEE8-4680-99CD-EBD1C9B1E42A}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\DataProxy.exe
FirewallRules: [TCP Query User{F0D9FFC3-FCC3-42FE-B14D-4D24BDD51129}C:\program files (x86)\dvd profiler\dvdpro.exe] => (Allow) C:\program files (x86)\dvd profiler\dvdpro.exe
FirewallRules: [UDP Query User{138629BB-2AD8-4CA7-AC43-5CF82C1C2409}C:\program files (x86)\dvd profiler\dvdpro.exe] => (Allow) C:\program files (x86)\dvd profiler\dvdpro.exe
FirewallRules: [{1F918310-7456-4DF1-BAB3-ABB8EA967E26}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{6B6C4CD4-DD5C-4A33-A7E6-57D5CAE2DDB3}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [TCP Query User{4E03838A-3704-43EA-888F-F91947FD7463}C:\games\dawn of war - dark crusade\darkcrusade.exe] => (Allow) C:\games\dawn of war - dark crusade\darkcrusade.exe
FirewallRules: [UDP Query User{D2B74BFD-B2CA-4A94-A0F3-233A1493A9B8}C:\games\dawn of war - dark crusade\darkcrusade.exe] => (Allow) C:\games\dawn of war - dark crusade\darkcrusade.exe
FirewallRules: [TCP Query User{BDE3F4CF-0D2D-4B02-B49D-79433CF7EEE9}C:\games\dawn of war - soulstorm\soulstorm.exe] => (Allow) C:\games\dawn of war - soulstorm\soulstorm.exe
FirewallRules: [UDP Query User{A42430BD-51B9-4C1A-AB7D-6C5F95D68E69}C:\games\dawn of war - soulstorm\soulstorm.exe] => (Allow) C:\games\dawn of war - soulstorm\soulstorm.exe
FirewallRules: [TCP Query User{70F86723-C140-40FC-A1CA-3D82905C1D22}C:\program files (x86)\kuffs software\kps\kps.exe] => (Allow) C:\program files (x86)\kuffs software\kps\kps.exe
FirewallRules: [UDP Query User{B113A33E-07A5-4C12-8C8A-80EBD35B8DAD}C:\program files (x86)\kuffs software\kps\kps.exe] => (Allow) C:\program files (x86)\kuffs software\kps\kps.exe
FirewallRules: [{F8340B8B-EF04-4CD5-ACFB-4DAA20F708EC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{C2C8D6B7-1EB9-4BCD-B9D5-D5F74630D4DF}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{7707C0B7-13CD-440B-A3D6-7F70ED03697B}] => (Allow) C:\Games\Steam\Steam.exe
FirewallRules: [{1A60C235-2D41-4220-8A64-DE6B3CB86EE3}] => (Allow) C:\Games\Steam\Steam.exe
FirewallRules: [{840394ED-3BF3-43A6-8009-22CEC20F9138}] => (Allow) C:\Games\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{E07C26F2-9645-4D6C-A94A-5FB5C7FE8752}] => (Allow) C:\Games\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7C287818-05E7-451D-A163-71DA9259791C}] => (Allow) C:\Games\Steam\SteamApps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{517CAC9A-9D0A-4673-B438-D5F769FF8BDC}] => (Allow) C:\Games\Steam\SteamApps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{45A2F578-CDB9-49A7-A94E-A15349B71677}] => (Allow) C:\Games\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{667BDA52-EDF8-4A8B-86D5-EA5577A4BE7B}] => (Allow) C:\Games\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{951713AF-7FE8-4539-B913-1C3EA73F2896}] => (Allow) C:\Games\Steam\SteamApps\common\prey\prey.exe
FirewallRules: [{4BD4E341-9631-4DBE-8E69-088017501F89}] => (Allow) C:\Games\Steam\SteamApps\common\prey\prey.exe
FirewallRules: [{75AF6457-4FBB-405A-923F-232E7D168C12}] => (Allow) C:\Games\Steam\SteamApps\common\Homeworld\HWLauncher\Launcher.exe
FirewallRules: [{95E871EB-0947-41D4-B1AE-5F847E8554D4}] => (Allow) C:\Games\Steam\SteamApps\common\Homeworld\HWLauncher\Launcher.exe
FirewallRules: [{C705FF64-BEFB-430D-83AB-96EBCE3ACA69}] => (Allow) C:\Games\Steam\SteamApps\common\Age of Mythology\Launcher.exe
FirewallRules: [{2702D9C8-EE86-4EA3-886E-33CB7901579E}] => (Allow) C:\Games\Steam\SteamApps\common\Age of Mythology\Launcher.exe
FirewallRules: [{D665FACA-A466-446F-86FF-605E8A4EF592}] => (Allow) C:\Games\Steam\SteamApps\common\Anno 2070\Anno5.exe
FirewallRules: [{C64697F9-A477-4BA0-ACA4-1864E872F22C}] => (Allow) C:\Games\Steam\SteamApps\common\Anno 2070\Anno5.exe
FirewallRules: [{B17FEE93-7974-4B5F-85C6-62D98EE16645}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{3CC50FEE-F114-463C-95F1-8DD957FC02D6}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{AAABA71E-0106-4A0D-88CA-5FC1A24D0CF2}] => (Allow) C:\Games\Steam\SteamApps\common\Anno 2070\Anno5.exe
FirewallRules: [{BA2456C3-1B6E-4C00-888D-194D56763A42}] => (Allow) C:\Games\Steam\SteamApps\common\Anno 2070\Anno5.exe
FirewallRules: [{E72F42EC-4D5E-466D-BBF9-8D26EFAD3675}] => (Allow) C:\Program Files (x86)\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe
FirewallRules: [{ACC2A916-BAEB-455D-9AD6-E9C19B098342}] => (Allow) C:\Program Files (x86)\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe
FirewallRules: [{33929DC2-1F43-4ABC-8914-1DC001385D48}] => (Allow) C:\Program Files (x86)\Nero\KM\NMDllHost.exe
FirewallRules: [{1D789DE4-B6FC-48F0-B6E1-7678024946F3}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{818C4A5C-1ABE-4F9E-8E7B-79ED4E61205D}] => (Allow) C:\Games\Steam\SteamApps\common\Portal\hl2.exe
FirewallRules: [{D0B9316E-EA42-497E-BFE6-E6C6A30A16E2}] => (Allow) C:\Games\Steam\SteamApps\common\Portal\hl2.exe
FirewallRules: [{21CC47CB-54D6-42FC-A8E1-9D0F1AA5DEE9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{4EE678C5-B977-47A9-BA8C-71488AE9C778}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{3C6B7EE3-525C-491B-8DAC-94A55405EC1D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{1D2BA8DD-4E32-4D90-8DC7-3306F53925E5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{CF05F847-DE9A-4D41-8960-E4D1C54557A6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{96B68E34-1841-42E3-83D9-4491A41EAE44}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{41561100-0144-41BA-A679-6181E4627F32}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{E697DA5A-A3BC-4679-B0D8-CF85AEEC669F}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{2EB5466B-689C-46DD-8AA6-CB511B5AFE25}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{7EDFA8D2-16AE-4902-BAE8-0C8DE3E540F5}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{96756778-CF8F-4012-932F-117091513BF6}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{C21ED57A-D7FF-4491-A105-2862C25E2C88}] => (Allow) C:\Games\Steam\bin\steamwebhelper.exe
FirewallRules: [{12E5CD79-3B73-4EAA-917E-2B7E5EEADC41}] => (Allow) C:\Games\Steam\bin\steamwebhelper.exe
FirewallRules: [{F2CC8125-2F2A-41ED-80AB-21FFBE05B6C5}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{BA959C4F-D6B3-4137-B6A0-B5566DB831DD}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe
FirewallRules: [{BEBA6E23-8D98-4292-8F19-F6A132F2335C}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{E617B5C7-28AD-4477-987C-DFAFA5BB9C48}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe
FirewallRules: [{FCD652D3-CBF6-49FB-81CE-EC4182657BDA}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{629DFFEB-0D78-4D9E-99A0-A16F797CBB9B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{3CD68F0A-2EFC-409A-AEEF-E09778E94D1A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
DomainProfile\AuthorizedApplications: [C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe] => Enabled:Logitech Harmony Remote Software 7
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\DVD Profiler\dvdpro.exe] => Enabled:DVD Profiler
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe] => Enabled:Logitech Harmony Remote Software 7
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
==================== Wiederherstellungspunkte =========================
25-12-2015 16:41:52 Revo Uninstaller's restore point - DailyPCClean v4.1
03-01-2016 09:44:34 Windows Update
06-01-2016 10:53:42 Windows Update
08-01-2016 09:33:54 JRT Pre-Junkware Removal
12-01-2016 18:55:01 Revo Uninstaller's restore point - Lightworks
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (01/12/2016 07:07:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15563
Error: (01/12/2016 07:07:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15563
Error: (01/12/2016 07:07:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (01/12/2016 06:55:24 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.
System Error:
Zugriff verweigert
.
Error: (01/12/2016 06:41:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: senddoc.exe, Version: 0.0.0.0, Zeitstempel: 0x56275a50
Name des fehlerhaften Moduls: smapi.dll, Version: 15.4.3508.1109, Zeitstempel: 0x4cda7a4a
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00008c9f
ID des fehlerhaften Prozesses: 0x420
Startzeit der fehlerhaften Anwendung: 0xsenddoc.exe0
Pfad der fehlerhaften Anwendung: senddoc.exe1
Pfad des fehlerhaften Moduls: senddoc.exe2
Berichtskennung: senddoc.exe3
Vollständiger Name des fehlerhaften Pakets: senddoc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: senddoc.exe5
Error: (01/12/2016 06:25:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: THOMASRATZKE-PC)
Description: Bei der Aktivierung der App „Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (01/12/2016 06:25:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: THOMASRATZKE-PC)
Description: Bei der Aktivierung der App „Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (01/12/2016 04:40:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: THOMASRATZKE-PC)
Description: Bei der Aktivierung der App „Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (01/11/2016 05:41:37 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: MSSQL$MYMOVIES8
Error: (01/10/2016 07:00:00 PM) (Source: Windows Backup) (EventID: 4103) (User: )
Description: Die Sicherung wurde aufgrund eines Fehlers beim Schreiben am Sicherungsort "G:\" nicht abgeschlossen. Fehler: Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006).
Systemfehler:
=============
Error: (01/14/2016 09:42:08 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070002 fehlgeschlagen: Windows Camera
Error: (01/12/2016 07:07:26 PM) (Source: DCOM) (EventID: 10010) (User: THOMASRATZKE-PC)
Description: {0002DF02-0000-0000-C000-000000000046}
Error: (01/12/2016 07:07:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_1ec39a4" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (01/12/2016 07:07:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _1ec39a4" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (01/12/2016 07:07:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kontaktdaten_1ec39a4" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (01/12/2016 07:07:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_1ec39a4" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (01/11/2016 04:42:06 PM) (Source: DCOM) (EventID: 10016) (User: THOMASRATZKE-PC)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}ThomasRatzke-PCThomas RatzkeS-1-5-21-1218043409-3151763047-2122344536-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (01/11/2016 04:40:46 PM) (Source: DCOM) (EventID: 10016) (User: THOMASRATZKE-PC)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}ThomasRatzke-PCThomas RatzkeS-1-5-21-1218043409-3151763047-2122344536-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (01/11/2016 04:40:46 PM) (Source: DCOM) (EventID: 10016) (User: THOMASRATZKE-PC)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}ThomasRatzke-PCThomas RatzkeS-1-5-21-1218043409-3151763047-2122344536-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (01/11/2016 04:40:36 PM) (Source: DCOM) (EventID: 10016) (User: THOMASRATZKE-PC)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}ThomasRatzke-PCThomas RatzkeS-1-5-21-1218043409-3151763047-2122344536-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
CodeIntegrity:
===================================
Date: 2016-01-10 18:43:03.594
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 18:43:03.582
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 18:41:31.970
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 18:41:31.959
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 18:20:50.775
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 18:20:50.764
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 18:08:06.860
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 18:08:06.848
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 16:54:40.611
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-10 16:54:40.588
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz
Prozentuale Nutzung des RAM: 39%
Installierter physikalischer RAM: 6126.53 MB
Verfügbarer physikalischer RAM: 3676.16 MB
Summe virtueller Speicher: 12270.53 MB
Verfügbarer virtueller Speicher: 9597.79 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:905.9 GB) (Free:121.99 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive g: (StarCraft II 3.0 Disc 1) (CDROM) (Total:7.91 GB) (Free:0 GB) CDFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 94BB371C)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=905.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=25.1 GB) - (Type=12)
==================== Ende von Addition.txt ============================
Vielen Dank!
Gruß,
Ratzi
Hallo,
ich habe mir erlaubt, schon mal einen Schritt weiter zu machen und Malwarbytes laufen lassen. Dieses wurde fündig: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 14.01.2016
Suchlaufzeit: 13:05
Protokolldatei: mbam.txt
Administrator: Ja
Version: 2.2.0.1024
Malware-Datenbank: v2016.01.14.03
Rootkit-Datenbank: v2016.01.09.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Thomas Ratzke
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 541324
Abgelaufene Zeit: 31 Min., 2 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 2
PUP.Optional.GlobalSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [256631081d7c37ff8d482ca460a2b947],
PUP.Optional.GlobalSearch.ShrtCln, HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [8506e5548f0a05314292d5fbee14b24e],
Registrierungswerte: 2
PUP.Optional.GlobalSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, hxxp://www.globasearch.com/?serie=211&installkey=0yFIRIZ2hSXP5LAbSwJa&b=3&q={searchTerms}, In Quarantäne, [256631081d7c37ff8d482ca460a2b947]
PUP.Optional.GlobalSearch.ShrtCln, HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, hxxp://www.globasearch.com/?serie=211&installkey=0yFIRIZ2hSXP5LAbSwJa&b=3&q={searchTerms}, In Quarantäne, [8506e5548f0a05314292d5fbee14b24e]
Registrierungsdaten: 2
Hijack.GlobaSearch.C, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.globasearch.com/?serie=211&b=3&installkey=0yFIRIZ2hSXP5LAbSwJa, Gut: (www.google.com), Schlecht: (hxxp://www.globasearch.com/?serie=211&b=3&installkey=0yFIRIZ2hSXP5LAbSwJa),Ersetzt,[147775c48f0a63d38b09bef06d978977]
Hijack.GlobaSearch.C, HKU\S-1-5-21-1218043409-3151763047-2122344536-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.globasearch.com/?serie=211&b=3&installkey=0yFIRIZ2hSXP5LAbSwJa, Gut: (www.google.com), Schlecht: (hxxp://www.globasearch.com/?serie=211&b=3&installkey=0yFIRIZ2hSXP5LAbSwJa),Ersetzt,[15763702a7f2ea4c781bb0fe1ce843bd]
Ordner: 0
(keine bösartigen Elemente erkannt)
Dateien: 2
PUP.Optional.GlobalSearch.ShrtCln, C:\Users\Thomas Ratzke\AppData\Roaming\Mozilla\Firefox\Profiles\46keo9mh.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.newtab.url", "hxxp://www.globasearch.com/?serie=211&b=2&installkey=0yFIRIZ2hSXP5LAbSwJa&newtab");), Ersetzt,[d7b4ce6b16834de9fed06371788ca759]
PUP.Optional.GlobalSearch.ShrtCln, C:\Users\Thomas Ratzke\AppData\Roaming\Mozilla\Firefox\Profiles\46keo9mh.default\prefs.js, Gut: (user_pref("browser.startup.homepage", "https://www.malwarebytes.org/restorebrowser/), Schlecht: (user_pref("browser.startup.homepage", "hxxp://www.globasearch.com), Ersetzt,[612a9a9f8d0cf64069f525b8947058a8]
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Es wäre nett, wenn mir jemand sagen könnte, ob das Problem damit beseitigt sein könnte oder was ich sonst noch tun sollte (z.B. welche Programme ich lieber deinstallieren sollte).
Gruß,
Ratzi |