~ ZHPDiag v2017.6.12.97 Von Nicolas Coolman (2017/06/12) ~ gestartet von Stephania (Administrator) (2017/06/13 15:19:31) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Version des Status: Version OK ~ Modus: Scanner ~ Bericht: C:\Users\Stephania\Desktop\ZHPDiag.txt ~ Bericht: C:\Users\Stephania\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Systemstart: Normal (Normal boot) Windows 10 Pro N, 64-bit (Build 14393) =>.Microsoft Corporation ---\\ Internet-browser (3) - 0s ~ MFIE: Mozilla Firefox 53.0.3 (x86 de) ~ MSIE: Microsoft Edge v40 ~ MSIE: Internet Explorer v11.1198.14393.0 ---\\ Windows-Produkt-Informationen (3) - 4s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ System-Datenschutz-software (2) - 5s Avira Antivirus v15.0.26.48 (Protection) Windows Defender (Deactivate) ---\\ Monitoring Software (2) - 5s ~ Adobe Flash Player 26 NPAPI (Surveillance) ~ Adobe Reader XI (Surveillance) ---\\ Informationen über das system (6) - 0s ~ Operating System: Intel64 Family 6 Model 69 Stepping 1, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8314.22 MB (55% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 117 GB (49%) free of 238 GB : OK =>.Disk Space ---\\ Verbindung zu den Systemmodus (3) - 0s ~ Computer Name: STEPHANIA-ACER ~ User Name: Stephania ~ Logged in as Administrator ---\\ Aufzählung von Disk-Einheiten (2) - 0s ~ Drive C: has 117 GB free of 238 GB (System) ~ Drive E: has 79 GB free of 230 GB ---\\ Status der Windows-Sicherheitscenter (8) - 1s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] AutoConfigUrl: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Suche generische Systemdateien (24) - 1s [MD5.679D17F8CDB938C7100D7A647953677E] - 28/04/2017 - (.Microsoft Corporation - Windows-Explorer.) -- C:\WINDOWS\Explorer.exe [4674360] =>.Microsoft Windows® [MD5.C7645D43451C6D94D87F4D07BDE59C89] - 16/07/2016 - (.Microsoft Corporation - Windows-Hostprozess (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [69632] =>.Microsoft Corporation [MD5.99A19C9A74E2F9820E501DCE77F84F70] - 16/07/2016 - (.Microsoft Corporation - Windows-Startanwendung.) -- C:\WINDOWS\System32\Wininit.exe [304240] =>.Microsoft Windows Publisher® [MD5.B9727FA7889DD6FCE4F7C27F8879A7F4] - 28/04/2017 - (.Microsoft Corporation - Interneterweiterungen für Win32.) -- C:\WINDOWS\System32\wininet.dll [2895872] =>.Microsoft Corporation [MD5.B2151FE002A8D3F41E2DF935F260E3A8] - 28/04/2017 - (.Microsoft Corporation - Windows-Anmeldeanwendung.) -- C:\WINDOWS\System32\Winlogon.exe [673792] =>.Microsoft Corporation [MD5.9600B7F2F89DE60A80D13DE42F672834] - 16/07/2016 - (.Microsoft Corporation - Softwarelizenzierungsbibliothek.) -- C:\WINDOWS\System32\sppcomapi.dll [402432] =>.Microsoft Corporation [MD5.2813C62F5BE7FAF0A1C5CC37E5C2F25D] - 04/03/2017 - (.Microsoft Corporation - DNS-Client-API-DLL.) -- C:\WINDOWS\System32\dnsapi.dll [646688] =>.Microsoft Windows® [MD5.AA86DC342B4ED1C1F839C3BC8AEA64B1] - 04/03/2017 - (.Microsoft Corporation - DNS-Client-API-DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [497416] =>.Microsoft Windows® [MD5.323AA1953ED9C01E23F740FA891FE064] - 21/11/2016 - (.Microsoft Corporation - Treiber für zusätzliche WinSock-Funktionen.) -- C:\WINDOWS\System32\drivers\AFD.sys [584032] =>.Microsoft Windows® [MD5.A10F989A812B57B9695F6C305907C9C6] - 16/07/2016 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows® [MD5.F8FB51B9EF6372610E9B31A1D86B62FC] - 16/07/2016 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.613D0137C269187FA298A157E3D14A18] - 16/07/2016 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173056] =>.Microsoft Corporation [MD5.4BC21E937E9F9F408672D2C2CBE4A153] - 04/03/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [145408] =>.Microsoft Corporation [MD5.10E3515FE5DBA6656FA62C29342EC4A1] - 16/07/2016 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [83456] =>.Microsoft Corporation [MD5.B54B30992620C97230013A74461C8517] - 16/07/2016 - (.Microsoft Corporation - i8042-Anschlusstreiber.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114176] =>.Microsoft Corporation [MD5.F1DAECC3B3D6399875D4F10529D6A77C] - 16/07/2016 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [212480] =>.Microsoft Corporation [MD5.D559FF28B1AD9B1E15A4186E785E61F6] - 04/03/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [450400] =>.Microsoft Windows® [MD5.6FEBB0A847FFD5F057B9AC8889F1B9A7] - 16/07/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [279040] =>.Microsoft Corporation [MD5.8DB6A6B731CEC9046CD8CA0267EC5679] - 28/04/2017 - (.Microsoft Corporation - NT-Dateisystemtreiber.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2255712] =>.Microsoft Windows® [MD5.6B81BF7853D161DB8AC62CD8B9C2DE6B] - 16/07/2016 - (.Microsoft Corporation - Treiber für parallelen Anschluss.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation [MD5.17E565710172ED71B8531D8822E1C5D1] - 16/07/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation [MD5.7135785C21CA79D270D11037C43D3F19] - 21/11/2016 - (.Microsoft Corporation - Geräte-Redirector für Microsoft RDP.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [177152] =>.Microsoft Corporation [MD5.0B237F8A96952BF95A14865030E131F2] - 04/03/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118624] =>.Microsoft Windows® [MD5.BF2546583BB75F01DDA60A7921DFB230] - 16/07/2016 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [391520] =>.Microsoft Windows® ---\\ Nicht von Microsoft nicht deaktiviert Windows XP/NT/2000-Dienste (23) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated® O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: Avira Email-Schutz (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Planer (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Echtzeit-Scanner (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Browser-Schutz (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: AtherosSvc (AtherosSvc) . (.Qualcomm Atheros - AdminService Application.) - C:\Program Files (x86)\Qualcomm Atheros\Qualcomm Atheros 61x4 Wireless LAN&Bluetooth Installer\Bluetooth Suite\adminservice.exe =>.Qualcomm Atheros O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Dropbox-Update-Service (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® O23 - Service: DbxSvc (DbxSvc) . (.Dropbox, Inc. - Dropbox Service.) - C:\WINDOWS\system32\DbxSvc.exe =>.Dropbox, Inc. O23 - Service: Digital Wave Update Service (DigitalWave.Update.Service) . (.Digital Wave Ltd. - Digital Wave Update Service.) - C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe =>.Digital Wave Ltd® O23 - Service: Google Update-Dienst (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: @oem74.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) . (...) - C:\WINDOWS\system32\ibtsiva (.not file.) =>.Intel Corporation O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\system32\igfxCUIService.exe =>.Intel Corporation O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Intel® Management Engine Firmware® O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe =>.NVIDIA Corporation® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD® O23 - Service: TeamViewer 12 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 12.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH® ---\\ Allgemeinzustand der Dienste nicht Microsoft (SR=Running, SS=Stopped) (29) - 25s SR - Auto [25/04/2017] [ 83056] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [13/06/2017] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [14/03/2017] [ 771672] (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [18/05/2017] [ 2246256] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SS - Auto [28/04/2017] [ 1119712] Avira Email-Schutz (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [28/04/2017] [ 488920] Avira Planer (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [28/04/2017] [ 488920] Avira Echtzeit-Scanner (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® SS - Auto [28/04/2017] [ 1520680] Avira Browser-Schutz (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [21/08/2014] [ 305664] AtherosSvc (AtherosSvc) . (.Qualcomm Atheros.) - C:\Program Files (x86)\Qualcomm Atheros\Qualcomm Atheros 61x4 Wireless LAN&Bluetooth Installer\Bluetooth Suite\adminservice.exe =>.Qualcomm Atheros SR - Auto [11/04/2017] [ 350120] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® SS - Demand [19/12/2016] [ 301528] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX® SS - Auto [03/02/2016] [ 143144] Dropbox-Update-Service (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Demand [03/02/2016] [ 143144] Dropbox-Update-Service (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SR - Auto [30/05/2017] [ 48944] DbxSvc (DbxSvc) . (.Dropbox, Inc..) - C:\WINDOWS\system32\DbxSvc.exe =>.Dropbox, Inc® SS - Auto [19/04/2017] [ 440808] Digital Wave Update Service (DigitalWave.Update.Service) . (.Digital Wave Ltd..) - C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe =>.Digital Wave Ltd® SS - Auto [29/04/2017] [ 153168] Google Update-Dienst (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/04/2017] [ 153168] Google Update-Dienst (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [19/12/2016] [ 373720] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\system32\igfxCUIService.exe =>.Intel(R) pGFX® SS - Demand [31/01/2014] [ 887232] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service® SR - Auto [19/02/2014] [ 154584] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware® SR - Auto [19/02/2014] [ 398296] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Intel® Management Engine Firmware® SS - Demand [20/05/2017] [ 173512] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [29/12/2016] [ 458176] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® SR - Auto [30/05/2014] [ 1631008] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation® SR - Auto [30/05/2014] [21055432] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe =>.NVIDIA Corporation® SS - Auto [22/02/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [22/02/2017] [ 317400] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD® SS - Demand [22/02/2017] [ 317400] SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated SR - Auto [22/02/2017] [ 317400] TeamViewer 12 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH® ---\\ Im Automatikbetrieb geplanten Tasks (29) - 13s [MD5.AFC094098B6D856151002051E31867D8] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1162360] (.Activate.) =>.Adobe Systems, Incorporated® [MD5.78EC4D9646DDD13E5F727D5EC904BFD2] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384] (.Activate.) =>.Adobe Systems Incorporated® [MD5.48515EEA1608ECD83FE26C7490460F59] [APT] [AdobeAAMUpdater-1.0-Stephania-Acer-Stephania] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128] (.Activate.) =>.Adobe Systems Incorporated® [MD5.A1F58FFF448E4099297D6EE0641D4D0E] [APT] [DropboxUpdateTaskMachineCore] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] (.Activate.) =>.Dropbox, Inc® [MD5.A1F58FFF448E4099297D6EE0641D4D0E] [APT] [DropboxUpdateTaskMachineUA] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] (.Activate.) =>.Dropbox, Inc® [MD5.0545A3EB959CFA4790D267BFB8C1ACA4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] (.Activate.) =>.Google Inc® [MD5.0545A3EB959CFA4790D267BFB8C1ACA4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] (.Activate.) =>.Google Inc® [MD5.00000000000000000000000000000000] [APT] [{3D6D5207-BB54-56EF-56DB-3D81089DD9C3}] (...) -- C:\Users\STEPHA~1\AppData\Local\{FCBDC~1\UPDATE~1.EXE (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{4313AE58-650B-41DA-A634-1500E78491C4}] (...) -- D:\Autorun\DRV\Realtek Audio Codec_M ALC283\MOD01D00LZ0041004V\Setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{4A47C5E9-C166-4139-9B08-6E4B6800F3FE}] (...) -- C:\Users\Stephania\Downloads\wlsetup-web(1).exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{50387E67-CB0F-58A1-6ED4-28F748357F80}] (...) -- C:\Users\STEPHA~1\AppData\Local\wincy\SYNHEL~1.EXE (.not file.) [0] (.Activate.) =>.Superfluous.Empty O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job [1246] =>.Dropbox, Inc® O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job [1250] =>.Dropbox, Inc® O39 - APT: Unknown - (...) -- C:\WINDOWS\Tasks\Yahoo! Powered nacan.job [1016] =>Adware.YahooPowered O39 - APT: {3D6D5207-BB54-56EF-56DB-3D81089DD9C3} - (...) -- C:\WINDOWS\Tasks\{3D6D5207-BB54-56EF-56DB-3D81089DD9C3}.job [314] (.Orphan.) =>.Superfluous.Orphan O39 - APT: {50387E67-CB0F-58A1-6ED4-28F748357F80} - (...) -- C:\WINDOWS\Tasks\{50387E67-CB0F-58A1-6ED4-28F748357F80}.job [308] (.Orphan.) =>.Superfluous.Orphan O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [4562] =>.Adobe Systems, Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [4428] =>.Adobe Systems Incorporated® O39 - APT: AdobeAAMUpdater-1.0-Stephania-Acer-Stephania - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-Stephania-Acer-Stephania [2766] =>.Adobe Systems Incorporated® O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore [3540] =>.Dropbox, Inc® O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA [3764] =>.Dropbox, Inc® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3504] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3628] =>.Google Inc® O39 - APT: Unknown - (.Microsoft Corporation.) -- C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 [2772] =>.Microsoft Corporation O39 - APT: Unknown - (...) -- C:\WINDOWS\System32\Tasks\Yahoo! Powered nacan [3740] =>Adware.YahooPowered O39 - APT: {3D6D5207-BB54-56EF-56DB-3D81089DD9C3} - (...) -- C:\WINDOWS\System32\Tasks\{3D6D5207-BB54-56EF-56DB-3D81089DD9C3} [2716] (.Orphan.) =>.Superfluous.Orphan O39 - APT: {4313AE58-650B-41DA-A634-1500E78491C4} - (...) -- C:\WINDOWS\System32\Tasks\{4313AE58-650B-41DA-A634-1500E78491C4} [2428] (.Orphan.) =>.Superfluous.Orphan O39 - APT: {4A47C5E9-C166-4139-9B08-6E4B6800F3FE} - (...) -- C:\WINDOWS\System32\Tasks\{4A47C5E9-C166-4139-9B08-6E4B6800F3FE} [2302] (.Orphan.) =>.Superfluous.Orphan O39 - APT: {50387E67-CB0F-58A1-6ED4-28F748357F80} - (...) -- C:\WINDOWS\System32\Tasks\{50387E67-CB0F-58A1-6ED4-28F748357F80} [2844] (.Orphan.) =>.Superfluous.Orphan ---\\ Auto Laden von Programmen vom Register und Ordner (23) - 3s O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Realtek HD Audio-Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [RtHDVBg_Dolby] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation® O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [GLSystray] . (...) -- C:\Program Files (x86)\GLPCCamera\monitorpad.exe O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\Run: [ApowersoftScreenRecorder] C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe (.not file.) O4 - HKCU\..\Run: [DVSFreeVideoCallRecorder] . (.Digital Wave Ltd - Free Video Call Recorder for Skype.) -- C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\FreeVideoCallRecorder.exe =>.Digital Wave Ltd® O4 - HKCU\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - HKLM\..\Wow6432Node\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation® O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe =>.Avira Operations GmbH & Co. KG® O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc® O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Connect.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe =>.Avira Operations GmbH & Co. KG® O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe =>.Wondershare software CO., LIMITED® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-1122265688-3359723765-2778045362-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-1122265688-3359723765-2778045362-1000\..\Run: [ApowersoftScreenRecorder] C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe (.not file.) O4 - HKUS\S-1-5-21-1122265688-3359723765-2778045362-1000\..\Run: [DVSFreeVideoCallRecorder] . (.Digital Wave Ltd - Free Video Call Recorder for Skype.) -- C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\FreeVideoCallRecorder.exe =>.Digital Wave Ltd® O4 - HKUS\S-1-5-21-1122265688-3359723765-2778045362-1000\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe =>.Google Inc® ---\\ Prozess läuft (46) - 4s [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxCUIService Module.) -- C:\WINDOWS\system32\igfxCUIService.exe [0] [PID.1328] =>.Intel Corporation [MD5.8D6BA8E7676038A27FD4ECF12CC744B0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83056] [PID.2328] =>.Adobe Systems, Incorporated® [MD5.79EE5A2B3BF3685AF9B7AC4780371A25] - (.Adobe Systems Incorporated - Adobe Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [771672] [PID.2340] =>.Adobe Systems Incorporated® [MD5.078B785A7533B7059A236017B3B060A4] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2246256] [PID.2356] =>.Adobe Systems Incorporated® [MD5.A92B5723DC25E9755C745F9946A2E2EA] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [488920] [PID.2364] =>.Avira Operations GmbH & Co. KG® [MD5.48386DDF416537A107F19FF51148C613] - (.Qualcomm Atheros - AdminService Application.) -- C:\Program Files (x86)\Qualcomm Atheros\Qualcomm Atheros 61x4 Wireless LAN&Bluetooth Installer\Bluetooth Suite\adminservice.exe [305664] [PID.2372] =>.Qualcomm Atheros [MD5.64943D597895DE755A58EE46402932F3] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [350120] [PID.2380] =>.Avira Operations GmbH & Co. KG® [MD5.00000000000000000000000000000000] - (.Dropbox, Inc. - Dropbox Service.) -- C:\WINDOWS\system32\DbxSvc.exe [0] [PID.2536] =>.Dropbox, Inc. [MD5.00000000000000000000000000000000] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) -- C:\WINDOWS\system32\ibtsiva.exe [0] [PID.2544] =>.Intel Corporation [MD5.2328568EE63439A4A11F9DC0692E5527] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176] [PID.2824] =>.NVIDIA Corporation® [MD5.E09C5339746C10596C1BA740956F3416] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008] [PID.2832] =>.NVIDIA Corporation® [MD5.6D1F4C665D1139C128C0BDB80F6573B2] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432] [PID.2952] =>.NVIDIA Corporation® [MD5.9DA3B55B17B54789AFB8C657D4ACE4D7] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688] [PID.3000] =>.DEVGURU CO LTD® [MD5.44449A0EB8EBD8DCBC3ED4BB62BA3A5F] - (.TeamViewer GmbH - TeamViewer 12.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856] [PID.2152] =>.TeamViewer GmbH® [MD5.93A49F8ECC625EE8FD3BFC3C5FEB8D47] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1285568] [PID.4188] =>.NVIDIA Corporation® [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\system32\igfxEM.exe [0] [PID.5956] =>.Intel Corporation [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxHK Module.) -- C:\WINDOWS\system32\igfxHK.exe [0] [PID.5964] =>.Intel Corporation [MD5.00000000000000000000000000000000] - (.Autoren - .) -- C:\WINDOWS\system32\igfxTray.exe [0] [PID.5980] =>.Intel Corporation [MD5.6D9B10E0E92C87A34F9C78E60BB250BC] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2456632] [PID.6936] =>.NVIDIA Corporation® [MD5.6D9B10E0E92C87A34F9C78E60BB250BC] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2456632] [PID.6960] =>.NVIDIA Corporation® [MD5.42663C9A625EA030F10746EBA60F8CCD] - (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2350880] [PID.7000] =>.NVIDIA Corporation® [MD5.B0405CEBFF42F8FA26F08F660D5319EC] - (.Realtek Semiconductor - Realtek HD Audio-Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16161536] [PID.7164] =>.Realtek Semiconductor Corp® [MD5.02C96AAB6A40B12196AE1AF9CB97AB68] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1403136] [PID.940] =>.Realtek Semiconductor Corp® [MD5.8D684E6AFF76FC8434C07499D9A8A8B4] - (...) -- C:\Program Files (x86)\GLPCCamera\monitorpad.exe [69632] [PID.6616] [MD5.E65F5E48EF69BC181A9560DA97F01FB8] - (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23819304] [PID.6224] =>.Google Inc® [MD5.30ECFDFE0FAE38B0608A23B444A1A04D] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [912768] [PID.1764] =>.Avira Operations GmbH & Co. KG® [MD5.2888FF162E1FD9BF1D589BCCB65171E6] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe [1062504] [PID.2484] =>.Avira Operations GmbH & Co. KG® [MD5.3BE22D46389D20234C46FD48E1685730] - (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [307264] [PID.540] =>.Avira Operations GmbH & Co. KG® [MD5.E65F5E48EF69BC181A9560DA97F01FB8] - (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23819304] [PID.4272] =>.Google Inc® [MD5.6D1F4C665D1139C128C0BDB80F6573B2] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432] [PID.7704] =>.NVIDIA Corporation® [MD5.6D1F4C665D1139C128C0BDB80F6573B2] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432] [PID.7376] =>.NVIDIA Corporation® [MD5.BDC9C7931DB723CB1AF9F7075EA06645] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584] [PID.2660] =>.Intel Corporation - Intel® Management Engine Firmware® [MD5.A7D2A96187E5C5F4F7650900A15788AA] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [398296] [PID.7340] =>.Intel Corporation - Intel® Management Engine Firmware® [MD5.49F97C7F1ED82E73909A269619A98CD8] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.0_x64__8wekyb3d8bbwe\Calculator.exe [3918848] [PID.9288] =>.Microsoft Corporation [MD5.A92B5723DC25E9755C745F9946A2E2EA] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [488920] [PID.11376] =>.Avira Operations GmbH & Co. KG® [MD5.92CBD9454FB7A42C4B0858364A759755] - (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe [1547384] [PID.12304] =>.Adobe Systems, Incorporated® [MD5.92CBD9454FB7A42C4B0858364A759755] - (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe [1547384] [PID.392] =>.Adobe Systems, Incorporated® [MD5.336A687BC0F79C68C3575D556D9039C3] - (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 11.0.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AdobeCollabSync.exe [763000] [PID.2464] =>.Adobe Systems, Incorporated® [MD5.5E611E637F63C87FB15FC38741CD4D09] - (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) -- C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe [62231200] [PID.2868] =>.Adobe Systems Incorporated® [MD5.8FE651ACBA3344E645CFEB6286FFF6B8] - (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312] [PID.6036] =>.Adobe Systems Incorporated® [MD5.41FD14EA31243218F877B2BF52036576] - (.HP Development Company, L.P. - PrinterControl4.) -- C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_70.1.243.0_x64__v10z8vjag6ke6\HP.AiORemote.exe [23552] [PID.8268] =>.HP Development Company, L.P. [MD5.30FABC7C6DF04ED3AEF7A0AAFE5F25F9] - (...) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [20480] [PID.9836] =>.Microsoft Corporation [MD5.9710FABEF9AD37A3AA966AF53BCBDD1A] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [517064] [PID.4500] =>.Mozilla Corporation® [MD5.9710FABEF9AD37A3AA966AF53BCBDD1A] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [517064] [PID.4748] =>.Mozilla Corporation® [MD5.9710FABEF9AD37A3AA966AF53BCBDD1A] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [517064] [PID.13812] =>.Mozilla Corporation® [MD5.EA5DD793D0CDAA296F99EB72EA9539C3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Stephania\Downloads\ZHPDiag3.exe [2742784] [PID.4428] =>.Nicolas Coolman ---\\ Mozilla Firefox, Plugins,Startseite,Seiten of search,Ausdehnung (8) - 2s M0 - MFSP: prefs.js [Stephania - d3s0cfxa.default] http://www.google.com/ =>.Google Inc. P2 - EXT FILE: (.Weather Hub - Addon for showing weather-forecast..) -- C:\Users\Stephania\AppData\Roaming\Mozilla\Firefox\Profiles\d3s0cfxa.default\extensions\@weather-hub.xpi P2 - EXT FILE: (.__MSG_extName__ - __MSG_extDescription__.) -- C:\Users\Stephania\AppData\Roaming\Mozilla\Firefox\Profiles\d3s0cfxa.default\extensions\abs@avira.com.xpi P2 - EXT FILE: (.Movies Start - Movies Start. .) -- C:\Users\Stephania\AppData\Roaming\Mozilla\Firefox\Profiles\d3s0cfxa.default\extensions\caa1-aDOiCAxFFMOVIX@jetpack.xpi =>PUP.Optional.GoMovix P2 - EXT FILE: (.__MSG_appName__ - __MSG_appDesc__.) -- C:\Users\Stephania\AppData\Roaming\Mozilla\Firefox\Profiles\d3s0cfxa.default\extensions\ciscowebexstart1@cisco.com.xpi P2 - EXT FILE: (.YouTube™ Flash® Player - A very lightweight add-on that allows .) -- C:\Users\Stephania\AppData\Roaming\Mozilla\Firefox\Profiles\d3s0cfxa.default\extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi =>.YouTube™ Flash® Player P2 - EXT FILE: (.Dan Lint - NewtabTV Extension.) -- C:\Users\Stephania\AppData\Roaming\Mozilla\Firefox\Profiles\d3s0cfxa.default\extensions\NewtabTV-the-extension2@mozilla.com.xpi =>PUP.Optional.SocialMediaNewTab P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_126.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer, Startseite,Seiten of search,Ausdehnung (15) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com =>.Google Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [http://web-access.biz/] ---\\ Line Analysis - IniFiles, Auto Laden von Programmen (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Hosts Datei-Umleitung (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper-Objekte (2) - 0s O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® ---\\ Globale Tastenkombinationen Start (187) - 16s O4 - GS\Desktop [Administrator]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated® O4 - GS\Desktop [Administrator]: AnotherUnzipper.lnk . (.aborange.de - Mathias Gerlach - AnotherUnzipper - ZIP-Entpacker.) C:\Program Files (x86)\AnotherUnzipper\AnotherUnzipper.exe O4 - GS\Desktop [Administrator]: Die Installation von Thank you for using our software fortsetzen.lnk . (...) C:\Users\Stephania\AppData\Local\Temp\ICReinstall_ExtOffer.exe /CHNL:100 "/PRODUCT_TITLE:Thank you for using our software" "/PRODUCT_SUBTITLE:Promotional offer from our partners.You may accept or decline the offer." "/PRODUCT_LOGO_URL:http://dnld.ironcustapps.com/ O4 - GS\Desktop [Administrator]: Google Drive.lnk . (...) C:\Users\Stephania\Google Drive O4 - GS\Desktop [Administrator]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\Stephania\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services LLC® O4 - GS\Desktop [Administrator]: tiptoi.lnk . (...) C:\Program Files (x86)\Ravensburger tiptoi\tiptoi.exe O4 - GS\Desktop [Administrator]: VirtualDJ 8.lnk . (.Atomix Productions - VirtualDJ.) C:\Program Files (x86)\VirtualDJ\virtualdj8.exe =>.Atomix Productions O4 - GS\Desktop [Administrator]: Wondershare DVD Slideshow Builder Deluxe.lnk . (.Wondershare - .) C:\Program Files (x86)\Wondershare\DVD Slideshow Builder Deluxe\DSB.exe =>.Wondershare software CO., LIMITED® O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Stephania\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Stephania\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Quicklaunch [Administrator]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKBCjMhx1sXmGLqeUZMn7ZH9vjfOgQ5VDP9lCYvoaxvPC4hlERw%2FS3AHwnohcmKQ%3D%3D =>PUP.Optional.Salus O4 - GS\Quicklaunch [Administrator]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files (x86)\Picture Collage Maker Pro\PictureCollageMakerPro.exe {0C1AED6D6A2B9474767C964E9753A5B1} =>.PearlMountain Technology Co., Ltd O4 - GS\Quicklaunch [Administrator]: Wondershare Photo Collage Studio.lnk . (...) C:\Program Files (x86)\Wondershare\Photo Collage Studio\pcls.exe O4 - GS\sendTo [Administrator]: Bluetooth-Dateiübertragung.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: Faxempfänger.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Administrator]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\TaskBar [Administrator]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\TaskBar [Administrator]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [Administrator]: HD Audio-Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Administrator]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrator]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrator]: Optionale Features.lnk . (.Microsoft Corporation - Features der On-Demand-Hilfe.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation O4 - GS\Programs [Administrator]: Update- und Datenschutzeinstellungen.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation O4 - GS\Desktop [Gast]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated® O4 - GS\Desktop [Gast]: AnotherUnzipper.lnk . (.aborange.de - Mathias Gerlach - AnotherUnzipper - ZIP-Entpacker.) C:\Program Files (x86)\AnotherUnzipper\AnotherUnzipper.exe O4 - GS\Desktop [Gast]: Die Installation von Thank you for using our software fortsetzen.lnk . (...) C:\Users\Stephania\AppData\Local\Temp\ICReinstall_ExtOffer.exe /CHNL:100 "/PRODUCT_TITLE:Thank you for using our software" "/PRODUCT_SUBTITLE:Promotional offer from our partners.You may accept or decline the offer." "/PRODUCT_LOGO_URL:http://dnld.ironcustapps.com/ O4 - GS\Desktop [Gast]: Google Drive.lnk . (...) C:\Users\Stephania\Google Drive O4 - GS\Desktop [Gast]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\Stephania\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services LLC® O4 - GS\Desktop [Gast]: tiptoi.lnk . (...) C:\Program Files (x86)\Ravensburger tiptoi\tiptoi.exe O4 - GS\Desktop [Gast]: VirtualDJ 8.lnk . (.Atomix Productions - VirtualDJ.) C:\Program Files (x86)\VirtualDJ\virtualdj8.exe =>.Atomix Productions O4 - GS\Desktop [Gast]: Wondershare DVD Slideshow Builder Deluxe.lnk . (.Wondershare - .) C:\Program Files (x86)\Wondershare\DVD Slideshow Builder Deluxe\DSB.exe =>.Wondershare software CO., LIMITED® O4 - GS\Desktop [Gast]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Stephania\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Gast]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Stephania\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Quicklaunch [Gast]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKBCjMhx1sXmGLqeUZMn7ZH9vjfOgQ5VDP9lCYvoaxvPC4hlERw%2FS3AHwnohcmKQ%3D%3D =>PUP.Optional.Salus O4 - GS\Quicklaunch [Gast]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files (x86)\Picture Collage Maker Pro\PictureCollageMakerPro.exe {0C1AED6D6A2B9474767C964E9753A5B1} =>.PearlMountain Technology Co., Ltd O4 - GS\Quicklaunch [Gast]: Wondershare Photo Collage Studio.lnk . (...) C:\Program Files (x86)\Wondershare\Photo Collage Studio\pcls.exe O4 - GS\sendTo [Gast]: Bluetooth-Dateiübertragung.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Gast]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Gast]: Faxempfänger.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Gast]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Gast]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [Gast]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\TaskBar [Gast]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Gast]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\TaskBar [Gast]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [Gast]: HD Audio-Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Gast]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Gast]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Gast]: Optionale Features.lnk . (.Microsoft Corporation - Features der On-Demand-Hilfe.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation O4 - GS\Programs [Gast]: Update- und Datenschutzeinstellungen.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation O4 - GS\Desktop [Stephania]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated® O4 - GS\Desktop [Stephania]: AnotherUnzipper.lnk . (.aborange.de - Mathias Gerlach - AnotherUnzipper - ZIP-Entpacker.) C:\Program Files (x86)\AnotherUnzipper\AnotherUnzipper.exe O4 - GS\Desktop [Stephania]: Die Installation von Thank you for using our software fortsetzen.lnk . (...) C:\Users\Stephania\AppData\Local\Temp\ICReinstall_ExtOffer.exe /CHNL:100 "/PRODUCT_TITLE:Thank you for using our software" "/PRODUCT_SUBTITLE:Promotional offer from our partners.You may accept or decline the offer." "/PRODUCT_LOGO_URL:http://dnld.ironcustapps.com/ O4 - GS\Desktop [Stephania]: Google Drive.lnk . (...) C:\Users\Stephania\Google Drive O4 - GS\Desktop [Stephania]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\Stephania\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services LLC® O4 - GS\Desktop [Stephania]: tiptoi.lnk . (...) C:\Program Files (x86)\Ravensburger tiptoi\tiptoi.exe O4 - GS\Desktop [Stephania]: VirtualDJ 8.lnk . (.Atomix Productions - VirtualDJ.) C:\Program Files (x86)\VirtualDJ\virtualdj8.exe =>.Atomix Productions O4 - GS\Desktop [Stephania]: Wondershare DVD Slideshow Builder Deluxe.lnk . (.Wondershare - .) C:\Program Files (x86)\Wondershare\DVD Slideshow Builder Deluxe\DSB.exe =>.Wondershare software CO., LIMITED® O4 - GS\Desktop [Stephania]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Stephania\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Stephania]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Stephania\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Quicklaunch [Stephania]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKBCjMhx1sXmGLqeUZMn7ZH9vjfOgQ5VDP9lCYvoaxvPC4hlERw%2FS3AHwnohcmKQ%3D%3D =>PUP.Optional.Salus O4 - GS\Quicklaunch [Stephania]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files (x86)\Picture Collage Maker Pro\PictureCollageMakerPro.exe {0C1AED6D6A2B9474767C964E9753A5B1} =>.PearlMountain Technology Co., Ltd O4 - GS\Quicklaunch [Stephania]: Wondershare Photo Collage Studio.lnk . (...) C:\Program Files (x86)\Wondershare\Photo Collage Studio\pcls.exe O4 - GS\sendTo [Stephania]: Bluetooth-Dateiübertragung.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Stephania]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Stephania]: Faxempfänger.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Stephania]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Stephania]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [Stephania]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\TaskBar [Stephania]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Stephania]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\TaskBar [Stephania]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [Stephania]: HD Audio-Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Stephania]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Stephania]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Stephania]: Optionale Features.lnk . (.Microsoft Corporation - Features der On-Demand-Hilfe.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation O4 - GS\Programs [Stephania]: Update- und Datenschutzeinstellungen.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation O4 - GS\Desktop [Visiteur]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated® O4 - GS\Desktop [Visiteur]: AnotherUnzipper.lnk . (.aborange.de - Mathias Gerlach - AnotherUnzipper - ZIP-Entpacker.) C:\Program Files (x86)\AnotherUnzipper\AnotherUnzipper.exe O4 - GS\Desktop [Visiteur]: Die Installation von Thank you for using our software fortsetzen.lnk . (...) C:\Users\Stephania\AppData\Local\Temp\ICReinstall_ExtOffer.exe /CHNL:100 "/PRODUCT_TITLE:Thank you for using our software" "/PRODUCT_SUBTITLE:Promotional offer from our partners.You may accept or decline the offer." "/PRODUCT_LOGO_URL:http://dnld.ironcustapps.com/ O4 - GS\Desktop [Visiteur]: Google Drive.lnk . (...) C:\Users\Stephania\Google Drive O4 - GS\Desktop [Visiteur]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\Stephania\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services LLC® O4 - GS\Desktop [Visiteur]: tiptoi.lnk . (...) C:\Program Files (x86)\Ravensburger tiptoi\tiptoi.exe O4 - GS\Desktop [Visiteur]: VirtualDJ 8.lnk . (.Atomix Productions - VirtualDJ.) C:\Program Files (x86)\VirtualDJ\virtualdj8.exe =>.Atomix Productions O4 - GS\Desktop [Visiteur]: Wondershare DVD Slideshow Builder Deluxe.lnk . (.Wondershare - .) C:\Program Files (x86)\Wondershare\DVD Slideshow Builder Deluxe\DSB.exe =>.Wondershare software CO., LIMITED® O4 - GS\Desktop [Visiteur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Stephania\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Visiteur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Stephania\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Quicklaunch [Visiteur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKBCjMhx1sXmGLqeUZMn7ZH9vjfOgQ5VDP9lCYvoaxvPC4hlERw%2FS3AHwnohcmKQ%3D%3D =>PUP.Optional.Salus O4 - GS\Quicklaunch [Visiteur]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files (x86)\Picture Collage Maker Pro\PictureCollageMakerPro.exe {0C1AED6D6A2B9474767C964E9753A5B1} =>.PearlMountain Technology Co., Ltd O4 - GS\Quicklaunch [Visiteur]: Wondershare Photo Collage Studio.lnk . (...) C:\Program Files (x86)\Wondershare\Photo Collage Studio\pcls.exe O4 - GS\sendTo [Visiteur]: Bluetooth-Dateiübertragung.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Visiteur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Visiteur]: Faxempfänger.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Visiteur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Visiteur]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [Visiteur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\TaskBar [Visiteur]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Visiteur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\TaskBar [Visiteur]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [Visiteur]: HD Audio-Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Visiteur]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Visiteur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Visiteur]: Optionale Features.lnk . (.Microsoft Corporation - Features der On-Demand-Hilfe.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation O4 - GS\Programs [Visiteur]: Update- und Datenschutzeinstellungen.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation O4 - GS\CommonDesktop [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - GS\CommonDesktop [Public]: Adobe Download Assistant.lnk . (...) C:\Program Files (x86)\Adobe Download Assistant\Adobe Download Assistant.exe O4 - GS\CommonDesktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: amcap.lnk . (...) C:\Program Files (x86)\GLPCCamera\amcap.exe O4 - GS\CommonDesktop [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe =>.The Audacity Team O4 - GS\CommonDesktop [Public]: Avira Connect.lnk . (.Avira Operations GmbH & Co. KG - Avira.) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe /showMiniGui =>.Avira Operations GmbH & Co. KG® O4 - GS\CommonDesktop [Public]: DVDVideoSoft Free Studio.lnk . (.Digital Wave Ltd - Free Studio.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\FreeStudioManager.exe =>.Digital Wave Ltd® O4 - GS\CommonDesktop [Public]: Easy Video Maker.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{03EC818F-96E5-497F-AF28-EC6BC4CF32D3}\EasyVideoMaker.exe_96942AE20DCC466DBFC84D044485586E.exe =>.Acresso Software Inc. O4 - GS\CommonDesktop [Public]: Free Screen Video Recorder.lnk . (.DVDVideoSoft Ltd. - Free Screen Video Recorder.) C:\Program Files (x86)\DVDVideoSoft\Free Screen Video Recorder\FreeScreenVideoRecorder.exe =>.Digital Wave Ltd® O4 - GS\CommonDesktop [Public]: Free Video Call Recorder for Skype.lnk . (.Digital Wave Ltd - Free Video Call Recorder for Skype.) C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\FreeVideoCallRecorder.exe =>.Digital Wave Ltd® O4 - GS\CommonDesktop [Public]: Free YouTube Download.lnk . (.Digital Wave Ltd - Free YouTube Download.) C:\Program Files (x86)\DVDVideoSoft\Free YouTube Download\FreeYTVDownloader.exe =>.Digital Wave Ltd® O4 - GS\CommonDesktop [Public]: Free YouTube To MP3 Converter.lnk . (.Digital Wave Ltd - Free YouTube to MP3 Converter.) C:\Program Files (x86)\DVDVideoSoft\Free YouTube To MP3 Converter\FreeYouTubeToMP3Converter.exe =>.Digital Wave Ltd O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA - NVIDIA GeForce Experience.) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exe =>.NVIDIA Corporation® O4 - GS\CommonDesktop [Public]: Google Docs.lnk . (.Google - Google Drive.) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document =>.Google Inc® O4 - GS\CommonDesktop [Public]: Google Sheets.lnk . (.Google - Google Drive.) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet =>.Google Inc® O4 - GS\CommonDesktop [Public]: Google Slides.lnk . (.Google - Google Drive.) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation =>.Google Inc® O4 - GS\CommonDesktop [Public]: Intel(R) HD Graphics Control Panel.lnk . (.Intel Corporation - GFXUIEX Module.) C:\Windows\system32\GfxUIEx.exe =>.Intel Corporation O4 - GS\CommonDesktop [Public]: Measurement.lnk . (.CoolingTech - CoolingTech.) C:\Program Files (x86)\Measurement\Measurement.exe O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\CommonDesktop [Public]: NCH Suite.lnk . (.NCH Software - VideoPad Video Editor.) C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe -suite =>.NCH Software® O4 - GS\CommonDesktop [Public]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files (x86)\Picture Collage Maker Pro\PictureCollageMakerPro.exe {0C1AED6D6A2B9474767C964E9753A5B1} =>.PearlMountain Technology Co., Ltd O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\WINDOWS\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies O4 - GS\CommonDesktop [Public]: TeamViewer 12.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH® O4 - GS\CommonDesktop [Public]: Visual Watermark.lnk . (.Ivan Nikitin - Visual Watermark for PC.) C:\Program Files\Visual Watermark\visualwatermark.exe {0D3FB1A5DEFD3D6FABE41F0E703256E3} O4 - GS\CommonDesktop [Public]: Watermark Image.lnk . (.TSR Software - www.tsr-soft.com - TSR Watermark Image Software.) C:\Program Files (x86)\TSR Soft\Watermark Image\WatermarkImage.exe =>.andromeda IT® O4 - GS\CommonDesktop [Public]: Wondershare Photo Collage Studio.lnk . (...) C:\Program Files (x86)\Wondershare\Photo Collage Studio\pcls.exe O4 - GS\Programs [Public]: HD Audio-Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Public]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Optionale Features.lnk . (.Microsoft Corporation - Features der On-Demand-Hilfe.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation O4 - GS\Programs [Public]: Update- und Datenschutzeinstellungen.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Editor.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Editor für benutzerdefinierte Zeichen.) C:\WINDOWS\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Windows-Mobilitätscenter.) C:\WINDOWS\system32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remotedesktopverbindung.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Schrittaufzeichnung.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows WordPad-Anwendung.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - XPS-Viewer.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Zeichentabelle.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Adobe After Effects CC 2015.lnk . (.Adobe Systems Incorporated - Adobe After Effects CC 2015.0.) C:\Program Files\Adobe\Adobe After Effects CC 2015\Support Files\AfterFX.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe After Effects CC 2017.lnk . (.Adobe Systems Incorporated - Adobe After Effects CC 2017.1.) C:\Program Files\Adobe\Adobe After Effects CC 2017\Support Files\AfterFX.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Bridge CS6 (64bit).lnk . (.Adobe Systems, Inc. - Adobe Bridge CS6.) C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Bridge CS6.lnk . (.Adobe Systems, Inc. - Adobe Bridge CS6.) C:\Program Files (x86)\Adobe\Adobe Bridge CS6\Bridge.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Character Animator (Preview).lnk . (.Adobe Systems Incorporated - Character Animator Preview 1.) C:\Program Files\Adobe\Adobe Character Animator (Preview)\Support Files\Character Animator.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Character Animator CC (Beta).lnk . (.Adobe Systems Incorporated - Character Animator CC Beta.) C:\Program Files\Adobe\Adobe Character Animator CC (Beta)\Support Files\Character Animator.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Download Assistant.lnk . (...) C:\Program Files (x86)\Adobe Download Assistant\Adobe Download Assistant.exe O4 - GS\ProgramsCommon [Public]: Adobe ExtendScript Toolkit CS6.lnk . (.Adobe Systems Incorporated - ExtendScript Toolkit CS6 and Debugger (32 b.) C:\Program Files (x86)\Adobe\Adobe Utilities - CS6\ExtendScript Toolkit CS6\ExtendScript Toolkit.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Extension Manager CS6.lnk . (.Adobe Systems Incorporated - Adobe Extension Manager CS6.) C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Adobe Extension Manager CS6.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Illustrator CC 2017.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2017.) C:\Program Files\Adobe\Adobe Illustrator CC 2017\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Media Encoder CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Media Encoder CC 2015.2.) C:\Program Files\Adobe\Adobe Media Encoder CC 2015\Adobe Media Encoder.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Media Encoder CC 2017.lnk . (.Adobe Systems Incorporated - Adobe Media Encoder CC 2017.0.) C:\Program Files\Adobe\Adobe Media Encoder CC 2017\Adobe Media Encoder.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CS6 (64 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CS6.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) C:\Program Files (x86)\Adobe\Adobe Photoshop CS6\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Premiere Pro CC 2017.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2017.0.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2017\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Reader XI.lnk . (...) C:\WINDOWS\Installer\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}\SC_Reader.ico =>.Adobe Inc. O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe =>.The Audacity Team O4 - GS\ProgramsCommon [Public]: GIMP 2.lnk . (.Spencer Kimball, Peter Mattis and the GIMP Developmen - GNU Image Manipulation Program.) C:\Program Files\GIMP 2\bin\gimp-2.8.exe =>.Jernej Simoncic® O4 - GS\ProgramsCommon [Public]: HowToRemove.html.lnk . (...) C:\Users\Stephania\AppData\Local\{FCE0CABC-D848-A604-B5D0-83EC91B87F74}\HowToRemove\HowToRemove.html O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: MiracastView.lnk . (.Microsoft Corporation - MiracastView.) C:\WINDOWS\MiracastView\MiracastView.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser O4 - GS\ProgramsCommon [Public]: NCH Suite.lnk . (.NCH Software - VideoPad Video Editor.) C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe -extsuite =>.NCH Software® O4 - GS\ProgramsCommon [Public]: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: PrintDialog.lnk . (.Microsoft Corporation - Print Dialog.) C:\WINDOWS\PrintDialog\PrintDialog.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: TeamViewer 12.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH® O4 - GS\ProgramsCommon [Public]: VideoPad Video Editor.lnk . (.NCH Software - VideoPad Video Editor.) C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe =>.NCH Software® O4 - GS\ProgramsCommon [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Windows Live Messenger.lnk . (.Microsoft Corporation - Windows Live Messenger.) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Windows Movie Maker 2.6.lnk . (.Microsoft Corporation - Windows Movie Maker.) C:\Windows\Installer\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}\MOVIEMK.exe =>.Microsoft Corporation ---\\ Lop.com/Domain Entführer (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{26b546ac-62ba-4d26-a33c-cee02567d192}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{3b69ef85-a7da-4698-a61b-0bbe1450c39d}: DhcpNameServer = 129.143.2.4 129.143.2.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{3b69ef85-a7da-4698-a61b-0bbe1450c39d}: DhcpDomain = 681.nhf.swhd.local =>.Local Domain ---\\ Zusätzliche Protokolle (28) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML-Anzeige.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32-Erweiterung für Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX-Steuerung für Streamingvideo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32-Erweiterung für Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32-Erweiterung für Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32-Erweiterung für Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32-Erweiterung für Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML-Anzeige.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32-Erweiterung für Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML-Anzeige.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32-Erweiterung für Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML-Anzeige.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX-Steuerung für Streamingvideo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML-Anzeige.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ CLSID Tasks (Register) (1) - 2s O40 - TASK: {CCA07AA3-AAAD-44B9-BB1E-163858BE52BE} - (...) -- C:\WINDOWS\system32\osppc.dll (.not file.) [0] (.Orphan.) =>.Superfluous.Orphan ---\\ Installierte Software (91) - 9s O42 - Logiciel: Adobe After Effects CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {147EC100-14BE-45EF-AB42-35BAEE7D02F0} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe After Effects CC 2017 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- AEFT_14_1_0 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0274D240-4D1D-4FDA-9A36-09F0BECD288F} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Character Animator CC (Beta) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- ANMLBETA_1_0_5 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {B8B7838E-449E-B187-57E1-1AA686F225DC} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 26 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Illustrator CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- ILST_19_1_1 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Illustrator CC 2017 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- ILST_21_0_2 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Lightroom - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Media Encoder CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0FAC7130-BEC5-47A5-8813-1D339B8326ED} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Media Encoder CC 2017 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- AME_11_0_2 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Premiere Pro CC 2017 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PPRO_11_0_2 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader XI (11.0.20) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AB0000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824225037} =>.Adobe Systems Incorporated O42 - Logiciel: Amazon Kindle - (.Amazon.) [HKCU][64Bits] -- Amazon Kindle =>.Amazon O42 - Logiciel: Avira Antivirus v15.0.26.48 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Connect v1.2.83.46341 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {897e4d08-9554-48e9-ba07-ce6040867fa3} =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Connect v1.2.83.46341 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {E2237AB2-C484-4362-A5B8-20F8389C0E89} =>.Avira Operations GmbH & Co. KG O42 - Logiciel: Cisco WebEx Meetings - (.Cisco WebEx LLC.) [HKLM][64Bits] -- ActiveTouchMeetingClient =>.Cisco WebEx LLC® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox =>.Dropbox, Inc® O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc. O42 - Logiciel: EasyVideoMaker - (.Easy Video Maker.) [HKLM][64Bits] -- {03EC818F-96E5-497F-AF28-EC6BC4CF32D3} O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {41BF4A3B-D60A-4E92-883F-C88C8C157261} =>.Microsoft Corporation O42 - Logiciel: Ghostscript GPL 8.64 (Msi Setup) - (.Corel Corporation.) [HKLM][64Bits] -- _{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2} =>.Corel Corporation® O42 - Logiciel: Ghostscript GPL 8.64 (Msi Setup) - (.Corel Corporation.) [HKLM][64Bits] -- {06CD45E6-FF5E-4D8E-BC01-B276A90DADF2} =>.Corel Corporation O42 - Logiciel: GL USB2.0 UVC Camera Device - (.Genesys Logic.) [HKLM][64Bits] -- {9897BBD8-013A-49F3-928E-866A59B6E00C} =>.Genesys Logic O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {A1238426-ECDF-4639-BE2F-8D12A97AE23C} =>.Google, Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: GPL Ghostscript - (.Artifex Software Inc..) [HKLM][64Bits] -- GPL Ghostscript 9.16 =>.Artifex Software Inc. O42 - Logiciel: Intel(R) C++ Redistributables for Windows* on Intel(R) 64 - (.Intel Corporation.) [HKLM][64Bits] -- {D2437C5C-2D8C-40D2-8059-689AD7239FA3} =>.Intel Corporation O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {98841A35-1CBE-4EA3-BFF5-F3E3AD894666} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {0FE18988-DE59-46FB-9EE7-D40DA5E98FEA} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {C2A1F9AE-5E6B-4021-B1BA-72711EC5E558} =>.Intel Corporation O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] -- {d3f2f385-12f2-479c-92e2-e6f6b5e95b76} =>.Intel Corporation O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX® O42 - Logiciel: Intel(R) Wireless Bluetooth(R) - (.Intel Corporation.) [HKLM][64Bits] -- {49D1966E-A747-4DFA-89EF-DCCB37F94CD8} =>.Intel Corporation O42 - Logiciel: Intel® Chipsatz-Gerätesoftware - (.Intel(R) Corporation.) [HKLM][64Bits] -- {d370215a-d003-43ae-a3b6-1028af64d5a1} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Intel® PROSet/Wireless Software - (.Intel Corporation.) [HKLM][64Bits] -- {7991b5ae-96d7-4df2-97fb-a605b7cb638b} =>.Intel Corporation-Mobile Wireless Group® O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {F7519C01-56A8-4844-A8CE-397065097F1E} =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {3DE97849-544D-4D68-9255-11DF6F9F10D8} =>.Intel Corporation O42 - Logiciel: IrfanView 64 (remove only) - (.Irfan Skiljan.) [HKLM][64Bits] -- IrfanView64 =>.Irfan Skiljan O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {0BE9E708-5DC0-4963-9CFD-0AA519090E79} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291. - (.Microsoft Corporation.) [HKLM][64Bits] -- {25E80DAA-FD87-DCE5-202C-CC02F6673002} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation® O42 - Logiciel: Mozilla Firefox 53.0.3 (x86 de) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 53.0.3 (x86 de) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSVCRT Redists - (.MAGIX Computer Products Intl. Co..) [HKLM][64Bits] -- {52116C70-79F9-11E6-9541-BB95F5A309BD} =>.MAGIX Computer Products Intl. Co. O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft O42 - Logiciel: MTP Porting Kit - (.Microsoft Corp.) [HKLM][64Bits] -- {353B1E6D-7073-4450-8C80-699BD8FCFB49} =>.Microsoft Corp O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience 2.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Grafiktreiber 376.54 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Optimus Update 14.6.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65} =>.NVIDIA Corporation O42 - Logiciel: NVIDIA PhysX-Systemsoftware 9.13.1220 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation O42 - Logiciel: NVIDIA ShadowPlay 14.6.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Systemsteuerung 376.54 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Update 14.6.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Virtual Audio 1.2.23 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated O42 - Logiciel: Qualcomm Atheros 61x4 Wireless LAN&Bluetooth Installer - (.Qualcomm Atheros.) [HKLM][64Bits] -- {3241744A-BA36-41F0-B4AA-EF3946D00632} =>.Qualcomm Atheros O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.® O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation O42 - Logiciel: SilverEdition - AudioCutter - (..) [HKLM][64Bits] -- SilverEdition - AudioCutter O42 - Logiciel: Skype™ 7.34 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A. O42 - Logiciel: TeamViewer 12 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer GmbH® O42 - Logiciel: tiptoi® Manager 3.1.6 - (.Ravensburger AG.) [HKLM][64Bits] -- 9978-5763-2995-5228 =>.Ravensburger AG O42 - Logiciel: TSR Watermark Image software version 3.5.7.9 - (.TSR Software.) [HKLM][64Bits] -- TSR Watermark Image_is1 =>.TSR Software O42 - Logiciel: VEGAS Pro 14.0 (64-bit) - (.VEGAS.) [HKLM][64Bits] -- {4D318F4F-79F9-11E6-86C2-BB95F5A309BD} =>.VEGAS O42 - Logiciel: VideoPad Video Editor - (.NCH Software.) [HKLM][64Bits] -- VideoPad =>.NCH Software® O42 - Logiciel: VirtualDJ 8 - (.Atomix Productions.) [HKLM][64Bits] -- {68A952A1-F666-4A5F-98C9-03EE9625B2E2} =>.Atomix Productions O42 - Logiciel: Windows 10 Update and Privacy Settings - (.Microsoft Corporation.) [HKLM][64Bits] -- {293F2009-0145-450B-B4AA-063D43FB368C} =>.Microsoft Corporation ---\\ HKCU & HKLM Software Keys (109) - 9s HKLM\SOFTWARE\Wow6432Node\ActiveTouch HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Wow6432Node\ATHEROS =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Avira =>.Avira HKLM\SOFTWARE\Wow6432Node\Brother =>.Brother HKLM\SOFTWARE\Wow6432Node\CDDB =>.Cddb Software HKLM\SOFTWARE\Wow6432Node\Corel =>.Corel HKLM\SOFTWARE\Wow6432Node\DigitalWave =>.DigitalWave Corporation HKLM\SOFTWARE\Wow6432Node\Dropbox =>.Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate =>.Dropbox Inc. HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft =>.DVDVideoSoft HKLM\SOFTWARE\Wow6432Node\ej-technologies =>.ej-technologies HKLM\SOFTWARE\Wow6432Node\Genesys Logic =>.Genesys Logic HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\GPL Ghostscript =>.GPL Ghostscript HKLM\SOFTWARE\Wow6432Node\HaaliMkx =>.Haali Media HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos HKLM\SOFTWARE\Wow6432Node\LEAD Technologies, Inc. =>.LEAD Technologies Inc. HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\Magix =>.Magix HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\NCH Software =>.NCH Software HKLM\SOFTWARE\Wow6432Node\NCH Swift Sound =>.NCH Swift Sound HKLM\SOFTWARE\Wow6432Node\Nuance =>.Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\RZsoft HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype HKLM\SOFTWARE\Wow6432Node\Sony Creative Software =>.Sony Creative Software HKLM\SOFTWARE\Wow6432Node\TeamViewer =>.TeamViewer HKLM\SOFTWARE\Wow6432Node\TVInstallTemp =>.TeamViewer GmbH HKLM\SOFTWARE\Wow6432Node\VirtualDJ =>.Atomix Production HKLM\SOFTWARE\Wow6432Node\WafCX =>.WafCX HKLM\SOFTWARE\Wow6432Node\webex =>.Cisco Systems, Inc. HKLM\SOFTWARE\Wow6432Node\WebSupergoo HKLM\SOFTWARE\Wow6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\Wow6432Node\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\X-AVCSD =>.Avira Software HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! Inc. HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\aborange HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Adobe Lightroom =>.Adobe Inc. HKCU\SOFTWARE\Amazon =>.Amazon HKCU\SOFTWARE\Apowersoft =>.Apowersoft HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Avira =>.Avira HKCU\SOFTWARE\Brother =>.Brother HKCU\SOFTWARE\Bytescout =>.ByteScout HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\csastats =>Adware.InstallCore HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\Dropbox =>.Dropbox HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\DVDVideoSoft =>.DVDVideoSoft HKCU\SOFTWARE\ej-technologies =>.ej-technologies HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GPL Ghostscript =>.GPL Ghostscript HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\LAV =>.LAV Inc HKCU\SOFTWARE\LEAD Technologies, Inc. =>.LEAD Technologies Inc. HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Mine =>.Microsoft Corporation HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\NCH Software =>.NCH Software HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\OCS HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\PearlMountain HKCU\SOFTWARE\ProtectedStorage HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Ravensburger tiptoi =>.Ravensburger Digital HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\skypeapp-b37a27f0273b HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software HKCU\SOFTWARE\TeamViewer =>.TeamViewer HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\TSR Software =>.TSR Software HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\VirtualDJ =>.Atomix Production HKCU\SOFTWARE\WebEx =>.Cisco Systems, Inc. HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft ---\\ Inhalt der Ordner Programme (320) - 22s O43 - CFD: 23/03/2017 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 25/01/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 27/11/2015 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 13/04/2015 - [0] SHD -- C:\Program Files\Gemeinsame Dateien =>.Gemeinsame Dateien O43 - CFD: 05/10/2015 - [] AD -- C:\Program Files\GIMP 2 =>.Jernej Simoncic® O43 - CFD: 27/04/2015 - [] D -- C:\Program Files\gs =>.GS O43 - CFD: 25/01/2017 - [] AD -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 16/03/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 09/08/2016 - [] D -- C:\Program Files\IrfanView =>.Irfan skiljan O43 - CFD: 15/04/2015 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 11/02/2017 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 25/01/2017 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 20/05/2016 - [] D -- C:\Program Files\SAMSUNG =>.Samsung Electronics O43 - CFD: 21/11/2016 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 01/06/2017 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\VEGAS =>.VEGAS O43 - CFD: 09/08/2016 - [] AD -- C:\Program Files\Visual Watermark O43 - CFD: 20/05/2017 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/11/2016 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation O43 - CFD: 16/03/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 28/01/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 27/01/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 20/05/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 27/01/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 13/06/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 29/04/2017 - [] AD -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 25/10/2015 - [] AD -- C:\Program Files (x86)\Adobe Download Assistant =>.Adobe Inc. O43 - CFD: 10/05/2015 - [0] D -- C:\Program Files (x86)\AGEIA Technologies =>.AGEIA Technologies O43 - CFD: 27/05/2016 - [] AD -- C:\Program Files (x86)\AnotherUnzipper O43 - CFD: 01/05/2017 - [0] D -- C:\Program Files (x86)\Apowersoft =>.Apowersoft O43 - CFD: 07/05/2015 - [] AD -- C:\Program Files (x86)\Audacity =>.Audacity O43 - CFD: 29/07/2016 - [] D -- C:\Program Files (x86)\Avira =>.Avira Software O43 - CFD: 13/04/2015 - [0] D -- C:\Program Files (x86)\Cisco =>.Cisco Systems, Inc. O43 - CFD: 18/04/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 22/07/2016 - [] D -- C:\Program Files (x86)\Convert AVI to MP4 O43 - CFD: 01/06/2017 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc® O43 - CFD: 24/04/2017 - [] AD -- C:\Program Files (x86)\DVDVideoSoft =>.DVDVideoSoft O43 - CFD: 10/05/2015 - [] AD -- C:\Program Files (x86)\Easy Video Maker O43 - CFD: 21/07/2016 - [] D -- C:\Program Files (x86)\Free Codec Pack =>.Free Codec Pack O43 - CFD: 21/07/2016 - [] D -- C:\Program Files (x86)\FreeCodecPack =>.Free Codec Pack O43 - CFD: 29/07/2016 - [] AD -- C:\Program Files (x86)\GLPCCamera =>.Unknown O43 - CFD: 29/04/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 27/05/2016 - [] D -- C:\Program Files (x86)\gs =>.GS O43 - CFD: 29/07/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 27/11/2015 - [] AD -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 16/03/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 02/05/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle O43 - CFD: 25/10/2015 - [] AD -- C:\Program Files (x86)\Labography O43 - CFD: 29/07/2016 - [] AD -- C:\Program Files (x86)\Measurement O43 - CFD: 15/04/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] AD -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] AD -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] AD -- C:\Program Files (x86)\Microsoft Visual Studio 8 =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 06/05/2015 - [] D -- C:\Program Files (x86)\Movie Maker 2.6 =>.Microsoft Corporation O43 - CFD: 25/05/2017 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 25/05/2017 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 25/01/2017 - [] AD -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 01/06/2016 - [] D -- C:\Program Files (x86)\NCH Software =>.NCH Software O43 - CFD: 11/02/2017 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 21/04/2015 - [] AD -- C:\Program Files (x86)\Picture Collage Maker Pro {0C1AED6D6A2B9474767C964E9753A5B1} O43 - CFD: 13/04/2015 - [] D -- C:\Program Files (x86)\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 19/02/2017 - [] AD -- C:\Program Files (x86)\Ravensburger tiptoi =>.Ravensburger Digital O43 - CFD: 13/04/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 25/01/2017 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 18/04/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 31/05/2017 - [] AD -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH® O43 - CFD: 13/04/2015 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 09/08/2016 - [] D -- C:\Program Files (x86)\TSR Soft =>.TSR Soft O43 - CFD: 20/01/2016 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Program Files (x86)\VEGAS =>.VEGAS O43 - CFD: 30/07/2016 - [] AD -- C:\Program Files (x86)\VirtualDJ =>.Atomix Production O43 - CFD: 29/04/2017 - [] D -- C:\Program Files (x86)\WeatherHub =>.WeatherHub O43 - CFD: 20/05/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] AD -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation O43 - CFD: 16/03/2017 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 28/01/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 27/01/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 20/05/2017 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 27/01/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare O43 - CFD: 16/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 20/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 16/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnotherUnzipper O43 - CFD: 01/05/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft =>.Apowersoft O43 - CFD: 10/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira =>.Avira Software O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Convert AVI to MP4 O43 - CFD: 01/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox =>.Dropbox O43 - CFD: 24/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft =>.DVDVideoSoft O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy Video Maker O43 - CFD: 12/04/2011 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghostscript =>.Ghostscript Team O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GLPCCamera =>.Unknown O43 - CFD: 29/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive =>.Google Inc. O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IrfanView =>.Irfan skiljan O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Labography O43 - CFD: 16/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Measurement O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 20/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picture Collage Maker Pro O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SilverEdition O43 - CFD: 08/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 16/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 19/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\tiptoi® Manager =>.Ravensburger Digital O43 - CFD: 08/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TSR Soft =>.TSR Soft O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS =>.VEGAS O43 - CFD: 25/01/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live =>.Microsoft Corporation O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare O43 - CFD: 09/06/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 13/04/2015 - [0] SHD -- C:\ProgramData\Anwendungsdaten =>.Microsoft Corporation O43 - CFD: 07/05/2015 - [] D -- C:\ProgramData\Ashampoo =>.Ashampoo GmbH O43 - CFD: 29/07/2016 - [] D -- C:\ProgramData\Avira =>.Avira Software O43 - CFD: 11/04/2016 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 21/11/2015 - [] D -- C:\ProgramData\Brother =>.Brother O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation O43 - CFD: 21/07/2016 - [] D -- C:\ProgramData\Corel =>.Corel Corporation O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 25/01/2017 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 24/04/2017 - [] D -- C:\ProgramData\DigitalWave.ApplicationUpdater_files O43 - CFD: 13/04/2015 - [0] SHD -- C:\ProgramData\Dokumente =>.Microsoft Corporation O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Dropbox =>.Dropbox O43 - CFD: 13/04/2015 - [0] SHD -- C:\ProgramData\Favoriten =>.Microsoft Corporation O43 - CFD: 04/09/2016 - [] D -- C:\ProgramData\GLPCCamera =>.Unknown O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\install_backup O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 10/05/2015 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 26/10/2015 - [] D -- C:\ProgramData\Labography O43 - CFD: 13/04/2015 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 17/02/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 24/08/2016 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 21/11/2016 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 13/04/2015 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\NCH Software =>.NCH Software O43 - CFD: 07/06/2017 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 02/05/2015 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 10/05/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 21/04/2015 - [] D -- C:\ProgramData\PearlMountain O43 - CFD: 20/04/2015 - [] D -- C:\ProgramData\Protexis64 =>.Protexis Inc. O43 - CFD: 13/04/2015 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 28/04/2016 - [] D -- C:\ProgramData\RavensburgerTipToi =>.Ravensburger Digital O43 - CFD: 19/02/2017 - [] D -- C:\ProgramData\RavensburgerTipToi3 =>.Ravensburger Digital O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc. O43 - CFD: 25/01/2017 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 13/04/2015 - [] D -- C:\ProgramData\Roaming =>.Microsoft Corporation O43 - CFD: 20/05/2016 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 18/04/2017 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 13/04/2015 - [0] SHD -- C:\ProgramData\Startmenü =>.Microsoft Corporation O43 - CFD: 13/04/2015 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 17/02/2017 - [0] D -- C:\ProgramData\SUPPORTDIR =>.Microsoft Corporation O43 - CFD: 27/05/2016 - [] D -- C:\ProgramData\UniqueId =>.Microsoft Corporation O43 - CFD: 21/11/2016 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 21/11/2016 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\VEGAS =>.VEGAS O43 - CFD: 13/04/2015 - [0] SHD -- C:\ProgramData\Vorlagen =>.Microsoft Corporation O43 - CFD: 27/05/2016 - [] D -- C:\ProgramData\VsTelemetry =>.Legitimate O43 - CFD: 04/04/2017 - [] D -- C:\ProgramData\WebEx =>.Cisco Systems, Inc. O43 - CFD: 21/07/2016 - [0] D -- C:\ProgramData\WinZip =>.WinZip O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 13/06/2017 - [] D -- C:\ProgramData\{95A250C1-1FE0-DA07-9926-44450364CF8B} O43 - CFD: 29/05/2017 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 25/10/2015 - [] AD -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc. O43 - CFD: 13/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Atheros =>.Qualcomm Atheros O43 - CFD: 21/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Bcgsoft O43 - CFD: 15/04/2015 - [] AD -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 24/04/2017 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft =>.DVDVideoSoft O43 - CFD: 10/05/2015 - [] D -- C:\Program Files (x86)\Common Files\EVMMediaCodec O43 - CFD: 13/04/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 25/01/2017 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 02/05/2015 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 25/01/2017 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 10/05/2015 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent =>.Microsoft Corporation O43 - CFD: 13/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 18/04/2017 - [] AD -- C:\Program Files (x86)\Common Files\Skype =>.Skype O43 - CFD: 25/01/2017 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 15/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Wondershare =>.Wondershare O43 - CFD: 27/05/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\aborange O43 - CFD: 29/04/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 24/04/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Apowersoft =>.Apowersoft O43 - CFD: 20/05/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Audacity =>.Audacity O43 - CFD: 15/04/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\Avira =>.Avira Software O43 - CFD: 25/10/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Inc. O43 - CFD: 27/05/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\Corel =>.Corel Corporation O43 - CFD: 03/02/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 25/05/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft O43 - CFD: 13/04/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 28/10/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\inkscape =>.inkscape.org O43 - CFD: 13/04/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\Intel =>.Intel Corporation O43 - CFD: 09/08/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\IrfanView =>.Irfan skiljan O43 - CFD: 25/10/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\Labography O43 - CFD: 13/04/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 19/02/2017 - [] SD -- C:\Users\Stephania\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 04/04/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 15/04/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\NCH Software =>.NCH Software O43 - CFD: 03/01/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\NVIDIA =>.nVidia Corporation O43 - CFD: 11/05/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\PDAppFlex O43 - CFD: 21/04/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\PearlMountain O43 - CFD: 29/10/2015 - [0] D -- C:\Users\Stephania\AppData\Roaming\RavensburgerTipToi =>.Ravensburger Digital O43 - CFD: 19/02/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\RavensburgerTipToi3 =>.Ravensburger Digital O43 - CFD: 21/04/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\RHEng =>.Superfluous.Conduit O43 - CFD: 27/04/2015 - [] D -- C:\Users\Stephania\AppData\Roaming\Scribus O43 - CFD: 07/06/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Skype =>.Skype O43 - CFD: 17/02/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Sony =>.Sony O43 - CFD: 29/04/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 22/09/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\TeamViewer =>.TeamViewer O43 - CFD: 01/05/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\uTorrent O43 - CFD: 04/04/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\webex =>.Cisco Systems, Inc. O43 - CFD: 13/06/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 12/05/2016 - [] HD -- C:\Users\Stephania\AppData\Local\43ec201124b5e85a O43 - CFD: 20/01/2016 - [0] D -- C:\Users\Stephania\AppData\Local\ActiveSync =>.Microsoft Corporation O43 - CFD: 13/06/2017 - [] D -- C:\Users\Stephania\AppData\Local\Adobe =>.Adobe O43 - CFD: 21/12/2015 - [] D -- C:\Users\Stephania\AppData\Local\Amazon =>.Amazon O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Stephania\AppData\Local\Anwendungsdaten =>.Microsoft Corporation O43 - CFD: 13/04/2015 - [] D -- C:\Users\Stephania\AppData\Local\AutorunX2 O43 - CFD: 29/04/2017 - [] D -- C:\Users\Stephania\AppData\Local\CEF =>.CEF O43 - CFD: 27/11/2015 - [] D -- C:\Users\Stephania\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 27/01/2017 - [] D -- C:\Users\Stephania\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 13/06/2017 - [] D -- C:\Users\Stephania\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 07/11/2016 - [0] D -- C:\Users\Stephania\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 20/05/2016 - [] D -- C:\Users\Stephania\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 11/05/2016 - [] D -- C:\Users\Stephania\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 12/06/2017 - [] D -- C:\Users\Stephania\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 07/10/2015 - [0] SHD -- C:\Users\Stephania\AppData\Local\EmieBrowserModeList =>.Enterprise mode Site List Mgr O43 - CFD: 07/10/2015 - [0] SHD -- C:\Users\Stephania\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr O43 - CFD: 07/10/2015 - [0] SHD -- C:\Users\Stephania\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr O43 - CFD: 05/10/2015 - [] D -- C:\Users\Stephania\AppData\Local\fontconfig =>.Portable Apps O43 - CFD: 05/10/2015 - [] D -- C:\Users\Stephania\AppData\Local\gegl-0.2 =>.Portable Apps O43 - CFD: 29/04/2017 - [] D -- C:\Users\Stephania\AppData\Local\Google =>.Google O43 - CFD: 14/04/2016 - [] D -- C:\Users\Stephania\AppData\Local\gtk-2.0 =>.GTK Project O43 - CFD: 29/06/2015 - [] D -- C:\Users\Stephania\AppData\Local\GWX =>.GWX O43 - CFD: 13/04/2015 - [] D -- C:\Users\Stephania\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 08/06/2017 - [] D -- C:\Users\Stephania\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 12/05/2016 - [] D -- C:\Users\Stephania\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 01/12/2015 - [] D -- C:\Users\Stephania\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 13/04/2015 - [] D -- C:\Users\Stephania\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 27/11/2015 - [0] D -- C:\Users\Stephania\AppData\Local\NetworkTiles =>.NetworkTiles O43 - CFD: 02/05/2016 - [] D -- C:\Users\Stephania\AppData\Local\Nico Mak Computing =>.Nico Mak Computing O43 - CFD: 20/05/2015 - [] D -- C:\Users\Stephania\AppData\Local\NVIDIA =>.nVidia Corporation O43 - CFD: 10/05/2015 - [] D -- C:\Users\Stephania\AppData\Local\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 27/05/2017 - [] D -- C:\Users\Stephania\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 27/11/2015 - [0] D -- C:\Users\Stephania\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 25/10/2015 - [] D -- C:\Users\Stephania\AppData\Local\Peridot_Technologies O43 - CFD: 21/04/2015 - [] D -- C:\Users\Stephania\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 18/07/2016 - [] D -- C:\Users\Stephania\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 11/06/2016 - [0] D -- C:\Users\Stephania\AppData\Local\Skype =>.Skype O43 - CFD: 13/06/2017 - [] D -- C:\Users\Stephania\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Stephania\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 01/03/2017 - [0] D -- C:\Users\Stephania\AppData\Local\Tempzxpsign208910e7e3e86f4d =>.Superfluous.Temporary O43 - CFD: 17/03/2017 - [0] D -- C:\Users\Stephania\AppData\Local\Tempzxpsign22e1099e9b6d3fcb =>.Superfluous.Temporary O43 - CFD: 01/03/2017 - [0] D -- C:\Users\Stephania\AppData\Local\Tempzxpsign246c4cb3de3b318e =>.Superfluous.Temporary O43 - CFD: 01/03/2017 - [0] D -- C:\Users\Stephania\AppData\Local\Tempzxpsign71c72669ecefa335 =>.Superfluous.Temporary O43 - CFD: 17/03/2017 - [0] D -- C:\Users\Stephania\AppData\Local\Tempzxpsignb1479abb44495153 =>.Superfluous.Temporary O43 - CFD: 01/03/2017 - [0] D -- C:\Users\Stephania\AppData\Local\Tempzxpsignc8dde4e15209f0e3 =>.Superfluous.Temporary O43 - CFD: 01/03/2017 - [0] D -- C:\Users\Stephania\AppData\Local\Tempzxpsignd5f01a1511b6cbd9 =>.Superfluous.Temporary O43 - CFD: 27/11/2015 - [] D -- C:\Users\Stephania\AppData\Local\TileDataLayer =>.Microsoft Corporation O43 - CFD: 13/06/2017 - [] D -- C:\Users\Stephania\AppData\Local\TSR_Software_-_www.tsr-so =>.TSR_Software O43 - CFD: 01/06/2017 - [] D -- C:\Users\Stephania\AppData\Local\UNP =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Users\Stephania\AppData\Local\VEGAS =>.VEGAS O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Stephania\AppData\Local\Verlauf O43 - CFD: 09/01/2017 - [] D -- C:\Users\Stephania\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 09/08/2016 - [] D -- C:\Users\Stephania\AppData\Local\Visual Watermark O43 - CFD: 04/04/2017 - [] D -- C:\Users\Stephania\AppData\Local\WebEx =>.Cisco Systems, Inc. O43 - CFD: 05/10/2015 - [] D -- C:\Users\Stephania\AppData\Local\webkit =>.webkit O43 - CFD: 04/11/2015 - [] D -- C:\Users\Stephania\AppData\Local\Windows Live =>.Microsoft Corporation O43 - CFD: 10/05/2015 - [0] D -- C:\Users\Stephania\AppData\Local\WMTools Downloaded Files =>.WMTools O43 - CFD: 18/03/2017 - [] D -- C:\Users\Stephania\AppData\Local\Wondershare =>.Wondershare O43 - CFD: 13/06/2017 - [] D -- C:\Users\Stephania\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 21/04/2015 - [0] D -- C:\Users\Stephania\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] RD -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] RD -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 20/05/2017 - [] RD -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 25/01/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon =>.Amazon O43 - CFD: 16/07/2016 - [] D -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SilverEdition O43 - CFD: 20/05/2017 - [] RD -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] RD -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\tiptoi® Manager =>.Ravensburger Digital O43 - CFD: 25/01/2017 - [] D -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ =>.Atomix Production O43 - CFD: 16/07/2016 - [] RD -- C:\Users\Stephania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Anwendungsdaten =>.Microsoft Corporation O43 - CFD: 21/11/2016 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Verlauf O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Anwendungsdaten =>.Microsoft Corporation O43 - CFD: 21/11/2016 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Verlauf O43 - CFD: 28/02/2017 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 12/06/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 03/02/2017 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 25/01/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 03/02/2017 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 03/02/2017 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 10/03/2017 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft O43 - CFD: 27/01/2017 - [] SD -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (23) - 1s O106 - SIOI: DropboxExt1 Class [ DropboxExt01] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class [ DropboxExt02] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt9 Class [ DropboxExt03] - {FB314EE1-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [ DropboxExt04] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [ DropboxExt05] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class [ DropboxExt06] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class [ DropboxExt07] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class [ DropboxExt08] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt10 Class [ DropboxExt09] - {FB314EE2-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class [ DropboxExt10] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\17.3.6799.0327\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\17.3.6799.0327\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\17.3.6799.0327\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\17.3.6799.0327\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\17.3.6799.0327\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ SkyDrive1] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\17.3.6799.0327\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ SkyDrive2] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\17.3.6799.0327\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: ErrorOverlayHandler Class [ SkyDrive3] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Stephania\AppData\Local\Microsoft\OneDrive\17.3.6799.0327\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Image File Execution Options (18) - 0s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Treiberinstallationsmodul.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - IE-Hilfsprogramm für Pro-Benutzerinitalisie.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Hilfsprogramm für unbeaufsichtigte Installa.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Microsoft Windows-Tool zum Entfernen bösart.) [CFGOptions\\1] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Microsoft (R)-HTML-Anwendungshost.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation-Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Windows-Hostprozess (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Spoolersubsystem-Anwendung.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Spoolersubsystem-Anwendung.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Hostprozess für Windows-Dienste.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher® O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ Liste der Treiber des Systems (67) - 12s O58 - SDL:2016/07/16 13:40:56 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows® O58 - SDL:2017/03/02 19:59:02 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [161824] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2017/03/02 19:59:02 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [163976] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2017/03/02 19:59:02 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [44488] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2017/03/02 19:59:02 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\WINDOWS\System32\drivers\avnetflt.sys [88488] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2017/03/02 19:59:02 A . (.Avira Operations GmbH & Co. KG - Avira USB Filter Driver.) -- C:\WINDOWS\System32\drivers\avusbflt.sys [48584] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2016/07/16 13:40:56 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] =>.Windows (R) Win 7 DDK provider O58 - SDL:2016/07/16 13:40:56 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider O58 - SDL:2016/07/16 13:40:56 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533856] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [102752] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [346976] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T4 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [2104160] =>.Microsoft Windows® O58 - SDL:2017/03/27 23:21:16 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-canary.sys [45672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2017/03/27 23:21:16 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-dev.sys [45672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2017/03/27 23:21:16 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-stable.sys [45672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2016/07/16 13:40:56 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418976] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:58 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [33280] =>.Intel(R) Corporation O58 - SDL:2016/07/16 13:40:58 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation O58 - SDL:2016/07/16 13:40:58 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [64512] =>.Intel Corporation O58 - SDL:2016/07/16 13:40:58 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [176384] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O58 - SDL:2016/07/16 13:40:56 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2016/07/16 13:40:54 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation O58 - SDL:2016/07/16 13:40:56 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526176] =>.Microsoft Windows® O58 - SDL:2017/01/13 22:12:04 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Filter Drive.) -- C:\WINDOWS\System32\drivers\ibtusb.sys [253696] =>.Intel Corporation-Wireless Connectivity Solutions® O58 - SDL:2016/12/19 08:14:04 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [7969760] =>.Intel(R) pGFX® O58 - SDL:2016/05/12 06:32:26 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [481768] =>.Intel(R) OWR® O58 - SDL:2016/07/16 13:40:56 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [105824] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [101216] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82776] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows® O58 - SDL:2016/11/21 01:33:18 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [64352] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842584] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108896] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:41:02 A . (.Autoren - .) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624] =>.Microsoft Corporation O58 - SDL:2016/07/16 13:40:54 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwbw02.sys [3485696] =>.Intel Corporation O58 - SDL:2015/07/13 21:45:08 N . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11139216] =>.NVIDIA Corporation® O58 - SDL:2016/07/16 13:40:57 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:57 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows® O58 - SDL:2014/04/01 00:42:44 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [40392] =>.NVIDIA Corporation® O58 - SDL:2016/07/16 13:40:57 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58720] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:57 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61792] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:57 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [589824] =>.Realtek O58 - SDL:2015/11/27 13:11:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4598528] =>.Realtek Semiconductor Corp® O58 - SDL:2015/05/14 13:10:30 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [402960] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2016/07/16 13:40:57 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:57 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2016/09/05 06:47:06 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [131712] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/09/05 06:47:12 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [165504] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/07/16 13:40:57 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2015/11/27 13:12:40 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID.sys [56520] =>.Synaptics Incorporated® O58 - SDL:2014/02/19 18:51:12 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [116736] =>.Intel Corporation - Intel® Management Engine Firmware® O58 - SDL:2016/07/16 13:40:57 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:57 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/11/12 23:50:10 A . (.Western Digital Technologies, Inc. - Western Digital SCSI Architecture Model (SA.) -- C:\WINDOWS\System32\drivers\wdcsam64.sys [26880] =>.WDKTestCert wdclab,130885612892544312® O58 - SDL:2016/07/16 13:40:56 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32096] =>.Microsoft Windows® O58 - SDL:2016/07/16 13:40:56 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64864] =>.Microsoft Windows® ---\\ Neueste Dateien geändert oder erstellt (Benutzer) (1) - 10s O61 - LFC: 2017/06/07 15:00:14 A . (..) -- C:\Users\Stephania\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [8075477] =>.NVIDIA Corporation ---\\ Verbände Shell Laichen (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Startprogramm für Ereignisanzeige-Snap-In.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registrierungs-Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Startmenü Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE-Hilfsprogramm für Pro-Benutzerinitalisie.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE-Hilfsprogramm für Pro-Benutzerinitalisie.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE-Hilfsprogramm für Pro-Benutzerinitalisie.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Suche 'Ansteckung in Internet-Browsern (11) - 11s O69 - SBI: prefs.js [Stephania - d3s0cfxa.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.baseURI", "resource://caa1-adoicaxffmovix-at-jetpack/"); =>PUP.Optional.GoMovix O69 - SBI: prefs.js [Stephania - d3s0cfxa.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.domain", "caa1-adoicaxffmovix-at-jetpack"); =>PUP.Optional.GoMovix O69 - SBI: prefs.js [Stephania - d3s0cfxa.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.load.reason", "startup"); =>PUP.Optional.GoMovix O69 - SBI: prefs.js [Stephania - d3s0cfxa.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.rootURI", "jar:file:///C:/Users/Stephania/AppData/Roaming/Mozilla/Firefox/Pr[...] =>PUP.Optional.GoMovix O69 - SBI: prefs.js [Stephania - d3s0cfxa.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.version", "0.2.7"); =>PUP.Optional.GoMovix O69 - SBI: prefs.js [Stephania - d3s0cfxa.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.url", "resource://caa1-adoicaxffmovix-at-jetpack/data/index.html"); =>PUP.Optional.GoMovix O69 - SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] {a62abdee-78a2-4ddb-9355-1c334abd6e43} - (search.yahoo.com) - http://fr.search.yahoo.com/ =>.Yahoo! Inc. O69 - SBI: SearchScopes [HKCU] {d4fee3d1-1014-4db8-a824-573bf9ab51c7} - () - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {2f23ab71-4ac6-41f2-a955-ea576e553146} - (Yahoo! Powered) - http://fr.search.yahoo.com/ =>.Yahoo! Inc. O69 - SBI: SearchScopes [HKLM] {a62abdee-78a2-4ddb-9355-1c334abd6e43} - (search.yahoo.com) - http://fr.search.yahoo.com/ =>.Yahoo! Inc. ---\\ Liste den Dienststart von Svchost (46) - 0s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard-Zertifikatpropagierungs.) -- C:\WINDOWS\System32\certprop.dll [193536] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard-Zertifikatpropagierungs.) -- C:\WINDOWS\System32\certprop.dll [193536] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Serverdienst-DLL.) -- C:\WINDOWS\system32\srvsvc.dll [305152] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Gruppenrichtlinienclient.) -- C:\WINDOWS\System32\gpsvc.dll [1227264] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE-Erweiterung.) -- C:\WINDOWS\System32\ikeext.dll [932352] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Dienst, der IPv6-Konnektivität über ein IPv.) -- C:\WINDOWS\System32\iphlpsvc.dll [945664] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL für sekundären Anmeldedienst.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Anwendungsinformationsdienst.) -- C:\WINDOWS\System32\appinfo.dll [125952] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI-Ermittlungsdienst.) -- C:\WINDOWS\system32\iscsiexe.dll [151552] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost-Dienst.) -- C:\WINDOWS\System32\eapsvc.dll [112128] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Aufgabenplanungsdienst.) -- C:\WINDOWS\system32\schedsvc.dll [948224] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [222720] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computersuchdienst-DLL.) -- C:\WINDOWS\System32\browser.dll [134656] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remotedesktop-Konfigurationsdienst.) -- C:\Windows\System32\SessEnv.dll [387072] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problemberichte und -lösungen.) -- C:\WINDOWS\System32\wercplsupport.dll [94208] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll [161792] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [183808] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft-Netzwerkkonnektivitäts-Assistent.) -- C:\WINDOWS\System32\ncasvc.dll [167936] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE-Dienst.) -- C:\WINDOWS\System32\bdesvc.dll [361472] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1025536] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Windows-Pushbenachrichtigungssystemdienst.) -- C:\WINDOWS\system32\WpnService.dll [234496] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [57344] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Infrarotüberwachung.) -- C:\WINDOWS\System32\irmon.dll [25088] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - RAS-Verwaltung für automatisches Wählen.) -- C:\WINDOWS\System32\rasauto.dll [105472] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - RAS-Verbindungsverwaltung.) -- C:\WINDOWS\System32\rasmans.dll [657920] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamischer Schnittstellen-Manager.) -- C:\Windows\System32\mprdim.dll [496128] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Benachrichtigungsdienst für Systemereigniss.) -- C:\WINDOWS\System32\sens.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT-Hilfskomponenten.) -- C:\WINDOWS\System32\ipnathlp.dll [541696] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft(R) Windows(R) Telefonieserver.) -- C:\Windows\System32\tapisrv.dll [309248] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update-Agent.) -- C:\WINDOWS\system32\wuaueng.dll [2316288] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Intelligenter Hintergrundübertragungsdienst.) -- C:\WINDOWS\System32\qmgr.dll [1054208] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows-Shelldienste-DLL.) -- C:\Windows\System32\shsvcs.dll [617472] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [650752] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation-Dienst.) -- C:\WINDOWS\System32\lfsvc.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows-Verwaltungsdienst-DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [407552] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Geräteinstallations-Manager.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [197632] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows-Shelldesigndienste-DLL.) -- C:\WINDOWS\system32\themeservice.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Softwareinstallationsdienst.) -- C:\Windows\System32\appmgmts.dll [197632] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [358400] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - Benutzer-Manager.) -- C:\WINDOWS\System32\usermgr.dll [1021440] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft®-Kontodienst.) -- C:\WINDOWS\system32\wlidsvc.dll [2104320] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1159680] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Netzwerkeinrichtungsdienst.) -- C:\WINDOWS\System32\NetSetupSvc.dll [265728] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Flight-Einstellungen.) -- C:\WINDOWS\system32\flightsettings.dll [635904] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Updatesitzung für Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [548864] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [1016320] =>.Microsoft Corporation ---\\ Liste der Ausnahmen in der Firewall (FirewallRules) (6) - 3s O87 - FAEL: "{BA9FEB4E-F972-4B6F-BF01-4EA4AD833C40}" [In-None-P6-TRUE] .(...) -- C:\Users\Stephania\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (.not file.) O87 - FAEL: "{2A4D7AFB-F69E-4DB3-ABED-FCD62F7AD32A}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (.not file.) O87 - FAEL: "{0E9DC923-D453-40D2-B715-E7E7F10684F1}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe (.not file.) O87 - FAEL: "{26FD48F1-732F-4CC0-89AC-445C17519205}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe (.not file.) O87 - FAEL: "TCP Query User{3C0DF828-DDD6-4466-BABE-7A44E8B274ED}C:\program files (x86)\apowersoft\apowersoft phone manager\apowersoft phone manager.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\apowersoft\apowersoft phone manager\apowersoft phone manager.exe (.not file.) O87 - FAEL: "UDP Query User{8574BDA5-667D-40FF-9500-9957098C2F7C}C:\program files (x86)\apowersoft\apowersoft phone manager\apowersoft phone manager.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\apowersoft\apowersoft phone manager\apowersoft phone manager.exe (.not file.) ---\\ Zusätzliche Scan (O88) (12) - 0s C:\WINDOWS\Tasks\Yahoo! Powered nacan.job =>Adware.YahooPowered C:\WINDOWS\System32\Tasks\Yahoo! Powered nacan =>Adware.YahooPowered C:\Users\Stephania\AppData\Roaming\Mozilla\Firefox\Profiles\d3s0cfxa.default\extensions\caa1-aDOiCAxFFMOVIX@jetpack.xpi =>PUP.Optional.GoMovix C:\Users\Stephania\AppData\Roaming\Mozilla\Firefox\Profiles\d3s0cfxa.default\extensions\NewtabTV-the-extension2@mozilla.com.xpi =>PUP.Optional.SocialMediaNewTab C:\Users\Stephania\AppData\Roaming\RHEng =>.Superfluous.Conduit C:\Users\Stephania\AppData\Local\Tempzxpsign208910e7e3e86f4d =>.Superfluous.Temporary C:\Users\Stephania\AppData\Local\Tempzxpsign22e1099e9b6d3fcb =>.Superfluous.Temporary C:\Users\Stephania\AppData\Local\Tempzxpsign246c4cb3de3b318e =>.Superfluous.Temporary C:\Users\Stephania\AppData\Local\Tempzxpsign71c72669ecefa335 =>.Superfluous.Temporary C:\Users\Stephania\AppData\Local\Tempzxpsignb1479abb44495153 =>.Superfluous.Temporary C:\Users\Stephania\AppData\Local\Tempzxpsignc8dde4e15209f0e3 =>.Superfluous.Temporary C:\Users\Stephania\AppData\Local\Tempzxpsignd5f01a1511b6cbd9 =>.Superfluous.Temporary ---\\ Zusammenfassung der Elemente gefunden auf Ihrer workstation (9) - 0s https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.GoMovix https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SocialMediaNewTab https://www.nicolascoolman.com/fr/pup-salus/ =>PUP.Optional.Salus https://nicolascoolman.eu/2017/02/02/hijacker-browser-2/ =>Hijacker.Browser https://nicolascoolman.eu/2017/03/12/adware-installcore-2/ =>Adware.InstallCore https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Downloader https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.Superfluous.Conduit https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary ~ Unselected Options: O82, ~ End of the scan, 62179 items in 42mn50s (1281)(0)