FRST logs 21.Jan violà... Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 18-01-2017
durchgeführt von W (Administrator) auf ASUS-KLEIN (21-01-2017 08:48:06)
Gestartet von C:\Users\W\Downloads
Geladene Profile: W (Verfügbare Profile: W & WalburgaA & WalburgaA_2)
Platform: Windows 8.1 (Update) (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\mDNSResponder.exe
(IObit) C:\Program Files (x86)\IObit\Classic Start\SMService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(IObit) C:\Program Files (x86)\IObit\Classic Start\ClassicStart.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(IObit) C:\Program Files (x86)\IObit\Classic Start\StartMenu_Hook.exe
(IObit) C:\Program Files (x86)\IObit\Classic Start\InstallServices.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(Research In Motion) C:\Program Files (x86)\Research In Motion\BlackBerry Link\BlackBerryLink.exe
(Research In Motion) C:\Program Files (x86)\Research In Motion\BlackBerry Link\BlackBerryLink.Helper.exe
(Research In Motion) C:\Program Files (x86)\Research In Motion\BlackBerry Link\BlackBerryLink.AutoUpdate.exe
(BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\PeerManager.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\ScanToPCActivationApp.exe
(BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
(BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\tunmgr.exe
(Research In Motion Limited) C:\Program Files (x86)\Common Files\Research In Motion\RIMDeviceManager\RIMDeviceManager.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
() C:\Program Files (x86)\Common Files\Research In Motion\nginx\nginx.exe
() C:\Program Files (x86)\Common Files\Research In Motion\nginx\nginx.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicator.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSPanel.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\W\Downloads\FRST64 (1).exe
==================== Registry (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\Windows\system32\DptfPolicyLpmServiceHelper.exe [111488 2015-11-15] (Intel Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [911576 2013-10-30] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [1080992 2014-05-15] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\ASUSWSLoader.exe [63296 2014-02-25] ()
HKLM-x32\...\Run: [RIMBBLaunchAgent.exe] => C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [443640 2014-10-31] (BlackBerry Limited)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [26287016 2017-01-06] (Dropbox, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736 2013-11-28] (Atheros Communications)
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\Run: [BlackBerryLink.exe] => C:\Program Files (x86)\Research In Motion\BlackBerry Link\BlackBerryLink.exe [1475320 2015-03-19] (Research In Motion)
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27017856 2016-10-17] (Skype Technologies S.A.)
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\Run: [HP Officejet 6500 E710n-z (NET)] => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\MountPoints2: {d9a05da4-94cf-11e5-829d-6c71d9ffbf53} - "E:\setup.exe" AUTORUN=1
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\MountPoints2: {f2ea754b-1321-11e5-8269-6c71d9ffbf53} - "C:\Windows\system32\RunDLL32.EXE" Shell32.DLL,ShellExec_RunDLL E:\Start.exe
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => -> Keine Datei
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 62.2.24.162 62.2.17.61 62.2.24.158 62.2.17.60
Tcpip\..\Interfaces\{DBD4E8A9-652A-4633-A57C-4B610E4BB4B8}: [DhcpNameServer] 62.2.24.162 62.2.17.61 62.2.24.158 62.2.17.60
Internet Explorer:
==================
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.tageswoche.ch/
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.washingtonpost.com/
hxxp://www.huffingtonpost.com/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-4242665128-3801008343-3756527368-1001 -> DefaultScope {81DDAEC8-19B8-466D-AF59-34C382FB834F} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
SearchScopes: HKU\S-1-5-21-4242665128-3801008343-3756527368-1001 -> {81DDAEC8-19B8-466D-AF59-34C382FB834F} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => Keine Datei
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\W\AppData\Roaming\Mozilla\Firefox\Profiles\mPyt7swg.default [2017-01-17]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\mPyt7swg.default -> Google
FF Extension: (Avira Browser Safety) - C:\Users\W\AppData\Roaming\Mozilla\Firefox\Profiles\mPyt7swg.default\Extensions\abs@avira.com [2017-01-12]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-10-23] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-10-23] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-12] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-03-16] (Microsoft Corporation)
FF Plugin-x32: @RIM.com/WebSLLauncher,version=1.0 -> C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll [2015-03-19] ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.washingtonpost.com/
CHR StartupUrls: Default -> "hxxps://www.washingtonpost.com/?reload=true","hxxp://www.tageswoche.ch/","hxxp://www.huffingtonpost.com/politics/","hxxps://www.facebook.com/"
CHR DefaultSearchURL: Default -> hxxps://search.avira.net/#web/result?source=omnibar&q={searchTerms}
CHR DefaultSearchKeyword: Default -> Avira
CHR DefaultSuggestURL: Default -> hxxps://search.avira.net/suggestions?q={searchTerms}&li=ff&hl=de
CHR Profile: C:\Users\W\AppData\Local\Google\Chrome\User Data\Default [2017-01-21]
CHR Extension: (Google Präsentationen) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-13]
CHR Extension: (Google Docs) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-13]
CHR Extension: (Google Drive) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-23]
CHR Extension: (Poper Blocker) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2017-01-11]
CHR Extension: (YouTube) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (TV) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\bppbpeijolfcampacpljolaegibfhjph [2017-01-12]
CHR Extension: (Genius Web Annotator) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccaokncpmmjiakalbcfdbfmpcaiddjdn [2017-01-11]
CHR Extension: (Google-Suche) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-30]
CHR Extension: (Facebook Customizer (by Adblock Plus)) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm [2015-03-13]
CHR Extension: (Google Tabellen) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-13]
CHR Extension: (Avira Browserschutz) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2016-09-22]
CHR Extension: (Google Docs Offline) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (AdBlock) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-12-29]
CHR Extension: („Pin it“-Button) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2016-11-03]
CHR Extension: (Awiedno) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbkddnpkbopdohfcjcjalflagcmcnpmm [2017-01-12]
CHR Extension: (Avira SafeSearch Plus) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipmkfpcnmccejididiaagpgchgjfajgp [2017-01-19]
CHR Extension: (OldNewsFeed) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\jacjkeodiliklmpildjkfaciknopckaa [2015-03-13]
CHR Extension: (Cisco WebEx Extension) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2015-03-17]
CHR Extension: (CHIP Best Deal) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnnbfipnegfmpbggccokgcmkokibpkdc [2016-12-28]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-19]
CHR Extension: (True URL) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\npoeonoajkbigbemkbpklihoggklhblg [2017-01-09]
CHR Extension: (Adblock Pro) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2016-05-17]
CHR Extension: (Check My Links) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojkcdipcgfaekbeaelaapakgnjflfglf [2015-11-10]
CHR Extension: (This Is Fake) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\peeibjiaceaafioopngfaneonhcdbmhb [2016-12-17]
CHR Extension: (Google Mail) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-27]
CHR Extension: (Chrome Media Router) - C:\Users\W\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-17]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe [71680 2014-02-25] (ASUS Cloud Corporation) [Datei ist nicht signiert]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [318592 2013-11-28] (Windows (R) Win 7 DDK provider) [Datei ist nicht signiert]
R3 BlackBerry Device Manager; C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [588024 2014-10-31] (BlackBerry Limited)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3042032 2016-12-13] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-09-14] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-09-14] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [51504 2017-01-06] (Dropbox, Inc.)
S2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [117704 2013-10-18] (Intel Corporation)
S2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [116680 2015-11-15] (Intel Corporation)
S2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [148160 2015-11-15] (Intel Corporation)
S2 DptfPolicyLpmService; C:\Windows\system32\DptfPolicyLpmService.exe [124904 2015-11-15] (Intel Corporation)
R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1392792 2016-03-13] (Intel Corporation)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [31776 2016-12-07] (HP Inc.)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [827392 2013-09-02] (Intel(R) Corporation) [Datei ist nicht signiert]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-10-23] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-10-23] (Intel Corporation)
R2 RIM MDNS; C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\mDNSResponder.exe [396024 2015-03-19] (Apple Inc.)
R3 RIM Tunnel Service; C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\tunmgr.exe [1354488 2015-03-19] (BlackBerry Limited)
R2 SMService; C:\Program Files (x86)\IObit\Classic Start\SMService.exe [1077536 2017-01-16] (IObit)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-11-28] (Atheros) [Datei ist nicht signiert]
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [4307192 2016-11-18] (Qualcomm Atheros Communications, Inc.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [73512 2016-01-25] (ASUS Corporation)
S3 blackberryncm; C:\Windows\system32\DRIVERS\blackberryncm6_AMD64.sys [36360 2016-04-06] (BlackBerry)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-11-28] (Qualcomm Atheros)
S3 DptfDevDram; C:\Windows\system32\DRIVERS\DptfDevDram.sys [145640 2015-11-15] (Intel Corporation)
S3 DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [116752 2015-11-15] (Intel Corporation)
S3 DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [289744 2013-10-18] (Intel Corporation)
S3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [493240 2015-11-15] (Intel Corporation)
R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [55784 2016-03-13] (Intel Corporation)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [52200 2016-03-13] (Intel Corporation)
S3 dptf_pch; C:\Windows\System32\drivers\dptf_pch.sys [50664 2016-03-13] (Intel Corporation)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [260072 2016-03-13] (Intel Corporation)
R2 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [183576 2016-10-27] (BitDefender LLC)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R2 plctrl; C:\Program Files\ASUS\P4G\plctrl.sys [14136 2014-02-11] (Windows (R) Win 7 DDK provider)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [79872 2014-05-06] (BlackBerry Limited) [Datei ist nicht signiert]
R3 rimvndis; C:\Windows\System32\Drivers\rimvndis6_AMD64.sys [18432 2015-03-19] (BlackBerry Limited)
R3 RimVSerPort; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Research in Motion Ltd)
R3 SensorsAlsDriver; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33960 2016-03-13] (Synaptics Incorporated)
S3 usbrndis6; C:\Windows\system32\DRIVERS\usb80236.sys [20992 2015-10-16] (Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
S3 dbx; system32\DRIVERS\dbx.sys [X]
S1 HWiNFO32; \??\C:\Users\W\AppData\Local\Temp\HWiNFO64A.SYS [X]
S4 IMFFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\IMFFilter.sys [X]
U0 msahci; system32\drivers\msahci.sys [X]
S3 RegFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-01-20 19:10 - 2016-10-28 02:22 - 00485032 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2017-01-20 18:46 - 2017-01-20 18:46 - 00001064 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2017-01-20 18:46 - 2017-01-20 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2017-01-20 18:46 - 2017-01-20 18:46 - 00000000 ____D C:\Program Files\VS Revo Group
2017-01-20 18:42 - 2017-01-20 18:42 - 07097928 _____ (VS Revo Group ) C:\Users\W\Downloads\revo202setup.exe
2017-01-20 12:00 - 2017-01-20 12:00 - 00003480 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2017-01-20 12:00 - 2017-01-20 12:00 - 00003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2017-01-19 15:26 - 2017-01-19 15:26 - 00039471 _____ C:\Users\W\Downloads\170119 Addition.txt
2017-01-19 15:21 - 2017-01-19 15:22 - 02419712 _____ (Farbar) C:\Users\W\Downloads\FRST64 (1).exe
2017-01-19 15:13 - 2017-01-19 15:13 - 00002272 _____ C:\Windows\System32\Tasks\StartMenu8_Start
2017-01-19 15:13 - 2017-01-19 15:13 - 00001220 _____ C:\Users\Public\Desktop\Start Menu 8.lnk
2017-01-19 15:13 - 2017-01-19 15:13 - 00000240 _____ C:\Windows\Tasks\StartMenu8_Start.job
2017-01-19 13:25 - 2017-01-19 13:25 - 00001998 _____ C:\Users\W\Desktop\170117 AdwCleaner[C0].txt
2017-01-19 13:23 - 2017-01-20 18:52 - 00000000 ____D C:\ProgramData\ProductData
2017-01-19 13:14 - 2017-01-19 13:14 - 01663040 _____ (Malwarebytes) C:\Users\W\Desktop\JRT.exe
2017-01-19 13:08 - 2017-01-19 13:08 - 00001564 _____ C:\Users\W\Desktop\AdwCleaner[C2].txt
2017-01-19 13:06 - 2017-01-19 13:06 - 00001626 _____ C:\Users\W\Desktop\AdwCleaner[S1].txt
2017-01-19 12:58 - 2017-01-19 12:59 - 03988944 _____ C:\Users\W\Desktop\AdwCleaner_6.042.exe
2017-01-17 17:41 - 2017-01-19 13:17 - 00000599 _____ C:\Users\W\Desktop\JRT.txt
2017-01-17 17:34 - 2017-01-17 17:34 - 00001995 _____ C:\Users\W\Desktop\AdwCleaner[C0].txt
2017-01-17 17:33 - 2017-01-17 17:33 - 00002010 _____ C:\Users\W\Desktop\AdwCleaner[S0].txt
2017-01-17 17:28 - 2017-01-19 13:32 - 00000000 ____D C:\AdwCleaner
2017-01-17 14:08 - 2017-01-17 14:09 - 00245016 _____ C:\TDSSKiller.3.1.0.12_17.01.2017_14.08.29_log.txt
2017-01-17 14:08 - 2017-01-17 14:08 - 04747704 _____ (AO Kaspersky Lab) C:\Users\W\Downloads\tdsskiller.exe
2017-01-17 13:59 - 2017-01-17 14:05 - 00482804 _____ C:\TDSSKiller.3.1.0.12_17.01.2017_13.59.23_log.txt
2017-01-17 13:54 - 2017-01-17 13:55 - 00000562 _____ C:\TDSSKiller.3.1.0.12_17.01.2017_13.54.57_log.txt
2017-01-15 10:24 - 2017-01-15 18:00 - 00245018 _____ C:\TDSSKiller.3.1.0.12_15.01.2017_10.24.37_log.txt
2017-01-15 00:53 - 2017-01-15 00:53 - 00482804 _____ C:\Users\W\Downloads\TDSSKiller.3.1.0.12_15.01.2017_00.38.37_log.txt
2017-01-15 00:53 - 2017-01-15 00:53 - 00002108 _____ C:\Users\W\Downloads\mbar-log-2017-01-14 (23-47-33).txt
2017-01-15 00:41 - 2017-01-15 00:43 - 00720592 _____ C:\TDSSKiller.3.1.0.12_15.01.2017_00.41.56_log.txt
2017-01-15 00:38 - 2017-01-15 00:39 - 00482804 _____ C:\TDSSKiller.3.1.0.12_15.01.2017_00.38.37_log.txt
2017-01-15 00:37 - 2017-01-15 00:38 - 16563352 _____ (Malwarebytes Corp.) C:\Users\W\Downloads\mbar-1.09.3.1001.exe
2017-01-14 23:47 - 2017-01-17 13:54 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2017-01-14 23:47 - 2017-01-17 13:46 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-01-14 23:47 - 2017-01-14 23:47 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-01-14 23:45 - 2017-01-17 13:54 - 00000000 ____D C:\Users\W\Desktop\mbar
2017-01-14 23:44 - 2017-01-17 13:46 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2017-01-14 23:44 - 2017-01-14 23:44 - 00000000 ____D C:\Users\W\Downloads\mbar
2017-01-14 18:36 - 2017-01-14 18:36 - 02419200 _____ (Farbar) C:\Users\W\Downloads\FRST64.exe
2017-01-14 18:36 - 2017-01-14 18:36 - 00000000 ____D C:\Users\W\Downloads\FRST-OlderVersion
2017-01-14 01:10 - 2016-12-01 15:13 - 00869576 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2017-01-14 01:10 - 2016-12-01 15:13 - 00678592 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120_clr0400.dll
2017-01-14 01:10 - 2016-12-01 15:11 - 00875720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2017-01-14 01:10 - 2016-12-01 15:11 - 00536768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120_clr0400.dll
2017-01-14 01:10 - 2016-10-20 14:14 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2017-01-14 01:10 - 2016-10-20 14:10 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2017-01-14 01:01 - 2016-10-27 13:54 - 00183576 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys
2017-01-13 23:59 - 2017-01-13 23:59 - 00152354 _____ C:\Users\W\Downloads\quarantaene.txt
2017-01-13 22:23 - 2017-01-21 08:48 - 00029543 _____ C:\Users\W\Downloads\FRST.txt
2017-01-13 22:23 - 2017-01-19 15:23 - 00039468 _____ C:\Users\W\Downloads\Addition.txt
2017-01-13 16:53 - 2017-01-13 16:53 - 00000000 ____D C:\Users\W\AppData\Local\AviraSpeedup
2017-01-12 17:54 - 2017-01-12 17:54 - 00000890 _____ C:\Users\W\Downloads\170112 Avira log Events.txt
2017-01-12 17:08 - 2017-01-12 17:08 - 00051001 _____ C:\Users\W\Downloads\170112 scan log malware Addition.txt
2017-01-12 17:06 - 2017-01-19 15:04 - 00039480 _____ C:\Users\W\Desktop\FRST Addition.txt
2017-01-12 17:05 - 2017-01-19 15:04 - 00048918 _____ C:\Users\W\Desktop\FRST .txt
2017-01-12 17:04 - 2017-01-21 08:48 - 00000000 ____D C:\FRST
2017-01-12 17:04 - 2017-01-12 17:04 - 02193920 _____ (Farbar) C:\Users\W\Desktop\FRST64.exe
2017-01-12 16:42 - 2017-01-12 16:42 - 04581024 _____ (Avira Operations GmbH & Co. KG) C:\Users\W\Downloads\avira_en_fass0_5877a2f1825c4__ws.exe
2017-01-12 14:13 - 2016-03-25 14:33 - 00128288 _____ (IObit) C:\Windows\system32\IObitSmartDefragExtension.dll
2017-01-12 09:05 - 2017-01-17 09:05 - 00000338 _____ C:\Windows\Tasks\HPCeeScheduleForW.job
2017-01-11 12:53 - 2017-01-20 19:01 - 00000062 _____ C:\Users\W\AppData\Roaming\sp_data.sys
2017-01-11 12:35 - 2017-01-11 12:37 - 00000000 ____D C:\Program Files (x86)\SuperBoost
2017-01-11 12:35 - 2017-01-11 12:35 - 00000000 ____D C:\Users\W\AppData\Roaming\SuperBoost
2017-01-11 12:35 - 2017-01-11 12:35 - 00000000 ____D C:\ProgramData\SuperBoost
2017-01-11 12:27 - 2017-01-11 12:27 - 00000000 ____D C:\ProgramData\{EAAB5A83-3809-4B0E-83A6-E4B0DBF2157E}
2017-01-11 12:25 - 2017-01-11 12:25 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-01-11 12:25 - 2017-01-11 12:25 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-01-11 12:20 - 2017-01-11 12:20 - 04964352 _____ C:\Windows\system32\config\drivers.iobit
2017-01-11 12:19 - 2017-01-11 12:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-01-08 12:27 - 2017-01-08 12:27 - 00466653 _____ C:\Users\W\Documents\Scan0006.pdf
2017-01-08 12:26 - 2017-01-08 12:26 - 00434838 _____ C:\Users\W\Documents\Scan0005.pdf
2017-01-08 12:25 - 2017-01-08 12:25 - 00385621 _____ C:\Users\W\Documents\Scan0004.pdf
2017-01-08 12:24 - 2017-01-08 12:24 - 00350924 _____ C:\Users\W\Documents\Scan0003.pdf
2017-01-08 12:24 - 2017-01-08 12:24 - 00318462 _____ C:\Users\W\Documents\Scan0002.pdf
2017-01-08 12:23 - 2017-01-08 12:23 - 00328248 _____ C:\Users\W\Documents\Scan0001.pdf
2017-01-06 01:04 - 2017-01-06 01:04 - 00051504 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2017-01-06 00:48 - 2017-01-06 00:48 - 00075888 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2017-01-06 00:48 - 2017-01-06 00:48 - 00075888 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2017-01-06 00:48 - 2017-01-06 00:48 - 00075888 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2017-01-03 13:19 - 2017-01-19 17:34 - 00324096 ___SH C:\Users\W\Desktop\Thumbs.db
2016-12-28 13:08 - 2016-12-28 13:09 - 95503176 _____ (IObit ) C:\Users\W\Downloads\asc-ultimate-setup-cnet.exe
2016-12-28 12:55 - 2017-01-12 13:55 - 00000000 ____D C:\Program Files (x86)\Dashlane
2016-12-28 12:50 - 2016-12-28 12:50 - 00040960 _____ C:\Windows\system32\config\SAM.iobit
2016-12-28 12:50 - 2016-12-28 12:50 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit
2016-12-28 12:49 - 2016-12-28 12:49 - 98074624 _____ C:\Windows\system32\config\SOFTWARE.iobit
2016-12-28 12:49 - 2016-12-28 12:49 - 00339968 _____ C:\Windows\system32\config\DEFAULT.iobit
2016-12-28 11:59 - 2016-12-28 11:59 - 00000000 ____D C:\ProgramData\BDLogging
2016-12-28 11:58 - 2017-01-19 12:56 - 00000270 _____ C:\Windows\Tasks\ASCU10_SkipUac_W.job
2016-12-28 11:58 - 2016-12-28 11:58 - 00002362 _____ C:\Windows\System32\Tasks\ASCU10_SkipUac_W
2016-12-28 11:58 - 2016-12-28 11:58 - 00000000 ____D C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
2016-12-28 11:58 - 2016-12-28 11:58 - 00000000 ____D C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA}
2016-12-25 19:57 - 2016-12-25 19:57 - 00157123 _____ C:\Users\W\Desktop\15724685_1227749577273428_7927209070533867513_o.jpg
2016-12-25 10:13 - 2016-12-25 10:13 - 02964472 _____ (Google) C:\Users\W\Downloads\chrome_cleanup_tool.exe
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-01-21 08:46 - 2015-04-13 11:54 - 00000000 ____D C:\Users\W\Documents\Dies & Das
2017-01-21 08:45 - 2015-12-20 13:23 - 00000000 ___RD C:\Users\W\Documents\Scanned Documents
2017-01-21 08:45 - 2015-05-15 14:32 - 00000000 ____D C:\Users\W\Documents\Outlook-Dateien
2017-01-21 08:45 - 2015-04-13 15:23 - 00000000 ____D C:\Users\W\Documents\IT & Technik
2017-01-21 08:45 - 2015-04-13 14:51 - 00000000 ____D C:\Users\W\Documents\Global Health
2017-01-21 08:45 - 2015-04-13 11:20 - 00000000 ____D C:\Users\W\Documents\ViberDownloads
2017-01-20 19:26 - 2015-11-13 15:34 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-01-20 19:25 - 2015-03-13 18:15 - 00001140 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2017-01-20 19:24 - 2016-09-14 11:03 - 00001226 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2017-01-20 19:09 - 2015-05-25 10:02 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4242665128-3801008343-3756527368-1001
2017-01-20 19:05 - 2014-05-16 00:55 - 00817442 _____ C:\Windows\system32\perfh00C.dat
2017-01-20 19:05 - 2014-05-16 00:55 - 00167144 _____ C:\Windows\system32\perfc00C.dat
2017-01-20 19:05 - 2014-05-16 00:45 - 00793698 _____ C:\Windows\system32\perfh007.dat
2017-01-20 19:05 - 2014-05-16 00:45 - 00168368 _____ C:\Windows\system32\perfc007.dat
2017-01-20 19:05 - 2014-03-18 16:26 - 02820038 _____ C:\Windows\system32\PerfStringBackup.INI
2017-01-20 19:05 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf
2017-01-20 19:00 - 2016-09-14 11:05 - 00000000 ___RD C:\Users\W\Dropbox
2017-01-20 19:00 - 2015-03-13 18:10 - 00000000 ___DO C:\Users\W\OneDrive
2017-01-20 18:59 - 2016-09-14 11:03 - 00001222 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2017-01-20 18:59 - 2015-04-10 14:54 - 00000000 ____D C:\Program Files (x86)\IObit
2017-01-20 18:59 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-01-20 18:59 - 2013-08-22 14:25 - 00524288 ___SH C:\Windows\system32\config\BBI
2017-01-20 18:55 - 2015-04-10 14:54 - 00000000 ____D C:\Users\W\AppData\Roaming\IObit
2017-01-20 18:54 - 2014-10-15 20:48 - 00000000 ____D C:\ProgramData\Package Cache
2017-01-20 18:52 - 2015-04-10 14:54 - 00000000 ____D C:\ProgramData\IObit
2017-01-19 20:50 - 2015-03-13 18:07 - 00000000 ____D C:\Users\W\AppData\Local\Packages
2017-01-19 15:13 - 2015-04-10 15:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu 8
2017-01-17 11:08 - 2015-03-13 19:51 - 00000000 ____D C:\Users\W\AppData\Local\CrashDumps
2017-01-17 09:05 - 2016-07-14 18:29 - 00003144 _____ C:\Windows\System32\Tasks\HPCeeScheduleForW
2017-01-15 10:37 - 2013-08-22 16:20 - 00000000 ____D C:\Windows\CbsTemp
2017-01-14 09:44 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness
2017-01-14 01:16 - 2013-08-22 16:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-01-14 01:15 - 2015-03-16 21:29 - 00000000 ____D C:\Program Files\Microsoft Office 15
2017-01-13 07:15 - 2013-08-22 15:44 - 00488000 _____ C:\Windows\system32\FNTCACHE.DAT
2017-01-12 16:51 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps
2017-01-12 13:51 - 2015-03-14 19:09 - 00000000 ____D C:\Users\W\AppData\Local\ElevatedDiagnostics
2017-01-12 08:37 - 2015-03-29 15:41 - 00000000 ____D C:\Users\W\Desktop\klondike how tos
2017-01-12 08:30 - 2015-03-13 19:33 - 00000000 ____D C:\Windows\system32\MRT
2017-01-12 08:28 - 2015-03-13 19:33 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-01-11 20:32 - 2014-10-15 20:39 - 00000000 ____D C:\Windows\softwaredistribution.bak
2017-01-11 12:24 - 2015-11-08 13:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
2017-01-11 12:19 - 2016-09-14 11:03 - 00000000 ____D C:\Program Files (x86)\Dropbox
2017-01-11 07:26 - 2015-11-13 15:34 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-01-11 07:26 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-01-11 07:26 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\Macromed
2017-01-08 23:00 - 2015-05-25 06:44 - 00000000 ____D C:\Users\W\Desktop\dies und das
2017-01-05 00:49 - 2015-03-13 18:07 - 00000000 ____D C:\Users\W
2017-01-05 00:48 - 2016-07-06 14:00 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard
2017-01-05 00:48 - 2015-04-10 14:56 - 00000000 ____D C:\Users\W\AppData\LocalLow\IObit
2017-01-05 00:48 - 2015-03-16 21:46 - 00000000 ____D C:\Users\WalburgaA_2
2017-01-05 00:48 - 2015-03-16 21:44 - 00000000 ____D C:\Users\WalburgaA
2017-01-05 00:48 - 2015-03-13 18:07 - 00000000 ____D C:\Users\W\AppData\Local\ASUS
2017-01-05 00:48 - 2014-10-15 20:50 - 00000000 ____D C:\ProgramData\P4G
2017-01-05 00:48 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\Sysprep
2017-01-05 00:48 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\oobe
2017-01-05 00:47 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\registration
2017-01-03 13:19 - 2015-11-02 13:00 - 00000000 ____D C:\Users\W\Desktop\basel sell & buy
2016-12-29 08:28 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\catroot
2016-12-29 08:26 - 2015-04-27 14:39 - 00000000 ____D C:\Users\W\AppData\Roaming\Skype
2016-12-28 12:56 - 2015-04-27 14:39 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-12-28 12:56 - 2015-04-27 14:39 - 00000000 ____D C:\ProgramData\Skype
2016-12-28 12:56 - 2013-08-22 14:36 - 00000000 ____D C:\Program Files (x86)\Common Files
2016-12-28 12:55 - 2016-11-17 09:22 - 00000389 _____ C:\Windows\Backup.ini
2016-12-28 12:48 - 2014-10-15 20:51 - 00000000 ____D C:\Program Files\Common Files\mcafee
2016-12-28 12:48 - 2014-10-15 20:51 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-12-28 12:48 - 2014-10-15 20:50 - 00000000 ____D C:\AsusVibeData
2016-12-28 12:48 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows Media Player
2016-12-28 12:48 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\System
2016-12-28 12:48 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-12-28 12:48 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files (x86)\Windows Media Player
2016-12-28 12:46 - 2015-10-12 22:30 - 00000000 ____D C:\Users\W\AppData\Local\Viber
2016-12-28 12:46 - 2015-09-07 14:30 - 00000000 ____D C:\Users\W\AppData\Local\Information Factory
2016-12-28 12:46 - 2015-06-18 22:44 - 00000000 ____D C:\Users\W\Downloads\BLACKBERRY-827B
2016-12-28 12:46 - 2015-06-09 04:40 - 00000000 ____D C:\Users\WalburgaA\AppData\Local\CrashDumps
2016-12-28 12:46 - 2015-05-04 15:46 - 00000000 ____D C:\Users\W\AppData\Local\PDFCreator
2016-12-28 12:46 - 2015-04-13 15:24 - 00000000 ____D C:\Users\W\Documents\Jobs
2016-12-28 12:46 - 2015-04-13 11:56 - 00000000 ____D C:\Users\W\Documents\Finanzen alles
2016-12-28 12:46 - 2015-04-13 11:21 - 00000000 ____D C:\Users\W\Documents\WM privat
2016-12-28 12:46 - 2015-04-13 10:18 - 00000000 ____D C:\Users\W\Documents\Travel
2016-12-28 12:46 - 2015-04-13 10:15 - 00000000 ____D C:\Users\W\Documents\Shopping
2016-12-28 12:46 - 2015-04-13 10:14 - 00000000 ____D C:\Users\W\Documents\pass & dokumente
2016-12-28 12:46 - 2015-04-13 10:11 - 00000000 ____D C:\Users\W\Documents\Küche & Keller
2016-12-28 12:46 - 2015-04-13 10:11 - 00000000 ____D C:\Users\W\Documents\Korrespondenz
2016-12-28 12:46 - 2015-03-16 21:46 - 00000000 ____D C:\Users\WalburgaA_2\AppData\Local\Temp
2016-12-28 12:46 - 2015-03-16 21:44 - 00000000 ____D C:\Users\WalburgaA\AppData\Local\Temp
2016-12-28 12:46 - 2015-03-13 18:07 - 00000000 ___RD C:\Users\W\Videos
2016-12-28 12:46 - 2015-03-13 18:07 - 00000000 ___RD C:\Users\W\Links
2016-12-28 12:46 - 2014-10-15 20:42 - 00000000 ____D C:\ProgramData\Qualcomm Atheros
2016-12-28 08:12 - 2015-09-07 14:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BalTax
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2015-05-22 20:37 - 2017-01-05 00:27 - 0001001 _____ () C:\Users\W\AppData\Roaming\Rim.Desktop.Exception.log
2015-05-22 20:36 - 2015-05-22 20:36 - 0001111 _____ () C:\Users\W\AppData\Roaming\Rim.Desktop.HttpServerSetup.log
2015-05-22 20:37 - 2017-01-05 00:26 - 0001001 _____ () C:\Users\W\AppData\Roaming\Rim.DesktopHelper.Exception.log
2017-01-11 12:53 - 2017-01-20 19:01 - 0000062 _____ () C:\Users\W\AppData\Roaming\sp_data.sys
2015-08-01 15:11 - 2015-08-01 15:11 - 0005632 _____ () C:\Users\W\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-12-05 07:36 - 2016-12-05 07:37 - 0000000 _____ () C:\Users\W\AppData\Local\{AA28E808-D671-4703-8CEF-BBE7E3053563}
2016-07-06 14:05 - 2016-07-06 14:05 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-05-15 16:58 - 2012-09-07 12:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2014-05-15 16:58 - 2009-07-22 11:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2014-05-15 16:58 - 2012-09-07 12:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Einige Dateien in TEMP:
====================
C:\Users\WalburgaA_2\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap ======================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2017-01-19 04:47
==================== Ende von FRST.txt ============================ Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 18-01-2017
durchgeführt von W (21-01-2017 08:48:44)
Gestartet von C:\Users\W\Downloads
Windows 8.1 (Update) (X64) (2015-03-13 17:07:21)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-4242665128-3801008343-3756527368-500 - Administrator - Disabled)
Gast (S-1-5-21-4242665128-3801008343-3756527368-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-4242665128-3801008343-3756527368-1003 - Limited - Enabled)
W (S-1-5-21-4242665128-3801008343-3756527368-1001 - Administrator - Enabled) => C:\Users\W
WalburgaA (S-1-5-21-4242665128-3801008343-3756527368-1004 - Limited - Enabled) => C:\Users\WalburgaA
WalburgaA_2 (S-1-5-21-4242665128-3801008343-3756527368-1005 - Limited - Enabled) => C:\Users\WalburgaA_2
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 20.2.145.43581 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 20.2.145.43581 - Alcor Micro Corp.) Hidden
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.4.3 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 3.0.8 - ASUS)
ASUS Screen Saver (HKLM-x32\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.2 - ASUS)
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 2.2.8 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0021 - ASUS)
ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 3.1.7 - ASUS)
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.311 - ASUSTEK)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0031 - ASUS)
BalTax 2014 10.3.0 (HKLM-x32\...\6456-0709-2578-5305) (Version: 10.3.0 - Information Factory AG)
BlackBerry 10 Desktop Software (HKLM-x32\...\{a0642dd3-1105-464b-84c8-caaf676c39c8}) (Version: 1.1.0.22 - BlackBerry)
BlackBerry Blend (x32 Version: 1.1.0.23 - BlackBerry Ltd.) Hidden
BlackBerry Communication Drivers (x32 Version: 8.0.0.119 - BlackBerry Ltd.) Hidden
BlackBerry Desktop Software 7.1 (HKLM-x32\...\BlackBerry_Desktop) (Version: 7.1.0.41 - Research in Motion Ltd.)
BlackBerry Desktop Software 7.1 (x32 Version: 7.1.0.41 - Research in Motion Ltd.) Hidden
BlackBerry Device Drivers (x32 Version: 8.0.0.119 - BlackBerry Ltd.) Hidden
BlackBerry Device Software Updater (HKLM-x32\...\{E755A98B-F45F-4008-A1A5-FC4CB4D2177A}) (Version: 8.0.0.66 - Research In Motion Ltd)
BlackBerry Link (x32 Version: 1.2.4.28 - BlackBerry) Hidden
BlackBerry Link Remover (x32 Version: 1.2.4.0 - BlackBerry Ltd.) Hidden
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.66.3.0 - Conexant)
Dropbox (HKLM-x32\...\Dropbox) (Version: 17.4.33 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.59.1 - Dropbox, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
HP Officejet 6500 E710n-z - Grundlegende Software für das Gerät (HKLM\...\{56F91CE8-0168-4619-8FEC-13F5087E40F8}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Officejet 6500 E710n-z Hilfe (HKLM-x32\...\{130E5108-547F-4482-91EE-F45C784E08C7}) (Version: 140.0.2.2 - Hewlett Packard)
HP Support Assistant (HKLM-x32\...\{78E2C850-ADA6-420D-BA35-2F4A9BE733CC}) (Version: 8.3.50.9 - HP)
HP Support Solutions Framework (HKLM-x32\...\{3A1CB1B8-8646-41A0-B496-35DC48916904}) (Version: 12.5.32.203 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Intel Experience Center - Configuration (x32 Version: 1.7.0.179 - Intel) Hidden
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C) (Version: 7.1.0.2105 - Intel Corporation)
Intel(R) Experience Center Desktop Software (HKLM-x32\...\{3608ec0a-56b4-4d9d-b038-9b3e51d72582}) (Version: 1.7.0.179 - Intel)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.6.0.1038 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3379 - Intel Corporation)
Intel(R) Update Manager (x32 Version: 1.6.2.69 - Intel Corporation) Hidden
Microsoft Office Professional Plus 2013 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 15.0.4893.1002 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA Graphics Driver 332.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 332.35 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.13.0927 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0927 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4893.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4893.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4893.1002 - Microsoft Corporation) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.1.1 - pdfforge)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.312 - Qualcomm Atheros Communications)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
Revo Uninstaller 2.0.2 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.2 - VS Revo Group, Ltd.)
Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\Spotify) (Version: 1.0.6.80.g2a801a53 - Spotify AB)
Start Menu 8 (HKLM-x32\...\IObit_StartMenu8_is1) (Version: 4.0.2.1 - IObit)
Viber (HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\Viber) (Version: 5.1.2.24 - Viber Media Inc)
WebStorage (HKLM-x32\...\WebStorage) (Version: 2.1.2.301 - ASUS Cloud Corporation)
Windows Driver Package - ASUS (ATP) Mouse (11/20/2013 1.0.0.194) (HKLM\...\8BA9C239ED04E09F06755E1497239BEFC08085C2) (Version: 11/20/2013 1.0.0.194 - ASUS)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.42.0 - ASUS)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {0342BFFA-1607-4B26-A43C-C4AA152AA97C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-12-07] (HP Inc.)
Task: {10C22233-22D1-4985-83D7-26EA6DCDBCEA} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-11-01] (Microsoft Corporation)
Task: {160B2967-201E-4798-AF01-110AA11799C4} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2013-12-12] (AsusTek)
Task: {1B188FBC-CBE6-45C3-A213-D566E6BBCFB2} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-09-14] (Dropbox, Inc.)
Task: {1E8610D1-DAAD-45EE-AEF9-60CF36C57CF4} - System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\Bootstrap.exe [2013-07-03] (Intel Corporation)
Task: {22C4DFE8-EF12-4532-9664-102F6CA68D53} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
Task: {246C0A6B-6A80-442C-A94D-5FBCCBD34064} - \Optimize Start Menu Cache Files-S-1-5-21-4242665128-3801008343-3756527368-500 -> Keine Datei <==== ACHTUNG
Task: {2D3F43BE-DB01-43CC-B9FF-47575B2433F1} - System32\Tasks\ASCU8_SkipUac_W => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASC.exe
Task: {2F5CAAEE-DBF3-4F88-87A4-229EF90ADEF4} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.)
Task: {3323EB95-89F5-4BD2-ACE2-9865497430A9} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
Task: {364E78CB-8F52-46BE-B238-EC7BF0F7960C} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
Task: {39608701-DBEC-4F19-8A9F-2B3FD009FCF3} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-10-07] (ASUSTeK Computer Inc.)
Task: {3DBB24AE-FDCE-4666-BC02-9FDB77BFF611} - System32\Tasks\GoogleUpdateTaskMachineUA1d08f2b911076e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-13] (Google Inc.)
Task: {3DD3B6F9-E321-4828-A255-7D7F6CECE88D} - System32\Tasks\HPCeeScheduleForW => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-01-22] (Hewlett-Packard)
Task: {4695E224-12EF-44AD-AE15-C75A4DB9C1D6} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2013-10-07] (ASUS)
Task: {4845DFF6-45BE-4901-A88B-766B40B6C531} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-07] (HP Inc.)
Task: {48DFFBFB-C1E4-43FB-AAB0-772F322E9EE4} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2017-01-12] (Microsoft Corporation)
Task: {4C904833-F10F-42DD-B018-9099D51B5A86} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-13] (Google Inc.)
Task: {5110E657-D3DD-416A-96ED-FB9A4021657D} - System32\Tasks\P4GIntlCtrl => C:\Program Files\ASUS\P4G\IntlDPST.exe [2014-02-11] ()
Task: {550A1FE6-D5EF-4F39-9559-B9ED09BA2F7B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-11-01] (Microsoft Corporation)
Task: {5A608E78-575C-41FA-ABFD-339F9A1A1EC9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-13] (Google Inc.)
Task: {5CA7B546-0C0E-41B5-A83C-61A8B2F9FE8E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-12-07] (HP Inc.)
Task: {6B06E695-1468-45F2-8107-2002312A5B8B} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2013-08-29] (ASUSTek Computer Inc.)
Task: {7A92A124-AB57-4689-BDC1-D338DCAF4A61} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-11] (Adobe Systems Incorporated)
Task: {83CA6AC7-F7C8-4DC2-8F60-BBC037B4AA48} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [2013-11-04] ()
Task: {855DE6AB-33A8-400D-939E-7BE1F1AE7654} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2014-02-11] (ASUS)
Task: {86178183-17F5-4BA7-BC6E-4E390CF63EDB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard)
Task: {8644FDE7-79EA-43C5-97D6-934D3EBD2566} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-09-14] (Dropbox, Inc.)
Task: {89E5B5A1-C55F-4BE2-9370-A2CD7CA15B12} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-11-01] (Microsoft Corporation)
Task: {AC1AE724-565B-440F-9D99-64BD1870B476} - System32\Tasks\{C899D39E-45DD-45B2-A29B-4C51F80917CF} => pcalua.exe -a E:\setup.exe -d E:\
Task: {B80C527B-82B1-4B34-B2ED-109A7D3EA85B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-07] (HP Inc.)
Task: {BC2BB775-8451-4CD2-80FA-3D964C3135F4} - System32\Tasks\StartMenu8_Start => C:\Program Files (x86)\IObit\Classic Start\Start_Active.exe [2016-11-15] ()
Task: {C733BA11-DEE8-44A5-BF13-A08E1F4ACD3A} - System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\Bootstrap.exe [2013-07-03] (Intel Corporation)
Task: {D3B1AE45-944C-42A6-A96E-EC986892BE4E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-11-01] (Microsoft Corporation)
Task: {D4211F9A-2116-4A21-8804-557BCD1141BE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2016-12-15] (HP Inc.)
Task: {DAD6039A-7170-48A1-8431-23477DAF2D3E} - System32\Tasks\ASCU10_SkipUac_W => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASC.exe
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ASCU10_SkipUac_W.job => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASC.exe
Task: C:\Windows\Tasks\ASCU8_SkipUac_W.job => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASC.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForW.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\StartMenu8_Start.job => C:\Program Files (x86)\IObit\Classic Start\Start_Active.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2014-10-15 20:39 - 2014-01-08 01:48 - 00117536 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-01-14 01:14 - 2016-05-24 08:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2014-02-11 17:08 - 2014-02-11 17:08 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll
2014-02-11 17:08 - 2014-02-11 17:08 - 00028672 _____ () C:\Program Files\ASUS\P4G\plctrl.dll
2013-11-28 22:35 - 2013-11-28 22:35 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-11-28 22:32 - 2013-11-28 22:32 - 00086016 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll
2013-11-28 22:38 - 2013-11-28 22:38 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
2015-03-19 12:01 - 2015-03-19 12:01 - 00688888 _____ () C:\Program Files (x86)\Common Files\Research In Motion\nginx\nginx.exe
2014-02-24 11:59 - 2014-02-24 11:59 - 00109056 _____ () C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\ASUSWSHomeCloudAPI.dll
2015-07-03 06:13 - 2015-07-03 06:13 - 00183296 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\ErrorReporting.dll
2013-10-08 20:41 - 2013-10-08 20:41 - 00037968 _____ () C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll
2013-09-09 18:23 - 2013-09-09 18:23 - 00162816 _____ () C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll
2017-01-19 15:13 - 2015-12-29 11:30 - 00355616 _____ () C:\Program Files (x86)\IObit\Classic Start\madExcept_.bpl
2017-01-19 15:13 - 2015-12-29 11:29 - 00190240 _____ () C:\Program Files (x86)\IObit\Classic Start\madBasic_.bpl
2017-01-19 15:13 - 2015-12-29 11:30 - 00057632 _____ () C:\Program Files (x86)\IObit\Classic Start\madDisAsm_.bpl
2017-01-19 15:13 - 2015-12-29 11:30 - 00275576 _____ () C:\Program Files (x86)\IObit\Classic Start\sqlite3.dll
2017-01-19 15:13 - 2015-12-29 11:30 - 00059680 _____ () C:\Program Files (x86)\IObit\Classic Start\parseAuto.dll
2017-01-19 15:13 - 2016-10-20 09:59 - 00631072 _____ () C:\Program Files (x86)\IObit\Classic Start\ProductStatistics.dll
2017-01-19 15:13 - 2015-12-29 11:31 - 00047904 _____ () C:\Program Files (x86)\IObit\Classic Start\winkey.dll
2015-03-19 15:29 - 2015-03-19 15:29 - 00055032 _____ () C:\Program Files (x86)\Common Files\XCPCSync.OEM\SyncSDK.209.604\Translators\MSOl\rMSOLDE.dll
2015-03-19 11:22 - 2015-03-19 11:22 - 00094208 _____ () C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\libxpmux.dll
2016-09-14 11:04 - 2016-12-08 02:00 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2017-01-11 12:19 - 2016-12-08 02:00 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2017-01-11 12:19 - 2016-12-08 02:01 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2017-01-11 12:19 - 2016-12-08 02:00 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2016-09-14 11:04 - 2016-12-08 02:04 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2016-09-14 11:04 - 2016-12-08 02:00 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-09-14 11:04 - 2016-12-08 02:00 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2016-09-14 11:04 - 2016-12-08 02:00 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2017-01-11 12:19 - 2017-01-06 01:03 - 00020824 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2016-09-14 11:04 - 2016-12-08 02:01 - 00123856 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2017-01-11 12:19 - 2017-01-06 01:03 - 01682768 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2017-01-11 12:19 - 2017-01-06 01:03 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00021328 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00052032 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00038712 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2017-01-11 12:19 - 2016-12-08 02:00 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2017-01-11 12:19 - 2016-12-08 02:04 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00381760 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00025432 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2017-01-11 12:19 - 2017-01-06 01:03 - 00246608 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2017-01-11 12:19 - 2017-01-06 01:03 - 00026464 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-09-14 11:04 - 2016-12-08 02:02 - 00241104 _____ () C:\Program Files (x86)\Dropbox\Client\_jpegtran.pyd
2017-01-11 12:19 - 2017-01-06 01:03 - 00020288 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00023384 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00019792 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00022360 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00024400 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2017-01-11 12:19 - 2016-12-08 01:57 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2017-01-11 12:19 - 2017-01-06 01:03 - 00084288 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2017-01-11 12:19 - 2017-01-06 01:04 - 01826104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2016-09-14 11:04 - 2016-12-08 02:01 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00531264 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 03928896 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 01972536 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00133432 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00224064 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00207680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00020296 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32._winffi_user32.pyd
2017-01-11 12:19 - 2016-12-08 02:08 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2017-01-11 12:19 - 2016-12-08 02:08 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2017-01-11 12:19 - 2017-01-06 01:04 - 00042816 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00171336 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00357688 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2016-09-14 11:04 - 2016-12-08 02:04 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2016-09-14 11:04 - 2017-01-06 01:04 - 00024920 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2017-01-11 12:19 - 2017-01-06 01:04 - 00546104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2016-09-14 11:04 - 2016-12-08 02:11 - 00697304 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll
2016-09-20 02:23 - 2016-09-20 02:23 - 00325824 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
2015-05-03 03:28 - 2015-05-03 03:28 - 01754296 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\tmpod.dll
2017-01-14 01:15 - 2017-01-14 01:15 - 01041608 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\ADDINS\UmOutlookAddin.dll
2014-10-15 20:35 - 2013-10-23 13:44 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2016-12-15 16:25 - 2016-12-08 08:29 - 01829208 _____ () C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\libglesv2.dll
2016-12-15 16:25 - 2016-12-08 08:29 - 00085848 _____ () C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\libegl.dll
2017-01-11 18:59 - 2017-01-11 18:59 - 17835096 _____ () C:\Users\W\AppData\Local\Google\Chrome\User Data\PepperFlash\24.0.0.194\pepflashplayer.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\W\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dc 2009 cherry blossom.jpg
DNS Servers: 62.2.24.162 - 62.2.17.61
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
MSCONFIG\startupreg: Swiss Media Research =>
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-4242665128-3801008343-3756527368-1001\...\StartupApproved\Run: => "Swiss Media Research"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => LPort=139
FirewallRules: [{691CF345-DD69-404F-AF5D-6F4559782239}] => C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{20468303-425B-4EEF-9CF2-CB9B667877CF}] => C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{A36E65A0-12AE-401F-B4EB-772BF0F8E1E9}] => C:\Program Files (x86)\Research In Motion\BlackBerry Desktop\Rim.Desktop.exe
FirewallRules: [{77F93656-1433-4630-BD7C-E720231F1DC5}] => C:\Program Files (x86)\Research In Motion\BlackBerry Desktop\Rim.Desktop.exe
FirewallRules: [{1DE267D5-A1AF-46D6-BB84-678F68CC5E84}] => LPort=4481
FirewallRules: [{22584053-CCF2-48FA-B4DB-17B85D4A4D99}] => LPort=4481
FirewallRules: [{FE52E7C5-DA41-41EA-BA15-E3AAEA4110AD}] => LPort=4482
FirewallRules: [{AD828279-8620-49EF-8955-492B1B2F638B}] => LPort=4482
FirewallRules: [TCP Query User{82BDC133-2312-4BAF-8D46-7D68548E2438}C:\users\w\appdata\roaming\spotify\spotify.exe] => C:\users\w\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{25AB6BF8-A186-488E-B239-C6FB6BFECC7C}C:\users\w\appdata\roaming\spotify\spotify.exe] => C:\users\w\appdata\roaming\spotify\spotify.exe
FirewallRules: [{4CF7D7C9-3290-48FB-8336-CC4EDBF77924}] => C:\Program Files (x86)\Common Files\Research In Motion\nginx\nginx.exe
FirewallRules: [{DA5E6717-0863-4AD6-8CB4-E350F6941D2F}] => C:\Program Files (x86)\BlackBerry\BlackBerry Blend\desktopinvokeproxy.exe
FirewallRules: [TCP Query User{94312F5D-797E-4DD8-B3BB-540277322EA7}C:\program files (x86)\common files\research in motion\tunnel manager\peermanager.exe] => C:\program files (x86)\common files\research in motion\tunnel manager\peermanager.exe
FirewallRules: [UDP Query User{6C4FBF2E-085C-47B2-B693-E39F9920408B}C:\program files (x86)\common files\research in motion\tunnel manager\peermanager.exe] => C:\program files (x86)\common files\research in motion\tunnel manager\peermanager.exe
FirewallRules: [TCP Query User{A32968A8-76A3-4228-AF59-4C0EEA8FB02C}C:\program files (x86)\common files\research in motion\tunnel manager\peermanager.exe] => C:\program files (x86)\common files\research in motion\tunnel manager\peermanager.exe
FirewallRules: [UDP Query User{29C75D54-A4F9-4459-9812-1936D981D03F}C:\program files (x86)\common files\research in motion\tunnel manager\peermanager.exe] => C:\program files (x86)\common files\research in motion\tunnel manager\peermanager.exe
FirewallRules: [TCP Query User{C1E0DF48-FF76-4E7B-8FC9-AB3F0FC95967}C:\program files (x86)\skype\phone\skype.exe] => C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{3601AE15-869E-48B2-AFCE-55E105C11061}C:\program files (x86)\skype\phone\skype.exe] => C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{C3620875-5C70-4145-B20F-5293F40C2FF0}C:\program files (x86)\skype\phone\skype.exe] => C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{BC0F178A-5676-4D57-BE7F-50804D499185}C:\program files (x86)\skype\phone\skype.exe] => C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{6EB504D7-AA49-4638-A3A0-50F3D0ADB71F}] => C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{A125D56A-2E3C-458F-A69C-9E4B14FAF15B}] => C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{AA9B8A09-581B-4167-8AEB-FA3B89625855}] => C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{B1EEAC93-F801-48D6-AC66-3C2B14074556}] => C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{FC01E046-1852-4524-A703-D2116F68448B}] => C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\FaxApplications.exe
FirewallRules: [{98587A68-0360-4057-8319-C1793D3D52A3}] => C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\DigitalWizards.exe
FirewallRules: [{E05D331A-6921-4271-9622-AD1F1B469ADA}] => C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\SendAFax.exe
FirewallRules: [{294EE63A-E5AB-4C08-ACB0-5EFC9B0A1A25}] => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\DeviceSetup.exe
FirewallRules: [{A285D6A6-BA0F-4E71-A956-C798412A53E3}] => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicator.exe
FirewallRules: [{3510B7E4-F0DA-4328-9444-37B49694C78D}] => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{885CCE20-D2D0-418E-A684-D7183BE6F03A}] => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPPSdr\HPDiagnosticCoreUI.exe
FirewallRules: [{EA57B3A8-6643-4EC8-9958-191B7015BA39}] => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPPSdr\HPDiagnosticCoreUI.exe
FirewallRules: [{63D24422-F0BD-417D-B1E8-CF6972A5B421}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{5B288256-58A1-446F-A369-83F9BA1276F0}] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
==================== Wiederherstellungspunkte =========================
19-01-2017 13:15:36 Avira System Speedup 1.0.0
19-01-2017 13:16:11 JRT Pre-Junkware Removal
20-01-2017 18:47:41 Revo Uninstaller's restore point - Avira Connect
20-01-2017 18:48:13 Revo Uninstaller's restore point - Avira System Speedup
20-01-2017 18:50:41 Revo Uninstaller's restore point - Avira Phantom VPN
20-01-2017 18:51:56 Revo Uninstaller's restore point - Driver Booster 4.1
20-01-2017 18:52:53 Revo Uninstaller's restore point - IObit Uninstaller
20-01-2017 18:53:43 Revo Uninstaller's restore point - Smart Defrag 5
20-01-2017 18:54:27 Revo Uninstaller's restore point - Avira Connect
20-01-2017 18:55:15 Revo Uninstaller's restore point - Advanced SystemCare Ultimate 9
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (01/21/2017 08:43:54 AM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Benachrichtigungen für Volume C:\ sind nicht aktiv.
Kontext: Windows Anwendung
Details:
Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a)
Error: (01/20/2017 07:05:08 PM) (Source: DptfEvent) (EventID: 2) (User: )
Description: DptfPolicyLpmServiceHelper
WinMain: CreateSharedMemory() failed.
Session ID = 1
Error: (01/20/2017 07:05:08 PM) (Source: DptfEvent) (EventID: 3) (User: )
Description: DptfPolicyLpmServiceHelper
CreateSharedMemory: WaitForSingleObject() with g_pkeLpmSharedMemoryCreated failed
Last error = [0x00000102]
Session ID = 1
Error: (01/20/2017 06:59:21 PM) (Source: DptfEvent) (EventID: 1) (User: )
Description: DptfPolicyLpmService
CreateApplicationList: dptfFrameworkHandle is NULL.
Error: (01/20/2017 06:59:21 PM) (Source: DptfEvent) (EventID: 2) (User: )
Description: DptfPolicyLpmService
ConnectToDptfFrameworkDriver: SetupDiEnumDeviceInterfaces() failed.
Last error = [0x00000103]
Error: (01/20/2017 06:59:21 PM) (Source: DptfEvent) (EventID: 1) (User: )
Description: DptfPolicyCriticalService
ServiceMain: ServiceStart() failed.
Error: (01/20/2017 06:59:21 PM) (Source: DptfEvent) (EventID: 1) (User: )
Description: DptfPolicyCriticalService
ServiceStart: ConnectToDptfFrameworkDriver() failed.
Error: (01/20/2017 06:59:21 PM) (Source: DptfEvent) (EventID: 2) (User: )
Description: DptfPolicyCriticalService
ConnectToDptfFrameworkDriver: SetupDiEnumDeviceInterfaces() failed.
Last error = [0x00000103]
Error: (01/20/2017 06:59:21 PM) (Source: DptfEvent) (EventID: 1) (User: )
Description: DptfPolicyConfigTDPService
ServiceMain: ServiceStart() failed.
Error: (01/20/2017 06:59:21 PM) (Source: DptfEvent) (EventID: 1) (User: )
Description: DptfPolicyConfigTDPService
ServiceStart: ConnectToDptfFrameworkDriver() failed.
Systemfehler:
=============
Error: (01/20/2017 07:01:51 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Der Name "WORKGROUP :1d" konnte nicht auf der Schnittstelle mit IP-Adresse 192.168.0.13
registriert werden. Der Computer mit IP-Adresse 192.168.0.16 hat nicht
zugelassen, dass dieser Computer diesen Namen verwendet.
Error: (01/20/2017 06:55:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Advanced SystemCare Service 10" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/20/2017 06:55:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "AdvancedSystemCareAntivirus" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/20/2017 06:53:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "IObit Uninstaller Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/19/2017 03:12:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "SMService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/19/2017 01:16:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "NVIDIA Display Driver Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/19/2017 01:08:46 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Search" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler:
Es wird bereits eine Instanz des Dienstes ausgeführt.
Error: (01/19/2017 01:08:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/19/2017 01:08:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) ME Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/19/2017 01:08:16 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "HP Support Solutions Framework Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
CodeIntegrity:
===================================
Date: 2017-01-11 14:21:55.135
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-01-10 08:10:01.950
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-01-07 09:28:52.157
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-01-05 00:58:49.397
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-01-05 00:50:20.220
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-01-05 00:32:12.912
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-01-05 00:02:49.162
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-01-04 23:56:35.478
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-01-04 23:53:40.418
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-12-08 22:44:46.179
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\RimUsb_AMD64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
Prozentuale Nutzung des RAM: 39%
Installierter physikalischer RAM: 8075.11 MB
Verfügbarer physikalischer RAM: 4891.19 MB
Summe virtueller Speicher: 19851.11 MB
Verfügbarer virtueller Speicher: 16179.38 MB
==================== Laufwerke ================================
Drive c: (OS) (Fixed) (Total:95.39 GB) (Free:8.12 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive d: (Data) (Fixed) (Total:121.98 GB) (Free:107.24 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: FDF0BB21)
Partition: GPT.
==================== Ende von Addition.txt ============================ |