![]() |
|
Log-Analyse und Auswertung: Windows Defender meldet Trojan:Win32/Occamy.CWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() ![]() | ![]() Windows Defender meldet Trojan:Win32/Occamy.C Seit kurzem bekommen ich von Windows Defender die Meldung, dass der Trojaner Occamy.C gefunden und in die Quarantäne verschoben wurde. Wie werde ich das Problem wieder los? Vielen Dank für die Unterstützung. Anbei die Logfiles des Systemscans mit FRST Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 19-05.2019 durchgeführt von Freddy (Administrator) auf FREDDY_LAPTOP (Sony Corporation SVP1321L1EBI) (22-05-2019 02:01:52) Gestartet von C:\Users\Freddy\Desktop Geladene Profile: Freddy (Verfügbare Profile: Freddy & Lydia) Platform: Windows 10 Home Version 1809 17763.503 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: IE Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) () [Datei ist nicht signiert] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe () [Datei ist nicht signiert] C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1903.21.0_x64__8wekyb3d8bbwe\Calculator.exe () [Datei ist nicht signiert] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19041.481.0_x64__8wekyb3d8bbwe\YourPhone.exe () [Datei ist nicht signiert] C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc. -> Apple, Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe (Cisco Video Technologies Israel Ltd. -> Cisco) C:\Users\Freddy\AppData\Local\Cisco\VideoGuardPlayer\VideoGuardMonitor\CiscoVideoGuardMonitor.exe (CYBERGHOST S.A. -> CyberGhost S.A.) C:\Program Files\CyberGhost 7\CyberGhost.Service.exe (Eyeo GmbH -> Eyeo GmbH) C:\Program Files\Adblock Plus for IE\AdblockPlusEngine.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation-Mobile Wireless Group -> Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (Intel(R) Corporation) [Datei ist nicht signiert] C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Intel(R) Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Wireless Connectivity Solutions -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\NisSrv.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) [Datei ist nicht signiert] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeApp.exe (Microsoft Corporation) [Datei ist nicht signiert] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON Corporation -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\SUSSoundProxy.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Clip.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe (Sony Corporation -> Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Sony\NFC Connection Utility\NFCConnectionUtility.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Sony\VAIO Care\VAIOTM\VTSvc.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Sony\VAIO Care\VAIOTM\VTUsr.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (Sony Corporation -> Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Agent\WDDriveAgent.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1403136 2015-07-23] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954368 2015-09-21] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-03-24] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1151872 2016-11-18] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [WDDiscovery] => C:\Program Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe [56265192 2018-09-15] (Western Digital Technologies, Inc. -> Western Digital Corporation) HKLM-x32\...\Run: [WDDriveAgent] => C:\Program Files (x86)\Western Digital\WD Drive Agent\WDDriveAgent.exe [2379552 2018-06-04] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) HKLM-x32\...\Run: [DriveUtilitiesHelper] => C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [2309008 2018-06-01] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) HKU\S-1-5-21-3483465479-2191358556-2575146349-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-03-13] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-3483465479-2191358556-2575146349-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2019-03-13] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-3483465479-2191358556-2575146349-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2019-03-13] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-3483465479-2191358556-2575146349-1001\...\Run: [VideoGuardMonitor] => C:\Users\Freddy\AppData\Local\Cisco\VideoGuardPlayer\VideoGuardMonitor\CiscoVideoGuardMonitor.exe [2345736 2018-04-17] (Cisco Video Technologies Israel Ltd. -> Cisco) HKU\S-1-5-21-3483465479-2191358556-2575146349-1001\...\RunOnce: [Application Restart #5] => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [502912 2014-11-17] (Sony Corporation -> Sony Corporation) CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07A37E19-5965-40B6-AC9B-62866531F867} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.exe [1691224 2013-09-28] (Sony Corporation -> Sony Corporation) Task: {088082DF-6E31-4DC5-B65C-FB3C2FA65EFE} - System32\Tasks\Sony Corporation\VAIO Care\VKSvcDaily => C:\Program Files\Sony\VAIO Care\VAIOTM\VKSvc.exe [23128 2017-04-19] (Sony Corporation -> Sony Corporation) Task: {09172E18-AD72-436A-9B3A-9C3AE10D2616} - System32\Tasks\Sony Corporation\VAIO Care\VCRLog => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {0A0E6B7C-C784-4CD0-910A-728797BC8493} - System32\Tasks\Sony Corporation\Sony Home Network Library\SOHLib SOHDms => C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [495248 2013-11-07] (Sony Corporation -> Sony Corporation) Task: {0A7DB203-FA16-43E0-A3B4-0225E5E712AE} - System32\Tasks\Sony Corporation\VAIO Care\VTSvc => C:\Program Files\Sony\VAIO Care\VAIOTM\VTSvc.exe [20872 2017-04-19] (Sony Corporation -> Sony Corporation) Task: {0E737322-05C2-4FB7-B878-72E87A77B182} - System32\Tasks\Sony Corporation\VAIO Care\UpdateSolution => C:\Program Files\Sony\VAIO Care\Solution.Updater.exe [45400 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {15DA848F-C8F4-4409-8FB6-41D40A0BAA00} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [112664 2019-05-19] (Microsoft Corporation -> Microsoft Corporation) Task: {1733A098-3F38-45F4-88E5-E3FD2925908E} - System32\Tasks\Sony Corporation\NFC Connection Utility\NFC Logon Start => C:\Program Files\Sony\NFC Connection Utility\NFCConnectionUtility.exe [221784 2014-02-11] (Sony Corporation -> Sony Corporation) Task: {1DD130D3-8A0E-49DD-A79F-1A773B6C03E6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4381328 2019-05-15] (Microsoft Corporation -> Microsoft Corporation) Task: {21CFD050-7E42-48A8-81B3-D06EA13B2F60} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_192_Plugin.exe [1457208 2019-05-19] (Adobe Inc. -> Adobe) Task: {235AAD07-75C3-4C73-82E0-081FA04B0F3B} - System32\Tasks\Sony Corporation\VAIO Care\UploadPOT => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {2D1BBC51-0CE6-4F2D-85FE-776407E58838} - System32\Tasks\Sony Corporation\VAIO Care\CheckSystemInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {2F18DDEE-9C8E-4F7E-B68C-97E55EDC0DA8} - System32\Tasks\Clientlizenzdienst(ClipSVC)Mobile => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) <==== ACHTUNG Task: {342B5F78-3618-49F4-B0F5-C89367C218AE} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {372E4CB4-06A8-4A66-9499-D5F66AA236CB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.) Task: {3AD59575-D102-48A5-8DAC-BE4551D739B9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-27] (Microsoft Corporation -> Microsoft Corporation) Task: {4CD83AB9-070A-482F-82CC-9BC14AB94CA0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-27] (Microsoft Corporation -> Microsoft Corporation) Task: {56DFE7D4-1F9F-48CC-94D2-55A4C8554492} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-27] (Microsoft Corporation -> Microsoft Corporation) Task: {59A0CA17-9098-46E1-866B-5A2BFA095AB7} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-05-19] (Adobe Inc. -> Adobe) Task: {6A4F85A7-481D-4BF5-960D-70239674EC28} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1439360 2019-05-19] (Microsoft Corporation -> Microsoft Corporation) Task: {731820B3-78E1-4E12-B41F-6FABF2596874} - System32\Tasks\Sony Corporation\Sony Home Network Library\SOHLib TaskTray => C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe [108688 2013-09-12] (Sony Corporation -> Sony Corporation) Task: {75BFA5A2-9106-4B43-BCA6-6F03DA54C2A8} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIOControlCenterSystem => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [502912 2014-11-17] (Sony Corporation -> Sony Corporation) Task: {7972A67F-6E18-4F43-92E5-342181FF4326} - System32\Tasks\WD Discovery Service Task freddy => C:\Program Files (x86)\Western Digital\Discovery\Current\Service\WDDiscoveryService.exe [67048 2018-09-15] (Western Digital Technologies, Inc. -> ) Task: {7982693B-13B2-4382-810A-311F970E1580} - System32\Tasks\Sony Corporation\Xperia Link\Xperia Link Logon Start => C:\Program Files (x86)\Sony\Xperia Link\Xperia Link.exe [1005144 2016-03-04] (Sony Corporation -> Sony Corporation) Task: {92C0956C-5CA6-4BEE-9BBB-6E8475A0743E} - System32\Tasks\Sony Corporation\VAIO Care\VKSvcWeekly => C:\Program Files\Sony\VAIO Care\VAIOTM\VKSvc.exe [23128 2017-04-19] (Sony Corporation -> Sony Corporation) Task: {92D374A6-7389-4DA4-AD28-B00928A40C43} - System32\Tasks\Sony Corporation\VAIO Care\DeployCRMflag => C:\Program Files\Sony\VAIO Care\DeployCRMflag.exe [18272 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {9A0E0C05-29E0-4943-826D-C714DF31C624} - System32\Tasks\Sony Corporation\VAIO Care\ActiveStatusCollect => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {9C11A6D9-6FF0-467B-98BF-05F6D81DFFBD} - System32\Tasks\Sony Corporation\VAIO Care\GetPOTInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {9D38DE1F-95D3-4DFF-A6B1-7D9913C5B371} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {9D440F56-4579-4438-A7B4-2BDF8167EFCB} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {A6438C3A-2FD5-495F-B2D4-40DD28CC3EE5} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26197064 2019-05-08] (Microsoft Corporation -> Microsoft Corporation) Task: {A6B23BED-BBB0-4E77-9F55-0A17E235424D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-27] (Microsoft Corporation -> Microsoft Corporation) Task: {A969B346-A1E8-491B-B3E3-19109A1F636B} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [737376 2013-01-23] (Sony Corporation -> Sony Corporation) Task: {AB4433F9-DAD7-4AAD-89B2-C64F3342633C} - System32\Tasks\Sony Corporation\VAIO Hardware Diagnostics\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [1865384 2013-01-25] (Sony Corporation -> Sony Corporation) Task: {ABE2FF02-418E-45D5-9806-AB66800D6258} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1439360 2019-05-19] (Microsoft Corporation -> Microsoft Corporation) Task: {B46EDCE4-8D69-437D-942F-9AFABF958FEB} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26197064 2019-05-08] (Microsoft Corporation -> Microsoft Corporation) Task: {B4B41936-ACE9-433F-BA0D-4B2E9FFC5805} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIO Capture\VAIO Clip => C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Clip.exe [187992 2013-12-10] (Sony Corporation -> Sony Corporation) Task: {B65149E4-C865-4E82-9069-566B492615AE} - System32\Tasks\EPSON XP-520 Series Update {AA49A6FF-529B-4F6B-95BC-379A9FC14BB3} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNPE.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Task: {B8EE1B23-260C-41D9-9457-559EF9907168} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {C2DFDAC6-2DC5-43AC-B3C3-189687A656FC} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [804704 2017-05-15] (Sony Corporation -> Sony Corporation) Task: {C314B97F-35D1-4129-B36B-138FBF48C098} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [538712 2013-03-15] (Sony Corporation -> Sony Corporation) Task: {CB55C1E1-DB58-4EEB-BE76-8A6432FA8220} - System32\Tasks\EPSON XP-520 Series Update {6B85294F-9774-45F0-A6EF-A7293D977B0D} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNPE.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Task: {CE6BC97F-68EB-4782-B43B-59D763DE5FE6} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe Task: {D0A2D1F0-ADAA-4DAA-9099-05235CA3F2D6} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIOControlCenterUser => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [502912 2014-11-17] (Sony Corporation -> Sony Corporation) Task: {D38023C6-E7D5-473A-A07D-1B663D93B0D2} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [1214232 2016-04-25] (Sony Corporation -> Sony Corporation) Task: {D50C369F-E633-41BD-A7F6-39B50416AAFE} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [3152152 2016-03-31] (Sony Corporation -> Sony Corporation) Task: {D58D3F8A-80D9-47BE-87F0-87BE1E8D15F5} - System32\Tasks\Sony Corporation\VAIO Care\VTUsr => C:\Program Files\Sony\VAIO Care\VAIOTM\VTUsr.exe [20360 2017-04-19] (Sony Corporation -> Sony Corporation) Task: {E2BDB3DC-527A-4750-A044-E05D84CD4DF9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4381328 2019-05-15] (Microsoft Corporation -> Microsoft Corporation) Task: {EA390447-42D0-42BA-893F-0BAC71CA70D3} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [538712 2013-03-15] (Sony Corporation -> Sony Corporation) Task: {F6125352-7064-472E-97D9-76F76652A08A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [112664 2019-05-19] (Microsoft Corporation -> Microsoft Corporation) Task: {FD11A334-379C-47A6-88CF-740BC3493916} - System32\Tasks\Sony Corporation\VAIO Update\Launch Application => C:\Program Files\SONY\VAIO Update\ShellExeProxy.exe [48920 2016-03-31] (Sony Corporation -> Sony Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\EPSON XP-520 Series Update {6B85294F-9774-45F0-A6EF-A7293D977B0D}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNPE.EXE:/EXE:{6B85294F-9774-45F0-A6EF-A7293D977B0D} /F:UpdateWORKGROUP\FREDDY_LAPTOP$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON XP-520 Series Update {AA49A6FF-529B-4F6B-95BC-379A9FC14BB3}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSNPE.EXE:/EXE:{AA49A6FF-529B-4F6B-95BC-379A9FC14BB3} /F:UpdateWORKGROUP\FREDDY_LAPTOP$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{0a976dfa-6aa2-4604-8b44-ed8d20d585f6}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{459b27b5-d66e-418e-b849-9d691fb37683}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKU\S-1-5-21-3483465479-2191358556-2575146349-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.gmx.net/ HKU\S-1-5-21-3483465479-2191358556-2575146349-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com SearchScopes: HKU\S-1-5-21-3483465479-2191358556-2575146349-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3483465479-2191358556-2575146349-1001 -> {6A8CC696-3745-4668-A38E-46E567058A8B} URL = hxxp://de.wikipedia.org/w/index.php?title=Spezial:Suche&search={searchTerms} SearchScopes: HKU\S-1-5-21-3483465479-2191358556-2575146349-1001 -> {84F8B878-A832-4C05-9E3F-BB52FAD57D4C} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-&_nkw={searchTerms} BHO: Kein Name -> {1E144C2A-F9AB-46FE-8A61-4D2B67469C56}' -> Keine Datei BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_211\bin\ssv.dll [2019-05-12] (Oracle America, Inc. -> Oracle Corporation) BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-05-12] (Oracle America, Inc. -> Oracle Corporation) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2017-01-03] (Eyeo GmbH -> Eyeo GmbH) BHO-x32: Kein Name -> {1E144C2A-F9AB-46FE-8A61-4D2B67469C56}' -> Keine Datei BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-05-12] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-05-12] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2017-01-03] (Eyeo GmbH -> Eyeo GmbH) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) DPF: HKLM-x32 {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} hxxp://catalog.update.microsoft.com/v7/site/ClientControl/en/x86/MuCatalogWebControl.cab?1481937349192 Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_192.dll [2019-05-19] (Adobe Inc. -> ) FF Plugin: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-05-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-05-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_192.dll [2019-05-19] (Adobe Inc. -> ) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.20 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-04-02] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-04-02] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-05-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-05-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-04-06] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-3483465479-2191358556-2575146349-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-3483465479-2191358556-2575146349-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-3483465479-2191358556-2575146349-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-04-22] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-3483465479-2191358556-2575146349-1001: intel.com/AppUp -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll [2013-02-19] (Intel) [Datei ist nicht signiert] FF Plugin HKU\S-1-5-21-3483465479-2191358556-2575146349-1001: intel.com/AppUpx64 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll [2013-02-19] (Intel) [Datei ist nicht signiert] ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-03-08] (Apple Inc. -> Apple Inc.) R2 CG7Service; C:\Program Files\CyberGhost 7\CyberGhost.Service.exe [93904 2019-04-28] (CYBERGHOST S.A. -> CyberGhost S.A.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11146824 2019-05-08] (Microsoft Corporation -> Microsoft Corporation) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -> Seiko Epson Corporation) R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [541896 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-10-20] (Intel(R) pGFX -> Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel® Trusted Connect Service -> Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-04-02] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-27] (Intel Corporation-Mobile Wireless Group -> Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-04-02] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) S3 McAWFwk; C:\Program Files\Common Files\mcafee\actwiz\McAWFwk.exe [334608 2013-07-24] (McAfee, Inc. -> McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [269480 2017-08-07] (Intel(R) Wireless Connectivity Solutions -> ) S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [629336 2013-09-28] (Sony Corporation -> Sony Corporation) S4 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [217736 2016-12-20] (Geek Software GmbH -> Geek Software GmbH) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [481304 2013-11-21] (Sony Corporation -> Sony Corporation) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255168 2015-09-21] (Synaptics Incorporated -> Synaptics Incorporated) R2 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2013-01-06] (Sony Corporation -> Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1656600 2016-03-31] (Sony Corporation -> Sony Corporation) R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [528160 2018-06-04] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\NisSrv.exe [3851264 2019-04-27] (Microsoft Corporation -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MsMpEng.exe [118144 2019-04-27] (Microsoft Corporation -> Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3756200 2017-08-07] (Intel(R) Wireless Connectivity Solutions -> Intel® Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 AMPPAL; C:\WINDOWS\System32\drivers\AMPPAL.sys [165344 2013-07-29] (Intel Corporation-Mobile Wireless Group -> Windows (R) Win 7 DDK provider) S3 AMPPALP; C:\WINDOWS\system32\DRIVERS\amppal.sys [165344 2013-07-29] (Intel Corporation-Mobile Wireless Group -> Windows (R) Win 7 DDK provider) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [136720 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R0 IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [88256 2015-06-09] (Intel(R) Software -> Intel Corporation) S3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46568 2013-04-15] (Intel(R) Smart Connect software -> ) R3 NETwNb64; C:\WINDOWS\system32\DRIVERS\Netwbw02.sys [3529728 2017-10-17] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) S3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [45056 2017-10-25] (Avira Operations GmbH & Co. KG -> The OpenVPN Project) R3 SFEP; C:\WINDOWS\System32\drivers\SFEP.sys [14336 2012-07-11] (Microsoft Windows Hardware Compatibility Publisher -> Sony Corporation) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [51392 2015-09-21] (Synaptics Incorporated -> Synaptics Incorporated) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-04-27] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [344544 2019-04-27] (Microsoft Windows -> Microsoft Corporation) R1 wdfsconnect2017; C:\WINDOWS\system32\drivers\wdfsconnect2017.sys [468112 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60896 2019-04-27] (Microsoft Windows -> Microsoft Corporation) R3 wdvpnpbus; C:\WINDOWS\System32\drivers\wdvpnpbus.sys [20624 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2019-05-22 02:01 - 2019-05-22 02:02 - 000042650 _____ C:\Users\Freddy\Desktop\FRST.txt 2019-05-22 02:01 - 2019-05-22 02:01 - 000000000 ____D C:\FRST 2019-05-22 02:00 - 2019-05-22 02:00 - 002435072 _____ (Farbar) C:\Users\Freddy\Desktop\FRST64.exe 2019-05-22 01:04 - 2019-05-22 01:04 - 000000000 ____D C:\Users\Freddy\AppData\Roaming\vlc 2019-05-22 01:03 - 2019-05-22 01:11 - 000000000 ____D C:\Users\Freddy\AppData\LocalLow\Adblock Plus for IE 2019-05-22 01:03 - 2019-05-22 01:11 - 000000000 ____D C:\Program Files\Adblock Plus for IE 2019-05-22 01:02 - 2019-05-22 01:02 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk 2019-05-22 01:02 - 2019-05-22 01:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2019-05-22 01:01 - 2019-05-22 01:01 - 000000000 ____D C:\Program Files\VideoLAN 2019-05-22 00:29 - 2019-05-22 00:29 - 000000000 ____D C:\Users\Freddy\AppData\Local\mbamtray 2019-05-19 13:47 - 2019-05-19 13:47 - 000002583 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2019-05-19 13:47 - 2019-05-19 13:47 - 000002579 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2019-05-19 13:47 - 2019-05-19 13:47 - 000002558 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2019-05-19 13:47 - 2019-05-19 13:47 - 000002536 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk 2019-05-19 13:47 - 2019-05-19 13:47 - 000002533 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2019-05-19 13:47 - 2019-05-19 13:47 - 000002500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2019-05-19 13:47 - 2019-05-19 13:47 - 000002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2019-05-19 13:47 - 2019-05-19 13:47 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2019-05-19 13:47 - 2019-05-19 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2019-05-15 07:20 - 2019-05-15 07:20 - 026807808 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 023438848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 020814848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 019022336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 009682744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 007883776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 007879680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 007687576 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 007645384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 006542464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 006440960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 006309040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 006072320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 005498880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 004883968 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 004660736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 004588544 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 003905536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 003743744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 003637248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 003557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 003363856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 002780000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 002708480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 002422272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 002278240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001860096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001760768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001699496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2019-05-15 07:20 - 2019-05-15 07:20 - 001641616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001605120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 001395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001342608 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2019-05-15 07:20 - 2019-05-15 07:20 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001253904 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 001225728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 001179680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 001062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 001048376 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 001026792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000895792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000807464 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000758896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000660992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000586280 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000508432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000449376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000444944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000427520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000254952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000223544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2019-05-15 07:20 - 2019-05-15 07:20 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000212792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000203272 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000202768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000198456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000192824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2019-05-15 07:20 - 2019-05-15 07:20 - 000179728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000177976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000163240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000147736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000121656 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2019-05-15 07:20 - 2019-05-15 07:20 - 000090640 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000080184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2019-05-15 07:20 - 2019-05-15 07:20 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2019-05-15 07:20 - 2019-05-15 07:20 - 000066688 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000055792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll 2019-05-15 07:20 - 2019-05-15 07:20 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin 2019-05-15 07:20 - 2019-05-15 07:20 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin 2019-05-15 07:20 - 2019-05-15 07:20 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin 2019-05-15 07:20 - 2019-05-15 07:20 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin 2019-05-15 07:20 - 2019-05-15 07:20 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin 2019-05-15 07:20 - 2019-05-15 07:20 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin 2019-05-15 07:20 - 2019-05-15 07:20 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin 2019-05-15 07:20 - 2019-05-15 07:20 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin 2019-05-12 19:58 - 2019-05-12 19:58 - 000001115 _____ C:\Users\Public\Desktop\PDF-XChange Editor.lnk 2019-05-12 19:58 - 2019-05-12 19:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software 2019-05-12 19:58 - 2019-05-12 19:58 - 000000000 ____D C:\ProgramData\FileOpen 2019-05-12 19:58 - 2019-05-12 19:58 - 000000000 ____D C:\Program Files\Tracker Software 2019-05-12 19:58 - 2019-04-22 17:28 - 002187520 _____ (Tracker Software Products (Canada) Ltd.) C:\WINDOWS\system32\pxcpmL.dll 2019-05-12 19:56 - 2019-05-12 19:56 - 000110968 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-64.dll 2019-05-09 13:06 - 2019-05-09 13:06 - 000000000 ____D C:\Users\Lydia.Freddy_Laptop.000\AppData\Local\D3DSCache 2019-05-09 11:33 - 2019-05-19 13:32 - 000000000 ____D C:\Users\Lydia.Freddy_Laptop.000\Desktop\Amann 2019-05-05 16:43 - 2019-05-05 16:43 - 000487621 _____ C:\Users\Freddy\Desktop\Warenkorb stahlfreak_Küpper Werkstatt.pdf 2019-05-04 21:13 - 2019-05-04 21:13 - 012844032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 012140032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 005296640 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 005210904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 004997096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 003982848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 003551112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 003426816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 003406848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 002995712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 002701512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 002393088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 002205184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 002073960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001994976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001674696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001671352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001653760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001467552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001219640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000999424 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000806600 _____ C:\WINDOWS\SysWOW64\locale.nls 2019-05-04 21:13 - 2019-05-04 21:13 - 000806600 _____ C:\WINDOWS\system32\locale.nls 2019-05-04 21:13 - 2019-05-04 21:13 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000780632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000725696 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2019-05-04 21:13 - 2019-05-04 21:13 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000676256 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000651576 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000649064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000638376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2019-05-04 21:13 - 2019-05-04 21:13 - 000553656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000540720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000514632 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000454160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2019-05-04 21:13 - 2019-05-04 21:13 - 000451080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000421392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2019-05-04 21:13 - 2019-05-04 21:13 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000280592 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000263576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000157200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000122680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll 2019-05-04 21:13 - 2019-05-04 21:13 - 000086960 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe 2019-05-04 21:13 - 2019-05-04 21:13 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnosticsTool.exe 2019-05-02 10:07 - 2019-05-02 10:07 - 000497348 _____ C:\Users\Freddy\Desktop\FRITZ.Box 6490 Cable (lgi) 141.07.01_02.05.19_1007.export 2019-04-28 19:39 - 2019-04-28 19:48 - 000000000 ____D C:\Users\Freddy\AppData\Local\CyberGhost 2019-04-28 19:39 - 2019-04-28 19:41 - 000000000 ____D C:\Program Files\TAP-Windows 2019-04-28 19:38 - 2019-04-28 19:41 - 000000000 ____D C:\Program Files\CyberGhost 7 2019-04-28 19:38 - 2019-04-28 19:38 - 000056024 _____ (CyberGhost S.A.) C:\Users\Freddy\Downloads\cgsetup_de_a5kDadgu8wvvCqA9ifs3.exe 2019-04-28 19:38 - 2019-04-28 19:38 - 000001076 _____ C:\Users\Freddy\Desktop\CyberGhost 7.lnk 2019-04-28 19:38 - 2019-04-28 19:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 7 ==================== Ein Monat (geänderte) ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2019-05-22 02:01 - 2019-02-17 16:40 - 001723288 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-05-22 02:01 - 2018-09-15 19:33 - 000744962 _____ C:\WINDOWS\system32\perfh007.dat 2019-05-22 02:01 - 2018-09-15 19:33 - 000150250 _____ C:\WINDOWS\system32\perfc007.dat 2019-05-22 02:01 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF 2019-05-22 01:56 - 2019-02-17 16:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-05-22 01:56 - 2018-09-15 13:44 - 000000000 ____D C:\Users\Freddy\AppData\Roaming\WD Discovery 2019-05-22 01:56 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-05-22 01:56 - 2017-06-05 10:32 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2019-05-22 01:56 - 2016-12-17 11:57 - 000000000 __SHD C:\Users\Freddy\IntelGraphicsProfiles 2019-05-22 01:56 - 2016-01-16 20:15 - 000000000 ___RD C:\Users\Freddy\iCloudDrive 2019-05-22 01:55 - 2018-09-15 08:09 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2019-05-22 01:54 - 2018-09-15 09:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2019-05-22 01:46 - 2017-06-29 21:52 - 000000306 __RSH C:\ProgramData\ntuser.pol 2019-05-22 01:45 - 2019-02-17 16:29 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-05-22 01:04 - 2018-01-05 01:50 - 000000000 ____D C:\Users\Freddy\AppData\Local\ChocolateyGUI 2019-05-22 00:28 - 2018-01-03 18:39 - 000000000 ____D C:\ProgramData\Malwarebytes 2019-05-21 22:58 - 2017-03-27 07:25 - 000000000 ____D C:\ProgramData\Buhl Data Service GmbH 2019-05-21 22:54 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps 2019-05-21 22:54 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-05-21 22:51 - 2019-02-17 16:41 - 000004170 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{66960764-C7A5-4C4F-8DA1-5400FDCC99F3} 2019-05-19 14:40 - 2019-02-17 16:41 - 000004588 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier 2019-05-19 14:40 - 2019-02-17 16:41 - 000004424 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2019-05-19 14:40 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2019-05-19 14:40 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\Macromed 2019-05-19 13:46 - 2013-08-08 12:37 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2019-05-19 13:16 - 2018-09-16 20:29 - 000000000 ____D C:\Users\Lydia.Freddy_Laptop.000\AppData\Roaming\WD Discovery 2019-05-15 07:25 - 2019-02-17 16:29 - 000467352 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-05-15 07:24 - 2018-09-15 09:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2019-05-15 07:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-05-15 07:21 - 2018-09-15 09:36 - 000835688 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2019-05-15 07:21 - 2018-09-15 09:36 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2019-05-15 07:21 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-05-15 06:58 - 2014-03-01 01:18 - 132445408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-05-15 06:58 - 2014-03-01 01:18 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-05-12 19:57 - 2017-01-15 20:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2019-05-12 19:57 - 2013-08-08 12:14 - 000000000 ____D C:\Program Files (x86)\Java 2019-05-12 19:56 - 2018-02-04 13:10 - 000110968 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2019-05-12 19:55 - 2013-08-08 12:13 - 000000000 ____D C:\Program Files\Java 2019-05-12 19:54 - 2018-02-04 13:07 - 000099192 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2019-05-12 14:00 - 2016-12-26 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software 2019-05-12 14:00 - 2016-12-26 17:48 - 000000000 ____D C:\Program Files (x86)\Epson Software 2019-05-12 13:59 - 2016-12-17 11:07 - 000000000 ____D C:\Users\Freddy\AppData\Local\ElevatedDiagnostics 2019-05-12 12:17 - 2019-02-17 16:41 - 000003378 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3483465479-2191358556-2575146349-1001 2019-05-12 12:17 - 2019-02-17 16:33 - 000002429 _____ C:\Users\Freddy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-05-12 12:17 - 2016-12-17 11:49 - 000000000 ___RD C:\Users\Freddy\OneDrive 2019-05-09 23:01 - 2019-02-17 16:41 - 000004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{842A7FC2-BB01-4A85-A21F-8AF989AD34AA} 2019-05-09 12:07 - 2019-02-17 16:41 - 000003376 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3483465479-2191358556-2575146349-1006 2019-05-09 12:07 - 2019-02-17 16:33 - 000002480 _____ C:\Users\Lydia.Freddy_Laptop.000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-05-09 12:07 - 2017-01-28 22:49 - 000000000 ___RD C:\Users\Lydia.Freddy_Laptop.000\OneDrive 2019-05-06 22:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\TextInput 2019-05-06 22:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ShellExperiences 2019-05-06 21:37 - 2017-10-28 10:28 - 000000000 ____D C:\Users\Lydia.Freddy_Laptop.000\AppData\Local\Packages 2019-05-01 10:30 - 2017-10-28 10:28 - 000000000 ____D C:\Users\Freddy\AppData\Local\Packages 2019-04-27 19:41 - 2016-12-17 11:47 - 000000000 ____D C:\Users\Freddy\AppData\Local\Comms 2019-04-27 10:00 - 2018-02-17 21:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2017-11-11 16:31 - 2017-11-19 15:59 - 000000600 _____ () C:\Users\Freddy\AppData\Local\PUTTY.RND 2014-03-01 02:57 - 2018-10-28 13:19 - 000007598 _____ () C:\Users\Freddy\AppData\Local\resmon.resmoncfg ==================== SigCheck =============================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ============================ |
Themen zu Windows Defender meldet Trojan:Win32/Occamy.C |
administrator, adobe, adobe flash player, avira, bonjour, dateien, defender, flash player, google, home, internet, mozilla, node.js, nodejs, object, opera, ordner, problem, prozesse, realtek, registry, sigcheck, software, suche, trojan, trojaner, usb, windows, windowsapps |