quincycato | 10.07.2016 14:26 | MPC Cleaner läßt sich nicht deinstallieren + Browser Umleitungen - win10pro Hallo,
und hier der zweite Teil, der Addition log: Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 09-07-2016
durchgeführt von eva (2016-07-10 12:47:24)
Gestartet von C:\Users\eva\Desktop
Windows 10 Pro Version 1511 (X64) (2016-02-27 21:15:50)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1764389191-2749221916-298074052-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1764389191-2749221916-298074052-503 - Limited - Disabled)
eva (S-1-5-21-1764389191-2749221916-298074052-1001 - Administrator - Enabled) => C:\Users\eva
Gast (S-1-5-21-1764389191-2749221916-298074052-501 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.7.0.272 - Adobe Systems Incorporated)
Adobe InDesign CC 2015 (HKLM-x32\...\{DBFD0312-6E55-1014-8952-E78D43BC0147}) (Version: 11.4.0.090 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.6 - Adobe Systems Incorporated)
Adobe Media Encoder CC 2015.3 (HKLM-x32\...\AME_10_3_0) (Version: 10.3.0 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015.5 (HKLM-x32\...\PHSP_17_0) (Version: 17.0.0 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2015.3 (HKLM-x32\...\PPRO_10_3_0) (Version: 10.3.0 - Adobe Systems Incorporated)
Apple Application Support (32-Bit) (HKLM-x32\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{C2651553-6CA3-4822-B2E6-BC4ACA6E0EA2}) (Version: 4.3.1 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{981F324E-98F4-4784-B76F-04E92039F3F6}) (Version: 5.2.60328.3 - Microsoft Corporation)
Astrocontact Astroplus (HKLM-x32\...\Astrocontact Astroplus Demo_is1) (Version: - Astrocontact Software)
ASUS GPU TweakII (HKLM-x32\...\InstallShield_{0075AAC2-EA9F-490E-83F7-5D5F81EB2A43}) (Version: 1.0.8.1 - ASUSTek COMPUTER INC.)
ASUS GPU TweakII (x32 Version: 1.0.8.1 - ASUSTek COMPUTER INC.) Hidden
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.026 - ASUSTek Computer Inc.)
Azure AD Authentication Connected Service (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden
Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Build Tools for Windows 10 - ENU (x32 Version: 14.0.25219 - Microsoft Corporation) Hidden
Build Tools for Windows 10 (x32 Version: 14.0.25219 - Microsoft Corporation) Hidden
CodedUITestUAP (x32 Version: 14.0.25219 - Microsoft Corporation) Hidden
Composer - Php Dependency Manager (HKLM-x32\...\{7315AF68-E777-496A-A6A2-4763A98ED35A}_is1) (Version: - getcomposer.org)
Devenv-Ressourcen für Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Dotfuscator and Analytics Community Edition 5.19.1 (x32 Version: 5.19.1.3091 - PreEmptive Solutions) Hidden
Dotfuscator and Analytics Community Edition Language Pack 5.19.1 de-DE (x32 Version: 5.19.1.3091 - PreEmptive Solutions) Hidden
ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 17.3.19290 - Landesfinanzdirektion Thüringen)
FileZilla Client 3.19.0 (HKLM-x32\...\FileZilla Client) (Version: 3.19.0 - Tim Kosse)
FRITZ!Box USB-Fernanschluss (HKU\S-1-5-21-1764389191-2749221916-298074052-1001\...\2db37667170956ee) (Version: 2.3.3.2 - AVM Berlin)
Gemeinsam genutzte Microsoft Azure-Komponenten für Visual Studio 2015 Sprachpaket (DEU) - v1.7 (x32 Version: 1.7.40113.5 - Microsoft Corporation) Hidden
Git version 2.7.2 (HKLM\...\Git_is1) (Version: 2.7.2 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7619.1252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
HP Deskjet 3520 series - Grundlegende Software für das Gerät (HKLM\...\{15B2F0E3-3FAC-4495-B0FD-398EECFA4100}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Deskjet 3520 series Hilfe (HKLM-x32\...\{6B953497-169C-4929-9AA9-A9F510347468}) (Version: 27.0.0 - Hewlett Packard)
HP Deskjet 3520 series Setup Guide (HKLM-x32\...\{AEEDCEB7-00B8-4BE1-B492-AB04803D5F1E}) (Version: 27.0.0 - Hewlett Packard)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
hppP1100P1560P1600SeriesLaserJetService (x32 Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppusgP1100P1560P1600Series (x32 Version: 1.0.0.1 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
iCloud (HKLM\...\{ADFDB647-35C0-4254-9EE6-2D9C3B7104BD}) (Version: 5.2.1.69 - Apple Inc.)
IDE Tools for Windows 10 - ENU (x32 Version: 14.0.25219 - Microsoft Corporation) Hidden
IDE Tools for Windows 10 (x32 Version: 14.0.25219 - Microsoft Corporation) Hidden
Intellisense Lang Pack Mobile Extension SDK 10.0.10586.0 (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.42 - Irfan Skiljan)
Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.14 - Oracle Corporation)
JetBrains PhpStorm 10.0.3 (HKLM-x32\...\PhpStorm 10.0.3) (Version: 143.1770 - JetBrains s.r.o.)
JetBrains PhpStorm 145.184.39 (HKLM-x32\...\PhpStorm 145.184.39) (Version: 145.184.39 - JetBrains s.r.o.)
JetBrains PhpStorm 2016.1 (HKLM-x32\...\PhpStorm 2016.1) (Version: 145.258.2 - JetBrains s.r.o.)
JetBrains PhpStorm 2016.1.1 (HKLM-x32\...\PhpStorm 2016.1.1) (Version: 145.969.15 - JetBrains s.r.o.)
Kits Configuration Installer (x32 Version: 10.1.10586.212 - Microsoft) Hidden
Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 SDK (Deutsch) (HKLM-x32\...\{529EFF09-750D-48B9-A47A-34A3B6248C3F}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25123 - Microsoft Corporation)
Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.25123 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20513.0 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server*2014 Management Objects (HKLM-x32\...\{4F4CB3E2-9D2F-465A-854B-8276B02F4E7D}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 Management Objects (x64) (HKLM\...\{03CB711D-679E-46ED-851B-C568418CF914}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 Transact-SQL ScriptDom (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 T-SQL Language Service (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation)
Microsoft Visual Studio Community 2015 mit Update 2 (HKLM-x32\...\{f2892dc5-7ac2-4ae4-a296-b5b159f61255}) (Version: 14.0.25123.0 - Microsoft Corporation)
Mit C# erstellte geräteübergreifende Hybrid-Apps - Vorlagen - DEU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.1.0 - Mozilla)
Mozilla Thunderbird 45.1.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 45.1.0 (x86 de)) (Version: 45.1.0 - Mozilla)
Mozilla Thunderbird 45.2.0 (x86 de) (HKU\S-1-5-21-1764389191-2749221916-298074052-1001\...\Mozilla Thunderbird 45.2.0 (x86 de)) (Version: 45.2.0 - Mozilla)
MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.25123 - Microsoft Corporation) Hidden
Node.js (HKLM\...\{7EB9C851-997C-4B84-BE81-D064FA62B0D4}) (Version: 5.10.1 - Node.js Foundation)
NVIDIA 3D Vision Controller-Treiber 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 368.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.39 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.11.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.3.5 - NVIDIA Corporation)
NVIDIA Grafiktreiber 368.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.39 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.14 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
OpenOffice 4.1.2 (HKLM-x32\...\{E6AD67BB-1C33-4AB3-A387-E0D48137AB70}) (Version: 4.12.9782 - Apache Software Foundation)
OpenOffice 4.1.2 Language Pack (German) (HKLM-x32\...\{E0E6DB8D-D2B1-4A0B-A09C-44DBC09BF499}) (Version: 4.12.9782 - Apache Software Foundation)
Oracle VM VirtualBox 5.0.24 (HKLM\...\{BA15D402-19CA-493E-958B-170A0C446F25}) (Version: 5.0.24 - Oracle Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM-x32\...\{3F514FDC-F0F2-3B99-86D6-F7B3A2679B39}) (Version: 4.5.51209 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6 (Deutsch) (HKLM-x32\...\{FACF2669-E25A-428A-9167-5EEDE741F3B9}) (Version: 4.6.00127 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM-x32\...\{4860C1E5-CE58-4D32-89DE-37951333B4C9}) (Version: 4.6.01055 - Microsoft Corporation)
PreEmptive Analytics Client German Language Pack (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
Project and Item Templates for Visual Studio Express 2015 for Windows 10 - ENU (x32 Version: 14.0.25219 - Microsoft Corporation) Hidden
Project and Item Templates for Visual Studio Professionald 2015 - ENU (x32 Version: 14.0.25219 - Microsoft Corporation) Hidden
PuTTY release 0.67 (HKLM-x32\...\PuTTY_is1) (Version: 0.67 - Simon Tatham)
Python 3.5.1 (32-bit) (HKU\S-1-5-21-1764389191-2749221916-298074052-1001\...\{c39d559b-aa83-4476-ba20-988a35a1199a}) (Version: 3.5.1150.0 - Python Software Foundation)
Python 3.5.1 Add to Path (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Core Interpreter (32-bit debug) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Core Interpreter (32-bit symbols) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Core Interpreter (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Development Libraries (32-bit debug) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Development Libraries (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Documentation (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Executables (32-bit debug) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Executables (32-bit symbols) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Executables (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Launcher (32-bit) (HKLM-x32\...\{17778F7B-FB5A-4A93-9719-D75BAF673498}) (Version: 3.5.150.0 - Python Software Foundation)
Python 3.5.1 pip Bootstrap (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Standard Library (32-bit debug) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Standard Library (32-bit symbols) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Standard Library (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Tcl/Tk Support (32-bit debug) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Tcl/Tk Support (32-bit symbols) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Tcl/Tk Support (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Test Suite (32-bit debug) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Test Suite (32-bit symbols) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Test Suite (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Utility Scripts (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Roslyn Language Services - x86 (x32 Version: 14.0.25123 - Microsoft Corporation) Hidden
Roslyn Language Services - x86 (x32 Version: 14.0.25132 - Microsoft Corporation) Hidden
Screen Split (HKLM-x32\...\{7F0C2357-33B0-4408-A9AD-A7623FAA22B1}) (Version: 6.57 - LG Electronics Inc.)
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden
Sublime Text Build 3114 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd)
Team Explorer for Microsoft Visual Studio 2015 Update 2 (x32 Version: 14.95.25118 - Microsoft) Hidden
Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
trotux - Uninstall (HKLM-x32\...\{AC955DA7-5091-4E6D-8330-19D5C2BDBF51}) (Version: - ) <==== ACHTUNG
TypeScript Power Tool (x32 Version: 1.8.9.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.8.31.0 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
Universal CRT Redistributable (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (Version: 10.1.10586.212 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Vagrant (HKLM-x32\...\{46269A3F-7DFD-4920-AC45-B598BEA166AA}) (Version: 1.8.4 - HashiCorp)
Visual Studio 2015 Update 2 (KB3022398) (HKLM-x32\...\{78c1b501-a6eb-4f29-88c5-84189564827e}) (Version: 14.0.25123 - Microsoft Corporation)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VR-NetWorld (HKLM-x32\...\{8815F011-43AF-4F50-BBD8-D78ED3D6F5B9}) (Version: - )
VR-NetWorld Software (HKLM-x32\...\{084798D2-33EF-42CC-A925-970AF222898B}) (Version: 6.00.17 - Volksbanken Raiffeisenbanken)
VS Update core components (x32 Version: 14.0.25123 - Microsoft Corporation) Hidden
vs_update2notification (x32 Version: 14.0.25132 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.)
WCF Data Services 5.6.4 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WinAppDeploy (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
Windows 7 Games for Windows 8 and 10 (HKLM-x32\...\MicrosoftGamesForWin8) (Version: 1.1.0.10 - )
Windows SDK AddOn (HKLM-x32\...\{75C39BA6-1D02-4BEA-844F-0EA6C4B7FA1B}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.10586.212 (HKLM-x32\...\{43d9f43d-c90b-4fdf-9dfe-ecf9990bfa2a}) (Version: 10.1.10586.212 - Microsoft Corporation)
WinRT Intellisense Desktop - en-us (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - en-us (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - Other Languages (x32 Version: 10.1.10586.212 - Microsoft Corporation) Hidden
WinSCP 5.7.7 (HKLM-x32\...\winscp3_is1) (Version: 5.7.7 - Martin Prikryl)
XSplit Gamecaster (HKLM-x32\...\{8915913F-E4AF-46C5-B4EF-3535D83BFFDE}) (Version: 2.5.1507.3018 - SplitmediaLabs)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-1764389191-2749221916-298074052-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-6B46570F42A0}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1764389191-2749221916-298074052-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\eva\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1764389191-2749221916-298074052-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {2592BE6C-EB83-4210-955F-9EF63AF3AE48} - System32\Tasks\AdobeAAMUpdater-1.0-EVASCOMPUTER-eva => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-05-05] (Adobe Systems Incorporated)
Task: {2C3F4CEB-C0DF-4C22-B512-5BBC28EEF5E5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-27] (Google Inc.)
Task: {31ED907D-68F0-415A-B9D2-8597C8237F1A} - System32\Tasks\Coacuiedclernege Module => C:\Program Files (x86)\Stabily\CoacuiedclernegeModuleanaferchatinay.exe [2016-07-09] ()
Task: {3AC0ED25-46DC-4FAC-9DA9-4176A4C9C6BF} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-06-14] (Microsoft Corporation)
Task: {5BF4B8EA-FB8A-4EA7-99CE-107B4A8607A5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated)
Task: {7AD13281-AD72-41DF-8929-E21AF802BB5D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-27] (Google Inc.)
Task: {86DDD67D-EE19-40BD-A8CA-DABAB8E388A3} - System32\Tasks\tasklist => C:\Users\eva\AppData\Roaming\UPUpdata\service72564.exe
Task: {8CD26B33-7E15-4589-916D-13D6DC08231B} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2014-03-25] (ASUSTek Computer Inc.)
Task: {A0871AE6-A033-4957-87C3-2C5B88791DAC} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {AC5538EE-4D21-46A2-927D-4E927DF78F8F} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-eva*******.de => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-05-05] (Adobe Systems Incorporated)
Task: {CBD9382E-8B06-4AF1-AB9F-8AF43442AD83} - System32\Tasks\{FBAB2A37-92E4-40C1-BE7F-FE68411ACADE} => pcalua.exe -a "C:\Program Files\ZipTool\Uninstall.exe" -c -m=control
Task: {F4C32A4B-B0A7-407C-BF14-4096F856B31C} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => F:\programmie\VisualStudio\Common7\IDE\VSIXAutoUpdate.exe [2016-05-15] (Microsoft Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
WMI_ActiveScriptEventConsumer_ASEC: <===== ACHTUNG
ShortcutWithArgument: C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\eva\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc
ShortcutWithArgument: C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\eva\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc
ShortcutWithArgument: C:\Users\eva\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\8c6fe9a0a65c7f37\Google Chrome.lnk -> C:\Users\eva\AppData\Local\Google\Chrome\User Data\gequlywefegeretaward\Google Profile.ico () -> --profile-directory=gequlywefegeretaward
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\eva\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc
ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\eva\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-10-30 09:17 - 2015-10-30 09:17 - 00028672 _____ () C:\Windows\SYSTEM32\efsext.dll
2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\Windows\SYSTEM32\ism32k.dll
2016-05-24 19:19 - 2016-06-03 05:59 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-03-24 21:07 - 2012-08-31 16:03 - 00288768 ____N () C:\Windows\System32\HP1100LM.DLL
2016-03-24 21:15 - 2012-08-31 16:02 - 00074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HP1100PP.DLL
2016-07-10 00:17 - 2016-07-10 00:16 - 00695296 _____ () C:\ProgramData\CloudPrinter\CloudPrinter.exe
2015-08-18 22:31 - 2015-08-18 22:31 - 00048640 _____ () C:\Windows\SysWOW64\ASGT.exe
2016-05-24 20:45 - 2016-05-02 07:54 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-05-24 20:45 - 2016-05-02 07:55 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-05-24 20:45 - 2016-05-02 07:54 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-05-24 20:45 - 2016-05-02 07:55 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-05-19 16:41 - 2016-05-19 16:41 - 00134656 _____ () C:\Users\eva\AppData\Local\Apps\2.0\abril.exe
2016-05-24 20:45 - 2016-05-02 07:55 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-05-24 20:45 - 2016-05-02 07:55 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-05-24 20:45 - 2016-05-02 07:55 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-05-24 20:45 - 2016-05-02 07:55 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-05-24 20:45 - 2016-05-02 07:54 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-05-24 20:45 - 2016-05-02 07:54 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-04-12 19:44 - 2016-03-29 12:20 - 02656952 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-04-12 19:44 - 2016-03-29 12:20 - 02656952 _____ () C:\Windows\System32\CoreUIComponents.dll
2016-05-22 19:33 - 2016-05-22 19:33 - 00491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2016-05-24 17:43 - 2016-05-24 17:43 - 00959168 _____ () C:\Users\eva\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-02-28 15:17 - 2013-11-22 17:10 - 00103880 _____ () C:\Program Files (x86)\ComposerSetup\shellext64.dll
2016-04-19 17:32 - 2016-04-19 17:33 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-02-28 14:24 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-05-10 23:29 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-06-14 20:08 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-06-14 20:08 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-06-14 20:08 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-06-14 20:08 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-05-22 19:32 - 2016-05-22 19:32 - 31680176 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
2016-04-19 17:32 - 2016-04-19 17:33 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-04-19 17:32 - 2016-04-19 17:33 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-05-24 19:32 - 2016-05-02 08:02 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-05-24 17:43 - 2016-05-24 17:43 - 00679624 _____ () C:\Users\eva\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll
2016-06-20 15:16 - 2016-06-20 15:16 - 00016896 _____ () C:\Program Files (x86)\TomTom\MySportsConnect\DeviceDetection.dll
2016-06-20 15:19 - 2016-06-20 15:19 - 01076736 _____ () C:\Program Files (x86)\TomTom\MySportsConnect\ContentManager.dll
2016-06-20 15:16 - 2016-06-20 15:16 - 00019968 _____ () C:\Program Files (x86)\TomTom\MySportsConnect\TomTomSupporterBase.dll
2016-06-20 15:19 - 2016-06-20 15:19 - 00028672 _____ () C:\Program Files (x86)\TomTom\MySportsConnect\QtSolutions_SingleApplication.dll
2016-06-20 15:17 - 2016-06-20 15:17 - 00109568 _____ () C:\Program Files (x86)\TomTom\MySportsConnect\kqoauth.dll
2016-06-20 15:16 - 2016-06-20 15:16 - 00017920 _____ () C:\Program Files (x86)\TomTom\MySportsConnect\TimeParse.dll
2016-04-22 01:08 - 2016-04-22 01:08 - 01047864 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2016-04-22 01:08 - 2016-04-22 01:08 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2016-04-22 01:07 - 2016-04-22 01:07 - 00244024 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll
2016-06-03 03:36 - 2016-06-03 03:36 - 40523456 _____ () C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll
2015-03-17 02:34 - 2015-03-17 02:34 - 00010240 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\de_de\acrotray.deu
2009-08-04 18:23 - 2009-08-04 18:23 - 00063032 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\HPTools.dll
2009-08-04 18:23 - 2009-08-04 18:23 - 00075320 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\HPToolkit.dll
2016-06-27 17:22 - 2016-06-27 17:22 - 00048816 _____ () F:\programme\FileZilla FTP Client\fzshellext.dll
2016-06-08 00:10 - 2016-06-08 00:10 - 00118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node
2016-06-08 00:10 - 2016-06-08 00:10 - 00205824 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2016-06-08 00:10 - 2016-06-08 00:10 - 00117248 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node
2016-06-08 00:10 - 2016-06-08 00:10 - 00125440 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node
2016-06-08 00:41 - 2016-06-08 00:41 - 00098496 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll
2016-06-08 00:10 - 2016-06-08 00:10 - 00166400 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node
2016-05-20 17:30 - 2016-05-20 17:30 - 00118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\fs-ext\build\Release\fs-ext.node
2016-05-20 17:30 - 2016-05-20 17:30 - 00121344 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ref\build\Release\binding.node
2016-05-20 17:31 - 2016-05-20 17:31 - 00126464 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ffi\build\Release\ffi_bindings.node
2016-05-20 17:31 - 2016-05-20 17:31 - 00223232 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2016-06-03 03:20 - 2016-06-03 03:20 - 00098496 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll
2016-05-20 17:30 - 2016-05-20 17:30 - 00121856 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\bufferutil\build\Release\bufferutil.node
2016-05-20 17:29 - 2016-05-20 17:29 - 00166400 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\idle-gc\build\Release\idle-gc.node
2016-06-17 23:39 - 2016-06-15 11:15 - 01745560 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\libglesv2.dll
2016-06-17 23:39 - 2016-06-15 11:15 - 00091288 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\libegl.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ==========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2015-10-30 09:24 - 2016-07-10 02:50 - 00001331 ____A C:\Windows\system32\Drivers\etc\hosts
192.168.10.10 phpmyadmin.dev
192.168.10.11 moiekraam.dev
192.168.10.10 gedok_drei.dev
192.168.10.10 katesieben2015.dev
192.168.10.10 katesechs2015.dev
192.168.10.10 kateacht2015.dev
192.168.10.10 kateneun2015.dev
192.168.10.10 KateEins2016Spark.dev
192.168.10.10 schuermann.dev
192.168.10.10 MoieLanding2.dev
192.168.10.10 katezwei2016.dev
192.168.10.10 katedrei2016.dev
192.168.10.10 lw-2016-KatenBlog.dev
192.168.10.10 wp.lw-2016-KatenBlog.dev
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1764389191-2749221916-298074052-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\...\StartupApproved\Run32: => "EYAN"
HKU\S-1-5-21-1764389191-2749221916-298074052-1001\...\StartupApproved\Run: => "msiql"
HKU\S-1-5-21-1764389191-2749221916-298074052-1001\...\StartupApproved\Run: => "QGuan10in1"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [TCP Query User{784112A9-A3C6-4BDD-9ED8-46BA7A307E24}F:\programmie\virtualboxwin10\vboxheadless.exe] => (Allow) F:\programmie\virtualboxwin10\vboxheadless.exe
FirewallRules: [UDP Query User{241D35D6-8731-4CA8-984E-422512C48EE2}F:\programmie\virtualboxwin10\vboxheadless.exe] => (Allow) F:\programmie\virtualboxwin10\vboxheadless.exe
FirewallRules: [{F4A6582C-1073-4442-B4E6-948D9130B9AD}] => (Allow) C:\Users\eva\AppData\Local\Apps\2.0\62J1R0O9.AQA\R005Z9K4.V1V\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [{71550C36-8C38-4023-83EC-50DF5EF66FD3}] => (Allow) C:\Users\eva\AppData\Local\Apps\2.0\62J1R0O9.AQA\R005Z9K4.V1V\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [TCP Query User{DFCB7EEF-64DC-4E38-8411-9043634D4B97}C:\users\eva\appdata\local\apps\2.0\62j1r0o9.aqa\r005z9k4.v1v\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\eva\appdata\local\apps\2.0\62j1r0o9.aqa\r005z9k4.v1v\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [UDP Query User{03CDE024-49F7-4AFE-A14D-EAA929A2C7B3}C:\users\eva\appdata\local\apps\2.0\62j1r0o9.aqa\r005z9k4.v1v\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\eva\appdata\local\apps\2.0\62j1r0o9.aqa\r005z9k4.v1v\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [{9BBACB26-BB64-4EAF-AFBD-1BA7B4124F78}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\DeviceSetup.exe
FirewallRules: [{2DC9576D-28D8-472D-8433-6962859A39FE}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\HPNetworkCommunicator.exe
FirewallRules: [{8ED3AD6D-AB33-4C31-AF5B-BDBA2D5976AF}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{2981F380-867B-4867-903E-E4D3288068C9}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{B8C0C8A8-1219-4229-AD8F-DB01EB2E1F3A}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{20BB3DA7-B517-4182-BBDF-D11DF0A54F1D}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{F7F92C6B-1E55-4E50-805F-174271A587BA}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{BA72B91B-ED78-4851-8100-2E5F36CA6479}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{B3CB3673-4F10-4074-8417-C72C7249F17D}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{85A1331A-1F28-4627-91A0-3319129B2E2C}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{826AD43B-2EB6-40C8-B0B4-8C986844D993}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{9333F9D2-6F7D-4966-A834-BA7B8789FDF2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{C2816592-6068-43F3-B12B-4AA4168A5745}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{21F23D24-9663-44FF-B24E-F683694D9BB9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{44EB0A33-6357-430D-A878-9451A45E104F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{814CA135-EA5C-4B63-B4A4-9EFE6F306F2D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{B690A38D-BEF2-47CF-905F-1E639DF45DA8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{47251C24-8FF7-4958-AEF9-42F31057750F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{06859BF8-A87B-4669-AFF7-A4831A25E8E6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{5BBA4D12-2EBE-4318-9275-A5BE63B151BB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{B4BE8013-364F-4C28-A149-C37A9F2D52D6}] => (Allow) F:\programmie\VisualStudio\Common7\IDE\devenv.exe
FirewallRules: [{CA974891-3E95-4F3D-9908-67B01417506B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{CABD434D-12EF-46ED-8836-FCBDDDF2E21C}F:\programme\vlc\vlc.exe] => (Allow) F:\programme\vlc\vlc.exe
FirewallRules: [UDP Query User{BB3447DA-0C58-4DC8-8D93-F702EE4E50E9}F:\programme\vlc\vlc.exe] => (Allow) F:\programme\vlc\vlc.exe
FirewallRules: [{CCE4E61E-3B78-40C8-84BC-5CA0D7448E50}] => (Allow) C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWifiSvr.exe
FirewallRules: [{5AF5EAF8-AFDD-4335-B666-8593FBD2070E}] => (Allow) C:\Program Files (x86)\GreatMaker\MaohaWiFi\DrvUpdate.exe
==================== Wiederherstellungspunkte =========================
22-06-2016 09:03:53 Geplanter Prüfpunkt
25-06-2016 14:28:33 Installiert Screen Split
01-07-2016 14:07:10 Installed Oracle VM VirtualBox 5.0.24
07-07-2016 12:47:18 AMDCleanupUtility Restore Point
==================== Fehlerhafte Geräte im Gerätemanager =============
Name: Coprozessor
Description: Coprozessor
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (07/10/2016 12:41:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nsh70D1.exe, Version: 0.0.0.0, Zeitstempel: 0x578224d8
Name des fehlerhaften Moduls: nsh70D1.exe, Version: 0.0.0.0, Zeitstempel: 0x578224d8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00013146
ID des fehlerhaften Prozesses: 0x20b8
Startzeit der fehlerhaften Anwendung: 0xnsh70D1.exe0
Pfad der fehlerhaften Anwendung: nsh70D1.exe1
Pfad des fehlerhaften Moduls: nsh70D1.exe2
Berichtskennung: nsh70D1.exe3
Vollständiger Name des fehlerhaften Pakets: nsh70D1.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nsh70D1.exe5
Error: (07/10/2016 12:41:11 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: nsh70D1.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 00E03146
Stapel:
Error: (07/10/2016 04:21:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nsr710F.exe, Version: 0.0.0.0, Zeitstempel: 0x5781ad51
Name des fehlerhaften Moduls: nsr710F.exe, Version: 0.0.0.0, Zeitstempel: 0x5781ad51
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00013146
ID des fehlerhaften Prozesses: 0x204c
Startzeit der fehlerhaften Anwendung: 0xnsr710F.exe0
Pfad der fehlerhaften Anwendung: nsr710F.exe1
Pfad des fehlerhaften Moduls: nsr710F.exe2
Berichtskennung: nsr710F.exe3
Vollständiger Name des fehlerhaften Pakets: nsr710F.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nsr710F.exe5
Error: (07/10/2016 04:21:14 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: nsr710F.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 00053146
Stapel:
Error: (07/10/2016 03:01:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nsk5FAA.exe, Version: 0.0.0.0, Zeitstempel: 0x57819843
Name des fehlerhaften Moduls: nsk5FAA.exe, Version: 0.0.0.0, Zeitstempel: 0x57819843
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00013146
ID des fehlerhaften Prozesses: 0x13bc
Startzeit der fehlerhaften Anwendung: 0xnsk5FAA.exe0
Pfad der fehlerhaften Anwendung: nsk5FAA.exe1
Pfad des fehlerhaften Moduls: nsk5FAA.exe2
Berichtskennung: nsk5FAA.exe3
Vollständiger Name des fehlerhaften Pakets: nsk5FAA.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nsk5FAA.exe5
Error: (07/10/2016 03:01:54 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: nsk5FAA.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 00223146
Stapel:
Error: (07/10/2016 12:25:56 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm SystemHealer.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 8e4
Startzeit: 01d1da30a38e7863
Beendigungszeit: 4294967295
Anwendungspfad: C:\Program Files (x86)\SystemHealer\SystemHealer.exe
Berichts-ID: 1a12cd2d-4624-11e6-b242-bcaec528e8f5
Vollständiger Name des fehlerhaften Pakets:
Auf das fehlerhafte Paket bezogene Anwendungs-ID:
Error: (07/10/2016 12:25:51 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm NarutoOnlinede.exe, Version 2.3.0.4222 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 9fc
Startzeit: 01d1da30b6acf11c
Beendigungszeit: 4294967295
Anwendungspfad: C:\Program Files (x86)\NarutoOnline\NarutoOnlinede.exe
Berichts-ID: 170962ad-4624-11e6-b242-bcaec528e8f5
Vollständiger Name des fehlerhaften Pakets:
Auf das fehlerhafte Paket bezogene Anwendungs-ID:
Error: (07/10/2016 12:25:31 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm HealerConsole.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 16ec
Startzeit: 01d1da30a15e40de
Beendigungszeit: 4294967295
Anwendungspfad: C:\Program Files (x86)\SystemHealer\HealerConsole.exe
Berichts-ID: 0b149fea-4624-11e6-b242-bcaec528e8f5
Vollständiger Name des fehlerhaften Pakets:
Auf das fehlerhafte Paket bezogene Anwendungs-ID:
Error: (07/10/2016 12:18:10 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm 79FA.tmp, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: d34
Startzeit: 01d1da2f9ace4cc4
Beendigungszeit: 4294967295
Anwendungspfad: C:\Windows\Temp\79FA.tmp
Berichts-ID: 0428f752-4623-11e6-b241-bcaec528e8f5
Vollständiger Name des fehlerhaften Pakets:
Auf das fehlerhafte Paket bezogene Anwendungs-ID:
Systemfehler:
=============
Error: (07/10/2016 12:33:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Coacuiedclernege Module" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2 = Das System kann die angegebene Datei nicht finden.
Error: (07/10/2016 12:31:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "mesuwebyzbt" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2 = Das System kann die angegebene Datei nicht finden.
Error: (07/10/2016 12:31:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "dowidoly" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2 = Das System kann die angegebene Datei nicht finden.
Error: (07/10/2016 12:29:52 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (07/10/2016 12:29:01 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Synchronisierungshost_909c7b erreicht.
Error: (07/10/2016 12:29:01 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Benutzerdatenspeicher _909c7b erreicht.
Error: (07/10/2016 12:29:01 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Benutzerdatenspeicher _909c7b" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler:
%%1056 = Es wird bereits eine Instanz des Dienstes ausgeführt.
Error: (07/10/2016 12:28:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_909c7b" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (07/10/2016 12:28:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _909c7b" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (07/10/2016 12:28:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kontaktdaten_909c7b" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
CodeIntegrity:
===================================
Date: 2016-07-10 12:48:55.189
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:48:55.174
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:42:54.366
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:42:54.351
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:39:41.179
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:39:41.164
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:39:40.739
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:39:40.723
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:39:10.721
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-07-10 12:39:10.703
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: AMD Phenom(tm) II X4 955 Processor
Prozentuale Nutzung des RAM: 36%
Installierter physikalischer RAM: 8191.17 MB
Verfügbarer physikalischer RAM: 5198.62 MB
Summe virtueller Speicher: 9471.17 MB
Verfügbarer virtueller Speicher: 6171.23 MB
==================== Laufwerke ================================
Drive c: (SSD500) (Fixed) (Total:465.76 GB) (Free:346.84 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)]
Drive d: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive e: (W-Elements) (Fixed) (Total:1397.26 GB) (Free:1106.8 GB) NTFS
Drive f: (zweite) (Fixed) (Total:931.51 GB) (Free:623.82 GB) NTFS
Drive x: () (Fixed) (Total:119.14 GB) (Free:29.08 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: FF67AEEB)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=119.1 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 00510050)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 247A7B0F)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)
========================================================
Disk: 3 (MBR Code: Windows XP) (Size: 1397.3 GB) (Disk ID: 0012A785)
Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=07 NTFS)
==================== Ende von Addition.txt ============================ und hier noch zwei logfile aus dem windows TMP Verzeichnis, die sagen, dass MPC als NetworkService läuft, MpCmdRun . log: Code:
-------------------------------------------------------------------------------------
MpCmdRun: Command Line: "C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey A5F75E14-2394-DC1E-ABA5-05AF1FB01ED0
Start Time: So Jul 10 2016 04:06:20
Run as Network Service
MpCmdRun: End Time: So Jul 10 2016 04:06:20
-------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------
MpCmdRun: Command Line: "C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey 9BF98ADA-AA59-69FF-0F8B-45372EABD77F
Start Time: So Jul 10 2016 04:11:28
Run as Network Service
MpCmdRun: End Time: So Jul 10 2016 04:11:28
-------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------
MpCmdRun: Command Line: "C:\Program Files\Windows Defender\MpCmdRun.exe" SignatureUpdate -ScheduleJob -RestrictPrivileges
Start Time: So Jul 10 2016 04:21:09
Run as Network Service
MpCmdRun: End Time: So Jul 10 2016 04:21:09
-------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------
MpCmdRun: Command Line: "C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 101B8C3B-5C51-92E4-8D05-7801B60664C9
Start Time: So Jul 10 2016 12:31:26
Run as Network Service
MpCmdRun: End Time: So Jul 10 2016 12:31:26
-------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------
MpCmdRun: Command Line: "C:\Program Files\Windows Defender\MpCmdRun.exe" SignatureUpdate -ScheduleJob -RestrictPrivileges
Start Time: So Jul 10 2016 12:41:04
Run as Network Service
MpCmdRun: End Time: So Jul 10 2016 12:41:04
und hier die zweite MpSigStub.log Code:
----------------------------------------------------------------------------------
Command: MpSigStub.exe /program WD /q
Start time: 10.07.2016 04:16 (version 1.1.12939.0)
=================================== ProductSearch ==================================
Windows Defender:
Status: Active
Product: 4.9.10586.0
Engine: 1.1.12902.0
Signatures: 1.225.1020.0
NIS Engine: 2.1.12706.0
NIS Signatures: 116.12.0.0
================================ PackageDiscovery ================================
Package files discovered:
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1020.0_TO_1.225.1028.0_MPASDLTA.VDM._P (?.?.?.?)
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1020.0_TO_1.225.1028.0_MPAVDLTA.VDM._P (?.?.?.?)
AM BDD:
Engine: Not included
AS base VDM: Not included
AV base VDM: Not included
AS delta VDM: 1.225.1028.0
AV delta VDM: 1.225.1028.0
================================ PatchApplication ================================
Patched mpasdlta.vdm to 1.225.1028.0
Patched mpavdlta.vdm to 1.225.1028.0
================================= MpUpdateEngine =================================
Package files for the engine update:
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1020.0_TO_1.225.1028.0_MPASDLTA.VDM._P (?.?.?.?)
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1020.0_TO_1.225.1028.0_MPAVDLTA.VDM._P (?.?.?.?)
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\mpasdlta.vdm (1.225.1028.0)
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\mpavdlta.vdm (1.225.1028.0)
Updated from C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs (0x0)
================================= ValidateUpdate =================================
MpSigStub successfully updated Windows Defender using the AM BDD package.
Original: Updated to:
AS delta VDM: 1.225.1020.0 1.225.1028.0
AV delta VDM: 1.225.1020.0 1.225.1028.0
Set DeltaUpdateFailure to 0
Set BddUpdateFailure to 0
Deleted C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1020.0_TO_1.225.1028.0_MPASDLTA.VDM._P
Deleted C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1020.0_TO_1.225.1028.0_MPAVDLTA.VDM._P
End time: 10.07.2016 04:16
----------------------------------------------------------------------------------
----------------------------------------------------------------------------------
Command: MpSigStub.exe /program WD /q
Start time: 10.07.2016 12:36 (version 1.1.12939.0)
=================================== ProductSearch ==================================
Windows Defender:
Status: Active
Product: 4.9.10586.0
Engine: 1.1.12902.0
Signatures: 1.225.1028.0
NIS Engine: 2.1.12706.0
NIS Signatures: 116.12.0.0
================================ PackageDiscovery ================================
Package files discovered:
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1028.0_TO_1.225.1069.0_MPASDLTA.VDM._P (?.?.?.?)
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1028.0_TO_1.225.1069.0_MPAVDLTA.VDM._P (?.?.?.?)
AM BDD:
Engine: Not included
AS base VDM: Not included
AV base VDM: Not included
AS delta VDM: 1.225.1069.0
AV delta VDM: 1.225.1069.0
================================ PatchApplication ================================
Patched mpasdlta.vdm to 1.225.1069.0
Patched mpavdlta.vdm to 1.225.1069.0
================================= MpUpdateEngine =================================
Package files for the engine update:
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1028.0_TO_1.225.1069.0_MPASDLTA.VDM._P (?.?.?.?)
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1028.0_TO_1.225.1069.0_MPAVDLTA.VDM._P (?.?.?.?)
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\mpasdlta.vdm (1.225.1069.0)
C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\mpavdlta.vdm (1.225.1069.0)
Updated from C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs (0x0)
================================= ValidateUpdate =================================
MpSigStub successfully updated Windows Defender using the AM BDD package.
Original: Updated to:
AS delta VDM: 1.225.1028.0 1.225.1069.0
AV delta VDM: 1.225.1028.0 1.225.1069.0
Set DeltaUpdateFailure to 0
Set BddUpdateFailure to 0
Deleted C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1028.0_TO_1.225.1069.0_MPASDLTA.VDM._P
Deleted C:\Windows\Temp\5403879E02DD90A4DB2ACC30A3BF4EA5-Sigs\1.225.1028.0_TO_1.225.1069.0_MPAVDLTA.VDM._P
End time: 10.07.2016 12:36
---------------------------------------------------------------------------------- eva
*hofft und grüßt
sorry,
nach der Anleitung habe ich erst die FRST log gesandt.
werde die anderen gleich nachholen.
der mbamlog: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 10.07.2016
Suchlaufzeit: 14:16
Protokolldatei: mbamlog.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.07.10.03
Rootkit-Datenbank: v2016.05.27.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: eva
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 362244
Abgelaufene Zeit: 25 Min., 4 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 5
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe, 2428, , [db8058ca4d4d122476f3d6bc58a92ed2]
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray.exe, 4916, , [fb602ef45f3b23139dcc70229968e51b]
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe, 4272, , [283367bbfb9fbc7a89e0a3ef07fa9f61]
PUP.Optional.Linkury.ACMB1, C:\ProgramData\CloudPrinter\CloudPrinter.exe, 2208, , [bc9f071b742639fde98d1bda16ed0af6]
PUP.Optional.ProntSpooler, C:\Users\eva\AppData\Local\Apps\2.0\abril.exe, 2532, , [d883e1414d4d68ce9d638d6c3fc4e818]
Module: 50
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\WinService.dll, , [be9d2df5e4b65cda5712dbb741c005fb],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, , [43187fa39ffb39fdce9bb4de3cc5db25],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, , [43187fa39ffb39fdce9bb4de3cc5db25],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, , [fa610121bfdb44f2e6835a3823de1fe1],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, , [fa610121bfdb44f2e6835a3823de1fe1],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, , [5efd0b17f1a9af879ecb177b6d94a55b],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, , [5efd0b17f1a9af879ecb177b6d94a55b],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XBus.dll, , [6bf0a181603a2e0874f5533fcb368878],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TrayFrame.dll, , [f26999892476af87c9a069293dc4ed13],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Monitor.dll, , [c3985ec45f3bc274d198801224dd728e],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Database.dll, , [2a31cf53c9d1f2442346a7eb24dd20e0],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LogReport.dll, , [72e999894b4f5ed8de8bd4bec23ff30d],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\BrowserPlugIn.dll, , [0259f131b4e61b1bdf8afc96c938d42c],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Cleaner.dll, , [b6a512109505ff370960850d3cc5eb15],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeProtect.dll, , [99c2081a2a702c0a3336385a837e7d83],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Update.dll, , [71ea67bbc7d354e262073e543fc2fd03],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Web.dll, , [1447e53d1c7eeb4b2742c9c918e94db3],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi.dll, , [411acd550b8fb5814722642e2bd6ba46],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi.dll, , [411acd550b8fb5814722642e2bd6ba46],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi.dll, , [411acd550b8fb5814722642e2bd6ba46],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinApi.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinUsbApi.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AndriodServer.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XSkin.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
Registrierungsschlüssel: 32
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCProtectService, , [db8058ca4d4d122476f3d6bc58a92ed2],
PUP.Optional.Wajam, HKLM\SOFTWARE\CLASSES\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, , [a9b24bd7d4c658de46d6dabe1de59f61],
PUP.Optional.Wajam, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, , [64f76db57b1fb482fa22445420e27d83],
PUP.Optional.Wajam, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\56BF5154-0B48-4ADB-902A-6C8B12E270D9, , [4318869c8c0e0234b567425615eda35d],
PUP.Optional.Youndoo, HKLM\SOFTWARE\CLASSES\CLSID\{6710C780-E20E-4C49-A87D-321850ED3D7C}, , [8ccf3be75c3e71c52f6382ee3bc77090],
PUP.Optional.Linkury.ACMB1, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\CloudPrinter, , [bc9f071b742639fde98d1bda16ed0af6],
PUP.Optional.ProntSpooler, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ProntSpooler, , [d883e1414d4d68ce9d638d6c3fc4e818],
PUP.Optional.IDSCProduct, HKLM\SOFTWARE\MICROSOFT\TRACING\idscservice_RASAPI32, , [87d47ea4405a51e596c41ede946fc937],
PUP.Optional.IDSCProduct, HKLM\SOFTWARE\MICROSOFT\TRACING\idscservice_RASMANCS, , [97c4f929e0ba072f80da32ca29daf10f],
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\TRACING\otutnetwork_RASAPI32, , [fa61fc26a2f8e551e239d12bc93a9868],
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\TRACING\otutnetwork_RASMANCS, , [d88342e07c1ee155db4064989b688e72],
PUP.Optional.WizzCaster, HKLM\SOFTWARE\MICROSOFT\TRACING\wizzcaster_RASAPI32, , [9bc0b270970386b00da922dcfd06af51],
PUP.Optional.WizzCaster, HKLM\SOFTWARE\MICROSOFT\TRACING\wizzcaster_RASMANCS, , [e675130f4e4c61d53482ee1030d3718f],
PUP.Optional.YesSearches, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{31ED907D-68F0-415A-B9D2-8597C8237F1A}, , [c9926fb3e8b2de5842a0e0e9a161eb15],
PUP.Optional.UPUpdata, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{86DDD67D-EE19-40BD-A8CA-DABAB8E388A3}, , [312a32f05d3db48269fe22a805fd8b75],
PUP.Optional.UPUpdata, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\tasklist, , [98c38f9312886ec8d593c90159a96f91],
PUP.Optional.Trotux, HKLM\SOFTWARE\WOW6432NODE\trotuxSoftware, , [a0bb8d95168450e6e14b7c4ee71bf50b],
PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\CloudPrinter_RASAPI32, , [61fa1f037921ea4c14295c9a6b980bf5],
PUP.Optional.Linkury.ACMB1, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\CloudPrinter_RASMANCS, , [b5a6e73b801aad89132a6393887bf50b],
PUP.Optional.Trotux, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{AC955DA7-5091-4E6D-8330-19D5C2BDBF51}, , [ce8d4bd7fd9d68ce2a008743748ea35d],
PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC, , [372450d233671422cc27737e15eeae52],
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\WIN\win_en_77, , [f46766bc009ade58b8072cc49d66d32d],
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCKpt, , [de7d9c86fc9e51e52c9f923713ef21df],
PUP.Optional.ConvertAd.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\DOWIDOLY, , [90cbaf73b6e480b66bf4876739ca5ba5],
PUP.Optional.ConvertAd.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MESUWEBYZBT, , [36258f936337fe38fa6517d761a2c63a],
PUP.Optional.ConvertAd.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RIJUFOZE, , [2b3079a974264fe7431c4ea0fd0625db],
PUP.Optional.Linkury.ACMB1, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting, , [5cffbf638614e84e4ad28c6bb053bb45],
PUP.Optional.ProntSpooler, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\ProntSpooler, , [ea71ca58fe9ccc6af90801f8d1328b75],
PUP.Optional.Wizzlabs, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\Wizzlabs, , [4e0d2df5c4d638fea9d08578f70ca759],
PUP.Optional.Komodia, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\INSTALLPATH\STATUS, , [0e4d78aacdcdc27486c4945136cd966a],
PUP.Optional.IDSCProduct, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\MICROSOFT\IDSC, , [67f40121693174c2df4e35c6c73c01ff],
PUP.Optional.SystemHealer, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\SYSTEM HEALER, , [fa61e83a841610260a57ac2f5aa9738d],
Registrierungswerte: 16
PUP.Optional.YesSearches, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{31ED907D-68F0-415A-B9D2-8597C8237F1A}|Path, \Coacuiedclernege Module, , [c9926fb3e8b2de5842a0e0e9a161eb15]
PUP.Optional.UPUpdata, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{86DDD67D-EE19-40BD-A8CA-DABAB8E388A3}|Path, \tasklist, , [312a32f05d3db48269fe22a805fd8b75]
PUP.Optional.Trotux, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{AC955DA7-5091-4E6D-8330-19D5C2BDBF51}|DisplayName, trotux - Uninstall, , [ce8d4bd7fd9d68ce2a008743748ea35d]
PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC|Location, C:\Program Files (x86)\MPC Cleaner, , [372450d233671422cc27737e15eeae52]
PUP.Optional.ConvertAd.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\dowidoly|ImagePath, C:\Program Files (x86)\1F002AC0-1468102438-0800-5248-BCAEC528E8F5\jnsg5BE4.tmp, , [90cbaf73b6e480b66bf4876739ca5ba5]
PUP.Optional.ConvertAd.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\mesuwebyzbt|ImagePath, C:\Program Files (x86)\1F002AC0-1468102438-0800-5248-BCAEC528E8F5\knsm450A.tmpfs, , [36258f936337fe38fa6517d761a2c63a]
PUP.Optional.ConvertAd.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\rijufoze|ImagePath, C:\Program Files (x86)\1F002AC0-1468102438-0800-5248-BCAEC528E8F5\hnsu7114.tmp, , [2b3079a974264fe7431c4ea0fd0625db]
PUP.Optional.Linkury.ACMB1, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\CLOUDPRINTER|ImagePath, C:\ProgramData\\CloudPrinter\\CloudPrinter.exe shuz -f "C:\ProgramData\\CloudPrinter\\CloudPrinter.dat" -l -a, , [0f4c978ba2f87abc749c00f7ee1521df]
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCPROTECTSERVICE|ImagePath, "C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe", , [3229948e633756e0ceff25cd0bf8b050]
PUP.Optional.Komodia, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\INSTALLPATH\STATUS|FlowsurfCB, N, , [0e4d78aacdcdc27486c4945136cd966a]
PUP.Optional.IDSCProduct, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\MICROSOFT\IDSC|partner, sum, , [67f40121693174c2df4e35c6c73c01ff]
PUP.Optional.SystemHealer, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\SYSTEM HEALER|HomePage, hxxp://systemhealer.com/, , [fa61e83a841610260a57ac2f5aa9738d]
PUP.Optional.SystemHealer, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\SYSTEM HEALER|CartURL, hxxp://gen2.securedshopgate.com/?b=35&t=1&tid=351002430-DE-263_96B1F2B2-9C63-421B-91F6-9DB8B2A9105F&clb=1, , [e17aa47e88128caac49354aa0cf7f808]
PUP.Optional.SystemHealer, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\SYSTEM HEALER|SupportPage, hxxp://systemhealer.com/support/#contact, , [d685170bc2d8af87431ead2e8d76c33d]
PUP.Optional.SystemHealer, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\SYSTEM HEALER|CallBanner1, hxxp://callbanner.systemhealer.com/?type=45, , [2e2d41e13a607abc322f994220e31fe1]
PUP.Optional.SystemHealer, HKU\S-1-5-21-1764389191-2749221916-298074052-1001\SOFTWARE\SYSTEM HEALER|CallBanner2, hxxp://callbanner.systemhealer.com/?type=46, , [3f1c63bfc0da9c9ab3aeb52654afdd23]
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 22
PUP.Optional.MorePowerfulCleaner, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC, , [1843fc26930758deca7c66840bf86898],
PUP.Optional.Linkury.ACMB1, C:\ProgramData\CloudPrinter, , [bc9f071b742639fde98d1bda16ed0af6],
PUP.Optional.MCorp, C:\Users\eva\AppData\Roaming\MCorp\1147, , [80db051df5a538fed90446b71fe4f50b],
PUP.Optional.MCorp, C:\Users\eva\AppData\Roaming\MCorp, , [80db051df5a538fed90446b71fe4f50b],
PUP.Optional.YellowSend, C:\Users\eva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YSPackage, , [e6752cf6d1c991a5cf04922fa260ba46],
PUP.Optional.IDSCProduct, C:\Program Files (x86)\Max Driver Updater, , [7ddec75b6535e3530329e2e6af531ee2],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Exe, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall, , [6af1f52dd3c71a1c495bd3f6976b13ed],
Dateien: 186
PUP.Optional.MorePowerfulCleaner, C:\WINDOWS\SYSTEM32\drivers\MPCKpt.sys, , [b66a551d00e41d5416f4cb5497926238],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [5b00df43ebaf93a35b0e157dc04116ea],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe, , [db8058ca4d4d122476f3d6bc58a92ed2],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\WinService.dll, , [be9d2df5e4b65cda5712dbb741c005fb],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, , [43187fa39ffb39fdce9bb4de3cc5db25],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, , [fa610121bfdb44f2e6835a3823de1fe1],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, , [5efd0b17f1a9af879ecb177b6d94a55b],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray.exe, , [fb602ef45f3b23139dcc70229968e51b],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XBus.dll, , [6bf0a181603a2e0874f5533fcb368878],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TrayFrame.dll, , [f26999892476af87c9a069293dc4ed13],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Monitor.dll, , [c3985ec45f3bc274d198801224dd728e],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Database.dll, , [2a31cf53c9d1f2442346a7eb24dd20e0],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LogReport.dll, , [72e999894b4f5ed8de8bd4bec23ff30d],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\BrowserPlugIn.dll, , [0259f131b4e61b1bdf8afc96c938d42c],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Cleaner.dll, , [b6a512109505ff370960850d3cc5eb15],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeProtect.dll, , [99c2081a2a702c0a3336385a837e7d83],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Update.dll, , [71ea67bbc7d354e262073e543fc2fd03],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Web.dll, , [1447e53d1c7eeb4b2742c9c918e94db3],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi.dll, , [411acd550b8fb5814722642e2bd6ba46],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe, , [283367bbfb9fbc7a89e0a3ef07fa9f61],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll64.dll, , [f5660b176f2b88aeea7f95fddf22ab55],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MainFrame.dll, , [4714978b6a3073c31158d3bf41c0a65a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPC.exe, , [0952839feab0d06644250f83e21f9868],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCAutoClean.exe, , [98c31d05dcbe092d6405078b41c041bf],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCNews.exe, , [72e99c86d1c981b572f7355d778af60a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSecurity.exe, , [28330022752534024920b5ddaf52fa06],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSetting.exe, , [9fbc6cb6871366d01950d9b950b13ac6],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi64.dll, , [7edded35d6c43afcf4758a08ab5604fc],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SetupFrame.dll, , [6cef061cbae01b1b5f0af9993dc48080],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Uninstall.exe, , [f66568ba82181c1abdac6e241ce57e82],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UninstallFrame.dll, , [97c452d08b0f201696d3cec4d52c2dd3],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UninstDelete.exe, , [78e3db47c5d556e023461181956c6b95],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UpdateHost.exe, , [1b402af8fe9c6dc95712246ece33629e],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Upgrade.dll, , [6eed170bfc9e6dc96603a2f04cb5bd43],
PUP.Optional.Tuto4PC, C:\Program Files (x86)\mpck\uninstaller.exe, , [65f680a25e3c41f5bca207a2b153a060],
PUP.Optional.Tuto4PC, C:\Program Files (x86)\Max Driver Updater\uninstaller.exe, , [e378f72bacee93a31d4125843cc854ac],
PUP.Optional.MorePowerfulCleaner, C:\Windows\Temp\1h3d4fwy.exe, , [d48732f03f5b93a32aa84a4ca4604fb1],
PUP.Optional.MorePowerfulCleaner, C:\Windows\Temp\hhogf3wf.exe, , [fd5e0a18980237ff23afb0e6ca3a15eb],
PUP.Optional.YesSearches, C:\Windows\System32\Tasks\Coacuiedclernege Module, , [3724e53d19816acc5b859534907237c9],
PUP.Optional.UPUpdata, C:\Windows\System32\Tasks\tasklist, , [73e8bf632278063082e35a70f111bf41],
PUP.Optional.MorePowerfulCleaner, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC\MPC Cleaner.lnk, , [1843fc26930758deca7c66840bf86898],
PUP.Optional.Linkury.ACMB1, C:\ProgramData\CloudPrinter\CloudPrinter.dat, , [bc9f071b742639fde98d1bda16ed0af6],
PUP.Optional.Linkury.ACMB1, C:\ProgramData\CloudPrinter\CloudPrinter.exe, , [bc9f071b742639fde98d1bda16ed0af6],
PUP.Optional.Linkury.ACMB1, C:\ProgramData\CloudPrinter\Config.xml, , [bc9f071b742639fde98d1bda16ed0af6],
PUP.Optional.Linkury.ACMB1, C:\ProgramData\CloudPrinter\Jackson.exe, , [bc9f071b742639fde98d1bda16ed0af6],
PUP.Optional.ProntSpooler, C:\Users\eva\AppData\Local\Apps\2.0\abril.exe, , [d883e1414d4d68ce9d638d6c3fc4e818],
PUP.Optional.ProntSpooler, C:\Users\eva\AppData\Local\Apps\2.0\abril.InstallLog, , [1b403de5d4c6dc5ad52b8277768df808],
PUP.Optional.ProntSpooler, C:\Users\eva\AppData\Local\Apps\2.0\abril.InstallState, , [6eedbd659901af87a65a01f8699a55ab],
PUP.Optional.MCorp, C:\Users\eva\AppData\Roaming\MCorp\1147\udpx, , [80db051df5a538fed90446b71fe4f50b],
PUP.Optional.YellowSend, C:\Users\eva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YSPackage\Configure.lnk, , [e6752cf6d1c991a5cf04922fa260ba46],
PUP.Optional.IDSCProduct, C:\Program Files (x86)\Max Driver Updater\config.conf, , [7ddec75b6535e3530329e2e6af531ee2],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\snh.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinApi.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinUsbApi.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdcManager.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AndriodServer.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\CeBase.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\CrashReport.exe, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\dbgkpt.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT.manifest, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcm90.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcp90.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcr90.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\nmlct, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\symsrv.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\symsrv.yes, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\wfhxte.dat, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\xadb.exe, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XSkin.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Exe\ADC_qd00000.exe, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\Clean.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\PlugIn.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\as.db, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\cf.db, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\run.db, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\st.db, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCBase_32.sys, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.inf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.sys, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_32.sys, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_64.sys, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_xp_32.sys, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q2.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_gray.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_green.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_org.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_red.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g1.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g10.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g11.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g12.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g2.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g3.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g4.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g5.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g6.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g7.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g8.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g9.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q1.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q10.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q11.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q12.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q3.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q4.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q5.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q6.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q7.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q8.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q9.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r1.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r10.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r11.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r12.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r2.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r3.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r4.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r5.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r6.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r7.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r8.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r9.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_gray.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_green.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_org.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_red.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y1.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y10.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y11.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y12.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y2.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y3.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y4.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y5.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y6.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y7.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y8.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y9.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{08DA4B46-E0EB-4B4D-8C8B-558C967AF6C5}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{22A8D5A3-F368-4C6B-BF4D-3C901EBCF242}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{3F9A707D-2C36-4344-8621-B8E4ADC95C18}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{ADC520A9-B4B3-791E-B149-845C11673CB0}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{CDA529A9-B1B3-793E-B449-845C11673CB5}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{D8EC46AF-529F-4636-963B-C086429C73DA}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{DE37CD8C-DE7B-481F-A676-303ABAFBEE04}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{EDA029A1-B5BA-793E-B649-875C18673CC5}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{F154C596-75A9-4028-90E8-9752BD7CA05B}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{FDA029A2-A5BA-797E-B689-875E18673FC2}.ico, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\toasts_waring.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\adcapp.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\adcweb.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\block.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\home.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\ie.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\search.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_green.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_org.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_red.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_green.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_org.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_red.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_green.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_org.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_red.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_green.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_org.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_red.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_green.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_org.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_red.png, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcm90.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcp90.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcr90.dll, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner\Lang.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner\Skin.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport\Lang.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport\Skin.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News\Lang.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News\Skin.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray\Lang.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray\Skin.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall\Lang.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall\Skin.xf, , [6af1f52dd3c71a1c495bd3f6976b13ed],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) schon mal normales Starten von Chrome. bin schon mal begeistert.
AdwCleaner log
AdwCleaner Logfile: Code:
# AdwCleaner v5.201 - Bericht erstellt am 10/07/2016 um 15:08:32
# Aktualisiert am 30/06/2016 von ToolsLib
# Datenbank : 2016-07-10.1 [Server]
# Betriebssystem : Windows 10 Pro (X64)
# Benutzername : eva - EVASCOMPUTER
# Gestartet von : C:\Users\eva\Desktop\AdwCleaner_5.201.exe
# Option : Löschen
# Unterstützung : https://toolslib.net/forum
***** [ Dienste ] *****
***** [ Ordner ] *****
[-] Ordner gelöscht : C:\Users\eva\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk
[-] Ordner gelöscht : C:\Users\eva\AppData\Local\app
***** [ Dateien ] *****
[-] Datei gelöscht : C:\Users\eva\AppData\Roaming\fastboot.exe
[-] Datei gelöscht : C:\Users\eva\AppData\Roaming\adb.exe
[-] Datei gelöscht : C:\Users\eva\Desktop\AutoTime.lnk
***** [ DLLs ] *****
***** [ WMI ] *****
[-] Schlüssel gelöscht : \root\subscription\\ActiveScriptEventConsumer [ASEC]
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
***** [ Registrierungsdatenbank ] *****
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\s
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\protector_dll.Protector
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[-] Schlüssel gelöscht : HKCU\Software\MICROSOFT\OTUT
[-] Schlüssel gelöscht : HKCU\Software\AutoTime
[-] Schlüssel gelöscht : HKCU\Software\KuaiZip
[-] Schlüssel gelöscht : HKLM\SOFTWARE\WIN
[-] Schlüssel gelöscht : HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D}
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{78FFF2DE-FA9A-2A05-374D-D8B8B16A79A3}
[-] Schlüssel gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\mpc.am
[-] Schlüssel gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\search.mpc.am
[-] Schlüssel gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\yeabests.cc
[-] Wert gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [msiql]
[#] Wert gelöscht : HKU\S-1-5-21-1764389191-2749221916-298074052-1001\Software\Microsoft\Windows\CurrentVersion\Run [msiql]
[-] Wert gelöscht : HKU\S-1-5-21-1764389191-2749221916-298074052-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [msiql]
[-] Wert gelöscht : HKU\S-1-5-21-1764389191-2749221916-298074052-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [Caster]
[-] Wert gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [QGuan10in1]
[#] Wert gelöscht : HKU\S-1-5-21-1764389191-2749221916-298074052-1001\Software\Microsoft\Windows\CurrentVersion\Run [QGuan10in1]
[-] Wert gelöscht : HKU\S-1-5-21-1764389191-2749221916-298074052-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [QGuan10in1]
[-] Wert gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [EYAN]
[-] Wert gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [EYAN]
***** [ Internetbrowser ] *****
*************************
:: "Tracing" Schlüssel gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Winsock Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [3679 Bytes] - [10/07/2016 15:08:32]
C:\AdwCleaner\AdwCleaner[S1].txt - [3729 Bytes] - [10/07/2016 15:05:47]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [3825 Bytes] ########## --- --- ---
[/CODE]
der JRT.txt Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.7 (07.03.2016)
Operating System: Windows 10 Pro x64
Ran by eva (Administrator) on 10.07.2016 at 15:22:10,60
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 0
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 10.07.2016 at 15:23:07,00
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |