|
Alles rund um Windows: Komische Fenster bei jedem Start von WindowsWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
23.07.2020, 14:54 | #1 |
Gesperrt | Problem: Komische Fenster bei jedem Start von Windows Moin zusammen, seit 3-4 Tagen ist mir aufgefallen, dass immer ganz kurz Fenster nach einem Kaltstart des PCs auftauchen. Das war vorher nicht so, soweit ich das erkennen kann. Könntet ihr bitte einmal drauf schauen, ob das etwas "Böses" ist? Ich danke euch vielmals! Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 22-07-2020 durchgeführt von timof (Administrator) auf DESKTOP-VCEJHKG (Acer Nitro N50-600) (23-07-2020 15:48:16) Gestartet von C:\Users\timof\Downloads Geladene Profile: timof Platform: Windows 10 Home Version 1909 18363.959 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Chrome Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_31a8dbbf39dcdc3b\jhi_service.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_8559c34713c70ce4\RstMwService.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Intel(R) Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Wireless Connectivity Solutions -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Logitech Inc -> ) C:\Program Files\LGHUB\logi_analytics_client.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3> (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2005.23.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12827.20560.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12827.20560.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\backgroundTaskHost.exe (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) C:\Windows\SysWOW64\Creative.UWPRPCService.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2006.10-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2006.10-0\NisSrv.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\Display.NvContainer\NVDisplay.Container.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [833824 2019-01-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2018-02-13] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [353776 2020-06-30] (Riot Games, Inc. -> Riot Games, Inc.) HKLM-x32\...\Run: [ConnectionCenter] => C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [795744 2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) HKLM-x32\...\Run: [Redirector] => C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [460384 2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7658496 2020-07-20] (Dropbox, Inc -> Dropbox, Inc.) HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\Run: [Steam] => D:\Steam\steam.exe [3377440 2020-07-11] (Valve -> Valve Corporation) HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\Run: [FACEIT] => C:\Users\timof\AppData\Local\FACEITApp\update.exe [2204616 2020-03-28] (FACE IT LIMITED -> ) HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [104449672 2020-06-12] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\Run: [EpicGamesLauncher] => D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32339344 2020-06-17] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\Run: [696A4B3889C3EFB0C2041EE13351A3400DB161C3._service_run] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8 HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\timof\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\timof\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" HKLM\...\Windows x64\Print Processors\Canon MG5700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCS.DLL [30208 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5700 series: C:\Windows\system32\CNMLMCS.DLL [406528 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.89\Installer\chrmstp.exe [2020-07-16] (Google LLC -> Google LLC) Startup: C:\Users\timof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2020-03-28] ShortcutTarget: Twitch.lnk -> C:\Users\timof\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {00120BA0-1A69-49E8-8106-DFC0BF6B5023} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1331792 2020-05-07] (Adobe Inc. -> Adobe Inc.) Task: {08F0B293-B2BA-4A62-9E5A-A9A98DB82AD7} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [968264 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2312DF58-646A-4AB1-B91C-52065526B421} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [474368 2018-08-03] (Acer Incorporated -> Acer Incorporated) Task: {2539B4EB-18D5-4C75-9993-B434AA19786A} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2020-03-28] (Dropbox, Inc -> Dropbox, Inc.) Task: {38BD0239-B40D-4E14-9A9E-29DEE90F5FBB} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23815032 2020-07-07] (Microsoft Corporation -> Microsoft Corporation) Task: {458DEC00-8EED-4467-BCF4-E6B171E81914} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [112328 2020-05-13] (Mozilla Corporation -> Mozilla Foundation) Task: {4A69E934-E9D1-47A1-BF7E-463610EBEBA6} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519240 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {529C3A41-A03B-43E8-872A-F3E29EBF8028} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe [512272 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5F614607-9BA0-4FCA-965D-C590203065C5} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [524360 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5F9EEBBE-F7D3-441D-AE2D-BA2442B95F53} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2020-03-28] (Dropbox, Inc -> Dropbox, Inc.) Task: {60405BAF-77E0-434E-AB7F-D380FC66C740} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe [512272 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {70DDF250-D0DE-484F-8E3E-68E5AB4CFBA0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [660040 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7C9653CF-ED2F-4BB8-A29B-E3C4203CAF76} - System32\Tasks\DashlaneUpgradeCheck => net [Argument = start "Dashlane Upgrade Service"] Task: {989197BB-1FD9-4D6A-BE74-07C85F808690} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23815032 2020-07-07] (Microsoft Corporation -> Microsoft Corporation) Task: {9DFEA23E-6797-48B3-95E7-D83BFFC8BCE0} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [660040 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B7AC4CCF-226C-47C8-8DD4-E462C271D1F2} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [746056 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BAF362AC-F1FE-4690-B098-FD914060538A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe [512272 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C1295B33-C0B6-4C3B-8D13-CF626AA9C154} - System32\Tasks\TrackerAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [4475136 2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) Task: {C12E38F4-08D0-49D2-9AB8-92A653D41574} - System32\Tasks\Oem\wlanBrokerTask => C:\Program Files (x86)\Acer\ExpressVPN\wlanBroker.exe [17688 2019-11-16] (Acer Incorporated -> ) Task: {C9D3340A-AEE9-4DB5-A715-86DCD593E5BA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [170856 2020-07-21] (Microsoft Corporation -> Microsoft Corporation) Task: {DCD470B2-81A6-4DED-AAE1-5BD1388E6613} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [746056 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {EE94A8D8-19FE-4C27-8720-A5E06042570B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [170856 2020-07-21] (Microsoft Corporation -> Microsoft Corporation) Task: {EFC30A3B-2265-47B2-AE72-F43A1DBEBED5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1930312 2018-01-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {F01AFB51-9CBC-4D89-9651-D3D09813ADA4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-28] (Google LLC -> Google LLC) Task: {F260FA39-5EE2-4887-A585-7B4CE1CA226D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-28] (Google LLC -> Google LLC) Task: {F34AC778-FFD8-48AD-883E-68E247D77655} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MpCmdRun.exe [512272 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\TrackerAutoUpdate.job => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{95fc19d6-c7e9-4ec7-a91d-71457738ab74}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKU\S-1-5-21-89162837-1950669473-1255303511-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer17win10.msn.com/?pc=ACTE HKU\S-1-5-21-89162837-1950669473-1255303511-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE SearchScopes: HKU\S-1-5-21-89162837-1950669473-1255303511-1001 -> DefaultScope {5A55A3C5-0208-4139-9C58-4EE3BE9B6A40} URL = SearchScopes: HKU\S-1-5-21-89162837-1950669473-1255303511-1001 -> {53279849-D050-45F7-8846-D137FE5C6B73} URL = BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-03-28] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-07-09] (Microsoft Corporation -> Microsoft Corporation) Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) Edge: ====== Edge Notifications: HKU\S-1-5-21-89162837-1950669473-1255303511-1001 -> hxxps://www.ludologie.de Edge Profile: C:\Users\timof\AppData\Local\Microsoft\Edge\User Data\Default [2020-07-23] Edge Notifications: Default -> hxxps://www.ludologie.de FireFox: ======== FF DefaultProfile: ei1jq1q3.default FF ProfilePath: C:\Users\timof\AppData\Roaming\Mozilla\Firefox\Profiles\ei1jq1q3.default [2020-07-05] FF Extension: (Deutsch (DE) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-de@firefox.mozilla.org [2020-05-13] [] FF Extension: (Mozilla Partner Defaults) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\partnerdefaults@mozilla.com [2020-05-13] [] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-03-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Datei ist nicht signiert] FF Plugin-x32: @Citrix.com/npican -> C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll [2019-12-02] (Citrix Systems, Inc. -> Citrix Systems, Inc.) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Datei ist nicht signiert] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-03-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-04] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-89162837-1950669473-1255303511-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\timof\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-05-14] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) Chrome: ======= CHR Profile: C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default [2020-07-23] CHR Notifications: Default -> hxxps://meet.google.com CHR StartupUrls: Default -> "hxxp://www.spiegel.de/" CHR Extension: (Präsentationen) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-03-28] CHR Extension: (Docs) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-03-28] CHR Extension: (Google Drive) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-03-28] CHR Extension: (YouTube) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-03-28] CHR Extension: (Tabellen) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-03-28] CHR Extension: (Google Docs Offline) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-21] CHR Extension: (AdBlock*– der beste Ad-Blocker) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-07-21] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-03-28] CHR Extension: (Google Mail) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-03-28] CHR Extension: (Chrome Media Router) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-16] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8615864 2020-06-17] (BattlEye Innovations e.K. -> ) R2 CIJSRegister; C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe [144464 2015-02-19] (Canon Inc. -> CANON INC.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10574712 2020-07-02] (Microsoft Corporation -> Microsoft Corporation) S2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2017-08-23] (Dashlane -> Dashlane, Inc.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2020-03-28] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2020-03-28] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44552 2020-07-20] (Dropbox, Inc -> Dropbox, Inc.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811120 2020-06-17] (EasyAntiCheat Oy -> Epic Games, Inc) S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [20929376 2020-04-21] (FACE IT LIMITED -> ) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11056776 2020-06-12] (Logitech Inc -> Logitech, Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-04-29] (Malwarebytes Inc -> Malwarebytes) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268968 2018-02-07] (Intel(R) Wireless Connectivity Solutions -> ) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2509616 2020-06-18] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3460912 2020-06-18] (Electronic Arts, Inc. -> Electronic Arts) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2020-06-13] (Even Balance, Inc. -> ) R2 UWPService; C:\Windows\SysWOW64\Creative.UWPRPCService.exe [363968 2019-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9825832 2020-06-30] (Riot Games, Inc. -> Riot Games, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\NisSrv.exe [2496144 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2006.10-0\MsMpEng.exe [104192 2020-07-02] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3851432 2018-02-07] (Intel(R) Wireless Connectivity Solutions -> Intel® Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [231936 2020-01-09] (Microsoft Corporation) [Datei ist nicht signiert] R0 FACEIT; C:\Windows\System32\Drivers\FACEIT.sys [20555848 2020-04-21] (FACE IT LIMITED -> ) R3 GeneStor; C:\Windows\System32\drivers\GeneStor.sys [181824 2019-12-27] (GENESYS LOGIC, INC. -> Genesys Logic) R2 LGHUBTemperatureService; C:\ProgramData\LGHUB\depots\57944\driver_cpu_temperature\logi_core_temp.sys [25448 2020-06-12] (Logitech Inc. -> Logitech) R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [38136 2020-03-31] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [26672 2020-05-21] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66808 2020-03-31] (Logitech Inc -> Logitech) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [214496 2020-04-29] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2020-06-08] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-06-08] (Malwarebytes Inc -> Malwarebytes) R3 MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [43456 2019-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.) R1 vbdenum; C:\Windows\System32\drivers\vbdenum.sys [119432 2019-07-25] (Citrix Systems, Inc. -> Citrix Systems, Inc.) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [5372592 2020-06-30] (Riot Games, Inc. -> Riot Games, Inc.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [45976 2020-07-02] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [408816 2020-07-02] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [64224 2020-07-02] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2020-07-23 15:48 - 2020-07-23 15:48 - 000032224 _____ C:\Users\timof\Downloads\FRST.txt 2020-07-23 15:47 - 2020-07-23 15:48 - 000000000 ____D C:\FRST 2020-07-23 15:46 - 2020-07-23 15:46 - 002293760 _____ (Farbar) C:\Users\timof\Downloads\FRST64.exe 2020-07-23 06:14 - 2020-07-23 06:14 - 003052656 _____ C:\Users\timof\Downloads\Zeugnisse_Timo.pdf 2020-07-22 05:44 - 2020-07-22 05:44 - 000000000 ____D C:\Users\timof\AppData\LocalLow\Adobe 2020-07-22 05:43 - 2020-07-22 05:44 - 000000000 ____D C:\Users\timof\AppData\Local\Adobe 2020-07-22 05:33 - 2020-07-22 05:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-07-21 20:02 - 2020-07-21 20:02 - 002000508 _____ C:\Users\timof\Downloads\Kommentar_ Wie passen Religion und Philosophie in den E-Sport_ _ gaming-grounds.de.pdf 2020-07-21 19:31 - 2020-07-21 19:31 - 000057876 _____ C:\Users\timof\Downloads\AW_ Schleswig-Holsteinischer E-Sport Verband.eml 2020-07-21 19:31 - 2020-07-21 19:31 - 000031005 _____ C:\Users\timof\Downloads\Antw_ AW_ Gespräch am kommenden Freitag.eml 2020-07-21 19:31 - 2020-07-21 19:31 - 000030053 _____ C:\Users\timof\Downloads\AW_ Stühle Vereinsheim _ ELZ.eml 2020-07-21 19:31 - 2020-07-21 19:31 - 000012581 _____ C:\Users\timof\Downloads\Re_ Euer Termin beim eSports Nord.eml 2020-07-21 19:31 - 2020-07-21 19:31 - 000011858 _____ C:\Users\timof\Downloads\Re_ eSports - Flensburg aktuell.eml 2020-07-21 19:31 - 2020-07-21 19:31 - 000005265 _____ C:\Users\timof\Downloads\Re_ spam_eSports Nord e.V. im Flensburg Journal.eml 2020-07-21 19:31 - 2020-07-21 19:31 - 000003028 _____ C:\Users\timof\Downloads\Re_ eSports Leitfaden 2020.eml 2020-07-21 19:31 - 2020-07-21 19:31 - 000001694 _____ C:\Users\timof\Downloads\Sicherheit der Vereinswebseite.eml 2020-07-21 19:30 - 2020-07-21 19:30 - 000120801 _____ C:\Users\timof\Downloads\AW_ AW_ Textvorschlag für den Bericht im Flensburg Journal.eml 2020-07-21 19:30 - 2020-07-21 19:30 - 000038760 _____ C:\Users\timof\Downloads\AW_ Textvorschlag für den Bericht im Flensburg Journal.eml 2020-07-21 17:33 - 2020-07-22 05:44 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2020-07-21 17:33 - 2020-07-21 17:33 - 000581175 _____ C:\Users\timof\Downloads\product_diff___01_07_20_[18887].pdf 2020-07-21 17:32 - 2020-07-22 05:44 - 000000000 ____D C:\ProgramData\Adobe 2020-07-21 17:32 - 2020-07-21 17:32 - 000002140 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-07-21 17:32 - 2020-07-21 17:32 - 000000000 ____D C:\Program Files (x86)\Adobe 2020-07-21 17:31 - 2020-07-21 17:32 - 179214384 _____ (Adobe Systems Incorporated) C:\Users\timof\Downloads\AcroRdrDC2000920063_de_DE.exe 2020-07-20 19:13 - 2020-07-20 19:13 - 000042760 _____ C:\Users\timof\Downloads\mienjung_Verband (1).pptx 2020-07-20 14:20 - 2020-07-20 14:20 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2020-07-20 14:20 - 2020-07-20 14:20 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2020-07-20 14:20 - 2020-07-20 14:20 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys 2020-07-20 14:20 - 2020-07-20 14:20 - 000044552 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2020-07-19 06:06 - 2020-07-19 06:06 - 000000000 ____D C:\Users\timof\AppData\Roaming\Skype 2020-07-18 08:57 - 2020-07-18 08:57 - 025902592 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 022641664 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 019851776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 019812864 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 018031104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 017792512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 014820352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 009931576 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 008015872 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 007917408 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 007850288 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 007823912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 007604584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 007297536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 007269376 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 007268640 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 007012864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 006523856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 006437376 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 006292992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 006233080 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 006169088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 006089512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 005946368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 005765648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 005111808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 005099384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 004625192 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 004565264 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 004129424 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 004014592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Bluetooth.Service.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 003974368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 003800576 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 003748352 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 003743048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 003727360 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys 2020-07-18 08:57 - 2020-07-18 08:57 - 003712000 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 003084800 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002799104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys 2020-07-18 08:57 - 2020-07-18 08:57 - 002768984 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002737664 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002716672 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys 2020-07-18 08:57 - 2020-07-18 08:57 - 002576896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002552120 _____ (Microsoft Corporation) C:\Windows\system32\UpdateAgent.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002505496 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002494744 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002467840 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002448712 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002357248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002285056 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002264064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002237096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002161664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002087168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002074112 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 002060288 _____ (Microsoft Corporation) C:\Windows\system32\cdprt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001991592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001952880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001946144 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001918464 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001885184 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001877504 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001827328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001821696 _____ (Microsoft Corporation) C:\Windows\system32\CoreShell.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001787392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001764336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001745728 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001743680 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001737728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001723392 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001665728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001658368 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001656904 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001655472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001654304 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001640448 _____ (Microsoft Corporation) C:\Windows\system32\TaskFlowDataEngine.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001612800 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001610240 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001604608 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001581568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001550336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001540608 _____ (Microsoft Corporation) C:\Windows\system32\WindowManagement.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001512960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdprt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001500160 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001495040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001486848 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 001484384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001477632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001463808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001420328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001397568 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 001392128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001385696 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001374208 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001371136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001357824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001346048 _____ (Microsoft Corporation) C:\Windows\system32\HoloSI.PCShell.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001344512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001337856 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001335296 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001307136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001306944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContentDeliveryManager.Utilities.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001290192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001284608 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001284608 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001271296 _____ (Microsoft Corporation) C:\Windows\system32\SEMgrSvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001265152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001223168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001195008 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001183744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001159168 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001151816 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001151304 _____ (Microsoft Corporation) C:\Windows\system32\InputHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 001125376 _____ (Microsoft Corporation) C:\Windows\system32\CBDHSvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001121792 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001100800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001086776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Services.TargetedContent.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001081344 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001077048 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001059840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001055232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001048992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001028336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Perception.Stub.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001014784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001009152 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001008960 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 001007616 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000995840 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000967680 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000958608 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000950272 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000949760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Ocr.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000945176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000931840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000922624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000919880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000917504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000913408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000912896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000904192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000899584 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000898048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000895600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000892928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000891392 _____ (Microsoft Corporation) C:\Windows\system32\HolographicExtensions.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000889416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000882184 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000882176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000875008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000867840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000865280 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000848384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000844096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000827904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000822200 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000821232 _____ (Microsoft Corporation) C:\Windows\system32\windows.applicationmodel.datatransfer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000815616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000814080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000809984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000797448 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000793320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000783488 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000782848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000779080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Services.TargetedContent.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000778872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000750592 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000750080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000742712 _____ (Microsoft Corporation) C:\Windows\system32\LicensingWinRT.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000737792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Launcher.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntime.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000722072 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000716288 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntimewindows.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000695208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000692224 _____ (Microsoft Corporation) C:\Windows\system32\LockController.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000689664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Ocr.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000685384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000684864 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000678720 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000673448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000656696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2020-07-18 08:57 - 2020-07-18 08:57 - 000653824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000651264 _____ (Microsoft Corporation) C:\Windows\system32\DevicesFlowBroker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000639488 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000638464 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000630784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000628416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000628024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingWinRT.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000624640 _____ (Microsoft Corporation) C:\Windows\system32\TileDataRepository.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000616960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000614912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000614912 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000608256 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.Phone.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000605896 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000602112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Payments.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000600064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000596992 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000594992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Perception.Stub.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000593408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000584704 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000582056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.applicationmodel.datatransfer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000570368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000565248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2020-07-18 08:57 - 2020-07-18 08:57 - 000549048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000544256 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000542288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000538664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000534016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000533504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000526848 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000524784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000522240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Launcher.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000521728 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000518656 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000518464 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000513024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000513024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Activities.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000502784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000502784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000501760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000490496 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000484352 _____ (Microsoft Corporation) C:\Windows\system32\MixedReality.Broker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000478296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000477184 _____ (Microsoft Corporation) C:\Windows\system32\CloudDomainJoinDataModelServer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000476160 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountWAMExtension.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000475136 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000467960 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000467456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000467456 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000466432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.Workflow.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000462848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000461112 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000458240 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.ConversationalAgent.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000456704 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000453944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000452096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TileDataRepository.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\fhsettingsprovider.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000442096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000434176 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountExtension.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000432128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000432128 _____ (Microsoft Corporation) C:\Windows\system32\WalletService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000430592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000419328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000419328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.ESim.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000416768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000416768 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000412672 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000411640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000411136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.Phone.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000406992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000406992 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000405944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000403968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Payments.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000399672 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DataModel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000397824 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Lights.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000395264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Preview.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000392504 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000388096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000387584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000381152 _____ (Microsoft Corporation) C:\Windows\system32\CredentialEnrollmentManager.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000380224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000375296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Diagnostics.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000374272 _____ (Microsoft Corporation) C:\Windows\system32\PickerPlatform.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Geolocation.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\QuickActionsDataModel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\wpnclient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000352256 _____ (Microsoft Corporation) C:\Windows\system32\APHostService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000345560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000340328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000338944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000335360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountWAMExtension.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000334336 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Cortana.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000329728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.Workflow.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\windows.internal.shellcommon.shareexperience.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys 2020-07-18 08:57 - 2020-07-18 08:57 - 000317440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000311608 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll Code:
ATTFilter 2020-07-18 08:57 - 2020-07-18 08:57 - 000311440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Devices.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000306688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.CredDialogController.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\TDLMigration.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000293888 _____ (Microsoft Corporation) C:\Windows\system32\CXHProvisioningServer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnclient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000292864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Diagnostics.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000290304 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000287744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Preview.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicCapsule.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000283136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Lights.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000274432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000272384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PickerPlatform.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000268552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000266552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemSettings.DataModel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000265728 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000261632 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl 2020-07-18 08:57 - 2020-07-18 08:57 - 000260288 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000256000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConsoleLogon.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000248832 _____ (Microsoft Corporation) C:\Windows\system32\PasswordEnrollmentManager.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000247864 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000242688 _____ (Microsoft Corporation) C:\Windows\system32\CapabilityAccessManagerClient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.CredDialogController.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000239928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Workplace.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.CapturePicker.Desktop.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000231424 _____ (Microsoft Corporation) C:\Windows\system32\HoloShellRuntime.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE 2020-07-18 08:57 - 2020-07-18 08:57 - 000220992 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000220672 _____ (Microsoft Corporation) C:\Windows\system32\MtcModel.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl 2020-07-18 08:57 - 2020-07-18 08:57 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Core.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000215040 _____ (Microsoft Corporation) C:\Windows\system32\PeopleBand.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000215040 _____ (Microsoft Corporation) C:\Windows\system32\DiagSvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000211256 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000210944 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\useractivitybroker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000204608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spacedump.sys 2020-07-18 08:57 - 2020-07-18 08:57 - 000200704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Internal.Input.ExpressiveInput.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000199496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000196096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000195584 _____ (Microsoft Corporation) C:\Windows\system32\AarSvc.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000193600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000190056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000188928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000188928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE 2020-07-18 08:57 - 2020-07-18 08:57 - 000186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Energy.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000180224 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Clipboard.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000179512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2020-07-18 08:57 - 2020-07-18 08:57 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\PrintWorkflowService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\AppExtension.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000178688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000176952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Management.Workplace.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HoloShellRuntime.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialclient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.CapturePicker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000165840 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000165376 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetails.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CapabilityAccessManagerClient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000159744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Core.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\PrintWSDAHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\useractivitybroker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000151040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000150336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000147968 _____ (Microsoft Corporation) C:\Windows\system32\Family.Client.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000146232 _____ (Microsoft Corporation) C:\Windows\system32\ResourcePolicyServer.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentActivation.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintWorkflowService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Energy.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppExtension.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Storage.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000132408 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingExperienceMEM.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\CredDialogBroker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000130560 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\CameraCaptureUI.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\CaptureService.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWSD.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000124928 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintWSDAHost.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000118272 _____ (Microsoft Corporation) C:\Windows\system32\EaseOfAccessDialog.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentActivation.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000110040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\Family.Authentication.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticInvoker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CameraCaptureUI.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EaseOfAccessDialog.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\keyiso.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000089328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicAgent.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000086272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\SystemUWPLauncher.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkInternalPS.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\Print.Workflow.Source.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000076952 _____ (Microsoft Corporation) C:\Windows\system32\CredentialEnrollmentManagerForUser.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DiagnosticInvoker.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000071168 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiverExt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000070248 _____ (Microsoft Corporation) C:\Windows\system32\ResourcePolicyClient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keyiso.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemUWPLauncher.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Print.Workflow.Source.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiverExt.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000052152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ResourcePolicyClient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000040248 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkPS.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000037376 _____ (Microsoft Corporation) C:\Windows\system32\UIMgrBroker.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe 2020-07-18 08:57 - 2020-07-18 08:57 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerClient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicPS.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\PrintWorkflowProxy.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\CSystemEventsBrokerClient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemEventsBrokerClient.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintWorkflowProxy.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.Workflow.Native.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\UIManagerBrokerps.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin 2020-07-18 08:57 - 2020-07-18 08:57 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin 2020-07-18 08:53 - 2020-06-30 06:32 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2020-07-18 08:53 - 2020-06-30 06:26 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2020-07-17 19:30 - 2020-07-17 20:17 - 000008066 _____ C:\ProgramData\DisplaySessionContainer34.log_backup1 2020-07-17 16:53 - 2020-07-17 16:53 - 000042760 _____ C:\Users\timof\Downloads\mienjung_Verband.pptx 2020-07-17 09:23 - 2020-07-17 19:29 - 000008382 _____ C:\ProgramData\DisplaySessionContainer33.log_backup1 2020-07-17 07:46 - 2020-07-17 09:23 - 000007674 _____ C:\ProgramData\DisplaySessionContainer32.log_backup1 2020-07-16 19:01 - 2020-07-16 19:01 - 000793592 _____ C:\Users\timof\Downloads\Fortnite_Two_Sided_final.pdf 2020-07-16 06:03 - 2020-07-16 06:03 - 000762628 _____ C:\Users\timof\Downloads\Verein_Breitensport.pptx 2020-07-15 05:22 - 2020-07-15 05:22 - 001219614 _____ C:\Users\timof\Downloads\20200714130454050.pdf 2020-07-11 06:42 - 2020-07-11 06:42 - 000633969 _____ C:\Users\timof\Downloads\Timo_CV (1).pdf 2020-07-10 21:06 - 2020-07-10 21:06 - 002988547 _____ C:\Users\timof\Downloads\Timo_Zeugnisse.pdf 2020-07-10 21:04 - 2020-07-10 21:04 - 000633969 _____ C:\Users\timof\Downloads\Timo_CV.pdf 2020-07-09 05:54 - 2020-07-09 05:54 - 009649992 _____ C:\Users\timof\Downloads\eSports Leitfaden 2020 (2).pdf 2020-07-08 20:08 - 2020-07-08 20:08 - 000035053 ____T C:\Users\timof\Downloads\Briefpapier_Verein.odt 2020-07-05 18:56 - 2020-07-05 18:56 - 001605726 _____ C:\Users\timof\Downloads\Timo Schöber über das LEZ SH_ Stand und Eindrücke _ gaming-grounds.de.pdf 2020-07-05 18:55 - 2020-07-05 18:55 - 001701989 _____ C:\Users\timof\Downloads\E-Sport_ Das Missverständnis von Breitensport und Regionalität _ gaming-grounds.de.pdf 2020-07-05 14:51 - 2020-07-05 14:44 - 000635119 ____T C:\Users\timof\Downloads\Untitled Diagram.html.drawio 2020-07-05 07:44 - 2020-07-05 07:44 - 000532078 _____ C:\Users\timof\Downloads\E-Sport und Gemeinnützigkeit_ Vom Scheitern der Politik.pdf 2020-07-04 19:53 - 2020-07-04 19:53 - 002590902 _____ C:\Users\timof\Downloads\Summit_call_final[16005] (1).pdf 2020-07-03 15:58 - 2020-07-03 15:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2020-07-03 13:47 - 2020-07-03 13:47 - 002307687 _____ C:\Users\timof\Downloads\game-Fokus-eSports.pdf 2020-07-03 13:12 - 2020-07-03 13:13 - 000000000 ____D C:\Users\timof\Downloads\Instagram_files 2020-07-03 13:12 - 2020-07-03 13:12 - 000220560 _____ C:\Users\timof\Downloads\Instagram.html 2020-07-03 10:34 - 2020-07-03 10:37 - 000069763 _____ C:\Users\timof\Downloads\antrag_eSportfoerdermittel_pdf.pdf 2020-06-28 15:10 - 2020-06-28 15:10 - 000000000 ____D C:\Users\timof\Documents\Battlefield 1 2020-06-27 09:12 - 2020-06-27 09:12 - 002590902 _____ C:\Users\timof\Downloads\Summit_call_final[16005].pdf 2020-06-27 09:09 - 2020-06-23 05:47 - 002590902 ____T C:\Users\timof\Downloads\Summit_call_final.pdf 2020-06-26 12:09 - 2020-06-26 12:09 - 010353556 _____ C:\Users\timof\Downloads\wetransfer-d25123.zip 2020-06-26 07:52 - 2020-06-26 07:52 - 000258093 _____ C:\Users\timof\Downloads\2020.06.25 DESP Gründung[16419].pdf 2020-06-26 06:22 - 2020-06-26 06:23 - 1015921777 _____ C:\Users\timof\Downloads\Timo Schöber Interview V1 RAW DEMO.mp4 2020-06-25 16:24 - 2020-07-19 06:07 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2020-06-25 16:24 - 2020-07-12 06:09 - 000003698 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-06-25 16:24 - 2020-07-12 06:09 - 000003574 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-06-24 19:58 - 2020-06-24 19:58 - 007662672 ____T C:\Users\timof\Downloads\MM_Buchdaten_Kaydee.zip 2020-06-24 06:55 - 2020-07-16 20:36 - 000008066 _____ C:\ProgramData\DisplaySessionContainer30.log_backup1 2020-06-23 20:16 - 2020-07-16 07:13 - 000008388 _____ C:\ProgramData\DisplaySessionContainer29.log_backup1 2020-06-23 08:28 - 2020-07-15 20:59 - 000008067 _____ C:\ProgramData\DisplaySessionContainer28.log_backup1 2020-06-23 07:40 - 2020-06-23 08:28 - 000007674 _____ C:\ProgramData\DisplaySessionContainer27.log_backup1 ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2020-07-23 15:45 - 2020-04-10 06:26 - 000004168 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{CE9FA730-736F-4B9C-A574-20C404E6577A} 2020-07-23 15:45 - 2020-03-28 08:09 - 000003376 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-89162837-1950669473-1255303511-1001 2020-07-23 15:45 - 2020-03-28 08:09 - 000000000 ___RD C:\Users\timof\OneDrive 2020-07-23 15:45 - 2020-03-28 08:05 - 000002383 _____ C:\Users\timof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-07-23 15:45 - 2018-05-09 17:49 - 000000000 ____D C:\ProgramData\NVIDIA 2020-07-23 15:44 - 2020-03-28 08:02 - 000003532 _____ C:\Windows\system32\Tasks\DashlaneUpgradeCheck 2020-07-23 15:42 - 2020-03-31 07:06 - 000000000 ____D C:\Users\timof\AppData\Roaming\LGHUB 2020-07-23 15:42 - 2020-03-31 07:06 - 000000000 ____D C:\Users\timof\AppData\Local\LGHUB 2020-07-23 07:54 - 2020-03-28 07:50 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-07-23 07:02 - 2020-04-12 20:55 - 000008069 _____ C:\ProgramData\DisplaySessionContainer16.log_backup1 2020-07-23 06:13 - 2020-03-28 09:18 - 000000000 ____D C:\Users\timof\Documents\Arbeit 2020-07-22 20:39 - 2020-03-28 09:25 - 000000000 ____D C:\Users\timof\AppData\Roaming\TS3Client 2020-07-22 20:33 - 2020-03-28 10:13 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2020-07-22 20:11 - 2020-03-28 10:26 - 000000000 ____D C:\Users\timof\Documents\My Games 2020-07-22 19:59 - 2020-03-28 09:19 - 000000000 ____D C:\Users\timof\Documents\eSports 2020-07-22 18:39 - 2020-03-28 07:56 - 000000000 ____D C:\Windows\system32\SleepStudy 2020-07-22 17:06 - 2020-03-28 07:50 - 000000000 ____D C:\Windows\AppReadiness 2020-07-22 06:35 - 2020-03-28 08:08 - 000000000 ____D C:\Users\timof\AppData\Local\Packages 2020-07-22 06:28 - 2020-03-28 09:17 - 000000000 ____D C:\Users\timof\Documents\Forschung 2020-07-22 05:44 - 2020-03-28 08:08 - 000000000 ____D C:\Users\timof\AppData\Roaming\Adobe 2020-07-22 05:33 - 2020-03-28 15:31 - 000000000 ___RD C:\Users\timof\Dropbox 2020-07-22 05:33 - 2020-03-28 15:29 - 000000000 ____D C:\Program Files (x86)\Dropbox 2020-07-21 21:04 - 2020-03-28 08:17 - 000000000 ____D C:\Users\timof\Documents\ActivePresenter Templates 2020-07-21 21:04 - 2020-03-28 08:17 - 000000000 ____D C:\Users\timof\Documents\ActivePresenter 2020-07-21 21:04 - 2020-03-28 08:17 - 000000000 ____D C:\Users\timof\AppData\Roaming\ActivePresenter 2020-07-21 20:47 - 2020-05-02 09:05 - 000000000 ____D C:\Users\timof\Documents\Büro 2020-07-21 18:13 - 2020-03-28 08:31 - 000000000 ____D C:\Program Files\Microsoft Office 2020-07-21 08:00 - 2020-04-11 08:51 - 000008066 _____ C:\ProgramData\DisplaySessionContainer11.log_backup1 2020-07-20 21:14 - 2020-04-10 21:15 - 000008066 _____ C:\ProgramData\DisplaySessionContainer10.log_backup1 2020-07-20 19:19 - 2020-04-05 20:27 - 000008065 _____ C:\ProgramData\DisplaySessionContainer9.log_backup1 2020-07-20 07:50 - 2020-04-05 10:05 - 000008057 _____ C:\ProgramData\DisplaySessionContainer8.log_backup1 2020-07-19 20:14 - 2020-04-05 08:56 - 000008383 _____ C:\ProgramData\DisplaySessionContainer7.log_backup1 2020-07-19 20:14 - 2020-03-28 10:11 - 000000000 ____D C:\Users\timof\AppData\Roaming\Twitch 2020-07-19 19:22 - 2020-04-04 22:15 - 000007673 _____ C:\ProgramData\DisplaySessionContainer6.log_backup1 2020-07-19 18:47 - 2020-03-28 21:07 - 000000000 ____D C:\Users\timof\Documents\Sonstiges 2020-07-19 09:42 - 2020-03-28 09:40 - 000000000 ____D C:\Users\timof\AppData\Local\Citrix 2020-07-19 06:06 - 2020-03-28 07:50 - 000000000 ___HD C:\Program Files\WindowsApps 2020-07-18 21:03 - 2020-03-28 08:01 - 000006597 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1 2020-07-18 19:52 - 2020-04-23 11:35 - 000000001 _____ C:\Windows\vgkbootstatus.dat 2020-07-18 19:13 - 2020-03-28 08:05 - 001725108 _____ C:\Windows\system32\PerfStringBackup.INI 2020-07-18 19:13 - 2020-03-28 07:52 - 000743888 _____ C:\Windows\system32\perfh007.dat 2020-07-18 19:13 - 2020-03-28 07:52 - 000150212 _____ C:\Windows\system32\perfc007.dat 2020-07-18 19:13 - 2020-03-28 07:50 - 000000000 ____D C:\Windows\INF 2020-07-18 19:07 - 2020-03-28 08:01 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-07-18 17:50 - 2020-03-28 08:08 - 000006446 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1 2020-07-18 12:28 - 2020-03-28 08:08 - 000000000 ___RD C:\Users\timof\3D Objects 2020-07-18 12:28 - 2020-03-28 08:00 - 000045946 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1 2020-07-18 12:28 - 2020-03-28 08:00 - 000008335 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1 2020-07-18 12:28 - 2020-03-28 07:56 - 000304656 _____ C:\Windows\system32\FNTCACHE.DAT 2020-07-18 12:28 - 2018-05-09 17:42 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-07-18 09:13 - 2020-03-28 07:50 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2020-07-18 09:13 - 2020-03-28 07:50 - 000000000 ____D C:\Windows\SystemResources 2020-07-18 09:13 - 2020-03-28 07:50 - 000000000 ____D C:\Windows\system32\oobe 2020-07-18 09:13 - 2020-03-28 07:50 - 000000000 ____D C:\Windows\ShellExperiences 2020-07-18 09:13 - 2020-03-28 07:50 - 000000000 ____D C:\Windows\bcastdvr 2020-07-18 09:13 - 2020-03-28 07:50 - 000000000 ____D C:\Program Files\Common Files\System 2020-07-18 09:13 - 2020-03-28 07:47 - 001048576 _____ C:\Windows\system32\config\BBI 2020-07-18 08:59 - 2020-03-28 07:47 - 000000000 ____D C:\Windows\CbsTemp 2020-07-17 18:25 - 2020-03-28 09:21 - 000000000 ____D C:\Users\timof\Documents\Schreiben 2020-07-17 16:52 - 2020-04-08 07:17 - 000000000 ____D C:\Users\timof\Documents\Mienjung 2020-07-17 16:43 - 2020-03-28 08:09 - 000000000 ____D C:\Users\timof\AppData\Local\PlaceholderTileLogoFolder 2020-07-17 15:01 - 2020-03-28 09:59 - 000000000 ____D C:\Users\timof\AppData\Local\Battle.net 2020-07-16 04:17 - 2020-03-28 08:41 - 000002297 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-07-15 05:56 - 2020-06-22 20:37 - 000008066 _____ C:\ProgramData\DisplaySessionContainer26.log_backup1 2020-07-14 20:41 - 2020-06-22 08:09 - 000008378 _____ C:\ProgramData\DisplaySessionContainer25.log_backup1 2020-07-14 08:47 - 2020-06-21 19:10 - 000008066 _____ C:\ProgramData\DisplaySessionContainer24.log_backup1 2020-07-14 07:20 - 2020-06-21 14:18 - 000008067 _____ C:\ProgramData\DisplaySessionContainer23.log_backup1 2020-07-13 07:32 - 2020-05-18 06:57 - 000008382 _____ C:\ProgramData\DisplaySessionContainer21.log_backup1 2020-07-12 20:13 - 2020-05-17 20:17 - 000008067 _____ C:\ProgramData\DisplaySessionContainer20.log_backup1 2020-07-12 09:33 - 2020-04-13 20:12 - 000008380 _____ C:\ProgramData\DisplaySessionContainer18.log_backup1 2020-07-11 20:14 - 2020-04-13 09:38 - 000006206 _____ C:\ProgramData\DisplaySessionContainer17.log_backup1 2020-07-11 12:05 - 2020-04-12 09:46 - 000006189 _____ C:\ProgramData\DisplaySessionContainer15.log_backup1 2020-07-11 09:56 - 2020-04-12 07:48 - 000008067 _____ C:\ProgramData\DisplaySessionContainer14.log_backup1 2020-07-11 09:09 - 2020-04-11 20:24 - 000008066 _____ C:\ProgramData\DisplaySessionContainer13.log_backup1 2020-07-10 21:09 - 2020-04-11 09:41 - 000006610 _____ C:\ProgramData\DisplaySessionContainer12.log_backup1 2020-07-10 20:59 - 2020-04-09 14:50 - 000000000 ____D C:\Users\timof\AppData\LocalLow\Temp 2020-07-09 07:17 - 2020-03-29 21:52 - 000007673 _____ C:\ProgramData\DisplaySessionContainer5.log_backup1 2020-07-09 05:51 - 2020-03-28 07:50 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-07-08 21:25 - 2020-03-29 20:30 - 000008065 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1 2020-07-08 09:01 - 2020-03-28 22:10 - 000006578 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1 2020-07-05 14:46 - 2020-03-28 08:18 - 000000000 ____D C:\Users\timof\AppData\LocalLow\Mozilla 2020-07-05 14:45 - 2020-05-13 07:04 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2020-07-04 11:52 - 2020-05-06 09:32 - 000000000 ____D C:\Program Files\Riot Vanguard 2020-07-04 06:48 - 2020-06-13 11:16 - 000000000 ____D C:\Users\timof\AppData\Roaming\Origin 2020-07-04 06:48 - 2020-06-13 11:16 - 000000000 ____D C:\ProgramData\Origin 2020-07-04 06:38 - 2020-06-13 11:16 - 000000000 ____D C:\Users\timof\AppData\Local\Origin 2020-07-02 15:48 - 2020-03-28 08:01 - 000000000 ____D C:\Windows\system32\Drivers\wd 2020-07-01 16:29 - 2020-06-13 11:17 - 000000000 ____D C:\Program Files (x86)\Origin 2020-06-28 18:46 - 2020-03-28 09:59 - 000000000 ____D C:\Users\timof\AppData\Roaming\Battle.net 2020-06-28 15:10 - 2018-05-09 17:44 - 000000000 ____D C:\ProgramData\Package Cache 2020-06-24 08:21 - 2020-06-22 16:57 - 000000638 _____ C:\Windows\Tasks\TrackerAutoUpdate.job ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
23.07.2020, 14:55 | #2 |
Gesperrt | Komische Fenster bei jedem Start von Windows Anleitung / HilfeCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 22-07-2020 durchgeführt von timof (23-07-2020 15:49:13) Gestartet von C:\Users\timof\Downloads Windows 10 Home Version 1909 18363.959 (X64) (2020-03-28 06:01:20) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-89162837-1950669473-1255303511-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-89162837-1950669473-1255303511-503 - Limited - Disabled) Gast (S-1-5-21-89162837-1950669473-1255303511-501 - Limited - Disabled) timof (S-1-5-21-89162837-1950669473-1255303511-1001 - Administrator - Enabled) => C:\Users\timof WDAGUtilityAccount (S-1-5-21-89162837-1950669473-1255303511-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 19.00 (HKLM-x32\...\7-Zip) (Version: 19.00 - Igor Pavlov) ActivePresenter (HKLM\...\{A2A40277-D807-4754-95A3-2F294C2C51D3}_is1) (Version: 8.0.4 - Atomi Systems, Inc.) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 20.009.20063 - Adobe Systems Incorporated) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: - Electronic Arts, Inc.) Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: - Electronic Arts, Inc.) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.20.13 - Canon Inc.) Canon MG5700 series Benutzerregistrierung (HKLM-x32\...\Canon MG5700 series Benutzerregistrierung) (Version: - *Canon Inc.) Canon MG5700 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5700_series) (Version: 1.01 - Canon Inc.) Canon MG5700 series On-screen Manual (HKLM-x32\...\Canon MG5700 series On-screen Manual) (Version: 7.8.0 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.) Citrix Gateway Endpoint Analysis (HKLM\...\{73435EC8-5B20-47E5-9744-A4E163DD7E11}) (Version: 13.0.47.24 - Citrix Systems, Inc.) Citrix Workspace 1911 (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 19.11.0.50 - Citrix Systems, Inc.) CyberLink PowerDVD 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.8216.01 - CyberLink Corp.) Dashlane Upgrade Service (HKLM-x32\...\Dashlane Upgrade Service) (Version: 2.1.17.0 - Dashlane, Inc.) Dropbox (HKLM-x32\...\Dropbox) (Version: 102.4.431 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden Epic Games Launcher (HKLM-x32\...\{2D833785-910B-4E02-9A6B-51BD3D2F2FCE}) (Version: 1.1.279.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) ExpressVPN (HKLM-x32\...\{878F6EB4-73BF-4A1E-9A92-6DDF9EDC8A8B}) (Version: 2.2.19325.10 - Acer) FACEIT (HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\FACEITApp) (Version: 1.24.0 - FACEIT Ltd.) FACEIT AC version 2.0 (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 2.0 - FACEIT LTD) Forge of Empires (HKLM-x32\...\{39D43D1E-8661-4990-9D01-2C1F593CC8C3}) (Version: 3.1.19223.4 - Acer) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 84.0.4147.89 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1808.12.0.1102 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 16.0.2.1086 - Intel Corporation) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.48.197.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{66129f84-d3f0-4884-ac54-369ae6fc2cf6}) (Version: 1.48.197.0 - Intel Corporation) Hidden Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000040-0200-1031-84C8-B8D95FA3C8C3}) (Version: 20.40.0 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{55d73ea7-6354-42db-8831-02d048ae57f8}) (Version: 10.1.17541.8066 - Intel(R) Corporation) Hidden Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{2D79E334-B178-45B9-A2A6-7A60A084C268}) (Version: 16.8.0.1000 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{18ec79fd-8f83-4e12-bfa5-80c9872cc56b}) (Version: 20.40.0 - Intel Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: - Logitech) Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 84.0.522.40 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.133.5 - ) Microsoft Office Home and Student 2019 - de-de (HKLM\...\HomeStudent2019Retail - de-de) (Version: 16.0.13001.20384 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\OneDriveSetup.exe) (Version: 20.114.0607.0002 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) Minecraft Launcher (HKLM-x32\...\{E15F69FA-660D-45CC-B28F-6CBC4CAD2091}) (Version: 1.0.0.0 - Mojang) Mozilla Firefox 76.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 76.0.1 (x86 en-US)) (Version: 76.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0.2 - Mozilla) NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA GeForce Experience 3.12.0.84 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.12.0.84 - NVIDIA Corporation) NVIDIA Grafiktreiber 432.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 432.00 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13001.20144 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13001.20384 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.13001.20144 - Microsoft Corporation) Hidden Online Plug-in (HKLM-x32\...\{222A41FD-855F-44DC-AC1B-519EC589DB1C}) (Version: 19.11.0.50 - Citrix Systems, Inc.) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.5.74.41754 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.322.10 - Tracker Software Products Ltd) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.23.1003.2017 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8383 - Realtek Semiconductor Corp.) Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.) Self-Service Plug-in (HKLM-x32\...\{713A7965-2BF8-4D7F-B424-548CF9AE849D}) (Version: 19.11.0.33 - Citrix Systems, Inc.) Hidden StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.5.0 - TeamSpeak Systems GmbH) Twitch (HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) Twitch Leecher 1.7 (HKLM\...\{66B757A2-0906-4DDE-BDF6-AD9EC73A7F91}) (Version: 1.7.0.0 - Franiac) Hidden Twitch Leecher 1.7 (HKLM-x32\...\{d1c2c779-f1ef-41e0-926a-443b289eaefd}) (Version: 1.7.0.0 - Franiac) VALORANT (HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc) Warcraft III (HKLM-x32\...\Warcraft III) (Version: - Blizzard Entertainment) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) Zoom (HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\ZoomUMX) (Version: 5.0 - Zoom Video Communications, Inc.) Packages: ========= Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.39.4.0_x86__kgqvnymyfvs32 [2020-06-25] (king.com) Farm Heroes Saga -> C:\Program Files\WindowsApps\king.com.FarmHeroesSaga_5.40.3.0_x86__kgqvnymyfvs32 [2020-06-25] (king.com) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-03-30] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-03-30] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.7082.0_x64__8wekyb3d8bbwe [2020-07-16] (Microsoft Studios) [MS Ad] Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.22.31857.0_x64__8wekyb3d8bbwe [2020-07-18] (Microsoft Corporation) MSN Wetter -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-30] (Microsoft Corporation) [MS Ad] NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.958.0_x64__56jybvy8sckqj [2020-06-25] (NVIDIA Corp.) QuickAccess -> C:\Program Files\WindowsApps\AcerIncorporated.QuickAccess_3.0.3009.0_x64__48frkmn4z8aw4 [2020-03-28] (Acer Incorporated) XING -> C:\Program Files\WindowsApps\XINGAG.XING_4.0.4.0_x86__xpfg3f7e9an52 [2020-04-08] (New Work SE) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-89162837-1950669473-1255303511-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\timof\Dropbox [2020-03-28 15:31] ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [Datei ist nicht signiert] [Datei wird verwendet] ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-04-29] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [Datei ist nicht signiert] [Datei wird verwendet] ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\nvshext.dll [2019-10-04] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-04-29] (Malwarebytes Corporation -> Malwarebytes) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Drivers32: [vidc.i420] => C:\Windows\system32\lvcod64.dll [175392 2012-10-26] (Logitech, Inc. -> Logitech Inc.) HKLM\...\Drivers32: [vidc.i420] => C:\Windows\SysWOW64\lvcodec2.dll [305000 2012-10-26] (Logitech, Inc. -> Logitech Inc.) ==================== Verknüpfungen & WMI ======================== ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2018-12-03 22:19 - 2018-12-03 22:19 - 000126976 _____ (Intel Corporation) [Datei ist nicht signiert] C:\Program Files\Intel\OptaneShellExtensions\iaStorAfsServiceApi.dll 2020-06-13 11:17 - 2020-06-13 11:17 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\LIBEAY32.dll 2020-06-13 11:17 - 2020-06-13 11:17 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\ssleay32.dll 2020-06-13 11:17 - 2020-06-13 11:17 - 001611264 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\platforms\qwindows.dll 2020-07-01 16:29 - 2020-06-13 11:17 - 005487104 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Core.dll 2020-07-01 16:29 - 2020-06-13 11:17 - 005841920 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Gui.dll 2020-07-01 16:29 - 2020-06-13 11:17 - 001179136 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Network.dll 2020-07-01 16:29 - 2020-06-13 11:17 - 000146432 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5WebSockets.dll 2020-07-01 16:29 - 2020-06-13 11:17 - 005089792 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Widgets.dll 2020-07-01 16:29 - 2020-06-13 11:17 - 000184832 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Xml.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ========== ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2017-09-29 15:46 - 2017-09-29 15:44 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-89162837-1950669473-1255303511-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\timof\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\smite-kuku-wingsofchange-1920x1080.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) HKLM\...\StartupApproved\Run32: => "ConnectionCenter" HKLM\...\StartupApproved\Run32: => "Redirector" HKLM\...\StartupApproved\Run32: => "Dropbox" HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk" HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\StartupApproved\Run: => "FACEIT" HKU\S-1-5-21-89162837-1950669473-1255303511-1001\...\StartupApproved\Run: => "EpicGamesLauncher" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{2CB7CC2C-204B-4D90-BCA3-96E3E7902DBD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{F5C434BB-E3D4-4C6D-B80C-AFE1008D749F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe => Keine Datei FirewallRules: [{14E78F3E-6F9F-4F11-A9EC-B0450B01C54A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe => Keine Datei FirewallRules: [{D13651C1-000C-4356-AAA7-FB29CA860988}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{4FD7E8A3-86CF-4907-9889-4B11F50A262E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{2BD84C27-BF18-4075-8700-A2D00205FA1A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{B2635459-E358-452A-BFDF-C3C2514B2E17}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel(R) Wireless Connectivity Solutions -> ) FirewallRules: [{8B315897-2F16-4FD6-BBBB-68DDE3E8C682}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{05619F6C-DD08-4B65-B894-DC886EA297CB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{FEC96CCD-0DF2-4852-83E0-A555C36FA1F1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{5183B048-A9AE-4EFB-B22E-8DC19BF99545}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{898A911C-7FA2-446C-B48E-8BCC8482C095}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{CEC98800-63C2-4D1F-AB66-03C5759382E2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{9FDCD096-FFE4-4656-9816-F2494D1D8888}] => (Allow) D:\ActivePresenter\ActivePresenter.exe (ATOMI SYSTEMS, INC. -> Atomi Systems, Inc.) FirewallRules: [{3A712FEC-55B8-48B8-A28A-34F0ADE9CE5E}] => (Allow) D:\ActivePresenter\rlactivator.exe (ATOMI SYSTEMS, INC. -> Atomi Systems, Inc.) FirewallRules: [{E88C8ADE-53F5-487E-95B3-A9E6F4B00F2E}] => (Allow) C:\Program Files\Citrix\Secure Access Client\nsepa.exe (Citrix Systems, Inc. -> Citrix Systems, Inc) FirewallRules: [{7909F57F-0F00-4525-9AD2-3A1C37023618}] => (Allow) C:\Program Files\Citrix\Secure Access Client\nsepa.exe (Citrix Systems, Inc. -> Citrix Systems, Inc) FirewallRules: [{6A071679-6D59-4C36-A220-6C44E5F2DAE8}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{DB5B33F2-0B3D-4F04-AA6F-5751EDD2CCCF}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{B53777AA-F3E9-4948-BF54-0644E665C3E8}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei FirewallRules: [{D1841494-F731-4A63-90F1-AA5A9CF3CC50}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei FirewallRules: [{8C84995E-1B52-41BD-8FF8-F56855EB881D}] => (Allow) D:\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{284A42B9-FECA-4CC1-882F-CEFD45B4E302}] => (Allow) D:\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{A4195554-5920-402B-B716-1777D9865510}] => (Allow) D:\Steam\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{46BF048F-A6C4-4A5D-8167-88448EED204C}] => (Allow) D:\Steam\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [TCP Query User{AFE3BEE8-2AA1-4D1B-9A24-94BCE09E33E8}D:\steam\steamapps\common\smite\binaries\win64\smite.exe] => (Allow) D:\steam\steamapps\common\smite\binaries\win64\smite.exe (Hirez Studios, Inc.) [Datei ist nicht signiert] FirewallRules: [UDP Query User{6E094C7B-CBF8-4181-9415-B6FE16993F00}D:\steam\steamapps\common\smite\binaries\win64\smite.exe] => (Allow) D:\steam\steamapps\common\smite\binaries\win64\smite.exe (Hirez Studios, Inc.) [Datei ist nicht signiert] FirewallRules: [{BCC656BC-FBD3-4697-81CA-28319B63B4C7}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{F4451B3B-F094-47E7-B59B-0B45D0A76F11}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{F05531A1-089B-4D8D-8BAE-DD51554E2F6E}] => (Allow) D:\Steam\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie) FirewallRules: [{5BFD3FDC-6810-4B72-AE0D-AB04C032C263}] => (Allow) D:\Steam\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie) FirewallRules: [{C2B74AE2-3508-4B28-8D05-18AB0D60BA55}] => (Allow) D:\Steam\steamapps\common\Halo The Master Chief Collection\mcclauncher.exe (EasyAntiCheat Oy -> Epic Games, Inc) FirewallRules: [{21406C73-876D-45D4-960E-C909429EE6E8}] => (Allow) D:\Steam\steamapps\common\Halo The Master Chief Collection\mcclauncher.exe (EasyAntiCheat Oy -> Epic Games, Inc) FirewallRules: [{4A17BA32-F2F2-482A-84CF-BB8EB66205E4}] => (Allow) D:\Steam\steamapps\common\Halo The Master Chief Collection\MCC\Binaries\Win64\MCC-Win64-Shipping.exe (343 Industries (Microsoft Corporation) -> Microsoft Corporation) FirewallRules: [{8421182B-D894-4D15-898C-7ED73A4D868D}] => (Allow) D:\Steam\steamapps\common\Halo The Master Chief Collection\MCC\Binaries\Win64\MCC-Win64-Shipping.exe (343 Industries (Microsoft Corporation) -> Microsoft Corporation) FirewallRules: [{3ADF5217-4EA1-4B74-9825-A2EB74993A40}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{6AF9D7DA-9F4E-4242-81C7-979318E3934D}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{B733DA1D-AE12-4043-95DF-1547EF58C424}] => (Allow) D:\Steam\steamapps\common\Battlefleet Gothic Armada II\BattlefleetGothic2.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{C3AAF8B5-EB43-4FBF-B904-40B93BC77F0C}] => (Allow) D:\Steam\steamapps\common\Battlefleet Gothic Armada II\BattlefleetGothic2.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [TCP Query User{FCA53CFE-D5B6-4610-B9F6-0F844DC1B38E}D:\battlenet\ow\overwatch\_retail_\overwatch.exe] => (Allow) D:\battlenet\ow\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{D8641494-939E-46F7-B5A1-32A9557F693B}D:\battlenet\ow\overwatch\_retail_\overwatch.exe] => (Allow) D:\battlenet\ow\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [TCP Query User{37B3CC2D-E6EC-46B4-85CD-666C00EE4C9C}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [Datei ist nicht signiert] FirewallRules: [UDP Query User{B0320294-C4DF-409A-8518-BC9C899BB137}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [Datei ist nicht signiert] FirewallRules: [{E31AA4D0-E79B-4AF6-9EF7-D758FD4CE3A7}] => (Allow) D:\Steam\steamapps\common\Age Of Empires 3\bin\age3.exe (Microsoft Corporation -> Ensemble Studios) FirewallRules: [{C832A97D-9DA5-43D6-BB43-E895F7BC6E78}] => (Allow) D:\Steam\steamapps\common\Age Of Empires 3\bin\age3.exe (Microsoft Corporation -> Ensemble Studios) FirewallRules: [{627A811A-9E0B-4A95-9ACA-E5F1D8A6F17D}] => (Allow) D:\Steam\steamapps\common\Age Of Empires 3\bin\age3x.exe (Microsoft Corporation -> Ensemble Studios) FirewallRules: [{0599F03F-07B6-4F7B-ACCA-9FEC02D42284}] => (Allow) D:\Steam\steamapps\common\Age Of Empires 3\bin\age3x.exe (Microsoft Corporation -> Ensemble Studios) FirewallRules: [{99854B86-593D-4599-B924-FEE59DC60D66}] => (Allow) D:\Steam\steamapps\common\Age Of Empires 3\bin\age3y.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{13194D2D-EE5A-44FD-8B27-9B293E10B253}] => (Allow) D:\Steam\steamapps\common\Age Of Empires 3\bin\age3y.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{5626C2F6-2D27-4A2E-857A-C31EAC242D3A}] => (Allow) D:\Steam\steamapps\common\BZ2R\battlezone2.exe (Rebellion, Ltd.) [Datei ist nicht signiert] FirewallRules: [{86080D6E-3654-44EE-B773-142988598007}] => (Allow) D:\Steam\steamapps\common\BZ2R\battlezone2.exe (Rebellion, Ltd.) [Datei ist nicht signiert] FirewallRules: [TCP Query User{F97D4E38-5022-4849-A9B3-4C15AFF1198B}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [UDP Query User{7EB59FD5-AB7A-40DA-9018-1B1532496B64}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) FirewallRules: [TCP Query User{5DD75A8C-6ED0-4BBC-B53E-AC392DC0FE63}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{6B0B6C88-A297-48BF-AE88-365852DF1884}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{FE5006DE-55D0-491B-B699-BF22163197F9}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{A27C8F0F-B584-4946-B024-0CDDC3380810}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [TCP Query User{FB855C82-F33E-4B4A-8B4C-45158BD77C2A}D:\battlenet\ow\heroes of the storm\versions\base78725\heroesofthestorm_x64.exe] => (Allow) D:\battlenet\ow\heroes of the storm\versions\base78725\heroesofthestorm_x64.exe => Keine Datei FirewallRules: [UDP Query User{B8121951-E82F-43ED-8878-8E540268E78F}D:\battlenet\ow\heroes of the storm\versions\base78725\heroesofthestorm_x64.exe] => (Allow) D:\battlenet\ow\heroes of the storm\versions\base78725\heroesofthestorm_x64.exe => Keine Datei FirewallRules: [TCP Query User{8AD11383-E72B-4DA0-8078-19DC7AE2810F}C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe => Keine Datei FirewallRules: [UDP Query User{FDF86D91-EFB4-4BE3-9642-76615AB59AE7}C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe => Keine Datei FirewallRules: [TCP Query User{2053E53B-11C1-4960-B583-2228FC527671}D:\battlenet\ow\starcraft ii\versions\base78285\sc2_x64.exe] => (Allow) D:\battlenet\ow\starcraft ii\versions\base78285\sc2_x64.exe => Keine Datei FirewallRules: [UDP Query User{245F1DEA-4D77-459C-88D8-EA15808E4773}D:\battlenet\ow\starcraft ii\versions\base78285\sc2_x64.exe] => (Allow) D:\battlenet\ow\starcraft ii\versions\base78285\sc2_x64.exe => Keine Datei FirewallRules: [{D20EB8D4-65A5-404A-9785-385190658A3F}] => (Allow) D:\Steam\steamapps\common\Anno 1800\Bin\Win64\Anno1800.exe (Ubisoft Blue Byte GmbH -> Ubisoft) FirewallRules: [{BD8C5803-4423-4D4A-9AD6-0871953782F0}] => (Allow) D:\Steam\steamapps\common\Anno 1800\Bin\Win64\Anno1800.exe (Ubisoft Blue Byte GmbH -> Ubisoft) FirewallRules: [{B72A6364-62EB-4FEC-A5C2-E61CC1686F39}] => (Allow) C:\Users\timof\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{80E7384E-F295-4333-8FFB-D7B9FEAA62E5}] => (Allow) C:\Users\timof\AppData\Roaming\Zoom\bin\airhost.exe => Keine Datei FirewallRules: [TCP Query User{9EEDDBEA-6FD4-4DA0-83ED-8BDC2FECD1B9}C:\program files (x86)\citrix\ica client\hdxteams.exe] => (Allow) C:\program files (x86)\citrix\ica client\hdxteams.exe (Citrix Systems, Inc. -> Citrix Systems, Inc.) FirewallRules: [UDP Query User{0FDB5551-9FCB-41B1-8694-0E2875D7D642}C:\program files (x86)\citrix\ica client\hdxteams.exe] => (Allow) C:\program files (x86)\citrix\ica client\hdxteams.exe (Citrix Systems, Inc. -> Citrix Systems, Inc.) FirewallRules: [TCP Query User{53EA65EA-A654-4D90-88F1-EDECA3FCEECE}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [UDP Query User{F2EAA0A3-3A82-4D5B-B6DA-5C0130F6FE60}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [{9715ED92-6FF4-4884-8497-6F1360246F17}] => (Allow) D:\Steam\steamapps\common\Total War WARHAMMER II\launcher\launcher.exe (The Creative Assembly Limited -> Creative Assembly Ltd) FirewallRules: [{5ACBED8B-6586-46F4-B1AB-0FD3DEB27F42}] => (Allow) D:\Steam\steamapps\common\Total War WARHAMMER II\launcher\launcher.exe (The Creative Assembly Limited -> Creative Assembly Ltd) FirewallRules: [{7852C993-98C3-48CF-83A3-802CE112917F}] => (Allow) D:\Steam\steamapps\common\CnCRemastered\ClientLauncherG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.) FirewallRules: [{74F85462-B8A4-4F1A-88F6-E8D4AEFA8F26}] => (Allow) D:\Steam\steamapps\common\CnCRemastered\ClientLauncherG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.) FirewallRules: [{06292F2C-E521-4F64-8C8D-AEEE73C644A1}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FirewallRules: [{FD61C62F-C783-4D11-BF57-DA899732372E}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FirewallRules: [TCP Query User{E5F8D6BC-16DB-469F-955C-22A5688D38A5}D:\steam\steamapps\common\battlefield 4\bf4.exe] => (Allow) D:\steam\steamapps\common\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [UDP Query User{7E27BB48-C876-406D-BC6A-D46DA29650DC}D:\steam\steamapps\common\battlefield 4\bf4.exe] => (Allow) D:\steam\steamapps\common\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{6BBBEB0E-E832-4EEE-B253-9B2B38F39C74}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{EC45CB8B-2302-419A-9F97-B93532417FC7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{45ED3923-D20E-4A3B-9CB7-393A4FA9EE6F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{0D5F8980-6451-43DA-82B3-57A3F870E93D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [TCP Query User{4013EF8A-3A48-4882-8E75-C1782C62AF8A}D:\steam\steamapps\common\battlefield 1\bf1.exe] => (Allow) D:\steam\steamapps\common\battlefield 1\bf1.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [UDP Query User{CF8A56AB-2065-444F-B769-0E835D01FF53}D:\steam\steamapps\common\battlefield 1\bf1.exe] => (Allow) D:\steam\steamapps\common\battlefield 1\bf1.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{E5B0B54B-525E-4FDF-B879-082864637B19}] => (Allow) D:\Steam\steamapps\common\Cossacks 3\cossacks.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{5A6C988E-F4A7-45F1-BBCC-630759F31A80}] => (Allow) D:\Steam\steamapps\common\Cossacks 3\cossacks.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{D5E6A2C7-3490-47BF-8889-6201D13FB9C7}] => (Allow) D:\Steam\steamapps\common\Cossacks 3\config.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{2D0E3779-36A8-4857-9F37-35124220EDE0}] => (Allow) D:\Steam\steamapps\common\Cossacks 3\config.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{596F1D75-6674-4DA6-89D8-8068958A476F}] => (Allow) D:\Steam\steamapps\common\Cossacks 3\editor.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{00B5FA7A-1C45-4166-ADD8-95E829818240}] => (Allow) D:\Steam\steamapps\common\Cossacks 3\editor.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{940456F2-1416-4A0D-BF7D-DD82F5469CAD}] => (Allow) D:\Steam\steamapps\common\Cossacks 3\modman.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{2B217B4B-2F0A-4DAE-A328-726842A80F28}] => (Allow) D:\Steam\steamapps\common\Cossacks 3\modman.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{C6CEC1E7-081C-436C-A166-F3E19312F861}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{4DBA8F3E-1006-4FCB-9EB0-648EB30105AD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{8E73BB3A-019F-4F46-944F-8AE275055A85}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{150FED24-8B07-4F4B-80FC-7FA1FE78255A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{00836ECF-32A9-4486-9409-1B7D2A9717A0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{2E502BF2-90C8-4C81-939A-F9D8B7B74AF4}] => (Allow) D:\Steam\steamapps\common\Warzone 2100\bin\warzone2100.exe (Warzone 2100 Project) [Datei ist nicht signiert] FirewallRules: [{73ED125E-A438-4B00-977D-8C235DADC337}] => (Allow) D:\Steam\steamapps\common\Warzone 2100\bin\warzone2100.exe (Warzone 2100 Project) [Datei ist nicht signiert] FirewallRules: [{FD82F4A1-586B-46F0-961C-25B4594543C0}] => (Allow) D:\Steam\steamapps\common\Act of War Direct Action\ActOfWar.exe () [Datei ist nicht signiert] FirewallRules: [{06AF194A-597E-496F-907A-1390652F1B44}] => (Allow) D:\Steam\steamapps\common\Act of War Direct Action\ActOfWar.exe () [Datei ist nicht signiert] FirewallRules: [{7CFD65B7-7273-4867-8F97-5C43D1A2D763}] => (Allow) E:\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{BCC75AE3-FD67-4886-8641-360B43B46AA5}] => (Allow) E:\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{3AE6B78D-A197-47C3-B2DB-E0E24F4A9CDF}] => (Allow) E:\Steam\steamapps\common\AoW3\AoW3Launcher.exe () [Datei ist nicht signiert] FirewallRules: [{80CB5E06-DD98-4AE7-8868-694FE025A0EB}] => (Allow) E:\Steam\steamapps\common\AoW3\AoW3Launcher.exe () [Datei ist nicht signiert] FirewallRules: [{2BBBCAA4-4AD6-425D-8760-DC83D55E4045}] => (Allow) E:\Steam\steamapps\common\American Conquest\DMCR.EXE (-GSC-) [Datei ist nicht signiert] FirewallRules: [{B3CC92C0-BFB2-4A10-8850-9CFC0CDDD843}] => (Allow) E:\Steam\steamapps\common\American Conquest\DMCR.EXE (-GSC-) [Datei ist nicht signiert] FirewallRules: [{26581FD1-4D53-44B5-8C37-DA85282B9862}] => (Allow) E:\Steam\steamapps\common\American Conquest - Fight Back\dmcr.exe (-GSC-) [Datei ist nicht signiert] FirewallRules: [{FC398556-C825-4C38-B4DD-CE067BEBAAE0}] => (Allow) E:\Steam\steamapps\common\American Conquest - Fight Back\dmcr.exe (-GSC-) [Datei ist nicht signiert] FirewallRules: [{43F7A4D4-D9F5-4B26-9470-BBD8B60B4BE1}] => (Allow) E:\Steam\steamapps\common\Anno 1404\Anno4.exe (Related Designs Software -> Related Designs) FirewallRules: [{F558040F-955F-47FA-9A87-0DDF6F499BF3}] => (Allow) E:\Steam\steamapps\common\Anno 1404\Anno4.exe (Related Designs Software -> Related Designs) FirewallRules: [{D0411199-4C77-48DD-80F7-3F812BB45849}] => (Allow) E:\Steam\steamapps\common\Anno 1404\Addon.exe (Related Designs Software -> Related Designs) FirewallRules: [{9348F827-81F7-4821-9CBF-747116EB15AB}] => (Allow) E:\Steam\steamapps\common\Anno 1404\Addon.exe (Related Designs Software -> Related Designs) FirewallRules: [{EFCF8B3C-D06E-4A2C-916E-B8E1F38F8BE3}] => (Allow) E:\Steam\steamapps\common\Battlefield Bad Company 2\BFBC2Game.exe (EA Digital Illusions CE AB -> EA Digital Illusions CE AB) FirewallRules: [{59FAB177-28CF-4F71-BCE0-639194C2FA34}] => (Allow) E:\Steam\steamapps\common\Battlefield Bad Company 2\BFBC2Game.exe (EA Digital Illusions CE AB -> EA Digital Illusions CE AB) FirewallRules: [{0D59B6D9-BED2-47A6-8EBC-5DA44F41670E}] => (Allow) E:\Steam\steamapps\common\Cossacks II Battle for Europe\engine.exe (GSC Game World -> GSC Game World) FirewallRules: [{26957DA1-152D-4449-8ED0-71F05CF80441}] => (Allow) E:\Steam\steamapps\common\Cossacks II Battle for Europe\engine.exe (GSC Game World -> GSC Game World) FirewallRules: [{DC533BBC-4D02-4507-8E6D-6DD32BBA250D}] => (Allow) E:\Steam\steamapps\common\Command and Conquer 3 Tiberium Wars\CNC3.exe (Electronic Arts Inc.) [Datei ist nicht signiert] FirewallRules: [{C7AF8298-1996-44FD-8F84-1770026700D5}] => (Allow) E:\Steam\steamapps\common\Command and Conquer 3 Tiberium Wars\CNC3.exe (Electronic Arts Inc.) [Datei ist nicht signiert] FirewallRules: [{156CF5EA-6F12-47FB-A507-BCC41763E8DC}] => (Allow) E:\Steam\steamapps\common\Cossacks II Napoleonic Wars\engine.exe (GSC Game World -> GSC Game World) FirewallRules: [{155EEBC2-B7ED-45A2-B81B-E21BE3311FA9}] => (Allow) E:\Steam\steamapps\common\Cossacks II Napoleonic Wars\engine.exe (GSC Game World -> GSC Game World) FirewallRules: [{753DFD75-2340-4649-A1AD-7270B869D917}] => (Allow) E:\Steam\steamapps\common\Cities_Skylines\dowser.exe (Paradox Interactive Ab (Publ) -> ) FirewallRules: [{6D6DA048-73B4-4F1F-91BE-38BC097BDF36}] => (Allow) E:\Steam\steamapps\common\Cities_Skylines\dowser.exe (Paradox Interactive Ab (Publ) -> ) FirewallRules: [{DDFE11AF-7825-486D-8B94-7CB89A07A876}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{E1DC00FB-7244-4A7F-B5E3-2288EE50AA9F}] => (Allow) E:\Steam\steamapps\common\Half-Life\hl.exe (Valve -> Valve) FirewallRules: [{744542D8-01AC-4BEF-B6DF-59130103223D}] => (Allow) E:\Steam\steamapps\common\Half-Life\hl.exe (Valve -> Valve) FirewallRules: [{6DB1E539-3CAD-4509-80E6-F63A5DD11E94}] => (Allow) E:\Steam\steamapps\common\Half-Life 2\hl2.exe (Valve -> ) FirewallRules: [{C3B26D49-363A-4870-872D-8E6BCFCDA017}] => (Allow) E:\Steam\steamapps\common\Half-Life 2\hl2.exe (Valve -> ) FirewallRules: [{6C5558D3-BB29-43A3-9420-D94993FFCE30}] => (Allow) E:\Steam\steamapps\common\Counter-Strike Source\hl2.exe (Valve -> ) FirewallRules: [{05011EEF-F450-4EB9-9951-60A14AE89944}] => (Allow) E:\Steam\steamapps\common\Counter-Strike Source\hl2.exe (Valve -> ) FirewallRules: [{AFD4C7E8-B10D-4EE8-9C02-01C1D9898AEC}] => (Allow) E:\Steam\steamapps\common\Day of Defeat Source\hl2.exe (Valve -> ) FirewallRules: [{1A5837CE-CC65-4FED-9FB5-D19D3E538F0B}] => (Allow) E:\Steam\steamapps\common\Day of Defeat Source\hl2.exe (Valve -> ) FirewallRules: [{7D48D661-410D-49D4-B7D0-2FDB96DBAB0E}] => (Allow) E:\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe (Valve -> ) FirewallRules: [{8F939083-45EB-4122-9B72-A0973FEFD13D}] => (Allow) E:\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe (Valve -> ) FirewallRules: [{43796EE0-3097-40FE-82C6-39267A507309}] => (Allow) E:\Steam\steamapps\common\Half-Life 1 Source Deathmatch\hl2.exe (Valve -> ) FirewallRules: [{FCFD21B0-F786-49F3-8AC8-C40E5B0FA53D}] => (Allow) E:\Steam\steamapps\common\Half-Life 1 Source Deathmatch\hl2.exe (Valve -> ) FirewallRules: [{B0255BBF-9532-4BE4-9E90-46A7BEF642D4}] => (Allow) E:\Steam\steamapps\common\Portal\hl2.exe (Valve -> ) FirewallRules: [{99840810-61F9-4CC8-B5BB-8988C541FB4A}] => (Allow) E:\Steam\steamapps\common\Portal\hl2.exe (Valve -> ) FirewallRules: [{EA871447-14AF-4012-ADBA-C305199E6813}] => (Allow) E:\Steam\steamapps\common\left 4 dead\left4dead.exe () [Datei ist nicht signiert] FirewallRules: [{7A3CAC4D-3907-4755-AC71-5C295167EDDE}] => (Allow) E:\Steam\steamapps\common\left 4 dead\left4dead.exe () [Datei ist nicht signiert] FirewallRules: [{AE50CD58-F3C5-47C8-A1EF-458EB6C2A93C}] => (Allow) E:\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe () [Datei ist nicht signiert] FirewallRules: [{273B755C-2FA0-4443-BAF8-FA578AD58275}] => (Allow) E:\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe () [Datei ist nicht signiert] FirewallRules: [{F89AA80D-9AB1-472E-8989-9CCF1FB62AFB}] => (Allow) E:\Steam\steamapps\common\Portal 2\portal2.exe () [Datei ist nicht signiert] FirewallRules: [{A0E4A3EF-DD98-49CE-9474-D1603C8921F4}] => (Allow) E:\Steam\steamapps\common\Portal 2\portal2.exe () [Datei ist nicht signiert] FirewallRules: [{6AAF09FF-0B0E-40D4-A148-46B9414BA8CC}] => (Allow) E:\Steam\steamapps\common\GarrysMod\hl2.exe () [Datei ist nicht signiert] FirewallRules: [{F6D0B971-ECE8-4027-BCCE-8896A7CB0389}] => (Allow) E:\Steam\steamapps\common\GarrysMod\hl2.exe () [Datei ist nicht signiert] FirewallRules: [{FC3D8BD7-3FBE-4B35-95B3-59571A9BC55F}] => (Allow) E:\Steam\steamapps\common\Cossacks Back to War\bin\csbtw.exe (GSC Game World -> GSC Game World) FirewallRules: [{A177B38B-2E91-4D48-8A29-C3F2DA71F363}] => (Allow) E:\Steam\steamapps\common\Cossacks Back to War\bin\csbtw.exe (GSC Game World -> GSC Game World) FirewallRules: [{EE456937-F29B-4E46-B5A5-2CD2EF915F22}] => (Allow) E:\Steam\steamapps\common\Cossacks Back to War\bin\HView.exe (GSC Game World -> ) FirewallRules: [{42D702E9-FFFB-47DC-A126-852D582EEB09}] => (Allow) E:\Steam\steamapps\common\Cossacks Back to War\bin\HView.exe (GSC Game World -> ) FirewallRules: [{BE26401B-0F1E-4407-902A-C53EA9919C07}] => (Allow) E:\Steam\steamapps\common\Cossacks Back to War\bin\ScenarioEditor.exe (GSC Game World -> ) FirewallRules: [{D30BE235-65C9-4E49-97F2-87CA211B28A4}] => (Allow) E:\Steam\steamapps\common\Cossacks Back to War\bin\ScenarioEditor.exe (GSC Game World -> ) FirewallRules: [{EFCB9C6B-2B60-4D46-9B97-82BA3659A73E}] => (Allow) E:\Steam\steamapps\common\Cossacks Back to War\bin\cshlp.exe (GSC Game World -> ) FirewallRules: [{169476E8-742F-4876-9CCD-340C9B2894B9}] => (Allow) E:\Steam\steamapps\common\Cossacks Back to War\bin\cshlp.exe (GSC Game World -> ) FirewallRules: [{5ADA4401-7BAA-43EF-B86F-289FD704C317}] => (Allow) E:\Steam\steamapps\common\Cossacks Art of War\dmcr.exe (GSC Game World -> -GSC-) FirewallRules: [{9D2A85D6-11BC-416E-93EA-8DBFF5F2D478}] => (Allow) E:\Steam\steamapps\common\Cossacks Art of War\dmcr.exe (GSC Game World -> -GSC-) FirewallRules: [{62AF669A-CC37-47A2-97F4-2A4666D5B7CF}] => (Allow) E:\Steam\steamapps\common\Cossacks European Wars\dmcr.exe (-GSC-) [Datei ist nicht signiert] FirewallRules: [{ED5BA095-F4D9-485B-95C9-174949D821A7}] => (Allow) E:\Steam\steamapps\common\Cossacks European Wars\dmcr.exe (-GSC-) [Datei ist nicht signiert] FirewallRules: [{02A726DE-34A3-41BE-9F7D-2C44A5E15E93}] => (Allow) E:\Steam\steamapps\common\Monkey2\Monkey2.exe (LucasArts Entertainment Company) [Datei ist nicht signiert] FirewallRules: [{EFE108AE-3587-49EE-824F-7C23229EC527}] => (Allow) E:\Steam\steamapps\common\Monkey2\Monkey2.exe (LucasArts Entertainment Company) [Datei ist nicht signiert] FirewallRules: [{1F6595CE-3576-4C15-AE56-5F05837C5BE5}] => (Allow) E:\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe (Daybreak Game Company LLC -> Daybreak Game Company) FirewallRules: [{3B3551F7-A9E4-4C29-8AE6-B26AC464A8C4}] => (Allow) E:\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe (Daybreak Game Company LLC -> Daybreak Game Company) FirewallRules: [{677DBA64-BF22-4500-8542-6190B1163394}] => (Allow) E:\Steam\steamapps\common\Star Trek Online\Star Trek Online.exe (Cryptic Studios Inc. -> ) FirewallRules: [{39A8B4E0-3A02-4C87-B34E-80232E761693}] => (Allow) E:\Steam\steamapps\common\Star Trek Online\Star Trek Online.exe (Cryptic Studios Inc. -> ) FirewallRules: [{57BBA33B-4ACB-4613-8593-A58932A55E78}] => (Allow) E:\Steam\steamapps\common\The Secret of Monkey Island Special Edition\MISE.exe () [Datei ist nicht signiert] FirewallRules: [{F4413B8F-3CE1-4521-801A-413407B23378}] => (Allow) E:\Steam\steamapps\common\The Secret of Monkey Island Special Edition\MISE.exe () [Datei ist nicht signiert] ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:118.12 GB) (Free:45.21 GB) (38%) ==================== Fehlerhafte Geräte im Gerätemanager ============ Name: Citrix Indirect Display Adapter Description: Citrix Indirect Display Adapter Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318} Manufacturer: Citrix Systems Inc. Service: WUDFRd Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19) Resolution: A registry problem was detected. This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options: On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (07/21/2020 07:52:12 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Das Programm Microsoft.Photos.exe Version 2020.20070.10002.0 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e88 Startzeit: 01d65f2309b0db8a Beendigungszeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20070.10002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe Bericht-ID: c2233b86-1573-49ce-ac4a-9bd389ab1e68 Vollständiger Name des fehlerhaften Pakets: Microsoft.Windows.Photos_2020.20070.10002.0_x64__8wekyb3d8bbwe Relative Anwendungs-ID des fehlerhaften Pakets: App Absturztyp: Cross-process Error: (07/21/2020 07:51:54 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Das Programm Microsoft.Photos.exe Version 2020.20070.10002.0 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 30c8 Startzeit: 01d65f2099ae0c24 Beendigungszeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20070.10002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe Bericht-ID: 4e6730df-4a93-4fb9-8a9f-0c95d9d0c545 Vollständiger Name des fehlerhaften Pakets: Microsoft.Windows.Photos_2020.20070.10002.0_x64__8wekyb3d8bbwe Relative Anwendungs-ID des fehlerhaften Pakets: App Absturztyp: Cross-process Error: (07/15/2020 07:35:45 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Das Programm Microsoft.Photos.exe Version 2020.20070.10002.0 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 4560 Startzeit: 01d65ace576170d5 Beendigungszeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20070.10002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe Bericht-ID: a8be8fcf-34c9-4c8c-af0c-fa3ad1a6158a Vollständiger Name des fehlerhaften Pakets: Microsoft.Windows.Photos_2020.20070.10002.0_x64__8wekyb3d8bbwe Relative Anwendungs-ID des fehlerhaften Pakets: App Absturztyp: Cross-process Error: (07/14/2020 04:45:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: ActivePresenter.exe, Version: 8.0.4.0, Zeitstempel: 0x5e7b4288 Name des fehlerhaften Moduls: ucrtbase.dll, Version: 10.0.18362.815, Zeitstempel: 0x32a6df9a Ausnahmecode: 0xc0000409 Fehleroffset: 0x000000000006db9e ID des fehlerhaften Prozesses: 0x1528 Startzeit der fehlerhaften Anwendung: 0x01d659ed20728f8a Pfad der fehlerhaften Anwendung: D:\ActivePresenter\ActivePresenter.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\ucrtbase.dll Berichtskennung: 4ab9882c-547f-4899-b63f-5624457a510a Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (07/12/2020 08:35:31 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Das Programm HxOutlook.exe Version 16.0.12827.20398 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 38e8 Startzeit: 01d658168667b296 Beendigungszeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12827.20400.0_x64__8wekyb3d8bbwe\HxOutlook.exe Bericht-ID: 850d9100-6c01-49d1-a80d-88f0457f0ec4 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_16005.12827.20400.0_x64__8wekyb3d8bbwe Relative Anwendungs-ID des fehlerhaften Pakets: microsoft.windowslive.mail Absturztyp: Quiesce Error: (06/26/2020 07:09:31 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Das Programm explorer.exe Version 10.0.18362.815 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 19fc Startzeit: 01d64b6f03862d3e Beendigungszeit: 0 Anwendungspfad: C:\Windows\explorer.exe Bericht-ID: f0ebaa0c-8ba1-43d9-af11-4198cf0d4920 Vollständiger Name des fehlerhaften Pakets: Relative Anwendungs-ID des fehlerhaften Pakets: Absturztyp: Unknown Error: (06/03/2020 06:40:14 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: HxOutlook.exe, Version: 16.0.12827.20182, Zeitstempel: 0x5ec019ad Name des fehlerhaften Moduls: HxOutlook.ViewModel.dll, Version: 16.0.12827.20200, Zeitstempel: 0x5ec4114a Ausnahmecode: 0xc000041d Fehleroffset: 0x00000000000e8368 ID des fehlerhaften Prozesses: 0x2bd4 Startzeit der fehlerhaften Anwendung: 0x01d63960e35eec3b Pfad der fehlerhaften Anwendung: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12827.20200.0_x64__8wekyb3d8bbwe\HxOutlook.exe Pfad des fehlerhaften Moduls: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12827.20200.0_x64__8wekyb3d8bbwe\HxOutlook.ViewModel.dll Berichtskennung: 48a7ba37-ca7e-4929-9c17-1a2f4b0df5f0 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_16005.12827.20200.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windowslive.mail Error: (06/03/2020 06:40:12 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: HxOutlook.exe, Version: 16.0.12827.20182, Zeitstempel: 0x5ec019ad Name des fehlerhaften Moduls: HxOutlook.ViewModel.dll, Version: 16.0.12827.20200, Zeitstempel: 0x5ec4114a Ausnahmecode: 0x0228a215 Fehleroffset: 0x00000000000e8368 ID des fehlerhaften Prozesses: 0x2bd4 Startzeit der fehlerhaften Anwendung: 0x01d63960e35eec3b Pfad der fehlerhaften Anwendung: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12827.20200.0_x64__8wekyb3d8bbwe\HxOutlook.exe Pfad des fehlerhaften Moduls: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12827.20200.0_x64__8wekyb3d8bbwe\HxOutlook.ViewModel.dll Berichtskennung: 21e46ca0-a3c6-4533-9f72-3000942791ec Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_16005.12827.20200.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windowslive.mail Systemfehler: ============= Error: (07/23/2020 03:43:01 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VCEJHKG) Description: Der Server "Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/23/2020 03:42:12 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VCEJHKG) Description: Der Server "Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/23/2020 07:15:01 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VCEJHKG) Description: Der Server "Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/23/2020 07:02:17 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VCEJHKG) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/23/2020 06:11:10 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VCEJHKG) Description: Der Server "Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/22/2020 08:14:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VCEJHKG) Description: Der Server "Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/22/2020 05:03:39 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VCEJHKG) Description: Der Server "Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/22/2020 08:11:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VCEJHKG) Description: Der Server "Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Windows Defender: =================================== Date: 2020-07-17 07:46:55.340 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {D1C8EC97-5C69-40AF-B328-7357699EDAB7} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2020-06-24 18:55:32.675 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {FF521A19-88FF-451D-8C26-472E778EEB03} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2020-06-08 15:50:44.573 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {08873D31-3F00-4506-BF7C-3A78DD1B7FA9} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM CodeIntegrity: =================================== Date: 2020-03-28 07:23:31.483 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.11.1.5\WSCStub.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-03-28 07:23:31.459 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.11.1.5\WSCStub.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-03-28 07:23:31.433 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.11.1.5\WSCStub.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-03-28 07:23:31.401 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.11.1.5\WSCStub.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Speicherinformationen =========================== BIOS: Acer R01-A0 03/29/2018 Hauptplatine: Acer Nitro N50-600 Prozessor: Intel(R) Core(TM) i7-8700 CPU @ 3.20GHz Prozentuale Nutzung des RAM: 31% Installierter physikalischer RAM: 16310.43 MB Verfügbarer physikalischer RAM: 11130.96 MB Summe virtueller Speicher: 18742.43 MB Verfügbarer virtueller Speicher: 11703.94 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:118.12 GB) (Free:45.2 GB) NTFS Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:162.54 GB) NTFS Drive e: (Seagate Expansion Drive) (Fixed) (Total:3725.9 GB) (Free:2978.88 GB) NTFS \\?\Volume{158b6cf8-3605-402c-9f7d-c6adc7246528}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.56 GB) NTFS \\?\Volume{93031703-a28a-4557-959b-fc33bc355b75}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: F1700972) Partition: GPT. ========================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 3338C6CD) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ========================================================== Disk: 2 (Size: 3726 GB) (Disk ID: B3EB5587) Partition: GPT. ==================== Ende von Addition.txt ======================= |
23.07.2020, 16:04 | #3 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Komische Fenster bei jedem Start von Windows Details Und was bitte sollen das für Fenster sein? Ohne irgendeinen Anhaltspunkt lässt sich nicht gezielt danach suchen.
__________________Und bitte mal aus dem Kopf bekommen, dass es nur Malware als einzige Ursache gibt.
__________________ Geändert von cosinus (03.08.2020 um 11:31 Uhr) Grund: typo |
23.07.2020, 16:17 | #4 |
Gesperrt | Lösung: Komische Fenster bei jedem Start von Windows Die Fenster sind nur ganz, ganz kurz da. Ich kann das so schnell nicht erkennen. |
23.07.2020, 16:34 | #5 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Wie Komische Fenster bei jedem Start von Windows Schädlingsfunde hast du ja keine. Mach erstmal ein Upgrade auf 2004.
__________________ Logfiles bitte immer in CODE-Tags posten |
23.07.2020, 16:54 | #6 |
Gesperrt | Wo Komische Fenster bei jedem Start von Windows Lösung! Was für ein Upgrade? |
23.07.2020, 20:16 | #7 |
/// Helfer-Team | Komische Fenster bei jedem Start von Windows Mal kurz reinspringe. Dein Windows ist nicht aktuell. Du hast Code:
ATTFilter Windows 10 Home Version 1909 18363.959 (X64) (2020-03-28 06:01:20)
__________________ LG Der Felix Keine Hilfe per PN und E-Mail |
Themen zu Komische Fenster bei jedem Start von Windows |
administrator, adobe, canon, cpu, defender, explorer, firefox, geforce, google, home, internet, microsoft, mozilla, nvcontainer.exe, nvidia, ordner, prozesse, realtek, registry, router, scan, sicherheit, sigcheck, software, spam, system, updates, windows, windowsapps |