Xenon1976 | 01.05.2017 18:07 | addition.txt Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 30-04-2017
durchgeführt von Christoph (01-05-2017 16:05:41)
Gestartet von C:\Users\Christoph\Desktop
Windows 10 Home Version 1607 (X64) (2016-10-08 22:19:34)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-3712444081-2832216142-1026754779-500 - Administrator - Disabled)
Christoph (S-1-5-21-3712444081-2832216142-1026754779-1001 - Administrator - Enabled) => C:\Users\Christoph
DefaultAccount (S-1-5-21-3712444081-2832216142-1026754779-503 - Limited - Disabled)
Gast (S-1-5-21-3712444081-2832216142-1026754779-501 - Limited - Disabled)
Natascha (S-1-5-21-3712444081-2832216142-1026754779-1002 - Limited - Enabled) => C:\Users\Natascha
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
(HKLM\...\UDK-db20f0aa-8045-4046-af6b-abc82e9bf758) (Version: - RuneStorm
Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.148 - Adobe Systems Incorporated)
AdVenture Capitalist (HKLM-x32\...\Steam App 346900) (Version: - Hyper Hippo Games)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
AMD Settings (HKLM\...\WUCCCApp) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.)
Assassin's Creed III (HKLM-x32\...\Uplay Install 54) (Version: - Ubisoft)
BioShock 2 (HKLM-x32\...\Steam App 8850) (Version: - 2K Marin)
BioShock 2 Remastered (HKLM\...\Steam App 409720) (Version: - 2K Marin)
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games)
Call of Juarez Gunslinger (HKLM-x32\...\Steam App 204450) (Version: - Techland)
Canon iP4300 (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4300) (Version: - )
Canon MG3100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series) (Version: - Canon Inc.)
Catalyst Control Center Next Localization BR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.5306 - CDBurnerXP)
ConvertHelper 3.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1) (Version: - DownloadHelper)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dacia Media Nav Toolbox (HKLM-x32\...\Dacia Media Nav Toolbox) (Version: 3.18.4.502485 - NNG Llc.)
Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland)
dm FOTO Paradies + CEWE FOTOBUCH (HKLM-x32\...\dm FOTO Paradies + CEWE FOTOBUCH) (Version: 6.2.1 - CEWE Stiftung u Co. KGaA)
Duke Nukem Forever (HKLM-x32\...\Steam App 57900) (Version: - Gearbox Software)
Far Cry 3 Blood Dragon (HKLM-x32\...\Uplay Install 205) (Version: - Ubisoft)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free Alarm Clock (HKLM-x32\...\{8ED5A2F1-338F-4608-8AF7-BCD1ADC1E1F7}_is1) (Version: 4.0.1.0 - Comfort Software Group)
Free M4a to MP3 Converter 8.3 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com)
Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve)
Half-Life 2: Lost Coast (HKLM-x32\...\Steam App 340) (Version: - Valve)
Heroine's Quest: The Herald of Ragnarok (HKLM-x32\...\Steam App 283880) (Version: - Crystal Shard)
How to Survive (HKLM-x32\...\Steam App 250400) (Version: - )
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1204 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.0.3.1001 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.14 - Intel(R) Corporation) Hidden
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
K-Lite Codec Pack 6.0.4 (Basic) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 6.0.4 - )
magicdisk (HKLM-x32\...\{E4594B8F-F580-4EF7-8787-4A4FF7AE4A8A}) (Version: - )
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3712444081-2832216142-1026754779-1001\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft_VC100_CRT_x86 (HKLM-x32\...\{6FDDB201-2CA0-42BD-973F-7B2C4A61EA3F}) (Version: 1.0.0 - Microsoft)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mobile Broadband HL Service (HKLM-x32\...\Mobile Broadband HL Service) (Version: 22.001.25.02.801 - Huawei Technologies Co.,Ltd)
Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.5.4 - Motorola Mobility)
Motorola Device Software Update (x32 Version: 13.09.3001 - Motorola Mobility) Hidden
Motorola Mobile Drivers Installation 6.4.0 (HKLM\...\{27986EDD-C9EC-4B52-B92F-06D073F0AA52}) (Version: 6.4.0 - Motorola Mobility LLC)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 52.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 52.0.2 (x86 de)) (Version: 52.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.0.2.6291 - Mozilla)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MusicBrainz Picard (HKLM-x32\...\MusicBrainz Picard) (Version: 1.3.2 - MusicBrainz)
MyDriveConnect 4.0.7.2442 (HKLM-x32\...\MyDriveConnect) (Version: 4.0.7.2442 - TomTom)
Naviextras Toolbox Prerequesities (HKLM-x32\...\{537575D6-3B96-474C-BD8F-DFF667363DBD}) (Version: 1.0.0 - NNG Llc.)
NETGEAR WG111v3 wireless USB 2.0 adapter (HKLM-x32\...\InstallShield_{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}) (Version: 1.01.10 - NETGEAR)
NETGEAR WG111v3 wireless USB 2.0 adapter (x32 Version: 1.01.10 - NETGEAR) Hidden
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.0.1 - pdfforge)
Prince of Persia Sands of Time (HKLM-x32\...\Uplay Install 111) (Version: - Ubisoft)
Python 2.7.12 (HKLM-x32\...\{9DA28CE5-0AA5-429E-86D8-686ED898C665}) (Version: 2.7.12150 - Python Software Foundation)
Quake Live (HKLM-x32\...\Steam App 282440) (Version: - id Software)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.24.1218.2013 - Realtek)
Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.7 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7213 - Realtek Semiconductor Corp.)
Rebuild 3: Gangs of Deadsville (HKLM\...\Steam App 257170) (Version: - Northway Games)
Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform)
Revo Uninstaller 2.0.3 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.3 - VS Revo Group, Ltd.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics)
Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
Shadow Warrior (HKLM-x32\...\Steam App 233130) (Version: - Flying Wild Hog)
Smart Data Recovery v5.0 (HKLM-x32\...\Smart Data Recovery_is1) (Version: 5.0 - Smart PC Solutions)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
SUPER (C) v2016.Build.70+3D+Recorder Version released on (2016/ (HKLM-x32\...\{FF00DB05-B936-4B9A-B41B-1780A23D6050}_is1) (Version: released on (2016/12/15), - eRightSoft)
The Bureau: XCOM Declassified (HKLM-x32\...\Steam App 65930) (Version: - 2K Marin)
The Way of Life Demo (HKLM-x32\...\Steam App 337690) (Version: - Fabio Ferrara)
Tom Clancy's Splinter Cell (HKLM-x32\...\Uplay Install 109) (Version: - Ubisoft)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
Uplay (HKLM-x32\...\Uplay) (Version: 24.0.2 - Ubisoft)
Viscera Cleanup Detail: Shadow Warrior
Viscera Cleanup Detail: Shadow Warrior (HKLM-x32\...\Steam App 255520) (Version: - RuneStorm)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.5 - VideoLAN)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
XCOM: Enemy Unknown (HKLM-x32\...\Steam App 200510) (Version: - Firaxis Games)
YouTube Song Downloader 2016 (HKLM-x32\...\{03C5002E-9F10-4A13-A592-6792A2547BE5}_is1) (Version: 16.81 - Abelssoft)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-3712444081-2832216142-1026754779-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natascha\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll => Keine Datei
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {0A01A737-239A-4E39-B407-194B5C4BED21} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {1198B2E0-274B-47BD-A3C3-0E9308C71865} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {16538F2C-2E11-4743-BCEA-A6C3E8FD3988} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-03-28] (Microsoft Corporation)
Task: {20B755B6-725E-4375-AFB4-D09EACA55B04} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {225F1CC2-A17C-42F4-8C34-C9FC80658AF5} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {29DDA2D6-066E-4DF7-89C4-10FF8275F383} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {2D495CA9-C3DA-47A2-B4D1-7696867FEEE7} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-15] (AVAST Software)
Task: {30D37D93-19B3-4DA5-AF0F-5D1D1434CEF3} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {31D86E3D-8651-457D-8BC8-1A44EAB5EA73} - System32\Tasks\Heboghtwomory Cloud => C:\Program Files (x86)\Temushpotty\xstojecult.exe [2017-04-08] (Glarysoft Ltd)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => %SystemRoot%\System32\AutoWorkplace.exe
Task: {353DCB87-5409-4746-8A11-FD4561CA31FA} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {3D305B49-E5C0-43F5-9D49-27F0A218B355} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft)
Task: {435D291E-B422-4B6A-B54B-12CD95DA1263} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {47D290C9-5090-4BDE-969F-502E3B51FA7C} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] ()
Task: {500383B4-D075-4DF3-B32C-F91C3BF0C1D7} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3712444081-2832216142-1026754779-1002Core1d237731aed5aac => C:\Users\Natascha\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.)
Task: {55ECD7D2-8471-498F-8927-6D1FB4FF2703} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {5BE9DCC2-6979-420E-B333-18A03429576D} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Natascha\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
Task: {61CEF2FC-28FE-4A58-BB9E-D518BC024EA6} - System32\Tasks\SamsungMagician => C:\Program Files\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.)
Task: {7086A25B-AE24-46CA-BFCC-0AB993AEAE43} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {79EA3777-705D-46EC-8297-1D5D4B4AF98E} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Keine Datei <==== ACHTUNG
Task: {7DB1DEF4-AA1A-4F8F-AC89-81DF0965C958} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {83B87281-BF7F-43CF-98EA-A3A140719288} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {8F7EFC72-B3A7-423B-8273-B5254296BB45} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Keine Datei <==== ACHTUNG
Task: {9426984A-42F9-4854-9178-88C2E2E79978} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {980C41FC-1C84-4FDA-846D-F2C17A15A0B7} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {984E1441-B709-43DE-9CC7-DD7B2EA44B99} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2017-04-21] (Microsoft Corporation)
Task: {A93B7CD8-D2A0-4692-8FA4-4B6EA847C244} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-03-28] (Microsoft Corporation)
Task: {AD720D93-F406-4117-9012-806D24757B18} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-03-28] (Microsoft Corporation)
Task: {B89CA8BD-6CBA-409B-9B6E-93190BF0C8F7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-03-28] (Microsoft Corporation)
Task: {BA3AB32E-F9CC-4C70-80B4-5A8EBCB0BA4B} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3712444081-2832216142-1026754779-1002UA1d237731af23d90 => C:\Users\Natascha\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.)
Task: {CA93A0FA-5AB9-478D-80D4-CBD758C8C6F1} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Keine Datei <==== ACHTUNG
Task: {CAD47095-8861-404B-A0CB-2B4BD359008C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {CF549023-FD47-48C8-A410-59D5711FEE31} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-03-21] (Advanced Micro Devices, Inc.)
Task: {D6FB830A-9031-4CCA-966F-B884AADB09F5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-04-15] (Adobe Systems Incorporated)
Task: {E78CA05C-8454-491B-9D10-38D5A4E5D5B7} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] ()
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3712444081-2832216142-1026754779-1002Core1d237731aed5aac.job => C:\Users\Natascha\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3712444081-2832216142-1026754779-1002UA1d237731af23d90.job => C:\Users\Natascha\AppData\Local\Dropbox\Update\DropboxUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2017-04-21 17:38 - 2017-03-28 08:22 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-10-09 00:11 - 2014-01-28 05:16 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
2015-11-24 22:11 - 2014-06-07 10:56 - 00240720 _____ () C:\ProgramData\MobileBrServ\mbbservice.exe
2017-04-21 17:38 - 2017-03-28 08:22 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-10-09 01:08 - 2016-10-09 01:08 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-15 19:16 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-03-15 19:17 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-15 19:17 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-03-15 19:17 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-04-21 17:38 - 2017-03-28 07:08 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-04-21 17:38 - 2017-03-28 07:11 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2017-04-27 21:16 - 2017-04-27 21:17 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-04-27 21:16 - 2017-04-27 21:17 - 00190464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-04-27 21:16 - 2017-04-27 21:17 - 43011072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-04-27 21:16 - 2017-04-27 21:17 - 02451456 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\skypert.dll
2008-06-13 16:24 - 2008-06-13 16:24 - 02109440 _____ () C:\Program Files (x86)\NETGEAR\WG111v3\WG111v3.exe
2016-11-21 18:19 - 2016-11-21 18:19 - 00155016 _____ () C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
2017-04-07 15:29 - 2017-04-07 15:30 - 02567168 _____ () C:\Program Files\WindowsApps\Microsoft.People_10.2.831.0_x64__8wekyb3d8bbwe\People.BackgroundTasks.dll
2017-04-07 15:29 - 2017-04-07 15:30 - 00138752 _____ () C:\Program Files\WindowsApps\Microsoft.People_10.2.831.0_x64__8wekyb3d8bbwe\PeopleUtilRT.Windows.dll
2017-04-05 14:52 - 2017-04-05 14:53 - 00055808 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11701.1001.99.0_x64__8wekyb3d8bbwe\WinStoreTasksWrapper.dll
2016-10-09 00:11 - 2017-05-01 16:02 - 00028672 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll
2016-10-09 00:11 - 2014-01-28 05:16 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll
2014-04-07 16:31 - 2014-04-07 16:31 - 00172032 _____ () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\css_core.dll
2015-08-20 00:05 - 2017-03-10 02:13 - 00674592 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-08-20 00:05 - 2016-09-01 03:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-08-20 00:05 - 2017-04-26 01:55 - 02465056 _____ () C:\Program Files (x86)\Steam\video.dll
2014-08-21 11:15 - 2016-01-27 09:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2014-08-21 11:15 - 2016-01-27 09:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2014-08-21 11:15 - 2016-01-27 09:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2014-08-21 11:15 - 2016-01-27 09:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2014-08-21 11:15 - 2016-01-27 09:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-08-20 00:05 - 2016-09-01 03:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-08-20 00:05 - 2016-09-01 03:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-08-20 00:05 - 2017-04-26 01:55 - 00848672 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-03-09 21:54 - 2016-07-05 00:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2016-12-17 09:21 - 2017-01-30 23:41 - 68875552 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2014-11-06 22:15 - 2014-09-28 18:59 - 00019872 _____ () C:\Program Files\Samsung Magician\SAMSUNG_SSD.dll
2014-03-20 12:43 - 2014-03-20 12:43 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-3712444081-2832216142-1026754779-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img3.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
HKLM\...\StartupApproved\Run32: => "PlaysTV"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [UDP Query User{2B95F6DF-A4A2-4F55-8434-DAA92DC9FF89}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{EE9572E5-21C1-4A39-A0C1-A97A34E422B1}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{D7469EC9-D8D8-4DC7-8AFB-34930F12B182}] => (Allow) E:\Spiele\Steam games\steamapps\common\Anarchy Arcade\aarcade\bin\arcade_launcher.exe
FirewallRules: [{6789B73C-EE39-4CC1-A3A5-3E4BAA88825B}] => (Allow) E:\Spiele\Steam games\steamapps\common\Anarchy Arcade\aarcade\bin\arcade_launcher.exe
FirewallRules: [{536C4C72-884F-4820-960B-16D1544185C8}] => (Allow) E:\Spiele\Utils für Spiele\Steam\Steam.exe
FirewallRules: [{0F696B20-606D-440C-8933-510E3B6EDB62}] => (Allow) E:\Spiele\Utils für Spiele\Steam\Steam.exe
FirewallRules: [{D39FD6F9-3EB9-430C-8BF0-BA11389D7A96}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5E142B96-922D-4282-AEB9-755C86783197}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{2D495BF8-CB5B-43E6-A661-DC182C4DF1DD}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{3EB255EB-356A-41B1-AD6E-8F6F578E3FB4}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{A8B16243-B7B8-4607-9A31-3201BCCEE834}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock 2\SP\Builds\Binaries\Bioshock2Launcher.exe
FirewallRules: [{459FA82E-2016-4C80-B1E5-90865D98AAB0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock 2\SP\Builds\Binaries\Bioshock2Launcher.exe
FirewallRules: [{59371ECC-6A46-4231-839B-AEBA264AC523}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock 2\MP\Builds\Binaries\Bioshock2Launcher.exe
FirewallRules: [{E74A6153-9D06-46B4-B5AE-F72B514833CA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock 2\MP\Builds\Binaries\Bioshock2Launcher.exe
FirewallRules: [{0026B880-84A2-4F36-B8FC-39FA87CB28F9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{161C4007-3A14-4BFE-9822-32D06929B104}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{AB249026-5DC8-42DD-B747-1CA0D08FF9F6}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{3BAB8007-47B4-47A7-9EC1-57011334B087}] => (Allow) LPort=2869
FirewallRules: [{4FBC1486-C079-4160-8B6A-4E04290A4639}] => (Allow) LPort=1900
FirewallRules: [{756246BC-C7AF-4EA6-98FA-A33BEB1F5F37}] => (Allow) E:\Spiele\Steam games\steamapps\common\How to Survive\HowToSurvive.exe
FirewallRules: [{E28F6274-1DDC-451C-B92B-F77B4F06E7C3}] => (Allow) E:\Spiele\Steam games\steamapps\common\How to Survive\HowToSurvive.exe
FirewallRules: [{B754BF09-ABE5-4004-99CC-474A354101B6}] => (Allow) E:\Spiele\Steam games\steamapps\common\How to Survive\Detect.exe
FirewallRules: [{7DF359BB-58EA-4A2D-8924-0E73E4951ACD}] => (Allow) E:\Spiele\Steam games\steamapps\common\How to Survive\Detect.exe
FirewallRules: [{283A175C-CB89-4EB8-AAA1-07F2A876F380}] => (Allow) E:\Spiele\Steam games\steamapps\common\Shadow Warrior\sw.exe
FirewallRules: [{777458F1-4973-4277-9D0E-378ABC3E17B0}] => (Allow) E:\Spiele\Steam games\steamapps\common\Shadow Warrior\sw.exe
FirewallRules: [{F232F7B9-9441-4643-9A94-DBEE8BEE41A4}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win32\UDK.exe
FirewallRules: [{AF5A7C6B-6F95-41C5-B209-92E7E0C5F102}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win32\UDK.exe
FirewallRules: [{84531BBD-6886-4D19-BCDA-BC898D23F04C}] => (Allow) E:\Spiele\Steam games\steamapps\common\Quake Live\quakelive_steam.exe
FirewallRules: [{62E652D7-3433-4BC3-B2FB-6A36BFF0AAB4}] => (Allow) E:\Spiele\Steam games\steamapps\common\Quake Live\quakelive_steam.exe
FirewallRules: [{64DE1C52-C4D4-4ECC-AE9D-595BD8860622}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{653D5F5D-7692-4A13-978C-711AC2785CC8}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{CD216A3B-56FB-4203-BDAA-0CF4C2C31881}] => (Allow) E:\Spiele\Steam games\steamapps\common\EvolveBeta\Bin64_SteamRetail\StaticLauncher64.exe
FirewallRules: [{1B26DA26-2767-48C6-8976-9F5A9CD4A5EC}] => (Allow) E:\Spiele\Steam games\steamapps\common\EvolveBeta\Bin64_SteamRetail\StaticLauncher64.exe
FirewallRules: [{AA3E9365-2E26-46F5-B795-E7FE1014DE15}] => (Allow) E:\Spiele\Steam games\steamapps\common\The Way of Life Demo\TheWayOfLifeDemoWindows.exe
FirewallRules: [{E1047553-E10A-4F67-9ABF-CDF3ED9D3CDD}] => (Allow) E:\Spiele\Steam games\steamapps\common\The Way of Life Demo\TheWayOfLifeDemoWindows.exe
FirewallRules: [{CF42DDDB-095C-406D-80CD-5EC9545859C7}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8836B30B-EF86-4385-81FF-B8EAC530098A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{E134A50C-DF60-4623-AEFB-174F016B251B}] => (Allow) E:\Spiele\Steam games\steamapps\common\The Bureau\Binaries\Win32\TheBureau.exe
FirewallRules: [{64915147-3449-4A0B-8AAF-D5E38352F5D3}] => (Allow) E:\Spiele\Steam games\steamapps\common\The Bureau\Binaries\Win32\TheBureau.exe
FirewallRules: [{A162C88C-BFDC-4D44-9B60-B0221994AB07}] => (Allow) E:\Spiele\Steam games\steamapps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{9BD6D8EF-237B-4E5D-AA42-3389A4DA85A8}] => (Allow) E:\Spiele\Steam games\steamapps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{82F76C1C-B704-4FDF-BCC9-7392C67375EC}] => (Allow) E:\Spiele\Steam games\steamapps\common\Dead Island\DeadIslandGame.exe
FirewallRules: [{1CD48B31-D487-43B0-83A8-517FE0E31ED2}] => (Allow) E:\Spiele\Steam games\steamapps\common\Dead Island\DeadIslandGame.exe
FirewallRules: [{36D1093A-1402-472F-947D-717EC941CAE6}] => (Allow) E:\Spiele\Steam games\steamapps\common\Shadow Warrior\dx11\launcher.exe
FirewallRules: [{B050DF74-5CCA-4A28-9C95-C6AA9C6D1E9F}] => (Allow) E:\Spiele\Steam games\steamapps\common\Shadow Warrior\dx11\launcher.exe
FirewallRules: [{18D6BBC4-26BD-4F8F-9266-04D72F327F63}] => (Allow) C:\Users\Natascha\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{CB4FA8F3-2F76-4BDC-BA5A-54A23C9A6A73}] => (Allow) C:\Users\Natascha\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{85F2792F-7F2B-4E9C-9DCD-1477C4AFE010}] => (Allow) E:\Spiele\Steam games\steamapps\common\CoJ Gunslinger\CoJGunslinger.exe
FirewallRules: [{7D77343A-6DFC-491C-B88E-365A9F6B21EC}] => (Allow) E:\Spiele\Steam games\steamapps\common\CoJ Gunslinger\CoJGunslinger.exe
FirewallRules: [{DAA97448-EF77-40AF-AB00-EC71833279D2}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win32\UDK.exe
FirewallRules: [{3C913BDE-EEC9-43A2-A463-9071AA0A9E2D}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win32\UDK.exe
FirewallRules: [{703E3845-A81D-49AF-BD11-A1B4750F37EE}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win64\UDK.exe
FirewallRules: [{FE5DCE8E-C435-45E5-920D-F4628C477732}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win64\UDK.exe
FirewallRules: [{B71F5358-60C4-4100-B9C8-5D3A63648493}] => (Allow) E:\Spiele\Steam games\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe
FirewallRules: [{4B6B6C26-1A96-4E04-AA42-089C5000887E}] => (Allow) E:\Spiele\Steam games\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe
FirewallRules: [{71AAC187-C5FA-4A90-A70A-1DC41324C899}] => (Allow) E:\Spiele\Steam games\steamapps\common\Anarchy Arcade\AArcade.exe
FirewallRules: [{8CD5BC3B-E9EF-4FA6-9685-E3310209B421}] => (Allow) E:\Spiele\Steam games\steamapps\common\Anarchy Arcade\AArcade.exe
FirewallRules: [{59098CA1-A106-45DE-BBEE-D865F608EA69}] => (Allow) E:\Spiele\Steam games\steamapps\common\Heroine's Quest\Heroine's Quest.exe
FirewallRules: [{B4DFC307-B149-4F30-8CBF-696259B2C0A4}] => (Allow) E:\Spiele\Steam games\steamapps\common\Heroine's Quest\Heroine's Quest.exe
FirewallRules: [{3C6EB5D5-FD2B-457E-9D71-EC0B996B9444}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{66ABF630-C457-4EA0-974C-76EF135F34DA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{AB1D1C89-FAA5-413C-8E26-B6B424E4FFB3}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [UDP Query User{8DA5A857-5E5F-4BF8-A0BA-B3F38BA34995}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [{C0207D29-3002-455A-BC26-4E0CD2B4E53B}] => (Allow) E:\Spiele\Steam games\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{CEBB047D-A86E-4F44-9A4F-0D001EAE7DE5}] => (Allow) E:\Spiele\Steam games\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{24BA592C-232E-4FD6-B308-0822815995EF}] => (Allow) E:\Spiele\Steam games\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{FF9ABE6C-BE24-423B-8ED8-3D83D0B39522}] => (Allow) E:\Spiele\Steam games\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{1762F241-791B-496C-BCBF-7B8E8B1CD4CB}] => (Allow) E:\Spiele\Steam games\steamapps\common\Duke Nukem Forever\System\DukeForever.exe
FirewallRules: [{DA750746-277E-46B9-A737-2B2C5A83B9AB}] => (Allow) E:\Spiele\Steam games\steamapps\common\Duke Nukem Forever\System\DukeForever.exe
FirewallRules: [{FFB46647-BD9D-45CC-8ACF-DB046093FD4D}] => (Allow) E:\Spiele\StarCraft II\StarCraft II.exe
FirewallRules: [{D67B939C-9567-46CA-94A7-B42679FC0887}] => (Allow) E:\Spiele\StarCraft II\StarCraft II.exe
FirewallRules: [TCP Query User{181AE0B3-B509-4BFD-93DA-3684193D7520}E:\spiele\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe] => (Allow) E:\spiele\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe
FirewallRules: [UDP Query User{9FA02B06-9B99-4369-B73C-C12028B1BFAD}E:\spiele\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe] => (Allow) E:\spiele\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe
FirewallRules: [TCP Query User{53374A57-4385-4E05-A2BF-EB0915AF51C7}E:\spiele\starcraft ii\versions\base39576\sc2_x64.exe] => (Block) E:\spiele\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [UDP Query User{E304EC10-E0BC-45A9-AA5E-090A73259513}E:\spiele\starcraft ii\versions\base39576\sc2_x64.exe] => (Block) E:\spiele\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [{857D0B3B-90D6-45AB-A483-4026DF7EB750}] => (Allow) E:\Spiele\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon.exe
FirewallRules: [{9C57562C-B4B8-481C-93E2-CF7D3C095E11}] => (Allow) E:\Spiele\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon.exe
FirewallRules: [{84B04249-724A-4E67-A694-47FE988EAA88}] => (Allow) E:\Spiele\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon_d3d11_b.exe
FirewallRules: [{D8DB2B96-368B-4D05-A2D6-E7BCE795CBAA}] => (Allow) E:\Spiele\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon_d3d11_b.exe
FirewallRules: [{6A76E2E8-7188-4B40-8508-6E88191873B4}] => (Allow) E:\Spiele\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon_d3d11.exe
FirewallRules: [{7B5B51B5-9B37-408D-9A82-4B74A1AA6C86}] => (Allow) E:\Spiele\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon_d3d11.exe
FirewallRules: [{E457641D-973C-4678-809E-ADD74D41B4B6}] => (Allow) E:\Spiele\Assassin's Creed III\AC3SP.exe
FirewallRules: [{8DB9A23F-A8FE-4B31-AD72-B80629966DED}] => (Allow) E:\Spiele\Assassin's Creed III\AC3SP.exe
FirewallRules: [{505E4D8E-CB07-4E78-AF0D-37CDE21ED659}] => (Allow) E:\Spiele\Assassin's Creed III\AC3MP.exe
FirewallRules: [{2FE051F2-D036-40BB-A137-BE7339782922}] => (Allow) E:\Spiele\Assassin's Creed III\AC3MP.exe
FirewallRules: [{C5DB9453-8F62-475E-B213-570A4B8D0F3B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{5798D614-BCB1-4FD1-A0B2-FFF61616B9E6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{EEF1D98C-5CAF-46A6-9B5E-69DB9099448B}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win32\UDK.exe
FirewallRules: [{4E907AAA-23D7-45B0-9918-4A0A9E4D1BB7}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win32\UDK.exe
FirewallRules: [{67B20648-CA01-4664-9557-0F0241B8237E}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win64\UDK.exe
FirewallRules: [{F004ED50-2A6E-4708-B4A8-5C873732EF77}] => (Allow) E:\Spiele\Steam games\steamapps\common\Viscera Cleanup Detail Shadow Warrior\Binaries\Win64\UDK.exe
FirewallRules: [{AD0A1B50-DE18-43D1-A6A5-3BC95A8C4A43}] => (Allow) E:\Spiele\Tom Clancy's Splinter Cell\system\SplinterCell.exe
FirewallRules: [{C9EAF401-8A28-4434-BA9C-6912DE80ADA1}] => (Allow) E:\Spiele\Tom Clancy's Splinter Cell\system\SplinterCell.exe
FirewallRules: [{DD41FFA5-85DF-485A-929D-666796452C31}] => (Allow) E:\Spiele\Steam games\steamapps\common\Rebuild Gangs of Deadsville\game\Rebuild3.exe
FirewallRules: [{32DE6FCF-6C28-4949-BFAE-77146ABFE3ED}] => (Allow) E:\Spiele\Steam games\steamapps\common\Rebuild Gangs of Deadsville\game\Rebuild3.exe
FirewallRules: [{75D273B4-312F-490C-A158-E55F525FD90D}] => (Allow) E:\Spiele\Steam games\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{701C3C06-E951-42B0-8103-A803D92DC995}] => (Allow) E:\Spiele\Steam games\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{34D60796-1BFE-47C1-A136-DD840675A9CC}] => (Allow) E:\Spiele\Steam games\steamapps\common\Anarchy Arcade\frontend\bin\arcade_launcher.exe
FirewallRules: [{11FFB50B-54AF-43D2-978F-873960ABB07F}] => (Allow) E:\Spiele\Steam games\steamapps\common\Anarchy Arcade\frontend\bin\arcade_launcher.exe
FirewallRules: [{E62A30C6-33E7-4767-9EAE-22F25DD42636}] => (Allow) E:\Spiele\Steam games\steamapps\common\Anarchy Arcade\frontend\bin\arcade_launcher.exe
FirewallRules: [{EC2EBF97-E7C6-4A14-9AA3-3E548AF66F3C}] => (Allow) E:\Spiele\Steam games\steamapps\common\Anarchy Arcade\frontend\bin\arcade_launcher.exe
FirewallRules: [{3F577E75-76F5-4277-87CB-21BBEBC4CECA}] => (Allow) C:\Users\Christoph\AppData\Local\MicrosoftHelper\bin\Y2Go.exe
FirewallRules: [{A979C013-F7F6-4AFA-A9A1-3B0F02374EE4}] => (Allow) C:\Users\Christoph\AppData\Local\MicrosoftHelper\bin\Y2Go.exe
FirewallRules: [{250C78D1-C8CB-4F85-B99E-CDA9FF189BA4}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe
FirewallRules: [{0F8AA19F-A7C1-4EED-A60D-4B11C106D5EB}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\Downloader\download\MiniThunderPlatform.exe
FirewallRules: [{CF632DAC-2694-47C1-850B-392E8A8795D9}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe
FirewallRules: [{4360F1FA-5150-40F4-AAC9-BD552E6520E7}] => (Allow) E:\Spiele\Steam games\steamapps\common\BioShock 2 Remastered\Build\Final\Bioshock2HD.exe
FirewallRules: [{C8CEEB9F-0A1C-4588-A681-A6DAA6576804}] => (Allow) E:\Spiele\Steam games\steamapps\common\BioShock 2 Remastered\Build\Final\Bioshock2HD.exe
==================== Wiederherstellungspunkte =========================
15-04-2017 11:58:52 Geplanter Prüfpunkt
21-04-2017 17:39:27 Windows Update
25-04-2017 19:51:50 Windows Update
25-04-2017 20:45:12 Revo Uninstaller's restore point - Adobe Reader XI (11.0.20) - Deutsch
25-04-2017 20:48:36 Revo Uninstaller's restore point - Avast Free Antivirus
25-04-2017 20:58:06 Revo Uninstaller's restore point - chip 1-click download service
25-04-2017 20:58:15 chip 1-click download service wurde entfernt.
25-04-2017 20:59:24 Revo Uninstaller's restore point - Java 8 Update 121
25-04-2017 20:59:31 Removed Java 8 Update 121
25-04-2017 21:01:08 Revo Uninstaller's restore point - WinZip 17.5
25-04-2017 21:01:16 Removed WinZip 17.5
25-04-2017 21:07:05 Revo Uninstaller's restore point - Microsoft Silverlight
25-04-2017 21:07:12 Removed Microsoft Silverlight
25-04-2017 21:12:33 Revo Uninstaller's restore point - PlaysTV
25-04-2017 21:14:53 Revo Uninstaller's restore point - Raptr
25-04-2017 21:16:04 Revo Uninstaller's restore point - Sakura Clicker
25-04-2017 21:17:12 Revo Uninstaller's restore point - Unturned
25-04-2017 21:25:49 Revo Uninstaller's restore point - Vulkan Run Time Libraries 1.0.3.1
26-04-2017 22:53:09 Malwarebytes Anti-Rootkit Restore Point
26-04-2017 23:09:38 Malwarebytes Anti-Rootkit Restore Point
27-04-2017 05:17:55 Malwarebytes Anti-Rootkit Restore Point
27-04-2017 21:07:47 JRT Pre-Junkware Removal
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (04/27/2017 09:46:21 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (04/27/2017 09:41:54 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (04/27/2017 09:40:24 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (04/27/2017 09:40:16 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (04/27/2017 09:39:19 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (04/27/2017 09:29:17 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (04/27/2017 09:21:42 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (04/27/2017 09:15:29 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ARBEITSZIMMER)
Description: Bei der Aktivierung der App „Microsoft.BingWeather_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (04/27/2017 09:15:13 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (04/27/2017 09:14:11 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Systemfehler:
=============
Error: (05/01/2017 04:02:54 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
und der APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (05/01/2017 04:02:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "RtNdPt630" wurde aufgrund folgenden Fehlers nicht gestartet:
Das System kann die angegebene Datei nicht finden.
Error: (05/01/2017 04:02:43 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT)
Description: Fehler beim Lesen der Datei für lokale Hosts.
Error: (05/01/2017 01:29:11 AM) (Source: DCOM) (EventID: 10010) (User: ARBEITSZIMMER)
Description: Der Server "{9BA05972-F6A8-11CF-A442-00A0C90A8F39}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (05/01/2017 01:29:09 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (04/30/2017 09:31:03 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
und der APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (04/30/2017 09:30:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "RtNdPt630" wurde aufgrund folgenden Fehlers nicht gestartet:
Das System kann die angegebene Datei nicht finden.
Error: (04/30/2017 09:30:57 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT)
Description: Fehler beim Lesen der Datei für lokale Hosts.
Error: (04/30/2017 09:30:42 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (04/30/2017 09:30:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Modules Installer" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts.
CodeIntegrity:
===================================
Date: 2017-04-30 22:04:08.625
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-04-27 21:13:57.545
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-04-26 22:45:43.045
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-04-08 03:45:32.676
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
Date: 2017-04-08 03:45:32.658
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Prozentuale Nutzung des RAM: 23%
Installierter physikalischer RAM: 8135.33 MB
Verfügbarer physikalischer RAM: 6257.47 MB
Summe virtueller Speicher: 8235.33 MB
Verfügbarer virtueller Speicher: 6463.66 MB
==================== Laufwerke ================================
Drive c: (System SSD) (Fixed) (Total:232.1 GB) (Free:58.71 GB) NTFS
Drive e: (christoph) (Fixed) (Total:931.46 GB) (Free:552.45 GB) NTFS
Drive f: (Natascha) (Fixed) (Total:931.46 GB) (Free:922.94 GB) NTFS
Drive g: (Allgemein) (Fixed) (Total:931.46 GB) (Free:810.23 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: A3D47A56)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 2794.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== Ende von Addition.txt ============================ |