Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 14.03.2018
durchgeführt von rk (Administrator) auf RK-PC (22-03-2018 09:18:14)
Gestartet von C:\Users\rk\Downloads
Geladene Profile: rk (Verfügbare Profile: rk)
Platform: Windows 7 Professional Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Authentec Inc.) C:\Program Files\Common Files\SPBA\upeksvr.exe
(Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Dell Inc.) C:\Program Files\Dell\DW WLAN Card\BCMWLTRY.EXE
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\HidMonitorSvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe
() C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe
(Genie9) C:\Program Files\Genie9\Genie Timeline\GenieTimelineService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe
(HP) C:\Windows\System32\HPSIsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
() C:\Program Files\Dell\Dell Data Protection\Access\Advanced\hapi64\pbadrvsvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIIKE.EXE
(T-Com) C:\Program Files (x86)\T-Home\Eumex 800 V1.30\ControlCenter.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Creative Technology Ltd) C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
() C:\Program Files (x86)\Hostless Modem\o2 Surfstick\CheckNDISPort_df.exe
() C:\Program Files (x86)\Hostless Modem\o2 Surfstick\CancelAutoPlay_df.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe
(Dropbox, Inc.) C:\Users\rk\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Dropbox, Inc.) C:\Users\rk\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Dropbox, Inc.) C:\Users\rk\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfimon.exe
(Genie9) C:\Program Files\Genie9\Genie Timeline\GenieTimeLineAgent.exe
(Telefónica) C:\Program Files (x86)\o2\Mobile Connection Manager\ImpWiFiSvc.exe
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Ericsson AB) C:\Program Files (x86)\Dell\Dell WWAN\WMCore\mini_WMCore.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(O2Micro International) C:\Windows\System32\o2flash.exe
() C:\Windows\SysWOW64\srvany.exe
(O2Micro.) C:\Windows\SysWOW64\SDIOAssist.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [773760 2016-10-20] (Alps Electric Co., Ltd.)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [8925184 2014-05-10] (Dell Inc.)
HKLM\...\Run: [TdmNotify] => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe [371176 2012-12-22] (Wave Systems Corp.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-08-16] (IDT, Inc.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-10-28] (Intel Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292088 2013-02-22] (Intel Corporation)
HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [462974 2011-12-16] (Creative Technology Ltd)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [CheckNDISPortF0acA7] => C:\Program Files (x86)\Hostless Modem\o2 Surfstick\CheckNDISPort_df.exe [419072 2013-05-10] ()
HKLM-x32\...\Run: [CancelAutoPlay_df] => C:\Program Files (x86)\Hostless Modem\o2 Surfstick\CancelAutoPlay_df.exe [446720 2013-05-10] ()
HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\ScanSoft\PaperPort\pptd40nt.exe [29984 2008-07-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\ScanSoft\PaperPort\IndexSearch.exe [46368 2008-07-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort11reminder] => "C:\Program Files (x86)\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini"
HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [1159168 2009-05-26] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [AvgUi] => "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [210432 2016-07-05] (Geek Software GmbH)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [97512 2017-08-15] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139776 2016-02-03] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [1944576 2013-03-07] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
Winlogon\Notify\spba: C:\Program Files\Common Files\SPBA\homefus2.dll (Authentec Inc.)
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\Run: [Dropbox Update] => C:\Users\rk\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIIKE.EXE [278112 2011-11-01] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\MountPoints2: {116cb7e7-c3fb-11e3-8ebb-028037ec0200} - D:\AutoRun.exe
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\MountPoints2: {1ea5626b-7d0e-11e3-b26f-028037ec0200} - D:\AutoRun.exe
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\MountPoints2: {43f5547a-6df1-11e6-a542-028037ec0200} - D:\SISetup.exe
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\MountPoints2: {7d7506ac-55ec-11e5-b9f2-028037ec0200} - D:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\MountPoints2: {a5e4ceb6-c2f3-11e3-8dc7-028037ec0200} - D:\AutoRun.exe
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\MountPoints2: {a5e4cec4-c2f3-11e3-8dc7-028037ec0200} - E:\AutoRun.exe
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\MountPoints2: {d358d6cf-2495-11e6-b512-028037ec0200} - D:\autorun.exe
Lsa: [Authentication Packages] msv1_0 wvauth
SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\system32\CbFsMntNtf3.dll (EldoS Corporation)
SSODL-x32: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\SysWOW64\CbFsMntNtf3.dll (EldoS Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ControlCenter.lnk [2017-05-30]
ShortcutTarget: ControlCenter.lnk -> C:\Program Files (x86)\T-Home\Eumex 800 V1.30\ControlCenter.exe (T-Com)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VR-NetWorld Auftragsprüfung.lnk [2018-01-24]
ShortcutTarget: VR-NetWorld Auftragsprüfung.lnk -> C:\Windows\Installer\{4FF67DC0-E264-4E3A-A204-D2342F9F4FD7}\NewShortcut1_5A2CAB8514594533A6B50E3D23448BE1.exe (Flexera Software LLC)
Startup: C:\Users\rk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk [2015-04-26]
ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Users\rk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2018-03-17]
ShortcutTarget: Dropbox.lnk -> C:\Users\rk\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Als een item is opgenomen in de fixlist, zal een registeritem worden verwijderd of hersteld naar de standaard waarde.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{1FF6415E-372E-4A92-93FF-68DC12816A3F}: [DhcpNameServer] 192.168.1.250
Tcpip\..\Interfaces\{4B8E1DAA-89E8-4385-B785-2564D5BA618F}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{808DE132-6B62-4881-A89B-F4CE60544DE4}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{94F4B454-476C-48A3-AD4C-6D3B7B318555}: [DhcpNameServer] 192.168.0.1 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://startpage.com/
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell13-comm.msn.com
SearchScopes: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000 -> DefaultScope {AB1473A0-6947-4767-A610-EBB76130F6E3} URL =
SearchScopes: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000 -> {AB1473A0-6947-4767-A610-EBB76130F6E3} URL =
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-03-05] (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-03-05] (Oracle Corporation)
FireFox:
========
FF ProfilePath: C:\Users\rk\AppData\Roaming\Mozilla\Firefox\Profiles\vtslxfg6.default [2018-03-22]
FF user.js: detected! => C:\Users\rk\AppData\Roaming\Mozilla\Firefox\Profiles\vtslxfg6.default\user.js [2014-04-13]
FF Homepage: Mozilla\Firefox\Profiles\vtslxfg6.default -> hxxps://www.startpage.com/do/mypage.pl?prf=42cd7c78687d63b42d1155cdeeb879e4
FF Extension: (NO Google Analytics) - C:\Users\rk\AppData\Roaming\Mozilla\Firefox\Profiles\vtslxfg6.default\Extensions\jid1-JcGokIiQyjoBAQ@jetpack.xpi [2016-04-27] [Legacy]
FF Extension: (Adblock Plus) - C:\Users\rk\AppData\Roaming\Mozilla\Firefox\Profiles\vtslxfg6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-12-12]
FF Extension: (TLS 1.3 gradual roll-out) - C:\Users\rk\AppData\Roaming\Mozilla\Firefox\Profiles\vtslxfg6.default\features\{b3ffc8ea-a705-4d2c-9417-788d1ac2ff1e}\tls13-rollout-bug1442042@mozilla.org.xpi [2018-03-21] [Legacy]
FF SearchPlugin: C:\Users\rk\AppData\Roaming\Mozilla\Firefox\Profiles\vtslxfg6.default\searchplugins\openstreetmap.xml [2014-02-16]
FF SearchPlugin: C:\Users\rk\AppData\Roaming\Mozilla\Firefox\Profiles\vtslxfg6.default\searchplugins\startpage-ssl.xml [2014-01-07]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => nicht gefunden
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_29_0_0_113.dll [Keine Datei]
FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_29_0_0_113.dll [Keine Datei]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [Keine Datei]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [Keine Datei]
FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-03-05] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-03-05] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei]
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-13] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-13] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-02-27] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-02-27] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-02-27] (VideoLAN)
Chrome:
=======
CHR DefaultProfile: Default
CHR StartupUrls: Default -> "hxxps://www.startpage.com/deu"
CHR Profile: C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default [2018-03-22]
CHR Extension: (Docs) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-25]
CHR Extension: (Google Drive) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-07]
CHR Extension: (YouTube) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-28]
CHR Extension: (Google-Suche) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-07]
CHR Extension: (Avira Browserschutz) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2017-06-09]
CHR Extension: (Google Docs Offline) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-14]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-04]
CHR Extension: (Google Mail) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-17]
CHR Extension: (Chrome Media Router) - C:\Users\rk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-02-15]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2015-04-26] (Adobe Systems) [Datei ist nicht signiert]
R2 ApHidMonitorService; C:\Program Files\DellTPad\HidMonitorSvc.exe [104744 2016-10-20] (Alps Electric Co., Ltd.)
S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-01-05] (Apple Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [Datei ist nicht signiert]
R2 CIJSRegister; C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe [153736 2016-06-02] (CANON INC.)
R2 EmbassyService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe [226824 2012-12-13] ()
R2 GenieTimelineService; C:\Program Files\Genie9\Genie Timeline\GenieTimelineService.exe [672272 2013-04-16] (Genie9)
R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2011-10-17] (Hewlett-Packard Company) [Datei ist nicht signiert]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-10-28] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319096 2016-06-15] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Datei ist nicht signiert]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6440736 2018-03-03] (Malwarebytes)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2012-07-31] (Hewlett-Packard) [Datei ist nicht signiert]
R2 O2FLASH; C:\Windows\system32\o2flash.exe [244328 2011-11-16] (O2Micro International)
R2 O2SDIOAssist; C:\Windows\SysWOW64\srvany.exe [8192 2003-04-18] () [Datei ist nicht signiert]
R2 PbaDrvSvc_x64; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\hapi64\pbadrvsvc.exe [20480 2012-11-23] () [Datei ist nicht signiert]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2012-07-31] (Hewlett-Packard) [Datei ist nicht signiert]
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.)
S2 tcsd_win32.exe; C:\Program Files (x86)\Security Innovation\SI TSS\bin\tcsd_win32.exe [1643520 2012-05-11] () [Datei ist nicht signiert]
R2 TGCM_ImportWiFiSvc; C:\Program Files (x86)\o2\Mobile Connection Manager\ImpWiFiSvc.exe [201080 2011-06-14] (Telefónica)
R2 Wave Authentication Manager Service; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe [1758720 2012-11-19] (Wave Systems Corp.) [Datei ist nicht signiert]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 wltrysvc; C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe [6178304 2014-05-10] (Dell Inc.) [Datei ist nicht signiert]
R2 WMCoreService; C:\Program Files (x86)\Dell\Dell WWAN\WMCore\mini_WMCore.exe [689560 2012-10-18] (Ericsson AB)
S2 WvPCR; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Common\WvPCR.exe [254384 2012-11-08] (Wave Systems Corp.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [X]
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R1 cbfs3; C:\Windows\system32\drivers\cbfs3.sys [352144 2012-04-09] (EldoS Corporation)
R3 d554gps; C:\Windows\System32\DRIVERS\d554gps64.sys [103184 2012-03-01] (Ericsson AB)
R3 d554scard; C:\Windows\System32\DRIVERS\d554scard.sys [61992 2011-01-14] (Ericsson AB)
R3 dcdbas; C:\Windows\System32\DRIVERS\dcdbas64.sys [39016 2012-09-23] (Dell Inc.)
R3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2011-10-05] (Ericsson AB)
R3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [29736 2011-10-05] (Ericsson AB)
S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [256000 2010-08-31] (Huawei Technologies Co., Ltd.)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-10-28] (Intel Corporation)
R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253664 2018-03-07] (Malwarebytes)
R3 Mbm3CBus; C:\Windows\System32\DRIVERS\Mbm3CBus.sys [443648 2013-04-22] (MCCI Corporation)
R3 Mbm3DevMt; C:\Windows\System32\DRIVERS\Mbm3DevMt.sys [455936 2013-04-22] (MCCI Corporation)
R3 Mbm3mdfl; C:\Windows\System32\DRIVERS\Mbm3mdfl.sys [22272 2013-04-22] (MCCI Corporation)
R3 Mbm3Mdm; C:\Windows\System32\DRIVERS\Mbm3Mdm.sys [508160 2013-04-22] (MCCI Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [190032 2016-04-04] (Intel Corporation)
S3 mvusbews; C:\Windows\System32\Drivers\mvusbews.sys [19968 2012-11-08] (Marvell Semiconductor, Inc.)
R3 ST_ACCEL; C:\Windows\System32\DRIVERS\ST_ACCEL.sys [89312 2013-03-27] (STMicroelectronics)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-08-15] (Apple, Inc.) [Datei ist nicht signiert]
R3 WwanUsbServ; C:\Windows\System32\DRIVERS\WwanUsbMp64.sys [284912 2013-08-30] (Ericsson AB)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2018-03-22 08:31 - 2018-03-22 08:36 - 000006877 _____ C:\Users\rk\Downloads\Fixlog.txt
2018-03-22 08:29 - 2018-03-22 08:31 - 000002015 _____ C:\Users\rk\Downloads\Fixlist.txt
2018-03-21 14:24 - 2018-03-21 15:37 - 000000000 ____D C:\AdwCleaner
2018-03-21 14:14 - 2018-03-21 14:14 - 008222496 _____ (Malwarebytes) C:\Users\rk\Downloads\adwcleaner_7.0.8.0.exe
2018-03-21 13:34 - 2018-03-21 13:34 - 000255928 _____ (Malwarebytes) C:\Windows\system32\Drivers\32F35425.sys
2018-03-21 13:33 - 2018-03-21 14:05 - 000000000 ____D C:\Users\rk\Desktop\mbar
2018-03-21 13:33 - 2018-03-21 14:05 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2018-03-21 13:31 - 2018-03-21 13:31 - 014178840 _____ (Malwarebytes Corp.) C:\Users\rk\Desktop\mbar-1.10.3.1001.exe
2018-03-21 12:27 - 2018-03-21 12:27 - 000001036 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2018-03-21 12:27 - 2018-03-21 12:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2018-03-21 12:27 - 2018-03-21 12:27 - 000000000 ____D C:\Program Files\VS Revo Group
2018-03-21 12:26 - 2018-03-21 12:27 - 007189760 _____ (VS Revo Group ) C:\Users\rk\Downloads\revo204setup.exe
2018-03-20 19:35 - 2018-03-20 19:35 - 000003606 _____ C:\Users\rk\Desktop\malwarbytes-bericht-2018-03-07.txt
2018-03-20 19:34 - 2018-03-20 19:34 - 000001423 _____ C:\Users\rk\Desktop\malwarbytes-bericht-2018-03-20.txt
2018-03-20 19:27 - 2018-03-21 19:30 - 000069682 _____ C:\Users\rk\Downloads\Addition.txt
2018-03-20 19:25 - 2018-03-22 09:18 - 000025793 _____ C:\Users\rk\Downloads\FRST.txt
2018-03-20 19:24 - 2018-03-22 09:18 - 000000000 ____D C:\FRST
2018-03-20 19:24 - 2018-03-20 19:24 - 002403328 _____ (Farbar) C:\Users\rk\Downloads\FRST64.exe
2018-03-17 11:04 - 2018-03-17 11:04 - 000000000 ____D C:\Users\rk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2018-03-15 19:56 - 2018-03-15 19:56 - 000001312 _____ C:\Users\Public\Desktop\Skype.lnk
2018-03-15 19:56 - 2018-03-15 19:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2018-03-14 10:20 - 2018-03-14 10:20 - 000434844 _____ C:\Users\rk\Downloads\woocommerce-de_DE.mo
2018-03-07 20:58 - 2018-03-07 20:59 - 000000000 ____D C:\Users\rk\Desktop\Malwarebytes_scans
2018-03-07 15:04 - 2018-03-21 13:34 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-03-07 15:04 - 2018-03-07 20:11 - 000253664 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2018-03-07 15:04 - 2018-03-07 15:04 - 000001869 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-03-07 15:04 - 2018-03-07 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-03-07 15:04 - 2018-03-07 15:04 - 000000000 ____D C:\Program Files\Malwarebytes
2018-03-07 15:04 - 2018-01-18 08:03 - 000076200 _____ C:\Windows\system32\Drivers\mbae64.sys
2018-03-07 15:01 - 2018-03-07 15:03 - 068724528 _____ (Malwarebytes ) C:\Users\rk\Downloads\mb3-setup-consumer-3.4.4.2398-1.0.322-1.0.4190.exe
2018-03-05 18:07 - 2018-03-05 18:07 - 000000000 ____D C:\Program Files\Bonjour
2018-03-05 18:07 - 2018-03-05 18:07 - 000000000 ____D C:\Program Files (x86)\Bonjour
2018-03-05 18:06 - 2018-03-05 18:06 - 000000000 ____D C:\Windows\System32\Tasks\Apple
2018-03-05 18:06 - 2018-03-05 18:06 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2018-03-05 08:34 - 2018-03-05 08:34 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery
2018-03-04 16:36 - 2018-03-04 16:36 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2018-03-04 16:35 - 2018-03-04 16:35 - 001142072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2018-03-04 16:35 - 2018-03-04 16:35 - 001001272 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2018-03-04 15:53 - 2018-03-04 15:57 - 000256498 _____ C:\Windows\ntbtlog.txt
2018-03-04 15:50 - 2018-03-04 15:50 - 001540104 _____ (CHIP Digital GmbH) C:\Users\rk\Downloads\Avira RegistryCleaner - CHIP-Installer.exe
2018-02-26 11:13 - 2018-02-26 11:13 - 000001851 _____ C:\Users\rk\AppData\Local\recently-used.xbel
2018-02-26 11:02 - 2018-02-26 11:13 - 000000000 ____D C:\Users\rk\Synfig
2018-02-26 11:01 - 2018-02-26 12:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synfig
2018-02-26 10:57 - 2018-02-26 10:58 - 000000000 ____D C:\Users\rk\Downloads\synfigstudio-1.0.2_32_64bit
2018-02-26 10:07 - 2018-02-26 10:07 - 000000000 ____D C:\Users\rk\AppData\Local\Meltytech
2018-02-26 10:06 - 2018-02-26 10:06 - 000001672 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shotcut.lnk
2018-02-26 10:05 - 2018-02-26 10:06 - 000000000 ____D C:\Program Files\Shotcut
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2018-03-22 08:45 - 2014-01-10 12:31 - 000001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2018-03-22 08:42 - 2016-11-20 07:42 - 000000000 ____D C:\Users\rk\AppData\LocalLow\Mozilla
2018-03-22 08:42 - 2015-06-17 14:31 - 000001212 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1370982642-3270113885-1358603152-1000UA.job
2018-03-22 08:31 - 2014-04-30 17:13 - 000000000 ____D C:\Users\rk\AppData\LocalLow\Temp
2018-03-22 08:25 - 2009-07-14 05:45 - 000021312 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-03-22 08:25 - 2009-07-14 05:45 - 000021312 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-03-22 08:15 - 2015-12-07 08:58 - 000000000 __SHD C:\Users\rk\IntelGraphicsProfiles
2018-03-22 08:14 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-03-21 15:42 - 2014-11-13 21:16 - 000000816 _____ C:\Windows\system32\ServiceRunSettings.xml
2018-03-21 14:28 - 2009-07-14 05:45 - 000283240 _____ C:\Windows\system32\FNTCACHE.DAT
2018-03-21 14:23 - 2018-01-24 14:20 - 000013405 _____ C:\Windows\BRRBCOM.INI
2018-03-21 13:07 - 2014-01-07 14:49 - 000063680 _____ C:\Users\rk\AppData\Local\GDIPFONTCACHEV1.DAT
2018-03-21 12:47 - 2013-07-18 15:53 - 000000000 ____D C:\Windows\system32\Macromed
2018-03-21 12:39 - 2013-07-18 15:53 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-03-21 12:35 - 2014-11-05 09:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2018-03-21 12:35 - 2014-11-05 09:21 - 000000000 ____D C:\Program Files (x86)\Java
2018-03-20 21:48 - 2015-07-23 08:23 - 000000000 ____D C:\Users\rk\Desktop\zu drucken
2018-03-20 14:12 - 2014-08-21 10:41 - 000000000 ____D C:\Users\rk\AppData\Roaming\vlc
2018-03-19 19:57 - 2010-11-21 07:50 - 000700396 _____ C:\Windows\system32\perfh007.dat
2018-03-19 19:57 - 2010-11-21 07:50 - 000150002 _____ C:\Windows\system32\perfc007.dat
2018-03-19 19:57 - 2009-07-14 06:13 - 001622778 _____ C:\Windows\system32\PerfStringBackup.INI
2018-03-19 19:57 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2018-03-18 08:31 - 2017-05-23 12:26 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2018-03-18 08:31 - 2014-01-07 15:34 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2018-03-17 11:05 - 2014-01-09 20:09 - 000000000 ____D C:\Users\rk\AppData\Roaming\Dropbox
2018-03-15 19:55 - 2014-02-25 19:46 - 000000000 ____D C:\ProgramData\Skype
2018-03-14 08:54 - 2018-01-24 12:08 - 000000000 ____D C:\Users\Public\Documents\VR-NetWorld
2018-03-13 21:37 - 2013-07-18 15:53 - 000804352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-03-13 21:37 - 2013-07-18 15:53 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-03-05 18:10 - 2014-12-15 14:33 - 000000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2018-03-05 18:09 - 2014-12-15 14:33 - 000000000 ____D C:\Program Files\Common Files\Apple
2018-03-05 18:06 - 2014-12-15 14:33 - 000002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2018-03-05 17:57 - 2014-08-21 10:30 - 000001072 _____ C:\Users\Public\Desktop\VLC media player.lnk
2018-03-05 17:54 - 2014-11-05 09:21 - 000097344 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2018-03-05 08:34 - 2013-07-18 15:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2018-03-05 08:30 - 2014-01-07 14:49 - 000000000 ____D C:\Windows\System32\Tasks\Dell
2018-03-04 16:06 - 2017-03-15 20:33 - 000000000 ____D C:\ProgramData\Package Cache
2018-03-04 15:56 - 2014-01-07 17:24 - 000000000 ____D C:\Program Files (x86)\totalcmd
2018-03-04 15:51 - 2018-01-24 11:50 - 000000000 ____D C:\Users\rk\AppData\Local\Downloaded Installations
2018-03-04 15:33 - 2017-03-15 20:33 - 000000000 ____D C:\Program Files (x86)\Avira
2018-02-28 22:08 - 2014-01-10 12:32 - 000002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-02-28 22:08 - 2014-01-10 12:32 - 000002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-02-28 14:39 - 2014-01-08 19:08 - 000000000 ____D C:\Users\rk\Documents\Rechnungen
2018-02-26 11:02 - 2014-01-07 14:46 - 000000000 ____D C:\Users\rk
2018-02-26 08:25 - 2018-01-24 14:25 - 000000000 ____D C:\ProgramData\ControlCenter4
2018-02-26 08:25 - 2018-01-24 14:25 - 000000000 ____D C:\Program Files (x86)\ControlCenter4
2018-02-26 08:25 - 2014-01-15 20:43 - 000000000 ____D C:\ProgramData\InstallShield
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2014-05-29 11:39 - 2014-05-29 11:39 - 000000028 _____ () C:\Users\rk\AppData\Roaming\PhonerLitesettings.ini
2014-01-07 19:33 - 2015-02-17 10:33 - 000000402 _____ () C:\Users\rk\AppData\Roaming\WB.CFG
2014-01-07 19:33 - 2014-01-07 19:33 - 000000005 _____ () C:\Users\rk\AppData\Roaming\WBPU-TTL.DAT
2014-05-17 14:18 - 2016-07-01 14:04 - 000020480 _____ () C:\Users\rk\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-02-26 11:13 - 2018-02-26 11:13 - 000001851 _____ () C:\Users\rk\AppData\Local\recently-used.xbel
==================== Bamital & volsnap ======================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2018-03-20 09:42
==================== Ende von FRST.txt ============================ Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 14.03.2018
durchgeführt von rk (22-03-2018 09:19:03)
Gestartet von C:\Users\rk\Downloads
Windows 7 Professional Service Pack 1 (X64) (2014-01-07 13:46:50)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1370982642-3270113885-1358603152-500 - Administrator - Disabled)
Gast (S-1-5-21-1370982642-3270113885-1358603152-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1370982642-3270113885-1358603152-1002 - Limited - Enabled)
rk (S-1-5-21-1370982642-3270113885-1358603152-1000 - Administrator - Enabled) => C:\Users\rk
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
64 Bit HP CIO Components Installer (HKLM\...\{3138F992-045B-4F55-825C-53B231E647CA}) (Version: 13.2.1 - Hewlett-Packard) Hidden
Adobe InDesign CS2 (HKLM-x32\...\Adobe InDesign CS2 - {7F4C8163-F259-49A0-A018-2857A90578BC}) (Version: 004.000.000 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Premiere Pro 2.0 (HKLM-x32\...\Adobe Premiere Pro 2.0) (Version: 2.000.000 - Adobe Systems, Inc.)
Apple Application Support (32-Bit) (HKLM-x32\...\{D4C80B0C-CF67-43A7-90C3-466853543B54}) (Version: 6.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{AA7D90D2-2387-4FA5-A3AF-96811BE49BFD}) (Version: 11.0.5.14 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{19589375-5C58-4AFA-842F-8B34744CCEAD}) (Version: 2.5.0.1 - Apple Inc.)
Avira (HKLM-x32\...\{C22F76F2-AC9E-44BA-B297-71485F94022F}) (Version: 1.2.95.14694 - Avira Operations GmbH & Co. KG) Hidden
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Brother MFL-Pro Suite MFC-255CW (HKLM-x32\...\{6BF66AED-3EA4-4106-B240-5CE96C9B76B0}) (Version: 1.0.1.0 - Brother Industries, Ltd.)
Brother MFL-Pro Suite MFC-J4420DW (HKLM-x32\...\{7FC49664-DAA4-4E7C-ADD0-614ABB43691B}) (Version: 1.0.5.0 - Brother Industries, Ltd.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.3.1.4 - Canon Inc.)
Canon Inkjet Printer Driver Add-On Module V2.00 (HKLM\...\CANONIJINBOXADDON200) (Version: - )
Canon MX860 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX860_series) (Version: - )
Canon TS6000 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_TS6000_series) (Version: 1.01 - Canon Inc.)
CD-LabelPrint (HKLM-x32\...\MediaNavigation.CDLabelPrint) (Version: - )
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Hidden
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Hidden
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Hidden
Custom (HKLM\...\{7206B668-FEE0-455B-BB1F-9B5A2E0EC94A}) (Version: 01.00.00.002 - Wave Systems Corp.) Hidden
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Dell Backup and Recovery Manager (HKLM\...\{50B4B603-A4C6-4739-AE96-6C76A0F8A388}) (Version: 1.3.1 - Dell Inc.)
Dell Command | Update (HKLM-x32\...\{EC542D5D-B608-4145-A8F7-749C02BE6D94}) (Version: 2.1.1 - Dell Inc.)
Dell Data Protection | Access (HKLM\...\{ABBA2EA4-740E-4052-902B-9CA70B081E3F}) (Version: 2.3.00002.041 - Dell Inc.)
Dell Digital Delivery (HKLM-x32\...\{5E5C540B-8C70-4C62-A3A4-CB1FDF726831}) (Version: 3.5.1001.0 - Dell Products, LP)
Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Mobile Broadband Manager (HKLM-x32\...\{23EEC842-57ED-4055-A056-9D4185DFB1AA}) (Version: 7.2.3.0 - Dell)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 10.2207.101.108 - ALPS ELECTRIC CO., LTD.)
Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 1.40.54 - Creative Technology Ltd)
Dell Wireless HSPA Mini-Card Drivers (HKLM-x32\...\{9D583F01-A973-4B04-90BD-FB7886779090}) (Version: 7.2.7.3 - Dell)
DellAccess (HKLM\...\{20A4AA32-B3FF-4A0B-853C-ACDDCD6CB344}) (Version: 01.03.00.058 - Wave Systems Corp.) Hidden
Dropbox (HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\Dropbox) (Version: 45.4.92 - Dropbox, Inc.)
DW WLAN Card Utility (HKLM\...\DW WLAN Card Utility) (Version: 6.30.223.228 - Dell Inc.)
EMBASSY Client Core (HKLM\...\{7EC46A4C-E659-418E-A65A-BD7FC82D4C48}) (Version: 01.03.00.105 - Wave Systems Corp.) Hidden
Epson Software Updater (HKLM-x32\...\{B55DB65D-EF6E-4E04-89D5-B03603BF681B}) (Version: 4.4.5 - SEIKO EPSON CORPORATION)
EPSON XP-302 303 305 306 Series Printer Uninstall (HKLM\...\EPSON XP-302 303 305 306 Series) (Version: - SEIKO EPSON Corporation)
ERAS Connector (HKLM\...\{D46BCA58-0AF7-4455-8017-34CE3FEEE808}) (Version: 02.09.05.0335 - Wave Systems Corp) Hidden
Eumex 800 V1.30 (HKLM-x32\...\{FACE9D51-E374-4DDB-857C-816FCB1D6B40}) (Version: 1.30.0000 - T-Home) Hidden
Eumex 800 V1.30 (HKLM-x32\...\InstallShield_{FACE9D51-E374-4DDB-857C-816FCB1D6B40}) (Version: 1.30.0000 - T-Home)
Eumex RNDIS64 Treiber V1.02 (HKLM\...\{293C4FDD-FB80-48F8-8B40-F085392FDAA1}) (Version: 1.02.0000 - Deutsche Telekom)
Express Scribe Transkriptionssoftware (HKLM-x32\...\Scribe) (Version: 5.74 - NCH Software)
Fotogalerie (HKLM-x32\...\{3CBD94C1-BA15-488C-888B-D8DD296CC6DC}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Gemalto (HKLM\...\{91CE5F03-3A2A-4268-935A-04944F058AE9}) (Version: 01.64.01.0010 - Wave Systems Corp) Hidden
GemPcCCID (HKLM\...\{7567A068-2F02-40D1-A34C-16D79ECD35A6}) (Version: 2.0.1 - Gemalto) Hidden
Genie Timeline (HKLM-x32\...\Genie Timeline) (Version: 4.0 - Genie9)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 64.0.3282.186 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
HL-1110 series (HKLM-x32\...\{4F2442B7-A89E-42A4-8F0E-6937499855CA}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
HP DeskJet 2130 series - Grundlegende Software für das Gerät (HKLM\...\{43B45486-C6A6-4EB0-8072-3B0F2F7F4418}) (Version: 40.11.1124.17107 - HP Inc.)
HP LaserJet 400 M401 (HKLM-x32\...\{8989F6D9-550C-4178-A8CB-75B82A06621F}) (Version: 5.0.12200.835 - Hewlett-Packard)
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - )
hpbDSService (HKLM-x32\...\{62022DCB-BA92-4EC2-AE03-9B946E4DBF12}) (Version: 002.002.07399 - Hewlett-Packard) Hidden
hpbM401DSService (HKLM-x32\...\{82A58AA3-13AB-47FE-B519-82A7138050B1}) (Version: 001.001.05874 - Hewlett-Packard) Hidden
HUAWEI DataCard Driver 4.20.12.00 (HKLM-x32\...\HUAWEI DataCard Driver) (Version: 4.20.12.00 - Huawei technologies Co., Ltd.)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6491.0 - IDT)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.11.1193 - Intel Corporation)
Intel(R) Network Connections 17.3.63.0 (HKLM\...\PROSetDX) (Version: 17.3.63.0 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4425 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.7.1000 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.8.251 - Intel Corporation)
Java 8 Update 161 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Junk Mail filter update (HKLM-x32\...\{400C31E4-796F-4E86-8FDC-C3C4FACC6847}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MAGIX Burn routines (64-Bit) (HKLM\...\{49146694-5F5F-4B1F-AD15-6587F47A0FD7}) (Version: 9.0.0.212 - MAGIX AG)
MAGIX Burn routines (HKLM\...\{712D74A5-4C3D-41E6-A850-1696E54B28CD}) (Version: 11.0.0.237 - MAGIX AG)
MAGIX Low Latency Driver (64-Bit) (HKLM\...\{42976FDB-5756-4077-A491-095F228E99E2}) (Version: 2.10.2011.0 - MAGIX AG)
MAGIX Speed burnR (MSI) (HKLM-x32\...\{041D58BC-D0F7-46AF-B84D-236A422C6762}) (Version: 7.0.2.6 - MAGIX AG)
Malwarebytes Version 3.4.4.2398 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.4.4.2398 - Malwarebytes)
Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mobile Connection Manager (HKLM-x32\...\o2DE) (Version: 8.7.6.756 - Mobile Connection Manager)
Movie Maker (HKLM-x32\...\{03CC9D58-B132-4CC0-A521-4F3660AA43C7}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{ED6C77F9-4D7E-447C-9EC0-9A212D075535}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 59.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 59.0.1 (x64 en-US)) (Version: 59.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 59.0.1.6648 - Mozilla)
Mozilla Thunderbird 52.6.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 52.6.0 (x86 de)) (Version: 52.6.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.4.6299.48 - PC-Doctor, Inc.)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.7 - F.J. Wechselberger)
o2 Surfstick (HKLM-x32\...\{AEFF9E60-3E93-41EE-9895-311F7D1C5FFD}) (Version: 1.0.0.2 - ZTE Corporation)
O2Micro Flash Memory Card Windows Driver (HKLM-x32\...\{D535FC73-1F63-4347-896A-C97A45F11E9C}) (Version: 3.0.07.44 - O2Micro International LTD.) Hidden
O2Micro Flash Memory Card Windows Driver (HKLM-x32\...\InstallShield_{D535FC73-1F63-4347-896A-C97A45F11E9C}) (Version: 3.0.07.44 - O2Micro International LTD.)
PaperPort Image Printer 64-bit (HKLM\...\{ABA4FAF1-6389-45F9-92CE-3914A4E5C471}) (Version: 1.00.0000 - Nuance Communications, Inc.)
PBA Driver (HKLM\...\{DF5B5BEC-BA44-4669-98C8-2A691C5EA428}) (Version: 1.0.1.7 - Dell Inc.) Hidden
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Preboot Manager (HKLM\...\{59ACD2BB-FC62-4427-81D2-618CF81A2A32}) (Version: 03.05.00.032 - Wave Systems Corp.) Hidden
Private Information Manager (HKLM\...\{0149ECF0-D825-4892-A468-065F2009328A}) (Version: 07.03.00.016 - Wave Systems Corp.) Hidden
Revo Uninstaller 2.0.4 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.4 - VS Revo Group, Ltd.)
Samplitude Pro X (HKLM-x32\...\{FAC97B07-6731-45E6-BD72-C43F6F7BF3C8}) (Version: 12.0.0.59 - MAGIX AG) Hidden
Samplitude Pro X (HKLM-x32\...\MAGIX_MSI_SamProX) (Version: 12.0.0.59 - MAGIX AG)
Samplitude Pro X Update (HKLM\...\{E485AB55-D569-433B-BDD4-9AEC954B32E8}) (Version: 12.4.1.246 - MAGIX AG) Hidden
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
ScanSoft PaperPort 11 (HKLM-x32\...\{02570AE0-BEE0-4A6C-BE3F-D806E9F2EA17}) (Version: 11.2.0000 - Nuance Communications, Inc.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Shotcut (HKLM-x32\...\Shotcut) (Version: - )
SI TSS (HKLM\...\{A2309A2F-4BEB-45C8-92E1-84D430AC15AD}) (Version: 2.1.41 - Security Innovation) Hidden
Skype Version 8.17 (HKLM-x32\...\Skype_is1) (Version: 8.17 - Skype Technologies S.A.)
Soundslides (HKLM-x32\...\Soundslides) (Version: - )
SPBA (WBF) 5.9 (HKLM\...\{DD317AA5-F0EF-480F-9501-507712B5E0B6}) (Version: 5.9.7.7232 - Authentec Inc.) Hidden
ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.10.0046 - ST Microelectronics)
SumatraPDF (HKLM\...\SumatraPDF) (Version: 3.1.1 - Krzysztof Kowalczyk)
toolkit32for64bit (HKLM-x32\...\{6C2DD120-A13A-48DD-9A65-D5FD8BE63435}) (Version: 7.68.85.0013 - Wave Systems Corp) Hidden
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
Trusted Drive Manager (HKLM\...\{236EBEF4-8DE5-4E0E-8FD0-27D94F772FF0}) (Version: 5.0.1.12 - Wave Systems Corp.) Hidden
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.1 - VideoLAN)
VR-NetWorld Software (HKLM-x32\...\{4FF67DC0-E264-4E3A-A204-D2342F9F4FD7}) (Version: 7.01.15 - Volksbanken Raiffeisenbanken)
Wave Crypto Runtime 2.0.9.0 x64 (HKLM\...\{5F160A36-29D0-4AE0-986C-671A564BC0D4}) (Version: 02.00.09.0000 - Wave Systems Corp) Hidden
Wave Crypto Runtime 2.0.9.0 x86 (HKLM-x32\...\{29D07FB4-A026-4E1F-B9A2-8C9EC0E2FEBB}) (Version: 02.00.09.0000 - Wave Systems Corp) Hidden
Wave Infrastructure Installer (HKLM\...\{14CFC674-CD4F-4BE5-8B68-07BA3FE941FF}) (Version: 07.68.85.0014 - Wave Systems Corp) Hidden
Wave Support Software Installer (HKLM\...\{86A9BBDF-9B6D-4E3D-810E-23C9079C6217}) (Version: 05.15.00.021 - Wave Systems Corp) Hidden
WavePad Audio-Editor (HKLM-x32\...\WavePad) (Version: 6.53 - NCH Software)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows-Treiberpaket - T-Home Net (06/30/2010 6.0.6000.16384) (HKLM\...\7B73EBFEF26F2C40D3AA9D389F5CF2C77121106C) (Version: 06/30/2010 6.0.6000.16384 - T-Home)
Wuala (HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\Wuala) (Version: 1.0.444.0 - LaCie)
Wuala CBFS (HKLM-x32\...\Wuala CBFS) (Version: 3.2.107.0 - LaCie)
Wuala OverlayIcons (HKLM-x32\...\Wuala OverlayIcons) (Version: 1.0.0.2 - LaCie)
Zero-Buchhaltung (HKLM-x32\...\Zero) (Version: - )
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{3D3B1846-CC43-42AE-BFF9-D914083C2BA3}\InprocServer32 -> C:\Program Files\SumatraPDF\PdfPreview.dll ()
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{55808EA8-81FE-43c6-AAE8-1D8149F941D3}\InprocServer32 -> C:\Program Files\SumatraPDF\PdfFilter.dll ()
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Keine Datei
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Keine Datei
ShellIconOverlayIdentifiers: [0WualaOverlayIcon1] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Wuala OverlayIcons\OverlayIcon.dll [2012-05-02] (LaCie AG)
ShellIconOverlayIdentifiers: [0WualaOverlayIcon2] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Wuala OverlayIcons\OverlayIcon.dll [2012-05-02] (LaCie AG)
ShellIconOverlayIdentifiers: [0WualaOverlayIcon3] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Wuala OverlayIcons\OverlayIcon.dll [2012-05-02] (LaCie AG)
ShellIconOverlayIdentifiers: [0WualaOverlayIcon4] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Wuala OverlayIcons\OverlayIcon.dll [2012-05-02] (LaCie AG)
ShellIconOverlayIdentifiers: [1EldosIconOverlay] -> {AF233129-6D71-458E-8A92-5E4B8F2E7BAA} => C:\Windows\System32\CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\Windows\system32\CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation)
ShellIconOverlayIdentifiers: [EnabledUnlockedFDEIconOverlay] -> {30D3C2AF-9709-4D05-9CF4-13335F3C1E4A} => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmIconOverlay.dll [2012-12-22] (Wave Systems Corp.)
ShellIconOverlayIdentifiers: [UninitializedFdeIconOverlay] -> {CF08DA3E-C97D-4891-A66B-E39B28DD270F} => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmIconOverlay.dll [2012-12-22] (Wave Systems Corp.)
ShellIconOverlayIdentifiers-x32: [1EldosIconOverlay] -> {AF233129-6D71-458E-8A92-5E4B8F2E7BAA} => C:\Windows\System32\CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\Windows\system32\CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation)
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger)
ContextMenuHandlers1-x32-x32: [PSPad] -> {8903F6C9-25E3-40AC-A98F-E6D35CD0469C} => C:\Program Files (x86)\PSPad editor\PSPadShell.dll [2009-11-16] ()
ContextMenuHandlers1-x32-x32: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2013-05-16] (Safer-Networking Ltd.)
ContextMenuHandlers1-x32-x32: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2013-05-16] (Safer-Networking Ltd.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-03] (Malwarebytes)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll -> Keine Datei
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2016-06-15] (Intel Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-03] (Malwarebytes)
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2013-05-16] (Safer-Networking Ltd.)
ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2013-05-16] (Safer-Networking Ltd.)
ContextMenuHandlers1_S-1-5-21-1370982642-3270113885-1358603152-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ContextMenuHandlers4_S-1-5-21-1370982642-3270113885-1358603152-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
ContextMenuHandlers5_S-1-5-21-1370982642-3270113885-1358603152-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\rk\AppData\Roaming\Dropbox\bin\DropboxExt64.19.0.dll [2018-03-15] (Dropbox, Inc.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {03B730F3-05BD-4313-B90B-F3BEEF04B812} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {08B6388E-56E4-4A8D-8826-EBA4410BEFC4} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2013-08-21] (PC-Doctor, Inc.)
Task: {0A6E2CF1-C2F1-420C-BD2C-96666039C2D4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {332828B3-1AB6-4CD4-9559-A49DEC0F4859} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: {73C19B51-E9A1-480E-97D6-7EDF8DAB7C8A} - System32\Tasks\WSCEAA => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\RemoteManagement\WSCEAA.exe [2012-11-28] (Wave Systems Corp.)
Task: {8D648AAC-3EC4-4592-8999-CDCFC455951B} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1370982642-3270113885-1358603152-1000Core => C:\Users\rk\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.)
Task: {92B9D752-701B-4B4F-BBEF-039D8C5A53A1} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2013-08-21] (PC-Doctor, Inc.)
Task: {BB8339C9-A280-407D-A59F-0D119FCABD98} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1370982642-3270113885-1358603152-1000UA => C:\Users\rk\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.)
Task: {C191B7C8-F61E-460F-A3F5-78467FD07D93} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe
Task: {D0B708CC-ADFC-4395-9636-920CD2C0F2E2} - System32\Tasks\Dell\Command Update => C:\Program Files (x86)\Dell\CommandUpdate\DellCommandUpdate.exe [2015-11-05] (Dell Inc.)
Task: {E2F9065C-B309-4E0C-9E30-256AB7C3A8B6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1370982642-3270113885-1358603152-1000Core1d24a78d57526e4.job => C:\Users\rk\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1370982642-3270113885-1358603152-1000UA.job => C:\Users\rk\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
ShortcutWithArgument: C:\Users\Public\Desktop\o2 Surfstick.lnk -> C:\Program Files (x86)\Hostless Modem\o2 Surfstick\LaunchWebUI.exe () -> hxxp://o2surf.stick
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2016-08-29 16:10 - 2012-09-29 12:25 - 000409088 _____ () C:\Windows\System32\HPM1210LM.DLL
2016-08-29 16:12 - 2012-09-29 12:25 - 000074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HPM1210PP.dll
2012-12-13 12:11 - 2012-12-13 12:11 - 000226824 _____ () C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe
2012-12-13 12:11 - 2012-12-13 12:11 - 000039432 _____ () C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\DeviceStatus.dll
2013-04-14 14:03 - 2013-04-14 14:03 - 000332800 _____ () C:\Program Files\Genie9\Genie Timeline\OnlineHandler.dll
2012-04-24 10:29 - 2012-04-24 10:29 - 000045568 _____ () C:\Program Files\Genie9\Genie Timeline\GSLogging.dll
2013-04-14 14:03 - 2013-04-14 14:03 - 000489472 _____ () C:\Program Files\Genie9\Genie Timeline\GSIndexDB.dll
2012-02-02 10:16 - 2012-02-02 10:16 - 000740864 _____ () C:\Program Files\Genie9\Genie Timeline\sqlite3.dll
2012-04-24 10:29 - 2012-04-24 10:29 - 000011264 _____ () C:\Program Files\Genie9\Genie Timeline\RWLock.dll
2013-04-14 14:03 - 2013-04-14 14:03 - 000208896 _____ () C:\Program Files\Genie9\Genie Timeline\Settings.dll
2012-04-24 10:29 - 2012-04-24 10:29 - 000089600 _____ () C:\Program Files\Genie9\Genie Timeline\GSEncryption.dll
2013-04-14 14:03 - 2013-04-14 14:03 - 000087040 _____ () C:\Program Files\Genie9\Genie Timeline\QueueManager.dll
2013-04-14 14:03 - 2013-04-14 14:03 - 000709632 _____ () C:\Program Files\Genie9\Genie Timeline\GSBackupManager.dll
2013-04-14 14:03 - 2013-04-14 14:03 - 000371712 _____ () C:\Program Files\Genie9\Genie Timeline\GSWatcher4.dll
2013-02-11 12:34 - 2013-02-11 12:34 - 000045056 _____ () C:\Program Files\Genie9\Genie Timeline\pcre.dll
2013-02-11 12:34 - 2013-02-11 12:34 - 000097792 _____ () C:\Program Files\Genie9\Genie Timeline\pcrebase.dll
2013-04-14 14:03 - 2013-04-14 14:03 - 000054784 _____ () C:\Program Files\Genie9\Genie Timeline\GSLogManager.dll
2012-02-02 10:16 - 2012-02-02 10:16 - 000010752 _____ () C:\Program Files\Genie9\Genie Timeline\VSSEngine_Proxy.dll
2012-04-24 10:29 - 2012-04-24 10:29 - 000058368 _____ () C:\Program Files\Genie9\Genie Timeline\GSLibrariesManager.dll
2012-02-02 10:16 - 2012-02-02 10:16 - 000031232 _____ () C:\Program Files\Genie9\Genie Timeline\VSSEngine_W2K3.dll
2012-11-23 22:34 - 2012-11-23 22:34 - 000020480 _____ () C:\Program Files\Dell\Dell Data Protection\Access\Advanced\hapi64\pbadrvsvc.exe
2014-01-14 12:32 - 2013-05-10 12:03 - 000419072 _____ () C:\Program Files (x86)\Hostless Modem\o2 Surfstick\CheckNDISPort_df.exe
2014-01-14 12:32 - 2013-05-10 12:03 - 000446720 _____ () C:\Program Files (x86)\Hostless Modem\o2 Surfstick\CancelAutoPlay_df.exe
2014-01-15 20:47 - 2005-04-22 13:36 - 000143360 ____N () C:\Windows\system32\BrSNMP64.dll
2013-04-14 14:03 - 2013-04-14 14:03 - 000063488 _____ () C:\Program Files\Genie9\Genie Timeline\XBalloonMsgDll.dll
2012-04-24 10:29 - 2012-04-24 10:29 - 000093696 _____ () C:\Program Files\Genie9\Genie Timeline\GSCurl.dll
2018-03-07 15:04 - 2018-02-05 14:44 - 002299168 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2017-06-05 16:41 - 2003-04-18 13:36 - 000008192 _____ () C:\Windows\SysWOW64\srvany.exe
2018-01-05 00:14 - 2018-01-05 00:14 - 001042232 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2018-01-05 00:14 - 2018-01-05 00:14 - 000076088 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-01-10 19:17 - 2012-08-23 10:38 - 000574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2014-01-10 19:17 - 2013-05-16 10:55 - 000113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-01-10 19:17 - 2013-05-16 10:55 - 000416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-01-10 19:17 - 2013-05-16 10:55 - 000161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-01-10 19:17 - 2012-04-03 17:06 - 000565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-01-15 20:47 - 2009-02-27 16:38 - 000139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2018-03-17 11:04 - 2018-03-15 12:50 - 000746312 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\dropbox_watchdog.dll
2018-03-17 11:04 - 2018-03-15 12:50 - 002079048 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\dropbox_crashpad.dll
2018-03-17 11:04 - 2018-03-15 12:50 - 000100312 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000018896 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\select.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000020808 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000035808 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000694232 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000021856 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000130520 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 001856864 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000022880 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000145880 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000116696 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2018-03-17 11:04 - 2018-03-15 12:50 - 000105944 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32api.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000022872 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000063312 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000024536 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32event.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000077120 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\fastpath.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000020952 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000124888 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32file.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000114136 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32security.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000392664 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2018-03-17 11:04 - 2018-03-15 12:53 - 000392520 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000026464 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000043480 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32process.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000024024 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000175576 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32gui.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000030168 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000026072 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32job.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000048600 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32service.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000057816 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32evtlog.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000021840 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000023376 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winshell.compiled._winshell.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000022864 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\crashpad.compiled._Crashpad.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000066400 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winenumhandles.compiled._WinEnumHandles.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 001798464 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000084944 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\sip.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 001959232 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 003863880 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000155472 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000521544 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000051024 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineCore.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000043336 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000131400 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000219984 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000204104 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000025440 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000060888 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32print.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000054616 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winrpcserver.compiled._RPCServer.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000024024 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32profile.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000022880 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winffi.user32.compiled._winffi_user32.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000028632 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\win32ts.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000022368 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000021856 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winffi.winerror.compiled._winffi_winerror.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000022368 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winffi.wininet.compiled._winffi_wininet.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000027496 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000349144 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2018-03-17 11:04 - 2018-03-15 12:53 - 000023904 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000025432 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2018-03-17 11:04 - 2018-03-15 12:50 - 000036312 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\librsync.dll
2018-03-17 11:04 - 2018-03-15 12:53 - 000021856 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winffi.advapi32.compiled._winffi_advapi32.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000181064 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2018-03-17 11:04 - 2018-03-15 12:53 - 000030544 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\wind3d11.compiled._wind3d11.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000024384 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\libEGL.DLL
2018-03-17 11:04 - 2018-03-15 12:52 - 001638208 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2018-03-17 11:04 - 2018-03-15 12:53 - 000026464 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000546632 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000359744 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2018-03-17 11:04 - 2018-03-15 12:52 - 000038216 _____ () C:\Users\rk\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngine.pyd
2015-01-05 12:18 - 2011-07-13 11:10 - 000065576 ____R () C:\Program Files (x86)\Dell\Dell WWAN\WMCore\MBMDebug.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com
Da befinden sich 7864 mehr Seiten.
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\...\123simsen.com -> www.123simsen.com
Da befinden sich 7864 mehr Seiten.
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 03:34 - 2018-03-22 08:31 - 000000035 _____ C:\Windows\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1370982642-3270113885-1358603152-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\rk\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{E4A42CE3-BE88-467F-94FE-8F152D556FAD}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{93AF8740-37FF-4319-8801-408C21E28A39}] => (Allow) LPort=2869
FirewallRules: [{B162A256-1C9F-4FE1-ACFC-BFEEEF3FD422}] => (Allow) LPort=1900
FirewallRules: [{70BADFAA-FA24-43BB-AE3F-CEF9907C30B2}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{137BBB4A-5735-4BF4-8A6E-B9BC775C69FB}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [TCP Query User{67E54D54-2E5D-457D-92DA-97C5173F10FB}C:\program files (x86)\totalcmd\totalcmd64.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd64.exe
FirewallRules: [UDP Query User{16F16627-0FE7-46DA-90F6-A09EC5EFB46D}C:\program files (x86)\totalcmd\totalcmd64.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd64.exe
FirewallRules: [TCP Query User{2724B865-F3AF-4AC2-9F52-6429DD2EB3E2}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe
FirewallRules: [UDP Query User{53D6B460-D9EC-4C6B-826C-E3BB1D9B224C}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe
FirewallRules: [{6CC140BB-A44B-41CA-A2AC-5088CCBBB89C}] => (Allow) C:\Users\rk\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{428AECCD-0DAC-4E7F-8DF1-28EBA4623C68}] => (Allow) C:\Users\rk\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [TCP Query User{0E39C57E-D5C4-48DA-9C87-90F4804A2E82}C:\users\rk\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\rk\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{2074371A-2896-4B78-9500-A2D7044B057F}C:\users\rk\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\rk\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{DE3ADD35-BF77-4148-B811-39657C329B3B}] => (Allow) LPort=54925
FirewallRules: [TCP Query User{E4801175-447E-4FAF-B29D-0EBA7090F87C}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe
FirewallRules: [UDP Query User{F547F3A0-30AE-451B-B432-6B2A3941DC73}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe
FirewallRules: [{65E64549-632C-46BE-A42B-4BCD118D5DE7}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{D76DD029-2687-4E3C-9800-B965ADBA16D6}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe
FirewallRules: [{F3EC0002-9EE1-4051-A528-3C8BAA43A89A}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe
FirewallRules: [TCP Query User{87DD2848-712F-40F8-8380-0FE88D1F2A5E}C:\program files (x86)\phonerlite\phonerlite.exe] => (Allow) C:\program files (x86)\phonerlite\phonerlite.exe
FirewallRules: [UDP Query User{B79C1BA4-D6F4-4698-B40C-48B7156C873C}C:\program files (x86)\phonerlite\phonerlite.exe] => (Allow) C:\program files (x86)\phonerlite\phonerlite.exe
FirewallRules: [TCP Query User{0991CC84-7B5F-47B2-B7CE-FFF653A89D09}C:\program files (x86)\totalcmd\totalcmd64.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd64.exe
FirewallRules: [UDP Query User{73DF8FEE-763C-4BD4-B0CD-3948FE54BF0B}C:\program files (x86)\totalcmd\totalcmd64.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd64.exe
FirewallRules: [TCP Query User{C2CBE3E0-1164-4C16-A5FD-87A726E198FB}C:\users\rk\appdata\roaming\wuala\wuala.exe] => (Allow) C:\users\rk\appdata\roaming\wuala\wuala.exe
FirewallRules: [UDP Query User{6E29C285-5DBF-4203-AAB6-4F2A2023F61C}C:\users\rk\appdata\roaming\wuala\wuala.exe] => (Allow) C:\users\rk\appdata\roaming\wuala\wuala.exe
FirewallRules: [{3E202F0A-7C26-454E-9749-56596BCF0F01}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
FirewallRules: [{20E5BD9D-ABB1-4A02-BA27-52745A07736F}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
FirewallRules: [{2EE33322-253B-423F-B021-34BACA61B676}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgdiagex.exe
FirewallRules: [{C6708DE0-D45B-44D9-A16C-5053EB6C2E3E}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgdiagex.exe
FirewallRules: [{E457F9D5-6C1B-4C56-9797-3A7E5BF4F2E6}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
FirewallRules: [{0FA71F02-5CE6-4535-9B62-ED4D874ED64D}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
FirewallRules: [{CD091128-3231-45B9-87D5-A9858BD05B39}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe
FirewallRules: [{D322FC03-B1DD-4EC0-92D3-1089CF86E76C}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe
FirewallRules: [TCP Query User{5F7A6BD2-2235-460C-944B-E9C4099F5E6D}C:\users\rk\appdata\roaming\wuala\wuala.exe] => (Allow) C:\users\rk\appdata\roaming\wuala\wuala.exe
FirewallRules: [UDP Query User{CA83290C-8D56-45CE-ABCC-1F22C3A6B0C0}C:\users\rk\appdata\roaming\wuala\wuala.exe] => (Allow) C:\users\rk\appdata\roaming\wuala\wuala.exe
FirewallRules: [{B2D360F8-147C-43F5-A041-3D4CF11DD4C0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{445DB8B8-731A-4861-8B3A-82CE4192F27C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{760CAFAD-575E-4D04-A15C-153045F6CDDA}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{85804048-05DB-43C4-A7DC-483A0F7E4FB8}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{6F967CB6-7EA2-4BCA-AA7A-BA680D0D50FA}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{7D66E5F4-422C-47DC-A897-2DF73A680BD8}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{90B497FC-2F47-42BC-9F78-6ED8602A6F5C}] => (Allow) C:\Program Files (x86)\DVDVideoSoft\Free Torrent Download\FreeTorrentDownload.exe
FirewallRules: [{B36C2E71-70E6-4950-9E04-72D8B3379222}] => (Allow) C:\Program Files (x86)\DVDVideoSoft\Free Torrent Download\FreeTorrentDownload.exe
FirewallRules: [{8B72480A-5AFB-41D2-B718-FDDF6F4E8B27}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{3DFE6641-2396-4584-8018-4152BF59BA7A}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{BFE79752-1978-49EA-9F06-451A0080D820}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{1E8C9E09-D6D7-4104-AE7A-0441C34561EE}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{E2656A11-6578-4DCC-9235-7FF1C9959AD1}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{91C81507-0B34-4DCE-ACF3-13DA8AA1AA18}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{50187ED7-090B-44E2-8048-CFD7BD71ADF6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{BF81CEA2-B940-4334-86BD-9BF257A45B57}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EBF803E4-7DA1-4AE3-B8F0-D2D892392AAC}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [TCP Query User{2164746D-BEFD-4E89-B067-FCA6C60B9086}C:\program files (x86)\t-home\eumex 800 v1.30\800cf.exe] => (Block) C:\program files (x86)\t-home\eumex 800 v1.30\800cf.exe
FirewallRules: [UDP Query User{AD0601AC-92A5-4714-8984-E56513DB02AF}C:\program files (x86)\t-home\eumex 800 v1.30\800cf.exe] => (Block) C:\program files (x86)\t-home\eumex 800 v1.30\800cf.exe
FirewallRules: [TCP Query User{947A6E55-A969-4CB2-B631-734029EB8571}C:\program files (x86)\xmind\xmind.exe] => (Block) C:\program files (x86)\xmind\xmind.exe
FirewallRules: [UDP Query User{E689C3B9-CBB7-4816-AB63-1725A0EEEB0A}C:\program files (x86)\xmind\xmind.exe] => (Block) C:\program files (x86)\xmind\xmind.exe
FirewallRules: [TCP Query User{8F18FF55-54ED-411B-9146-9C76B03C6E00}C:\program files (x86)\xmind\xmind.exe] => (Block) C:\program files (x86)\xmind\xmind.exe
FirewallRules: [UDP Query User{463C9988-C7FF-4583-928A-7181144BAC1E}C:\program files (x86)\xmind\xmind.exe] => (Block) C:\program files (x86)\xmind\xmind.exe
FirewallRules: [{C320DD77-0D5D-45F8-AA0C-D9DC9B7C9CE5}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{0784EF42-1CA8-4FA8-8F07-7D74B7531B3D}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{24428073-C6F7-48AA-AD22-189EF101FED7}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{E8D0A5E8-810C-482F-8092-7CDB0949D226}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{B208A9BE-1970-4FF0-9179-5E59FF559AEE}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{865E6B60-91E1-4468-BE9D-AB1391EB3A55}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{89E6789B-243E-4B0E-BE5D-CFEA7F21C5E3}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{77795E84-4541-4975-9954-B6FC6CD18583}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{064D7FDC-3D40-4A1D-B797-2D963F98CECF}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [TCP Query User{5363AD52-31EE-44A7-BE32-247E7328DFD4}C:\program files (x86)\t-home\eumex 800 v1.30\800cf.exe] => (Allow) C:\program files (x86)\t-home\eumex 800 v1.30\800cf.exe
FirewallRules: [UDP Query User{3DF50218-78C1-436F-B14F-7379601C34CC}C:\program files (x86)\t-home\eumex 800 v1.30\800cf.exe] => (Allow) C:\program files (x86)\t-home\eumex 800 v1.30\800cf.exe
FirewallRules: [{2A0C9E08-3766-45D9-AB6D-5A58F6892DC2}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\USBSetup.exe
FirewallRules: [{8B0BCAFC-86E2-40B2-BBFC-B9921D2E4641}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [TCP Query User{A2A1DA0A-7A12-476F-92C3-9BB5D9C80140}C:\program files (x86)\totalcmd\totalcmd.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd.exe
FirewallRules: [UDP Query User{45080C52-7EBD-46A2-BD43-F159F13527CA}C:\program files (x86)\totalcmd\totalcmd.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd.exe
FirewallRules: [{F3503A32-C216-4CB6-AAD5-FB09ACC060A4}] => (Allow) C:\Program Files (x86)\Brother\Brmfl14e\FAXRX.EXE
FirewallRules: [{2C2E1AE0-AEB9-45BB-8B6F-8DB59CA9F5BC}] => (Allow) LPort=54925
FirewallRules: [{0B856E80-27A4-4748-AE54-A4755DA7C7D7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{E45C10D5-0655-4D41-819A-F86C7EE7DEC8}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
FirewallRules: [{F6CF06D0-9106-40D3-A734-20D8F8F55519}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E8065A26-AB92-44B6-A76F-012BAA46C2DD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{F986D900-82A8-4BF7-A884-C83B542DD261}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{C4C3515E-86D0-4733-B878-80FF7E4BBC12}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{28800D6F-D681-4FA3-8128-32475CD27924}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
FirewallRules: [{25D1EE14-F4C8-403A-8119-838E96265948}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot-S&D 2 Tray Icon
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
==================== Wiederherstellungspunkte =========================
13-03-2018 10:37:11 Geplanter Prüfpunkt
19-03-2018 11:40:14 Removed iTunes
21-03-2018 12:33:03 Revo Uninstaller's restore point - Java 8 Update 91
21-03-2018 12:33:58 Revo Uninstaller's restore point - Java 8 Update 91
21-03-2018 12:34:24 Removed Java 8 Update 91
21-03-2018 12:39:11 Revo Uninstaller's restore point - Adobe Flash Player 29 ActiveX
21-03-2018 12:47:34 Revo Uninstaller's restore point - Adobe Flash Player 29 NPAPI
21-03-2018 13:00:55 Revo Uninstaller's restore point - OpenOffice 4.1.2
==================== Fehlerhafte Geräte im Gerätemanager =============
Name: Canon MX860 ser Network
Description: Canon MX860 ser Network
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: Canon
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (03/22/2018 09:18:14 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
Description: Fehler beim Erstellen des neuen Suchindex durch Windows Search. Interner Fehler <10, 0x80071a91, Fehler beim Speichern der Änderungen am Crawl Scope-Manager: >.
Error: (03/22/2018 09:18:14 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
Description: Die Liste der eingeschlossenen und ausgeschlossenen Adressen konnte vvon Windows Search nicht verarbeitet werden. Fehler: <20, 0x80071a91, "">.
Error: (03/22/2018 08:36:33 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
Description: Fehler beim Erstellen des neuen Suchindex durch Windows Search. Interner Fehler <10, 0x80071a91, Fehler beim Speichern der Änderungen am Crawl Scope-Manager: >.
Error: (03/22/2018 08:36:33 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
Description: Die Liste der eingeschlossenen und ausgeschlossenen Adressen konnte vvon Windows Search nicht verarbeitet werden. Fehler: <20, 0x80071a91, "">.
Error: (03/22/2018 08:32:17 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
Description: Fehler beim Erstellen des neuen Suchindex durch Windows Search. Interner Fehler <10, 0x80071a91, Fehler beim Speichern der Änderungen am Crawl Scope-Manager: >.
Error: (03/22/2018 08:32:17 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
Description: Die Liste der eingeschlossenen und ausgeschlossenen Adressen konnte vvon Windows Search nicht verarbeitet werden. Fehler: <20, 0x80071a91, "">.
Error: (03/22/2018 08:32:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: FRST64.exe, Version: 14.3.2018.0, Zeitstempel: 0x5aa95005
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.23418, Zeitstempel: 0x5708a857
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000c259
ID des fehlerhaften Prozesses: 0xdc0
Startzeit der fehlerhaften Anwendung: 0x01d3c1afad4d8245
Pfad der fehlerhaften Anwendung: C:\Users\rk\Downloads\FRST64.exe
Pfad des fehlerhaften Moduls: C:\Windows\SYSTEM32\ntdll.dll
Berichtskennung: 1b45df85-2da3-11e8-ae3d-028037ec0200
Error: (03/22/2018 08:31:38 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
Description: Fehler beim Erstellen des neuen Suchindex durch Windows Search. Interner Fehler <10, 0x80071a91, Fehler beim Speichern der Änderungen am Crawl Scope-Manager: >.
Systemfehler:
=============
Error: (03/22/2018 09:18:14 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 20 Mal passiert.
Error: (03/22/2018 09:18:14 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Search" wurde mit folgendem Fehler beendet:
Die Transaktionsunterstützung im angegebenen Ressourcen-Manager wurde nicht gestartet oder aufgrund eines Fehlers heruntergefahren.
Error: (03/22/2018 08:36:34 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 19 Mal passiert.
Error: (03/22/2018 08:36:34 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Search" wurde mit folgendem Fehler beendet:
Die Transaktionsunterstützung im angegebenen Ressourcen-Manager wurde nicht gestartet oder aufgrund eines Fehlers heruntergefahren.
Error: (03/22/2018 08:32:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 18 Mal passiert.
Error: (03/22/2018 08:32:18 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Search" wurde mit folgendem Fehler beendet:
Die Transaktionsunterstützung im angegebenen Ressourcen-Manager wurde nicht gestartet oder aufgrund eines Fehlers heruntergefahren.
Error: (03/22/2018 08:31:39 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 17 Mal passiert.
Error: (03/22/2018 08:31:39 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Search" wurde mit folgendem Fehler beendet:
Die Transaktionsunterstützung im angegebenen Ressourcen-Manager wurde nicht gestartet oder aufgrund eines Fehlers heruntergefahren.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i5-3337U CPU @ 1.80GHz
Prozentuale Nutzung des RAM: 74%
Installierter physikalischer RAM: 3969.71 MB
Verfügbarer physikalischer RAM: 1014.19 MB
Summe virtueller Speicher: 7937.61 MB
Verfügbarer virtueller Speicher: 3888.85 MB
==================== Laufwerke ================================
Drive c: (OS) (Fixed) (Total:453.47 GB) (Free:111.54 GB) NTFS
\\?\Volume{4c49b1dd-ef7e-11e2-8e52-806e6f6e6963}\ (RECOVERY) (Fixed) (Total:12.25 GB) (Free:5.03 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: 41ADB704)
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Active) - (Size=12.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=453.5 GB) - (Type=07 NTFS)
==================== Ende von Addition.txt ============================ |