Christian123 | 19.07.2017 20:03 | FRST Additions Logfile: Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 18-07-2017
durchgeführt von Privat (19-07-2017 20:57:46)
Gestartet von D:\Downloads
Windows 8.1 Professional (Update) (X64) (2014-06-09 11:11:22)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-2210286070-902605142-1894119712-500 - Administrator - Disabled)
Gast (S-1-5-21-2210286070-902605142-1894119712-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-2210286070-902605142-1894119712-1008 - Limited - Enabled)
Privat (S-1-5-21-2210286070-902605142-1894119712-1001 - Administrator - Enabled) => C:\Users\Privat
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {A16C3F68-9280-E053-1818-342707FECF4D}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
8GadgetPack (HKLM-x32\...\{180B50DF-B2C8-43A1-AB97-2101AA62DDD3}) (Version: 12.0.0 - Helmut Buhler)
ACDSee (HKLM-x32\...\ACDSee) (Version: - )
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 17.009.20058 - Adobe Systems Incorporated)
Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.131 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Advanced PDF to TEXT converter 1.8 (HKLM-x32\...\Advanced PDF to TEXT converter_is1) (Version: 1.8 - IntraPDF)
Apple Application Support (32-Bit) (HKLM-x32\...\{E92BB800-BCC5-4C25-8102-AC2C3B7C7C1E}) (Version: 5.5 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{9C912B1E-06DD-43EF-BB2B-45CB2C88BAAE}) (Version: 5.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{0A596141-97D5-45FA-9281-98DFAF48D579}) (Version: 10.3.2.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.)
BCL easyConverter 3.0 Licensing Module (BCL License) (HKLM-x32\...\{5598FBEB-CEB5-41CE-BAA4-70128DF02FFB}) (Version: 3.0.18 - BCL Technologies) Hidden
BCL easyConverter 3.0 Loader SDK Module (HKLM-x32\...\{83E61899-81B2-4F35-A3EB-42CF51B94BBD}) (Version: 3.0.18 - BCL Technologies) Hidden
BCL easyConverter 3.0 Module (Loader, BCL License) (HKLM-x32\...\{F8D605A4-979D-43FF-9FD5-6BDDF1E3E288}) (Version: 3.0.18 - BCL Technologies) Hidden
BCL easyConverter 3.0 Module (RTF, BCL License) (HKLM-x32\...\{FBE9E2A1-E7F0-42AA-875A-E230EB9AFA19}) (Version: 3.0.18 - BCL Technologies) Hidden
BCL easyConverter 3.0 RTF SDK Module (HKLM-x32\...\{111225F7-13A9-4AD6-A759-C7923C8981E6}) (Version: 3.0.18 - BCL Technologies) Hidden
BCL easyConverter 3.0 SDK Module (HKLM-x32\...\{E1BDAC32-B358-442C-A337-D91BA0386824}) (Version: 3.0.18 - BCL Technologies) Hidden
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
C309a (HKLM-x32\...\{C045ED98-5FDB-45A0-AB48-C4B7560E7816}) (Version: 140.0.846.000 - Hewlett-Packard) Hidden
CDBurnerXP (HKLM-x32\...\{909A791A-DBB0-432F-BC0E-D0C81925E340}) (Version: 4.5.3.4746 - Canneverbe Limited)
chip 1-click download service (HKLM-x32\...\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}) (Version: 3.6.9.0 - Chip Digital GmbH)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
CyberGhost 6 (HKLM\...\CyberGhost 6_is1) (Version: - CyberGhost S.R.L.)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden
Dropbox (HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\Dropbox) (Version: 30.4.22 - Dropbox, Inc.)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version: - EaseUS)
ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 17.0.4.20160106 - Landesfinanzdirektion Thüringen)
eMule (HKLM-x32\...\eMule) (Version: - )
Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden
File Repair (HKLM-x32\...\File Repair_is1) (Version: - File Repair)
Finanzen.net Vista Gadget (HKLM-x32\...\{C9658186-2517-46D2-83E6-ED202443E5DE}) (Version: 1.0.0 - Smarthouse Media GmbH)
Free Hide IP (HKLM-x32\...\FreeHideIP) (Version: 4.0.0.2 - )
Free M4a to MP3 Converter 9.3 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com)
FreeOCR v5.4 (HKLM-x32\...\freeocr_is1) (Version: - )
FRITZ!Box USB-Fernanschluss (HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\195fa74437467f40) (Version: 2.3.4.0 - AVM Berlin)
Google Toolbar for Internet Explorer (HKLM-x32\...\{18455581-E099-4BA8-BC6B-F34B2F06600C}) (Version: 1.0.0 - Google Inc.) Hidden
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
gs_x64 (HKLM\...\{F48BA767-358B-41F5-95DF-17AE56490D96}) (Version: 9.15 - MAY Computer)
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP LaserJet 1020 Series (HKLM\...\HP LaserJet 1020 Series) (Version: - )
HP Photosmart C309a All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{F089B734-1356-484F-A7B8-1B78F1616A15}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
iBackupBot 5.3.1 (HKLM-x32\...\iBackupBot) (Version: 5.3.1 - VOWSoft, Ltd.)
iCloud (HKLM\...\{5B1A59DA-D1EC-4C3A-A996-DF011A0A9668}) (Version: 6.2.2.39 - Apple Inc.)
iExplorer 3.6.9.0 (HKLM-x32\...\{7FD8B0C1-CDDA-4B4D-A577-B2E3570EA3A3}_is1) (Version: - Macroplant LLC)
iFunbox (v2.95.2610.819), iFunbox DevTeam (HKLM-x32\...\iFunbox_is1) (Version: v2.95.2610.819 - )
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1010 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.1.70.1205 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
iPhone Backup Browser 2.1 (HKLM-x32\...\iPhone Backup Browser_is1) (Version: - iPod PC Transfer)
iPhone Backup Extractor (HKLM-x32\...\{F3AA09BF-B33F-4134-8E62-9AD2E4E1DC4C}) (Version: 6.0.7.832 - Reincubate Ltd) Hidden
iPhone Backup Extractor (HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\iPhone Backup Extractor) (Version: 6.0.7.832 - Reincubate Ltd)
ISO to USB (HKLM-x32\...\{D08A30AC-A663-4EA8-8D81-B98E17F19F1C}_is1) (Version: - isotousb.com)
iTunes (HKLM\...\{F0C7385A-9D20-45F3-8101-05D383885180}) (Version: 12.6.1.25 - Apple Inc.)
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle)
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
JMB36X Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0000 - JMICRON Technology Corp.)
Lexware buchhalter 2017 (HKLM-x32\...\{4AFD4B62-4876-480D-BA39-8230CE09A19E}) (Version: 22.03.00.0261 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Datenbank plus 2015 (HKLM-x32\...\{CDBE389D-6228-47A1-8094-2D8FE203E3DB}) (Version: 15.25.00.0079 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Einnahmen-Überschuss-Rechner 2017 (HKLM-x32\...\{c442d620-aec3-4a8b-8584-ad4fbb07fc14}) (Version: 22.3.0.159 - Haufe-Lexware GmbH & Co.KG)
Lexware Elster (HKLM-x32\...\{F12BE1A8-82BD-4A81-AF0C-E85EC3241F14}) (Version: 17.02.00.0161 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Elster 2017 (HKLM-x32\...\{e82c7378-79e4-405f-8342-79e5850a232a}) (Version: 17.2.0.62 - Haufe-Lexware GmbH & Co.KG)
Lexware Info Service (HKLM-x32\...\{73681446-EE9F-47DF-9185-4BB6B985F743}) (Version: 17.00.00.0028 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Installations Dienst (HKLM-x32\...\{3E7D13DE-D424-4AF6-A2DD-2E28506844E7}) (Version: 5.03.00.0048 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware online banking (HKLM-x32\...\{F84F8DB2-E997-469C-BBC2-F684F4D188FF}) (Version: 23.01.00.0085 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware PDF-Export 5 (HKLM-x32\...\{D6604FDD-E71F-40CA-9764-98649EC969DD}) (Version: 5.50.01.0011 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware reisekosten plus 2015 (HKLM-x32\...\{C2382556-2BDA-4E5F-8C0D-BE251B42139A}) (Version: 15.03.00.0158 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware reisekosten plus Gratisversion 2015 (HKLM-x32\...\{29872c1a-2923-40cc-b5c9-5fcac3ec3d76}) (Version: 15.3.0.109 - Haufe-Lexware GmbH & Co.KG)
Lexware Services (HKLM-x32\...\{49561F21-8F8D-46E5-AB83-C75261590908}) (Version: 3.00.00.0003 - Haufe-Lexware GmbH & Co.KG) Hidden
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden
Microsoft Office 2000 Premium (HKLM-x32\...\{00000407-78E1-11D2-B60F-006097C998E7}) (Version: 9.00.2816 - Microsoft Corporation)
Microsoft Office 97 Developer Tools (HKLM-x32\...\Microsoft Office 97 Developer Tools) (Version: - )
Microsoft Office 97, Professional Edition (HKLM-x32\...\Office8.0) (Version: - )
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Power Map Preview for Excel (HKLM\...\{6CF64AF4-011A-4432-9033-1BA25D3C8F21}) (Version: 1.0.1406 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Report Builder 3.0 (HKLM-x32\...\{C1F938A6-3B5D-415B-A238-FEAAAF0D8F94}) (Version: 10.50.1600.1 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Monitor Off Utility 1.0 (HKLM-x32\...\{10F0131F-1CA2-4433-8473-7C890C769581}_is1) (Version: - Dekisoft)
Mozilla Firefox 54.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 de)) (Version: 54.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.7 - F.J. Wechselberger)
Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden
NVIDIA 3D Vision Treiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 335.23 - NVIDIA Corporation)
NVIDIA Grafiktreiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 335.23 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Ontrack EasyRecovery Home (HKLM-x32\...\{B8686BCF-5181-477F-9CBE-786391011B9C}_is1) (Version: 11.1.0.0 - Kroll Ontrack Inc.)
Outils de vérification linguistique 2013 de Microsoft Office*- Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
PDF24 Creator 7.9.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org)
PDF2Word Converter Version 1.1.0 (Build 164) (HKLM-x32\...\PDF2Word Converter_is1) (Version: PDF2Word Converter - Version 1.1.0 (Build 164) - Th. Hodes Software)
PL-2303 USB-to-Serial (HKLM-x32\...\{A9111573-EF12-4D80-A5B9-55F620D5BCA1}) (Version: 1.00.000 - Prolific Technology INC)
PL2303 USB-to-Serial Driver (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.18.0 - Prolific Technology INC)
Plex Media Server (HKLM-x32\...\{4A10DB6A-8093-40A8-BF1C-C3587B0A901D}) (Version: 1.3.3148 - Plex, Inc.) Hidden
Plex Media Server (HKLM-x32\...\{d685b3b4-91da-4364-9e7d-f365a614d42b}) (Version: 1.3.3.3148 - Plex, Inc.)
PS_AIO_05_C309_Software_Min (HKLM-x32\...\{FA0E7183-6B11-4899-B25F-2C490543967E}) (Version: 140.0.855.000 - Hewlett-Packard) Hidden
Python 2.7.3 (64-bit) (HKLM\...\{C0C31BCC-56FB-42a7-8766-D29E1BD74C7d}) (Version: 2.7.3150 - Python Software Foundation)
QuickSteuer Deluxe 2016 (HKLM-x32\...\{3077FB33-83B4-4B16-9A35-CD160CD3D012}) (Version: 21.36.103 - Haufe-Lexware GmbH & Co.KG)
QuickSteuer Deluxe 2017 (HKLM-x32\...\{BC0423F1-44FC-43B2-BC77-ED912E75D64F}) (Version: 22.27.60 - Haufe-Lexware GmbH & Co.KG)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5883 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
RemoteX Server (HKLM-x32\...\RemoteX) (Version: 2.8.2 - PEEPLEware)
Rylstim Screen Recorder (HKLM-x32\...\Rylstim Screen Recorder_is1) (Version: 1.4 - Rylstim)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.3.0 - Samsung Electronics)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.59.0 - Samsung Electronics Co., Ltd.)
Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
sipgate Faxdrucker (HKLM\...\{F4950C66-CC26-4BB6-A7E7-D913565573B8}) (Version: 3.21.1 - sipgate GmbH)
Smart Data Recovery v5.0 (HKLM-x32\...\Smart Data Recovery_is1) (Version: 5.0 - Smart PC Solutions)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16052.2 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16052.2 - Samsung Electronics Co., Ltd.)
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
SSDlife Pro (HKLM-x32\...\{08829747-2605-42CC-A484-78426B68A203}) (Version: 2.5.80 - BinarySense Inc.)
StarMoney (HKLM-x32\...\{113B170E-9109-4EF0-8D70-4596A68E1873}) (Version: 6.0.0.313 - StarFinanz) Hidden
StarMoney (HKLM-x32\...\{18B4BD4D-FC8F-4D3E-B967-311F194B1F06}) (Version: 4.0.4.16 - StarFinanz) Hidden
StarMoney (HKLM-x32\...\{2E6951AE-6A91-4D23-959C-BA407FED3704}) (Version: 6.0.0.313 - StarFinanz) Hidden
StarMoney (HKLM-x32\...\{E473B285-2243-4771-BA17-55F99AD7C84F}) (Version: 4.0.4.16 - StarFinanz) Hidden
StarMoney 11 (HKLM-x32\...\{D4D4D06C-CFB2-420D-8A58-65A9E6021C16}) (Version: 11 - Star Finanz GmbH)
StarMoney 9.0 (HKLM-x32\...\{1DA14FB3-C658-4BA8-85F2-3A32AFDF79E4}) (Version: 9.0 - Star Finanz GmbH)
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
Stopping Plex (HKLM-x32\...\{0F4F2C9B-2C85-4DBF-B385-3D6D44446C16}) (Version: 1.3.3148 - Plex, Inc.) Hidden
Streamripper (Remove only) (HKLM-x32\...\Streamripper) (Version: - )
streamWriter (HKLM-x32\...\streamWriter_is1) (Version: 5.4.0.2 - Alexander Nottelmann)
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
TomTom MyDrive Connect 4.1.4.3089 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.4.3089 - TomTom)
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Unified Remote (HKLM-x32\...\{415B4714-4F8C-49C6-B310-881EAF892CFB}_is1) (Version: 3.3.5 - Unified Intents AB)
Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-012B-0407-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version: - Microsoft)
USB/DVD-Downloadtool für Windows 7 (HKLM-x32\...\{7D6DDE45-FE2F-4D11-A7E7-BC2C2910536C}) (Version: 1.0.30 - Microsoft Corporation)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN)
VMware Horizon Client (HKLM\...\{DF1CBB07-34D5-48EA-A792-B1BEE16EBBE6}) (Version: 4.3.0.4209 - VMware, Inc.)
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
Winamp (nur entfernen) (HKLM-x32\...\Winamp) (Version: - )
WinRAR 5.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
XviD Video Codec (remove only) (HKLM-x32\...\XviD Video Codec) (Version: - )
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\Privat\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 2013\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 2013\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 2013\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\Windows\system32\CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\Windows\SysWow64\CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
ContextMenuHandlers01: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => -> Keine Datei
ContextMenuHandlers01: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2017-05-09] (Apple Inc.)
ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-09-03] (Alexander Roshal)
ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei
ContextMenuHandlers03: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes)
ContextMenuHandlers04: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd)
ContextMenuHandlers05: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2014-03-20] (Intel Corporation)
ContextMenuHandlers05: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2014-03-04] (NVIDIA Corporation)
ContextMenuHandlers06: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes)
ContextMenuHandlers06: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd)
ContextMenuHandlers06: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\Windows\system32\StartMenuHelper64.dll [2014-04-20] (IvoSoft)
ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-09-03] (Alexander Roshal)
ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei
ContextMenuHandlers1_S-1-5-21-2210286070-902605142-1894119712-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ContextMenuHandlers4_S-1-5-21-2210286070-902605142-1894119712-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ContextMenuHandlers5_S-1-5-21-2210286070-902605142-1894119712-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {2419184A-0B14-406E-B026-F405D2CAAF48} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2210286070-902605142-1894119712-1001UA => C:\Users\Privat\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-01-06] (Dropbox, Inc.)
Task: {25360C57-47E3-4964-82A1-7AE880761801} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated)
Task: {2745DD49-D491-4EC5-9412-66422B73F4DD} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {3973CB61-6FC0-4EE8-99FF-F37807FA2727} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.)
Task: {43258154-388C-49E2-8988-4478C2C3FE30} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {580570DF-A65E-4274-A064-82368DFEE9C7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {8601917F-DADA-4C3F-851C-F7CC6FBB7CCE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-06-24] (Adobe Systems Incorporated)
Task: {8D46012F-3E8A-4B09-B4C1-47862A21D087} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2210286070-902605142-1894119712-1001Core => C:\Users\Privat\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-01-06] (Dropbox, Inc.)
Task: {91B35E1C-0CBD-48BC-AA93-D7C43E1D3DB1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {9577BFEE-68E8-44F1-909E-64EE2C8D5549} - System32\Tasks\Plex => P:\Programmdaten\PlexConnect\PlexConnect.pyc [2017-03-26] ()
Task: {AAFA745D-2E46-4844-B168-B98525011631} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 2013\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {AD3F489E-5777-4E0A-8634-3701BADEAF55} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {B64D14D3-BF89-4B67-9BAE-6D876EF00AE9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2017-07-12] (Microsoft Corporation)
Task: {C12E71D9-E442-425F-A90F-7E73E712E2C9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 2013\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {D2717B72-0B06-4522-9112-73329CA329B1} - System32\Tasks\{15D56EB3-FA5C-47A0-A827-0386F46B44F3} => C:\Windows\system32\pcalua.exe -a E:\setup.EXE -d E:\ -c /AUTORUN
Task: {D81EDD40-0ED5-41F3-9F03-1848A4D166DB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2210286070-902605142-1894119712-1001Core.job => C:\Users\Privat\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2210286070-902605142-1894119712-1001UA.job => C:\Users\Privat\AppData\Local\Dropbox\Update\DropboxUpdate.exe
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
Shortcut: C:\Users\Privat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\8GadgetPack\Website.lnk -> hxxp://tiny.cc/8gadgetpac
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2014-10-25 16:10 - 2012-09-18 15:27 - 00192512 _____ () C:\Windows\System32\zlhp1020.dll
2014-10-25 16:10 - 2012-09-18 15:27 - 00065024 _____ () C:\Windows\system32\spool\PRTPROCS\x64\pphp1020.dll
2014-08-08 18:22 - 2012-09-18 15:27 - 03162624 ____N () C:\Windows\system32\spool\DRIVERS\x64\3\suhp1020.dll
2014-08-08 18:22 - 2012-09-18 15:27 - 01236992 ____N () C:\Windows\system32\spool\DRIVERS\x64\3\gchp1020.dll
2012-04-10 23:24 - 2012-04-10 23:24 - 00027136 _____ () C:\Program Files\Phyton27\python.exe
2012-04-10 23:24 - 2012-04-10 23:24 - 00046080 _____ () C:\Program Files\Phyton27\DLLs\_socket.pyd
2012-04-10 23:30 - 2012-04-10 23:30 - 01167360 _____ () C:\Program Files\Phyton27\DLLs\_ssl.pyd
2012-04-10 23:24 - 2012-04-10 23:24 - 00031744 _____ () C:\Program Files\Phyton27\DLLs\_multiprocessing.pyd
2012-04-10 23:24 - 2012-04-10 23:24 - 00166912 _____ () C:\Program Files\Phyton27\DLLs\_elementtree.pyd
2012-04-10 23:24 - 2012-04-10 23:24 - 00164352 _____ () C:\Program Files\Phyton27\DLLs\pyexpat.pyd
2012-04-10 23:30 - 2012-04-10 23:30 - 00471552 _____ () C:\Program Files\Phyton27\DLLs\_hashlib.pyd
2012-04-10 23:24 - 2012-04-10 23:24 - 00010752 _____ () C:\Program Files\Phyton27\DLLs\select.pyd
2012-04-10 23:25 - 2012-04-10 23:25 - 00111616 _____ () C:\Program Files\Phyton27\DLLs\_ctypes.pyd
2016-09-01 18:12 - 2016-09-01 18:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-05-09 00:44 - 2017-05-09 00:44 - 01354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-10-03 13:41 - 2016-10-03 13:41 - 00234400 _____ () C:\Program Files\Common Files\VMware\DeviceRedirectionCommon\ftnlsv.exe
2016-01-08 14:54 - 2007-06-08 11:15 - 00057344 ____R () C:\Windows\SysWOW64\xServiceSetup.exe
2016-01-08 14:54 - 2007-06-08 11:05 - 00036864 ____R () C:\Windows\SysWOW64\xScanSetup.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-09-27 19:56 - 2013-06-06 20:16 - 00012520 _____ () C:\Users\Privat\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\CoreTempReader.dll
2014-09-27 19:56 - 2013-06-06 20:16 - 00015080 _____ () C:\Users\Privat\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\GetCoreTempInfoNET.dll
2014-09-27 19:56 - 2013-06-06 20:16 - 00014056 _____ () C:\Users\Privat\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\SystemInfo.dll
2014-09-25 13:33 - 2014-09-25 13:33 - 02210480 _____ () C:\Program Files\Microsoft Office 2013\Office15\tmpod.dll
2015-10-13 16:10 - 2015-10-13 16:10 - 01428648 _____ () C:\Program Files\Microsoft Office 2013\Office15\ADDINS\UmOutlookAddin.dll
2016-10-18 14:02 - 2016-10-18 14:02 - 06331296 _____ () C:\Program Files (x86)\VMware\ScannerRedirection\ftscanmgrhv.exe
2016-12-15 14:53 - 2016-12-15 14:53 - 00083440 _____ () C:\Program Files (x86)\Plex\Plex Media Server\zlib.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 00203248 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libidn.dll
2015-08-10 19:57 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2015-08-10 19:57 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2015-08-10 19:57 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2015-08-10 19:57 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2015-08-10 19:57 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2017-06-29 21:36 - 2016-01-28 15:33 - 01060160 _____ () C:\Program Files (x86)\StarMoney 11\ouservice\libxml2.dll
2017-06-29 21:36 - 2017-01-23 17:49 - 00232800 _____ () C:\Program Files (x86)\StarMoney 11\ouservice\PATCHW32.dll
2014-11-29 17:19 - 2011-01-13 11:44 - 00232800 _____ () C:\Program Files (x86)\StarMoney 9.0\ouservice\PATCHW32.dll
2011-02-11 15:52 - 2011-02-11 15:52 - 00170496 _____ () C:\Program Files (x86)\RemoteX\modules\computer.dll
2015-07-15 22:34 - 2002-04-25 06:42 - 00053248 _____ () C:\Program Files (x86)\Hardcopy\hcdll2_9.dll
2017-05-09 00:45 - 2017-05-09 00:45 - 01041720 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2017-05-09 00:44 - 2017-05-09 00:44 - 00189752 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll
2016-09-01 18:13 - 2016-09-01 18:13 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2015-07-15 22:34 - 2003-07-15 08:21 - 00225280 _____ () C:\Program Files (x86)\Hardcopy\HcDllS.dll
2015-07-15 22:34 - 1999-06-03 07:46 - 00032768 _____ () C:\Program Files (x86)\Hardcopy\hardcopy.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 01083376 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxml2.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 00115696 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_core-vc80-3_0.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 00059888 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_sqlite3-vc80-3_0.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 00772080 _____ () C:\Program Files (x86)\Plex\Plex Media Server\tag.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 01741296 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_imgproc2411.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 01962992 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_core2411.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 00025584 _____ () C:\Program Files (x86)\Plex\Plex Media Server\lyric_lite.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 00050160 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_socket.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00071664 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ssl.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00024560 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_hashlib.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00041456 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\simplejson\_speedups.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00930288 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\etree.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00074736 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libexslt.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 00190960 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxslt.dll
2016-12-15 14:53 - 2016-12-15 14:53 - 00218096 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\objectify.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00018928 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\select.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00095728 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ctypes.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00143344 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\pyexpat.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00694256 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\unicodedata.pyd
2016-12-15 14:53 - 2016-12-15 14:53 - 00036336 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_multiprocessing.pyd
2016-11-26 00:25 - 2016-11-26 00:13 - 00807424 _____ () C:\Users\Privat\AppData\Local\Plex Media Server\Plug-in Support\Data\com.plexapp.plugins.trakttv\Libraries\Windows\i386\vc14\ucs2\apsw.pyd
2016-11-26 00:25 - 2016-11-26 00:13 - 00028160 _____ () C:\Users\Privat\AppData\Local\Plex Media Server\Plug-in Support\Data\com.plexapp.plugins.trakttv\Libraries\Windows\i386\vc14\ucs2\llist.pyd
2016-12-03 14:06 - 2016-04-28 22:26 - 00069632 _____ () P:\Programmdaten\FireFox default\extensions\{7E7165E2-0767-448c-852F-5FA8714F2C37}\bin\PlainOldFavorites.dll
2016-10-03 13:41 - 2016-10-03 13:41 - 00241056 _____ () C:\Program Files (x86)\Common Files\VMware\DeviceRedirectionCommon\ftnlapi.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\Windows:F0FCB77C45A7A739 [50]
AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [122]
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ==========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2013-08-22 15:25 - 2014-11-09 03:48 - 00001026 _____ C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 lmlicenses.wip4.adobe.com
127.0.0.1 lm.licenses.adope.com
127.0.0.1 na1r.services.adobe.com
127.0.0.1 hlrcv.stage.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 activate.adobe.com
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: Apple Mobile Device Service => 2
MSCONFIG\Services: BBSvc => 2
MSCONFIG\Services: BBUpdate => 3
HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "WinampAgent"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run32: => "SwitchBoard"
HKLM\...\StartupApproved\Run32: => "SDTray"
HKLM\...\StartupApproved\Run32: => "PDFPrint"
HKLM\...\StartupApproved\Run32: => "LexwareInfoService"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\StartupFolder: => "Samsung Magician.lnk"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\StartupFolder: => "SM9TB.lnk"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "swg"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "Plex Media Server"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "AppleIEDAV"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "iFunBox Fast App Install Handler"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "SpybotPostWindows10UpgradeReInstall"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "Spybot-S&D Cleaning"
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "SmartSwitchPDLR.exe"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{2DACA260-4223-4BE1-8D62-FE1242401BAB}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{2498201F-9758-4D7C-8520-3DDC35CDA1A6}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{414C2835-5EA0-4E91-AECC-EE6B4F609BB8}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{FF9641E2-08F5-4F92-8AB8-C43D8211AE83}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{5B6B1D5A-9E8F-4021-A101-33EDC33B9F51}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{E79CE8C8-0ABD-4C20-840B-2D9A276CDB66}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{F9C06C64-02DD-4187-A960-75D65FA58E74}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{A9E13E81-FB53-447A-BF0D-AC8E8E8CAE5F}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{D79E4EE9-EFDA-4E67-8058-B61F6DB74F1B}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\lync.exe
FirewallRules: [{52CF03BB-6450-4DE0-9F62-DBCCAB1375E2}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\lync.exe
FirewallRules: [{2ECD17B5-BA11-4883-B71D-3ECAF0000F5A}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\UcMapi.exe
FirewallRules: [{5F4F56C8-E25E-4F57-9C6E-8BF24B0740D7}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\UcMapi.exe
FirewallRules: [{1B43FB4F-6820-42BE-B648-E2A0B645ECAC}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\outlook.exe
FirewallRules: [TCP Query User{7536AADD-AFB1-4D74-BFC5-93866D0F20B1}C:\program files\phyton27\python.exe] => (Allow) C:\program files\phyton27\python.exe
FirewallRules: [UDP Query User{037325D5-1A05-43FA-8437-AF8F79E0252D}C:\program files\phyton27\python.exe] => (Allow) C:\program files\phyton27\python.exe
FirewallRules: [{35B66280-F3BF-48D1-B258-60521AD76F91}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{48685958-6510-45F7-AECD-B0BA13FB8A78}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{FC170E4A-A552-4DEB-B449-BC60F3411496}] => (Allow) C:\Users\Privat\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{15EBFFE2-2D50-4355-BA16-388A69710491}] => (Allow) C:\Users\Privat\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{A17B094A-FB68-4796-B4A0-14F3AA5B2584}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS7D20\setup\hpznui40.exe
FirewallRules: [{F0758AD3-B930-4C5E-B6B6-298E292AE1FF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{67F18ADA-8896-4DCF-A0E4-54637D666994}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{DD22AFF3-EC8E-4059-88E5-2DCB0890DCC3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{C1D2B773-6F3B-4ACD-9FF4-D9F7D55E27C5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{273A9206-2239-4FC1-B37D-59F5AB0CC838}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{3202F6ED-8B74-491D-BD6C-C0E67A33592B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{E225E8DA-7B7F-4455-8241-EAB3B8B29FC9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{52D3AB68-5E44-43A8-B294-32A375A644FD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{F352972A-2F29-4B27-A511-773F89EBD56F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{93A16612-EEB3-4E54-8FE7-BF9F0E0AFD76}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{4F942095-9D57-4B7B-B46A-81965E28578E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{3D883B83-2E4A-4EF6-B41A-5154D78E63E2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{FC7BB2E4-620F-41AA-AE63-E5E687C67876}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{3EDA11E9-891F-445C-9233-2DF7D7F255D0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{763F05D1-51D3-4CEB-B99F-60D8D46BDA36}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{F35E9B93-E5EE-4E03-A347-D92B1761D23B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{6AE928BF-B4D9-4207-B070-24586D74C25A}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe
FirewallRules: [{1165552C-1D2C-4502-8C26-8A996371016C}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS1DA5\HPDiagnosticCoreUI.exe
FirewallRules: [{8D1FDDC1-F3F3-402B-B22C-FA3C61BE24E9}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS1DA5\HPDiagnosticCoreUI.exe
FirewallRules: [{6E1B2C19-01AD-4539-8EF2-13BDCFBCA249}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS011D\HPDiagnosticCoreUI.exe
FirewallRules: [{E45EE944-2926-42BD-A42D-A16B16F59760}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS011D\HPDiagnosticCoreUI.exe
FirewallRules: [{D51D5E92-C54B-4288-99DF-85BE5B61F535}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
FirewallRules: [{D681DF84-3BF8-4D00-8658-81797BF0147A}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
FirewallRules: [{445B4488-8CF4-4193-9202-A064AD86E2B2}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS6A37\HPDiagnosticCoreUI.exe
FirewallRules: [{C89AF27E-602C-4907-B242-8003CEBAF483}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS6A37\HPDiagnosticCoreUI.exe
FirewallRules: [TCP Query User{7C301066-E20B-4424-8A84-C23075CBCBE6}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
FirewallRules: [UDP Query User{7A133D9B-1559-40AF-9CBD-5E145AE27C7B}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
FirewallRules: [{3C2DCA19-5187-4FB6-9DE1-0D6F60E5FB65}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\lync.exe
FirewallRules: [{4E376449-C954-4D0B-B9ED-A6CD5D442251}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\lync.exe
FirewallRules: [{475EF830-BB78-41AB-9167-4CAF1875422A}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\UcMapi.exe
FirewallRules: [{2F9B3A84-6027-4E61-ABF4-2A9D7437490A}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\UcMapi.exe
FirewallRules: [TCP Query User{66F11E45-44DB-43F7-9ADC-A32A237B9F70}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{3B01F281-BC5D-4474-821E-994EF0B615B8}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{DA7BD0C9-EC0C-42B2-A843-5C25E7B736BF}C:\program files (x86)\nutsaboutnets\netstress\netstress.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress.exe
FirewallRules: [UDP Query User{06812317-171E-469F-80CC-11992FE7C9A7}C:\program files (x86)\nutsaboutnets\netstress\netstress.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress.exe
FirewallRules: [TCP Query User{B366DC9E-088E-4B7C-870D-1B07EEEAAB1A}C:\program files (x86)\nutsaboutnets\netstress\nan-finder.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\nan-finder.exe
FirewallRules: [UDP Query User{6423529E-A6A2-4A7F-B1C9-E477D2DF94DA}C:\program files (x86)\nutsaboutnets\netstress\nan-finder.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\nan-finder.exe
FirewallRules: [TCP Query User{208FD738-B687-4EA7-89F4-75DBEDAC428E}C:\program files (x86)\nutsaboutnets\netstress\netstress-tcpserver.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress-tcpserver.exe
FirewallRules: [UDP Query User{3C4DB53D-3ED5-40F3-8DB7-BC63719F9993}C:\program files (x86)\nutsaboutnets\netstress\netstress-tcpserver.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress-tcpserver.exe
FirewallRules: [TCP Query User{55F6911D-48BB-46AC-8D20-F33CCF017276}C:\program files (x86)\nutsaboutnets\netstress\netstress-udpserver.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress-udpserver.exe
FirewallRules: [UDP Query User{8D1E0BAE-8F9E-4C99-9B33-9B2D80621F19}C:\program files (x86)\nutsaboutnets\netstress\netstress-udpserver.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress-udpserver.exe
FirewallRules: [TCP Query User{CD88D7DD-6655-401B-862B-AF19F0C94E7D}C:\users\privat\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\privat\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{5CE491C9-E46F-4EAC-AB12-86F7FD5D9BF4}C:\users\privat\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\privat\appdata\roaming\spotify\spotify.exe
FirewallRules: [{DE6E0FF9-1807-4054-948D-11949E6F2F42}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe\Bonjour\mDNSResponder.exe
FirewallRules: [{07E6606E-DB92-4ED0-94ED-B901ADB3FFBC}] => (Allow) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe
FirewallRules: [{8A49BA2B-5EEC-492F-8082-15CFD6AE3C14}] => (Allow) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\mDNSResponder.exe
FirewallRules: [{85A9552C-B1AE-42A1-952F-EA8EE56F3FAE}] => (Allow) C:\Program Files (x86)\RemoteX\remotex.exe
FirewallRules: [{D3EA61EC-A70B-4B24-ADDC-BD0EA8083DA2}] => (Allow) C:\Program Files (x86)\RemoteX\remotex.exe
FirewallRules: [{AEEE2A0B-F1A9-428C-8EAF-EFC555F8AADB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{60D3476F-C834-4E13-9BE2-C52594722670}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7E69A2DD-2D53-43CE-8EE1-65C6C43DB542}] => (Allow) C:\Program Files (x86)\RemoteX\remotex.exe
FirewallRules: [{BE45AA4C-703C-4193-B8A3-6DC0BF85D02C}] => (Allow) C:\Program Files (x86)\RemoteX\remotex.exe
FirewallRules: [{E2371494-6228-439C-A139-9564DE6E236C}] => (Allow) C:\Program Files (x86)\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe
FirewallRules: [{2D4C714C-EC45-4D2F-B733-9949BE6A11D1}] => (Allow) C:\Program Files (x86)\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe
FirewallRules: [{1488902C-F30A-4A63-AAA9-B43E78235398}] => (Allow) C:\Program Files (x86)\StarMoney 9.0\app\StarMoney.exe
FirewallRules: [{64E6F3B1-0681-4927-9CD1-E346F0D8F66B}] => (Allow) C:\Program Files (x86)\StarMoney 9.0\app\StarMoney.exe
FirewallRules: [TCP Query User{C890031C-B89B-499E-A70F-B6FDA20367F2}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{8BB419D8-2FBA-47E6-97A8-95D3A7D185B6}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{9E8AFD5E-89B5-46BF-8EBD-91CD7926BB39}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [UDP Query User{27C30B2B-B899-4926-8665-8998B15A65CE}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [{1135494F-3CC0-44BD-8EC5-97F5FDA28F75}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{E7CC9BDD-11C8-44C5-90BC-962A3AD7EAC8}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{255C08EB-46A6-42B1-973C-CD5F0A8324EE}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe
FirewallRules: [{DBE27BB1-BB59-4366-A8B2-5DC1C9FAFF42}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe
FirewallRules: [TCP Query User{DF1B8213-0243-487D-824F-C35B14128814}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe
FirewallRules: [UDP Query User{135BBC4C-B800-405B-92E0-430FBC638FCF}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe
FirewallRules: [{28235C9C-7646-43C6-BB25-CDC8DF72C9D0}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [{27A1A0DA-D10A-492B-BC08-088CFB599AC6}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [TCP Query User{9B10B11F-AFE5-41B3-8528-E667B7D78CA8}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [UDP Query User{D1714D81-5141-4D51-BAC4-87134D375833}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [{DC309707-4CB2-4DB0-990C-2F32D9953460}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{84401280-8492-4BC1-A7D2-A9AC65BD85B4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{FFEE8F03-BAE9-4CDC-B788-E001E4D2CA47}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{5E2437DD-FA43-4CE9-AEB6-6F2C1625D03F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{C5C9B702-0CDD-4B53-A362-D2825D431776}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{437349DB-C38B-4C0A-A192-99930F115E5D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{7C88E175-6E29-4984-BB28-7747E755886B}C:\users\privat\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\privat\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{F701C8C9-7644-464F-9751-6384DB4D2F0B}C:\users\privat\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\privat\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{30ADEEFA-EBF5-49B1-BCFB-2F5027880709}] => (Allow) LPort=1689
FirewallRules: [{7EFCA915-DD98-4F0E-B7BB-6CC97D29E909}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{045F8522-31E8-4988-A74C-B7204167F9FF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{45F00961-3332-454F-9C96-2FD2F5AB6C28}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{3D052AF7-D3F7-46E5-B3BC-BD119E6D1F8A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{D976D5CD-5E32-4069-9CE5-5E8E8AA1B1B3}] => (Allow) C:\Program Files (x86)\SQL Anywhere 12\Bin32\dbsrv12.exe
FirewallRules: [{08C36848-8AC1-429B-BF43-33A287F5B6A1}] => (Allow) C:\Program Files (x86)\SQL Anywhere 12\Bin32\dbsrv12.exe
FirewallRules: [{AEF99098-637D-4BBD-80E4-45EF918FA7BC}] => (Allow) C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe
FirewallRules: [{4F161BBF-8FD1-4323-B93D-F76706402798}] => (Allow) C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe
FirewallRules: [{848E5105-B0F0-438C-BE26-76F213FAA853}] => (Allow) C:\Program Files (x86)\Lexware\services\Haufe.FabricHostService.exe
FirewallRules: [{AB9D1FBA-F79D-4B61-9E92-E34823C93145}] => (Allow) C:\Program Files (x86)\Lexware\services\Haufe.FabricHostService.exe
FirewallRules: [{203FEFF9-54AE-46B1-AD28-799B4124FEA7}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{6A1FCE33-B005-4345-A45E-BC1C65AC8A3E}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{513400FE-62C4-4573-917A-551F27FBCD46}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{7C438B49-7364-4266-B936-65C0AF930FC6}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{FBF23D4D-C190-4A6A-8938-7C4C0107DAC8}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{AFEE97A4-7A63-433B-935E-4995C37A1F9C}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [TCP Query User{F2670578-D33F-4703-9750-B6C08F3AB6B9}C:\program files (x86)\plex\plex media server\plex dlna server.exe] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe
FirewallRules: [UDP Query User{2090A4B0-F0EF-4529-A6FE-C264FDEE28C9}C:\program files (x86)\plex\plex media server\plex dlna server.exe] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe
FirewallRules: [{8C1785D8-6545-42AE-832F-1C1A2AB6D541}] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe
FirewallRules: [{22BD803B-D8C9-472B-BE4E-6CB554741AE9}] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe
FirewallRules: [{E1979067-E2ED-4576-BADD-9A8A4D0B3128}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_b5355c80db433451_0002.0003_6ff5e44d5e38db65\fritzbox-usb-fernanschluss.exe
FirewallRules: [{D51AD513-252B-4276-ACF6-214C60C9A263}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_b5355c80db433451_0002.0003_6ff5e44d5e38db65\fritzbox-usb-fernanschluss.exe
FirewallRules: [TCP Query User{4CA1672B-DC5D-47C9-BFCF-B9020FD750E8}C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe] => (Allow) C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe
FirewallRules: [UDP Query User{B87F0690-BF6F-4FE5-98F0-44A5F3C87638}C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe] => (Allow) C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe
FirewallRules: [{9C3A4AE9-8FAB-4ADA-B545-86EBAF353C98}] => (Block) C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe
FirewallRules: [{6DE0B844-8453-4EE5-96A0-6327FF22D040}] => (Block) C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe
FirewallRules: [{48B62EBE-F492-4632-827A-FE9799BADBB8}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe
FirewallRules: [{14767D7E-5547-4B9A-A423-E2699716E41F}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe
FirewallRules: [{6A587AAF-2BD3-452A-9FB1-A4189CE992B0}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exe
FirewallRules: [{1DD79883-D986-466A-8A23-999AEA46CEFB}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe
FirewallRules: [{F8F8D3B0-768F-41FD-875E-A5687F64F5DC}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe
FirewallRules: [{09665B21-A08A-4EAD-9423-FF0312DDB650}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe
FirewallRules: [{D14BA356-E0AB-43C1-9D4C-1A227016AA9A}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe
FirewallRules: [{B83FFB77-2209-41B5-AF05-D03593449712}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe
FirewallRules: [{A1C3908E-F3ED-45B2-BA6C-651B49E8D8F3}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe
FirewallRules: [{82717099-A8CF-4523-B2E7-076B436AA2E9}] => (Block) %ProgramFiles%\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe
FirewallRules: [{D540058E-F758-459C-883B-F3BBB00E71E7}] => (Allow) LPort=1689
FirewallRules: [TCP Query User{CEEFF73A-B5EB-4BD5-B34F-006EFDFBE52C}C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light] => (Allow) C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light
FirewallRules: [UDP Query User{8790B0F4-5246-45EB-BA32-5F44343046D5}C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light] => (Allow) C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light
FirewallRules: [{DA42BC18-ADF8-47D3-AE34-8919C309A404}] => (Block) C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light
FirewallRules: [{4743768E-5F8E-4DD3-81AF-1F33C05619A6}] => (Block) C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light
FirewallRules: [TCP Query User{72F55C85-7D7D-4E57-97BE-49721E7337B0}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe
FirewallRules: [UDP Query User{3B01D770-FEDF-40AF-B326-D9EBBE689852}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe
FirewallRules: [{E9A8B7AA-7418-40B1-BCD4-3C27F0E6F78D}] => (Block) C:\program files (x86)\arduino\java\bin\javaw.exe
FirewallRules: [{06B17BD5-E240-4E73-BB03-F0DE45269FE0}] => (Block) C:\program files (x86)\arduino\java\bin\javaw.exe
FirewallRules: [{12BCAC9F-B278-4733-9378-DF0E6D20CD98}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{C74394F3-D2EE-4EAE-AA38-BF34DDF03897}] => (Allow) C:\Program Files (x86)\StarMoney 11\ouservice\StarMoneyOnlineUpdate.exe
FirewallRules: [{D77DE123-5FBC-45CD-AF75-10FE6D264E70}] => (Allow) C:\Program Files (x86)\StarMoney 11\ouservice\StarMoneyOnlineUpdate.exe
FirewallRules: [{C1A70C58-7DDA-474C-B7DF-2193FF80580A}] => (Allow) C:\Program Files (x86)\StarMoney 11\app\StarMoney.exe
FirewallRules: [{F8C2E66D-FA0E-41D3-B866-3C1E484E5339}] => (Allow) C:\Program Files (x86)\StarMoney 11\app\StarMoney.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
==================== Wiederherstellungspunkte =========================
29-06-2017 21:34:27 Installiert StarMoney
08-07-2017 11:29:17 Geplanter Prüfpunkt
12-07-2017 02:58:32 Windows Update
==================== Fehlerhafte Geräte im Gerätemanager =============
Name: Photosmart C309a series
Description: Photosmart C309a series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Photosmart C309a series
Description: Photosmart C309a series
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: HP
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (07/19/2017 05:59:42 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004F074
Befehlszeilenargumente:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (07/19/2017 05:59:39 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004F074
Befehlszeilenargumente:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (07/19/2017 06:36:26 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004F074
Befehlszeilenargumente:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (07/19/2017 06:36:23 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004F074
Befehlszeilenargumente:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (07/18/2017 07:02:28 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: Das Volume "System-reserviert" wurde aufgrund eines Fehlers nicht optimiert: Falscher Parameter. (0x80070057)
Error: (07/18/2017 06:35:45 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT)
Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "34457". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten.
Error: (07/18/2017 06:35:45 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.
Error: (07/18/2017 06:30:17 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004F074
Befehlszeilenargumente:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (07/18/2017 06:30:05 PM) (Source: CyberGhost 6 Service) (EventID: 0) (User: )
Description: Der Dienst kann nicht beendet werden. System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
bei CyberGhost.VPNServices.OpenVpn.DisconnectFromVpnServer(Boolean sendDisconnectEvent) in C:\TeamCity\buildAgent\work\5e751977071a47b0\Projects\CyberGhost\CyberGhost 6\CyberGhost.VPNServices\OpenVPN.cs:Zeile 348.
bei Service.ServiceController.OnStop() in C:\TeamCity\buildAgent\work\5e751977071a47b0\Projects\CyberGhost\CyberGhost 6\CyberGhost.Service\ServiceController.cs:Zeile 170.
bei System.ServiceProcess.ServiceBase.DeferredStop()
Error: (07/18/2017 06:30:05 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0xC004F074
Befehlszeilenargumente:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=UserLogon;SessionId=1
Systemfehler:
=============
Error: (07/19/2017 05:59:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Haufe FabricHostService" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (07/19/2017 09:37:45 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4
Error: (07/19/2017 06:48:08 AM) (Source: DCOM) (EventID: 10010) (User: Privat-PC)
Description: Der Server "{BF6C1E47-86EC-4194-9CE5-13C15DCB2001}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/19/2017 06:47:38 AM) (Source: DCOM) (EventID: 10010) (User: Privat-PC)
Description: Der Server "{1B1F472E-3221-4826-97DB-2C2324D389AE}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/19/2017 06:36:53 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Haufe FabricHostService" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (07/18/2017 08:31:58 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4
Error: (07/18/2017 07:03:19 PM) (Source: DCOM) (EventID: 10010) (User: Privat-PC)
Description: Der Server "{BF6C1E47-86EC-4194-9CE5-13C15DCB2001}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/18/2017 07:02:49 PM) (Source: DCOM) (EventID: 10010) (User: Privat-PC)
Description: Der Server "{1B1F472E-3221-4826-97DB-2C2324D389AE}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/18/2017 06:29:37 PM) (Source: Service Control Manager) (EventID: 7016) (User: )
Description: Der Dienst "chip 1-click download service" hat einen ungültigen aktuellen Status gemeldet: 0
Error: (07/18/2017 06:29:37 PM) (Source: Service Control Manager) (EventID: 7016) (User: )
Description: Der Dienst "chip 1-click download service" hat einen ungültigen aktuellen Status gemeldet: 0
CodeIntegrity:
===================================
Date: 2017-07-18 19:02:28.082
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-07-15 10:47:40.521
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-07-10 18:57:19.881
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-07-09 09:55:37.791
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-07-06 20:07:00.933
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-07-05 20:05:14.853
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-07-03 19:49:13.879
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-06-30 20:00:36.956
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-06-29 18:27:25.006
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2017-06-27 20:26:54.191
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz
Prozentuale Nutzung des RAM: 83%
Installierter physikalischer RAM: 3977.05 MB
Verfügbarer physikalischer RAM: 674.97 MB
Summe virtueller Speicher: 5129.05 MB
Verfügbarer virtueller Speicher: 1498.07 MB
==================== Laufwerke ================================
Drive c: (System) (Fixed) (Total:179.35 GB) (Free:78.87 GB) NTFS
Drive d: (Daten) (Fixed) (Total:1863.01 GB) (Free:821.13 GB) NTFS
Drive p: (Programmdaten) (Fixed) (Total:53.2 GB) (Free:37.79 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 5ECC2F66)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=179.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=53.2 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 1863 GB) (Disk ID: 9A98B04F)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
==================== Ende von Addition.txt ============================ --- --- ---
Hm, ne Menge Text, was kann man ableiten und vor allem wie?
Vielen Dank & Gruß
Christian |