Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version: 29-01-2017
durchgeführt von Kornelia (Administrator) auf KORNELIA-PC (31-01-2017 21:55:20)
Gestartet von C:\Users\Kornelia\Desktop
Geladene Profile: Kornelia (Verfügbare Profile: Kornelia & Tabea)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\VPN\Avira.VpnService.exe
() C:\Users\Kornelia\AppData\Local\Amazon Music\Amazon Music Helper.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Logitech Inc.) C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe
(Nero AG) C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
() C:\Windows\System32\PSIService.exe
() C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
(RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(mobile concepts GmbH) C:\Program Files\S.A.D\CyberGhost VPN\CGVPNCliService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avshadow.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
() C:\Program Files\dvd43\DVD43_Tray.exe
() C:\Program Files\DivX\DivX Update\DivXUpdate.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
() C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
(RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\Update\realsched.exe
() C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe
(Intenium) C:\Program Files\DEUTSCHLAND SPIELT\Alamandi\TaskBarNotifier.exe
(Google) C:\Program Files\Google\Google Calendar Sync\GoogleCalendarSync.exe
(RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
() C:\Program Files\TP-LINK\TP-LINK-Konfigurationstool\TWCU.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [4702208 2007-10-01] (Realtek Semiconductor)
HKLM\...\Run: [dvd43] => C:\Program Files\dvd43\dvd43_tray.exe [827904 2009-10-23] ()
HKLM\...\Run: [DivXUpdate] => C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-29] ()
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AgentMonitor] => C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe [391040 2013-06-20] ()
HKLM\...\Run: [TkBellExe] => C:\Program Files\Real\RealPlayer\update\realsched.exe [286992 2015-11-28] (RealNetworks, Inc.)
HKLM\...\Run: [RealDownloader] => C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [714992 2016-07-05] ()
HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [61896 2016-12-29] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\Antivirus\avgnt.exe [917576 2016-12-16] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Avira System Speedup User Starter] => C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [25744 2017-01-11] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Avira System Speedup Tray] => C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe [160936 2017-01-11] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes)
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [144384 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Run: [Alamandi tray notifier] => C:\Program Files\DEUTSCHLAND SPIELT\Alamandi\TaskBarNotifier.exe [394992 2012-07-10] (Intenium)
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Run: [Facebook Update] => C:\Users\Kornelia\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-06-11] (Facebook Inc.)
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Run: [Amazon Music] => C:\Users\Kornelia\AppData\Local\Amazon Music\Amazon Music Helper.exe [6277952 2014-12-08] ()
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [449760 2013-10-31] (Sony)
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Run: [Spiele Post] => C:\Program Files\OXXOGames\GPlayer\GameCenterNotifier.exe
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Policies\Explorer: [NoRecentDocsHistory] 1
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Policies\Explorer: [NoRecentDocsMenu] 1
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Policies\Explorer: [NoStartMenuMFUprogramsList] 1
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\MountPoints2: {dd31715e-6298-11df-b571-001d607b2853} - F:\LaunchU3.exe -a
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\MountPoints2: {fdc8adba-0935-11e2-a19e-001d607b2853} - G:\DPFMate.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AOButler.exe - Verknüpfung.lnk [2012-05-05]
ShortcutTarget: AOButler.exe - Verknüpfung.lnk -> C:\Program Files\ArcorOnline\AOButler.exe (Keine Datei)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Google Calendar Sync.lnk [2013-01-10]
ShortcutTarget: Google Calendar Sync.lnk -> C:\Program Files\Google\Google Calendar Sync\GoogleCalendarSync.exe (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2013-02-09]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.0.318\SSScheduler.exe (Keine Datei)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealTimes.lnk [2015-11-28]
ShortcutTarget: RealTimes.lnk -> C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe (RealNetworks, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK-Konfigurationstool.lnk [2015-10-02]
ShortcutTarget: TP-LINK-Konfigurationstool.lnk -> C:\Program Files\TP-LINK\TP-LINK-Konfigurationstool\TWCU.exe ()
Startup: C:\Users\Konni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\zSpeedup.lnk [2017-01-31]
ShortcutTarget: zSpeedup.lnk -> C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe (Avira Operations GmbH & Co. KG)
Startup: C:\Users\Kornelia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AOButler.lnk [2012-06-03]
ShortcutTarget: AOButler.lnk -> C:\Program Files\ArcorOnline\AOButler.exe (Keine Datei)
Startup: C:\Users\Kornelia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk [2014-03-04]
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
Startup: C:\Users\Kornelia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\zSpeedup.lnk [2017-01-31]
ShortcutTarget: zSpeedup.lnk -> C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe (Avira Operations GmbH & Co. KG)
Startup: C:\Users\Tabea\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\zSpeedup.lnk [2017-01-31]
ShortcutTarget: zSpeedup.lnk -> C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe (Avira Operations GmbH & Co. KG)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{23F9AFAB-2021-4A7D-9477-EBCFE8F59F7E}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{9AD09A44-51EC-4D6E-9E93-74F49F171E7E}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.avira.net/#/?show_is=1&source=art
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#/?show_is=1&source=art
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#/?show_is=1&source=art
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#/?show_is=1&source=art
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.avira.net/#/?show_is=1&source=art
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#/?show_is=1&source=art
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#/?show_is=1&source=art
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2015-11-04] (RealDownloader)
BHO: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12] (DivX, LLC)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre6\bin\ssv.dll [2012-02-15] (Sun Microsystems, Inc.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-02-15] (Sun Microsystems, Inc.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} hxxp://game.zylom.com/activex/zylomgamesplayer.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default [2017-01-31]
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\20811wxw.default ->
FF Session Restore: Mozilla\Firefox\Profiles\20811wxw.default -> ist aktiviert.
FF Extension: (Avira Browser Safety) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\abs@avira.com [2017-01-26]
FF Extension: (Avira Browser Safety) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\abs@avira.com.xpi [2017-01-08]
FF Extension: (FacebookBlocker) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\facebookBlocker@webgraph.com [2014-02-16] [ist nicht signiert]
FF Extension: (NO Google Analytics) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\jid1-JcGokIiQyjoBAQ@jetpack.xpi [2016-06-09]
FF Extension: (Official My JDownloader AddOn) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\jid1-OY8Xu5BsKZQa6A@jetpack.xpi [2017-01-07]
FF Extension: (Test Pilot) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\testpilot@labs.mozilla.com.xpi [2016-09-01]
FF Extension: (NoScript) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2017-01-20]
FF Extension: (Adblock Plus) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-12-16]
FF Extension: (Torbutton) - C:\Users\Kornelia\AppData\Roaming\Mozilla\Firefox\Profiles\20811wxw.default\Extensions\{e0204bd5-9d31-402b-a99d-a6aa8ffebdca}.xpi [2012-10-11] [ist nicht signiert]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2011-07-05] [ist nicht signiert]
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: (Mehr Leistung und Videoformate für dein HTML5 &video&) - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2011-12-27] [ist nicht signiert]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext => nicht gefunden
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-10] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1165635.dll [2012-07-05] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-12-13] (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll [2012-02-15] (Sun Microsystems, Inc.)
FF Plugin: @mcafee.com/McAfeeMssPlugin -> C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll [Keine Datei]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=18.1.2.175 -> c:\program files\real\realplayer\Netscape6\nppl3260.dll [2015-11-28] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [2012-10-08] (RealNetworks, Inc.)
FF Plugin: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [2012-10-08] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.448 -> C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll [2010-02-04] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=18.1.2.175 -> c:\program files\real\realplayer\Netscape6\nprpplugin.dll [2015-11-28] (RealPlayer)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1736235967-2657770174-236075978-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Kornelia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2012-02-15] (Sun Microsystems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll [2009-06-25] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll [2014-04-27] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpplugin.dll [2014-04-27] (RealPlayer Cloud)
Chrome:
=======
CHR DefaultProfile: Default
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\50.0.2661.102\gcswf32.dll => Keine Datei
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll => Keine Datei
CHR Plugin: (Java Deployment Toolkit 6.0.290.11) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll => Keine Datei
CHR Plugin: (Java(TM) Platform SE 6 U29) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll => Keine Datei
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll => Keine Datei
CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll => Keine Datei
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
CHR Plugin: (DivX Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
CHR Plugin: (Microsoft® Windows Media Player Firefox Plugin) - C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation)
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\50.0.2661.102\ppGoogleNaClPluginChrome.dll => Keine Datei
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\50.0.2661.102\pdf.dll => Keine Datei
CHR Plugin: (Windows Genuine Advantage) - C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll (Microsoft Corporation)
CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll => Keine Datei
CHR Plugin: (Windows Presentation Foundation) - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Profile: C:\Users\Kornelia\AppData\Local\Google\Chrome\User Data\Default [2017-01-31]
CHR Extension: (Kein Name) - C:\Users\Kornelia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-07-16]
CHR Extension: (Kein Name) - C:\Users\Kornelia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-07-16]
CHR Extension: (RealDownloader) - C:\Users\Kornelia\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2013-11-08]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Kornelia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-06-16]
CHR Extension: (Kein Name) - C:\Users\Kornelia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2013-04-07]
CHR Extension: (Kein Name) - C:\Users\Kornelia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-15]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
StartMenuInternet: Google Chrome - Chrome.exe
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S2 AntiVirMailService; C:\Program Files\Avira\Antivirus\avmailc7.exe [1089592 2016-12-16] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\Antivirus\sched.exe [476736 2016-12-16] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\Antivirus\avguard.exe [476736 2016-12-16] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\Antivirus\avwebg7.exe [1490296 2016-12-16] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [372272 2016-12-29] (Avira Operations GmbH & Co. KG)
R2 AviraPhantomVPN; C:\Program Files\Avira\VPN\Avira.VpnService.exe [300344 2017-01-18] (Avira Operations GmbH & Co. KG)
R2 CGVPNCliSrvc; C:\Program Files\S.A.D\CyberGhost VPN\CGVPNCliService.exe [2438696 2012-04-26] (mobile concepts GmbH)
S2 gupdate1cacc58a1955820; C:\Program Files\Google\Update\GoogleUpdate.exe [144200 2015-10-02] (Google Inc.)
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2008-12-06] (Hewlett-Packard Company) [Datei ist nicht signiert]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [3303888 2017-01-20] (Malwarebytes)
R2 ProtexisLicensing; C:\Windows\system32\PSIService.exe [174656 2006-11-02] () [Datei ist nicht signiert]
R2 RealPlayerUpdateSvc; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [33088 2015-11-04] ()
R2 RealTimes Desktop Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [1095976 2015-11-28] (RealNetworks, Inc.)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) [Datei ist nicht signiert]
R2 SpeedupService; C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe [35304 2017-01-11] (Avira Operations GmbH & Co. KG)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R1 ACEDRV05; C:\Windows\system32\drivers\ACEDRV05.sys [97792 2010-03-10] (Protect Software GmbH) [Datei ist nicht signiert]
R2 ACEDRV08; C:\Windows\system32\drivers\ACEDRV08.sys [108768 2010-12-28] (Protect Software GmbH)
R2 acedrv10; C:\Windows\system32\drivers\acedrv10.sys [330144 2007-07-27] (Protect Software GmbH)
R2 acedrv11; C:\Windows\system32\drivers\acedrv11.sys [185472 2010-02-24] (Protect Software GmbH)
R2 acehlp10; C:\Windows\system32\drivers\acehlp10.sys [251680 2007-07-27] (Protect Software GmbH)
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [278984 2010-04-05] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119208 2016-12-16] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [140840 2016-12-16] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37896 2016-09-27] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [60088 2016-09-27] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\Windows\System32\Drivers\avusbflt.sys [30672 2016-12-16] (Avira Operations GmbH & Co. KG)
R3 dvd43llh; C:\Windows\System32\DRIVERS\dvd43llh.sys [18816 2010-06-09] (RIF) [Datei ist nicht signiert]
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae.sys [59976 2017-01-20] ()
S3 HCW713x; C:\Windows\System32\DRIVERS\HCW713x.sys [827776 2007-03-26] (Hauppauge Computer Works inc.)
R0 hotcore3; C:\Windows\System32\drivers\hotcore3.sys [39472 2008-02-14] (Paragon Software Group)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [25416 2010-04-05] ()
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25752 2009-10-07] ()
S3 LVUSBSta; C:\Windows\System32\drivers\LVUSBSta.sys [41752 2008-07-26] (Logitech Inc.)
R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [152512 2017-01-31] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [94656 2017-01-31] (Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [39360 2017-01-31] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [219584 2017-01-31] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [63264 2017-01-31] (Malwarebytes)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [7680 2007-02-27] ()
S3 pepifilter; C:\Windows\System32\DRIVERS\lv302af.sys [13848 2008-07-26] (Logitech Inc.)
R3 Ph3xIB32; C:\Windows\System32\DRIVERS\Ph3xIB32.sys [1311232 2009-07-13] (NXP Semiconductors)
S3 PID_PEPI; C:\Windows\System32\DRIVERS\LV302V32.SYS [2687512 2009-04-30] (Logitech Inc.)
R0 PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [36624 2007-01-28] (Sonic Solutions) [Datei ist nicht signiert]
R3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [801896 2012-10-25] (Realtek Semiconductor Corporation )
S0 sptd; C:\Windows\System32\Drivers\sptd.sys [722416 2010-10-22] (Duplex Secure Ltd.)
R2 StarOpen; C:\Windows\system32\Drivers\StarOpen.sys [5504 2012-06-03] () [Datei ist nicht signiert]
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [26624 2011-12-15] (The OpenVPN Project)
S3 eapihdrv; \??\C:\Users\Kornelia\AppData\Local\Temp\ehdrv.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-01-31 21:55 - 2017-01-31 21:57 - 00028579 _____ C:\Users\Kornelia\Desktop\FRST.txt
2017-01-31 21:31 - 2017-01-31 21:35 - 00042018 _____ C:\Users\Kornelia\Desktop\Fixlog.txt
2017-01-31 10:22 - 2017-01-31 10:22 - 00001881 _____ C:\Users\Kornelia\Desktop\JRT.txt
2017-01-31 10:16 - 2017-01-31 21:40 - 00065536 _____ C:\Windows\system32\Ikeext.etl
2017-01-31 10:09 - 2017-01-31 10:09 - 00001255 _____ C:\Users\Kornelia\Desktop\mbam.txt
2017-01-31 09:40 - 2017-01-31 09:40 - 00001365 _____ C:\Users\Kornelia\Desktop\AdwCleaner[C2].txt
2017-01-31 09:22 - 2017-01-31 09:22 - 04015056 _____ C:\Users\Kornelia\Desktop\adwcleaner_6.043.exe
2017-01-29 14:14 - 2017-01-29 14:14 - 00000000 ____D C:\Users\TEMP.Kornelia-PC\AppData\Local\Real
2017-01-29 14:12 - 2017-01-29 14:15 - 00000000 ____D C:\Users\TEMP.Kornelia-PC
2017-01-28 13:24 - 2017-01-28 13:31 - 00219282 _____ C:\TDSSKiller.3.1.0.12_28.01.2017_13.24.30_log.txt
2017-01-28 13:22 - 2017-01-28 13:22 - 04747704 _____ (AO Kaspersky Lab) C:\Users\Kornelia\Desktop\tdsskiller.exe
2017-01-28 13:03 - 2017-01-30 17:52 - 01762816 _____ (Farbar) C:\Users\Kornelia\Desktop\FRST.exe
2017-01-27 23:56 - 2017-01-31 21:55 - 00000000 ____D C:\FRST
2017-01-27 16:27 - 2017-01-27 16:27 - 02870984 _____ (ESET) C:\Users\Kornelia\Desktop\esetsmartinstaller_deu.exe
2017-01-27 15:58 - 2017-01-27 15:58 - 01663040 _____ (Malwarebytes) C:\Users\Kornelia\Desktop\JRT.exe
2017-01-27 15:27 - 2017-01-31 09:34 - 00000000 ____D C:\AdwCleaner
2017-01-27 14:42 - 2017-01-27 14:42 - 00000000 ____D C:\Users\Kornelia\AppData\Local\AviraSpeedup
2017-01-27 14:35 - 2017-01-27 14:35 - 00000000 ____D C:\Users\Kornelia\AppData\Local\Avira
2017-01-27 13:56 - 2017-01-31 21:42 - 00094656 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-01-27 13:56 - 2017-01-31 21:42 - 00063264 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-01-27 13:56 - 2017-01-31 10:36 - 00152512 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2017-01-27 13:55 - 2017-01-31 21:42 - 00039360 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-01-27 13:55 - 2017-01-31 21:41 - 00219584 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-01-27 13:55 - 2017-01-27 13:55 - 00002020 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-01-27 13:55 - 2017-01-27 13:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-01-27 13:55 - 2017-01-20 07:47 - 00059976 _____ C:\Windows\system32\Drivers\mbae.sys
2017-01-27 13:54 - 2017-01-27 13:54 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-01-27 13:54 - 2017-01-27 13:54 - 00000000 ____D C:\Program Files\Malwarebytes
2017-01-27 00:03 - 2017-01-27 00:04 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2017-01-26 22:47 - 2017-01-26 22:47 - 00001134 _____ C:\Users\Kornelia\Desktop\Avira Antivirus starten.lnk
2017-01-26 21:06 - 2017-01-26 21:06 - 04581024 _____ (Avira Operations GmbH & Co. KG) C:\Users\Kornelia\Downloads\avira_de_fass0_588a51b66deb0__ws.exe
2017-01-26 19:57 - 2017-01-26 19:57 - 00000000 ____D C:\Users\Kornelia\AppData\Roaming\Avira
2017-01-26 17:28 - 2017-01-26 17:28 - 00000000 ____D C:\Users\Kornelia\Downloads\Notfall DVD 7.0 Free
2017-01-26 16:35 - 2017-01-26 17:04 - 1276319704 _____ C:\Users\Kornelia\Downloads\Notfall_DVD_7.0_Free.zip
2017-01-26 13:57 - 2017-01-26 13:57 - 00001101 _____ C:\Users\Public\Desktop\Avira System Speedup.lnk
2017-01-26 13:57 - 2017-01-26 13:57 - 00000998 _____ C:\Users\Public\Desktop\Avira Phantom VPN.lnk
2017-01-26 13:56 - 2017-01-31 21:44 - 00000000 ____D C:\Users\Public\Speedup Sessions
2017-01-26 13:52 - 2017-01-26 13:52 - 00001166 _____ C:\Users\Public\Desktop\Avira Connect.lnk
2017-01-26 13:43 - 2017-01-26 13:49 - 04581024 _____ (Avira Operations GmbH & Co. KG) C:\Users\Kornelia\Downloads\avira_de_fass0_5889ec8b9e38c__ws.exe
2017-01-24 23:24 - 2017-01-24 23:24 - 00000936 _____ C:\Users\Kornelia\Desktop\duplicate.txt
2017-01-19 19:22 - 2017-01-19 21:20 - 00000000 ____D C:\Users\Kornelia\Desktop\Rekla Herd
2017-01-12 23:57 - 2017-01-12 23:58 - 00000000 ____D C:\Users\Kornelia\Desktop\SCHULE
2017-01-11 13:22 - 2017-01-05 18:46 - 00137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-01-11 13:22 - 2017-01-05 18:46 - 00067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-01-11 13:22 - 2017-01-05 18:43 - 01062912 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-01-11 13:22 - 2017-01-05 18:43 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-01-11 13:22 - 2017-01-05 18:42 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-01-11 13:22 - 2017-01-05 18:23 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-01-11 13:22 - 2017-01-05 18:19 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-01-11 13:22 - 2017-01-05 18:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-01-11 13:22 - 2017-01-05 18:19 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-01-11 13:22 - 2017-01-05 18:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-01-11 13:22 - 2017-01-05 18:19 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-01-11 13:22 - 2017-01-05 18:19 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-01-10 16:32 - 2017-01-25 00:18 - 00040346 _____ C:\Users\Kornelia\Desktop\Dateiliste.xlsx
2017-01-08 21:33 - 2017-01-08 21:33 - 00000000 ____D C:\Users\Kornelia\AppData\Local\CEF
2017-01-07 22:31 - 2017-01-07 22:31 - 00002075 _____ C:\Users\Kornelia\Desktop\JDownloader 2.lnk
2017-01-07 22:31 - 2017-01-07 22:31 - 00000000 ____D C:\Users\Kornelia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2017-01-07 22:27 - 2017-01-27 15:13 - 00000000 ____D C:\Users\Kornelia\AppData\Local\JDownloader 2.0
2017-01-07 22:23 - 2017-01-07 22:23 - 00076504 _____ (AppWork GmbH) C:\Users\Kornelia\Downloads\WebInstaller.exe
2017-01-07 19:32 - 2017-01-31 21:54 - 00000000 ____D C:\Users\Kornelia\AppData\LocalLow\Mozilla
2017-01-07 19:20 - 2017-01-07 19:20 - 00243720 _____ C:\Users\Kornelia\Downloads\Firefox Setup Stub 50.1.0.exe
2017-01-07 17:29 - 2017-01-24 23:13 - 00000000 ____D C:\Users\Kornelia\Downloads\Downloader
2017-01-07 17:21 - 2017-01-07 17:23 - 26539720 _____ (AppWork GmbH) C:\Users\Kornelia\Downloads\JDownloaderSetup.exe
2017-01-07 16:50 - 2017-01-07 16:50 - 00000000 ____D C:\Users\Kornelia\Downloads\Info
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-01-31 21:54 - 2011-07-05 09:29 - 00021264 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-01-31 21:54 - 2011-07-05 09:29 - 00021264 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-01-31 21:47 - 2011-07-05 10:27 - 01629284 _____ C:\Windows\system32\PerfStringBackup.INI
2017-01-31 21:47 - 2009-07-14 09:47 - 00702942 _____ C:\Windows\system32\perfh007.dat
2017-01-31 21:47 - 2009-07-14 09:47 - 00150582 _____ C:\Windows\system32\perfc007.dat
2017-01-31 21:47 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2017-01-31 21:43 - 2015-09-16 17:12 - 00000000 ____D C:\Users\Kornelia\Desktop\Neuer Ordner (2)
2017-01-31 21:43 - 2010-03-26 02:57 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2017-01-31 21:40 - 2010-03-25 21:41 - 00001094 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2017-01-31 21:40 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-01-31 21:38 - 2011-07-05 09:31 - 00000000 ____D C:\Users\Kornelia
2017-01-31 21:34 - 2011-05-03 14:50 - 00000000 ____D C:\Users\Kornelia\AppData\LocalLow\Temp
2017-01-31 21:31 - 2013-03-01 15:36 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-01-31 19:23 - 2013-06-11 21:18 - 00000940 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1736235967-2657770174-236075978-1001UA.job
2017-01-31 09:33 - 2011-07-05 10:34 - 00000008 __RSH C:\Users\Kornelia\ntuser.pol
2017-01-31 09:33 - 2011-07-05 10:33 - 00000008 __RSH C:\ProgramData\ntuser.pol
2017-01-31 08:58 - 2013-03-14 15:50 - 00000000 ____D C:\Windows\pss
2017-01-27 22:23 - 2013-06-11 21:18 - 00000918 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1736235967-2657770174-236075978-1001Core.job
2017-01-27 15:43 - 2016-03-27 19:45 - 00000000 ____D C:\Program Files\Mozilla Firefox
2017-01-27 15:43 - 2012-04-30 09:26 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2017-01-27 15:40 - 2011-03-09 20:40 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft
2017-01-27 15:33 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\tracing
2017-01-27 15:13 - 2011-11-01 11:13 - 00000000 ____D C:\Users\Kornelia\AppData\Roaming\Vidalia
2017-01-27 15:13 - 2011-07-05 10:25 - 00000000 ____D C:\Windows\Panther
2017-01-27 15:13 - 2011-04-13 13:21 - 00000000 ____D C:\Users\Kornelia\AppData\Roaming\skypePM
2017-01-27 15:12 - 2010-10-31 18:18 - 00000000 ___RD C:\Users\Kornelia\Desktop\Tabea Spiele
2017-01-27 15:12 - 2007-10-12 08:47 - 00000000 ____D C:\Program Files\DivX
2017-01-27 00:05 - 2010-12-16 14:57 - 00000000 ____D C:\Program Files\GMX
2017-01-26 23:52 - 2011-09-30 10:13 - 00000000 ____D C:\Users\Public\Documents\Tivola_prefs
2017-01-26 23:52 - 2011-02-23 18:14 - 00000000 ____D C:\Users\Kornelia\AppData\Roaming\Amazon
2017-01-26 23:52 - 2011-02-23 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon
2017-01-26 23:52 - 2011-02-23 18:11 - 00000000 ____D C:\Program Files\Amazon
2017-01-26 23:52 - 2010-03-10 14:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tivola
2017-01-26 23:48 - 2011-03-09 20:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2017-01-26 23:48 - 2011-03-09 20:41 - 00000000 ____D C:\Users\Kornelia\AppData\Roaming\DVDVideoSoft
2017-01-26 23:48 - 2011-03-09 20:40 - 00000000 ____D C:\Program Files\DVDVideoSoft
2017-01-26 23:43 - 2016-10-23 15:39 - 00150152 _____ C:\Windows\ntbtlog.txt
2017-01-26 17:26 - 2016-10-24 10:00 - 00120432 _____ C:\Users\Kornelia\AppData\Local\GDIPFONTCACHEV1.DAT
2017-01-26 16:28 - 2016-10-21 23:01 - 00428280 _____ C:\Windows\system32\FNTCACHE.DAT
2017-01-26 13:57 - 2016-10-21 11:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-01-26 13:57 - 2012-12-22 20:23 - 00000000 ____D C:\Program Files\Avira
2017-01-26 13:57 - 2012-05-20 11:07 - 00000000 ____D C:\ProgramData\Avira
2017-01-26 13:52 - 2015-11-28 11:45 - 00000000 ____D C:\ProgramData\Package Cache
2017-01-26 13:30 - 2011-04-05 15:08 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2017-01-25 13:21 - 2012-02-26 18:45 - 00000000 ____D C:\Users\Kornelia\Downloads\Heidi
2017-01-24 23:47 - 2011-04-05 14:45 - 00000000 ____D C:\ProgramData\Norton
2017-01-23 15:51 - 2012-01-17 15:04 - 00000000 ____D C:\Users\Kornelia\AppData\Local\Microsoft Help
2017-01-23 12:32 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\NDF
2017-01-22 00:11 - 2016-08-14 14:22 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-01-19 21:19 - 2010-04-01 21:23 - 00000000 ____D C:\Users\Kornelia\AppData\Roaming\COREL
2017-01-19 21:13 - 2010-04-29 21:48 - 00000000 ____D C:\Users\Kornelia\Documents\My PSP Files
2017-01-19 21:13 - 2010-04-22 22:31 - 00001786 ___SH C:\Windows\system32\KGyGaAvL.sys
2017-01-11 23:30 - 2013-09-01 10:47 - 00000000 ____D C:\Windows\system32\MRT
2017-01-11 23:19 - 2011-08-09 13:50 - 133456224 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-01-10 19:31 - 2012-05-27 00:08 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2017-01-10 19:31 - 2011-09-06 09:10 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2017-01-10 19:31 - 2010-03-13 11:32 - 00000000 ____D C:\Windows\system32\Macromed
2017-01-08 21:33 - 2010-03-12 09:41 - 00000000 ____D C:\Users\Kornelia\AppData\Local\Adobe
2017-01-07 19:31 - 2011-10-05 01:27 - 00001117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-01-07 19:31 - 2010-03-06 17:48 - 00001105 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2010-06-02 05:21 - 2010-06-02 05:21 - 1347354 _____ () C:\Program Files\Apr2005_d3dx9_25_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1078962 _____ () C:\Program Files\Apr2005_d3dx9_25_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1397830 _____ () C:\Program Files\Apr2006_d3dx9_30_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1115221 _____ () C:\Program Files\Apr2006_d3dx9_30_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0916430 _____ () C:\Program Files\Apr2006_MDX1_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 4162630 _____ () C:\Program Files\Apr2006_MDX1_x86_Archive.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0179133 _____ () C:\Program Files\Apr2006_XACT_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0133103 _____ () C:\Program Files\Apr2006_XACT_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0087101 _____ () C:\Program Files\Apr2006_xinput_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0046010 _____ () C:\Program Files\Apr2006_xinput_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0698612 _____ () C:\Program Files\APR2007_d3dx10_33_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0695865 _____ () C:\Program Files\APR2007_d3dx10_33_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1607358 _____ () C:\Program Files\APR2007_d3dx9_33_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1606039 _____ () C:\Program Files\APR2007_d3dx9_33_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0195766 _____ () C:\Program Files\APR2007_XACT_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0151225 _____ () C:\Program Files\APR2007_XACT_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0096817 _____ () C:\Program Files\APR2007_xinput_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0053302 _____ () C:\Program Files\APR2007_xinput_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1350542 _____ () C:\Program Files\Aug2005_d3dx9_27_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1077644 _____ () C:\Program Files\Aug2005_d3dx9_27_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0182903 _____ () C:\Program Files\AUG2006_XACT_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0137235 _____ () C:\Program Files\AUG2006_XACT_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0087142 _____ () C:\Program Files\AUG2006_xinput_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0046058 _____ () C:\Program Files\AUG2006_xinput_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0852286 _____ () C:\Program Files\AUG2007_d3dx10_35_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0796867 _____ () C:\Program Files\AUG2007_d3dx10_35_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1800160 _____ () C:\Program Files\AUG2007_d3dx9_35_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1708152 _____ () C:\Program Files\AUG2007_d3dx9_35_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0198096 _____ () C:\Program Files\AUG2007_XACT_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0153012 _____ () C:\Program Files\AUG2007_XACT_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0867612 _____ () C:\Program Files\Aug2008_d3dx10_39_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0849167 _____ () C:\Program Files\Aug2008_d3dx10_39_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1794084 _____ () C:\Program Files\Aug2008_d3dx9_39_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 1464672 _____ () C:\Program Files\Aug2008_d3dx9_39_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0121772 _____ () C:\Program Files\Aug2008_XACT_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0092996 _____ () C:\Program Files\Aug2008_XACT_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0271412 _____ () C:\Program Files\Aug2008_XAudio_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0271038 _____ () C:\Program Files\Aug2008_XAudio_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0919044 _____ () C:\Program Files\Aug2009_D3DCompiler_42_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0900598 _____ () C:\Program Files\Aug2009_D3DCompiler_42_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 3112111 _____ () C:\Program Files\Aug2009_d3dcsx_42_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 3319740 _____ () C:\Program Files\Aug2009_d3dcsx_42_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0232635 _____ () C:\Program Files\Aug2009_d3dx10_42_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0192131 _____ () C:\Program Files\Aug2009_d3dx10_42_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0136301 _____ () C:\Program Files\Aug2009_d3dx11_42_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0105044 _____ () C:\Program Files\Aug2009_d3dx11_42_x86.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0930116 _____ () C:\Program Files\Aug2009_d3dx9_42_x64.cab
2010-06-02 05:21 - 2010-06-02 05:21 - 0728456 _____ () C:\Program Files\Aug2009_d3dx9_42_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0122408 _____ () C:\Program Files\Aug2009_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0093106 _____ () C:\Program Files\Aug2009_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0273264 _____ () C:\Program Files\Aug2009_XAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0272642 _____ () C:\Program Files\Aug2009_XAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1357976 _____ () C:\Program Files\Dec2005_d3dx9_28_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1079456 _____ () C:\Program Files\Dec2005_d3dx9_28_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0212807 _____ () C:\Program Files\DEC2006_d3dx10_00_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0191720 _____ () C:\Program Files\DEC2006_d3dx10_00_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1571154 _____ () C:\Program Files\DEC2006_d3dx9_32_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1574376 _____ () C:\Program Files\DEC2006_d3dx9_32_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0192475 _____ () C:\Program Files\DEC2006_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0145599 _____ () C:\Program Files\DEC2006_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0089944 _____ (Microsoft Corporation) C:\Program Files\DSETUP.dll
2010-06-02 05:22 - 2010-06-02 05:22 - 1801048 _____ () C:\Program Files\dsetup32.dll
2010-06-02 05:22 - 2010-06-02 05:22 - 0042410 _____ () C:\Program Files\dxdllreg_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0537432 _____ () C:\Program Files\DXSETUP.exe
2010-06-02 05:22 - 2010-06-02 05:22 - 0094011 _____ () C:\Program Files\dxupdate.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1247499 _____ () C:\Program Files\Feb2005_d3dx9_24_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1013225 _____ () C:\Program Files\Feb2005_d3dx9_24_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1362796 _____ () C:\Program Files\Feb2006_d3dx9_29_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1084720 _____ () C:\Program Files\Feb2006_d3dx9_29_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0178359 _____ () C:\Program Files\Feb2006_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0132409 _____ () C:\Program Files\Feb2006_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0194675 _____ () C:\Program Files\FEB2007_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0147983 _____ () C:\Program Files\FEB2007_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0054678 _____ () C:\Program Files\Feb2010_X3DAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0020713 _____ () C:\Program Files\Feb2010_X3DAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0122446 _____ () C:\Program Files\Feb2010_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0093180 _____ () C:\Program Files\Feb2010_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0276960 _____ () C:\Program Files\Feb2010_XAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0277191 _____ () C:\Program Files\Feb2010_XAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1336002 _____ () C:\Program Files\Jun2005_d3dx9_26_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1064925 _____ () C:\Program Files\Jun2005_d3dx9_26_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0180785 _____ () C:\Program Files\JUN2006_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0133671 _____ () C:\Program Files\JUN2006_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0699044 _____ () C:\Program Files\JUN2007_d3dx10_34_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0698472 _____ () C:\Program Files\JUN2007_d3dx10_34_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1607774 _____ () C:\Program Files\JUN2007_d3dx9_34_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1607286 _____ () C:\Program Files\JUN2007_d3dx9_34_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0197122 _____ () C:\Program Files\JUN2007_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0152909 _____ () C:\Program Files\JUN2007_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0867828 _____ () C:\Program Files\JUN2008_d3dx10_38_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0849919 _____ () C:\Program Files\JUN2008_d3dx10_38_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1792608 _____ () C:\Program Files\JUN2008_d3dx9_38_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1463878 _____ () C:\Program Files\JUN2008_d3dx9_38_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0055154 _____ () C:\Program Files\JUN2008_X3DAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0021905 _____ () C:\Program Files\JUN2008_X3DAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0121054 _____ () C:\Program Files\JUN2008_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0093128 _____ () C:\Program Files\JUN2008_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0269628 _____ () C:\Program Files\JUN2008_XAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0269024 _____ () C:\Program Files\JUN2008_XAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0944460 _____ () C:\Program Files\Jun2010_D3DCompiler_43_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0931471 _____ () C:\Program Files\Jun2010_D3DCompiler_43_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0752783 _____ () C:\Program Files\Jun2010_d3dcsx_43_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0762188 _____ () C:\Program Files\Jun2010_d3dcsx_43_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0235955 _____ () C:\Program Files\Jun2010_d3dx10_43_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0197283 _____ () C:\Program Files\Jun2010_d3dx10_43_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0138205 _____ () C:\Program Files\Jun2010_d3dx11_43_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0109445 _____ () C:\Program Files\Jun2010_d3dx11_43_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0937246 _____ () C:\Program Files\Jun2010_d3dx9_43_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0768036 _____ () C:\Program Files\Jun2010_d3dx9_43_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0124596 _____ () C:\Program Files\Jun2010_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0093686 _____ () C:\Program Files\Jun2010_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0277338 _____ () C:\Program Files\Jun2010_XAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0278060 _____ () C:\Program Files\Jun2010_XAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0844884 _____ () C:\Program Files\Mar2008_d3dx10_37_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0818260 _____ () C:\Program Files\Mar2008_d3dx10_37_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1769862 _____ () C:\Program Files\Mar2008_d3dx9_37_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1443282 _____ () C:\Program Files\Mar2008_d3dx9_37_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0055058 _____ () C:\Program Files\Mar2008_X3DAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0021867 _____ () C:\Program Files\Mar2008_X3DAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0122336 _____ () C:\Program Files\Mar2008_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0093734 _____ () C:\Program Files\Mar2008_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0251194 _____ () C:\Program Files\Mar2008_XAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0226250 _____ () C:\Program Files\Mar2008_XAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1067160 _____ () C:\Program Files\Mar2009_d3dx10_41_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1040745 _____ () C:\Program Files\Mar2009_d3dx10_41_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1973702 _____ () C:\Program Files\Mar2009_d3dx9_41_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1612446 _____ () C:\Program Files\Mar2009_d3dx9_41_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0054600 _____ () C:\Program Files\Mar2009_X3DAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0021298 _____ () C:\Program Files\Mar2009_X3DAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0121506 _____ () C:\Program Files\Mar2009_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0092740 _____ () C:\Program Files\Mar2009_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0275044 _____ () C:\Program Files\Mar2009_XAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0273018 _____ () C:\Program Files\Mar2009_XAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0864600 _____ () C:\Program Files\Nov2007_d3dx10_36_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0803884 _____ () C:\Program Files\Nov2007_d3dx10_36_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1802058 _____ () C:\Program Files\Nov2007_d3dx9_36_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1709360 _____ () C:\Program Files\Nov2007_d3dx9_36_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0046144 _____ () C:\Program Files\NOV2007_X3DAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0018496 _____ () C:\Program Files\NOV2007_X3DAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0196762 _____ () C:\Program Files\NOV2007_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0148264 _____ () C:\Program Files\NOV2007_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0994154 _____ () C:\Program Files\Nov2008_d3dx10_40_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0965421 _____ () C:\Program Files\Nov2008_d3dx10_40_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1906878 _____ () C:\Program Files\Nov2008_d3dx9_40_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1550796 _____ () C:\Program Files\Nov2008_d3dx9_40_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0054522 _____ () C:\Program Files\Nov2008_X3DAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0021851 _____ () C:\Program Files\Nov2008_X3DAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0121794 _____ () C:\Program Files\Nov2008_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0092684 _____ () C:\Program Files\Nov2008_XACT_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0273960 _____ () C:\Program Files\Nov2008_XAudio_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0272611 _____ () C:\Program Files\Nov2008_XAudio_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0086037 _____ () C:\Program Files\Oct2005_xinput_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0045359 _____ () C:\Program Files\Oct2005_xinput_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1412902 _____ () C:\Program Files\OCT2006_d3dx9_31_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 1127217 _____ () C:\Program Files\OCT2006_d3dx9_31_x86.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0182361 _____ () C:\Program Files\OCT2006_XACT_x64.cab
2010-06-02 05:22 - 2010-06-02 05:22 - 0138017 _____ () C:\Program Files\OCT2006_XACT_x86.cab
2010-10-22 14:05 - 2010-10-22 14:46 - 0000388 _____ () C:\Users\Kornelia\AppData\Roaming\burnaware.ini
2013-12-18 23:02 - 2013-12-19 00:05 - 0000679 _____ () C:\Users\Kornelia\AppData\Local\cookies.ini
2011-08-17 17:39 - 2015-07-28 17:08 - 0008192 _____ () C:\Users\Kornelia\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2011-07-26 18:23 - 2011-07-26 18:23 - 0000000 _____ () C:\Users\Kornelia\AppData\Local\{38D64D27-A406-4959-8E9F-79A45D04043C}
==================== Bamital & volsnap ======================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2011-07-05 09:26
==================== Ende vom FRST.txt ============================ Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version: 29-01-2017
durchgeführt von Kornelia (31-01-2017 21:58:38)
Gestartet von C:\Users\Kornelia\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) (2011-07-05 09:33:53)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1736235967-2657770174-236075978-500 - Administrator - Disabled)
Gast (S-1-5-21-1736235967-2657770174-236075978-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1736235967-2657770174-236075978-1005 - Limited - Enabled)
Konni (S-1-5-21-1736235967-2657770174-236075978-1003 - Administrator - Enabled)
Kornelia (S-1-5-21-1736235967-2657770174-236075978-1001 - Administrator - Enabled) => C:\Users\Kornelia
Tabea (S-1-5-21-1736235967-2657770174-236075978-1002 - Limited - Enabled) => C:\Users\Tabea
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
µTorrent (HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\uTorrent) (Version: 3.3.2.30303 - BitTorrent Inc.)
7-Zip 4.65 (HKLM\...\7-Zip) (Version: - )
Adobe Acrobat Reader DC - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.023.20056 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.6.0.5970 - Adobe Systems Incorporated)
Adobe Digital Editions (HKLM\...\Digital Editions) (Version: - )
Adobe Flash Player 24 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 24.0.0.194 - Adobe Systems Incorporated)
Adobe Flash Player 24 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM\...\Adobe Shockwave Player) (Version: 11.6.5.635 - Adobe Systems, Inc.)
Aladins Wunderlampe (HKLM\...\Aladins Wunderlampe_is1) (Version: - )
Alamandi (HKLM\...\Alamandi) (Version: 0.0.0.0 - INTENIUM GmbH)
Amazon Music (HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Amazon Amazon Music) (Version: 3.7.1.698 - Amazon Services LLC)
Annabel (HKLM\...\Annabel) (Version: 1.0.0.0 - INTENIUM GmbH)
ATI Catalyst Install Manager (HKLM\...\{CC516453-9703-ABF9-201F-58A5EC567292}) (Version: 3.0.642.0 - ATI Technologies, Inc.)
Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.24.146 - Avira Operations GmbH & Co. KG)
Avira Connect (HKLM\...\{845380e2-f0b5-4584-bc40-cc54345b3c06}) (Version: 1.2.77.41287 - Avira Operations GmbH & Co. KG)
Avira Connect (Version: 1.2.77.41287 - Avira Operations GmbH & Co. KG) Hidden
Avira Phantom VPN (HKLM\...\Avira Phantom VPN) (Version: 2.4.3.30556 - Avira Operations GmbH & Co. KG)
Avira System Speedup (HKLM\...\Avira System Speedup_is1) (Version: 3.1.1.4250 - Avira Operations GmbH & Co. KG)
Azada ™: Ancient Magic (HKLM\...\BFG-Azada - Ancient Magic) (Version: - )
Azada: In Libro (HKLM\...\BFG-Azada - In Libro) (Version: - )
Azteca (HKLM\...\Azteca) (Version: 1.0.0.0 - INTENIUM GmbH)
Beetle Ju 2 (HKLM\...\Beetle Ju 2) (Version: 1.0.0.0 - INTENIUM GmbH)
Bengal (HKLM\...\Bengal) (Version: 1.0.1.0 - INTENIUM GmbH)
Big Fish Games: Game Manager (HKLM\...\BFGC) (Version: 2.0.0.28 - )
Botanica - Reise ins Unbekannte (HKLM\...\BFG-Botanica - Reise ins Unbekannte) (Version: - )
calibre (HKLM\...\{BA356893-F9F4-4C84-B10B-6EB2FC3C3B90}) (Version: 1.5.0 - Kovid Goyal)
ccc-core-static (Version: 2007.0821.2146.36991 - Ihr Firmenname) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.09 - Piriform)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.1.4003 - CDBurnerXP)
Chinese Checkers (HKLM\...\40-com.novelgames.flashgames.checkers) (Version: 1.8.0 - Novel Games Limited)
Chinese Checkers (Version: 1.8.0 - Novel Games Limited) Hidden
Corel Paint Shop Pro Photo XI (HKLM\...\{E1C7EF5E-3A7B-4ED4-A48B-F70F1B36EAB4}) (Version: 11.20.0000 - Corel Corporation)
Corel Snapfire DVD Maker (HKLM\...\{17E14D89-3A9F-4706-9F9B-C2DFC7ABE94B}) (Version: 1.20.0000 - Corel Corporation)
Corel Snapfire Plus (HKLM\...\{7ADE3A47-B425-45E9-8FF6-11BE2B775645}) (Version: 1.201.0000 - Corel Corporation)
CyberGhost VPN Patch 4.7.19 (HKLM\...\CyberGhost VPN_is1) (Version: - CyberGhost S.R.L.)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Da Vincis Perlen Puzzle (HKLM\...\Da Vincis Perlen Puzzle) (Version: - )
Das Reich des Drachen (HKLM\...\Das Reich des Drachen) (Version: 1.0.0.0 - INTENIUM GmbH)
Das Vermächtnis - Der Baum des Lebens (1.00) (HKLM\...\Das Vermächtnis - Der Baum des Lebens_is1) (Version: - City Interactive)
Der Perfekte Weihnachtsbaum (HKLM\...\Der Perfekte Weihnachtsbaum) (Version: 1.0.0.0 - INTENIUM GmbH)
DEUTSCHLAND SPIELT GAME CENTER (HKLM\...\DSGPlayer) (Version: 1.2010.6.23 - INTENIUM GmbH)
Diamantenfee 2 (HKLM\...\Diamantenfee 2) (Version: 1.0.0.0 - INTENIUM GmbH)
Diamond Drop 2 (HKLM\...\Diamond Drop 2) (Version: 1.0.0.0 - INTENIUM GmbH)
DIE GEHEIMNISSE DER SPIDERWICKS (HKLM\...\{DFA723CE-22B4-4E6B-92CF-176256ECF2DE}) (Version: 1.00.0000 - Sierra Entertainment)
Die Kluge Eule (HKU\S-1-5-21-1736235967-2657770174-236075978-1001\...\Die Kluge Eule) (Version: - )
Die Wiege Olympias 2 (HKLM\...\Die Wiege Olympias 2) (Version: 1.0.0.0 - INTENIUM GmbH)
DivX-Setup (HKLM\...\DivX Setup) (Version: 2.6.1.3 - DivX, LLC)
Drawn: ® Flucht aus der Dunkelheit (HKLM\...\BFG-Drawn - Flucht aus der Dunkelheit) (Version: - )
Drawn: Der Turm ™ (HKLM\...\BFG-Drawn - Der Turm) (Version: - )
Dream Chronicles (HKLM\...\Dream Chronicles) (Version: - PlayFirst, Inc.)
Dream Chronicles ™ 2: The Eternal Maze (HKLM\...\BFG-Dream Chronicles 2 - The Eternal Maze) (Version: - )
DVD43 v4.6.0 (HKLM\...\DVD43_is1) (Version: - )
DVS Video Downloader Addon for Mozilla Firefox version 4.3.4.17 (HKLM\...\DVS Video Downloader Addon for Mozilla Firefox_is1) (Version: 4.3.4.17 - DVDVideoSoft Ltd.)
Emil und Pauline Auf dem Land (remove only) (HKLM\...\Emil und Pauline Auf dem Land) (Version: - )
Emil und Pauline In der Stadt (remove only) (HKLM\...\Emil und Pauline In der Stadt) (Version: - )
Enigmatis - Vermisst in Maple Creek (HKLM\...\Enigmatis - Vermisst in Maple Creek_is1) (Version: - rondomedia Marketing & Vertriebs GmbH)
Ewige Reise - Das neue Atlantis (HKLM\...\Ewige Reise - Das neue Atlantis) (Version: - )
Fabled Legends: Die Ruckkehr des Rattenfangers (HKLM\...\BFG-Fabled Legends - Die Rueckkehr des Rattenfaengers) (Version: - )
Facebook Video Calling 3.1.0.521 (HKLM\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited)
FarmFrenzy (HKLM\...\FarmFrenzy) (Version: - )
Finstere Liebschaft - Immortal Lovers (HKLM\...\Finstere Liebschaft - Immortal Lovers) (Version: - )
foobar2000 v1.0.3 (HKLM\...\foobar2000) (Version: 1.0.3 - Peter Pawlowski)
Forest Legends - Der Ruf der Liebe (HKLM\...\Forest Legends - Der Ruf der Liebe) (Version: - )
FormatFactory 3.5.0.0 (HKLM\...\FormatFactory) (Version: 3.5.0.0 - Format Factory)
Free Studio version 2013 (HKLM\...\Free Studio_is1) (Version: 6.1.0.320 - DVDVideoSoft Ltd.)
Galileo Family Quiz - Spezial II (HKLM\...\Galileo Family Quiz - Spezial II) (Version: - SevenOne Intermedia)
Geheimakte 2 - Puritas Cordis (HKLM\...\{BE7347AD-2D93-4A74-8DBF-C1B073DAE509}) (Version: 1.00.0000 - Deep Silver)
Geheime Fälle: Die gestohlene Venus (HKLM\...\Geheime Fälle: Die gestohlene Venus) (Version: 1.0.0.0 - INTENIUM GmbH)
Geheimnis von Montezuma 2 (HKLM\...\Geheimnis von Montezuma 2) (Version: 1.0.0.0 - INTENIUM GmbH)
GMX SMS-Manager (HKLM\...\com.unitedinternet.ums.sms-mms-manager) (Version: 2.7.2.6 - 1 und 1 Internet AG)
GMX SMS-Manager (Version: 2.7.2 - 1 und 1 Internet AG) Hidden
Google Calendar Sync (HKLM\...\Google Calendar Sync) (Version: - )
Google Chrome (HKLM\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden
Gravely Silent: Haus des Schreckens (HKLM\...\BFG-Gravely Silent - Haus des Schreckens) (Version: - )
Haunted Manor: Der Herr der Spiegel (HKLM\...\BFG-Haunted Manor - Der Herr der Spiegel) (Version: - )
Hauppauge MCE XP/Vista Software Encoder (2.0.25102) (HKLM\...\Hauppauge MCE2005 Software Encoder) (Version: 2.0.25102 - Hauppauge Computer Works, Inc.)
Heroes of Hellas (HKLM\...\{C0906D83-1FE0-4176-A940-45A348080987}) (Version: 1.00.0000 - Purplehills)
Hexentanz und Firlefanz (HKLM\...\Hexentanz und Firlefanz) (Version: - )
Hidden Expedition ® : Bermudadreieck (HKLM\...\BFG-Hidden Expedition - Bermudadreieck) (Version: - )
Hidden Mysteries Salem Secrets (HKLM\...\Hidden Mysteries Salem Secrets) (Version: 1.0 - astrogon Software)
Hidden Mysteries Vampire Secrets (HKLM\...\Hidden Mysteries Vampire Secrets) (Version: 1.0 - astragon Software)
Java(TM) 6 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216031FF}) (Version: 6.0.310 - Oracle)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
JetBee FREE 5.1.2 (build 456) (HKLM\...\JetBee_is1) (Version: - )
Jewel Puzzle (HKLM\...\Jewel Puzzle) (Version: 1.0.0.0 - INTENIUM GmbH)
Kleiner Eisbär 2 (HKLM\...\Kleiner Eisbär 2) (Version: - )
Kuros (HKLM\...\Kuros) (Version: 1.0.0.0 - INTENIUM GmbH)
Lauras Stern (HKLM\...\Lauras Stern) (Version: - )
Letstrade (HKLM\...\{E0091C29-DEE8-4B24-BF65-8C35B5940D77}) (Version: 1.00.0000 - Buhl Data Service)
LightScribe System Software 1.17.90.1 (HKLM\...\{CB16F6D9-EBC9-4BC6-B917-7AF53E99C067}) (Version: 1.17.90.1 - LightScribe)
Logitech Webcam Software (HKLM\...\{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}) (Version: 12.10.1113 - Logitech Inc.)
Malwarebytes Version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
Manic Digger (HKLM\...\{119E2FCB-5CDD-4C24-BCB2-56A824E2BF0A}_is1) (Version: - )
Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM\...\{95140000-0081-0407-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM\...\{95140000-00AF-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Midnight Mysteries Salem Witch Trials (HKLM\...\Midnight Mysteries Salem Witch Trials) (Version: 1.1.0.0 - MumboJumbo)
Mozilla Firefox 51.0.1 (x86 de) (HKLM\...\Mozilla Firefox 51.0.1 (x86 de)) (Version: 51.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 51.0.1.6234 - Mozilla)
Mozilla Thunderbird 45.6.0 (x86 de) (HKLM\...\Mozilla Thunderbird 45.6.0 (x86 de)) (Version: 45.6.0 - Mozilla)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery Case Files®: Dire Grove™ (HKLM\...\BFG-Mystery Case Files - Dire Grove) (Version: - )
Mystery Case Files: Madame Fate ® (HKLM\...\BFG-Mystery Case Files - Madame Fate) (Version: - )
Mystery Case Files: Rückkehr nach Ravenhearst Handbuch ™ (HKLM\...\BFG-Mystery Case Files - Rueckkehr nach Ravenhearst Handbuch) (Version: - )
Mystery Case Files: Rückkehr nach Ravenhearst ™ (HKLM\...\BFG-Mystery Case Files - Rueckkehr nach Ravenhearst) (Version: - )
Mystery Case Files: Ravenhearst ™ (HKLM\...\BFG-Mystery Case Files - Ravenhearst) (Version: - )
Mystery of Cleopatra (HKLM\...\Mystery of Cleopatra 1.0) (Version: 1.0 - Rondo Media)
Mystery Places - Das Geheimnis der Geistervilla (HKLM\...\Mystery Places - Das Geheimnis der Geistervilla_is1) (Version: - )
Mystery Tales - Insel der Träume (HKLM\...\{2C0AC9A4-3FA8-4B71-848E-9BB9D492BC2E}_is1) (Version: - cerasus.media GmbH)
Mystery Trackers: Raincliff (HKLM\...\BFG-Mystery Trackers - Raincliff) (Version: - )
Natalie Brooks (HKLM\...\Natalie Brooks) (Version: - )
Nero 7 Essentials (HKLM\...\{0DE739CA-9487-4E3E-8511-92EAF01F1031}) (Version: 7.03.0274 - Nero AG)
Nightfall Mysteries - Die Ashburg Verschwörung (HKLM\...\Nightfall Mysteries - Die Ashburg Verschwörung_is1) (Version: - rondomedia)
Pahelika: Secret Legends (HKLM\...\Pahelika: Secret Legends) (Version: - The Games Company Worldwide GmbH)
Paragon Hard Disk Manager 2008 Professional (HKLM\...\{E9E4BB29-FA98-401B-9EDE-9906906E33DE}) (Version: - Paragon Software Group)
PixiePack Codec Pack (HKLM\...\{A8D647C8-65AC-409F-B7B2-3C0FEE1A32F2}) (Version: 1.1.1200.0 - None)
PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Polipo 1.0.4.1 (HKLM\...\Polipo) (Version: - )
Prinzessin Isabella (HKLM\...\Prinzessin Isabella) (Version: 1.0.0.0 - INTENIUM GmbH)
ProtectDisc Driver, Version 11 (HKLM\...\ProtectDisc Driver 11) (Version: 11.0.0.14 - ProtectDisc Software GmbH)
ProtectDisc Helper Driver 10 (HKLM\...\ProtectDisc Driver 10) (Version: 10.0.0.3 - )
Radiotracker (HKLM\...\{1E863F44-2D2D-4BD7-B25B-EDA9FF622267}) (Version: 6.2.13700.0 - RapidSolution Software AG)
ratDVD 0.78.1444 (HKLM\...\ratDVD) (Version: 0.78.1444 - ratDVD)
Ravensburger tiptoi (HKLM\...\Ravensburger tiptoi) (Version: - )
RealDownloader (Version: 18.1.2.176 - RealNetworks, Inc.) Hidden
RealDownloader (Version: 18.1.4.144 - RealNetworks) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer (RealTimes) (HKLM\...\RealPlayer 18.1) (Version: 18.1.2 - RealNetworks)
Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0000 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - )
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Rooms - Die Villa 1.0d (HKLM\...\Rooms - Die Villa) (Version: 1.0d - Halycon Media)
Samantha Swift and the Mystery From Atlantis (HKLM\...\Samantha Swift and the Mystery From Atlantis) (Version: 1.1.0.0 - MumboJumbo)
Sandra Fleming Chronicles – Crystal Skulls (HKLM\...\Sandra Fleming Chronicles – Crystal Skulls) (Version: 1.0.0.0 - INTENIUM GmbH)
Segoe UI (Version: 15.4.2271.0615 - Microsoft Corp) Hidden
Simajo (HKLM\...\Simajo) (Version: - )
Skins (Version: 2007.0821.2146.36991 - ATI) Hidden
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Sony Ericsson Update Engine (HKLM\...\Update Engine) (Version: 2.13.6.201305161305 - Sony Ericsson Communications AB)
Sony PC Companion 2.10.188 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.188 - Sony)
Spirits of Mystery: Dunkler Fluch (HKLM\...\BFG-Spirits of Mystery - Dunkler Fluch) (Version: - )
Spur der Träume (HKLM\...\Spur der Träume) (Version: 1.0.0.0 - INTENIUM GmbH)
Sweet Home 3D version 3.3 (HKLM\...\Sweet Home 3D_is1) (Version: - eTeks)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
The Enchanted Kingdom: Elisa’s Adventure (HKLM\...\The Enchanted Kingdom: Elisa’s Adventure) (Version: 1.0.0.0 - INTENIUM GmbH)
The Fall Trilogy (HKLM\...\The Fall Trilogy_is1) (Version: - Morphicon)
The Fall Trilogy Chapter 2 (HKLM\...\The Fall Trilogy Chapter 2_is1) (Version: - Morphicon)
The Night of the Rabbit (HKLM\...\The Night of the Rabbit) (Version: 1.0 - Daedalic Entertainment)
The Sultans Labyrinth: Das Opfer des Königs (HKLM\...\BFG-The Sultans Labyrinth - Das Opfer des Koenigs) (Version: - ) <==== ACHTUNG
Tor 0.2.2.35 (HKLM\...\Tor) (Version: - )
TP-LINK 300Mbps Wireless USB Adapter Treiber (HKLM\...\{852E893E-E4FD-45BB-8B17-72ADDF686974}) (Version: 1.3.1 - TP-LINK)
TP-LINK-Konfigurationstool (HKLM\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK)
Trödelschätze (HKLM\...\{AC368309-A247-42C0-9AAF-ABB2E067B79C}) (Version: 1.00.0000 - Valusoft)
TrueCrypt (HKLM\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation)
Try Corel Snapfire muvee autoProducer add on (Version: 1.00.0000 - Ihr Firmenname) Hidden
Turtix (HKLM\...\Turtix) (Version: - )
Turtix 2 (HKLM\...\Turtix 2) (Version: - )
Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version: - )
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
UpdateService (Version: 1.0.0 - RealNetworks, Inc.) Hidden
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0 - DivX, Inc) Hidden
Vernaeht und zugeflixt! Was stimmt denn hier nicht? (HKLM\...\Vernaeht und zugeflixt! Was stimmt denn hier nicht?) (Version: - )
Vidalia 0.2.15 (HKLM\...\Vidalia) (Version: - )
Video Downloader (Version: 1.2.0 - RealNetworks) Hidden
Vista Codec Package (HKLM\...\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}) (Version: 5.6.4 - Shark007)
VTech Download Agent Library (Version: 1.00.0000 - VTech) Hidden
VTech Download Manager (HKLM\...\VTechDownloadManager) (Version: - VTech)
Wieso? Weshalb? Warum? - Unser Körper (HKLM\...\com.rd.www.desktop.DesktopBody) (Version: 1.0.0 - Ravensburger Digital GmbH)
Wieso? Weshalb? Warum? - Unser Körper (Version: 1.0.0 - Ravensburger Digital GmbH) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WordPerfect Office X3 (HKLM\...\_{54DB13F1-0CE0-4BAB-BD5F-7DE150C043C8}) (Version: - Corel Corporation)
WordPerfect Office X3 (Version: 13.3 - Corel Corporation) Hidden
World Voyage (HKLM\...\World Voyage) (Version: 1.0.0.0 - INTENIUM GmbH)
XMedia Recode 2.3.0.4 (HKLM\...\XMedia Recode) (Version: 2.3.0.4 - Sebastian Dörfler)
XMind 2013 (v3.4.1) (HKLM\...\XMind_is1) (Version: 3.4.1.201401221918 - XMind Ltd.)
Zuma's Revenge! (HKLM\...\Zuma's Revenge!1.0) (Version: 1.0 - AllSmartGames)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-1736235967-2657770174-236075978-1001_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\Kornelia\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-1736235967-2657770174-236075978-1001_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\Kornelia\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-1736235967-2657770174-236075978-1001_Classes\CLSID\{8B9F5BF4-0407-4BB2-9FED-4C0372DABD00}\localserver32 -> C:\Users\Kornelia\AppData\Local\Facebook\Video\Skype\FacebookVideoCallingProxy.exe (Skype Limited)
CustomCLSID: HKU\S-1-5-21-1736235967-2657770174-236075978-1001_Classes\CLSID\{CBE9C57E-FFA9-4123-8354-AD360D6DD3CC}\InprocServer32 -> C:\Users\Kornelia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {032A98DE-A547-4FB1-97B4-777E85FCE80F} - System32\Tasks\{51ECF608-A47D-464B-892E-9A3067C4CA0E} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {04338029-ABEF-4DB2-A56D-FF0641970A7A} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1736235967-2657770174-236075978-1001UA => C:\Users\Kornelia\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-06-11] (Facebook Inc.)
Task: {08FA19ED-87A2-4BE4-B4F6-1170192766D0} - System32\Tasks\{1D76B916-65CA-47A7-9DD1-C614C8F74E56} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {0922A476-D472-4C6B-AF0D-283C447FF4F0} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1736235967-2657770174-236075978-1001 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2015-11-04] (RealNetworks, Inc.)
Task: {248BA49A-31FC-4CBC-AC12-0AD50B3730CD} - System32\Tasks\{2D2CF1E0-A39F-4435-B084-62C323AD4F56} => C:\Program Files\astragon Software\Hidden Mysteries Vampire Secrets\Hidden Mysteries - Vampire Secrets.exe [2010-09-03] ()
Task: {262EF14E-2D04-4238-8DD2-2B9AFBBAEC1F} - System32\Tasks\{D62DA859-B3A5-4A8C-8643-BC908C434082} => C:\Program Files\Skype\\Phone\Skype.exe [2014-12-11] (Skype Technologies S.A.)
Task: {2B93871E-90A6-4BD6-B5B2-2B2CCE5A5740} - System32\Tasks\{C791566E-54A6-4DAF-8C0F-0153AA08A504} => pcalua.exe -a D:\Software\Nero\setupx.exe -d D:\Software\Nero
Task: {2D4FEC81-5640-445A-97C1-A780D1FD2CD8} - System32\Tasks\{3D22388D-753E-494E-8F61-D351F8E67C68} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {34B169BF-29C1-4D9E-ABAD-DD33D6A48488} - System32\Tasks\{AA3E9FEA-EE1C-4BD0-A6EE-0AB550AE278F} => pcalua.exe -a D:\autorun.exe -d D:\
Task: {3C30CE7A-A21F-4478-8DFD-AB4484B05538} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-10] (Adobe Systems Incorporated)
Task: {3F4F5314-363F-4D5F-AD46-3C6D3EAA7DDA} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1736235967-2657770174-236075978-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2015-11-04] (RealNetworks, Inc.)
Task: {474C30BF-0A7E-4DC2-9E6B-369B154E8229} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-10-02] (Google Inc.)
Task: {49897270-27FE-4B7E-A4F9-1B4F8AE27E3F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
Task: {49E28B95-9408-4715-97DA-1AB7339805C6} - System32\Tasks\{EA4F2F72-7C23-4AB9-8184-245B49DE749F} => C:\Program Files\DEUTSCHLAND SPIELT\BeetleJu2 VollVersion\BeetleJu2_og.exe [2010-11-23] (INTENIUM GmbH)
Task: {4C08C992-D45F-4D07-9702-9FF2FB1E7DA0} - System32\Tasks\{7D0AE273-2305-48F1-AF5C-46BFD622F47E} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {4E016ADD-5044-4D20-841E-C43FFE2861BD} - System32\Tasks\{F4A27F14-3152-470D-9565-039442275C50} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {4EC8D6F7-19A4-43EB-A744-BF2A0A15F56E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd)
Task: {50748F55-16EA-4C55-8547-7EC1D0947037} - System32\Tasks\RealDownloader Update Check => C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [2016-07-05] ()
Task: {561375CB-FF5A-417B-B297-BA73DE149581} - System32\Tasks\Microsoft\Windows\Wired\GatherWiredInfo => C:\Windows\system32\gatherWiredInfo.vbs
Task: {5AC92F98-B42E-4F21-9AA0-01AD0439642E} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
Task: {5B3F853B-FE70-4847-8631-186551D7012C} - System32\Tasks\{07CBC734-EBA5-454A-913B-EC737132222F} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {66D53617-940A-4E05-871F-28B9007E2CC3} - System32\Tasks\{9BFE3ECE-693E-45CE-A00E-7DC315188CEC} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {6B725544-E42B-4580-B4AE-E272703AF399} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
Task: {6C42F0C8-5E73-4DE6-A971-9CE99159C71D} - System32\Tasks\{71507EB2-BF35-48B0-8135-FCBC7D54BAEC} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {77D92D5C-1736-4593-BC70-36551C747A1A} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1736235967-2657770174-236075978-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2015-11-04] (RealNetworks, Inc.)
Task: {78201B2F-5E80-4168-B233-7212E7A89D0D} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18] (Sun Microsystems, Inc.)
Task: {7DD6E2A0-C6F1-4EFD-92B0-4A0D547C24C5} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1736235967-2657770174-236075978-1001 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2015-11-04] (RealNetworks, Inc.)
Task: {893B18BE-C091-4B27-9D76-82F0BCA99813} - System32\Tasks\{84074564-9C97-48A0-BBB3-89DAB27B7C9B} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {9240E8E9-1D41-40BA-B4DE-32542C7145DB} - System32\Tasks\{97E672C4-E6D1-4ED6-99D8-B122A1F86FC0} => pcalua.exe -a D:\DVPP\Setup.exe -d D:\DVPP
Task: {979D3F17-6619-45C5-B404-606838B44253} - System32\Tasks\{E4546B87-1D17-4B95-A0A5-37522F5D05EF} => C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
Task: {9C2F05E8-F861-43CF-987B-095EF430F405} - System32\Tasks\{F3AEE607-769D-4C8B-824B-88BEB035F102} => pcalua.exe -a C:\Spiele\Lillifee\setup.exe -d D:
Task: {B0993B05-978C-4A15-AA87-B18AB9A99EFD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1736235967-2657770174-236075978-1001Core => C:\Users\Kornelia\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-06-11] (Facebook Inc.)
Task: {B37A6E42-727E-4E31-A77C-04022A464880} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1736235967-2657770174-236075978-1001 => C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe [2015-11-04] (RealNetworks, Inc.)
Task: {BFD53BF4-19B8-4502-92DD-7D926FFA8CA6} - System32\Tasks\{EC680A57-E7BC-4A66-8FBB-20A511FDFA89} => pcalua.exe -a D:\bin\EasyInst.exe -d D:\
Task: {C8250CB2-F11F-4A98-95BB-BA5E812E6A7E} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1736235967-2657770174-236075978-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2015-11-04] (RealNetworks, Inc.)
Task: {DAAAE172-7743-4C96-B232-DCC0F5FC7607} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-10-02] (Google Inc.)
Task: {DBF5DE37-8E99-4B07-813D-41126EA90DB3} - System32\Tasks\{81430713-60CA-4B71-8FBB-D14DA0751514} => pcalua.exe -a D:\autorun.exe -d D:\
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs
Task: {F0E42A33-0E8E-4BB2-80F9-8418E2340E57} - System32\Tasks\{287D07D5-E1D7-4882-9C98-35680FC50E9A} => C:\Program Files\astragon Software\Hidden Mysteries Vampire Secrets\Hidden Mysteries - Vampire Secrets.exe [2010-09-03] ()
Task: {F20691E7-0B1D-438A-ABD0-2D94FF823CEA} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1736235967-2657770174-236075978-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2015-11-04] (RealNetworks, Inc.)
Task: {F526EC9D-6127-42C8-A3B4-E081029D3F7D} - System32\Tasks\{3DEE68DB-465B-46BB-87CD-D6BEE805EFD1} => C:\Program Files\Daedalic Entertainment\The Night of the Rabbit\rabbit.exe [2013-04-28] (Daedalic Entertainment GmbH)
Task: {FB0BD155-6754-4ECC-9711-162FE2741D51} - System32\Tasks\Amazon Music Helper => C:\Users\Kornelia\AppData\Local\Amazon Music\Amazon Music Helper.exe [2014-12-08] ()
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1736235967-2657770174-236075978-1001Core.job => C:\Users\Kornelia\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1736235967-2657770174-236075978-1001UA.job => C:\Users\Kornelia\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-01-17 15:57 - 2014-12-08 07:27 - 06277952 _____ () C:\Users\Kornelia\AppData\Local\Amazon Music\Amazon Music Helper.exe
2006-11-02 11:40 - 2006-11-02 11:40 - 00174656 _____ () C:\Windows\system32\PSIService.exe
2015-11-04 15:20 - 2015-11-04 15:20 - 00033088 _____ () C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
2015-11-04 15:20 - 2015-11-04 15:20 - 00037720 _____ () C:\Program Files\Real\UpdateService\DL2UpdatePlugin.dll
2015-11-04 15:19 - 2015-11-04 15:19 - 00039768 _____ () C:\Program Files\Real\UpdateService\RealDownloaderUpdatePlugin.dll
2015-11-04 15:20 - 2015-11-04 15:20 - 00037728 _____ () C:\Program Files\Real\UpdateService\VideoDLUpdatePlugin.dll
2017-01-27 13:54 - 2017-01-20 07:47 - 01732896 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll
2017-01-27 13:55 - 2017-01-20 07:47 - 01719760 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2017-01-27 13:55 - 2017-01-20 07:47 - 02097616 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\arwlib.dll
2010-06-09 18:10 - 2009-10-23 18:34 - 00827904 _____ () C:\Program Files\dvd43\DVD43_Tray.exe
2011-07-29 00:08 - 2011-07-29 00:08 - 01259376 _____ () C:\Program Files\DivX\DivX Update\DivXUpdate.exe
2011-07-29 00:09 - 2011-07-29 00:09 - 00096112 _____ () C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll
2013-06-24 09:54 - 2013-06-20 08:58 - 00391040 _____ () C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
2013-06-24 09:54 - 2010-06-24 02:16 - 02150400 _____ () C:\Program Files\VTech\DownloadManager\System\QtCore4.dll
2013-06-24 09:54 - 2010-07-13 14:07 - 07826432 _____ () C:\Program Files\VTech\DownloadManager\System\QtGui4.dll
2013-06-24 09:54 - 2010-06-02 03:29 - 00934912 _____ () C:\Program Files\VTech\DownloadManager\System\QtNetwork4.dll
2013-06-24 09:54 - 2010-06-02 03:28 - 00335360 _____ () C:\Program Files\VTech\DownloadManager\System\QtXml4.dll
2013-06-24 09:54 - 2012-08-06 10:54 - 09843640 _____ () C:\Program Files\VTech\DownloadManager\System\QtWebKit4.dll
2013-06-24 09:54 - 2010-06-02 03:56 - 00232960 _____ () C:\Program Files\VTech\DownloadManager\System\phonon4.dll
2013-06-24 09:54 - 2010-06-02 03:54 - 02530816 _____ () C:\Program Files\VTech\DownloadManager\System\QtXmlPatterns4.dll
2013-06-24 09:54 - 2010-07-05 10:19 - 00116736 _____ () C:\Program Files\VTech\DownloadManager\System\QtSolutions_SOAP-2.7.dll
2013-06-24 09:54 - 2010-11-11 10:24 - 00028160 _____ () C:\Program Files\VTech\DownloadManager\System\DACommCenter.dll
2013-06-24 09:54 - 2010-06-02 06:05 - 00025600 _____ () C:\Program Files\VTech\DownloadManager\System\imageformats\qgif4.dll
2013-06-24 09:54 - 2010-06-02 06:05 - 00119808 _____ () C:\Program Files\VTech\DownloadManager\System\imageformats\qjpeg4.dll
2016-07-05 17:18 - 2016-07-05 17:18 - 00714992 _____ () C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
2016-07-05 17:13 - 2016-07-05 17:13 - 01382048 _____ () C:\Program Files\RealNetworks\RealDownloader\cpprest100_1_2.dll
2015-11-28 11:37 - 2015-11-28 11:37 - 00653608 _____ () c:\program files\real\realplayer\RPDS\Lib\r1api.dll
2016-07-05 17:18 - 2016-07-05 17:18 - 00077552 _____ () C:\Program Files\RealNetworks\RealDownloader\dtvhooks.dll
2015-11-28 11:37 - 2015-11-28 11:37 - 00022312 _____ () c:\program files\real\realplayer\RPDS\Tools\ffmpeg\mediautil.dll
2015-11-28 11:37 - 2015-11-28 11:37 - 01520936 _____ () c:\program files\real\realplayer\RPDS\Tools\ffmpeg\avformat-55.dll
2015-11-28 11:37 - 2015-11-28 11:37 - 04274984 _____ () c:\program files\real\realplayer\RPDS\Tools\ffmpeg\avcodec-55.dll
2015-11-28 11:37 - 2015-11-28 11:37 - 00322856 _____ () c:\program files\real\realplayer\RPDS\Tools\ffmpeg\avutil-52.dll
2015-10-02 18:33 - 2012-10-25 15:19 - 00846848 _____ () C:\Program Files\TP-LINK\TP-LINK-Konfigurationstool\TWCU.exe
2015-10-02 18:33 - 2012-10-25 15:19 - 01401344 _____ () C:\Program Files\TP-LINK\TP-LINK-Konfigurationstool\nicLan.dll
2015-10-02 18:33 - 2012-12-04 15:22 - 00193024 _____ () C:\Program Files\TP-LINK\TP-LINK-Konfigurationstool\DC_WFF.dll
2015-10-02 18:33 - 2012-10-25 15:19 - 00293376 _____ () C:\Program Files\TP-LINK\TP-LINK-Konfigurationstool\WJRtl.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2006-11-02 03:23 - 2006-09-18 14:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1736235967-2657770174-236075978-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kornelia\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
==================== FirewallRules (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{771781D7-42F2-4719-BCFC-468823CD634A}] => C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{F8F60273-BD4C-4058-B246-6F633BD6A891}] => LPort=1900
FirewallRules: [{20D276B1-3C90-4929-8A32-E4ACCBECC2C8}] => LPort=2869
FirewallRules: [{3355F104-DC9F-42F3-8E9D-3BF5DBF8FEB3}] => C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{0BEA84F4-2656-475A-AE06-59E81719D75F}] => svchost.exe
FirewallRules: [{2BFBBFCF-8C85-480D-A055-0DB5677BDCDE}] => C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [TCP Query User{5B4D0C77-79AF-4923-BDC1-B51891E48444}C:\program files\vidalia bundle\tor\tor.exe] => C:\program files\vidalia bundle\tor\tor.exe
FirewallRules: [UDP Query User{BC460BB0-BD68-48F3-BEB2-47578A7623D9}C:\program files\vidalia bundle\tor\tor.exe] => C:\program files\vidalia bundle\tor\tor.exe
FirewallRules: [{2339DF44-A7DD-4E22-A32A-32DCC95DC337}] => C:\program files\vidalia bundle\tor\tor.exe
FirewallRules: [{A59E1834-01D3-478B-90C5-6E1D4924AFDB}] => C:\program files\vidalia bundle\tor\tor.exe
FirewallRules: [{AEB0C184-B9E4-434C-B087-A14CA1DF867B}] => C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{08572AF5-8353-4B61-B8C0-24C618870A9E}] => C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{670FA4AF-6DA8-487A-91EE-B07143EB2170}] => C:\Users\Kornelia\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8BD40ABE-22B5-4230-B66B-47D3BD3D0390}] => C:\Users\Kornelia\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{55D99CB2-C725-42FC-847A-5909C961EAE8}] => C:\Users\Kornelia\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe
FirewallRules: [{85FDB52D-7A01-43A8-9009-6A168010138A}] => C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{8758F947-09B2-41DF-88EC-579BC9CA03E7}] => C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{459568E9-83FC-4C8A-9663-91C2C9B6026F}] => C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{92605963-E425-410C-BB6E-8F4EDEA0C349}] => C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D48E3507-9052-45D0-9E44-24AC955777AA}] => C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{4ED3AA0F-7E02-449A-BAA4-34B72C42BF3C}C:\program files\freetime\formatfactory\formatfactory.exe] => C:\program files\freetime\formatfactory\formatfactory.exe
FirewallRules: [UDP Query User{A8E2B43C-F558-48C1-A629-118843C42FE8}C:\program files\freetime\formatfactory\formatfactory.exe] => C:\program files\freetime\formatfactory\formatfactory.exe
FirewallRules: [{84839E9D-9BF0-4CCD-A922-70507EA96606}] => c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
FirewallRules: [{175EF583-D4BB-4455-BF80-3778A39EAEAC}] => C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
FirewallRules: [{189936DE-97ED-4FCF-AFD9-FA1ABFB6C531}] => C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
FirewallRules: [{D0577CA9-F454-408A-ACDF-7F280302E7BD}] => C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
FirewallRules: [{95DF96B5-51A5-4BAD-8FE7-4BC3CF9AF3DF}] => C:\Program Files\VTech\DownloadManager\System\AgentMonitor.exe
FirewallRules: [{D81DFAC4-5EE4-4BF8-A94D-84503C9C6E7F}] => C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{88496792-6A83-4826-9392-C3A2DBF731BE}C:\program files\java\jre6\bin\javaw.exe] => C:\program files\java\jre6\bin\javaw.exe
FirewallRules: [UDP Query User{08F10482-4231-4238-9029-5220201C0B87}C:\program files\java\jre6\bin\javaw.exe] => C:\program files\java\jre6\bin\javaw.exe
FirewallRules: [TCP Query User{3199F9F6-FD40-4F4E-B578-F886A82D57DA}C:\users\kornelia\appdata\local\jdownloader 2.0\jdownloader2.exe] => C:\users\kornelia\appdata\local\jdownloader 2.0\jdownloader2.exe
FirewallRules: [UDP Query User{AE639368-64F0-4A58-B6CA-0EE42A599710}C:\users\kornelia\appdata\local\jdownloader 2.0\jdownloader2.exe] => C:\users\kornelia\appdata\local\jdownloader 2.0\jdownloader2.exe
==================== Wiederherstellungspunkte =========================
27-01-2017 15:11:14 Avira System Speedup Optimierung
27-01-2017 16:04:18 JRT Pre-Junkware Removal
31-01-2017 10:18:32 JRT Pre-Junkware Removal
31-01-2017 12:12:23 Windows Update
==================== Fehlerhafte Geräte im Gerätemanager =============
Name: sptd
Description: sptd
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: sptd
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: atksgt
Description: atksgt
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: atksgt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (01/31/2017 12:12:24 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-1736235967-2657770174-236075978-1003.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig.
.
Vorgang:
OnIdentify-Ereignis
Generatordaten werden gesammelt
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {4d4d6a6c-951d-4573-97e6-d65f83cdb7bf}
Error: (01/31/2017 10:46:12 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: wmpnetwk.exe, Version: 12.0.7601.17514, Zeitstempel: 0x4ce7a4a7
Name des fehlerhaften Moduls: wmp.dll, Version: 12.0.7601.23517, Zeitstempel: 0x57adfdef
Ausnahmecode: 0xc0000005
Fehleroffset: 0x002f2a13
ID des fehlerhaften Prozesses: 0x1618
Startzeit der fehlerhaften Anwendung: 0x01d27ba5591e6ca2
Pfad der fehlerhaften Anwendung: C:\Program Files\Windows Media Player\wmpnetwk.exe
Pfad des fehlerhaften Moduls: C:\Windows\system32\wmp.dll
Berichtskennung: 192d5167-e79a-11e6-8b50-001d607b2853
Error: (01/31/2017 10:34:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: wmpnetwk.exe, Version: 12.0.7601.17514, Zeitstempel: 0x4ce7a4a7
Name des fehlerhaften Moduls: wmp.dll, Version: 12.0.7601.23517, Zeitstempel: 0x57adfdef
Ausnahmecode: 0xc0000005
Fehleroffset: 0x002f2a13
ID des fehlerhaften Prozesses: 0x1aac
Startzeit der fehlerhaften Anwendung: 0x01d27ba42f6e5710
Pfad der fehlerhaften Anwendung: C:\Program Files\Windows Media Player\wmpnetwk.exe
Pfad des fehlerhaften Moduls: C:\Windows\system32\wmp.dll
Berichtskennung: 81d79c50-e798-11e6-8b50-001d607b2853
Error: (01/31/2017 10:26:18 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: wmpnetwk.exe, Version: 12.0.7601.17514, Zeitstempel: 0x4ce7a4a7
Name des fehlerhaften Moduls: wmp.dll, Version: 12.0.7601.23517, Zeitstempel: 0x57adfdef
Ausnahmecode: 0xc0000005
Fehleroffset: 0x002f2a13
ID des fehlerhaften Prozesses: 0xec0
Startzeit der fehlerhaften Anwendung: 0x01d27b9dbdf6dc0e
Pfad der fehlerhaften Anwendung: C:\Program Files\Windows Media Player\wmpnetwk.exe
Pfad des fehlerhaften Moduls: C:\Windows\system32\wmp.dll
Berichtskennung: 516ee2c7-e797-11e6-8b50-001d607b2853
Error: (01/31/2017 10:18:32 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-1736235967-2657770174-236075978-1003.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig.
.
Vorgang:
OnIdentify-Ereignis
Generatordaten werden gesammelt
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {825d267e-3731-43bf-9430-d8f483269a9a}
Error: (01/30/2017 07:02:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: wmpnetwk.exe, Version: 12.0.7601.17514, Zeitstempel: 0x4ce7a4a7
Name des fehlerhaften Moduls: wmp.dll, Version: 12.0.7601.23517, Zeitstempel: 0x57adfdef
Ausnahmecode: 0xc0000005
Fehleroffset: 0x002f2a13
ID des fehlerhaften Prozesses: 0x1d50
Startzeit der fehlerhaften Anwendung: 0x01d27b220a87b452
Pfad der fehlerhaften Anwendung: C:\Program Files\Windows Media Player\wmpnetwk.exe
Pfad des fehlerhaften Moduls: C:\Windows\system32\wmp.dll
Berichtskennung: 4a87d4f7-e716-11e6-98c3-001d607b2853
Error: (01/30/2017 06:54:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: wmpnetwk.exe, Version: 12.0.7601.17514, Zeitstempel: 0x4ce7a4a7
Name des fehlerhaften Moduls: wmp.dll, Version: 12.0.7601.23517, Zeitstempel: 0x57adfdef
Ausnahmecode: 0xc0000005
Fehleroffset: 0x002f2a13
ID des fehlerhaften Prozesses: 0x19bc
Startzeit der fehlerhaften Anwendung: 0x01d27b20a1bec3b8
Pfad der fehlerhaften Anwendung: C:\Program Files\Windows Media Player\wmpnetwk.exe
Pfad des fehlerhaften Moduls: C:\Windows\system32\wmp.dll
Berichtskennung: 3181c03b-e715-11e6-98c3-001d607b2853
Error: (01/30/2017 06:44:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: wmpnetwk.exe, Version: 12.0.7601.17514, Zeitstempel: 0x4ce7a4a7
Name des fehlerhaften Moduls: wmp.dll, Version: 12.0.7601.23517, Zeitstempel: 0x57adfdef
Ausnahmecode: 0xc0000005
Fehleroffset: 0x002f2a13
ID des fehlerhaften Prozesses: 0x6b8
Startzeit der fehlerhaften Anwendung: 0x01d27b18b440fab7
Pfad der fehlerhaften Anwendung: C:\Program Files\Windows Media Player\wmpnetwk.exe
Pfad des fehlerhaften Moduls: C:\Windows\system32\wmp.dll
Berichtskennung: c32495fe-e713-11e6-98c3-001d607b2853
Error: (01/30/2017 05:45:22 PM) (Source: RealPlayerUpdateSvc) (EventID: 0) (User: )
Description: Event-ID 0
Error: (01/30/2017 05:45:22 PM) (Source: RealPlayerUpdateSvc) (EventID: 0) (User: )
Description: Event-ID 0
Systemfehler:
=============
Error: (01/31/2017 09:48:32 PM) (Source: Disk) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.
Error: (01/31/2017 09:48:27 PM) (Source: Disk) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.
Error: (01/31/2017 09:44:52 PM) (Source: WMPNetworkSvc) (EventID: 14349) (User: )
Description: Ein neuer Medienserver konnte nicht initialisiert werden, da im Windows-Medienlieferungsmodul ein Fehler "0x800700b7" aufgetreten ist. Starten Sie den Computer und den "WMPNetworkSvc"-Dienst neu. Wenn das Problem weiterhin besteht, installieren Sie Windows Media Player möglichst erneut.
Error: (01/31/2017 09:44:52 PM) (Source: WMPNetworkSvc) (EventID: 14353) (User: )
Description: Ein Medienlieferungsmodul mit der ID "0" konnte wegen Fehler "0x800700b7" beim Hinzufügen der URL "hxxp://+:10243/WMPNSSv4/1733801205/!S!" nicht initialisiert werden. Starten Sie den Computer und den WMPNetworkSvc-Dienst erneut. Wenn das Problem weiterhin besteht, installieren Sie nach Möglichkeit Windows Media Player erneut.
Error: (01/31/2017 09:44:52 PM) (Source: WMPNetworkSvc) (EventID: 14349) (User: )
Description: Ein neuer Medienserver konnte nicht initialisiert werden, da im Windows-Medienlieferungsmodul ein Fehler "0x800700b7" aufgetreten ist. Starten Sie den Computer und den "WMPNetworkSvc"-Dienst neu. Wenn das Problem weiterhin besteht, installieren Sie Windows Media Player möglichst erneut.
Error: (01/31/2017 09:44:52 PM) (Source: WMPNetworkSvc) (EventID: 14353) (User: )
Description: Ein Medienlieferungsmodul mit der ID "0" konnte wegen Fehler "0x800700b7" beim Hinzufügen der URL "hxxp://+:10243/WMPNSSv4/1733801205/!S!" nicht initialisiert werden. Starten Sie den Computer und den WMPNetworkSvc-Dienst erneut. Wenn das Problem weiterhin besteht, installieren Sie nach Möglichkeit Windows Media Player erneut.
Error: (01/31/2017 09:41:54 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
sptd
Error: (01/31/2017 09:40:18 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (01/31/2017 09:40:18 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Net.Pipe-Listeneradapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert.
Error: (01/31/2017 09:40:18 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Net.Msmq-Listeneradapter" ist von folgendem Dienst abhängig: msmq. Dieser Dienst ist eventuell nicht installiert.
==================== Memory info ===========================
Processor: AMD Athlon(tm) X2 Dual Core Processor BE-2300
Prozentuale Nutzung des RAM: 70%
Installierter physikalischer RAM: 1918.49 MB
Verfügbarer physikalischer RAM: 575.17 MB
Summe virtueller Speicher: 3836.98 MB
Verfügbarer virtueller Speicher: 1987.38 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:242.77 GB) (Free:93.91 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)]
Drive e: () (Fixed) (Total:207.36 GB) (Free:35.49 GB) NTFS
Drive g: (Black) (Fixed) (Total:465.76 GB) (Free:413.34 GB) NTFS
Drive i: (EXTERN 2 -Spiegel-) (Fixed) (Total:242.77 GB) (Free:143.09 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive m: (EXTERN 1 -DATEN-) (Fixed) (Total:1255.2 GB) (Free:437.65 GB) NTFS
Drive n: (EXTERN 3) (Fixed) (Total:100 GB) (Free:99.87 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: C76EBDA3)
Partition 1: (Active) - (Size=242.8 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=15.6 GB) - (Type=27)
Partition 3: (Not Active) - (Size=207.4 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 5C921633)
Partition 1: (Not Active) - (Size=1255.2 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=100 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=507.8 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: 256E7802)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)
==================== Ende vom Addition.txt ============================ |