FRST fortgeführt: Code:
2016-06-26 16:03 - 2016-06-26 16:03 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00312160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\polstore.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00290496 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2016-06-26 16:03 - 2016-06-26 16:03 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00211296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00170848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00100232 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00081144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00074424 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00058400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpscript.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-06-26 16:03 - 2016-06-26 16:03 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-06-26 16:03 - 2016-06-26 16:03 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-06-26 16:02 - 2016-06-26 16:02 - 00002415 _____ C:\Users\marc01.OFFICE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-06-26 16:02 - 2016-06-26 16:02 - 00000000 ___RD C:\Users\marc01.OFFICE\OneDrive
2016-06-26 16:02 - 2016-06-26 16:02 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Local\ActiveSync
2016-06-26 16:01 - 2016-06-26 16:01 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Roaming\ICAClient
2016-06-26 16:01 - 2016-06-26 16:01 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Roaming\ATI
2016-06-26 16:01 - 2016-06-26 16:01 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Roaming\Apple Computer
2016-06-26 16:01 - 2016-06-26 16:01 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Local\Citrix
2016-06-26 16:01 - 2016-06-26 16:01 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Local\ATI
2016-06-26 16:00 - 2016-06-26 16:02 - 00000000 ____D C:\Users\marc01.OFFICE
2016-06-26 16:00 - 2016-06-26 16:01 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Local\Packages
2016-06-26 16:00 - 2016-06-26 16:00 - 00000020 ___SH C:\Users\marc01.OFFICE\ntuser.ini
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Vorlagen
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Startmenü
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Netzwerkumgebung
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Lokale Einstellungen
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Eigene Dateien
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Druckumgebung
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Documents\Eigene Videos
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Documents\Eigene Musik
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Documents\Eigene Bilder
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\AppData\Local\Verlauf
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\AppData\Local\Anwendungsdaten
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 _SHDL C:\Users\marc01.OFFICE\Anwendungsdaten
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Roaming\Adobe
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Local\VirtualStore
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Local\TileDataLayer
2016-06-26 16:00 - 2016-06-26 16:00 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Local\Publishers
2016-06-26 16:00 - 2016-06-26 15:19 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Roaming\Media Center Programs
2016-06-26 16:00 - 2016-06-26 15:19 - 00000000 ____D C:\Users\marc01.OFFICE\AppData\Local\Microsoft Help
2016-06-26 16:00 - 2015-12-08 12:49 - 00002122 _____ C:\Users\marc01.OFFICE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-06-26 15:59 - 2016-06-26 15:59 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-06-26 15:59 - 2016-06-26 15:58 - 224569024 _____ C:\avira_professional_security_de.exe
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\WINDOWS\system32\msmq
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\Program Files\MSBuild
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-06-26 15:57 - 2016-06-26 15:57 - 00000000 ____D C:\inetpub
2016-06-26 15:56 - 2015-10-23 18:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-06-26 15:56 - 2015-10-23 18:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-06-26 15:56 - 2015-10-23 18:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-06-26 15:56 - 2015-10-23 18:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-06-26 15:56 - 2015-10-23 18:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-06-26 15:56 - 2015-10-23 18:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-06-26 15:43 - 2016-06-26 15:43 - 00002405 _____ C:\Users\administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-06-26 15:43 - 2016-06-26 15:43 - 00000000 ___RD C:\Users\administrator\OneDrive
2016-06-26 15:42 - 2016-06-26 15:42 - 00000000 ____D C:\ProgramData\ATI
2016-06-26 15:41 - 2016-06-26 15:41 - 00000000 ____D C:\Users\administrator\AppData\Local\ActiveSync
2016-06-26 15:40 - 2016-06-26 15:40 - 00001045 _____ C:\Users\administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk
2016-06-26 15:40 - 2016-06-26 15:40 - 00000000 ____D C:\Users\administrator\AppData\Local\Publishers
2016-06-26 15:40 - 2015-10-29 19:43 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2016-06-26 15:40 - 2015-10-29 19:43 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2016-06-26 15:40 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2016-06-26 15:40 - 2015-10-29 19:25 - 06359040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2016-06-26 15:40 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2016-06-26 15:39 - 2016-06-26 15:58 - 00000000 ____D C:\Users\administrator\AppData\Local\Packages
2016-06-26 15:39 - 2016-06-26 15:39 - 00003654 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask
2016-06-26 15:39 - 2016-06-26 15:39 - 00000020 ___SH C:\Users\administrator\ntuser.ini
2016-06-26 15:39 - 2016-06-26 15:39 - 00000000 ____D C:\Users\administrator\AppData\Local\TileDataLayer
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-06-26 15:29 - 2016-06-26 15:29 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-06-26 15:27 - 2016-06-26 15:27 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-06-26 15:19 - 2016-06-26 15:19 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-06-26 15:19 - 2016-06-26 15:19 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-06-26 15:19 - 2016-06-26 15:19 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-06-26 15:19 - 2016-06-26 15:19 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-06-26 15:19 - 2016-06-26 15:19 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-06-26 15:15 - 2016-06-26 15:15 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2016-06-26 15:12 - 2016-07-12 22:29 - 02086244 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-26 15:12 - 2016-07-04 20:27 - 00000000 ____D C:\Users\marc01
2016-06-26 15:12 - 2016-06-30 15:06 - 00000000 ____D C:\Users\marc_m
2016-06-26 15:12 - 2016-06-26 15:43 - 00000000 ____D C:\Users\administrator
2016-06-26 15:12 - 2016-06-26 15:12 - 01989310 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Vorlagen
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Startmenü
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Netzwerkumgebung
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Lokale Einstellungen
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Eigene Dateien
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Druckumgebung
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Documents\Eigene Videos
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Documents\Eigene Musik
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Documents\Eigene Bilder
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\AppData\Local\Verlauf
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\AppData\Local\Anwendungsdaten
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\marc_m\Anwendungsdaten
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Vorlagen
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Startmenü
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Netzwerkumgebung
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Lokale Einstellungen
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Eigene Dateien
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Druckumgebung
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Documents\Eigene Videos
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Documents\Eigene Musik
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Documents\Eigene Bilder
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\AppData\Local\Verlauf
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\AppData\Local\Anwendungsdaten
2016-06-26 15:12 - 2016-06-26 15:12 - 00000000 _SHDL C:\Users\administrator\Anwendungsdaten
2016-06-26 15:10 - 2016-06-26 16:06 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-26 15:10 - 2016-06-26 15:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2016-06-26 15:10 - 2016-06-26 15:10 - 00000000 ____D C:\Program Files\ATI Technologies
2016-06-26 15:10 - 2016-06-26 15:10 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2016-06-26 15:09 - 2016-06-26 15:09 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2016-06-26 15:09 - 2016-06-26 15:09 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-06-26 15:09 - 2016-06-26 15:09 - 00000000 ____D C:\Program Files\Realtek
2016-06-26 15:09 - 2016-06-26 15:09 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-06-26 15:09 - 2016-06-26 15:09 - 00000000 ____D C:\Program Files\AMD
2016-06-26 15:09 - 2016-06-26 15:09 - 00000000 ____D C:\AMD
2016-06-26 15:09 - 2016-06-26 15:09 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2016-06-26 14:41 - 2016-06-26 15:28 - 00018069 _____ C:\WINDOWS\diagerr.xml
2016-06-26 14:41 - 2016-06-26 15:28 - 00017148 _____ C:\WINDOWS\diagwrn.xml
2016-06-26 14:38 - 2016-06-26 14:38 - 00000000 ____D C:\Users\administrator\AppData\Local\GWX
2016-06-26 14:20 - 2016-06-26 14:20 - 00000000 ____D C:\Users\administrator\AppData\Roaming\Avira
2016-06-26 14:19 - 2016-06-26 14:19 - 00000000 ____D C:\Program Files\Common Files\AV
2016-06-26 14:19 - 2016-04-04 16:37 - 00141376 _____ (Avira GmbH) C:\WINDOWS\system32\Drivers\avfwot.sys
2016-06-26 14:19 - 2016-04-04 16:37 - 00114608 _____ (Avira GmbH) C:\WINDOWS\system32\Drivers\avfwim.sys
2016-06-26 12:58 - 2016-06-26 15:58 - 224569024 _____ C:\Users\administrator\Downloads\avira_professional_security_de.exe
2016-06-26 12:04 - 2016-06-26 12:04 - 00000000 __SHD C:\Users\administrator\AppData\Local\EmieUserList
2016-06-26 12:04 - 2016-06-26 12:04 - 00000000 __SHD C:\Users\administrator\AppData\Local\EmieSiteList
2016-06-26 12:04 - 2016-06-26 12:04 - 00000000 ____D C:\Users\administrator\AppData\Roaming\Intel Corporation
2016-06-26 12:03 - 2016-06-26 12:03 - 00117240 _____ C:\Users\administrator\AppData\Local\GDIPFONTCACHEV1.DAT
2016-06-26 12:03 - 2016-06-26 12:03 - 00000000 ____D C:\Users\administrator\AppData\Roaming\FLEXnet
2016-06-26 12:03 - 2016-06-26 12:03 - 00000000 ____D C:\Users\administrator\AppData\Roaming\ATI
2016-06-26 12:03 - 2016-06-26 12:03 - 00000000 ____D C:\Users\administrator\AppData\Local\ATI
2016-06-26 11:47 - 2016-06-26 11:47 - 00000959 _____ C:\WINDOWS\system32\Drivers\etc\hosts.txt
2016-06-26 11:15 - 2016-06-26 11:15 - 00000000 _____ C:\autoexec.bat
2016-06-26 11:10 - 2016-06-26 11:10 - 03482800 _____ (Enigma Software Group USA, LLC.) C:\Users\marc_m\Downloads\SpyHunter-Installer.exe
2016-06-24 12:28 - 2016-06-24 12:28 - 00000074 _____ C:\WINDOWS\SysWOW64\EN_161857776.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000074 _____ C:\WINDOWS\SysWOW64\EN_161848416.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161879803.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161858696.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161854765.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161854048.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161849336.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161846294.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161845592.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161844750.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161844032.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161831396.html
2016-06-24 12:28 - 2016-06-24 12:28 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161830585.html
2016-06-24 12:27 - 2016-07-06 22:42 - 00000000 ____D C:\WINDOWS\SysWOW64\_TSpm
2016-06-24 12:27 - 2016-06-24 12:27 - 04398324 _____ (Update) C:\WINDOWS\SysWOW64\de1.exe
2016-06-24 12:27 - 2016-06-24 12:27 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_161820757.html
2016-06-24 12:27 - 2016-06-24 12:27 - 00000072 _____ C:\WINDOWS\SysWOW64\de_161819961.html
2016-06-24 10:24 - 2016-06-24 10:24 - 00901447 _____ C:\Users\marc_m\Documents\Bild marc.pptx
2016-06-17 15:21 - 2016-06-17 15:21 - 00000000 ____D C:\Users\marc_m\AppData\Local\GWX
2016-06-15 02:05 - 2016-05-27 15:06 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\centel.dll
2016-06-15 02:04 - 2016-05-20 23:45 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-06-15 02:04 - 2016-05-20 23:07 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll
2016-06-15 02:04 - 2016-05-20 23:07 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-07-12 22:29 - 2016-04-27 07:13 - 00888192 _____ C:\WINDOWS\system32\perfh007.dat
2016-07-12 22:29 - 2016-04-27 07:13 - 00197276 _____ C:\WINDOWS\system32\perfc007.dat
2016-07-12 22:29 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-07-12 22:28 - 2015-05-07 16:57 - 00000000 ____D C:\WINDOWS\CryptoGuard
2016-07-12 22:28 - 2014-07-27 21:03 - 00000000 ___RD C:\Users\marc_m\Dropbox
2016-07-12 22:27 - 2016-02-27 16:07 - 00001106 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-12 22:26 - 2016-03-29 10:25 - 00005004 _____ C:\WINDOWS\System32\Tasks\WSCEAA
2016-07-12 22:23 - 2016-04-27 07:48 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-07-12 22:23 - 2016-04-26 22:44 - 00370728 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-07-12 22:23 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-07-12 22:23 - 2014-07-26 13:41 - 00000120 _____ C:\WINDOWS\system32\config\netlogon.ftl
2016-07-12 22:22 - 2016-06-08 13:46 - 00271360 _____ C:\Users\marc_m\Documents\archive_new.pst
2016-07-12 22:22 - 2014-07-26 18:31 - 00000000 ____D C:\ProgramData\TEMP
2016-07-12 22:21 - 2014-07-26 18:51 - 00000000 ____D C:\Users\marc_m\AppData\LocalLow\Temp
2016-07-12 22:17 - 2016-02-27 16:07 - 00001110 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-12 18:03 - 2015-07-08 09:39 - 00000000 ____D C:\Users\marc_m\Desktop\marc
2016-07-12 15:18 - 2014-07-26 14:06 - 00000000 ____D C:\Users\marc_m\AppData\Local\CrashDumps
2016-07-11 20:57 - 2014-07-26 20:26 - 00000000 ____D C:\Users\marc_m\AppData\Roaming\Dropbox
2016-07-10 15:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-07-09 13:01 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-07-08 09:53 - 2014-07-26 20:55 - 00000000 ____D C:\Users\marc_m\Desktop\Presse
2016-07-06 09:12 - 2010-12-13 13:38 - 00002279 _____ C:\Users\marc_m\AppData\Roaming\SAS7_000.DAT
2016-07-05 19:09 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-07-05 19:09 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-07-05 19:05 - 2014-07-26 19:30 - 00000000 ____D C:\Users\marc_m\AppData\Local\ElevatedDiagnostics
2016-07-05 19:01 - 2014-07-11 17:05 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-07-04 21:37 - 2014-07-26 18:34 - 00000000 ____D C:\Program Files (x86)\ELOoffice
2016-07-04 20:59 - 2014-07-27 20:47 - 00008608 _____ C:\WINDOWS\SysWOW64\sx_p2d.tlb
2016-07-04 20:33 - 2015-05-07 16:57 - 00000000 ____D C:\ProgramData\HitmanPro.Alert
2016-07-04 20:31 - 2014-07-26 17:58 - 00000000 ____D C:\AdwCleaner
2016-07-04 20:31 - 2014-07-26 13:43 - 00002412 __RSH C:\ProgramData\ntuser.pol
2016-07-03 15:30 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-07-01 10:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-06-30 20:07 - 2014-07-26 19:39 - 00000000 ____D C:\Users\marc_m\AppData\Local\Mozilla
2016-06-30 17:03 - 2014-07-26 20:38 - 00000000 ____D C:\Users\marc_m\Desktop\Geran
2016-06-29 14:24 - 2014-07-26 19:29 - 00000000 ____D C:\Users\marc_m\AppData\Local\Adobe
2016-06-29 14:04 - 2014-07-26 18:32 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-06-29 14:03 - 2014-07-26 18:19 - 00000000 ____D C:\ProgramData\Adobe
2016-06-29 13:09 - 2014-07-26 18:22 - 00000000 ____D C:\ProgramData\InstallShield
2016-06-26 20:26 - 2015-05-07 16:57 - 00000000 ____D C:\Program Files (x86)\HitmanPro.Alert
2016-06-26 20:25 - 2015-05-07 16:57 - 00880336 _____ (SurfRight B.V.) C:\WINDOWS\SysWOW64\hmpalert.dll
2016-06-26 20:25 - 2015-05-07 16:57 - 00826576 _____ (SurfRight B.V.) C:\WINDOWS\system32\hmpalert.dll
2016-06-26 20:25 - 2015-05-07 16:57 - 00175472 _____ (SurfRight B.V.) C:\WINDOWS\system32\Drivers\hmpalert.sys
2016-06-26 20:25 - 2015-05-07 16:57 - 00080424 _____ (SurfRight B.V.) C:\WINDOWS\system32\Drivers\hmpnet.sys
2016-06-26 19:39 - 2010-11-14 14:35 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-06-26 16:36 - 2014-07-26 18:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-06-26 16:25 - 2014-07-26 18:52 - 00000000 ___RD C:\Users\marc_m\OneDrive
2016-06-26 16:23 - 2015-06-15 11:12 - 00000000 ____D C:\Users\marc_m\AppData\Local\Dropbox
2016-06-26 16:20 - 2016-04-27 07:55 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-06-26 16:06 - 2015-10-30 09:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-06-26 16:04 - 2016-04-27 07:34 - 00000000 ____D C:\Program Files\Windows Journal
2016-06-26 16:04 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-06-26 16:04 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-06-26 16:04 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-06-26 16:04 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-06-26 16:04 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-06-26 16:04 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-06-26 16:03 - 2016-04-27 07:48 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-06-26 15:57 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-06-26 15:57 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2016-06-26 15:57 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-06-26 15:57 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-06-26 15:57 - 2015-10-30 09:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2016-06-26 15:57 - 2015-10-30 09:19 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2016-06-26 15:57 - 2015-10-30 09:19 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2016-06-26 15:57 - 2015-10-30 09:19 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2016-06-26 15:57 - 2015-10-30 09:19 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2016-06-26 15:57 - 2015-10-30 09:19 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2016-06-26 15:57 - 2015-10-30 09:19 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2016-06-26 15:57 - 2015-10-30 09:19 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2016-06-26 15:57 - 2015-10-30 09:19 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2016-06-26 15:57 - 2015-10-30 09:19 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2016-06-26 15:57 - 2015-10-30 09:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2016-06-26 15:57 - 2015-10-30 09:19 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2016-06-26 15:57 - 2015-10-30 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2016-06-26 15:57 - 2015-10-30 09:19 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2016-06-26 15:57 - 2015-10-30 09:18 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2016-06-26 15:57 - 2015-10-30 09:18 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2016-06-26 15:57 - 2015-10-30 09:18 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2016-06-26 15:57 - 2015-10-30 09:18 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2016-06-26 15:57 - 2015-10-30 09:18 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2016-06-26 15:57 - 2015-10-30 09:18 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2016-06-26 15:57 - 2015-10-30 09:18 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2016-06-26 15:57 - 2015-10-30 09:18 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2016-06-26 15:56 - 2015-10-30 09:19 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2016-06-26 15:56 - 2015-10-30 09:19 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2016-06-26 15:56 - 2015-10-30 09:18 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2016-06-26 15:56 - 2015-10-30 09:18 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2016-06-26 15:56 - 2015-10-30 09:18 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2016-06-26 15:56 - 2015-10-30 09:18 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2016-06-26 15:56 - 2015-10-30 09:18 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2016-06-26 15:41 - 2016-04-27 07:19 - 00000000 ____D C:\WINDOWS\OCR
2016-06-26 15:33 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-06-26 15:30 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-06-26 15:29 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-06-26 15:29 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows NT
2016-06-26 15:28 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Registration
2016-06-26 15:27 - 2016-02-27 16:07 - 00004216 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-06-26 15:27 - 2016-02-27 16:07 - 00003964 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-06-26 15:27 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media
2016-06-26 15:27 - 2015-10-30 09:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-06-26 15:21 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-06-26 15:21 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-06-26 15:21 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-06-26 15:21 - 2015-06-24 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-06-26 15:21 - 2015-06-15 11:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-06-26 15:21 - 2015-05-07 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro.Alert
2016-06-26 15:21 - 2015-01-13 18:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-06-26 15:21 - 2014-07-27 20:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook Shutdown Addin
2016-06-26 15:21 - 2014-07-27 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking 12.5
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.2
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roxio Creator DE
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PantsOff
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ELOoffice
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Color Printer Driver (DEMO)
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP4900 series Manual
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP4900 series Benutzerregistrierung
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP4900 series
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Broadcom
2016-06-26 15:21 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anti-Dupe for Microsoft Outlook
2016-06-26 15:21 - 2014-07-26 13:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orlogix Transfer MyPC
2016-06-26 15:21 - 2014-07-11 17:03 - 00000000 ____D C:\Program Files (x86)\Dell Backup and Recovery
2016-06-26 15:21 - 2014-07-11 17:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2016-06-26 15:21 - 2014-07-11 16:53 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-06-26 15:19 - 2009-07-14 05:20 - 00000000 ____D C:\Users\Default.migrated
2016-06-26 15:16 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2016-06-26 15:16 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2016-06-26 15:16 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-06-26 15:16 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-06-26 15:16 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\IME
2016-06-26 15:16 - 2014-07-26 18:31 - 00000000 ___HD C:\WINDOWS\SysWOW64\CanonIJ Uninstaller Information
2016-06-26 15:16 - 2014-07-26 18:31 - 00000000 ____D C:\WINDOWS\SysWOW64\spool
2016-06-26 15:15 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-06-26 15:15 - 2015-10-30 09:24 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-06-26 15:15 - 2015-10-30 09:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-06-26 15:15 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\schemas
2016-06-26 15:15 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-06-26 15:15 - 2014-07-27 12:17 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2016-06-26 15:15 - 2014-07-26 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell ControlPoint
2016-06-26 15:15 - 2014-07-11 17:48 - 00000000 ____D C:\Program Files (x86)\Intel
2016-06-26 15:15 - 2010-11-21 09:00 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-06-26 15:15 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker
2016-06-26 15:13 - 2016-03-22 14:08 - 00000000 ____D C:\Users\marc_m\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2016-06-26 15:13 - 2014-07-26 21:08 - 00000000 ____D C:\Users\marc_m\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ABF software
2016-06-26 15:11 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-06-26 14:45 - 2009-07-14 06:45 - 00031088 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-26 14:45 - 2009-07-14 06:45 - 00031088 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-26 14:42 - 2016-04-27 09:16 - 00000000 ___HD C:\$WINDOWS.~BT
2016-06-26 12:03 - 2014-07-26 19:40 - 00000000 ____D C:\Users\marc_m\AppData\Local\OXSTORE2
2016-06-26 12:03 - 2014-07-26 18:51 - 00000000 ____D C:\Users\administrator\AppData\Roaming\Apple Computer
2016-06-26 11:14 - 2014-07-26 18:35 - 00000000 ____D C:\Program Files (x86)\Google
2016-06-26 10:59 - 2014-07-26 13:11 - 00000000 ____D C:\ProgramData\softthinks
2016-06-26 10:47 - 2015-06-24 15:07 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-06-26 10:47 - 2014-07-26 18:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-06-26 10:39 - 2016-03-22 18:13 - 00000000 ____D C:\Program Files\paint.net
2016-06-15 03:10 - 2014-07-27 21:38 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-06-15 03:03 - 2014-07-27 21:38 - 142482544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-06-14 20:33 - 2015-10-30 09:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-06-14 20:33 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2014-08-08 21:14 - 2014-08-08 21:14 - 0000421 _____ () C:\Users\marc_m\AppData\Roaming\1_and_1_redirect.xml
2014-07-28 12:30 - 2014-07-28 12:30 - 0000093 _____ () C:\Users\marc_m\AppData\Roaming\ARCompanion.log
2010-12-13 13:38 - 2016-07-06 09:12 - 0002279 _____ () C:\Users\marc_m\AppData\Roaming\SAS7_000.DAT
2012-12-12 17:55 - 2014-06-10 18:41 - 0007593 _____ () C:\Users\marc_m\AppData\Local\Resmon.ResmonCfg
2015-06-07 10:39 - 2015-06-10 03:22 - 0716800 _____ () C:\ProgramData\excalibur.db
Einige Dateien in TEMP:
====================
C:\Users\marc_m\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2016-07-07 07:28
==================== Ende von FRST.txt ============================ addition: Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 10-07-2016 01
durchgeführt von marc_m (2016-07-12 22:32:02)
Gestartet von C:\Users\marc_m\Downloads
Windows 10 Pro Version 1511 (X64) (2016-06-26 13:33:01)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-859665082-2199905478-70735853-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-859665082-2199905478-70735853-503 - Limited - Disabled)
Gast (S-1-5-21-859665082-2199905478-70735853-501 - Limited - Disabled)
marc_m (S-1-5-21-859665082-2199905478-70735853-1002 - Administrator - Enabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Aastra 100 TAPI (HKLM\...\Aastra 100 TAPI) (Version: 1.315.30 - Aastra Telecom Schweiz AG)
ABF Outlook Backup (HKLM-x32\...\{1C17D085-9134-4D61-BC83-46DF08CE30F7}) (Version: 3.2.1.63 - ABF software, Inc.)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated)
Adobe DNG Codec (HKLM-x32\...\Adobe DNG Codec) (Version: 2.0.0.0 - Adobe Systems Incorporated)
Amazon Kindle (HKU\S-1-5-21-823518204-1454471165-839522115-1117\...\Amazon Kindle) (Version: 1.15.0.43061 - Amazon)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{100E94A6-F85A-E828-9EE3-C1DD14706B6A}) (Version: 3.0.855.0 - Advanced Micro Devices, Inc.)
Anti-Dupe for Microsoft Outlook (HKLM-x32\...\Anti-Dupe for Microsoft Outlook) (Version: 2.0 - Lookout Software, Ltd.)
Apple Application Support (32-Bit) (HKLM-x32\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{C2651553-6CA3-4822-B2E6-BC4ACA6E0EA2}) (Version: 4.3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)
Apple Mobile Device Support (HKLM-x32\...\{18D47FA1-0440-48D3-A7E0-DA09537FF471}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.17.273 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{3d9e0476-943f-4962-99dc-b9c937a43840}) (Version: 1.1.65.9690 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.65.9690 - Avira Operations GmbH & Co. KG) Hidden
Avira Management Console Agent (HKLM-x32\...\{F3493E2F-B147-4EDD-9AE2-5DEDB8776232}) (Version: - Avira Operations GmbH & Co. KG)
Bonjour (HKLM-x32\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom NetXtreme-I Netlink Driver and Management Installer (HKLM-x32\...\{2E98C5B7-D64C-4D7E-BFC3-A7D078569F28}) (Version: 12.25.02 - Broadcom Corporation)
Canon iP4900 series Benutzerregistrierung (HKLM-x32\...\Canon iP4900 series Benutzerregistrierung) (Version: - )
Canon iP4900 series On-screen Manual (HKLM-x32\...\Canon iP4900 series On-screen Manual) (Version: - )
Canon iP4900 series Printer Driver (HKLM-x32\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4900_series) (Version: - )
Citrix Receiver (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 14.3.0.5014 - Citrix Systems, Inc.)
Color Printer Driver (DEMO) (HKLM-x32\...\{6B76B9F9-4FE9-4C85-9FC3-BFA38282C59A}) (Version: 13.02 - Black Ice Software LLC)
Color Printer Driver (DEMO) (x32 Version: 6.00.000 - Black Ice Software LLC) Hidden
Custom (Version: 01.00.00.002 - Wave Systems Corp.) Hidden
Dell Backup and Recovery - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.7.1.2 - Dell Inc.)
Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.7.1.2 - Dell Inc.)
Dell Client System Update (HKLM-x32\...\{04566294-A6B6-4462-9721-031073EB3694}) (Version: 1.3.0 - Dell Inc.)
Dell Data Protection | Access (HKLM\...\{ABBA2EA4-740E-4052-902B-9CA70B081E3F}) (Version: 2.3.00001.021 - Dell Inc.)
Dell Digital Delivery (HKLM-x32\...\{D850CB7E-72BC-4510-BA4F-48932BFAB295}) (Version: 2.9.901.0 - Dell Products, LP)
Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Protected Workspace (HKLM-x32\...\{E2CAA395-66B3-4772-85E3-6134DBAB244E}) (Version: 2.3.15835 - Invincea, Inc.)
DellAccess (Version: 01.03.00.046 - Wave Systems Corp.) Hidden
Document Manager Lite (x32 Version: 06.09.00.159 - Ihr Firmenname) Hidden
Dragon NaturallySpeaking 12 (HKLM-x32\...\{D5D422B9-6976-4E98-8DDF-9632CB515D7E}) (Version: 12.50.000 - Nuance Communications Inc.)
Dropbox (HKU\S-1-5-21-823518204-1454471165-839522115-1117\...\Dropbox) (Version: 6.4.14 - Dropbox, Inc.)
ELO Pdf Drucker (HKLM-x32\...\{C7ACA1FD-E1A7-42D1-93C2-6EBD868584E9}) (Version: 6.0 - ELO Digital Office GmbH)
ELOoffice (HKLM-x32\...\{C08EF2EB-27C6-4E99-B5C3-15AE8210B614}) (Version: 9.0 - ELO Digital Office GmbH)
EMBASSY Client Core (Version: 01.03.00.092 - Wave Systems Corp.) Hidden
EMBASSY Security Center (x32 Version: 04.00.00.101 - Ihr Firmenname) Hidden
EMBASSY Security Setup (x32 Version: 04.00.00.090 - Ihr Firmenname) Hidden
ERAS Connector (Version: 02.09.05.0330 - Wave Systems Corp) Hidden
ESC Home Page Plugin (x32 Version: 04.00.00.018 - Ihr Firmenname) Hidden
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
Gemalto (Version: 01.64.01.0010 - Wave Systems Corp) Hidden
GemPcCCID (Version: 2.0.1 - Gemalto) Hidden
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7619.1252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.14.265 - SurfRight B.V.)
HitmanPro.Alert (HKLM\...\HitmanPro.Alert) (Version: 3.1.11.374 - SurfRight B.V.)
iCloud (HKLM\...\{ADFDB647-35C0-4254-9EE6-2D9C3B7104BD}) (Version: 5.2.1.69 - Apple Inc.)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2182 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel(R) Network Connections 17.2.154.0 (HKLM\...\PROSetDX) (Version: 17.2.154.0 - Intel)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.8.251 - Intel Corporation)
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Java(TM) 6 Update 20 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216020F0}) (Version: 6.0.200 - Sun Microsystems, Inc.)
Java(TM) 6 Update 26 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216020FF}) (Version: 6.0.260 - Sun Microsystems, Inc.)
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}) (Version: - Microsoft)
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 15.0.4833.1001 - Microsoft Corporation)
Microsoft Office Language Pack 2007 - German/Deutsch (HKLM-x32\...\OMUI.de-de) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 47.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 de)) (Version: 47.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NTRU TCG Software Stack (x32 Version: 2.1.29 - NTRU Cryptosystems) Hidden
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4833.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4833.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (Version: 15.0.4833.1001 - Microsoft Corporation) Hidden
Online Plug-in (x32 Version: 14.3.0.5014 - Citrix Systems, Inc.) Hidden
OpenOffice.org 3.2 (HKLM-x32\...\{DFFC0648-BC4B-47D1-93D2-6CA6B9457641}) (Version: 3.2.9502 - OpenOffice.org)
Orlogix Transfer MyPC (HKLM-x32\...\{1F01679B-A09D-4799-BE30-B952ECCC9539}) (Version: 7.00.627.0 - Orlogix)
PBA Driver (Version: 1.0.1.7 - Dell Inc.) Hidden
PC Monitor (HKLM-x32\...\{782875A1-5451-44B7-8CA2-24D254E929A1}) (Version: 1.5.9 - MMSOFT Design)
PowerDVD DX (HKLM-x32\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 8.3.5424 - CyberLink Corp.)
Preboot Manager (Version: 03.05.00.026 - Wave Systems Corp.) Hidden
Private Information Manager (Version: 07.03.00.016 - Wave Systems Corp.) Hidden
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6075 - Realtek Semiconductor Corp.)
Roxio Creator DE 10.3 (HKLM-x32\...\{09760D42-E223-42AD-8C3E-55B47D0DDAC3}) (Version: 10.3 - Roxio)
Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.)
Security Wizards (x32 Version: 01.07.00.026 - Ihr Firmenname) Hidden
Self-Service Plug-in (x32 Version: 4.3.0.8352 - Citrix Systems, Inc.) Hidden
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SI TSS (Version: 2.1.41 - Security Innovation) Hidden
SPBA (WBF) 5.9 (Version: 5.9.7.7232 - Authentec Inc.) Hidden
TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.41110 - TeamViewer)
toolkit32for64bit (x32 Version: 7.68.85.0013 - Wave Systems Corp) Hidden
Trusted Drive Manager (Version: 5.0.0.304 - Wave Systems Corp.) Hidden
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
Visual C++ Runtime for Dragon NaturallySpeaking (HKLM-x32\...\{4A5A427F-BA39-4BF0-9A47-9999FBE60C9F}) (Version: 10.00.200.184 - Nuance Communications Inc.)
Wave Crypto Runtime 2.0.9.0 x64 (Version: 02.00.09.0000 - Wave Systems Corp) Hidden
Wave Crypto Runtime 2.0.9.0 x86 (x32 Version: 02.00.09.0000 - Wave Systems Corp) Hidden
Wave Infrastructure Installer (Version: 07.68.85.0014 - Wave Systems Corp) Hidden
Wave Support Software (x32 Version: 05.10.00.073 - Ihr Firmenname) Hidden
Wave Support Software Installer (Version: 05.15.00.021 - Wave Systems Corp) Hidden
Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Mobile-Gerätecenter (HKLM-x32\...\{904CCF62-818D-4675-BC76-D37EB399F917}) (Version: 6.1.6965.0 - Microsoft Corporation)
Windows Mobile-Gerätecenter: Treiberupdate (HKLM-x32\...\{CB8CA439-DA83-419C-A4CF-5A0A50025144}) (Version: 6.0.6783.0 - Microsoft Corporation)
WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - )
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\marc_m\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-823518204-1454471165-839522115-1117_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\marc_m\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {01A2B1DD-F890-4399-AA00-AEFE6F2980C6} - System32\Tasks\Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202}
Task: {05E32AD0-7A94-4B84-BD1D-5298FA5F40CE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-27] (Google Inc.)
Task: {185A674D-87FB-4FCA-8C26-BE9D5AABCA83} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {1FDEEFC3-4B7F-449A-9AD8-CE64F16D5C63} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK
Task: {292B79BB-2EF2-41B8-8BE3-12A8CAE0399B} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {36B8B1D3-810C-4327-82DF-2821CBF31B94} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {39C8CDB5-DA9D-4DBC-8031-4340A9F44B16} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {3B7C6798-5493-4BEB-8769-0F2704061BAD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated)
Task: {3BDA2C91-AF37-470B-893F-6B1D42AB51B4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-27] (Google Inc.)
Task: {4B5FA890-EDB2-422F-9D0D-35055B731079} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {4E6F4640-B7C4-4F7B-870A-0B8AAA37BA72} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {59F1757C-9816-447B-8E29-6E06018D566D} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {5ED63C18-EA08-43FE-959D-A28D24505920} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {64EF9BC7-37EB-4E2B-A89E-4D325C6653DE} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {6CF6557F-DDE0-4743-A498-8ECF895D150C} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {73159D62-EE27-4D2B-ACDA-B9D349278901} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {74B37D36-25B5-41BE-9FD4-D9909D71E132} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {75284ACA-2E72-4B07-A928-AD6CF1DF47BC} - System32\Tasks\WSCEAA => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\RemoteManagement\WSCEAA.exe [2012-10-17] (Wave Systems Corp.)
Task: {7529BC7D-0CAB-4746-9866-3C15BF926429} - System32\Tasks\Microsoft\Windows\GroupPolicy\{3E0A038B-D834-4930-9981-E89C9BFF83AA}
Task: {7D267B94-01C5-4228-8F06-F55DBEAFEC04} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {8F7D19BE-9F9C-49AE-8D39-E6391B58D406} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {90343D93-8975-474B-9E89-1D35DEC0E04C} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {9CAFF8C8-A8CC-47B5-98D3-B9E9BDA11A01} - System32\Tasks\{201ED2F4-23A1-4AA0-9377-69F528DE1443} => pcalua.exe -a "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" -c /uninstall OMUI.DE-DE /dll OSETUP.DLL
Task: {ACA872FF-22DC-48CB-8071-4B8DCAD38A5C} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {AEF7D746-A26F-416E-AECB-19F519013E2D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {B70FADC0-91A8-4367-98A4-5FA64694D835} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {BED153B0-E7E3-4CE5-91C6-ECF2F1A7B6A7} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {C8DC1C0C-FDC2-4FE5-A099-CF8137767F4F} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {E102820D-FA29-4012-BFF5-3ABA974F2E20} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {E31AF985-FBD8-40CF-83DF-0CA972B586D9} - System32\Tasks\{246A192D-0615-44CF-8D80-3AC56DE2AF72} => pcalua.exe -a C:\Windows\IsUn0407.exe -c -f"C:\Program Files (x86)\ELOoffice\Uninst.isu" -c"C:\Program Files (x86)\ELOoffice\ELOUninst.dll"
Task: {E9C110D1-4356-4855-929E-1957F4FCCDC8} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {EA749AD3-D4FA-4C99-B7FA-376926711032} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {ECE9FA93-5CE1-4CC2-80FD-9D93B6205332} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-04-12] (Microsoft Corporation)
Task: {F0D7D528-E411-4A87-8530-A30D4DF56E2B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-04-12] (Microsoft Corporation)
Task: {FD453DB2-3FCB-4F3D-8D29-0115C1A386FC} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-823518204-1454471165-839522115-1117Core1d0c1c337368cf6.job => C:\Users\marc_m\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-07-05 19:02 - 2016-04-19 19:26 - 00114888 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2016-04-22 01:07 - 2016-04-22 01:07 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-04-22 01:07 - 2016-04-22 01:07 - 01337144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2012-11-23 16:34 - 2012-11-23 16:34 - 00020480 _____ () C:\Program Files\Dell\Dell Data Protection\Access\Advanced\hapi64\pbadrvsvc.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-06-26 17:17 - 2016-06-26 17:17 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-06-26 16:03 - 2016-06-26 16:03 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-06-26 16:25 - 2016-06-26 16:25 - 00959168 _____ () C:\Users\marc_m\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-04-27 07:17 - 2016-04-27 07:17 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-06-26 16:03 - 2016-06-26 16:03 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-04-10 14:30 - 2014-04-10 14:30 - 00134664 _____ () c:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll
2014-07-11 16:53 - 2013-11-13 23:23 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2016-06-26 17:17 - 2016-06-26 17:17 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-06-26 17:17 - 2016-06-26 17:17 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-04-22 01:08 - 2016-04-22 01:08 - 01047864 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2016-04-22 01:08 - 2016-04-22 01:08 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2016-04-22 01:07 - 2016-04-22 01:07 - 00244024 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll
2015-12-10 01:56 - 2016-06-07 03:58 - 00034768 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2016-07-11 20:56 - 2016-06-07 03:58 - 00134088 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2016-07-11 20:56 - 2016-06-07 03:59 - 00019408 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2016-07-11 20:56 - 2016-06-07 03:58 - 00116688 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2015-12-10 01:56 - 2016-06-07 03:58 - 00093640 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2015-12-10 01:56 - 2016-06-07 03:58 - 00018376 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\select.pyd
2015-12-10 01:56 - 2016-07-05 20:00 - 00019760 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00105928 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32api.pyd
2016-07-11 20:56 - 2016-06-07 03:58 - 00392144 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2015-12-10 01:56 - 2016-07-05 20:00 - 00381752 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2015-12-10 01:56 - 2016-06-07 03:58 - 00692688 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2016-07-11 20:56 - 2016-07-05 19:59 - 00020816 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2015-12-10 01:56 - 2016-06-07 03:59 - 00123856 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2016-07-11 20:56 - 2016-07-05 19:59 - 01682760 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2016-07-11 20:56 - 2016-07-05 19:59 - 00020808 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2015-12-10 01:56 - 2016-07-05 20:00 - 00021840 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00052024 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00038696 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\fastpath.pyd
2016-07-11 20:56 - 2016-06-07 04:00 - 00020936 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00024528 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32event.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00114640 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32security.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00124880 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32file.pyd
2016-02-11 01:27 - 2016-07-05 20:00 - 00021832 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00024016 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00175560 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32gui.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00030160 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00043472 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32process.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00048592 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32service.pyd
2016-02-11 01:27 - 2016-07-05 20:00 - 00023872 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\winffi.kernel32._winffi_kernel32.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00026456 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00057808 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32evtlog.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00024016 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32profile.pyd
2016-07-11 20:56 - 2016-07-05 19:59 - 00246592 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00028616 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32ts.pyd
2016-02-11 01:27 - 2016-07-05 20:00 - 00020800 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-02-11 01:27 - 2016-07-05 20:00 - 00019776 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd
2016-02-11 01:27 - 2016-07-05 20:00 - 00020800 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd
2015-12-10 01:56 - 2016-06-07 03:58 - 00134608 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\_elementtree.pyd
2016-07-11 20:56 - 2016-06-07 03:59 - 00240584 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\jpegtran.pyd
2016-07-11 20:56 - 2016-07-05 19:59 - 00020280 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2015-12-10 01:56 - 2016-07-05 20:00 - 00023376 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00350152 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2016-02-11 01:27 - 2016-07-05 20:00 - 00022352 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00024392 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2016-07-11 20:56 - 2016-06-07 04:01 - 00036296 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\librsync.dll
2016-07-11 20:56 - 2016-07-05 20:00 - 00031568 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\enterprise_data.compiled._enterprise_data.pyd
2016-07-11 20:56 - 2016-03-12 02:46 - 00293392 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\EnterpriseDataAdapter.dll
2016-07-11 20:56 - 2016-07-05 20:00 - 00084280 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2016-07-11 20:56 - 2016-07-05 20:00 - 01826096 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2015-12-10 01:56 - 2016-06-07 03:59 - 00083912 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\sip.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 03928880 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 01971504 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00531248 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00132912 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00223544 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00207672 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2015-12-10 01:56 - 2016-06-07 04:00 - 00060880 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\win32print.pyd
2016-04-15 07:10 - 2016-07-05 20:00 - 00025928 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\windisplaytoast.compiled._DisplayToast.pyd
2015-12-10 01:56 - 2016-07-05 20:00 - 00024904 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00546096 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2016-07-11 20:56 - 2016-07-05 20:00 - 00357680 _____ () C:\Users\marc_m\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\ProgramData\TEMP:0FF263E8 [247]
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 04:34 - 2016-06-26 13:34 - 00000942 ____N C:\WINDOWS\system32\Drivers\etc\hosts
s
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-823518204-1454471165-839522115-1117\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 172.30.96.2 - 212.18.0.5
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
MSCONFIG\startupreg: WavXMgr => C:\Program Files (x86)\Wave Systems Corp\Services Manager\Docmgr\bin\WavXDocMgr.exe
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{8D2B95E5-2C6E-48A1-9645-546C9143D6B3}] => (Allow) C:\ProgramData\eAHPeNhIUJ\protect\protect.exe
FirewallRules: [{CDA04D1C-4A75-44B4-B9E3-E6A418A3FC05}] => (Allow) C:\Program Files (x86)\Avira\Avira Security Management Center Agent\agent.exe
FirewallRules: [{3A1E7777-F420-4DD1-A83F-0CD8B69DB4D0}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{4497F475-3A43-492A-A839-16145AC6DC20}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
FirewallRules: [{BE79D8A5-1BAD-4086-AB65-91C6AC844B53}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
FirewallRules: [{505CA45F-E904-4824-99C3-869F02E943A5}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
FirewallRules: [{1888087B-FA81-435B-A612-5F1623D03100}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
FirewallRules: [UDP Query User{FF9B5281-4BD3-4431-BA83-201E1F3F0547}C:\users\marc_m\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\marc_m\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [TCP Query User{D0B697FA-5678-418D-8F11-5269A6AB4D33}C:\users\marc_m\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\marc_m\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{101FDB63-0FE1-4F00-89B0-A80EA183FFAA}C:\programdata\elo digital office\volltext\bin\eloocr_fr.exe] => (Allow) C:\programdata\elo digital office\volltext\bin\eloocr_fr.exe
FirewallRules: [TCP Query User{9D4037EF-9F05-492F-A227-59452437ED55}C:\programdata\elo digital office\volltext\bin\eloocr_fr.exe] => (Allow) C:\programdata\elo digital office\volltext\bin\eloocr_fr.exe
FirewallRules: [{92D76126-A552-4E4A-A7AE-AB4833FE71C2}] => (Allow) C:\Users\marc_m\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{87F8BA92-E873-4040-9F41-42FDA2B4F969}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{32805B31-B708-4276-B449-6EA6051ACB1D}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{21A20B86-C182-427A-8F09-B47859C69A85}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
FirewallRules: [{6A5ABB27-F89F-4E7F-8376-46C019C12237}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
FirewallRules: [{08D39545-42A1-4099-A4BB-B0502B35AA9F}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
FirewallRules: [{B01706B0-3A14-4DCE-AFA9-D80AE93051AE}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
FirewallRules: [{9768B49D-DC86-42E6-82C3-5975324423FC}] => (Allow) C:\Program Files (x86)\Orlogix\TransferMyPC\pcmover.exe
FirewallRules: [{4E3E6D1C-EA80-4DF8-B36D-F58889D609D5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{DDB3C5E2-F414-4E09-8D32-27FDE6422E6E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{CED0EE65-C97F-4F4D-8B63-822929EE4B68}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
==================== Wiederherstellungspunkte =========================
10-07-2016 09:42:12 Geplanter Prüfpunkt
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (07/12/2016 10:24:19 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8
Error: (07/12/2016 10:23:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: EmbassyServer.exe, Version: 1.3.0.117, Zeitstempel: 0x50ab6eb4
Name des fehlerhaften Moduls: EmbassyServer.exe, Version: 1.3.0.117, Zeitstempel: 0x50ab6eb4
Ausnahmecode: 0xc0000417
Fehleroffset: 0x0000000000016224
ID des fehlerhaften Prozesses: 0x9e4
Startzeit der fehlerhaften Anwendung: 0xEmbassyServer.exe0
Pfad der fehlerhaften Anwendung: EmbassyServer.exe1
Pfad des fehlerhaften Moduls: EmbassyServer.exe2
Berichtskennung: EmbassyServer.exe3
Vollständiger Name des fehlerhaften Pakets: EmbassyServer.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: EmbassyServer.exe5
Error: (07/12/2016 03:18:21 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: OFFICE)
Description: Bei der Aktivierung der App „Microsoft.Windows.Photos_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (07/12/2016 03:18:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Microsoft.Photos.exe, Version: 16.526.11240.0, Zeitstempel: 0x574744f3
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xe0464645
Fehleroffset: 0x0000000000000000
ID des fehlerhaften Prozesses: 0x5f38
Startzeit der fehlerhaften Anwendung: 0xMicrosoft.Photos.exe0
Pfad der fehlerhaften Anwendung: Microsoft.Photos.exe1
Pfad des fehlerhaften Moduls: Microsoft.Photos.exe2
Berichtskennung: Microsoft.Photos.exe3
Vollständiger Name des fehlerhaften Pakets: Microsoft.Photos.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.Photos.exe5
Error: (07/12/2016 02:47:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SearchUI.exe, Version: 10.0.10586.420, Zeitstempel: 0x57491ba1
Name des fehlerhaften Moduls: Windows.UI.Xaml.dll, Version: 10.0.10586.306, Zeitstempel: 0x571af9f6
Ausnahmecode: 0xc000027b
Fehleroffset: 0x0000000000281f52
ID des fehlerhaften Prozesses: 0x1e6c
Startzeit der fehlerhaften Anwendung: 0xSearchUI.exe0
Pfad der fehlerhaften Anwendung: SearchUI.exe1
Pfad des fehlerhaften Moduls: SearchUI.exe2
Berichtskennung: SearchUI.exe3
Vollständiger Name des fehlerhaften Pakets: SearchUI.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SearchUI.exe5
Error: (07/11/2016 08:49:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: OFFICE)
Description: Bei der Aktivierung der App „windows.immersivecontrolpanel_cw5n1h2txyewy!microsoft.windows.immersivecontrolpanel“ ist folgender Fehler aufgetreten: -2147023169. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (07/11/2016 08:48:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.10586.11, Zeitstempel: 0x56457cb1
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xe0464645
Fehleroffset: 0x0000000000000000
ID des fehlerhaften Prozesses: 0x4498
Startzeit der fehlerhaften Anwendung: 0xSystemSettings.exe0
Pfad der fehlerhaften Anwendung: SystemSettings.exe1
Pfad des fehlerhaften Moduls: SystemSettings.exe2
Berichtskennung: SystemSettings.exe3
Vollständiger Name des fehlerhaften Pakets: SystemSettings.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SystemSettings.exe5
Error: (07/11/2016 08:48:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SearchUI.exe, Version: 10.0.10586.420, Zeitstempel: 0x57491ba1
Name des fehlerhaften Moduls: Windows.UI.Xaml.dll, Version: 10.0.10586.306, Zeitstempel: 0x571af9f6
Ausnahmecode: 0xc000027b
Fehleroffset: 0x0000000000281f52
ID des fehlerhaften Prozesses: 0x2cf8
Startzeit der fehlerhaften Anwendung: 0xSearchUI.exe0
Pfad der fehlerhaften Anwendung: SearchUI.exe1
Pfad des fehlerhaften Moduls: SearchUI.exe2
Berichtskennung: SearchUI.exe3
Vollständiger Name des fehlerhaften Pakets: SearchUI.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SearchUI.exe5
Error: (07/11/2016 04:48:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 2.3.173.0, Zeitstempel: 0x56e065b4
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x80000e30
ID des fehlerhaften Prozesses: 0x1600
Startzeit der fehlerhaften Anwendung: 0xmbam.exe0
Pfad der fehlerhaften Anwendung: mbam.exe1
Pfad des fehlerhaften Moduls: mbam.exe2
Berichtskennung: mbam.exe3
Vollständiger Name des fehlerhaften Pakets: mbam.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: mbam.exe5
Error: (07/10/2016 09:42:19 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.
System Error:
Zugriff verweigert
.
Systemfehler:
=============
Error: (07/12/2016 10:27:36 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Windows Mobile 2003-basierte Gerätekonnektivität" ist vom Dienst "Windows Mobile-basierte Geräteverbindungen" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1053 = Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (07/12/2016 10:27:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Mobile-basierte Geräteverbindungen" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053 = Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (07/12/2016 10:27:36 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Mobile-basierte Geräteverbindungen erreicht.
Error: (07/12/2016 10:27:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Mobile-basierte Geräteverbindungen" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053 = Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (07/12/2016 10:27:13 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Mobile-basierte Geräteverbindungen erreicht.
Error: (07/12/2016 10:24:40 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "EmbassyService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (07/12/2016 10:23:58 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1058) (User: NT-AUTORITÄT)
Description: Fehler bei der Verarbeitung der Gruppenrichtlinie. Der Versuch, die Datei "\\office.local\sysvol\office.local\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini" von einem Domänencontroller zu lesen, war nicht erfolgreich. Die Gruppenrichtlinieneinstellungen dürfen nicht angewendet werden, bis dieses Ereignis behoben ist. Dies ist möglicherweise ein vorübergehendes Problem, das mindestens eine der folgenden Ursachen haben kann:
a) Namensauflösung/Netzwerkverbindung mit dem aktuellen Domänencontroller.
b) Wartezeit des Dateireplikationsdienstes (eine auf einem anderen Domänencontroller erstellte Datei hat nicht auf dem aktuellen Domänencontroller repliziert).
c) Der DFS-Client (Distributed File System) wurde deaktiviert.
Error: (07/12/2016 10:23:55 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1058 = Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (07/12/2016 10:23:47 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "WvPCR" ist von folgendem Dienst abhängig: TBS. Dieser Dienst ist möglicherweise nicht installiert.
Error: (07/12/2016 10:23:47 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "tcsd_win32.exe" ist von folgendem Dienst abhängig: TBS. Dieser Dienst ist möglicherweise nicht installiert.
CodeIntegrity:
===================================
Date: 2016-07-05 19:06:56.993
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-07-05 19:01:10.255
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-07-03 16:10:21.280
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-27 18:59:12.990
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-27 13:05:22.778
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-26 19:27:49.263
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-26 18:47:35.590
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-26 15:47:24.337
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-26 15:29:18.422
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-26 15:26:26.307
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Prozentuale Nutzung des RAM: 28%
Installierter physikalischer RAM: 8146.55 MB
Verfügbarer physikalischer RAM: 5801.39 MB
Summe virtueller Speicher: 16338.55 MB
Verfügbarer virtueller Speicher: 13595.5 MB
==================== Laufwerke ================================
Drive c: (OS) (Fixed) (Total:919.22 GB) (Free:736.33 GB) NTFS
Drive d: (Disc) (CDROM) (Total:0.05 GB) (Free:0 GB) CDFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 931.5 GB) (Disk ID: 9FA98D24)
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Active) - (Size=12.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=919.2 GB) - (Type=07 NTFS)
==================== Ende von Addition.txt ============================ |