banshing | 22.09.2017 16:16 | Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 20-09-2017
durchgeführt von Christophh (22-09-2017 17:15:12)
Gestartet von C:\Users\Christophh\Downloads
Windows 10 Pro N Version 1703 (X64) (2017-06-27 11:22:59)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-2647985832-747989680-4269839675-500 - Administrator - Disabled)
Christophh (S-1-5-21-2647985832-747989680-4269839675-1001 - Administrator - Enabled) => C:\Users\Christophh
DefaultAccount (S-1-5-21-2647985832-747989680-4269839675-503 - Limited - Disabled)
Gast (S-1-5-21-2647985832-747989680-4269839675-501 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 17.012.20098 - Adobe Systems Incorporated)
Adobe Flash Player 27 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 27.0.0.130 - Adobe Systems Incorporated)
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 378.66 - NVIDIA Corporation) Hidden
AutoHotkey 1.1.25.01 (HKLM\...\AutoHotkey) (Version: 1.1.25.01 - Lexikos)
Avira (HKLM-x32\...\{1B48601D-0537-4589-9952-A8989BE8249A}) (Version: 1.2.96.16095 - Avira Operations GmbH & Co. KG) Hidden
Avira (HKLM-x32\...\{7c01a3b4-3454-446e-8473-8a245f962c28}) (Version: 1.2.96.16095 - Avira Operations GmbH & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.31.27 - Avira Operations GmbH & Co. KG)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.49.52296 - Electronic Arts)
Battlefield™ 1 CTE (HKLM-x32\...\{E970EAB6-8F6F-4E72-AB13-F6648397322C}) (Version: 1.0.49.53737 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB)
CCleaner (HKLM\...\CCleaner) (Version: 5.28 - Piriform)
DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive)
Dead by Daylight (HKLM\...\Steam App 381210) (Version: - Behaviour Digital Inc.)
Die Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.)
Dirty Bomb (HKLM-x32\...\Steam App 333930) (Version: - Splash Damage®)
Fallout 4 MULTi2 1.1.30 (HKLM-x32\...\Fallout 4 MULTi2 1.1.30) (Version: - )
Fallout 4 Update 7 MULTi2 1.3.47 (HKLM-x32\...\Fallout 4 Update 7 MULTi2 1.3.47) (Version: - )
Far Cry 4 Final DLC Edition (HKLM-x32\...\Far Cry 4 Final DLC Edition) (Version: 1.01 - Ubisoft)
Fraps (HKLM-x32\...\Fraps) (Version: - )
FRITZ!Box USB-Fernanschluss (HKU\S-1-5-21-2647985832-747989680-4269839675-1001\...\2db37667170956ee) (Version: 2.3.3.2 - AVM Berlin)
GeoGebra 5 (HKLM-x32\...\GeoGebra 5) (Version: 5.0.163.0 - International GeoGebra Institute)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.113 - Google Inc.)
Google Drive (HKLM-x32\...\{F9A2761E-C1E4-4384-92A3-5732C9738327}) (Version: 2.34.6717.9565 - Google, Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment)
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.0.9.6 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
IBM SPSS Statistics Subscription (HKLM\...\{02D81DCC-13D1-465C-9292-E46956489CA1}) (Version: 1.0.0.642 - IBM Corp)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.2.1000 - Intel Corporation)
Intel(R) Network Connections 19.1.51.0 (HKLM\...\PROSetDX) (Version: 19.1.51.0 - Intel)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.1.0.1058 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{98f335cd-0a32-4b3f-b74c-ef9480e834f0}) (Version: 10.0.27 - Intel(R) Corporation) Hidden
Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
LogMeIn Hamachi (HKLM-x32\...\{BE82D2D7-6CA2-43B3-8C22-CCF6405806E7}) (Version: 2.2.0.579 - LogMeIn, Inc.) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.579 - LogMeIn, Inc.)
Malwarebytes Version 3.2.2.2029 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.2.2.2029 - Malwarebytes)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 16.0.8326.2107 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2647985832-747989680-4269839675-1001\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mozilla Firefox 55.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 55.0.3 (x86 de)) (Version: 55.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 55.0.3.6445 - Mozilla)
NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 378.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 378.66 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.4.0.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.4.0.70 - NVIDIA Corporation)
NVIDIA Grafiktreiber 378.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 378.66 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.21 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs) (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.3.16.0 - NVIDIA Corporation) Hidden
NvvHci (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci) (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 10.5.2.49155 - Electronic Arts, Inc.)
Paladins (HKLM\...\Steam App 444090) (Version: - Hi-Rez Studios)
PAYDAY 2 (HKLM\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.)
PAYDAY 2 Demo (HKLM\...\Steam App 251040) (Version: - OVERKILL - a Starbreeze Studio.)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.)
PLAYERUNKNOWN'S BATTLEGROUNDS (HKLM\...\Steam App 578080) (Version: - Bluehole, Inc.)
PLAYERUNKNOWN'S BATTLEGROUNDS (Test Server) (HKLM\...\Steam App 622590) (Version: - )
Python 2.7.12 (HKLM-x32\...\{9DA28CE5-0AA5-429E-86D8-686ED898C665}) (Version: 2.7.12150 - Python Software Foundation)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.0 - Rockstar Games)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
Skype™ 7.26 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Spotify (HKU\S-1-5-21-2647985832-747989680-4269839675-1001\...\Spotify) (Version: 1.0.63.617.g5aca9a2a - Spotify AB)
StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)
Stardew Valley (HKLM\...\Steam App 413150) (Version: - ConcernedApe)
SteelSeries Engine 3.6.5.1 (HKLM\...\SteelSeries Engine 3) (Version: 3.6.5.1 - SteelSeries ApS)
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Guild II: Renaissance (HKLM-x32\...\Steam App 39680) (Version: - Rune Forge)
Tom Clancy's Rainbow Six Siege (HKLM\...\Steam App 359550) (Version: - Ubisoft Montreal)
TrackMania² Stadium (HKLM-x32\...\Steam App 232910) (Version: - Nadeo)
UNi Xonar Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version: - )
Uplay (HKLM-x32\...\Uplay) (Version: 18.1 - Ubisoft)
Vegas Pro 13.0 (64-bit) (HKLM\...\{386F5740-091D-11E4-B13E-F04DA23A5C58}) (Version: 13.0.373 - Sony)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.)
Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
Windows Media Encoder 9 Series (HKLM-x32\...\Windows Media Encoder 9) (Version: - )
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-08-31] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-08-31] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-08-31] (Google)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-08-31] (Google)
ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2017-09-20] (Avira Operations GmbH & Co. KG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-20] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-20] (Alexander Roshal)
ContextMenuHandlers1-x32: [WondershareVideoConverterFileOpreation] -> {FEB746CA-95C2-485F-B386-C30D4E56D22E} => -> Keine Datei
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-08-31] (Google)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes)
ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2017-09-20] (Avira Operations GmbH & Co. KG)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-20] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-20] (Alexander Roshal)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {079C14B1-CB36-4B02-B028-CE0CEDA98B4A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2017-09-12] (Microsoft Corporation)
Task: {12499066-3D4B-4DED-83CB-F1FFC715E2D6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-09-13] (Adobe Systems Incorporated)
Task: {145BC74F-115A-4698-B56C-BFC772C08436} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {4251EA1E-A6D3-45D4-AFC1-95DE3060F863} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-03-03] (Piriform Ltd)
Task: {49B78674-9BE2-4E99-8E88-AC2E440BC2B0} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {4E86110C-D824-4944-9638-7481FB7299E1} - System32\Tasks\Avira SystrayStartTrigger => Avira.SystrayStartTrigger.exe
Task: {555A41E3-676C-4710-B88E-201FC8C82C05} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {5DB0FBE3-2D87-4192-AA89-2F4CF88D24F7} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-02-23] (NVIDIA Corporation)
Task: {63A3C67B-2DA1-4C68-8C6A-B4C1EFF5C3CA} - System32\Tasks\update-S-1-5-21-2647985832-747989680-4269839675-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: <Company name>)
Task: {6575BDDC-DB1C-46B8-B459-A0EF649F9694} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-20] ()
Task: {67A30A74-9E49-4542-BF72-B99B5AC568F2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-07] (Google Inc.)
Task: {6A59C583-FBB0-4F2B-A452-307A30BEF6BC} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {7CC31553-2D5E-438B-A5DA-27AF6A753689} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {8690B4D6-D373-4296-AD8C-77CCA8827DF9} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: <Company name>)
Task: {8787C227-430F-4D02-A178-C9E614996DFE} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2017-09-20] (Avira Operations GmbH & Co. KG)
Task: {93ECD6F2-41F2-473D-8DBE-3930D5A6083C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-09-19] (Microsoft Corporation)
Task: {96F6BD3B-3A9D-4A82-B65F-BCEBF51B29BC} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-02-23] (NVIDIA Corporation)
Task: {98895E9E-010F-44A4-9E71-8EA31ABF20E3} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-09-19] (Microsoft Corporation)
Task: {A69FDB4A-CE01-4556-9505-DB1511ECBE78} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-09-08] (Microsoft Corporation)
Task: {B6B33C06-EB44-4CFA-84ED-342E4C5E7039} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23] (NVIDIA Corporation)
Task: {BBC48FF0-B417-4CFE-9DB7-E25CCB958C99} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-20] ()
Task: {F0FAB5DD-8534-4FD2-84F4-9F6707BF3BA9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-07] (Google Inc.)
Task: {F4319554-C5A5-4435-80A5-0A304DCF0B9A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-09-08] (Microsoft Corporation)
Task: {F4D99559-374E-46D7-BF35-2CFC0C780B4E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\update-S-1-5-21-2647985832-747989680-4269839675-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2017-06-27 13:16 - 2013-07-04 03:32 - 000936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
2015-10-29 21:11 - 2015-11-10 18:38 - 000076152 _____ () C:\Windows\system32\PnkBstrA.exe
2016-10-24 20:51 - 2017-02-23 20:34 - 004490808 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-10-24 20:51 - 2017-02-23 20:34 - 001148984 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-09-21 19:01 - 2017-08-24 11:27 - 002264528 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2017-03-18 22:56 - 2017-03-18 22:56 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-18 22:58 - 2017-03-20 06:41 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-09-14 20:17 - 2017-09-14 20:17 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11708.1001.21.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-09-14 20:17 - 2017-09-14 20:17 - 010634752 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11708.1001.21.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll
2017-09-14 20:17 - 2017-09-14 20:17 - 002640896 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11708.1001.21.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll
2017-09-09 20:38 - 2017-09-09 20:39 - 000020480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2017-09-09 20:38 - 2017-09-09 20:39 - 029621760 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2017-08-23 10:45 - 2017-08-23 10:45 - 000358912 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll
2017-08-23 10:45 - 2017-08-23 10:45 - 002536448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\MediaEngineCSWrapper.dll
2017-09-09 20:38 - 2017-09-09 20:39 - 020305920 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll
2017-08-23 10:45 - 2017-08-23 10:45 - 002415104 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\MediaEngine.dll
2017-09-09 20:38 - 2017-09-09 20:38 - 003028992 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll
2017-06-06 17:12 - 2017-06-06 17:12 - 003139496 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-06-06 17:12 - 2017-06-06 17:12 - 000046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll
2017-08-23 10:45 - 2017-08-23 10:45 - 001370112 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35071.16410.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll
2017-06-27 13:16 - 2017-09-22 15:40 - 000038544 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.02\PEbiosinterface32.dll
2017-06-27 13:16 - 2013-07-04 03:32 - 000104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.02\ATKEX.dll
2015-10-29 18:47 - 2017-05-23 13:57 - 000114664 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll
2015-10-29 18:47 - 2017-05-23 13:57 - 000108008 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2015-10-29 18:47 - 2017-05-23 13:57 - 000024040 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2015-10-29 18:47 - 2017-05-23 13:57 - 000048104 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2016-10-24 20:51 - 2017-02-23 20:33 - 000020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-10-24 20:51 - 2017-02-23 20:34 - 000901688 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-10-24 20:51 - 2017-02-23 20:34 - 003776056 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll
2017-08-23 16:11 - 2017-09-14 13:55 - 071818864 _____ () C:\Users\Christophh\AppData\Roaming\Spotify\libcef.dll
2017-08-23 16:11 - 2017-09-14 13:55 - 002969200 _____ () C:\Users\Christophh\AppData\Roaming\Spotify\libglesv2.dll
2017-08-23 16:11 - 2017-09-14 13:55 - 000086640 _____ () C:\Users\Christophh\AppData\Roaming\Spotify\libegl.dll
2016-10-24 20:51 - 2017-02-23 16:30 - 000338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2016-10-24 20:51 - 2017-02-23 16:30 - 000252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2016-10-24 20:51 - 2017-02-23 16:30 - 002443320 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2016-10-24 20:51 - 2017-02-23 16:30 - 000385592 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2016-10-24 20:51 - 2017-02-23 16:30 - 000543288 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2016-10-24 20:51 - 2017-02-23 16:30 - 000468536 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
2014-04-29 16:23 - 2014-04-29 16:23 - 001241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2017-09-02 17:53 - 2017-08-04 23:19 - 000678176 _____ () D:\Steam\SDL2.dll
2017-09-08 10:00 - 2017-09-07 06:51 - 002505504 _____ () D:\Steam\video.dll
2016-10-14 21:39 - 2016-09-01 03:02 - 004969248 _____ () D:\Steam\v8.dll
2016-10-14 21:39 - 2016-01-27 09:49 - 000491008 _____ () D:\Steam\libavformat-56.dll
2016-10-14 21:39 - 2016-01-27 09:49 - 000442880 _____ () D:\Steam\libavutil-54.dll
2016-10-14 21:39 - 2016-01-27 09:49 - 000485888 _____ () D:\Steam\libswscale-3.dll
2016-10-14 21:39 - 2016-09-01 03:02 - 001563936 _____ () D:\Steam\icui18n.dll
2016-10-14 21:39 - 2016-09-01 03:02 - 001195296 _____ () D:\Steam\icuuc.dll
2016-10-14 21:39 - 2016-01-27 09:49 - 000332800 _____ () D:\Steam\libavresample-2.dll
2016-10-14 21:39 - 2016-01-27 09:49 - 002549760 _____ () D:\Steam\libavcodec-56.dll
2017-09-08 10:00 - 2017-09-07 06:51 - 000885024 _____ () D:\Steam\bin\chromehtml.DLL
2016-10-14 21:39 - 2016-07-05 00:17 - 000266560 _____ () D:\Steam\openvr_api.dll
2017-09-02 17:53 - 2017-07-18 00:50 - 073115424 _____ () D:\Steam\bin\cef\cef.win7\libcef.dll
2017-06-09 09:16 - 2017-05-17 03:54 - 000678176 _____ () D:\Steam\bin\cef\cef.win7\SDL2.dll
2016-10-14 21:39 - 2015-09-25 01:52 - 000119208 _____ () D:\Steam\winh264.dll
2017-09-22 15:50 - 2017-09-22 15:50 - 000098816 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32api.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000110080 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\pywintypes27.dll
2017-09-22 15:50 - 2017-09-22 15:50 - 000364544 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\pythoncom27.dll
2017-09-22 15:50 - 2017-09-22 15:50 - 000320512 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32com.shell.shell.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000914432 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\_hashlib.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 001176576 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\wx._core_.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000806400 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\wx._gdi_.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000816128 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\wx._windows_.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 001067008 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\wx._controls_.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000733184 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\wx._misc_.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000682496 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\pysqlite2._sqlite.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000088064 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\_ctypes.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000686080 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\unicodedata.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000119808 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32file.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000108544 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32security.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000007168 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\hashobjs_ext.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000017920 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\thumbnails_ext.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000088064 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\usb_ext.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000012800 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\common.time34.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000018432 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32event.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000167936 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32gui.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000046080 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\_socket.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 001303552 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\_ssl.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000128512 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\_elementtree.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000127488 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\pyexpat.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000038912 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32inet.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000036864 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\_psutil_windows.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000525208 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\windows._lib_cacheinvalidation.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000011264 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32crypt.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000123392 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\wx._wizard.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000077312 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\wx._html2.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000027648 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\_multiprocessing.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000020480 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\_yappi.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000035840 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32process.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000078848 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\wx._animate.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000024064 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32pipe.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000010240 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\select.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000025600 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32pdh.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000017408 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32profile.pyd
2017-09-22 15:50 - 2017-09-22 15:50 - 000022528 ____R () C:\Users\Christophh\AppData\Local\Temp\_MEI67602\win32ts.pyd
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2013-08-22 15:25 - 2013-08-22 15:25 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-2647985832-747989680-4269839675-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Christophh\AppData\Roaming\Mozilla\Firefox\Desktop-Hintergrund.bmp
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{B35FBDA9-C65B-47A7-89EA-57B01B60EA65}] => (Block) D:\programme\spss\stats.exe
FirewallRules: [{099D13E3-C461-4BC6-8AA9-D8FE2A5A3C87}] => (Block) D:\programme\spss\stats.exe
FirewallRules: [UDP Query User{F3A72D23-B603-4F7B-94FB-759242EC9FE3}D:\programme\spss\stats.exe] => (Allow) D:\programme\spss\stats.exe
FirewallRules: [TCP Query User{7E91D023-B68C-446F-A88D-AF8F190CA3CF}D:\programme\spss\stats.exe] => (Allow) D:\programme\spss\stats.exe
FirewallRules: [{68DECFC6-06EC-4A89-9460-8AD119AB25DE}] => (Allow) D:\Spiele\Battlefield 1 CTE\Battlefield 1\bf1.exe
FirewallRules: [{4B97FF0B-B5CC-4D2C-91C8-54E7C412E087}] => (Allow) D:\Spiele\Battlefield 1 CTE\Battlefield 1\bf1.exe
FirewallRules: [{054FFD83-2C35-425A-8D3D-4D2E82399EAA}] => (Allow) D:\Spiele\Battlefield 1 CTE\Battlefield 1\bf1Trial.exe
FirewallRules: [{FAB710FB-1EE2-43CA-BE36-54DC74DEB183}] => (Allow) D:\Spiele\Battlefield 1 CTE\Battlefield 1\bf1Trial.exe
FirewallRules: [{EAF85DE4-1BA5-4707-A2E7-D559A31DFBD1}] => (Allow) D:\Spiele\Battlefield 1 CTE\Battlefield 1 CTE\bf1_cte.exe
FirewallRules: [{3B78D03A-6E75-4D58-9501-21A2B6179C24}] => (Allow) D:\Spiele\Battlefield 1 CTE\Battlefield 1 CTE\bf1_cte.exe
FirewallRules: [{4D87E320-DF34-41A4-8F18-D8116E522B26}] => (Allow) D:\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{8E11CAB3-6576-4470-A984-06E21B7CCD74}] => (Allow) D:\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{8ADDDCD5-DD4B-4D61-812C-374174D98790}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [UDP Query User{4084F086-02AC-47E7-9C96-3B15B1247049}D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{A1C76DAE-E2B2-41EE-801B-3E9D69D8B13A}D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [{3031581B-B895-41FE-BE61-D71E733A7EB4}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [{C727FE97-2BFC-4CC6-9DE8-4017614559DA}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [{109DC5D2-65DD-41CE-84AF-48D9AAB0B717}] => (Allow) D:\Steam\steamapps\common\Dirty Bomb\DirtyBombLauncher.exe
FirewallRules: [{9A3EAE5E-89B1-4AD2-8DFD-CB336B818FDD}] => (Allow) D:\Steam\steamapps\common\Dirty Bomb\DirtyBombLauncher.exe
FirewallRules: [{F91E551C-A116-48CC-B153-40A168C2E616}] => (Allow) D:\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{88534B71-581A-4D5F-B59D-6B2AF72CD5B4}] => (Allow) D:\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{577290BA-FE8E-4C77-824B-6DEC20F4E200}] => (Allow) D:\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{6085BDC2-49FA-49F2-B94C-349731FF7144}] => (Allow) D:\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{DC19986E-04F8-4976-A8C9-A877E30A65A0}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{EB2C4A04-B263-4F53-8C48-25BD52BA1022}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{BF91B00A-D570-4A7D-A43A-656A7DCCF011}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{C452347E-DFEE-4634-9D0E-C1B309A53B9B}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{E54F1CF7-D890-4660-A8FF-3B33B3B48422}] => (Block) D:\spiele\heroes of the storm\versions\base48548\heroesofthestorm_x64.exe
FirewallRules: [{950EC891-E6F9-408D-9B5D-D7EC6AB72F0C}] => (Block) D:\spiele\heroes of the storm\versions\base48548\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{1604F9C6-4398-4F60-88EC-A2176B902862}D:\spiele\heroes of the storm\versions\base48548\heroesofthestorm_x64.exe] => (Allow) D:\spiele\heroes of the storm\versions\base48548\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{C72357B3-559F-4A68-BBB2-3FBCBDBF7A1A}D:\spiele\heroes of the storm\versions\base48548\heroesofthestorm_x64.exe] => (Allow) D:\spiele\heroes of the storm\versions\base48548\heroesofthestorm_x64.exe
FirewallRules: [{2BEAFD9D-1698-49B7-95F2-2A97A6FC0CFC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{7582F3C4-C10A-4E89-90AB-C81232CBBCF3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F6420D1C-B234-4DA2-954A-726B72908CC9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{FB4EACAA-BF4A-49E8-A136-700565C97C0E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [UDP Query User{CEB9BBAB-08A5-4389-B817-020D69F17D79}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [TCP Query User{3F6BDE10-997F-4291-A3B5-4F19C9293999}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [{7FBA1017-EA2A-4C53-B1AF-CAEE09FECB0F}] => (Allow) D:\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{AC1A3B22-C1AE-40E1-BA66-72DD31308CD7}] => (Allow) D:\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [UDP Query User{46862880-DA2A-4AA5-917B-832CD216B58B}D:\sicherung\.minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) D:\sicherung\.minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{81A9155B-97BA-42AA-84ED-DCDE97025F32}D:\sicherung\.minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) D:\sicherung\.minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{5CCC69C3-4230-46E2-A782-737A0F54BC49}] => (Allow) D:\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe
FirewallRules: [{D2140964-DED8-4194-BAE6-3EA3D82B8B6F}] => (Allow) D:\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe
FirewallRules: [{EA757548-9659-449E-8199-E51C3F89E26D}] => (Allow) D:\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe
FirewallRules: [{00C2E2E4-3633-49B0-9970-4524C088C2B1}] => (Allow) D:\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe
FirewallRules: [{9E454426-9F44-4B08-A3DB-02FE95983C52}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{C3A48BD7-716E-4B88-AC0F-2E68EECF9CED}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{1CB37054-8DFE-45C6-B743-0569AAC3CF0D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{B6515389-2662-43D2-8E06-F2C5290E9289}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{B0D4F991-F4B8-4F57-8100-4E837C976F1F}] => (Block) D:\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [{1C40E035-51C4-4CB8-80AD-D93FF9F5B8E2}] => (Block) D:\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [UDP Query User{43EDC139-DF01-4D40-8CDE-95A7B93F3938}D:\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [TCP Query User{439074AF-839D-4F06-964E-941A5FBF869B}D:\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [{C0E4A294-6429-44E1-9433-E1B2B666707D}] => (Allow) D:\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{77DFD709-BD5A-4749-882E-F9486930E8A5}] => (Allow) D:\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{37EB6D7F-DFCE-4039-9F1B-1CE7CB28305F}] => (Block) D:\spiele\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [{7B6ABA40-F303-4C47-8B04-6E79AB68BF95}] => (Block) D:\spiele\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [UDP Query User{43D3BF8B-4235-48FA-A8D1-CCEAB3DE7B26}D:\spiele\starcraft ii\versions\base39576\sc2_x64.exe] => (Allow) D:\spiele\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [TCP Query User{2723C32B-DE08-477A-BC47-B9AE48A6B32C}D:\spiele\starcraft ii\versions\base39576\sc2_x64.exe] => (Allow) D:\spiele\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [{B5D2E769-682B-4CA6-830D-7B3D6993DA0D}] => (Block) D:\spiele\gtav\gta5.exe
FirewallRules: [{153174ED-074B-4C06-86DF-3FE701EAE4B2}] => (Block) D:\spiele\gtav\gta5.exe
FirewallRules: [UDP Query User{0B868E1C-C3B3-4D2B-9B32-17D522FCE3FE}D:\spiele\gtav\gta5.exe] => (Allow) D:\spiele\gtav\gta5.exe
FirewallRules: [TCP Query User{ED90E7CB-DBBA-4801-BA56-79C8372373AB}D:\spiele\gtav\gta5.exe] => (Allow) D:\spiele\gtav\gta5.exe
FirewallRules: [{47DB389D-A6C1-40A5-A325-E412016A8B43}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{4D8920E0-8239-4023-A97E-CE5267CCD157}] => (Allow) D:\Steam\steamapps\common\Stranded Deep\Stranded_Deep_x64.exe
FirewallRules: [{7D3173BA-064A-461E-A0CE-85179956DEA0}] => (Allow) D:\Steam\steamapps\common\Stranded Deep\Stranded_Deep_x64.exe
FirewallRules: [{C093C513-6B31-4E3F-B857-CA50004719AD}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{AF4945FB-B71B-4916-885F-A60C3898874D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{1EEEDCE2-1BCB-459D-A368-30C5CC49F0C6}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{5B363055-D6FD-486B-B3D7-6EA6C33899E8}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{0FCADDE1-0029-47CB-998E-04C33F148A61}] => (Allow) D:\Steam\steamapps\common\The Guild 2 Renaissance\GuildII.exe
FirewallRules: [{BB23A4F2-1441-462D-B0BB-FB7A03B332CA}] => (Allow) D:\Steam\steamapps\common\The Guild 2 Renaissance\GuildII.exe
FirewallRules: [{D4C7EA1B-1517-4351-A08E-564C66FE839B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EBFBEA75-7A73-4E80-BB55-87284A15977E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{B801FC59-120D-49DA-9EAE-BD56C4A18D81}] => (Allow) C:\Users\Christophh\AppData\Local\Apps\2.0\ZW5GXKJT.E0T\29LLDZG7.YGO\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [{C441A6F7-E05E-4C85-ADB1-79104BFDB08E}] => (Allow) C:\Users\Christophh\AppData\Local\Apps\2.0\ZW5GXKJT.E0T\29LLDZG7.YGO\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe
FirewallRules: [UDP Query User{1182DFCA-2A8B-47B3-A4A6-262E767AE0C9}D:\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) D:\steam\steamapps\common\counter-strike global offensive\csgo.exe
FirewallRules: [TCP Query User{7503F75F-238A-4A7C-899C-FB96C6019A07}D:\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) D:\steam\steamapps\common\counter-strike global offensive\csgo.exe
FirewallRules: [{EEEA93BE-EBEF-4499-806F-E2E33963FFF9}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{52211986-6A85-43E4-BE5A-1FC707E379E0}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{FD01900F-317E-494C-83BA-D57748671EBB}] => (Allow) C:\Users\Christophh\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [{434A2C7B-F770-4086-9BD0-4CAECC9527DA}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{847190F2-960B-451F-8F4D-456C9A44530C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{75F57C39-04D7-41C6-9643-BDC52266E5FB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{FA513ED1-547C-4D5A-B36C-B7C94B26CCEA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{50C2DA0F-76A2-4917-9335-0F6223DBD2E4}D:\spiele\far cry 4 final dlc edition\bin\farcry4.exe] => (Allow) D:\spiele\far cry 4 final dlc edition\bin\farcry4.exe
FirewallRules: [UDP Query User{64C3315C-C436-4FFA-9E36-F7EC7CEBD1A4}D:\spiele\far cry 4 final dlc edition\bin\farcry4.exe] => (Allow) D:\spiele\far cry 4 final dlc edition\bin\farcry4.exe
FirewallRules: [TCP Query User{845F1EDC-DFDD-4A88-8640-1665F249666D}D:\spiele\simcity\simcity\simcity.exe] => (Allow) D:\spiele\simcity\simcity\simcity.exe
FirewallRules: [UDP Query User{71508D2D-3E58-4453-BB15-72BA86B6FCC3}D:\spiele\simcity\simcity\simcity.exe] => (Allow) D:\spiele\simcity\simcity\simcity.exe
FirewallRules: [{CF9B3EB5-9D48-45C7-8343-EC606051C258}] => (Block) D:\spiele\simcity\simcity\simcity.exe
FirewallRules: [{124E2EF1-88B1-43C5-871D-1F55AF3E0B38}] => (Block) D:\spiele\simcity\simcity\simcity.exe
FirewallRules: [{5C5C2DFC-FFF6-4416-9B39-87041120CF09}] => (Allow) D:\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [{642977D6-B138-4E9F-B7DB-EAD38DCA1682}] => (Allow) D:\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [TCP Query User{7A70B9E9-6BD6-422E-93E1-CF728AF6DE15}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [UDP Query User{9EDC662F-5646-461B-B397-FC57EE2E20BF}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [{CE89E561-D33C-4E57-9A60-0B730AB2F192}] => (Allow) D:\Steam\steamapps\common\PAYDAY 2 Demo\payday2_win32_release.exe
FirewallRules: [{B7D96811-0573-4899-98EC-A0893B9E88F7}] => (Allow) D:\Steam\steamapps\common\PAYDAY 2 Demo\payday2_win32_release.exe
FirewallRules: [TCP Query User{D9F4D7D1-32EB-40C0-8863-F86532D0D71F}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{052CCC83-FB80-4C6F-B8DA-4E68E91C5CB4}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{1E12540D-455F-483A-A2CC-F21FAF82B23B}] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{B0CAA0EC-C64E-4B2F-B4A6-53D829A11C1D}] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{52059795-9EF3-4B25-B320-F03FB1C1C544}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{E34EFAEF-361F-4813-BD7C-E018EFD198F5}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{8766D8A0-9D2C-4170-A10D-F713DF360CF9}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [TCP Query User{3118D20C-60CA-402F-BA96-45E77CF8079C}C:\steamspiele\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\steamspiele\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{E3907755-C264-403D-A56A-45AEAC3CB4F4}C:\steamspiele\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\steamspiele\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{764473A7-036F-4825-BB17-CF7B4414023C}] => (Block) C:\steamspiele\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{A4D0C427-7344-4B19-9D6F-89526017F839}] => (Block) C:\steamspiele\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{FA28E123-C83B-438B-B91A-21B1ACB30F98}C:\users\christophh\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\christophh\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{D645DE72-22F3-4D3A-A75D-A1A1FDF2ED80}C:\users\christophh\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\christophh\appdata\roaming\spotify\spotify.exe
FirewallRules: [{119EC3DC-E7AA-4141-BE01-CFB25FA7A03C}] => (Block) C:\users\christophh\appdata\roaming\spotify\spotify.exe
FirewallRules: [{FEF82CAC-01D6-47C8-A17C-9AD1F9E4F4B6}] => (Block) C:\users\christophh\appdata\roaming\spotify\spotify.exe
FirewallRules: [{FC1368CB-8DD5-4543-BEF2-315DCB2A08D7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{5B717D7D-AA42-4908-BBE6-3674B2966586}D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{C56B60BB-8721-488E-A9F8-2F6B2763092C}D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{8555A0F3-A453-40A2-B000-1A1426E60F11}] => (Block) D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{ACE19388-438D-4F8B-B62E-90CB7288CCD7}] => (Block) D:\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{6EC638C8-873B-45CE-8A5F-DD2AD5A1E094}] => (Allow) C:\Steamspiele\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{575E17B4-0C7F-4B19-A507-C7D732978D9A}] => (Allow) C:\Steamspiele\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
==================== Wiederherstellungspunkte =========================
ACHTUNG: Systemwiederherstellung ist deaktiviert
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (09/22/2017 03:48:21 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" in Zeile 1.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (09/21/2017 11:29:16 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (09/21/2017 11:03:08 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" in Zeile 1.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (09/21/2017 11:01:57 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" in Zeile 1.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (09/21/2017 10:00:15 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" in Zeile 1.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (09/21/2017 09:59:45 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Christoph)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (09/21/2017 07:10:24 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" in Zeile 1.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (09/21/2017 07:03:51 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" in Zeile 1.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (09/21/2017 07:03:33 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" in Zeile 1.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (09/20/2017 06:48:23 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Systemfehler:
=============
Error: (09/22/2017 03:41:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Treiber konnte nicht geladen werden.
Error: (09/22/2017 03:41:52 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys
Error: (09/22/2017 03:41:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Treiber konnte nicht geladen werden.
Error: (09/22/2017 03:41:52 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys
Error: (09/22/2017 03:41:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Treiber konnte nicht geladen werden.
Error: (09/22/2017 03:41:52 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys
Error: (09/22/2017 03:41:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Treiber konnte nicht geladen werden.
Error: (09/22/2017 03:41:52 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys
Error: (09/22/2017 03:41:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Treiber konnte nicht geladen werden.
Error: (09/22/2017 03:41:51 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys
CodeIntegrity:
===================================
Date: 2017-08-23 16:10:28.701
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i7-4790K CPU @ 4.00GHz
Prozentuale Nutzung des RAM: 54%
Installierter physikalischer RAM: 8133.69 MB
Verfügbarer physikalischer RAM: 3674.4 MB
Summe virtueller Speicher: 18885.69 MB
Verfügbarer virtueller Speicher: 12125.24 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:110.8 GB) (Free:43.56 GB) NTFS
Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:184.84 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 111.8 GB) (Disk ID: 261C8E12)
Partition: GPT.
========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: C2F9017A)
Partition: GPT.
==================== Ende von Addition.txt ============================ Probleme nicht. Ich hätte aber noch Fragen: Ist es normal , dass die gespeicherten Passwörter quasi "gelöscht" wurden oder ich ausgeloggt wurde bei einigen Seiten (Firefox). Was ist mit den ganzen Programmen kann ich die später wieder deinstallieren? |