MoonRace | 02.07.2019 21:33 | Addition.txt: Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 30-06-2019
durchgeführt von Stefan (02-07-2019 19:42:02)
Gestartet von C:\Users\Stefan\Downloads
Windows 10 Home Version 1903 18362.175 (X64) (2019-06-09 15:47:06)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-242802386-3142294302-895090636-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-242802386-3142294302-895090636-503 - Limited - Disabled)
Gast (S-1-5-21-242802386-3142294302-895090636-501 - Limited - Disabled)
Stefan (S-1-5-21-242802386-3142294302-895090636-1001 - Administrator - Enabled) => C:\Users\Stefan
WDAGUtilityAccount (S-1-5-21-242802386-3142294302-895090636-504 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
@BIOS B16.1205.1 (HKLM-x32\...\{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE) Hidden
@BIOS B16.1205.1 (HKLM-x32\...\InstallShield_{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE)
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Apowersoft Bildschirmrekorder Pro V2.2.4 (HKLM-x32\...\{dc9006db-6b05-4f0f-833b-79ef3f284c24}_is1) (Version: 2.2.4 - APOWERSOFT LIMITED)
APP Center (HKLM-x32\...\{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 1.00.1703.2301 - GIGABYTE) Hidden
APP Center (HKLM-x32\...\InstallShield_{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 1.00.1703.2301 - GIGABYTE)
Apple Application Support (32-Bit) (HKLM-x32\...\{C1BCFECF-6EC2-4750-9072-5E2489423F8F}) (Version: 7.5 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{B202C7F5-7DE3-4FBF-B259-E70E625F56FC}) (Version: 7.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B5A46811-3612-4DA5-8A5A-E6DED5D7C523}) (Version: 12.2.1.12 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Battlefield™ V (HKLM-x32\...\{e26b382f-e945-4f70-9318-121b683f1d61}) (Version: 1.0.61.4043 - Electronic Arts)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Call of Duty(R) 4 - Modern Warfare(TM) 1.1 Patch (HKLM-x32\...\InstallShield_{5D7767FA-7FE8-4627-9F09-AEF7A25F1E07}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (HKLM-x32\...\InstallShield_{E5141379-B2D9-4BBC-BB2A-5805541571DD}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch (HKLM-x32\...\InstallShield_{050C1C8E-4A4D-4C2F-B9AE-67E60EE91B7F}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (HKLM-x32\...\InstallShield_{3BD633E0-4BF8-4499-9149-88F0767D449C}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch (HKLM-x32\...\InstallShield_{8503C901-85D7-4262-88D2-8D8B2A7B08B8}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (HKLM-x32\...\InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: - ) Hidden
CameraHelperMsi (HKLM-x32\...\{15634701-BACE-4449-8B25-1567DA8C9FD3}) (Version: 13.51.815.0 - Logitech) Hidden
Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.59 - Piriform)
Chocolatey GUI (HKLM-x32\...\{4ACC511C-C0F8-449F-AE5E-E3A480FA1699}) (Version: 0.16.0.0 - Chocolatey)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 425.31 - NVIDIA Corporation) Hidden
EasyTuneEngineService (HKLM-x32\...\{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.17.0328 - GIGABYTE) Hidden
EasyTuneEngineService (HKLM-x32\...\InstallShield_{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.17.0328 - GIGABYTE)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
erLT (HKLM-x32\...\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}) (Version: 1.20.138.34 - Logitech, Inc.) Hidden
Far Cry New Dawn (HKLM-x32\...\Uplay Install 5210) (Version: - Ubisoft)
FIFA 19 (HKLM-x32\...\{3391E07D-8484-4124-817E-FCBDA859FD62}) (Version: 1.0.60.53040 - Electronic Arts)
FileZilla Client 3.42.1 (HKLM-x32\...\FileZilla Client) (Version: 3.42.1 - Tim Kosse)
FlashTBT_100s (HKLM-x32\...\{6DC28AFC-B2A2-456D-B71B-BB8A8F8A8253}) (Version: 1.00.1603.1501 - GIGABYTE) Hidden
FlashTBT_100s (HKLM-x32\...\InstallShield_{6DC28AFC-B2A2-456D-B71B-BB8A8F8A8253}) (Version: 1.00.1603.1501 - GIGABYTE)
GDR 2269 for SQL Server 2014 (KB3045324) (64-bit) (HKLM\...\KB3045324) (Version: 12.0.2269.0 - Microsoft Corporation)
GigabyteFirmwareUpdateUtility (HKLM-x32\...\{1CBA99CE-1AB3-4366-AFB4-7F7B75EBBE35}) (Version: 1.00.0000 - GIGABYTE) Hidden
GigabyteFirmwareUpdateUtility (HKLM-x32\...\InstallShield_{1CBA99CE-1AB3-4366-AFB4-7F7B75EBBE35}) (Version: 1.00.0000 - GIGABYTE)
GIMP 2.10.12 (HKLM\...\GIMP-2_is1) (Version: 2.10.12 - The GIMP Team)
GIMP Updater (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\GIMP Updater) (Version: 2.8.19 - GIMP)
GlassFish Server Open Source Edition 4.1.1 (HKLM\...\nbi-glassfish-mod-4.1.1.0.1) (Version: - )
gpedt.msc 1.0 (HKLM-x32\...\{10B9C608-BF7C-4CCF-A658-C01D969DCA21}_is1) (Version: - Richard)
GService (HKLM-x32\...\{D9CB4282-7B2A-4840-AD1D-9DA72B973DD9}) (Version: 1.16.1116.1 - GIGABYTE)
iCloud (HKLM\...\{DA6D808E-3629-4933-8FB3-583F9BCB0DEF}) (Version: 7.12.0.14 - Apple Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel(R) Network Connections 23.2.0.1006 (HKLM\...\PROSetDX) (Version: 23.2.0.1006 - Intel)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.0.0.1039 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
iTunes (HKLM\...\{192AAD39-1A37-4CED-A441-5D3E6E21ACD3}) (Version: 12.9.5.7 - Apple Inc.)
Killer Performance Driver Suite (HKLM\...\{086AF290-0E96-4EF9-B8A1-617836F0BE44}) (Version: 1.5.1859 - Rivet Networks)
Kodi (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\Kodi) (Version: - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Logitech Gaming Software 9.02 (HKLM\...\Logitech Gaming Software) (Version: 9.02.65 - Logitech Inc.)
Logitech Webcam-Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.80 - Logitech Inc.)
Malwarebytes Version 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes)
Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft ODBC Driver 11 for SQL Server (HKLM\...\{7D1C6D7B-8E3F-4724-94C8-AA7EB7F60AE0}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 16.0.11727.20230 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\OneDriveSetup.exe) (Version: 19.103.0527.0003 - Microsoft Corporation)
Microsoft Project Professional 2016 - de-de (HKLM\...\ProjectProRetail - de-de) (Version: 16.0.11727.20230 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{8E4BA1E5-54E8-41F0-919B-CD875B83CFCE}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2014 (64-bit) (HKLM\...\Microsoft SQL Server SQLServer2014) (Version: - Microsoft Corporation)
Microsoft SQL Server 2014 Setup (English) (HKLM\...\{37C44B5C-E839-4A9D-9E20-A93E1B2FD35A}) (Version: 12.0.2269.0 - Microsoft Corporation)
Microsoft SQL Server*2014 Transact-SQL ScriptDom (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Visio Professional 2016 - de-de (HKLM\...\VisioProRetail - de-de) (Version: 16.0.11727.20230 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27012 (HKLM-x32\...\{427ada59-85e7-4bc8-b8d5-ebf59db60423}) (Version: 14.16.27012.6 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (HKLM-x32\...\{7e9fae12-5bbf-47fb-b944-09c49e75c061}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft Visual C++ Compiler Package for Python 2.7 (HKLM-x32\...\{692514A8-5484-45FC-B0AE-BE2DF7A75891}) (Version: 9.0.1.30729 - Microsoft Corporation)
Microsoft VSS Writer für SQL Server 2014 (HKLM\...\{D390AADD-C825-4B31-8C79-83A9461D5524}) (Version: 12.0.2000.8 - Microsoft Corporation)
Mozilla Firefox 67.0.4 (x64 de) (HKLM\...\Mozilla Firefox 67.0.4 (x64 de)) (Version: 67.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 67.0.4 - Mozilla)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
Nextcloud (HKLM-x32\...\Nextcloud) (Version: 2.5.2.5231 - Nextcloud GmbH)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden
NVIDIA 3D Vision Controller-Treiber 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 425.31 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.18.0.102 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.18.0.102 - NVIDIA Corporation)
NVIDIA Grafiktreiber 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 425.31 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.11727.20230 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.11727.20230 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.11727.20230 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.11727.20230 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.41.27263 - Electronic Arts, Inc.)
PrivaZer (HKLM-x32\...\PrivaZer) (Version: 3.0.73.0 - Goversoft LLC)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7727 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.0.6 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.6 - VS Revo Group, Ltd.)
RSI Launcher 1.1.0 (HKLM\...\81bfc699-f883-50c7-b674-2483b6baae23) (Version: 1.1.0 - Cloud Imperium Games)
SafeInCloud Password Manager (HKLM-x32\...\{C2DF1632-2972-44BF-ADD7-4AE223003591}) (Version: 19.1.6.0 - Andrey Shcherbakov)
Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 1.06.60 (17.03.2015) - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.25 - Samsung Electronics Co., Ltd.) Hidden
Signal 1.25.3 (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\7d96caee-06e6-597c-9f2f-c7bb2e0948b4) (Version: 1.25.3 - Open Whisper Systems)
Skype Version 8.34 (HKLM-x32\...\Skype_is1) (Version: 8.34 - Skype Technologies S.A.)
SNS Upload for Easy Document Creator (HKLM-x32\...\{B6B5F07C-88D5-49D3-A1A7-A6D4BC37DCCC}) (Version: 1.0.0 - Samsung Electronics Co.,Ltd)
Sound Blaster X-Fi MB3 (HKLM-x32\...\{3689CE39-3173-4952-B7AF-F1A9D6F9A288}) (Version: 1.00.06 - Creative Technology Limited)
sPlan 7.0 (Demo) (HKLM-x32\...\sPlan_70_Demo_is1) (Version: - )
Spotify (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\Spotify) (Version: 1.1.10.540.gfcf0430f - Spotify AB)
SQL Server 2014 Common Files (HKLM\...\{9E83BB26-ACD3-442A-87FE-EB3B28E06AAE}) (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Common Files (HKLM\...\{F7012F84-80F5-4C25-852E-B1BA03276FE6}) (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Database Engine Services (HKLM\...\{17531BCD-C627-46A2-9F1E-7CC920E0E94A}) (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Database Engine Services (HKLM\...\{B3FD71B4-524A-4377-BEB2-C2DB819A304F}) (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Database Engine Shared (HKLM\...\{4D261997-B65F-4141-836C-0CE3D8D93431}) (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Database Engine Shared (HKLM\...\{ACC530B8-B6B4-40D6-B59B-152468CF47D0}) (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
Sql Server Customer Experience Improvement Program (HKLM\...\{6476DB81-F263-4C04-8574-AAD31136C304}) (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
STAR WARS™ Battlefront™ II (HKLM-x32\...\{8a882ce0-0c0b-4eb2-850c-28ebadab4f50}) (Version: 1.1.7.38635 - Electronic Arts)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sublime Text Build 3143 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.8 - TeamSpeak Systems GmbH)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.3.4730 - TeamViewer)
Telegram Desktop version 1.7.10 (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 1.7.10 - Telegram Messenger LLP)
Thunderbolt(TM) Software (HKLM-x32\...\{146DE795-0B91-40E7-9991-5DC766EFB211}) (Version: 15.3.40.275 - Intel Corporation)
Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.67 - Samsung Electronics CO., LTD.)
Unterstützungsdateien für Microsoft SQL Server 2008-Setup (HKLM\...\{D8125A39-ADEE-4187-B04D-DB6CF489AF61}) (Version: 10.3.5500.0 - Microsoft Corporation)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{F814D094-197F-43C8-87FA-3210BB780486}) (Version: 2.53.0.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 38.0.1 - Ubisoft)
VeraCrypt (HKLM-x32\...\VeraCrypt) (Version: 1.23-Hotfix-2 - IDRIX)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.7.1 - VideoLAN)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1) (Version: 1.0.3.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1-2) (Version: 1.0.39.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.51.0 (HKLM\...\VulkanRT1.0.51.0) (Version: 1.0.51.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.54.0 (HKLM\...\VulkanRT1.0.54.0) (Version: 1.0.54.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.54.0 (HKLM\...\VulkanRT1.0.54.0-4) (Version: 1.0.54.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0-4) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
XAMPP (HKLM-x32\...\xampp) (Version: 7.2.1-0 - Bitnami)
Zoom (HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\ZoomUMX) (Version: 4.4 - Zoom Video Communications, Inc.)
Packages:
=========
Das Schachspiel Lv.100 -> C:\Program Files\WindowsApps\6918E89D.TheChessLv.100_1.2.8.0_x64__66n08swfvvka0 [2018-05-02] (UNBALANCE corp.) [MS Ad]
Fotos-Add-On -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2018-10-02] (Microsoft Corporation)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_41.1788.50991.0_x86__8xx8rvfyw5nnt [2018-07-26] (Instagram)
Mail und Kalender -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20174.0_x64__8wekyb3d8bbwe [2019-05-30] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft News – Nachrichten -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.31.11723.0_x64__8wekyb3d8bbwe [2019-06-27] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.6132.0_x64__8wekyb3d8bbwe [2019-06-27] (Microsoft Studios) [MS Ad]
MSN Finanzen -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.29.10701.0_x64__8wekyb3d8bbwe [2019-03-22] (Microsoft Corporation) [MS Ad]
MSN Sport -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.28.3242.0_x64__8wekyb3d8bbwe [2018-12-15] (Microsoft Corporation) [MS Ad]
MSN Wetter -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe [2019-02-12] (Microsoft Corporation) [MS Ad]
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2018-04-09] (Samsung Electronics Co. Ltd.)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-242802386-3142294302-895090636-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-30FB1AD414DD} -> [Creative Cloud Files] => C:\Users\Stefan\Creative Cloud Files [2018-12-15 15:46]
CustomCLSID: HKU\S-1-5-21-242802386-3142294302-895090636-1001_Classes\CLSID\{234b6833-f9a0-4b55-82ba-3dce2e23c15b} -> [Nextcloud] => D: [0000-00-00 00:00]
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ OCError] -> {0960F090-F328-48A3-B746-276B1E3C3722} => C:\Program Files (x86)\Nextcloud\shellext\OCOverlays_x64.dll [2018-06-22] (ownCloud Inc.) [Datei ist nicht signiert]
ShellIconOverlayIdentifiers: [ OCOK] -> {0960F092-F328-48A3-B746-276B1E3C3722} => C:\Program Files (x86)\Nextcloud\shellext\OCOverlays_x64.dll [2018-06-22] (ownCloud Inc.) [Datei ist nicht signiert]
ShellIconOverlayIdentifiers: [ OCOKShared] -> {0960F093-F328-48A3-B746-276B1E3C3722} => C:\Program Files (x86)\Nextcloud\shellext\OCOverlays_x64.dll [2018-06-22] (ownCloud Inc.) [Datei ist nicht signiert]
ShellIconOverlayIdentifiers: [ OCSync] -> {0960F094-F328-48A3-B746-276B1E3C3722} => C:\Program Files (x86)\Nextcloud\shellext\OCOverlays_x64.dll [2018-06-22] (ownCloud Inc.) [Datei ist nicht signiert]
ShellIconOverlayIdentifiers: [ OCWarning] -> {0960F096-F328-48A3-B746-276B1E3C3722} => C:\Program Files (x86)\Nextcloud\shellext\OCOverlays_x64.dll [2018-06-22] (ownCloud Inc.) [Datei ist nicht signiert]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Keine Datei
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Keine Datei
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2019-05-08] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers1: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2019-06-09] () [Datei ist nicht signiert]
ContextMenuHandlers2: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2019-06-09] () [Datei ist nicht signiert]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [OCContextMenuHandler] -> {841A0AAD-AA11-4B50-84D9-7F8E727D77D7} => C:\Program Files (x86)\Nextcloud\shellext\OCContextMenu_x64.dll [2018-06-22] (ownCloud Inc.) [Datei ist nicht signiert]
ContextMenuHandlers3: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2019-06-09] () [Datei ist nicht signiert]
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Keine Datei
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Keine Datei
ContextMenuHandlers4: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2019-06-09] () [Datei ist nicht signiert]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Keine Datei
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Keine Datei
ContextMenuHandlers6: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll [2019-06-09] () [Datei ist nicht signiert]
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 32-bit Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Stefan\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" x86"
ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 64-bit Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Stefan\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" amd64"
ShortcutWithArgument: C:\Users\Stefan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 64-bit Cross Tools Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Stefan\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" x86_amd64"
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-06-25 09:45 - 2015-06-25 09:45 - 000017920 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe
2015-02-17 01:47 - 2015-02-17 01:47 - 000105472 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\ycc.dll
2019-03-19 14:35 - 2019-03-19 14:35 - 001213952 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\nextcloudsync.dll
2019-03-19 14:32 - 2019-03-19 14:32 - 001068032 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\ocsync.dll
2018-08-21 13:30 - 2018-08-21 13:30 - 000038400 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\qt5keychain.dll
2018-06-22 19:12 - 2018-06-22 19:12 - 000062976 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\shellext\OCUtil_x64.dll
2019-06-09 10:40 - 2019-06-09 10:40 - 003525431 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll
2019-06-11 10:20 - 2019-06-11 10:20 - 002333184 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Safe In Cloud\SafeInCloud.exe
2017-05-26 09:28 - 2015-05-29 18:56 - 000366080 _____ () [Datei ist nicht signiert] C:\WINDOWS\SYSTEM32\APOMgr64.DLL
2017-05-26 09:28 - 2015-05-29 18:57 - 000089600 _____ () [Datei ist nicht signiert] C:\WINDOWS\SYSTEM32\CmdRtr64.DLL
2017-05-26 09:28 - 2011-09-14 16:34 - 000406016 ____N (Creative Technology Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
2019-02-21 18:25 - 2019-02-21 18:00 - 000078336 _____ (Igor Pavlov) [Datei ist nicht signiert] C:\Program Files\7-Zip\7-zip.dll
2018-05-02 12:16 - 2018-05-02 12:16 - 000505856 _____ (Intel Corporation) [Datei ist nicht signiert] C:\WINDOWS\system32\IProsetMonitor.exe
2018-05-03 12:30 - 2018-05-03 12:30 - 000349696 _____ (Intel(R) Corporation) [Datei ist nicht signiert] C:\WINDOWS\system32\NCS2Setp.dll
2018-02-13 10:53 - 2018-02-13 10:53 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\AppVIsvSubsystems32.dll
2018-02-13 10:53 - 2018-02-13 10:53 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\c2r32.dll
2019-03-19 14:40 - 2019-03-19 14:40 - 002421248 _____ (Nextcloud GmbH) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\nextcloud.exe
2018-06-22 19:12 - 2018-06-22 19:12 - 000092672 _____ (ownCloud Inc.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\shellext\OCContextMenu_x64.dll
2018-06-22 19:12 - 2018-06-22 19:12 - 000174592 _____ (ownCloud Inc.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\shellext\OCOverlays_x64.dll
2018-04-02 13:22 - 2018-04-02 13:22 - 000099840 _____ (Rivet Networks) [Datei ist nicht signiert] C:\Program Files\Killer Networking\Killer Control Center\KillerNetworkServicePS.dll
2018-03-27 10:46 - 2018-03-27 10:46 - 002892800 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\libcrypto-1_1-x64.dll
2018-06-22 16:54 - 2018-06-22 16:54 - 001817088 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\LIBEAY32.dll
2018-06-22 16:54 - 2018-06-22 16:54 - 000371712 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\ssleay32.dll
2018-04-06 20:29 - 2018-04-06 20:29 - 002286747 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\LIBEAY32.dll
2018-04-06 20:29 - 2018-04-06 20:29 - 000416627 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\ssleay32.dll
2019-02-14 20:48 - 2019-06-11 08:21 - 001277440 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] F:\Origin\LIBEAY32.dll
2019-02-14 20:48 - 2019-06-11 08:22 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] F:\Origin\ssleay32.dll
2019-02-14 20:48 - 2019-05-25 09:55 - 001611264 _____ (The Qt Company Ltd) [Datei ist nicht signiert] F:\Origin\platforms\qwindows.dll
2019-06-28 07:31 - 2019-05-25 09:56 - 005487104 _____ (The Qt Company Ltd) [Datei ist nicht signiert] F:\Origin\Qt5Core.dll
2019-06-28 07:31 - 2019-05-25 09:56 - 005841920 _____ (The Qt Company Ltd) [Datei ist nicht signiert] F:\Origin\Qt5Gui.dll
2019-06-28 07:31 - 2019-05-25 09:56 - 001179136 _____ (The Qt Company Ltd) [Datei ist nicht signiert] F:\Origin\Qt5Network.dll
2019-06-28 07:31 - 2019-05-25 09:56 - 005089792 _____ (The Qt Company Ltd) [Datei ist nicht signiert] F:\Origin\Qt5Widgets.dll
2019-06-28 07:31 - 2019-05-25 09:56 - 000184832 _____ (The Qt Company Ltd) [Datei ist nicht signiert] F:\Origin\Qt5Xml.dll
2018-06-15 16:43 - 2018-06-15 16:43 - 000035328 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\iconengines\qsvgicon.dll
2018-06-15 07:16 - 2018-06-15 07:16 - 000031744 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qgif.dll
2018-06-15 16:43 - 2018-06-15 16:43 - 000040960 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qicns.dll
2018-06-15 07:16 - 2018-06-15 07:16 - 000032256 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qico.dll
2018-06-15 07:17 - 2018-06-15 07:17 - 000329728 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qjpeg.dll
2018-06-15 16:43 - 2018-06-15 16:43 - 000025088 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qsvg.dll
2018-06-15 16:42 - 2018-06-15 16:42 - 000025088 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qtga.dll
2018-06-15 16:43 - 2018-06-15 16:43 - 000371712 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qtiff.dll
2018-06-15 16:42 - 2018-06-15 16:42 - 000023552 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qwbmp.dll
2018-06-15 16:43 - 2018-06-15 16:43 - 000486912 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\imageformats\qwebp.dll
2018-06-15 07:18 - 2018-06-15 07:18 - 001426944 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\platforms\qwindows.dll
2018-08-21 13:21 - 2018-08-21 13:21 - 005916160 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Core.dll
2018-06-15 07:13 - 2018-06-15 07:13 - 006338560 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Gui.dll
2018-06-15 07:12 - 2018-06-15 07:12 - 001257984 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Network.dll
2018-06-15 18:10 - 2018-06-15 18:10 - 000305152 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Positioning.dll
2018-06-15 07:16 - 2018-06-15 07:16 - 000318464 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5PrintSupport.dll
2018-06-15 17:01 - 2018-06-15 17:01 - 003426816 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Qml.dll
2018-06-15 17:05 - 2018-06-15 17:05 - 003630592 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Quick.dll
2018-06-15 17:06 - 2018-06-15 17:06 - 000073216 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5QuickWidgets.dll
2018-06-15 16:43 - 2018-06-15 16:43 - 000328704 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Svg.dll
2018-06-15 17:20 - 2018-06-15 17:20 - 000112128 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5WebChannel.dll
2018-06-15 21:41 - 2018-06-15 21:41 - 073577984 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5WebEngineCore.dll
2018-06-15 21:53 - 2018-06-15 21:53 - 000226304 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5WebEngineWidgets.dll
2018-06-15 07:15 - 2018-06-15 07:15 - 005541376 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Widgets.dll
2018-06-15 07:10 - 2018-06-15 07:10 - 000190976 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\Qt5Xml.dll
2018-06-15 07:17 - 2018-06-15 07:17 - 000136192 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Nextcloud\styles\qwindowsvistastyle.dll
2017-03-29 19:33 - 2017-03-29 19:33 - 007702528 _____ (TODO: <Company name>) [Datei ist nicht signiert] C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GbtNvGpuLib.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2015-10-30 09:24 - 2019-06-27 18:28 - 000000883 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-242802386-3142294302-895090636-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Stefan\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img1.jpg
HKU\S-1-5-80-2266128050-168046786-4118164591-2120174550-663538628\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 192.168.22.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "DualBiosRescue"
HKLM\...\StartupApproved\Run32: => "Sound Blaster X-Fi MB 3"
HKLM\...\StartupApproved\Run32: => "Lightshot"
HKLM\...\StartupApproved\Run32: => "WindowsDefender"
HKLM\...\StartupApproved\Run32: => "DiscWizardMonitor.exe"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "LWS"
HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\StartupFolder: => "hide.me VPN.lnk"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "AlcoholAutomount"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Lync"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-242802386-3142294302-895090636-1001\...\StartupApproved\Run: => "Discord"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{61CB2030-0212-4F02-B76E-94C6B19F658B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{78697ED4-5A5C-43F0-B358-98B0D1DC6F41}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{D2A7CE09-2B24-4969-B695-304A08D88FA6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{C74C13F3-1339-413F-90C0-FD5E65E5AD97}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{02461024-1254-43A8-B104-E0DD77C57034}] => (Allow) LPort=9009
FirewallRules: [{36142F72-D184-4CAA-B5F4-E054AF1AE6B4}] => (Allow) LPort=9009
FirewallRules: [{67B3495C-5A4C-4F79-804A-3B2CFD3B5D81}] => (Allow) LPort=9009
FirewallRules: [{B713FA3C-C211-45EF-AE68-A68576621E94}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield V\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{EFE85610-4EED-4A2F-ADEC-C270AF80F2E5}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield V\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{A5D6F33B-2D6F-437B-A036-AEC9554714FA}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield V\bfvTrial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{07222563-39B0-4BCD-BA18-DE33F4469330}] => (Allow) F:\Program Files (x86)\Origin Games\Battlefield V\bfvTrial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{21A184FC-1E7B-4767-BD73-7558C9D8A9D5}] => (Allow) LPort=9009
FirewallRules: [{99045211-D3A5-4A09-801A-B91283163AC3}] => (Allow) LPort=9009
FirewallRules: [{BEDB2230-D28A-4FC3-B5C2-BD28FED70E5E}] => (Allow) LPort=9009
FirewallRules: [{2A4C8138-2BDC-43B3-A81C-99B3138EB919}] => (Allow) LPort=9009
FirewallRules: [{9829114D-2179-4E25-9E54-0EE3F434FF19}] => (Allow) LPort=9009
FirewallRules: [{536D17DB-4263-44CD-AEF2-280C8B35ED7A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{F6A1AE9D-C47B-40A3-BBAB-0C21E0D50899}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{5B92A83A-99BA-44F1-A8A0-819A50EBAEB3}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [TCP Query User{D279BB16-F973-469B-90AC-011C98484B53}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [UDP Query User{E5BCFF3A-CCC5-4464-9ECD-5AACA6A412C9}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{1A391391-888B-4D9E-9944-11323E56B726}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Datei ist nicht signiert]
FirewallRules: [{ADA7BDA9-A069-4BE2-8D61-5FD0897BE5FF}] => (Allow) LPort=9009
FirewallRules: [{C64AB5E0-86C1-4CE1-810E-0B5A64213474}] => (Allow) LPort=9009
FirewallRules: [{40198E39-E236-41A9-93B9-F75879DF58CC}] => (Allow) LPort=9009
FirewallRules: [{C7F76C17-1990-446D-B73F-D69B0E27A5FE}] => (Allow) LPort=9009
FirewallRules: [{D9E622A2-F601-4A6C-B738-6D14C17AB1D4}] => (Allow) LPort=9009
FirewallRules: [{D9A02FE0-43DD-465B-864A-CA2DD347EF72}] => (Allow) LPort=9009
FirewallRules: [{BEF5CE34-B847-40CA-B0A8-17E41B2A3980}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{749C72E2-ED24-4C1A-8497-47C7347031A1}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{693D2BA5-C49D-4A6C-AC50-36BE58C21B84}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6F48E1BB-0969-43A9-8DCE-C82A5BC92368}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1996A04E-0931-4BE8-B10B-B7FB731626AD}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F9CD32EC-B193-4C99-A283-A467783632C6}] => (Allow) LPort=9009
FirewallRules: [{BE6F22D4-747C-4548-AAA7-B8E99F7C914A}] => (Allow) LPort=9009
FirewallRules: [{42D4A87E-EB68-4774-B04E-E9577AD08047}] => (Allow) LPort=9009
FirewallRules: [{D6D6E898-8D20-40B8-A6E5-7CDFC5BF5524}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{D2881200-7910-4995-8E65-EB9B4A70B0CD}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{8C3F6934-2B1B-4A37-B538-50ACDDA847BF}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{0FEA2147-FCEE-48A9-85F3-7218EB0BFCDB}] => (Allow) F:\Program Files (x86)\Origin Games\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [UDP Query User{323C45D5-C77D-4C1E-AC41-9795ED8092AF}F:\program files (x86)\origin games\fifa 19\fifa19.exe] => (Allow) F:\program files (x86)\origin games\fifa 19\fifa19.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{23549142-BDDA-4888-9753-A563DEAFE462}F:\program files (x86)\origin games\fifa 19\fifa19.exe] => (Allow) F:\program files (x86)\origin games\fifa 19\fifa19.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [UDP Query User{3A4B1F5E-1BB9-4751-85E5-5AC57B3E66E5}C:\users\stefan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\stefan\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{809B18E5-2234-4E38-BE26-C8A564F3CD7C}C:\users\stefan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\stefan\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{4FAA66D8-7734-4FB4-A6ED-5F986931BFDA}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{37D571CE-ED05-4AF2-83AB-7566071359C5}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{4D2343A2-5528-4618-A203-03C70A8DE872}] => (Allow) LPort=9009
FirewallRules: [{86849F78-76C1-46C8-A53D-1BAD7BC6B5EA}] => (Allow) LPort=9009
FirewallRules: [{C7A3BF86-D384-450A-AEC2-CBA3B0D26C81}] => (Allow) LPort=9009
FirewallRules: [{FC9EFD25-6CA1-4C0A-B350-31BA643B2C5B}] => (Allow) LPort=9009
FirewallRules: [{D93C538C-59A9-47EB-8817-5DC1425725E9}] => (Allow) LPort=9009
FirewallRules: [{9AB3925E-C76A-4600-90DC-E25A8E9787AD}] => (Allow) LPort=9009
FirewallRules: [{99C0A507-36F0-43D2-A406-82B2AE09EBBE}] => (Allow) LPort=9009
FirewallRules: [{2072C2B6-6FA7-472F-B7B3-4493B26036C2}] => (Allow) LPort=9009
FirewallRules: [{878FCAB7-003A-4A02-B88E-A884DC6EB744}] => (Allow) LPort=9009
FirewallRules: [{3D30E21D-6B6B-4052-8664-F6DC92E2ED8D}] => (Allow) LPort=9009
FirewallRules: [{83FE9E6C-666C-4725-8F87-90D449B5FB9F}] => (Allow) LPort=9009
FirewallRules: [{CDF87DEF-B701-4516-894A-C28B0C122C6E}] => (Allow) LPort=9009
FirewallRules: [{C793C2AC-BB2C-4424-8489-08201C9B12DB}] => (Allow) LPort=9009
FirewallRules: [{445C1FBF-40FD-48C2-8538-C2CFDFC0932E}] => (Allow) LPort=9009
FirewallRules: [{BE64CB77-5419-4CC7-BDC8-555876B1543B}] => (Allow) LPort=9009
FirewallRules: [{75D0824C-030D-44F2-A372-78152135A89B}] => (Allow) LPort=9009
FirewallRules: [{5167B4E2-5F13-4BBC-97B1-081057D64983}] => (Allow) LPort=9009
FirewallRules: [{4160D0CE-42C9-42E3-9429-82021E49F6D8}] => (Allow) LPort=9009
FirewallRules: [{7D50C958-980B-4D4B-A729-A1C9EC03D280}] => (Allow) LPort=9009
FirewallRules: [{BDF1775B-8FE1-4AC4-8330-B85DE7607A2A}] => (Allow) LPort=9009
FirewallRules: [{B4C67BC1-89A5-42C0-ACB4-A120D0E349BA}] => (Allow) LPort=9009
FirewallRules: [{8B870534-3051-45AE-ACF9-52E8B00299E2}] => (Allow) LPort=9009
FirewallRules: [{F0B2D402-29E8-4484-A3B1-9E5A815B29F5}] => (Allow) LPort=9009
FirewallRules: [{CBA978CB-4E57-494C-AB91-2C5ECF859E1F}] => (Allow) LPort=9009
FirewallRules: [{D08A6E24-08DD-4F63-84D4-7D6127EC82B8}] => (Allow) LPort=9009
FirewallRules: [{7E57EE39-3638-43D2-B27F-0E14EAEE42E0}] => (Allow) LPort=9009
FirewallRules: [{4D6B8FD0-F2B9-4D36-B044-9BECDD426C0C}] => (Allow) LPort=9009
FirewallRules: [{7ADA22BF-4B48-4B38-868A-3B6003C05248}] => (Allow) LPort=9009
FirewallRules: [{AD22FD7A-E8A5-42AB-9513-0187DAFF987D}] => (Allow) LPort=9009
FirewallRules: [TCP Query User{E282713D-62E6-4CFB-AD76-E5A826532802}F:\ubisoft game launcher\games\far cry new dawn\bin\farcrynewdawn.exe] => (Allow) F:\ubisoft game launcher\games\far cry new dawn\bin\farcrynewdawn.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{43EDD6EA-B3EA-4E58-99F6-9CE3C36CC858}F:\ubisoft game launcher\games\far cry new dawn\bin\farcrynewdawn.exe] => (Allow) F:\ubisoft game launcher\games\far cry new dawn\bin\farcrynewdawn.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{46CEEE3C-69EC-4EA8-B1E3-A2893C12F541}] => (Allow) LPort=9009
FirewallRules: [{715A48F8-1220-4EF0-8948-714F11692D5B}] => (Allow) LPort=9009
FirewallRules: [{CA4C5307-1DC7-46E2-8E73-C13AF19BC997}] => (Allow) LPort=9009
FirewallRules: [{8354C6D5-2D72-4515-B0CB-9B776DFC3BA3}] => (Allow) LPort=9009
FirewallRules: [{D7625133-BACE-4E79-A894-B9DDDDD8BC0B}] => (Allow) LPort=9009
FirewallRules: [{51EA39A0-47AB-47A8-9F19-B373FF1AE420}] => (Allow) LPort=9009
FirewallRules: [{97FB23B5-DBD2-47EE-875A-7EF0CD911F7F}] => (Allow) LPort=9009
FirewallRules: [{491A0E7A-DD26-46DF-A6ED-6CFF4129DE3F}] => (Allow) LPort=9009
FirewallRules: [{154EFC0E-5483-474D-9B81-A9A86262019C}] => (Allow) F:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{7064F0CE-3581-48C2-ACAC-56649C68DC9A}] => (Allow) F:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{BFDB488A-57DC-415A-8EDB-5EA1B9551680}] => (Allow) LPort=9009
FirewallRules: [{E696C422-9787-4EB7-8ACA-5B4BD23D91A2}] => (Allow) LPort=9009
FirewallRules: [{E70CA6D4-166E-4940-8C74-912583DFF0A7}] => (Allow) LPort=9009
FirewallRules: [{BC75A9F9-B179-4AB3-990F-A683888B6DBA}] => (Allow) LPort=9009
FirewallRules: [{6DC398B0-AD10-4001-8F6E-CF3FDC0E3C4E}] => (Allow) LPort=9009
FirewallRules: [{C2D26245-AC83-4C08-B1B8-A43EDB0085E2}] => (Allow) LPort=9009
FirewallRules: [{46227FB5-FD40-429F-B695-A7EFDCF16603}] => (Allow) LPort=9009
FirewallRules: [{59B1CB00-A381-4EE8-9E3B-0A7796B3B554}] => (Allow) LPort=9009
FirewallRules: [{FDADDE2D-8528-415A-A643-D805E795AC1C}] => (Allow) LPort=9009
FirewallRules: [{3A2385B1-A172-4F75-BDE2-D6275D17831B}] => (Allow) LPort=9009
FirewallRules: [{2A1DDDAA-6BCE-4541-BB5F-976A6BD1AB96}] => (Allow) LPort=9009
FirewallRules: [{C410ED30-B0F2-419D-9F3E-7194109A4E5E}] => (Allow) LPort=9009
FirewallRules: [{8058BE5C-2FF7-42F0-9971-E824193AB4E9}] => (Allow) LPort=9009
FirewallRules: [TCP Query User{6517FFFF-361B-44BC-A0AD-C2FA2E493545}C:\program files (x86)\deezloader-3.1.1-win-64-portable\deezloader-3.1.1-win-64-portable\deezloader.exe] => (Allow) C:\program files (x86)\deezloader-3.1.1-win-64-portable\deezloader-3.1.1-win-64-portable\deezloader.exe (ExtendLord) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{0589DE96-58C4-484C-AAD3-63B006C9DB0F}C:\program files (x86)\deezloader-3.1.1-win-64-portable\deezloader-3.1.1-win-64-portable\deezloader.exe] => (Allow) C:\program files (x86)\deezloader-3.1.1-win-64-portable\deezloader-3.1.1-win-64-portable\deezloader.exe (ExtendLord) [Datei ist nicht signiert]
FirewallRules: [{987DEB93-2181-45F5-9097-9729454A5BF6}] => (Allow) LPort=9009
FirewallRules: [{8068514E-473B-4632-AB1A-2000D08E1B3D}] => (Allow) LPort=9009
FirewallRules: [{14C1CEA6-EDEE-4E3A-B1CF-815A24CB98DA}] => (Allow) LPort=9009
FirewallRules: [TCP Query User{480B7A13-CBB7-4C2A-A22E-E97FF9CA523E}C:\users\stefan\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\stefan\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{327631B8-5A9C-4DF2-AECB-C222D7FA0C43}C:\users\stefan\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\stefan\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5FF2F626-5985-44F6-AF6A-D9B141F7C2BD}] => (Allow) LPort=9009
FirewallRules: [{29DF6950-6A03-4CDB-9796-3E0B732C7110}] => (Allow) LPort=9009
FirewallRules: [TCP Query User{C390159D-1AD5-496B-BDB3-ECECD83E65D1}C:\program files\sublime text 3\plugin_host.exe] => (Allow) C:\program files\sublime text 3\plugin_host.exe (Sublime HQ Pty Ltd -> )
FirewallRules: [UDP Query User{6872A601-1C8E-4002-A2B0-8F1DD1B228C1}C:\program files\sublime text 3\plugin_host.exe] => (Allow) C:\program files\sublime text 3\plugin_host.exe (Sublime HQ Pty Ltd -> )
FirewallRules: [{F371007C-098B-46CA-B325-B86BB0A84F33}] => (Allow) LPort=9009
FirewallRules: [{3288DF22-E06A-4BE2-82D7-20C534D6A046}] => (Allow) LPort=9009
FirewallRules: [{9066C47D-18AA-4F7B-A675-6BD17F4B9419}] => (Allow) LPort=9009
FirewallRules: [{922F2F6D-735D-44D0-9B81-89705FDA8891}] => (Allow) LPort=9009
FirewallRules: [{F4635318-27E3-4C53-BB4A-DAF2E931D94B}] => (Allow) LPort=9009
FirewallRules: [{6FCFACA4-986F-4848-B331-016D2998824D}] => (Allow) LPort=9009
FirewallRules: [{D6CB9FCC-C819-44B8-AF04-9A59988D6B1E}] => (Allow) LPort=9009
FirewallRules: [{0DDD3CD0-D5A2-4882-81DB-8EE06A152C89}] => (Allow) LPort=9009
FirewallRules: [{16A7B72E-D3AF-4383-8C85-75E17FDC3507}] => (Allow) LPort=9009
FirewallRules: [{3F06FD1D-4F80-4A66-833E-81FCBE27A455}] => (Allow) LPort=9009
FirewallRules: [{C9AB57DA-3724-49C5-8161-8457F6D77F56}] => (Allow) LPort=9009
FirewallRules: [{C2280774-1F7E-4630-8071-4A7077B58F62}] => (Allow) LPort=9009
==================== Wiederherstellungspunkte =========================
27-06-2019 19:49:26 Revo Uninstaller's restore point - Google Chrome
27-06-2019 19:50:00 Revo Uninstaller's restore point - hide.me VPN 3.0.3
01-07-2019 17:58:02 Windows Update
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (07/02/2019 07:37:10 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13052,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/02/2019 07:25:48 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (16836,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/02/2019 07:00:51 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2192,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/02/2019 06:50:44 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (84,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/02/2019 06:02:41 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (14928,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/02/2019 04:36:28 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (12656,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/02/2019 04:24:47 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8580,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/02/2019 04:08:45 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1316,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Systemfehler:
=============
Error: (07/02/2019 09:39:47 AM) (Source: DCOM) (EventID: 10010) (User: STEFANPC)
Description: Der Server "{1EF75F33-893B-4E8F-9655-C3D602BA4897}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/02/2019 09:39:47 AM) (Source: DCOM) (EventID: 10010) (User: STEFANPC)
Description: Der Server "{1EF75F33-893B-4E8F-9655-C3D602BA4897}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/02/2019 09:39:47 AM) (Source: DCOM) (EventID: 10010) (User: STEFANPC)
Description: Der Server "{1EF75F33-893B-4E8F-9655-C3D602BA4897}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/02/2019 09:39:47 AM) (Source: DCOM) (EventID: 10010) (User: STEFANPC)
Description: Der Server "{1EF75F33-893B-4E8F-9655-C3D602BA4897}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/02/2019 09:39:47 AM) (Source: DCOM) (EventID: 10010) (User: STEFANPC)
Description: Der Server "{1EF75F33-893B-4E8F-9655-C3D602BA4897}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/02/2019 09:39:47 AM) (Source: DCOM) (EventID: 10010) (User: STEFANPC)
Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/02/2019 09:39:47 AM) (Source: DCOM) (EventID: 10010) (User: STEFANPC)
Description: Der Server "{1EF75F33-893B-4E8F-9655-C3D602BA4897}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (07/02/2019 09:39:47 AM) (Source: DCOM) (EventID: 10010) (User: STEFANPC)
Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Windows Defender:
===================================
Date: 2019-07-01 10:26:00.023
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {2FD24266-F162-4B41-A04C-5D2EE73CF847}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Vollständige Überprüfung
Benutzer: STEFANPC\Stefan
Date: 2019-06-30 17:51:34.308
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {11B826A3-67AA-4DD2-9538-302FC28ECC47}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2019-06-28 15:24:22.918
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {5ECB870F-F125-41C0-A1E8-7598A7CAD406}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2019-06-28 14:07:46.107
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {E5F1C40C-94C6-4FB2-943A-0E5B606F8F07}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2019-06-28 13:55:10.485
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {42979BD4-40F9-4AFF-8D13-6CDCB0F8201E}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
CodeIntegrity:
===================================
Date: 2019-07-02 13:00:41.546
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\vfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-07-02 07:55:31.565
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\vfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-07-01 18:23:23.514
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\vfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-07-01 17:59:02.515
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\vfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-07-01 13:06:38.580
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\vfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-07-01 10:21:30.743
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\vfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-07-01 08:09:58.748
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\vfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2019-06-30 17:09:43.596
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\vfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Speicherinformationen ===========================
BIOS: American Megatrends Inc. F22f 03/09/2018
Motherboard: Gigabyte Technology Co., Ltd. Z170X-Gaming 5
Prozessor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz
Prozentuale Nutzung des RAM: 48%
Installierter physikalischer RAM: 16337.86 MB
Verfügbarer physikalischer RAM: 8468.98 MB
Summe virtueller Speicher: 18769.86 MB
Verfügbarer virtueller Speicher: 9333.77 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:231.56 GB) (Free:116.44 GB) NTFS
Drive d: (Programmierung) (Fixed) (Total:72.13 GB) (Free:49.55 GB) NTFS
Drive f: (Spiele) (Fixed) (Total:537.11 GB) (Free:236.61 GB) NTFS
Drive g: (Spiele SSD) (Fixed) (Total:232.88 GB) (Free:63.61 GB) NTFS
Drive i: (Persönliche Daten) (Fixed) (Total:158.15 GB) (Free:94 GB) NTFS
\\?\Volume{414cfeb1-acf7-4623-86e7-8678685194a1}\ () (Fixed) (Total:0.44 GB) (Free:0.42 GB) NTFS
\\?\Volume{aeab6b9c-a443-4728-b7ee-14e8749f28fb}\ () (Fixed) (Total:0.77 GB) (Free:0.3 GB) NTFS
\\?\Volume{46794f59-4a63-4b4a-bd5c-185b151cabf7}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: E0252E54)
Partition: GPT.
========================================================
Disk: 1 (Size: 232.9 GB) (Disk ID: 14EE14EE)
Partition 1: (Not Active) - (Size=232.9 GB) - (Type=0F Extended)
========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: BB4E60E2)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=0F Extended)
==================== Ende von Addition.txt ============================ |