|
Alles rund um Windows: Windows Update lässt sich nicht installierenWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
29.11.2020, 11:25 | #1 |
| Problem: Windows Update lässt sich nicht installieren Ihr Lieben ich kann leider kein Windows Update ausführen. Eigentlich wollte ich es nicht ausführen, wegen den ganzen Bugs, die man so liest und hört. Aber ich hatte keine andere Wahl: Das Update hat automatisch gestartet. Ich habe es momentan nur für Tage ausgesetzt. Ich habe Windows 1909 installiert und möchte gerne nun auf Windows 20H2 umsteigen. Habe mir daraus ein USB-Stick gemacht. Allerdings habe ich massiv Probleme. Ich habe bereits versucht
Ich habe mich an dieser Beschreibung gehalten, versucht alles anzugehen: https://www.deskmodder.de/wiki/index...ren_Windows_10 Vieles ist ja hier doppelt und dreifach. Habe mehrmals alles versucht. Den Reset Windows Update habe ich auch mehrmals gestartet.. https://gallery.technet.microsoft.co...Agent-d824badc Das ist immer die Fehlermeldung: Gerne könnt ihr das Log-Zip euch anschauen: https://we.tl/t-8IcLu03I1C |
29.11.2020, 12:43 | #2 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Update lässt sich nicht installieren Anleitung / Hilfe Wurde denn schon versucht, einfach das Setup aus dem aktuekllen 20H2-ISO-Image auszuführen um darüber das Upgrade zu machen?
__________________Zitat:
__________________ |
29.11.2020, 14:48 | #3 | |
| Windows Update lässt sich nicht installieren DetailsZitat:
Sorry, hier die Fehlermeldung: https://ibb.co/94Wf3bX |
29.11.2020, 15:03 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Lösung: Windows Update lässt sich nicht installieren Was soll denn dieser Quatsch mit USB? Ich rede hier von einem Upgrade aus dem laufenden System heraus. Da muss man nicht erst umständlich die ISO-Datei auf einen Stick auspacken. In ein virtuelles DVDROM Laufwerk bereitstellen und setup ausführen.
__________________ Logfiles bitte immer in CODE-Tags posten |
29.11.2020, 16:59 | #5 |
| Wie Windows Update lässt sich nicht installieren Also aus dem System heraus funktioniert es nicht. Deswegen habe ich auch gelesen - vielleicht per USB. |
29.11.2020, 17:24 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Wo Windows Update lässt sich nicht installieren Lösung! Wenn das reguläre Upgrade nicht funktioniert und auch die Methode setup.exe aus der aktuellen DVD auszuführen, dann geht halt nichts mehr. Dann musst du alle Daten sichern und Windows komplett neu installieren. Vllt ist aber auch deine Festplatte schon abgenutzt und hat fehlerhafte Sektoren. Dazu mal ein Log von CDI posten. Poste bitte auch FRST-Logfiles. Zustand der HDD/SSD ermitteln Um den Zustand deiner internen HDD/SSD zu ermitteln, benötigen wir die sog. SMART-Werte. Gehe dazu bitte nach dieser Anleitung vor. Das Log von Crystal Disk Info bitte in CODE-Tags posten.
__________________ --> Windows Update lässt sich nicht installieren |
29.11.2020, 17:30 | #7 |
| Windows Update lässt sich nicht installierenCode:
ATTFilter ---------------------------------------------------------------------------- CrystalDiskInfo 8.1.0 (C) 2008-2019 hiyohiyo Crystal Dew World : https://crystalmark.info/ ---------------------------------------------------------------------------- OS : Windows 10 [10.0 Build 18363] (x64) Date : 2020/11/29 17:29:28 -- Controller Map ---------------------------------------------------------- + Intel(R) PCHM SATA AHCI Controller 4 Port [ATA] - HGST HTS541010A9E680 - HL-DT-ST DVDRAM GT30N - Microsoft-Controller für Speicherplätze [SCSI] -- Disk List --------------------------------------------------------------- (1) HGST HTS541010A9E680 : 1000,2 GB [0/0/0, pd1] ---------------------------------------------------------------------------- (1) HGST HTS541010A9E680 ---------------------------------------------------------------------------- Model : HGST HTS541010A9E680 Firmware : JA0OA560 Serial Number : JA100AD902YMSK Disk Size : 1000,2 GB (8,4/137,4/1000,2/----) Buffer Size : 8192 KB Queue Depth : 32 # of Sectors : 1953525168 Rotation Rate : 5400 RPM Interface : Serial ATA Major Version : ATA8-ACS Minor Version : ATA8-ACS version 6 Transfer Mode : SATA/300 | SATA/600 Power On Hours : 5133 Std. Power On Count : 2183 mal Temperature : 33 C (91 F) Health Status : Gut Features : S.M.A.R.T., APM, 48bit LBA, NCQ APM Level : 4080h [ON] AAM Level : ---- Drive Letter : C: D: -- S.M.A.R.T. -------------------------------------------------------------- ID Cur Wor Thr RawValues(6) Attribute Name 01 100 100 _62 000000000000 Lesefehlerrate 02 100 100 _40 000000000000 Datendurchsatz-Leistung 03 181 181 _33 001200000001 Mittlere Anlaufzeit 04 _99 _99 __0 00000000089B Start/Stopp-Zyklen der Spindel 05 100 100 __5 000000000000 Wiederzugewiesene Sektoren 07 100 100 _67 000000000000 Suchfehler 08 100 100 _40 000000000000 Güte der Suchoperationen 09 _89 _89 __0 00000000140D Betriebsstunden 0A 100 100 _60 000000000000 Misslungene Spindelanläufe 0C _99 _99 __0 000000000887 Geräte-Einschaltvorgänge BF 100 100 __0 000000000000 Beschleunigungssensor-Fehlerrate C0 100 100 __0 0000000000BB Ausschaltungsabbrüche C1 _85 _85 __0 000000024CBF Laden/Entladen-Zyklen C2 181 181 __0 003500010021 Temperatur C4 100 100 __0 000000000000 Wiederzuweisungsereignisse C5 100 100 __0 000000000000 Aktuell ausstehende Sektoren C6 100 100 __0 000000000000 Nicht korrigierbare Sektoren C7 200 200 __0 000000000000 UltraDMA-CRC-Fehler DF 100 100 __0 000000000000 Laden/Entladen-Wiederholungen -- IDENTIFY_DEVICE --------------------------------------------------------- 0 1 2 3 4 5 6 7 8 9 000: 045A 3FFF C837 0010 0000 0000 003F 0000 0000 0000 010: 2020 2020 2020 4A41 3130 3041 4439 3032 594D 534B 020: 0003 4000 0004 4A41 304F 4135 3630 4847 5354 2048 030: 5453 3534 3130 3130 4139 4536 3830 2020 2020 2020 040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00 050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110 060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000 070: 0000 0000 0000 0000 0000 001F 170E 0004 005E 004C 080: 01FC 0028 746B 7D69 6163 7469 BC49 6163 407F 006F 090: 0070 4080 FFFE 0000 0000 0000 0000 0000 0000 0000 100: 6DB0 7470 0000 0000 0000 0000 6003 826C 5000 CCA8 110: 1EC1 57FF 0000 0000 0000 0000 0000 0000 0000 401C 120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 000B 130: 0000 0000 2182 1CF1 FA00 0000 4000 0400 0009 0000 140: 0000 0603 0702 0702 0504 0000 0000 0000 0000 0000 150: 0000 0003 304F 4235 0000 2804 0000 5DBD 2388 8000 160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000 170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000 210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000 220: 0000 0000 101F 0021 0000 0000 0000 0000 0000 0000 230: 0000 0000 0000 0000 0001 03E0 0000 0000 0000 0000 240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 250: 0000 0000 0000 0000 0000 94A5 -- SMART_READ_DATA --------------------------------------------------------- +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F 000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05 010: 00 64 64 00 00 00 00 00 00 00 03 07 00 B5 B5 01 020: 00 00 00 12 00 00 04 12 00 63 63 9B 08 00 00 00 030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B 040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00 050: 00 00 00 00 00 00 09 12 00 59 59 0D 14 00 00 00 060: 00 00 0A 13 00 64 64 00 00 00 00 00 00 00 0C 32 070: 00 63 63 87 08 00 00 00 00 00 BF 0A 00 64 64 00 080: 00 00 00 00 00 00 C0 32 00 64 64 BB 00 00 00 00 090: 00 00 C1 12 00 55 55 BF 4C 02 00 00 00 00 C2 02 0A0: 00 B5 B5 21 00 01 00 35 00 00 C4 32 00 64 64 00 0B0: 00 00 00 00 00 00 C5 22 00 64 64 00 00 00 00 00 0C0: 00 00 C6 08 00 64 64 00 00 00 00 00 00 00 C7 0A 0D0: 00 C8 C8 00 00 00 00 00 00 00 DF 0A 00 64 64 00 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 160: 00 00 00 00 00 00 00 00 00 00 00 00 2D 00 01 5B 170: 03 00 01 00 02 E0 00 00 00 00 00 00 00 00 00 00 180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 99 -- SMART_READ_THRESHOLD ---------------------------------------------------- +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F 000: 10 00 01 3E 00 00 00 00 00 00 00 00 00 00 02 28 010: 00 00 00 00 00 00 00 00 00 00 03 21 00 00 00 00 020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00 030: 00 00 05 05 00 00 00 00 00 00 00 00 00 00 07 43 040: 00 00 00 00 00 00 00 00 00 00 08 28 00 00 00 00 050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00 060: 00 00 0A 3C 00 00 00 00 00 00 00 00 00 00 0C 00 070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00 080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00 090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00 0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00 0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00 0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00 0D0: 00 00 00 00 00 00 00 00 00 00 DF 00 00 00 00 00 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 89 |
29.11.2020, 17:37 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Update lässt sich nicht installieren Die Platte ist ok. Was ist mit den FRST-Logs?
__________________ Logfiles bitte immer in CODE-Tags posten |
29.11.2020, 17:46 | #9 |
| Windows Update lässt sich nicht installierenCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:28-07-2015 durchgeführt von XXX (Administrator) auf ARBEITSCOMPUTER (29-11-2020 17:32:30) Gestartet von C:\Users\XXX XXX\Downloads Geladene Profile: XXX (Verfügbare Profile: XXX & XXX & Versuch & DefaultAppPool) Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) konnte nicht auf den Prozess zugreifen -> Registry (Microsoft Corporation) C:\WINDOWS\System32\fontdrvhost.exe (Microsoft Corporation) C:\WINDOWS\System32\fontdrvhost.exe konnte nicht auf den Prozess zugreifen -> Memory Compression (Microsoft Corporation) C:\WINDOWS\System32\dasHost.exe (pdfforge GmbH) C:\Program Files\PDF Architect 7\creator\common\creator-ws.exe (pdfforge GmbH) C:\Program Files\PDF Architect 7\updater-ws.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\MsMpEng.exe (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (pdfforge GmbH) C:\Program Files\PDF Architect 7\ws.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\WINDOWS\System32\snmp.exe (Microsoft Corporation) C:\WINDOWS\System32\mqsvc.exe (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\NisSrv.exe (Microsoft Corporation) C:\WINDOWS\System32\sihost.exe (Microsoft Corporation) C:\WINDOWS\System32\taskhostw.exe () C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe (Microsoft Corporation) C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\WINDOWS\System32\SettingSyncHost.exe (Mirko Böer) C:\Program Files\AmP\AmP.exe (Microsoft Corporation) C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (Microsoft Corporation) C:\WINDOWS\System32\SgrmBroker.exe (Microsoft Corporation) C:\WINDOWS\System32\SecurityHealthService.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\WINDOWS\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe (Microsoft Corporation) C:\WINDOWS\System32\SecurityHealthHost.exe (Microsoft Corporation) C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\WINDOWS\System32\ApplicationFrameHost.exe (Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation) C:\WINDOWS\System32\oobe\UserOOBEBroker.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SecurityHealth] => C:\Windows\system32\SecurityHealthSystray.exe [84992 2020-02-12] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8312352 2009-10-29] (Realtek Semiconductor) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [295936 2009-05-22] (Alps Electric Co., Ltd.) HKLM\...\Run: [PLFSetI] => C:\Windows\PLFSetI.exe [200704 2011-11-13] () HKLM\...\Run: [mwlDaemon] => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [349480 2009-09-11] (Egis Technology Inc.) HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [323072 2009-07-22] (AlcorMicro Co., Ltd.) HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [823840 2009-09-30] (Acer Incorporated) HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [3942216 2011-01-25] (O&O Software GmbH) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3951280 2016-01-07] (Synaptics Incorporated) HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2254152 2020-09-01] (voidtools) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [827200 2020-10-07] (Acronis International GmbH) HKLM-x32\...\Run: [SimpleScreenshot] => C:\Program Files (x86)\SSS\SimpleScreenshot.exe [2255360 2008-02-09] (Mirko Böer) HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1094736 2009-11-02] (Dritek System Inc.) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5806664 2020-10-07] () HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6261760 2020-02-04] (Dropbox, Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [483976 2020-08-13] (Geek Software GmbH) HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [28832864 2019-03-19] (Microsoft Corporation) HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [28832864 2019-03-19] (Microsoft Corporation) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [OneDrive] => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\OneDrive.exe [1938296 2020-11-23] (Microsoft Corporation) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [HP Photosmart 5520 series (NET)] => C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2852128 2016-08-03] (Valve Corporation) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [MyDriveConnect.exe] => C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe -startwithoutDA HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [HP OfficeJet 3830 series (NET)] => C:\Program Files\HP\HP OfficeJet 3830 series\Bin\ScanToPCActivationApp.exe [3770504 2017-03-27] (HP Inc.) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22515488 2019-04-04] (Piriform Software Ltd) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [WinPatrol] => C:\Program Files (x86)\Ruiware\WinPatrol\winpatrol.exe [1223560 2017-05-08] (Ruiware) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [com.squirrel.Teams.Teams] => C:\Users\XXX XXX\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [HP OfficeJet 3830 series (NET) #2] => C:\Program Files\HP\HP OfficeJet 3830 series\Bin\ScanToPCActivationApp.exe [3770504 2017-03-27] (HP Inc.) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [Convert2MP3 - YouTube Downloader] => C:\Users\XXX XXX\AppData\Local\Programs\convert2mp3-youtube-downloader\Convert2MP3 - YouTube Downloader.exe [86154240 2020-04-04] (Convert2MP3) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [2469184 2020-11-12] (Digital Wave Ltd) ShellIconOverlayIdentifiers: [ AcronisDrive] -> {5D74FD4B-4EFB-4586-8022-8637BBE40970} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll [2020-10-07] () ShellIconOverlayIdentifiers: [ AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll [2020-10-07] () ShellIconOverlayIdentifiers: [ AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll [2020-10-07] () ShellIconOverlayIdentifiers: [ AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll [2020-10-07] () ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\psdprotect.dll [2009-09-11] (Egis Technology Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.0.dll [2020-02-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileSyncShell.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileSyncShell.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileSyncShell.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileSyncShell.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileSyncShell.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileSyncShell.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileSyncShell.dll [2020-11-23] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\psdprotect.dll [2009-09-11] (Egis Technology Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-21-1242904208-471078349-2963378918-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP HKU\S-1-5-21-1242904208-471078349-2963378918-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\S-1-5-21-1242904208-471078349-2963378918-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} BHO: IEToEdge BHO -> {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} -> C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.47\BHO\ie_to_edge_bho_64.dll [2020-11-23] (Microsoft Corporation) BHO: PDF Architect 7 Helper -> {2B035CAB-1F3D-4DE6-A32D-39B9E5F456D0} -> C:\Program Files\PDF Architect 7\creator\plugins\IEAddin\creator-ie-helper.dll [2019-10-07] (pdfforge GmbH) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-09-14] (Microsoft Corporation) BHO: PDF Architect 6 Helper -> {9FD094B1-A4BF-415A-82AE-8C2845D0B769} -> C:\Program Files\PDF Architect 6\creator\plugins\IEAddin\creator-ie-helper.dll [2018-10-23] (pdfforge GmbH) BHO-x32: IEToEdge BHO -> {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} -> C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.47\BHO\ie_to_edge_bho.dll [2020-11-23] (Microsoft Corporation) BHO-x32: PDF Architect 7 Helper -> {2B035CAB-1F3D-4DE6-A32D-39B9E5F456D0} -> C:\Program Files (x86)\PDF Architect 7\creator\plugins\IEAddin\creator-ie-helper.dll [2019-10-07] (pdfforge GmbH) BHO-x32: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files (x86)\PDF Architect 4\creator-ie-helper.dll [2016-08-05] (pdfforge GmbH) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\ssv.dll [2018-08-12] (Oracle Corporation) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2020-06-24] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: PDF Architect 6 Helper -> {9FD094B1-A4BF-415A-82AE-8C2845D0B769} -> C:\Program Files (x86)\PDF Architect 6\creator\plugins\IEAddin\creator-ie-helper.dll [2018-10-23] (pdfforge GmbH) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-08-12] (Oracle Corporation) Toolbar: HKLM - PDF Architect 6 Toolbar - {E8536605-CA24-4DFF-B1BC-316EE27F6DF7} - C:\Program Files\PDF Architect 6\creator\plugins\IEAddin\creator-ie-plugin.dll [2018-10-23] (pdfforge GmbH) Toolbar: HKLM - PDF Architect 7 Toolbar - {61E612A7-2382-4570-8D3F-42BC136DDAD7} - C:\Program Files\PDF Architect 7\creator\plugins\IEAddin\creator-ie-plugin.dll [2019-10-07] (pdfforge GmbH) Toolbar: HKLM-x32 - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files (x86)\PDF Architect 4\creator-ie-plugin.dll [2016-08-05] (pdfforge GmbH) Toolbar: HKLM-x32 - PDF Architect 6 Toolbar - {E8536605-CA24-4DFF-B1BC-316EE27F6DF7} - C:\Program Files (x86)\PDF Architect 6\creator\plugins\IEAddin\creator-ie-plugin.dll [2018-10-23] (pdfforge GmbH) Toolbar: HKLM-x32 - PDF Architect 7 Toolbar - {61E612A7-2382-4570-8D3F-42BC136DDAD7} - C:\Program Files (x86)\PDF Architect 7\creator\plugins\IEAddin\creator-ie-plugin.dll [2019-10-07] (pdfforge GmbH) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll [2020-10-15] (Microsoft Corporation) Handler-x32: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll [2020-10-15] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{15ef09c9-ceb0-425c-a5ac-002b19b46047}: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{c020751a-5210-47b5-9035-51239104e46c}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{c10dcd24-bf50-4b4b-b20c-22407fc328c8}: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729 FF Homepage: about:newtab FF NetworkProxy: "backup.ftp", "" FF NetworkProxy: "backup.ftp_port", 0 FF NetworkProxy: "backup.ssl", "" FF NetworkProxy: "backup.ssl_port", 0 FF NetworkProxy: "ftp", "138.68.161.14" FF NetworkProxy: "ftp_port", 8080 FF NetworkProxy: "http", "138.68.161.14" FF NetworkProxy: "http_port", 8080 FF NetworkProxy: "share_proxy_settings", true FF NetworkProxy: "ssl", "138.68.161.14" FF NetworkProxy: "ssl_port", 8080 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_445.dll [2020-10-22] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_445.dll [2020-10-22] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-08] () FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-08-12] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-08-12] (Oracle Corporation) FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files (x86)\Yahoo!\Shared\npYState.dll [2012-05-25] (Yahoo! Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-14] (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> C:\Program Files (x86)\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-11-19] (Adobe Systems Inc.) FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [2016-08-05] (pdfforge GmbH) FF Plugin-x32: PDF Architect 6 -> C:\Program Files (x86)\PDF Architect 6\np-previewer.dll [2018-10-23] (pdfforge GmbH) FF Plugin HKU\S-1-5-21-1242904208-471078349-2963378918-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\XXX XXX\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-05-18] (Zoom Video Communications, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2020-11-19] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Users\XXX XXX\AppData\Roaming\mozilla\plugins\npatgpc.dll [2017-08-30] (Cisco WebEx LLC) FF Extension: Kein Name - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\ciscowebexstart1@cisco.com.xpi [2020-05-11] FF Extension: Kein Name - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\firefox@ghostery.com.xpi [2019-12-28] FF Extension: Kein Name - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\foxyproxy@eric.h.jung.xpi [2020-03-06] FF Extension: Kein Name - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\{baf0ead8-2703-4b97-9417-3f01dca53a77}.xpi [2019-12-28] FF Extension: Kein Name - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\{d85e8352-eab4-4933-ad58-d06dd168081b}.xpi [2019-12-28] FF Extension: Kein Name - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\{dba2afc7-e7f1-4ff1-90cb-b815a84c5810}.xpi [2019-12-28] FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension FF Extension: PDF Architect 4 Creator - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2017-10-24] FF HKLM\...\Firefox\Extensions: [pdf_architect_6_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 6\creator\plugins\FirefoxAddin\pdf_architect_6_conv_v.2@pdfforge.org.xpi FF Extension: Kein Name - C:\Program Files\PDF Architect 6\creator\plugins\FirefoxAddin\pdf_architect_6_conv_v.2@pdfforge.org.xpi [2018-09-18] FF HKLM\...\Firefox\Extensions: [pdf_architect_7_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 7\creator\plugins\FirefoxAddin\pdf_architect_7_conv_v.2@pdfforge.org.xpi FF Extension: Kein Name - C:\Program Files\PDF Architect 7\creator\plugins\FirefoxAddin\pdf_architect_7_conv_v.2@pdfforge.org.xpi [2019-10-02] FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_6_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 6\creator\plugins\FirefoxAddin\pdf_architect_6_conv_v.2@pdfforge.org.xpi FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_7_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 7\creator\plugins\FirefoxAddin\pdf_architect_7_conv_v.2@pdfforge.org.xpi Chrome: ======= CHR Profile: C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default CHR Extension: (Slides) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-01] CHR Extension: (Docs) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-07-28] CHR Extension: (Google Drive) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-25] CHR Extension: (YouTube) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-25] CHR Extension: (Sheets) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-01] CHR Extension: (Avira Browser Safety) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2017-07-28] CHR Extension: (Google Docs Offline) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-08] CHR Extension: (Chrome Web Store Payments) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-07-28] CHR Extension: (Gmail) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-25] CHR Extension: (Chrome Media Router) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-19] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - https://clients2.google.com/service/update2/crx ==================== Services (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S4 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [15749536 2020-10-07] (Acronis International GmbH) S4 AAV UpdateService; C:\Program Files (x86)\Common Files\AAV\aavus.exe [122880 2007-10-04] () [Datei ist nicht signiert] S4 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [10369952 2020-10-07] () S4 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1412984 2020-10-07] (Acronis International GmbH) S4 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-10-22] (Adobe) S4 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6388072 2020-11-20] () S3 AJRouter; C:\Windows\System32\AJRouter.dll [25088 2019-03-19] (Microsoft Corporation) S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.) S3 autotimesvc; C:\Windows\System32\autotimesvc.dll [116224 2019-03-19] (Microsoft Corporation) S4 BotkindSyncService; C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe [182784 2013-10-10] () [Datei ist nicht signiert] R2 BrokerInfrastructure; C:\Windows\System32\psmsrv.dll [237056 2020-07-19] (Microsoft Corporation) R3 BTAGService; C:\Windows\System32\BTAGService.dll [1077248 2020-10-15] (Microsoft Corporation) R3 BTAGService; C:\Windows\SysWOW64\BTAGService.dll [705536 2020-10-15] (Microsoft Corporation) R3 BthAvctpSvc; C:\Windows\System32\BthAvctpSvc.dll [382976 2019-03-19] (Microsoft Corporation) R3 camsvc; C:\Windows\system32\CapabilityAccessManager.dll [368640 2020-06-09] (Microsoft Corporation) R2 CDPSvc; C:\Windows\System32\CDPSvc.dll [648192 2020-09-12] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9057136 2020-11-04] (Microsoft Corporation) R3 ClipSVC; C:\Windows\System32\ClipSVC.dll [1026800 2020-10-15] (Microsoft Corporation) R2 CoreMessagingRegistrar; C:\Windows\system32\coremessaging.dll [858928 2020-09-12] (Microsoft Corporation) R2 CoreMessagingRegistrar; C:\Windows\SysWOW64\coremessaging.dll [553664 2020-09-12] (Microsoft Corporation) S4 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-02-04] (Dropbox, Inc.) S4 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-02-04] (Dropbox, Inc.) S4 DbxSvc; C:\Windows\system32\DbxSvc.exe [44552 2020-02-04] (Dropbox, Inc.) S3 DevQueryBroker; C:\Windows\system32\DevQueryBroker.dll [34816 2019-12-17] (Microsoft Corporation) S3 diagnosticshub.standardcollector.service; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [97792 2020-09-12] (Microsoft Corporation) S3 diagsvc; C:\Windows\system32\DiagSvc.dll [215040 2020-07-19] (Microsoft Corporation) S4 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [438592 2020-11-12] (Digital Wave Ltd) R2 DispBrokerDesktopSvc; C:\Windows\System32\DispBroker.Desktop.dll [405504 2020-08-12] (Microsoft Corporation) R3 DisplayEnhancementService; C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll [1190912 2020-03-20] (Microsoft Corporation) S3 DmEnrollmentSvc; C:\Windows\system32\Windows.Internal.Management.dll [931840 2020-07-19] (Microsoft Corporation) S3 DmEnrollmentSvc; C:\Windows\SysWOW64\Windows.Internal.Management.dll [653824 2020-07-19] (Microsoft Corporation) S3 dmwappushservice; C:\Windows\system32\dmwappushsvc.dll [58368 2019-03-19] (Microsoft Corporation) R2 DoSvc; C:\Windows\System32\svchost.exe [53744 2019-03-19] (Microsoft Corporation) R2 DoSvc; C:\Windows\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Corporation) R3 DsSvc; C:\Windows\System32\DsSvc.dll [157696 2020-02-12] (Microsoft Corporation) R2 DusmSvc; C:\Windows\System32\dusmsvc.dll [358912 2020-03-20] (Microsoft Corporation) S2 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [224160 2020-07-09] (Microsoft Corporation) S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [224160 2020-07-09] (Microsoft Corporation) S3 embeddedmode; C:\Windows\System32\embeddedmodesvc.dll [172032 2019-03-19] (Microsoft Corporation) S3 EntAppSvc; C:\Windows\system32\EnterpriseAppMgmtSvc.dll [554496 2020-10-15] (Microsoft Corporation) S4 Everything; C:\Program Files\Everything\Everything.exe [2254152 2020-09-01] (voidtools) S4 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [241704 2014-03-25] (Foxit Corporation) S3 FrameServer; C:\Windows\system32\FrameServer.dll [749568 2020-02-12] (Microsoft Corporation) S4 GoogleChromeElevationService; C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\elevation_service.exe [1406448 2020-11-11] (Google LLC) S3 GraphicsPerfSvc; C:\Windows\System32\GraphicsPerfSvc.dll [97792 2019-03-19] (Microsoft Corporation) S4 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89864 2014-12-11] (Hewlett-Packard Company) S3 HvHost; C:\Windows\System32\hvhostsvc.dll [61240 2019-11-13] (Microsoft Corporation) S3 icssvc; C:\Windows\System32\tetheringservice.dll [236032 2019-10-07] (Microsoft Corporation) R3 InstallService; C:\Windows\system32\InstallService.dll [2485248 2020-10-15] (Microsoft Corporation) R3 InstallService; C:\Windows\SysWOW64\InstallService.dll [1751040 2020-10-15] (Microsoft Corporation) S3 IpxlatCfgSvc; C:\Windows\System32\IpxlatCfg.dll [64512 2019-03-19] (Microsoft Corporation) R3 lfsvc; C:\Windows\System32\lfsvc.dll [47104 2019-03-19] (Microsoft Corporation) R3 LicenseManager; C:\Windows\system32\LicenseManagerSvc.dll [50176 2019-03-19] (Microsoft Corporation) S3 LxpSvc; C:\Windows\System32\LanguageOverlayServer.dll [340992 2020-08-12] (Microsoft Corporation) S2 MapsBroker; C:\Windows\System32\moshost.dll [92160 2019-03-19] (Microsoft Corporation) S3 MicrosoftEdgeElevationService; C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.47\elevation_service.exe [1573776 2020-11-23] (Microsoft Corporation) S3 MixedRealityOpenXRSvc; C:\Windows\System32\MixedRealityRuntime.dll [139952 2020-04-26] (Microsoft Corporation) S3 MixedRealityOpenXRSvc; C:\Windows\SysWOW64\MixedRealityRuntime.dll [105840 2020-04-26] (Microsoft Corporation) S4 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4808088 2020-10-07] (Acronis International GmbH) S4 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2020-10-07] (Acronis International GmbH) S4 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2093376 2020-10-07] () R2 MSMQ; C:\Windows\system32\mqsvc.exe [26112 2019-03-19] (Microsoft Corporation) S3 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [305448 2009-09-11] (Egis Technology Inc.) S3 NaturalAuthentication; C:\Windows\System32\NaturalAuth.dll [831488 2019-03-19] (Microsoft Corporation) R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert] S3 NetSetupSvc; C:\Windows\System32\NetSetupSvc.dll [336896 2019-03-19] (Microsoft Corporation) S3 NgcCtnrSvc; C:\Windows\System32\NgcCtnrSvc.dll [810496 2019-09-12] (Microsoft Corporation) S3 NgcSvc; C:\Windows\system32\ngcsvc.dll [957952 2019-07-30] (Microsoft Corporation) S4 NoIPDUCService4; C:\Program Files (x86)\No-IP\ducservice.exe [11264 2013-01-24] () [Datei ist nicht signiert] S4 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [3051848 2011-01-25] (O&O Software GmbH) S4 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [80896 2011-03-31] () [Datei ist nicht signiert] S4 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2438880 2016-08-05] (pdfforge GmbH) S4 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-08-05] (pdfforge GmbH) S4 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2016-08-05] (pdfforge GmbH) S4 PDF Architect 6; C:\Program Files\PDF Architect 6\ws.exe [2569976 2018-10-23] (pdfforge GmbH) S4 PDF Architect 6 Creator; C:\Program Files\PDF Architect 6\creator\common\creator-ws.exe [832248 2018-10-23] (pdfforge GmbH) S4 PDF Architect 6 Update Service; C:\Program Files\PDF Architect 6\updater-ws.exe [1665272 2018-10-23] (pdfforge GmbH) R2 PDF Architect 7; C:\Program Files\PDF Architect 7\ws.exe [2579752 2019-10-07] (pdfforge GmbH) R2 PDF Architect 7 Creator; C:\Program Files\PDF Architect 7\creator\common\creator-ws.exe [692008 2019-10-07] (pdfforge GmbH) R2 PDF Architect 7 Update Service; C:\Program Files\PDF Architect 7\updater-ws.exe [1832232 2019-10-07] (pdfforge GmbH) S4 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [483976 2020-08-13] (Geek Software GmbH) S3 perceptionsimulation; C:\Windows\system32\PerceptionSimulation\PerceptionSimulationService.exe [103424 2019-03-19] (Microsoft Corporation) R3 PhoneSvc; C:\Windows\System32\PhoneService.dll [943616 2020-05-14] (Microsoft Corporation) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert] S3 PushToInstall; C:\Windows\system32\PushToInstall.dll [284672 2020-10-15] (Microsoft Corporation) S3 RetailDemo; C:\Windows\system32\RDXService.dll [736768 2020-04-26] (Microsoft Corporation) S3 RmSvc; C:\Windows\System32\RMapi.dll [157184 2020-08-12] (Microsoft Corporation) S4 RS_Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [253952 2009-07-10] (Acer Incorporated) [Datei ist nicht signiert] S4 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2020\RpcAgentSrv.exe [135176 2020-04-27] (SiSoftware) [Datei ist nicht signiert] R3 SecurityHealthService; C:\Windows\system32\SecurityHealthService.exe [933288 2020-10-15] (Microsoft Corporation) S3 SEMgrSvc; C:\Windows\system32\SEMgrSvc.dll [1271296 2020-07-19] (Microsoft Corporation) S3 SensorDataService; C:\Windows\System32\SensorDataService.exe [1264128 2019-03-19] (Microsoft Corporation) S3 SensorService; C:\Windows\system32\SensorService.dll [487424 2019-03-19] (Microsoft Corporation) R2 SgrmBroker; C:\Windows\system32\SgrmBroker.exe [263904 2019-03-19] (Microsoft Corporation) S3 SharedRealitySvc; C:\Windows\System32\SharedRealitySvc.dll [477184 2020-06-09] (Microsoft Corporation) S4 shpamsvc; C:\Windows\system32\Windows.SharedPC.AccountManager.dll [239104 2019-03-19] (Microsoft Corporation) S3 SmsRouter; C:\Windows\system32\SmsRouterSvc.dll [599552 2019-10-07] (Microsoft Corporation) R2 SNMP; C:\Windows\System32\snmp.exe [53248 2019-07-19] (Microsoft Corporation) R2 SNMP; C:\Windows\SysWOW64\snmp.exe [46592 2019-07-19] (Microsoft Corporation) S3 spectrum; C:\Windows\system32\spectrum.exe [986112 2020-10-15] (Microsoft Corporation) S4 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [384512 2019-03-19] () R3 StateRepository; C:\Windows\system32\windows.staterepository.dll [5284328 2020-09-12] (Microsoft Corporation) R3 StateRepository; C:\Windows\SysWOW64\windows.staterepository.dll [5003832 2020-09-12] (Microsoft Corporation) S4 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7388888 2020-10-07] () S4 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246448 2016-01-07] (Synaptics Incorporated) S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10888944 2017-04-25] (TeamViewer GmbH) S4 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5871520 2020-10-07] (Acronis International GmbH) S3 TieringEngineService; C:\Windows\system32\TieringEngineService.exe [316928 2019-03-19] (Microsoft Corporation) R3 TimeBrokerSvc; C:\Windows\System32\TimeBrokerServer.dll [172032 2019-03-19] (Microsoft Corporation) R3 TokenBroker; C:\Windows\System32\TokenBroker.dll [1499136 2020-10-15] (Microsoft Corporation) R3 TokenBroker; C:\Windows\SysWOW64\TokenBroker.dll [1246208 2020-10-15] (Microsoft Corporation) S3 TroubleshootingSvc; C:\Windows\system32\MitigationClient.dll [394752 2019-03-19] (Microsoft Corporation) S4 tzautoupdate; C:\Windows\system32\tzautoupdate.dll [96768 2019-07-30] (Microsoft Corporation) S4 tzautoupdate; C:\Windows\SysWOW64\tzautoupdate.dll [72704 2019-07-30] (Microsoft Corporation) S4 uhssvc; C:\Program Files\Microsoft Update Health Tools\uhssvc.exe [310576 2020-09-10] (Microsoft Corporation) S4 UI Assistant Service; C:\Program Files (x86)\Join Air\AssistantServices.exe [247152 2010-04-27] () R2 UserManager; C:\Windows\System32\usermgr.dll [1285120 2020-10-15] (Microsoft Corporation) R2 UsoSvc; C:\Windows\system32\usosvc.dll [544256 2020-09-12] (Microsoft Corporation) S3 VacSvc; C:\Windows\System32\vac.dll [422192 2019-03-19] (Microsoft Corporation) S3 vmicrdv; C:\Windows\System32\icsvcext.dll [311808 2019-03-19] (Microsoft Corporation) S3 vmicvmsession; C:\Windows\System32\icsvc.dll [302392 2019-03-19] (Microsoft Corporation) S3 vmicvss; C:\Windows\System32\icsvcext.dll [311808 2019-03-19] (Microsoft Corporation) S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [91136 2019-03-19] (Microsoft Corporation) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [568320 2019-03-19] (Microsoft Corporation) S3 WaaSMedicSvc; C:\Windows\System32\WaaSMedicSvc.dll [355840 2020-08-12] (Microsoft Corporation) S3 WalletService; C:\Windows\system32\WalletService.dll [432640 2020-08-12] (Microsoft Corporation) S3 WarpJITSvc; C:\Windows\System32\Windows.WARP.JITService.dll [61952 2019-03-19] (Microsoft Corporation) S3 WFDSConMgrSvc; C:\Windows\System32\wfdsconmgrsvc.dll [740352 2019-03-19] (Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-06] (Microsoft Corporation) S3 wisvc; C:\Windows\system32\flightsettings.dll [893952 2020-05-14] (Microsoft Corporation) S3 wisvc; C:\Windows\SysWOW64\flightsettings.dll [729600 2020-05-14] (Microsoft Corporation) S3 wlpasvc; C:\Windows\System32\lpasvc.dll [1390080 2019-03-19] (Microsoft Corporation) S3 WManSvc; C:\Windows\system32\Windows.Management.Service.dll [922624 2020-07-19] (Microsoft Corporation) S3 WpcMonSvc; C:\Windows\System32\WpcDesktopMonSvc.dll [2136064 2020-08-12] (Microsoft Corporation) R2 WpnService; C:\Windows\system32\WpnService.dll [255488 2020-09-12] (Microsoft Corporation) S3 XblAuthManager; C:\Windows\System32\XblAuthManager.dll [1063936 2019-03-19] (Microsoft Corporation) S3 XblGameSave; C:\Windows\System32\XblGameSave.dll [1263616 2020-05-14] (Microsoft Corporation) S3 XboxGipSvc; C:\Windows\System32\XboxGipSvc.dll [72704 2019-03-19] (Microsoft Corporation) S3 XboxNetApiSvc; C:\Windows\system32\XboxNetApiSvc.dll [1268224 2019-03-19] (Microsoft Corporation) R3 WdNisSvc; "%ProgramData%\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe" [X] ==================== Drivers (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AarSvc; No ImagePath S3 AarSvc_68d62; No ImagePath S3 AcpiDev; C:\Windows\System32\drivers\AcpiDev.sys [20992 2019-03-19] (Microsoft Corporation) S3 Acx01000; C:\Windows\System32\drivers\Acx01000.sys [337920 2020-03-20] (Microsoft Corporation) R1 afunix; C:\Windows\system32\drivers\afunix.sys [40960 2020-08-12] (Microsoft Corporation) S3 amdgpio2; C:\Windows\System32\drivers\amdgpio2.sys [18432 2019-03-19] (Advanced Micro Devices, Inc) S3 amdi2c; C:\Windows\System32\drivers\amdi2c.sys [37888 2019-03-19] (Advanced Micro Devices, Inc) S3 ampa; C:\WINDOWS\system32\ampa.sys [19568 2015-11-10] () [Datei ist nicht signiert] S3 ampa; C:\WINDOWS\SysWOW64\ampa.sys [19568 2015-11-10] () [Datei ist nicht signiert] S3 applockerfltr; C:\Windows\System32\drivers\applockerfltr.sys [18432 2020-10-15] (Microsoft Corporation) R3 athr; C:\Windows\System32\drivers\athwnx.sys [4233728 2019-03-19] (Qualcomm Atheros Communications, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices) S0 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [534032 2019-03-19] (QLogic Corporation) R1 bam; C:\Windows\System32\drivers\bam.sys [70456 2019-03-19] (Microsoft Corporation) R1 BasicDisplay; C:\Windows\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_307898c750ba9e44\BasicDisplay.sys [68096 2019-09-12] (Microsoft Corporation) R1 BasicRender; C:\Windows\System32\DriverStore\FileRepository\basicrender.inf_amd64_ba2a8de08ea0d469\BasicRender.sys [37888 2019-09-12] (Microsoft Corporation) S3 BcastDVRUserService; No ImagePath S3 BcastDVRUserService_68d62; No ImagePath R2 BdDci; C:\Windows\system32\DRIVERS\bddci.sys [367096 2020-10-07] (Bitdefender) S3 bindflt; C:\Windows\system32\drivers\bindflt.sys [117264 2020-02-12] (Microsoft Corporation) S3 BluetoothUserService; No ImagePath S3 BluetoothUserService_68d62; No ImagePath R3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [231936 2020-03-20] (Microsoft Corporation) R3 BthHFAud; C:\Windows\System32\drivers\BthHfAud.sys [57856 2019-03-19] (Microsoft Corporation) R3 BthLEEnum; C:\Windows\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [97280 2019-03-19] (Microsoft Corporation) S3 BthMini; C:\Windows\System32\drivers\BTHMINI.sys [36864 2020-03-20] (Microsoft Corporation) S0 bttflt; C:\Windows\System32\drivers\bttflt.sys [42808 2019-03-19] (Microsoft Corporation) S3 buttonconverter; C:\Windows\System32\drivers\buttonconverter.sys [43008 2019-03-19] (Microsoft Corporation) R3 CAD; C:\Windows\System32\drivers\CAD.sys [64312 2019-03-19] (Microsoft Corporation) S3 CaptureService; No ImagePath S3 CaptureService_68d62; No ImagePath S3 cbdhsvc; No ImagePath R3 cbdhsvc_68d62; No ImagePath S2 CDPUserSvc; No ImagePath R2 CDPUserSvc_68d62; No ImagePath S0 cht4iscsi; C:\Windows\System32\drivers\cht4sx64.sys [319528 2019-03-19] (Chelsio Communications) S3 cht4vbd; C:\Windows\System32\drivers\cht4vx64.sys [1866768 2019-03-19] (Chelsio Communications) R2 CldFlt; C:\Windows\System32\drivers\cldflt.sys [457216 2020-04-26] (Microsoft Corporation) S4 cnghwassist; C:\Windows\System32\DRIVERS\cnghwassist.sys [40760 2019-03-19] (Microsoft Corporation) R3 CompositeBus; C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_43ac632006e874bb\CompositeBus.sys [40960 2019-09-12] (Microsoft Corporation) S3 ConsentUxUserSvc; No ImagePath S3 ConsentUxUserSvc_68d62; No ImagePath S3 CredentialEnrollmentManagerUserSvc; No ImagePath S3 CredentialEnrollmentManagerUserSvc_68d62; No ImagePath S3 DeviceAssociationBrokerSvc; No ImagePath S3 DeviceAssociationBrokerSvc_68d62; No ImagePath S3 DevicePickerUserSvc; No ImagePath S3 DevicePickerUserSvc_68d62; No ImagePath S3 DevicesFlowUserSvc; No ImagePath S3 DevicesFlowUserSvc_68d62; No ImagePath S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3419176 2019-03-19] (QLogic Corporation) R2 EkaProt6; C:\Windows\system32\DRIVERS\ekaprot6.sys [27288 2012-03-23] (Ekahau Inc.) R1 FileCrypt; C:\Windows\System32\drivers\filecrypt.sys [59392 2019-03-19] (Microsoft Corporation) R2 file_protector; C:\Windows\System32\DRIVERS\file_protector.sys [694408 2020-11-20] (Acronis International GmbH) R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [386688 2020-11-20] (Acronis International GmbH) S3 genericusbfn; C:\Windows\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_b9c53b80e63af230\genericusbfn.sys [20992 2019-09-12] (Microsoft Corporation) R1 GpuEnergyDrv; C:\Windows\System32\drivers\gpuenergydrv.sys [8704 2019-03-19] (Microsoft Corporation) S3 hidinterrupt; C:\Windows\System32\drivers\hidinterrupt.sys [53560 2019-03-19] (Microsoft Corporation) S3 hidspi; C:\Windows\System32\drivers\hidspi.sys [64512 2020-10-15] (Microsoft Corporation) S4 hvcrash; C:\Windows\System32\drivers\hvcrash.sys [32568 2019-03-19] (Microsoft Corporation) S3 hvservice; C:\Windows\System32\drivers\hvservice.sys [84280 2020-10-15] (Microsoft Corporation) S3 HwNClx0101; C:\Windows\System32\Drivers\mshwnclx.sys [28672 2019-03-19] (Microsoft Corporation) S3 iagpio; C:\Windows\System32\drivers\iagpio.sys [36352 2019-03-19] (Intel(R) Corporation) S3 iai2c; C:\Windows\System32\drivers\iai2c.sys [91136 2019-03-19] (Intel(R) Corporation) S3 iaLPSS2i_GPIO2; C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [79360 2019-03-19] (Intel Corporation) S3 iaLPSS2i_GPIO2_BXT_P; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184 2019-03-19] (Intel Corporation) S3 iaLPSS2i_GPIO2_CNL; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128 2019-03-19] (Intel Corporation) S3 iaLPSS2i_GPIO2_GLK; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256 2019-03-19] (Intel Corporation) S3 iaLPSS2i_I2C; C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [171520 2019-03-19] (Intel Corporation) S3 iaLPSS2i_I2C_BXT_P; C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104 2019-03-19] (Intel Corporation) S3 iaLPSS2i_I2C_CNL; C:\Windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736 2019-03-19] (Intel Corporation) S3 iaLPSS2i_I2C_GLK; C:\Windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664 2019-03-19] (Intel Corporation) S0 iaStorAVC; C:\Windows\System32\drivers\iaStorAVC.sys [885048 2019-03-19] (Intel Corporation) S3 ibbus; C:\Windows\System32\drivers\ibbus.sys [566800 2019-03-19] (Mellanox) S3 IndirectKmd; C:\Windows\System32\drivers\IndirectKmd.sys [46592 2019-03-19] (Microsoft Corporation) S3 intelpmax; C:\Windows\System32\drivers\intelpmax.sys [28672 2019-03-19] (Microsoft Corporation) R0 iorate; C:\Windows\System32\drivers\iorate.sys [56632 2019-03-19] (Microsoft Corporation) S3 IPT; C:\Windows\System32\drivers\ipt.sys [54584 2019-03-19] (Microsoft Corporation) S0 ItSas35i; C:\Windows\System32\drivers\ItSas35i.sys [148520 2019-03-19] (Avago Technologies) S0 LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [124448 2019-03-19] (LSI Corporation) S0 LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [128528 2019-03-19] (Avago Technologies) S3 mausbhost; C:\Windows\System32\drivers\mausbhost.sys [535864 2019-03-19] (Microsoft Corporation) S3 mausbip; C:\Windows\System32\drivers\mausbip.sys [62264 2019-03-19] (Microsoft Corporation) S3 MbbCx; C:\Windows\System32\drivers\MbbCx.sys [359424 2019-11-05] (Microsoft Corporation) S0 megasas; C:\Windows\System32\drivers\megasas.sys [59920 2019-03-19] (Avago Technologies) S0 megasas2i; C:\Windows\System32\drivers\MegaSas2i.sys [75280 2019-03-19] (Avago Technologies) S0 megasas35i; C:\Windows\System32\drivers\megasas35i.sys [94736 2019-03-19] (Avago Technologies) S3 MessagingService; No ImagePath S3 MessagingService_68d62; No ImagePath R3 Microsoft_Bluetooth_AvrcpTransport; C:\Windows\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [64512 2019-03-19] (Microsoft Corporation) S3 mlx4_bus; C:\Windows\System32\drivers\mlx4_bus.sys [1150480 2019-03-19] (Mellanox) R2 MMCSS; C:\Windows\system32\drivers\mmcss.sys [53760 2019-03-19] (Microsoft Corporation) R3 MpKsl4a4a46e6; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{21C07493-F2AA-4F51-9275-84C5D244DDB4}\MpKslDrv.sys [47336 2020-11-29] (Microsoft Corporation) R2 MQAC; C:\Windows\System32\drivers\mqac.sys [185344 2019-03-19] (Microsoft Corporation) S3 ndfltr; C:\Windows\System32\drivers\ndfltr.sys [153616 2019-03-19] (Mellanox) S3 NDKPing; C:\Windows\System32\drivers\NDKPing.sys [63488 2019-03-19] (Microsoft Corporation) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [187904 2019-03-19] (Microsoft Corporation) S3 netvsc; C:\Windows\System32\drivers\netvsc.sys [246072 2019-03-19] (Microsoft Corporation) R1 ngscan; C:\Windows\System32\DRIVERS\ngscan.sys [167728 2020-10-07] (Acronis International GmbH) S3 nvdimm; C:\Windows\System32\drivers\nvdimm.sys [158520 2019-03-19] (Microsoft Corporation) S2 OneSyncSvc; No ImagePath R2 OneSyncSvc_68d62; No ImagePath S0 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [58896 2019-03-19] (Avago Technologies) S0 percsas3i; C:\Windows\System32\drivers\percsas3i.sys [68624 2019-03-19] (Avago Technologies) S3 PimIndexMaintenanceSvc; No ImagePath R3 PimIndexMaintenanceSvc_68d62; No ImagePath S3 PktMon; C:\Windows\System32\drivers\PktMon.sys [96056 2019-03-19] (Microsoft Corporation) S3 pmem; C:\Windows\System32\drivers\pmem.sys [127800 2019-03-19] (Microsoft Corporation) S3 portcfg; C:\Windows\System32\drivers\portcfg.sys [25600 2019-03-19] (Microsoft Corporation) S3 PrintWorkflowUserSvc; No ImagePath S3 PrintWorkflowUserSvc_68d62; No ImagePath S0 Ramdisk; C:\Windows\System32\DRIVERS\ramdisk.sys [41784 2019-03-19] (Microsoft Corporation) S3 ReFSv1; C:\Windows\System32\Drivers\ReFSv1.sys [986936 2019-12-17] (Microsoft Corporation) S3 rhproxy; C:\Windows\System32\drivers\rhproxy.sys [113152 2019-03-19] (Microsoft Corporation) S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2020\WNt600x64\Sandra.sys [23112 2009-08-07] (SiSoftware) S0 scmbus; C:\Windows\System32\drivers\scmbus.sys [151352 2020-04-18] (Microsoft Corporation) S3 SDFRd; C:\Windows\System32\drivers\SDFRd.sys [33592 2019-03-19] (Microsoft Corporation) R0 SgrmAgent; C:\Windows\System32\drivers\SgrmAgent.sys [89096 2019-03-19] (Microsoft Corporation) R1 SLEE_18_DRIVER; C:\Windows\Sleen1864.sys [109144 2014-01-30] (Softwareentwicklung Remus - ArchiCrypt - ) S0 SmartSAMD; C:\Windows\System32\drivers\SmartSAMD.sys [220176 2019-03-19] (Microsemi Corportation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42664 2016-01-07] (Synaptics Incorporated) S3 SpatialGraphFilter; C:\Windows\System32\drivers\SpatialGraphFilter.sys [76088 2019-03-19] (Microsoft Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) R2 storqosflt; C:\Windows\System32\drivers\storqosflt.sys [93200 2019-03-19] (Microsoft Corporation) S0 storufs; C:\Windows\System32\drivers\storufs.sys [59200 2020-10-15] (Microsoft Corporation) R3 swenum; C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_1c567926e5b29133\swenum.sys [18960 2019-09-12] (Microsoft Corporation) S3 tib; C:\Windows\system32\DRIVERS\tib.sys [887024 2020-11-20] (Acronis International GmbH) R2 tib_mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [175744 2020-11-20] (Acronis International GmbH) S3 tnd; C:\Windows\system32\DRIVERS\tnd.sys [694904 2020-11-20] (Acronis International GmbH) R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13784 2009-11-02] () S3 UcmCx0101; C:\Windows\System32\Drivers\UcmCx.sys [160256 2019-03-19] (Microsoft Corporation) S3 UcmTcpciCx0101; C:\Windows\System32\Drivers\UcmTcpciCx.sys [186368 2019-03-19] (Microsoft Corporation) S3 UcmUcsiAcpiClient; C:\Windows\System32\drivers\UcmUcsiAcpiClient.sys [34816 2019-03-19] (Microsoft Corporation) S3 UcmUcsiCx0101; C:\Windows\System32\Drivers\UcmUcsiCx.sys [111104 2019-03-19] (Microsoft Corporation) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [51200 2019-03-19] (Microsoft Corporation) S3 UEFI; C:\Windows\System32\DriverStore\FileRepository\uefi.inf_amd64_4fcaf0fc6eaf7533\UEFI.sys [32568 2019-09-12] (Microsoft Corporation) S3 Ufx01000; C:\Windows\System32\drivers\ufx01000.sys [311096 2019-03-19] (Microsoft Corporation) S3 UfxChipidea; C:\Windows\System32\DriverStore\FileRepository\ufxchipidea.inf_amd64_624eef84faf426d6\UfxChipidea.sys [108584 2019-09-12] (Microsoft Corporation) S3 ufxsynopsys; C:\Windows\System32\drivers\ufxsynopsys.sys [181048 2019-03-19] (Microsoft Corporation) R3 umbus; C:\Windows\System32\DriverStore\FileRepository\umbus.inf_amd64_e566af5dd9858a0e\umbus.sys [57856 2019-09-12] (Microsoft Corporation) S3 UnistoreSvc; No ImagePath R3 UnistoreSvc_68d62; No ImagePath S3 UrsChipidea; C:\Windows\System32\DriverStore\FileRepository\urschipidea.inf_amd64_86da23c455846f41\urschipidea.sys [30224 2019-09-12] (Microsoft Corporation) S3 UrsCx01000; C:\Windows\System32\drivers\urscx01000.sys [74552 2019-03-19] (Microsoft Corporation) S3 UrsSynopsys; C:\Windows\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_7302ce5d1420ed71\urssynopsys.sys [28472 2019-09-12] (Microsoft Corporation) S3 usbaudio2; C:\Windows\System32\drivers\usbaudio2.sys [257536 2019-07-19] (Microsoft Corporation) S3 UserDataSvc; No ImagePath R3 UserDataSvc_68d62; No ImagePath S3 vhf; C:\Windows\System32\drivers\vhf.sys [39936 2019-03-19] (Microsoft Corporation) R2 virtual_file; C:\Windows\System32\DRIVERS\virtual_file.sys [334968 2020-11-20] (Acronis International GmbH) S3 vmgid; C:\Windows\System32\drivers\vmgid.sys [18232 2019-03-19] (Microsoft Corporation) R0 volume; C:\Windows\System32\drivers\volume.sys [16696 2019-03-19] (Microsoft Corporation) R0 volume_tracker; C:\Windows\System32\DRIVERS\volume_tracker.sys [251016 2020-11-20] (Acronis International GmbH) R2 wcifs; C:\Windows\system32\drivers\wcifs.sys [201744 2020-03-20] (Microsoft Corporation) S3 wcnfs; C:\Windows\system32\drivers\wcnfs.sys [92672 2019-03-19] (Microsoft Corporation) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-11-06] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [429288 2020-11-06] (Microsoft Corporation) S3 wdiwifi; C:\Windows\System32\DRIVERS\wdiwifi.sys [931840 2019-10-07] (Microsoft Corporation) S3 WdmCompanionFilter; C:\Windows\System32\drivers\WdmCompanionFilter.sys [21816 2019-03-19] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-06] (Microsoft Corporation) R0 WindowsTrustedRT; C:\Windows\System32\drivers\WindowsTrustedRT.sys [75752 2019-03-19] (Microsoft Corporation) R0 WindowsTrustedRTProxy; C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys [17896 2019-03-19] (Microsoft Corporation) S3 WinMad; C:\Windows\System32\drivers\winmad.sys [37928 2019-03-19] (Mellanox) S3 WinNat; C:\Windows\System32\drivers\winnat.sys [251904 2020-10-15] (Microsoft Corporation) R3 WinQuic; C:\Windows\System32\drivers\winquic.sys [205112 2019-07-19] (Microsoft Corporation) S3 WinVerbs; C:\Windows\System32\drivers\winverbs.sys [77832 2019-03-19] (Mellanox) S2 WpnUserService; No ImagePath R2 WpnUserService_68d62; No ImagePath S3 xboxgip; C:\Windows\System32\drivers\xboxgip.sys [324608 2019-07-30] (Microsoft Corporation) S3 xinputhid; C:\Windows\System32\drivers\xinputhid.sys [48128 2019-03-19] (Microsoft Corporation) U3 idsvc; No ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) NETSVC: PushToInstall -> C:\Windows\system32\PushToInstall.dll (Microsoft Corporation) NETSVC: InstallService -> C:\Windows\system32\InstallService.dll (Microsoft Corporation) NETSVC: TroubleshootingSvc -> C:\Windows\system32\MitigationClient.dll (Microsoft Corporation) NETSVC: LxpSvc -> C:\Windows\System32\LanguageOverlayServer.dll (Microsoft Corporation) NETSVC: shpamsvc -> C:\Windows\system32\Windows.SharedPC.AccountManager.dll (Microsoft Corporation) NETSVC: XblGameSave -> C:\Windows\System32\XblGameSave.dll (Microsoft Corporation) NETSVC: DmEnrollmentSvc -> C:\Windows\system32\Windows.Internal.Management.dll (Microsoft Corporation) NETSVC: WManSvc -> C:\Windows\system32\Windows.Management.Service.dll (Microsoft Corporation) NETSVC: TokenBroker -> C:\Windows\System32\TokenBroker.dll (Microsoft Corporation) NETSVC: dmwappushservice -> C:\Windows\system32\dmwappushsvc.dll (Microsoft Corporation) NETSVC: wisvc -> C:\Windows\system32\flightsettings.dll (Microsoft Corporation) NETSVC: NetSetupSvc -> C:\Windows\System32\NetSetupSvc.dll (Microsoft Corporation) NETSVC: WpnService -> C:\Windows\system32\WpnService.dll (Microsoft Corporation) NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation) NETSVC: UsoSvc -> C:\Windows\system32\usosvc.dll (Microsoft Corporation) NETSVC: UserManager -> C:\Windows\System32\usermgr.dll (Microsoft Corporation) NETSVC: XboxGipSvc -> C:\Windows\System32\XboxGipSvc.dll (Microsoft Corporation) NETSVC: XblAuthManager -> C:\Windows\System32\XblAuthManager.dll (Microsoft Corporation) NETSVC: NaturalAuthentication -> C:\Windows\System32\NaturalAuth.dll (Microsoft Corporation) NETSVCx32: UserManager -> C:\Windows\SysWOW64\usermgr.dll ==> Keine Datei NETSVCx32: TokenBroker -> C:\Windows\SysWOW64\TokenBroker.dll (Microsoft Corporation) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2020-11-29 17:32 - 2020-11-29 17:34 - 00064690 _____ C:\Users\XXX XXX\Downloads\FRST.txt 2020-11-29 17:31 - 2020-11-29 17:32 - 02169856 _____ (Farbar) C:\Users\XXX XXX\Downloads\FRST64.exe 2020-11-29 17:28 - 2020-11-29 17:28 - 00001233 _____ C:\Users\XXX XXX\Desktop\CrystalDiskInfo.lnk 2020-11-29 17:26 - 2020-11-29 17:26 - 03945408 _____ (Crystal Dew World ) C:\Users\XXX XXX\Downloads\CrystalDiskInfo8_1_0.exe 2020-11-28 19:30 - 2020-11-28 19:30 - 00000053 _____ C:\Users\XXX XXX\Desktop\google5f4bfdc9a56a7b21.html 2020-11-28 18:55 - 2020-11-28 18:55 - 00000248 _____ C:\Users\XXX XXX\Desktop\WordPress SEO Eine praktische (und einfache) Anleitung.URL 2020-11-28 16:59 - 2020-11-28 16:59 - 00002330 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2020-2021.lnk 2020-11-28 16:59 - 2020-11-28 16:59 - 00002273 _____ C:\Users\Public\Desktop\Steuer-Ratgeber 2020-2021.lnk 2020-11-28 16:59 - 2020-11-28 16:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2020-2021 2020-11-28 16:55 - 2020-11-28 16:55 - 00002275 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2021.lnk 2020-11-28 16:55 - 2020-11-28 16:55 - 00002218 _____ C:\Users\Public\Desktop\SteuerSparErklärung 2021.lnk 2020-11-28 16:55 - 2020-11-28 16:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2021 2020-11-27 14:25 - 2020-11-27 14:27 - 450836736 _____ C:\Users\XXX XXX\Downloads\Win-SteuerSparErklaerung_26.20.32.exe 2020-11-27 00:42 - 2020-11-27 00:42 - 00000000 ____D C:\Recovery 2020-11-26 22:18 - 2020-11-27 03:29 - 00000000 ___HD C:\$WINDOWS.~BT 2020-11-26 21:40 - 2020-11-26 21:59 - 00000000 ____D C:\Program Files\Malwarebytes 2020-11-26 21:27 - 2020-11-26 21:27 - 02290176 _____ (Farbar) C:\Users\XXX XXX\Downloads\FRSTEnglish.exe 2020-11-26 21:26 - 2020-11-26 21:26 - 11289960 _____ C:\Users\XXX XXX\Downloads\mb-support-1.8.0.848.exe 2020-11-26 20:42 - 2020-11-26 20:42 - 00010466 _____ C:\drivers.txt 2020-11-26 20:38 - 2020-11-26 20:39 - 00009359 _____ C:\Users\XXX XXX\Desktop\DriversList.txt 2020-11-26 20:31 - 2020-11-26 20:37 - 00000268 _____ C:\Users\XXX 2020-11-26 02:21 - 2020-11-26 02:21 - 00000080 ___SH C:\bootTel.dat 2020-11-25 11:53 - 2020-11-29 16:58 - 00000276 _____ C:\WINDOWS\WindowsUpdate.log 2020-11-25 11:31 - 2020-11-27 10:47 - 00000000 ____D C:\Users\XXX XXX\Downloads\ResetWUEng 2020-11-25 10:53 - 2020-11-25 10:53 - 00010500 _____ C:\Users\XXX XXX\Downloads\Rechnung-Facebook-Nov-1-2020-Nov-25-2020.xlsx 2020-11-25 10:51 - 2020-11-25 10:51 - 00000631 _____ C:\Users\XXX XXX\Downloads\Rechnung-Facebook-Nov-1-2020-Nov-25-2020.csv 2020-11-24 15:40 - 2020-11-24 15:40 - 00017624 _____ C:\Users\XXX XXX\Downloads\2020Apr.MonthlyTransaction(1).xlsx 2020-11-24 15:39 - 2020-11-24 15:39 - 00016462 _____ C:\Users\XXX XXX\Downloads\2020MärzMonthlyTransaction(1).xlsx 2020-11-23 07:57 - 2020-11-23 07:57 - 00000000 ____D C:\Users\XXX XXX\Desktop\hmd 2020-11-22 22:01 - 2020-11-22 22:08 - 00000000 _____ C:\Recovery.txt 2020-11-22 20:45 - 2020-11-22 20:45 - 00000000 ___HD C:\$Windows.~WS 2020-11-22 20:38 - 2020-11-27 03:15 - 00000000 ____D C:\WINDOWS\system32\Catroot2.bak 2020-11-22 20:37 - 2020-11-22 20:37 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\SyncService 2020-11-22 20:31 - 2020-11-22 20:41 - 00000000 ____D C:\WINDOWS\SoftwareDistribution.bak 2020-11-22 19:47 - 2020-11-22 19:57 - 00000000 ____D C:\Users\XXX XXX\Desktop\Backup 2020-11-22 12:13 - 2020-11-22 19:57 - 00000000 ____D C:\Users\XXX XXX\Desktop\update2 2020-11-22 12:13 - 2020-11-22 12:13 - 00130234 _____ C:\Users\XXX XXX\Downloads\ResetWUEng.zip 2020-11-22 12:10 - 2020-11-22 12:12 - 00000000 ____D C:\Users\XXX XXX\Desktop\update_ 2020-11-22 12:10 - 2020-11-22 12:10 - 00001870 _____ C:\Users\XXX XXX\Downloads\reset-windowsupdate.zip 2020-11-22 12:10 - 2020-11-22 12:10 - 00000000 ____D C:\Users\XXX XXX\Desktop\update 2020-11-22 10:18 - 2020-11-22 10:18 - 00000313 _____ C:\Users\XXX XXX\Desktop\Windows Update macht Ärger - Seite 2.URL 2020-11-21 16:51 - 2020-11-22 21:44 - 00000000 ____D C:\ESD 2020-11-21 14:40 - 2020-11-21 14:40 - 00000000 ____D C:\Users\XXX XXX\AppData\Local\hmd_software_AG 2020-11-21 14:39 - 2020-11-27 03:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hmd 2020-11-21 14:39 - 2020-11-21 14:39 - 00001105 _____ C:\Users\Public\Desktop\ASP.Client.lnk 2020-11-21 14:36 - 2020-11-21 14:36 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\hmd 2020-11-21 14:36 - 2020-11-21 14:36 - 00000000 ____D C:\Users\XXX XXX\AppData\Local\hmd-software_AG 2020-11-21 14:35 - 2020-11-21 14:35 - 00000000 ____D C:\Program Files (x86)\Hmd 2020-11-21 14:31 - 2020-11-21 14:31 - 00000000 ____D C:\WINDOWS\System32\Tasks\Mozilla 2020-11-21 14:28 - 2020-11-21 14:28 - 38547456 _____ C:\Users\XXX XXX\Downloads\ASPClient.msi 2020-11-21 07:02 - 2020-11-21 21:45 - 00000000 ____D C:\Program Files\Mozilla Firefox 2020-11-20 19:02 - 2020-11-20 19:02 - 00000000 ____D C:\Users\XXX XXX\AppData\Local\GoTo Opener 2020-11-20 16:34 - 2020-10-07 00:18 - 00367096 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bddci.sys 2020-11-20 16:33 - 2020-11-20 16:33 - 00000000 ____D C:\Program Files\Common Files\Acronis 2020-11-20 16:33 - 2020-11-20 16:33 - 00000000 ____D C:\Program Files\Acronis 2020-11-20 16:33 - 2020-10-07 00:19 - 00167728 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\ngscan.sys 2020-11-20 16:29 - 2020-11-20 16:29 - 00694408 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_protector.sys 2020-11-20 16:29 - 2020-11-20 16:29 - 00000000 ____D C:\ProgramData\Acronis Mobile Backup Data 2020-11-20 16:28 - 2020-11-20 16:28 - 00334968 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file10014.sys 2020-11-20 16:28 - 2020-11-20 16:28 - 00251016 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\volume_tracker.sys 2020-11-20 16:27 - 2020-11-20 16:27 - 00183928 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\fltsrv3371.sys 2020-11-20 15:16 - 2020-11-20 15:24 - 831155880 _____ C:\Users\XXX XXX\Downloads\AcronisTrueImage2021.exe 2020-11-20 15:01 - 2020-11-20 16:27 - 00001238 _____ C:\Users\Public\Desktop\Acronis True Image.lnk 2020-11-20 14:47 - 2020-11-20 14:51 - 503043688 _____ C:\Users\XXX XXX\AppData\Local\AcronisTrueImage2016_6595.exe 2020-11-19 18:45 - 2020-11-19 18:45 - 00150358 _____ C:\Users\XXX XXX\Downloads\de.formsolutions.FillServlet 2020-11-18 21:26 - 2020-11-18 21:26 - 19463448 _____ (Microsoft Corporation) C:\Users\XXX XXX\Downloads\MediaCreationTool20H2.exe 2020-11-17 22:16 - 2020-11-17 22:26 - 00427028 _____ C:\WINDOWS\Minidump\111720-49718-01.dmp 2020-11-17 22:16 - 2020-11-17 22:16 - 195031485 _____ C:\WINDOWS\MEMORY.DMP 2020-11-17 20:08 - 2020-11-17 20:08 - 00000000 ____D C:\RegBackup 2020-11-17 19:39 - 2020-11-17 19:39 - 00000000 ____D C:\Program Files (x86)\Tweaking.com 2020-11-17 18:56 - 2020-11-17 22:13 - 00000000 ____D C:\ProgramData\Restoro 2020-11-17 18:56 - 2020-11-17 22:13 - 00000000 ____D C:\Program Files\Restoro 2020-11-17 17:38 - 2020-11-17 17:38 - 00000295 _____ C:\Users\XXX XXX\Desktop\Update 1903 bricht ab, Fehler 0xC1900101 - 0x30018 — CHIP-Forum.URL 2020-11-17 04:46 - 2020-11-17 04:47 - 00008192 ___SH C:\DumpStack.log.tmp 2020-11-17 02:30 - 2020-11-26 23:51 - 00000576 _____ C:\WINDOWS\DtcInstall.log 2020-11-17 00:53 - 2020-11-27 00:15 - 00025740 _____ C:\WINDOWS\iis.log 2020-11-17 00:37 - 2020-11-26 23:12 - 00006024 _____ C:\WINDOWS\comsetup.log 2020-11-15 17:31 - 2020-11-26 10:20 - 00000000 ____D C:\Users\XXX XXX\AppData\Local\Everything 2020-11-15 17:30 - 2020-11-15 17:30 - 00002114 _____ C:\Users\XXX XXX\Desktop\.mp4-Suche.search-ms 2020-11-15 16:54 - 2020-11-27 03:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Everything 2020-11-15 16:54 - 2020-11-26 10:20 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Everything 2020-11-15 16:54 - 2020-11-15 16:54 - 00001062 _____ C:\Users\Public\Desktop\Suche Everything.lnk 2020-11-15 16:54 - 2020-11-15 16:54 - 00000000 ____D C:\Program Files\Everything 2020-11-15 16:53 - 2020-11-15 16:53 - 03100917 _____ C:\Users\XXX XXX\Downloads\Everything-1.4.1.992.zip 2020-11-15 16:49 - 2020-11-27 03:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirPrintOK 2020-11-15 16:49 - 2020-11-27 03:14 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DirPrintOK 2020-11-15 16:49 - 2020-11-15 16:49 - 00002070 _____ C:\Users\XXX XXX\Desktop\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 00002070 _____ C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 00001954 _____ C:\Users\Public\Desktop\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 00001954 _____ C:\ProgramData\Microsoft\Windows\Start Menu\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\DirPrintOK 2020-11-15 16:49 - 2020-11-15 16:49 - 00000000 ____D C:\Program Files\DirPrintOK 2020-11-15 16:45 - 2020-11-15 16:46 - 01337312 _____ C:\Users\XXX XXX\Downloads\DPOK445.zip 2020-11-15 15:19 - 2020-11-15 15:48 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\XMedia Recode 2020-11-15 15:16 - 2020-11-27 03:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode 64bit 2020-11-15 15:16 - 2020-11-15 15:16 - 00000959 _____ C:\Users\Public\Desktop\XMedia Recode 64bit.lnk 2020-11-15 15:16 - 2020-11-15 15:16 - 00000000 ____D C:\Program Files\XMedia Recode 64bit 2020-11-15 15:13 - 2020-11-15 15:14 - 30402620 _____ C:\Users\XXX XXX\Downloads\xmedia352.zip 2020-11-15 15:10 - 2020-11-27 00:38 - 00015596 _____ C:\WINDOWS\setupact.log 2020-11-15 15:08 - 2020-11-27 03:14 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP3Gain 2020-11-15 15:08 - 2020-11-15 15:12 - 00000000 ____D C:\Program Files (x86)\MP3Gain 2020-11-15 14:57 - 2020-11-15 14:57 - 01980509 _____ C:\Users\XXX XXX\Downloads\mp3gain-win-full-1_3_4.exe 2020-11-08 10:48 - 2020-11-08 10:49 - 00000240 _____ C:\Users\XXX XXX\Downloads\win-10-funktionsupdates-stoppen-version-2004.rar 2020-11-06 15:32 - 2020-11-06 15:32 - 00000000 ___HD C:\$WinREAgent 2020-11-02 17:16 - 2020-11-02 17:16 - 00032719 _____ C:\Users\XXX XXX\Downloads\20201102-1006279-umsatz.CSV ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2020-11-29 17:32 - 2017-03-13 23:10 - 00000000 ____D C:\FRST 2020-11-29 17:30 - 2019-07-19 12:50 - 00004192 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{01E0E035-8801-47A3-8026-B8DAA69A5C75} 2020-11-29 17:28 - 2016-05-22 07:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2020-11-29 17:28 - 2016-05-22 07:05 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2020-11-29 17:27 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\sru 2020-11-29 16:57 - 2019-07-19 12:03 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2020-11-29 14:28 - 2012-04-28 18:38 - 00000000 ____D C:\ProgramData\Mozilla 2020-11-29 14:22 - 2019-07-19 12:50 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-11-29 12:08 - 2019-03-19 05:37 - 01572864 _____ C:\WINDOWS\system32\config\BBI 2020-11-29 12:07 - 2012-03-25 11:40 - 00000000 ____D C:\Users\XXX XXX\Documents\Steuerfälle 2020-11-29 10:50 - 2019-07-19 12:03 - 00470288 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-11-28 17:53 - 2014-03-23 17:23 - 00000000 ____D C:\Users\XXX XXX\Documents\Benutzerdefinierte Office-Vorlagen 2020-11-28 16:57 - 2012-03-25 11:26 - 00000000 ____D C:\Program Files (x86)\Akademische Arbeitsgemeinschaft 2020-11-28 13:56 - 2020-08-03 15:54 - 00003798 _____ C:\WINDOWS\System32\Tasks\HPPrintMonitorService 2020-11-28 13:53 - 2019-07-19 12:29 - 01916826 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-11-28 13:53 - 2019-03-19 13:16 - 00822074 _____ C:\WINDOWS\system32\perfh007.dat 2020-11-28 13:53 - 2019-03-19 13:16 - 00177472 _____ C:\WINDOWS\system32\perfc007.dat 2020-11-27 11:47 - 2017-10-24 21:15 - 00000000 ____D C:\Users\XXX XXX\Documents\PDF Architect 2020-11-27 09:38 - 2019-07-19 12:50 - 00004210 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2020-11-27 03:16 - 2020-08-27 20:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote 2020-11-27 03:16 - 2020-08-27 18:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2020-11-27 03:16 - 2020-08-23 08:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OSCAR 2020-11-27 03:16 - 2020-05-25 20:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2020-11-27 03:16 - 2020-04-22 17:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unified Android Toolkit 2020-11-27 03:16 - 2020-03-20 11:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2020-11-27 03:16 - 2020-02-05 08:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-11-27 03:16 - 2020-01-20 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2020 2020-11-27 03:16 - 2020-01-09 13:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2019-2020 2020-11-27 03:16 - 2019-10-21 08:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 7 2020-11-27 03:16 - 2019-10-15 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2020-11-27 03:16 - 2019-07-19 12:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2020-11-27 03:16 - 2019-03-19 05:52 - 00000000 __SHD C:\Program Files\Windows Sidebar 2020-11-27 03:16 - 2019-03-19 05:52 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2020-11-27 03:16 - 2019-03-19 05:52 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2020-11-27 03:16 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2020-11-27 03:16 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\Recovery 2020-11-27 03:16 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\AppLocker 2020-11-27 03:16 - 2019-03-19 05:52 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2020-11-27 03:16 - 2019-02-10 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2019 2020-11-27 03:16 - 2019-02-10 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2018-2019 2020-11-27 03:16 - 2018-12-04 14:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 6 2020-11-27 03:16 - 2018-09-15 08:33 - 00000000 ____D C:\WINDOWS\system32\MsDtc 2020-11-27 03:16 - 2018-08-12 15:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2020-11-27 03:16 - 2018-07-03 16:19 - 00000000 ____D C:\ProgramData\Packages 2020-11-27 03:16 - 2018-02-27 18:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2017-2018 2020-11-27 03:16 - 2018-02-27 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2018 2020-11-27 03:16 - 2017-12-30 12:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression 2020-11-27 03:16 - 2017-09-29 14:46 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2020-11-27 03:16 - 2017-08-18 20:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2020-11-27 03:16 - 2017-05-12 22:48 - 00000000 ____D C:\Program Files\UNP 2020-11-27 03:16 - 2017-01-07 11:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools 2020-11-27 03:16 - 2017-01-03 16:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2020-11-27 03:16 - 2017-01-03 16:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva 2020-11-27 03:16 - 2016-12-31 09:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2016-2017 2020-11-27 03:16 - 2016-12-31 09:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2017 2020-11-27 03:16 - 2016-08-07 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2020-11-27 03:16 - 2016-06-05 18:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ElsterFormular 2020-11-27 03:16 - 2016-05-22 19:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 6.0 2020-11-27 03:16 - 2016-03-11 08:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2020-11-27 03:16 - 2016-03-03 22:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2020-11-27 03:16 - 2016-02-16 08:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 4 2020-11-27 03:16 - 2016-01-31 19:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2016 2020-11-27 03:16 - 2015-12-06 15:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AllDup 2020-11-27 03:16 - 2015-11-21 07:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune 2020-11-27 03:16 - 2015-11-19 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeOCR 2020-11-27 03:16 - 2014-10-11 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger 2020-11-27 03:16 - 2014-09-23 18:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-11-27 03:16 - 2014-08-08 22:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer 2020-11-27 03:16 - 2014-07-10 23:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steganos Safe 14 2020-11-27 03:16 - 2014-06-26 10:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!Fernzugang 2020-11-27 03:16 - 2014-06-15 13:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan 2020-11-27 03:16 - 2014-06-12 08:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp 2020-11-27 03:16 - 2014-06-10 11:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn 2020-11-27 03:16 - 2014-06-10 11:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2020-11-27 03:16 - 2014-06-08 13:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC 2020-11-27 03:16 - 2014-06-08 13:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol 2020-11-27 03:16 - 2014-06-08 13:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster 2020-11-27 03:16 - 2013-12-31 18:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fiat 2020-11-27 03:16 - 2013-12-23 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Time Stamp 2020-11-27 03:16 - 2013-11-25 16:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Allway Sync 2020-11-27 03:16 - 2013-08-07 09:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekahau 2020-11-27 03:16 - 2013-05-22 21:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RescueTime 2020-11-27 03:16 - 2013-03-30 16:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick 2020-11-27 03:16 - 2013-03-30 16:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid 2020-11-27 03:16 - 2013-03-30 16:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow 2020-11-27 03:16 - 2013-03-30 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2020-11-27 03:16 - 2013-03-30 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter 2020-11-27 03:16 - 2013-03-30 16:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5 2020-11-27 03:16 - 2013-03-30 16:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avi2Dvd 2020-11-27 03:16 - 2012-09-30 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK 2020-11-27 03:16 - 2012-09-22 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BatteryCare 2020-11-27 03:16 - 2012-08-07 08:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup 2020-11-27 03:16 - 2012-04-16 17:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Join Air 2020-11-27 03:16 - 2012-04-11 05:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shutdown Manager 2020-11-27 03:16 - 2012-03-31 10:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2020-11-27 03:16 - 2012-03-19 10:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind 2020-11-27 03:16 - 2012-01-28 14:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2020-11-27 03:16 - 2011-12-25 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2020-11-27 03:16 - 2011-12-14 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2020-11-27 03:16 - 2011-12-11 00:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Restorer2000 2020-11-27 03:16 - 2011-11-15 21:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-11-27 03:16 - 2011-11-13 23:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SIW 2020-11-27 03:16 - 2011-11-13 23:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works 2020-11-27 03:16 - 2011-11-13 22:55 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Deluxe 2020-11-27 03:16 - 2011-11-13 22:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager 2020-11-27 03:16 - 2011-11-13 22:50 - 00000000 ____D C:\Program Files\Intel 2020-11-27 03:16 - 2009-11-05 04:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Online Backup 2020-11-27 03:16 - 2009-11-05 04:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone 2020-11-27 03:16 - 2009-11-05 04:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Backup Manager 2020-11-27 03:16 - 2009-11-05 04:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager 2020-11-27 03:16 - 2009-11-05 04:23 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2020-11-27 03:16 - 2009-11-05 01:49 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2020-11-27 03:16 - 2009-11-05 01:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GridVista 2020-11-27 03:16 - 2009-11-05 01:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5 2020-11-27 03:16 - 2009-11-05 01:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8 2020-11-27 03:16 - 2009-11-05 01:39 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSobi v2 2020-11-27 03:16 - 2009-11-05 01:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem 2020-11-27 03:16 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2020-11-27 03:15 - 2019-03-19 13:16 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN 2020-11-27 03:15 - 2019-03-19 13:16 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2020-11-27 03:15 - 2019-03-19 13:16 - 00000000 ____D C:\WINDOWS\system32\WCN 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ___SD C:\WINDOWS\system32\F12 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\NDF 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\Macromed 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\IME 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\catroot2.old 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\ShellExperiences 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\schemas 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\Resources 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2020-11-27 03:15 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2020-11-27 03:15 - 2018-02-14 17:54 - 00000000 ____D C:\WINDOWS\system32\Drivers\wd 2020-11-27 03:15 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\zh-HK 2020-11-27 03:15 - 2013-07-13 08:36 - 00000000 ____D C:\WINDOWS\system32\MRT 2020-11-27 03:15 - 2012-09-22 17:09 - 00000000 ____D C:\WINDOWS\system32\oodag 2020-11-27 03:15 - 2012-04-16 17:33 - 00000000 ____D C:\WINDOWS\SysWOW64\SupportAppCB 2020-11-27 03:15 - 2011-11-20 13:40 - 00000000 ____D C:\WINDOWS\system32\SPReview 2020-11-27 03:15 - 2011-11-20 13:40 - 00000000 ____D C:\WINDOWS\system32\EventProviders 2020-11-27 03:15 - 2009-11-05 01:49 - 00000000 ____D C:\WINDOWS\oem 2020-11-27 03:14 - 2020-08-23 07:41 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SleepyHead 2020-11-27 03:14 - 2020-05-18 18:54 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2020-11-27 03:14 - 2020-04-22 17:12 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\SkipSoft Android Toolkit 2020-11-27 03:14 - 2019-07-19 12:15 - 00000000 ___RD C:\Users\Versuch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2020-11-27 03:14 - 2019-07-19 12:15 - 00000000 ___RD C:\Users\XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2020-11-27 03:14 - 2019-07-19 12:15 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2020-11-27 03:14 - 2019-07-19 12:15 - 00000000 ___RD C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2020-11-27 03:14 - 2019-07-19 12:15 - 00000000 ____D C:\Users\Versuch 2020-11-27 03:14 - 2019-07-19 12:15 - 00000000 ____D C:\Users\XXX 2020-11-27 03:14 - 2019-07-19 12:15 - 00000000 ____D C:\Users\XXX XXX 2020-11-27 03:14 - 2019-03-19 05:37 - 00000000 __RHD C:\Users\Default 2020-11-27 03:14 - 2017-05-12 20:04 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DreamBoxEdit 2020-11-27 03:14 - 2017-01-03 15:59 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FineRecovery 2020-11-27 03:14 - 2016-11-07 16:27 - 00000000 ____D C:\Users\Versuch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DreamBoxEdit 2020-11-27 03:14 - 2016-08-07 15:29 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2020-11-27 03:14 - 2014-12-23 21:57 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView 2020-11-27 03:14 - 2014-08-08 18:13 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kassenbuch 2020-11-27 03:14 - 2014-01-06 14:59 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2020-11-27 03:14 - 2014-01-01 17:33 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alle meine Passworte 2020-11-27 03:14 - 2013-12-23 16:18 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC 2020-11-27 03:14 - 2012-04-29 17:05 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FrostWire 5 2020-11-27 03:14 - 2011-11-20 16:01 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SimpleScreenshot 2020-11-27 03:14 - 2011-11-17 21:04 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Random Dresser 2020-11-27 03:14 - 2011-11-15 21:00 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-11-27 03:13 - 2019-07-19 12:15 - 00000000 ____D C:\Users\DefaultAppPool 2020-11-27 02:27 - 2016-08-01 00:44 - 00023056 _____ C:\WINDOWS\system32\emptyregdb.dat 2020-11-27 00:44 - 2017-05-17 17:41 - 00418472 _____ C:\WINDOWS\system32\NetSetupMig.log 2020-11-27 00:43 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\registration 2020-11-26 22:35 - 2019-07-04 07:13 - 00000000 ___DC C:\WINDOWS\Panther 2020-11-26 22:16 - 2020-08-23 07:26 - 00000000 _____ C:\WINDOWS\setuperr.log 2020-11-26 22:16 - 2019-07-19 12:46 - 00001890 _____ C:\WINDOWS\diagwrn.xml 2020-11-26 22:16 - 2019-07-19 12:46 - 00001890 _____ C:\WINDOWS\diagerr.xml 2020-11-26 21:35 - 2016-09-10 18:47 - 00417440 _____ C:\WINDOWS\PFRO.log 2020-11-26 11:43 - 2019-03-19 05:37 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2020-11-26 02:38 - 2019-07-19 12:50 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2020-11-26 02:37 - 2015-12-06 12:57 - 00002100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-11-25 23:40 - 2019-03-19 05:37 - 00000000 ____D C:\WINDOWS\CbsTemp 2020-11-25 20:58 - 2020-07-09 18:50 - 00002400 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2020-11-25 12:23 - 2020-05-25 20:37 - 00000000 ____D C:\Users\XXX XXX\Desktop\Finanzen 2020-11-25 11:37 - 2020-05-17 15:43 - 00000276 _____ C:\WINDOWS\WindowsUpdate.log.bak 2020-11-24 21:48 - 2019-11-07 12:57 - 00000000 ____D C:\Users\XXX XXX\Desktop\Stadtjugendring 2020-11-24 20:36 - 2020-02-28 10:06 - 00000000 ____D C:\Users\XXX XXX\Desktop\BiNe WPS 2020-11-23 17:53 - 2019-10-25 16:22 - 00039272 _____ C:\app_updater.log 2020-11-23 17:50 - 2020-02-18 08:36 - 00000000 ____D C:\Users\XXX XXX\Desktop\EStE 2020-11-23 16:46 - 2018-12-25 11:26 - 00002244 _____ C:\Users\Public\Desktop\SteuerSparErklärung 2018.lnk 2020-11-23 14:37 - 2019-07-19 12:50 - 00003382 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1242904208-471078349-2963378918-1000 2020-11-23 14:37 - 2019-07-19 12:15 - 00002461 _____ C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-11-23 14:37 - 2016-05-22 07:07 - 00000000 ___RD C:\Users\XXX XXX\OneDrive 2020-11-21 21:45 - 2019-02-04 12:44 - 00001266 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2020-11-21 21:45 - 2019-02-04 12:44 - 00001262 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2020-11-21 21:45 - 2015-08-07 21:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-11-21 21:41 - 2019-07-19 12:50 - 00003840 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA 2020-11-21 21:41 - 2019-07-19 12:50 - 00003616 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore 2020-11-21 21:40 - 2017-01-03 16:14 - 00000000 ____D C:\Program Files\CCleaner 2020-11-21 17:30 - 2019-11-08 12:58 - 00000000 ____D C:\Users\XXX XXX\Desktop\USB Stick 11_2019 Kopien 2020-11-21 16:34 - 2019-02-04 12:44 - 00000000 ____D C:\Program Files (x86)\Dropbox 2020-11-21 14:31 - 2015-08-07 21:58 - 00001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-11-20 20:47 - 2019-07-19 11:40 - 00000000 ____D C:\WINDOWS\system32\msmq 2020-11-20 20:46 - 2015-11-21 07:36 - 00000000 ____D C:\ProgramData\Acronis 2020-11-20 18:10 - 2018-01-12 18:33 - 00000000 ____D C:\Users\XXX XXX\AppData\Local\PlaceholderTileLogoFolder 2020-11-20 16:34 - 2020-03-20 15:59 - 00000000 ____D C:\Users\XXX XXX\Desktop\KV Lörrach 2020-11-20 16:29 - 2016-05-02 09:49 - 00386688 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_tracker.sys 2020-11-20 16:28 - 2016-05-02 09:48 - 00887024 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib.sys 2020-11-20 16:28 - 2016-05-02 09:48 - 00694904 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tnd.sys 2020-11-20 16:28 - 2016-05-02 09:48 - 00383608 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\snapman.sys 2020-11-20 16:28 - 2016-05-02 09:48 - 00334968 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file.sys 2020-11-20 16:27 - 2016-05-02 09:48 - 00183928 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\fltsrv.sys 2020-11-20 16:27 - 2016-05-02 09:48 - 00175744 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib_mounter.sys 2020-11-20 16:27 - 2016-05-02 09:47 - 00001250 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image.lnk 2020-11-20 16:23 - 2015-11-21 07:36 - 00000000 ____D C:\Program Files (x86)\Acronis 2020-11-17 22:16 - 2019-11-14 16:14 - 00000000 ____D C:\WINDOWS\Minidump 2020-11-17 21:25 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\ServiceState 2020-11-17 20:10 - 2013-07-18 20:08 - 00000000 ____D C:\WINDOWS\sold.old 2020-11-17 09:12 - 2019-03-19 05:52 - 00000000 ____D C:\WINDOWS\system32\spool 2020-11-17 04:01 - 2011-11-18 19:58 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-11-16 18:41 - 2017-11-26 20:24 - 00000000 ____D C:\Users\XXX XXX\Documents\Zoom 2020-11-16 14:52 - 2020-10-22 21:11 - 00011645 _____ C:\Users\XXX XXX\Desktop\Mappe1.xlsx 2020-11-15 17:35 - 2015-12-07 12:22 - 00000000 ____D C:\Users\XXX XXX\Documents\Outlook-Dateien 2020-11-15 15:47 - 2013-02-09 01:20 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\Audacity 2020-11-15 15:40 - 2011-12-14 20:04 - 00000000 ____D C:\Users\XXX XXX\AppData\Roaming\DVDVideoSoft 2020-11-15 15:37 - 2011-12-14 18:44 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2020-11-15 15:12 - 2009-11-05 04:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2020-11-14 11:39 - 2016-03-15 14:58 - 00002216 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-11-14 11:39 - 2015-08-02 16:38 - 00002257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-11-09 16:32 - 2017-12-11 08:50 - 00000000 ____D C:\Users\XXX XXX\AppData\Local\Packages 2020-11-07 08:36 - 2017-07-08 09:23 - 00000000 ____D C:\Users\XXX XXX\AppData\Local\GoToMeeting 2020-11-02 15:21 - 2020-07-09 18:49 - 00003700 _____ C:\WINDOWS\System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-11-02 15:21 - 2020-07-09 18:49 - 00003576 _____ C:\WINDOWS\System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-10-31 20:10 - 2011-11-15 21:40 - 00795000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2020-05-25 20:59 - 2020-05-25 21:06 - 17797120 _____ () C:\Users\XXX XXX\AppData\Roaming\Sandra.mdb 2015-01-30 20:51 - 2020-02-27 07:21 - 0000600 _____ () C:\Users\XXX XXX\AppData\Roaming\winscp.rnd 2017-06-03 07:03 - 2017-06-03 07:06 - 503005056 _____ () C:\Users\XXX XXX\AppData\Local\AcronisTrueImage2016_6589.exe 2020-11-20 14:47 - 2020-11-20 14:51 - 503043688 _____ () C:\Users\XXX XXX\AppData\Local\AcronisTrueImage2016_6595.exe 2012-04-20 18:28 - 2017-08-16 15:00 - 0007168 _____ () C:\Users\XXX XXX\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-09-22 21:07 - 2014-09-22 21:07 - 0001482 _____ () C:\Users\XXX XXX\AppData\Local\RecConfig.xml 2020-10-10 22:00 - 2020-10-10 22:00 - 0000895 _____ () C:\Users\XXX XXX\AppData\Local\recently-used.xbel 2013-08-12 21:15 - 2019-10-16 10:34 - 0007603 _____ () C:\Users\XXX XXX\AppData\Local\Resmon.ResmonCfg 2020-07-17 15:38 - 2020-07-17 15:38 - 0000000 _____ () C:\Users\XXX XXX\AppData\Local\{0E784C28-887A-4724-B93C-E33F57A4ACD2} 2020-09-04 20:01 - 2020-09-04 20:01 - 0000000 _____ () C:\Users\XXX XXX\AppData\Local\{1AF13D18-0078-49D0-8725-98FAB4DE8706} 2020-06-05 13:10 - 2020-06-05 13:14 - 0000000 _____ () C:\Users\XXX XXX\AppData\Local\{75203C11-CCE4-4F00-BCC4-7E7733ED8627} 2020-07-20 18:23 - 2020-07-20 18:27 - 0000000 _____ () C:\Users\XXX XXX\AppData\Local\{B58AA7C7-ABEF-42ED-B54A-EFC51438571D} 2020-07-20 17:41 - 2020-07-20 17:47 - 0000000 _____ () C:\Users\XXX XXX\AppData\Local\{B6EE960F-BF64-4F26-BD2A-45F26B8964B2} 2012-03-31 10:26 - 2012-03-31 10:26 - 0000057 _____ () C:\ProgramData\Ament.ini 2011-11-13 22:53 - 2011-11-13 22:57 - 0008282 _____ () C:\ProgramData\ArcadeDeluxe3.log 2014-09-22 19:19 - 2014-10-06 19:45 - 0008737 _____ () C:\ProgramData\hpzinstall.log ==================== Bamital & volsnap Check ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\System32\winlogon.exe => Datei ist digital signiert C:\Windows\System32\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\System32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\System32\services.exe => Datei ist digital signiert C:\Windows\System32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\System32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\System32\rpcss.dll => Datei ist digital signiert C:\Windows\System32\Drivers\volsnap.sys => Datei ist digital signiert C:\Windows\system32\codeintegrity\Bootcat.cache FEHLT <==== ATTENTION!. ==================== Ende von log ============================ |
29.11.2020, 17:47 | #10 |
| Windows Update lässt sich nicht installieren [gelöst]Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:28-07-2015 durchgeführt von XXX (2020-11-29 17:38:01) Gestartet von C:\Users\XXX XXX\Downloads Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1242904208-471078349-2963378918-500 - Administrator - Disabled) XXX (S-1-5-21-1242904208-471078349-2963378918-1000 - Administrator - Enabled) => C:\Users\XXX XXX DefaultAccount (S-1-5-21-1242904208-471078349-2963378918-503 - Limited - Disabled) XXX (S-1-5-21-1242904208-471078349-2963378918-1003 - Limited - Enabled) => C:\Users\XXX Gast (S-1-5-21-1242904208-471078349-2963378918-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1242904208-471078349-2963378918-1002 - Limited - Enabled) Versuch (S-1-5-21-1242904208-471078349-2963378918-1004 - Administrator - Enabled) => C:\Users\Versuch WDAGUtilityAccount (S-1-5-21-1242904208-471078349-2963378918-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden AAVUpdateManager (HKLM-x32\...\{AFA42FE1-A5C3-485F-9180-BFCF5BF1F1C3}) (Version: 18.00.0000 - Wolters Kluwer Deutschland GmbH) AC3Filter 1.63b (HKLM-x32\...\AC3Filter_is1) (Version: 1.63b - Alexander Vigovsky) Acer Arcade Deluxe (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 3.0.7112 - CyberLink Corp.) Acer Arcade Deluxe (x32 Version: 3.0.7112 - CyberLink Corp.) Hidden Acer Backup Manager (HKLM-x32\...\InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}) (Version: 2.0.0.29 - NewTech Infosystems) Acer Crystal Eye webcam Ver:1.1.124.1120 (HKLM-x32\...\{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}) (Version: 1.1.124.1120 - Chicony Electronics Co.,Ltd.) Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 4.05.3004 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3005 - Acer Incorporated) Acer GameZone Console (HKLM-x32\...\{8ed9688e-4f79-4308-91ca-f1c37ca142b4}_is1) (Version: 5.1.0.2 - Oberon Media, Inc.) Acer GridVista (HKLM-x32\...\GridVista) (Version: 3.01.0730 - Acer Inc.) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.2009.1217 - Acer Incorporated) Acer VCM (HKLM-x32\...\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}) (Version: 4.05.3000 - Acer Incorporated) Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated) Acronis Drive Monitor (HKLM-x32\...\{706AE61D-40A4-4F50-8359-FE8F6F7FA461}) (Version: 1.0.566 - Acronis) Acronis Drivers (Version: 25.5.32010 - Acronis) Hidden Acronis True Image (HKLM-x32\...\{7885F0AF-BC9F-4819-BD1F-FA6B00FCB291}Visible) (Version: 25.5.32010 - Acronis) Acronis True Image (x32 Version: 25.5.32010 - Acronis) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 20.013.20066 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.103 - Adobe Systems Incorporated) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.445 - Adobe) Akamai NetSession Interface (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{DBCE1208-433D-4D3E-A26A-CB1B5E71A8F5}) (Version: 1.4.17.35005 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.4.17.35005 - Alcor Micro Corp.) Hidden Alice Greenfingers (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}) (Version: - Oberon Media) AllDup 3.4.24 (HKLM-x32\...\AllDup_is1) (Version: 3.4.24 - Michael Thummerer Software Design) Alle meine Passworte 4.13 (HKLM\...\AllemeinePassworte) (Version: - Mirko Böer) Allway Sync version 12.16.9 (HKLM-x32\...\Allway Sync_is1) (Version: - Botkind Inc) ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.105.2015.1105 - Alps Electric) Amazonia (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}) (Version: - Oberon Media) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AOMEI Partition Assistant Standard Edition 6.0 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI Technology Co., Ltd.) Apple Application Support (32-Bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) ASPClient (HKLM-x32\...\{AB46DAEE-3FF0-41EF-ABFC-5BD409D08055}) (Version: 2.4.193 - hmd-software AG) ATI Catalyst Install Manager (HKLM\...\{11F38253-8940-FFDA-D131-B14120C357E4}) (Version: 3.0.754.0 - ATI Technologies, Inc.) Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team) Avi2Dvd 0.6.4 (HKLM-x32\...\Avi2Dvd) (Version: 0.6.4 - TrustFm) AviSynth 2.5 (HKLM-x32\...\AviSynth) (Version: - ) Backup Manager Basic (x32 Version: 2.0.0.29 - NewTech Infosystems) Hidden BatteryCare 0.9.10.0 (HKLM-x32\...\{C6A6036D-FBD0-4324-BEAA-C0845257160C}_is1) (Version: 0.9.10.0 - Filipe Lourenço) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Broadcom Gigabit NetLink Controller (HKLM\...\{A325B368-A9EC-40EF-A95C-9DEAD3683AE3}) (Version: 12.33.03 - Broadcom Corporation) Canon MP160 Benutzerregistrierung (HKLM-x32\...\Canon MP160 Benutzerregistrierung) (Version: - ) ccc-core-static (x32 Version: 2009.1209.2335.42329 - Ihr Firmenname) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.56 - Piriform) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.4852 - CDBurnerXP) Chicken Invaders 2 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593}) (Version: - Oberon Media) Cisco Webex Meetings (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ActiveTouchMeetingClient) (Version: - Cisco Webex LLC) Convert2MP3 - YouTube Downloader 1.0.11 (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\c4878346-5b5f-589a-b130-8033c196ef00) (Version: 1.0.11 - Convert2MP3) CoreAAC Audio Decoder (remove only) (HKLM-x32\...\CoreAAC Audio Decoder) (Version: - ) CPUID CPU-Z 1.91 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.91 - CPUID, Inc.) CrystalDiskInfo 8.1.0 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 8.1.0 - Crystal Dew World) Dairy Dash (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}) (Version: - Oberon Media) DirPrintOK (HKLM\...\DirPrintOK) (Version: - ) DirPrintOK (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\DirPrintOK) (Version: - ) Dream Day First Home (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}) (Version: - Oberon Media) DreamBoxEdit -- The one and only settings editor for your Dreambox (HKLM-x32\...\DreamBoxEdit) (Version: - ) Dropbox (HKLM-x32\...\Dropbox) (Version: 90.4.307 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.377.1 - Dropbox, Inc.) Hidden DVD Flick 1.3.0.7 (HKLM-x32\...\DVD Flick_is1) (Version: 1.3.0.7 - Dennis Meuwissen) eBay Worldwide (HKLM-x32\...\{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}) (Version: 2.1.0901 - OEM) EinsteinBrainTrainer (remove only) (HKLM-x32\...\EinsteinBrainTrainer) (Version: - ) Ekahau HeatMapper (HKLM\...\Heatmapper-1.1.4.39795) (Version: 1.1.4.39795 - Ekahau Inc.) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 17.3.24.20160513 - Landesfinanzdirektion Thüringen) Eraser 6.0.10.2620 (HKLM\...\{6E5159B4-A519-41EF-80EF-AD58371515DF}) (Version: 6.0.2620 - The Eraser Project) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) eSobi v2 (HKLM-x32\...\InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}) (Version: 2.0.4.000274 - esobi Inc.) eSobi v2 (x32 Version: 2.0.4.000274 - esobi Inc.) Hidden EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) Evernote v. 6.25.1 (HKLM-x32\...\{CA92FF58-B652-11EA-A23A-42010A401FD0}) (Version: 6.25.1.9091 - Evernote Corp.) Everything 1.4.1.992 (x64) (HKLM\...\Everything) (Version: 1.4.1.992 - voidtools) Farm Frenzy 2 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}) (Version: - Oberon Media) ffdshow [rev 3299] [2010-03-03] (HKLM-x32\...\ffdshow_is1) (Version: 1.0.0.3299 - ) Fiat eco:Drive (HKLM-x32\...\com.fiat.convergence.385E4263E7379A5D22A7076E99B02868EFF10711.1) (Version: 2.0.2 - Fiat Group Automobiles) Fiat eco:Drive (x32 Version: 2.0.2 - Fiat Group Automobiles) Hidden FineRecovery v5.0 (HKLM-x32\...\FineRecovery) (Version: v5.0 - FineRecovery Software) First Class Flurry (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115208410}) (Version: - Oberon Media) Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 1.3.105.325 - Foxit Corporation) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.3.321 - Foxit Corporation) Free Audio CD to MP3 Converter version 1.3.12.1228 (HKLM-x32\...\Free Audio CD to MP3 Converter_is1) (Version: 1.3.12.1228 - DVDVideoSoft Ltd.) Free DVD Video Burner version 3.0.4.426 (HKLM-x32\...\Free DVD Video Burner_is1) (Version: - DVDVideoSoft Limited.) Free System Utilities (HKLM-x32\...\{ad2818b3-1616-4ec8-855d-be6936103e5a}) (Version: 1.1.0.70 - Covus Freemium GmbH) Free SystemUtilities (x32 Version: 1.1.0.70 - Covus Freemium GmbH) Hidden Free YouTube Download version 3.1.37.918 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.1.37.918 - DVDVideoSoft Ltd.) Free YouTube To MP3 Converter (HKLM-x32\...\Free YouTube To MP3 Converter_is1) (Version: 4.3.34.1110 - Digital Wave Ltd) FreeMind (HKLM-x32\...\B991B020-2968-11D8-AF23-444553540000_is1) (Version: 1.0.1 - ) FreeOCR v5.4 (HKLM-x32\...\freeocr_is1) (Version: - ) FRITZ!Box-Fernzugang einrichten (HKLM-x32\...\{EFADD989-D9F2-49F6-A280-675951CC78D3}) (Version: 1.0.3 - AVM Berlin) FrostWire 5.3.5 (HKLM-x32\...\FrostWire 5) (Version: 5.3.5.0 - FrostWire Team) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.198 - Google LLC) Google Update Helper (x32 Version: 1.3.36.31 - Google LLC) Hidden GoTo Opener (HKLM-x32\...\{C2A61D74-BB65-42AD-B81F-AC25E1F7DE02}) (Version: 1.0.536 - LogMeIn, Inc.) GoToMeeting 10.14.0.18962 (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\GoToMeeting) (Version: 10.14.0.18962 - LogMeIn, Inc.) Granny In Paradise (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110551697}) (Version: - Oberon Media) Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - ) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Heroes of Hellas (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}) (Version: - Oberon Media) HP Dropbox Plugin (HKLM-x32\...\{1E18E86D-632C-48B5-962C-B60C2E53A478}) (Version: 36.0.41.58587 - HP) HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard) HP Google Drive Plugin (HKLM-x32\...\{039DDA62-50CC-4E7F-9D54-7CF032A2D362}) (Version: 36.0.41.58587 - HP) HP OfficeJet 3830 series - Grundlegende Software für das Gerät (HKLM\...\{DAA02EA6-3D2E-4BF4-9110-9DFAE6FD9EB0}) (Version: 40.11.1119.1786 - HP Inc.) HP OfficeJet 3830 series Hilfe (HKLM-x32\...\{99C52AB4-FBA3-4C12-9AC3-B19A3421EB96}) (Version: 35.0.0 - Hewlett Packard) HP Photosmart 5520 series - Grundlegende Software für das Gerät (HKLM\...\{4F396B08-301D-4E53-A372-95A7E93ABD04}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Support Solutions Framework (HKLM-x32\...\{96D12EC9-720B-45FB-904C-36D6307A1C76}) (Version: 11.51.0048 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden HTC Driver Installer (HKLM-x32\...\{6D6664A9-3342-4948-9B7E-034EFE366F0F}) (Version: 3.0.0.007 - HTC Corporation) Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated) ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.01.1002 - Intel Corporation) Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) iTunes (HKLM\...\{E690A491-702F-4DEC-9977-C015D1DBB57C}) (Version: 12.3.1.23 - Apple Inc.) Java 8 Update 181 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation) Join Air (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.2 - ZTE Corporation) Kassenbuch (HKLM-x32\...\{29531C6B-7B64-4C53-B54A-6C8AB5DE2159}) (Version: 1.0.0 - Office Consult GmbH) K-Lite Codec Pack 9.2.0 (Basic) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.2.0 - ) korAccount (HKLM-x32\...\{EF0904D0-29FE-4EB0-8212-72E2DEC2A23D}) (Version: 4.8.7.0 - Kornelius) Launch Manager (HKLM-x32\...\LManager) (Version: 3.0.05 - Acer Inc.) LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.2.98 - LSI Corporation) MediaHuman YouTube to MP3 Converter Version 3.3 (HKLM-x32\...\MediaHuman YouTube to MP3 Converter_is1) (Version: 3.3 - ) Microsoft 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.13328.20356 - Microsoft Corporation) Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 87.0.664.47 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - ) Microsoft Expression Web 4 (HKLM-x32\...\Web_4.0.1460.0) (Version: 4.0.1460.0 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0407-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation) Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM-x32\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Teams) (Version: 1.2.00.34161 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.25.28508 (HKLM-x32\...\{65e650ff-30be-469d-b63a-418d71ea1765}) (Version: 14.25.28508.3 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Works (HKLM-x32\...\{62F7DA7E-CCCB-439C-A760-00C3926E761F}) (Version: 9.7.0621 - Microsoft Corporation) MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek) Mozilla Firefox 72.0.2 (x64 de) (HKLM\...\Mozilla Firefox 72.0.2 (x64 de)) (Version: 72.0.2 - Mozilla) Mozilla Firefox 83.0 (x64 de) (HKLM\...\Mozilla Firefox 83.0 (x64 de)) (Version: 83.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.2 - Mozilla) MPC-HC 1.7.0 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.0.7858 - MPC-HC Team) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.5 - F.J. Wechselberger) MyWinLocker (HKLM-x32\...\{68301905-2DEA-41CE-A4D4-E8B443B099BA}) (Version: 3.1.76.0 - Egis Technology Inc.) No-IP DUC (HKLM-x32\...\NoIPDUC) (Version: 4.0.1 - Vitalwerks Internet Solutions LLC) Norton Online Backup (HKLM-x32\...\{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}) (Version: 1.2.0.36 - Symantec) NTI Backup Now 5 (HKLM-x32\...\InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}) (Version: 5.1.2.627 - NewTech Infosystems) NTI Backup Now Standard (x32 Version: 5.1.2.627 - NewTech Infosystems) Hidden NTI Media Maker 8 (HKLM-x32\...\InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}) (Version: 8.0.12.6623 - NewTech Infosystems) NTI Media Maker 8 (x32 Version: 8.0.12.6623 - NewTech Infosystems) Hidden O&O Defrag Free Edition (HKLM\...\{C10CAF82-9D36-4D9A-9DC0-C4549F06B519}) (Version: 14.1.431 - O&O Software GmbH) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.13328.20340 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.13328.20340 - Microsoft Corporation) Hidden OSCAR (HKLM\...\{FC6F08E6-69BF-4469-ADE3-78199288D305}_is1) (Version: 1.0.1-r1-Win64-a102a85d - The OSCAR Team) PDF Architect 4 (HKLM-x32\...\PDF Architect 4) (Version: 4.0.34.26215 - pdfforge GmbH) PDF Architect 4 Create Module (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDF Architect 4 Edit Module (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDF Architect 4 View Module (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDF Architect 6 (HKLM-x32\...\PDF Architect 6) (Version: 6.1.19.842 - pdfforge GmbH) PDF Architect 6 Create Module (Version: 6.1.24.1862 - pdfforge GmbH) Hidden PDF Architect 6 Edit Module (Version: 6.1.24.1862 - pdfforge GmbH) Hidden PDF Architect 6 View Module (Version: 6.1.24.1862 - pdfforge GmbH) Hidden PDF Architect 7 (HKLM-x32\...\PDF Architect 7) (Version: 7.0.24.1546 - pdfforge GmbH) PDF Architect 7 Create Module (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Edit Module (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 View Module (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF24 Creator 9.2.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 9.2.0 - PDF24.org) PDFCreator (HKLM\...\{00010FEF-82A2-497E-983A-7105A0167FA7}) (Version: 4.0.3 - pdfforge GmbH) pomodairo (HKLM-x32\...\{EEBEA077-AB92-5083-ECB1-C15BD842D00B}) (Version: 1.9 - UNKNOWN) QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) Random Dresser (HKLM-x32\...\RandomDresser) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5969 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) RescueTime 2.2.1 (HKLM-x32\...\{2505571C-03B3-4F9F-AC35-33F1CB4B5E9E}_is1) (Version: - RescueTime.com) Restorer2000 3.3 (HKLM-x32\...\Restorer2000_is1) (Version: 3.3 - Bitmart Inc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SeaTools for Windows 1.4.0.2 (HKLM-x32\...\SeaTools for Windows) (Version: 1.4.0.2 - Seagate Technology) Shutdown Manager (HKLM-x32\...\{C457BA5F-35F9-480C-90F8-5C91DB443A15}_is1) (Version: 2.0.7 - Daniel Höllig) Signal 1.26.2 (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\7d96caee-06e6-597c-9f2f-c7bb2e0948b4) (Version: 1.26.2 - Open Whisper Systems) SimpleScreenshot 1.40 (HKLM-x32\...\SimpleScreenshot) (Version: - ) SiSoftware Sandra Lite 2020 (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2596}_is1) (Version: 30.41.2020.5 - SiSoftware) SIW version 2011.10.29 (HKLM-x32\...\{AB67580-257C-45FF-B8F4-C8C30682091A}_is1) (Version: 2011.10.29 - Topala Software Solutions) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.) SleepyHead (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\{765e9bfa-a49a-4fa3-ab81-e6854b15d6fc}) (Version: 1.0.0-1 - Jedimark) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Spotify) (Version: 0.9.10.14.g578d350b - Spotify AB) SpywareBlaster 5.0 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.0.0 - BrightFort LLC) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Steganos Safe 14 (HKLM-x32\...\{13B7FBFB-622E-4002-8570-594798E6167D}) (Version: 14.2.2 - Steganos Software GmbH) Steuer-Ratgeber 2016-2017 (HKLM-x32\...\{2D99CB45-87EE-4834-BB15-5DD59A024E4C}) (Version: 16.11.6 - Wolters Kluwer Deutschland GmbH) Steuer-Ratgeber 2017-2018 (HKLM-x32\...\{BC4EE761-703C-485C-A0D6-E8DD7D28F927}) (Version: 17.11.2 - Wolters Kluwer Deutschland GmbH) Steuer-Ratgeber 2018-2019 (HKLM-x32\...\{B96CAC3C-B7E7-4291-B422-0544096E217B}) (Version: 18.11.0 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerRatgeber 2019-2020 (HKLM-x32\...\{8D323537-9904-4A5A-BB0F-92B4B7EB512F}) (Version: 20.00.4 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerRatgeber 2020-2021 (HKLM-x32\...\{2E5063A0-872A-4B65-8163-168B25E6D50A}) (Version: 20.10.14 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) Steuer-Spar-Erklärung 2008 (HKLM-x32\...\{BBE67B86-FCD7-4D3C-8B00-063DEAD8E30C}) (Version: 13.02.0000 - Akademische Arbeitsgemeinschaft) Steuer-Spar-Erklärung 2009 (HKLM-x32\...\{32E00E5E-22B1-4D5A-9DC2-CD75E087A5E6}) (Version: 14.01.0000 - Akademische Arbeitsgemeinschaft Verlag) Steuer-Spar-Erklärung 2010 (HKLM-x32\...\{D8E1DFEE-622B-46BA-AEFF-AB7E541C0B21}) (Version: 15.15 - Akademische Arbeitsgemeinschaft Verlag) Steuer-Spar-Erklärung 2011 (HKLM-x32\...\{9F5FD796-86F0-4360-85F8-D54C0F5411EB}) (Version: 16.18 - Akademische Arbeitsgemeinschaft Verlag) Steuer-Spar-Erklärung 2012 (HKLM-x32\...\{CCD2BAD2-0919-40CB-80CC-E9538B0E4C2E}) (Version: 17.15.11 - Wolters Kluwer Deutschland GmbH) Steuer-Spar-Erklärung 2013 (HKLM-x32\...\{AEB61F7A-4BBA-4292-A096-7893E09034A4}) (Version: 18.11.11 - Wolters Kluwer Deutschland GmbH) SteuerSparErklärung 2014 (HKLM-x32\...\{A463EB06-22A6-47F5-9593-E52B291EF13E}) (Version: 19.14.99 - Akademische Arbeitsgemeinschaft) SteuerSparErklärung 2015 (HKLM-x32\...\{312C0E08-8F94-4536-AAF6-3413F784AC5F}) (Version: 20.42.175 - Akademische Arbeitsgemeinschaft) SteuerSparErklärung 2016 (HKLM-x32\...\{D331D50C-C578-423B-8BC7-94D3133CE315}) (Version: 21.43.115 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2017 (HKLM-x32\...\{45815686-22F8-4D24-872D-E481A654B230}) (Version: 22.42.95 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2018 (HKLM-x32\...\{A1D1FDBD-02F9-49B6-9EB2-2DC6B1D37E16}) (Version: 23.40.59 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2019 (HKLM-x32\...\{C1274A30-7822-4CAE-A4C8-395E9E687107}) (Version: 24.36.138 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2020 (HKLM-x32\...\{E7E3F711-933D-4D9A-BA51-01F47179F23C}) (Version: 25.39.90 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2021 (HKLM-x32\...\{8C111EC2-454D-4C0B-B0D7-E845F1B3AAAD}) (Version: 26.20.32 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) Streamripper (Remove only) (HKLM-x32\...\Streamripper) (Version: - ) Studie zur Verbesserung von HP Deskjet 3070 B611 series Produkten (HKLM\...\{CAD7B6DD-9C82-4D17-BAE8-3E9AE4971B90}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Studie zur Verbesserung von HP OfficeJet 3830 series (HKLM\...\{9C598F48-B5D8-4C16-B59A-FC46C18DE206}) (Version: 40.11.1119.1786 - HP Inc.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.1 - Synaptics Incorporated) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.77242 - TeamViewer) Time Stamp (HKLM-x32\...\Time Stamp_is1) (Version: - 3.23.2010-0313) TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.0.0 - TP-LINK) Tunatic (HKLM-x32\...\Tunatic) (Version: - ) Überwachungstool für die Intel® Turbo-Boost-Technik (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.186.6 - Intel) Uninstall 1.0.0.1 (HKLM-x32\...\Uninstall_is1) (Version: - ) Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod) Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.00.3008 - Acer Incorporated) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinPatrol (HKLM\...\{6A206A04-6BC1-411B-AA04-4E52EDEEADF2}) (Version: 35.5.2017.8 - Ruiware) WinPatrol (HKLM\...\{6E575124-6D34-4E65-9375-7D69468A6089}) (Version: 30.9 - BillP Studios) WinRAR 5.10 Beta 4 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.4 - win.rar GmbH) X Rebirth (HKLM\...\Steam App 2870) (Version: - Egosoft) XMedia Recode 64bit Version 3.5.2.0 (HKLM\...\{D31E6E69-4C6A-42CC-926F-CC7B186864EB}_is1) (Version: 3.5.2.0 - XMedia Recode 64bit) Xvid 1.2.2 final uninstall (HKLM-x32\...\Xvid_is1) (Version: 1.2 - Xvid team (Koepi)) Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version: - Yahoo! Inc.) Yahoo! Software Update (HKLM-x32\...\Yahoo! Software Update) (Version: - ) Zoom (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ZoomUMX) (Version: 5.0 - Zoom Video Communications, Inc.) Zuzahlungsrechner (HKLM-x32\...\{B2C69E77-F209-4B63-8676-4F32B27E162B}) (Version: 3.6.0 - sfr-software-fuers-heim) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\localserver32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19317.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\localserver32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileCoAuthLib64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\MicrosoftListSync.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\GoToMeeting\18962\G2MOutlookAddin64.dll (LogMeIn, Inc.) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\MicrosoftListSync.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\localserver32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\localserver32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\localserver32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{C5FF006E-2AE9-408C-B85B-2DFDD5449D9C}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19317.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\amd64\FileSyncShell64.dll (Microsoft Corporation) ==================== Wiederherstellungspunkte ========================= 27-11-2020 13:31:44 Geplanter Prüfpunkt 28-11-2020 16:47:58 SteuerSparErklärung 2021 wurde installiert. ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2015-11-28 15:42 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {01C5B377-A7EB-4FF3-9C6C-86852FACB348} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Logon => C:\Windows\system32\ProvTool.exe [2020-09-12] (Microsoft Corporation) Task: {01F94132-A3BF-4AD3-BA30-D631FD3A67CA} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange Task: {04C10A9D-5360-47B2-9C96-2DDBCE8EC3F7} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierdaily => C:\Windows\system32\AppHostRegistrationVerifier.exe [2019-03-19] (Microsoft Corporation) Task: {06808131-9C9A-47BD-BA0F-BF67127ED08E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2019-03-12] (Piriform Software Ltd) Task: {083F3813-82BC-4622-A1B0-070C619B7D11} - System32\Tasks\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner => C:\Windows\system32\mitigationscanner.exe [2019-03-19] (Microsoft Corporation) Task: {08F12298-ED23-43F7-A8BC-B3EF9993D813} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe [2020-08-12] (Microsoft Corporation) Task: {0A17BE20-076C-42DA-8F99-A26025333D5F} - System32\Tasks\HP AR Program Upload - c77186144c9e4d9887733fcbfeb43c949342edc65b3a40a69306946f2a856eae => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {0CCE0544-7799-4F0B-84C4-E40CD243CDB4} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition => C:\Windows\system32\ClipRenew.exe [2019-03-19] (Microsoft Corporation) Task: {0D4254FC-C2E0-4C43-AAE5-DB986C14E087} - System32\Tasks\Microsoft\Windows\DUSM\dusmtask => C:\Windows\System32\dusmtask.exe [2020-03-20] (Microsoft Corporation) Task: {105D676A-D551-4274-81E7-97AC52E4FD87} - System32\Tasks\Microsoft\Windows\Speech\HeadsetButtonPress => C:\Windows\system32\speech_onecore\common\SpeechRuntime.exe [2020-08-12] (Microsoft Corporation) Task: {12B77A7C-1DDB-48D8-9A89-E91548474357} - System32\Tasks\Microsoft\Windows\USB\Usb-Notifications Task: {145C3AC4-4E4E-4FC1-9D66-7278918E8E54} - System32\Tasks\HP AR Program Upload - 7cc53373cd304f8c999d87fa1c38910608fc6fdfa6d7487c8dbb11e531d53d10 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {14876E89-52E5-41AD-A9FC-897754B47003} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {15975FEC-F71A-4FF3-9831-53024113DA95} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\Windows\system32\MusNotification.exe [2020-09-12] (Microsoft Corporation) Task: {191384C9-85A1-4EB2-81D4-48F5A0C6ACB7} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => C:\Windows\System32\UNP\UpdateNotificationMgr.exe [2020-01-16] (Microsoft Corporation) Task: {1949073A-8FDA-4EA4-8E59-407CDB02440F} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihpostreboot => C:\Windows\system32\sihclient.exe [2020-09-12] (Microsoft Corporation) Task: {198C6069-60F1-4EB6-8716-27AB9120665D} - System32\Tasks\Microsoft\Windows\DirectX\DirectXDatabaseUpdater => C:\Windows\system32\directxdatabaseupdater.exe [2019-10-07] (Microsoft Corporation) Task: {1B2187D4-3738-49A9-9552-770B28C5F06F} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {1C03E9C3-4B4B-4ACB-A8AB-17B2C42F6D36} - System32\Tasks\HP AR Program Upload - 86702d7e2b234fe0ac4104c075da5675aa9e3e32525c4609a8c1d9652126c508 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {1C43CA8A-5CBB-4D62-A8A9-59EB5FD5E5BD} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {1E70C993-4466-4BAD-A746-3D88BC0ECBFA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [2020-11-06] (Microsoft Corporation) Task: {1FD82FBC-B8E1-4418-9252-DCB00E106E2E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr Task: {220D3535-F0C2-4BE0-9FA8-341454F3B598} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand Task: {26842367-1E82-4CDB-8AAB-C8CBD0C75616} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => C:\Windows\system32\MusNotification.exe [2020-09-12] (Microsoft Corporation) Task: {27F6C07A-F332-45A4-A372-8B034DEC6F9F} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-07-09] (Microsoft Corporation) Task: {29C0F4DC-19CC-4E6C-96FA-C910ECB14B49} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask Task: {2E99EEA1-3299-49D3-AACA-98AC7D967701} - System32\Tasks\Microsoft\Windows\Flighting\OneSettings\RefreshCache Task: {313BECCB-A073-490F-843C-8EFEE2F71B8E} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_445_Plugin.exe [2020-10-22] (Adobe) Task: {34678CAF-04EE-4B64-B842-C38C8BAA175D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {3472D253-581F-4480-8539-784D74361402} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2020-02-12] (Microsoft Corporation) Task: {34A34F92-362A-49E3-9830-EECF17ABB479} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {34E8CE7D-77E5-4405-AE3D-26816C4C69C8} - System32\Tasks\Microsoft\Windows\Workplace Join\Recovery-Check => C:\Windows\System32\dsregcmd.exe [2020-08-12] (Microsoft Corporation) Task: {3810C063-8759-4D54-A834-4BEA5D6BFBE4} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck Task: {3AFE5C37-28C2-4B7C-B6A6-1F46F1B946AE} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {3C45C6F0-0D32-4C27-9336-7B982C77F32E} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync Task: {3D8E83D8-967E-44AC-8896-42CDEC763404} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdatesAsUser Task: {3E7650E7-DBA3-4B90-8D84-4232AE8A029F} - System32\Tasks\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh Task: {3EBAF09A-814C-4FB9-9F00-8BB931BFE845} - System32\Tasks\Microsoft\Windows\Chkdsk\SyspartRepair => C:\Windows\system32\bcdboot.exe [2020-10-15] (Microsoft Corporation) Task: {3F59A224-47CF-4786-BD79-03F5F867511B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => C:\Windows\system32\MusNotification.exe [2020-09-12] (Microsoft Corporation) Task: {40378C7B-CE71-41E6-9B6F-EDE9D47789DE} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh Task: {40978C8B-1D20-43E6-89F1-B1BA719E581E} - System32\Tasks\HP AR Program Upload - 80a8e838e6934cd8b655baa83b9a353e1c06edcb6d694a43b472cfefd87bcfc5 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {411484AC-BD71-4DE3-8AA4-5473F69B8EA3} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {416FBFEF-09C2-4D51-9358-72205B2F5ED3} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives Task: {417D2A3C-0AC4-4F5D-BF29-B0E233E5E9D3} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager Task: {419DDB67-5AD4-45B9-AD3F-0E19A2BB7B2D} - \Microsoft\Windows\UNP\RunCampaignManager No Task File <==== ATTENTION Task: {42C2F5A4-FFDB-490E-BCA5-2D77D72FCC7F} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2020-02-12] (Microsoft Corporation) Task: {46DDFBEA-7B80-499F-8D16-8FB7836BEBDC} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2020-02-12] (Microsoft Corporation) Task: {478A3CAF-E492-410F-BC39-E1A43D7BF89D} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2020-11-04] (Microsoft Corporation) Task: {47B89A79-53D2-485E-AD87-148165B28519} - System32\Tasks\Microsoft\Windows\PushToInstall\Registration => Sc.exe start pushtoinstall registration Task: {47C46238-A6C4-4C4B-BE85-E6E1425608CB} - System32\Tasks\{144D2C4F-2583-452B-AC74-C64839CF03CC} => pcalua.exe -a "C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe" -d "C:\Program Files (x86)\VS Revo Group\Revo Uninstaller" -c -hunter Task: {486A3705-892D-4986-9182-F7794B1C34EF} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1242904208-471078349-2963378918-1003 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {48F207D2-23BE-4F26-A115-B05B486F6CA6} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates Task: {48F2CE0B-A0AC-45A7-BA8A-D829454C36BD} - System32\Tasks\HPPrintMonitorService => C:\Program Files (x86)\HP\Diagnostics\PrintMonitorService\HPPrintMonitorService.exe [2020-10-13] () Task: {49723E02-558F-4E12-BD48-8ACD6598EC43} - System32\Tasks\HP AR Program Upload - 854d1af6a1324f42910f1f8b74b2b3f41fb51fedf01b43d1a63e88c9a6f21790 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {4A61BCE1-02FC-4F8D-AD7D-06CC80F2C130} - System32\Tasks\Microsoft\Windows\EDP\StorageCardEncryption Task Task: {4D496758-CF92-424B-8FC7-E95278FD13F2} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefreshTask Task: {4DDF305C-E963-45BE-A8F0-DB2A76C9E03C} - System32\Tasks\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task Task: {50210B17-0E65-49B5-8378-604667F33EAC} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [2020-11-21] (Mozilla Foundation) Task: {50CD27F6-1FBE-4505-BA99-EFA8D9503159} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {51240913-D4C6-4B30-80F4-9C2F3A094226} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1242904208-471078349-2963378918-1004 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {51932413-8591-44B3-9634-631B54C9A4BE} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-07-09] (Microsoft Corporation) Task: {51B7FB15-4DCB-400E-9A98-10E802F21FB3} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceScreenOnOff Task: {52C1F2DA-58AA-494C-8D61-BFE8A0FC2285} - System32\Tasks\Microsoft\Windows\EDP\EDP Auth Task Task: {52FE82CE-EC2E-4802-BCC3-4E0421151CFC} - System32\Tasks\{F3B963CB-BFF7-43C8-ADEF-9881996EFE34} => msiexec.exe /package "C:\Users\XXX XXX\Downloads\HPSupportSolutionsFramework-11.51.0048.msi" Task: {55394AAB-D0F9-4CB6-9AD8-1200F7C99793} - System32\Tasks\Microsoft\Windows\SharedPC\Account Cleanup => Rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance Task: {55412461-F053-4583-A6BF-19F36DAAD46D} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdates Task: {58288CB7-4BC3-4408-B52F-202304CE9DCD} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession Task: {5A42985A-DC32-4FE1-8210-CA09F67316FC} - System32\Tasks\HPCustPartic.exe_{96420065-3C4E-4B3E-96DB-DB0760F51DDD} => C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {5B809258-C03C-4228-B9D8-9318D47D75B2} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => C:\Windows\system32\MusNotification.exe [2020-09-12] (Microsoft Corporation) Task: {5E1E681C-C0F1-4E87-8C95-38A011634E9C} - \OfficeSoftwareProtectionPlatform\SvcRestartTask No Task File <==== ATTENTION Task: {6099772D-A604-4768-AE38-C3B7ED2BBFEE} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation Task: {613A083C-17CD-47F4-AC35-96FC308E59CF} - System32\Tasks\Microsoft\Windows\Workplace Join\Device-Sync Task: {641EC4E1-3857-4C7C-B363-15EE8CB31515} - System32\Tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization Task: {64BFE52D-B5D0-41D9-B3AF-EE6F0A81EC3C} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2019-03-19] (Microsoft Corporation) Task: {654B9E77-7E74-4742-8697-77B8B7B18D89} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition => C:\Windows\system32\ClipRenew.exe [2019-03-19] (Microsoft Corporation) Task: {66D2CBB0-974D-409B-9790-4A078497AB23} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask Task: {681029CD-B8CB-42AA-9842-CF7EDBF5E5DA} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {68134DAF-D093-41B4-81A7-3699F92D4938} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {68560DFD-FC67-4EF8-BAA4-7F72211F3FD5} - System32\Tasks\Microsoft\Windows\DirectX\DXGIAdapterCache => C:\Windows\system32\dxgiadaptercache.exe [2019-10-07] (Microsoft Corporation) Task: {68E7EBEF-ADBD-46F6-A830-9F150DECC219} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {6CD70278-3C30-4E8E-A585-8D9E5CAB415F} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2020-09-12] (Microsoft Corporation) Task: {6F964C7E-B4C0-4B86-AB28-4076262C658F} - System32\Tasks\Microsoft\Windows\WwanSvc\NotificationTask => C:\Windows\System32\WiFiTask.exe [2020-06-09] (Microsoft Corporation) Task: {6FFA775B-E7BB-4DE0-A8F8-EA6FA07E6B25} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources Task: {71BFB70C-91A5-41C9-B858-C9DACBEF4900} - System32\Tasks\Microsoft\Windows\EDP\EDP App Launch Task Task: {73CB9900-BD4D-4C69-9F68-6746AE3BB44B} - System32\Tasks\Microsoft\Windows\InstallService\SmartRetry Task: {786DB5A0-25AD-4CDC-BB7E-97656C616113} - System32\Tasks\HP AR Program Upload - 1f34e1c96e2441c2954c4ee9bad5d9a7c0a8147dcd0a401485574ee6cc4342d5 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {792B72B2-C51B-4379-B2AA-007529DB50F0} - System32\Tasks\{8D77E667-A31C-4EB4-B209-1E559B732CBC} => pcalua.exe -a "C:\Program Files (x86)\Canon\IJEREG\MP160\UNINST.EXE" Task: {798DB582-30ED-4D82-974F-12178BC4D55A} - System32\Tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask => C:\Windows\system32\speech_onecore\common\SpeechModelDownload.exe [2020-08-12] (Microsoft Corporation) Task: {79BA746A-87B5-4B8C-A08E-7F34396F0BE2} - System32\Tasks\Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate Task: {7A3202FC-4B05-4284-91B4-1672A1BE9E79} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [2020-11-06] (Microsoft Corporation) Task: {7A550ACD-D20D-44ED-B2FA-5CA6FED0BB00} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattelrunner.exe [2020-10-15] (Microsoft Corporation) Task: {7AEAE564-35D2-434E-8BC2-12BF5BC672DE} - System32\Tasks\HPCustParticipation HP Deskjet 3070 B611 series => C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {7C8034B4-286F-4E86-AD41-4140C28A9604} - System32\Tasks\Microsoft\Windows\WaaSMedic\PerformRemediation Task: {7EF35221-FB0C-46A6-A192-205B5FD553A1} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {7FBDDC9A-D7DB-4F90-B8CE-4973E5018DF5} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask Task: {823F7188-5012-42FC-84D6-FA377D85C79C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateModelTask => C:\Windows\system32\usoclient.exe [2020-02-12] (Microsoft Corporation) Task: {83A0830F-3199-4F4F-82E2-53402B1A941D} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon => C:\Windows\System32\XblGameSaveTask.exe [2020-05-14] (Microsoft Corporation) Task: {8935E931-DE1D-4861-A3C7-0B51845FC33F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [2020-11-15] (Microsoft Corporation) Task: {8B63D47F-68D1-4294-81D7-BAB2F0FB94F4} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2019-02-04] (Dropbox, Inc.) Task: {8CE419DE-4815-423C-8287-51CEF62C7937} - System32\Tasks\Microsoft\Windows\WlanSvc\CDSSync Task: {8F8F5002-8ACA-43DD-A747-2F4CA7E36AF8} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2020-08-12] (Microsoft Corporation) Task: {90C28B5C-2A50-48E1-9579-EEE75F1B1F2E} - System32\Tasks\Microsoft\Windows\StateRepository\MaintenanceTasks => Rundll32.exe %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks Task: {92533B9B-37E7-4E54-B7DE-F8B0B255CFEE} - System32\Tasks\{4781B96F-C3F4-45CF-AB6F-C64C9AD3E88D} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{319D91C6-3D44-436C-9F79-36C0D22372DC}\setup.exe" -d "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK" -c -runfromtemp -removeonly Task: {944A3F3C-C08C-4E63-9CFF-456C6C55CB9E} - System32\Tasks\Microsoft\Windows\rempl\shell => C:\Program Files\rempl\sedlauncher.exe [2019-03-30] (Microsoft Corporation) Task: {97CC0222-F646-4DF1-A3E1-FCA3ECEE956C} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2020-11-15] (Microsoft Corporation) Task: {9871084F-8757-4D3E-9DCE-3D0ECB1129D7} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {98C665F9-788F-4BCA-B16D-C37BC33F8868} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2019-02-04] (Dropbox, Inc.) Task: {98D50E70-7C0D-48DC-97D6-0784CA5142DA} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {98FF15AC-7B0A-4006-8AA9-46F22DE5EA96} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [2020-11-06] (Microsoft Corporation) Task: {9CB9760E-A5CF-40B2-AA8B-66B3D69315E7} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Cellular => C:\Windows\system32\ProvTool.exe [2020-09-12] (Microsoft Corporation) Task: {9E42E54A-6BB4-4F7E-892C-2C5183F55B20} - System32\Tasks\Microsoft\Windows\Printing\EduPrintProv => C:\Windows\system32\eduprintprov.exe [2019-03-19] (Microsoft Corporation) Task: {A1D835EF-9220-45A2-811E-2CA5B38166BF} - System32\Tasks\hpUrlLauncher.exe_{4AF7A75F-FDE8-41B8-80D9-5C3EBC32D019} => C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\utils\hpUrlLauncher.exe Task: {A2488771-C70F-410B-ACC7-0C57087007C2} - System32\Tasks\HP AR Program Upload - 35705e1cf9504357848dc302c9669a5caa95e00a3e9f4a8d9f6ab1f8a3caa919 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {A684E35C-2BB4-40E9-A108-EA9F4CA1A550} - System32\Tasks\HP AR Program Upload - 03c1600c004a411789f6d8d580f9808adcf1f1d2947c4a7ea0c8a6884556b976 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {A806A8FA-C7FE-4770-BFDF-90F6A40E3DEF} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24 Task: {A8E26236-4D4B-46F7-AAF3-75902A32BB15} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange Task: {A8E85CF5-280D-463A-87FA-085DDBCDF6B9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {AA102638-D3DE-421D-86B6-F2855CAC3F08} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {AB6A2C2A-DD90-40C7-BCA0-8BD111A95963} - System32\Tasks\Microsoft\Windows\Device Information\Device => C:\Windows\system32\devicecensus.exe [2020-10-15] (Microsoft Corporation) Task: {AC0A14E1-F828-4936-BA1B-603EE91BB3DF} - System32\Tasks\Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate Task: {AC577598-18CA-4F02-9CC5-26340D8702A2} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {AE2D7B3C-B28C-4E42-86C3-D9BF1ED0424C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2020-11-04] (Microsoft Corporation) Task: {AF181718-581A-41D4-B0BF-60CA6DC1694D} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1242904208-471078349-2963378918-1000 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {AF4EEFF6-7AC7-4FB8-8036-E090A9EB3AFC} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe Task: {AF8B4826-8277-49A7-89C0-ACEBA877E5A5} - System32\Tasks\HPCustParticipation HP OfficeJet 3830 series => C:\Program Files\HP\HP OfficeJet 3830 series\Bin\HPCustPartic.exe [2017-03-27] (HP Inc.) Task: {B084B8EA-32F7-4952-A0E7-6E89CD668254} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {B241FCBE-C6B6-4F12-9A5C-DD58A9D6CE18} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange Task: {B320E058-C6FA-413F-876B-0C9B4428AE66} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic6 Task: {B4E70F3C-3FE0-48DB-8559-9FDACF08E609} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2020-09-12] (Microsoft Corporation) Task: {B523DF24-D94C-41A6-A328-BCF13B2EDE4A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2020-11-03] (Adobe Inc.) Task: {B608EBAA-A759-44B4-B758-5C039701BB1D} - System32\Tasks\G2MUpdateTask-S-1-5-21-1242904208-471078349-2963378918-1000 => C:\Users\XXX XXX\AppData\Local\GoToMeeting\18962\g2mupdate.exe [2020-10-22] (LogMeIn, Inc.) Task: {B70DE820-5E4A-4D50-880F-5AF4416A4229} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {B8F0DEC7-8392-4F57-9990-74FCB934033F} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\Windows\System32\WinBioPlugIns\FaceFodUninstaller.exe [2020-10-15] () Task: {BB48CD32-8B69-423A-A343-7AFC6276C8BD} - System32\Tasks\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask Task: {BB5C9F82-7A27-4979-82BD-45739449A876} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2019-03-19] (Microsoft Corporation) Task: {BB5E864F-8828-4D24-80FD-0BD73E6830E7} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback Task: {BC02D38B-B9A7-413C-AF2E-D1E3D4E8CD99} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2019-04-04] (Piriform Software Ltd) Task: {BEF19949-EFA3-412C-8B8E-BC3B749C325D} - System32\Tasks\Microsoft\Windows\License Manager\TempSignedLicenseExchange Task: {C391351C-0F98-447E-B3F3-F932910C72FD} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2019-03-19] (Microsoft Corporation) Task: {C5A63EED-4FE6-45F0-A490-AE35FB29B04D} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {C6B2579B-4962-4D12-883D-BBD420573A6C} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic1 Task: {C787E70A-60D6-48A1-8C4A-0B14D2349CDA} - System32\Tasks\HP AR Program Upload - 41ef4bbbee3b49c3a813725f7b93d37d63ad611e24cd4ecc9aa891fa5366d204 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {C7FCDE46-F8B6-4BB7-AA32-DFF92C6B74DC} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2019-03-19] (Microsoft Corporation) Task: {D19A2726-897E-4F7D-9CE4-0773B449CE9E} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceConnectedToNetwork Task: {D3C8250E-FAC7-4C67-A7FE-89F284D7F2B0} - System32\Tasks\G2MUploadTask-S-1-5-21-1242904208-471078349-2963378918-1000 => C:\Users\XXX XXX\AppData\Local\GoToMeeting\18962\g2mupload.exe [2020-10-22] (LogMeIn, Inc.) Task: {D62D6B07-4BC7-4A35-BDC4-C29537003F93} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {D6B6B3B0-5971-46A3-932B-CEAD3576353C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan Static Task => C:\Windows\system32\usoclient.exe [2020-02-12] (Microsoft Corporation) Task: {D8153288-469F-4985-81CD-A6BF60EF29F2} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceManagerTask => C:\Windows\system32\spaceman.exe [2019-03-19] (Microsoft Corporation) Task: {D8A50F3C-4BF2-46E9-B708-B51207C90FF2} - System32\Tasks\Microsoft\Windows\PushToInstall\LoginCheck => Sc.exe start pushtoinstall login Task: {DAE12BEE-AF8C-4826-8A2D-E22471168A4D} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierinstall => C:\Windows\system32\AppHostRegistrationVerifier.exe [2019-03-19] (Microsoft Corporation) Task: {DEB9F23A-78EE-47F2-BFE3-F0202A2F0BB5} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {DF8ABE54-47C9-4567-8DD0-36F92A2CC529} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates Task: {E0EB37DB-13E6-46AF-BDF5-011483772D6B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Backup Scan => C:\Windows\system32\usoclient.exe [2020-02-12] (Microsoft Corporation) Task: {E215B699-95A9-44CD-A30F-ECEEDA4BFAE6} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload => C:\Windows\system32\dmclient.exe [2019-03-19] (Microsoft Corporation) Task: {E36CA599-B047-467B-99AF-5E380AFECE05} - System32\Tasks\{AC797CD7-B058-4AC8-84B2-B2307D6AFF9B} => C:\Program Files (x86)\Chandler1.0.3\chandler.exe Task: {E3BD13E8-E6BC-4FFE-B71A-F218B72D4590} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [2020-11-15] (Microsoft Corporation) Task: {E4AEB720-7F18-419F-A20E-6E0B5C4ED968} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged Task: {E609D366-10F0-4EC1-96C8-1F8161C673C5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask => C:\Windows\system32\MDMAgent.exe [2020-04-26] (Microsoft Corporation) Task: {E85DBE85-E344-4E48-A05A-ACF97445121F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {E9A46D73-1D61-4419-90FD-B0B371A44777} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleCommand Task: {EB183C01-5912-4CA6-A1A4-D43D8F1930D8} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [2020-10-22] (Adobe) Task: {EC8C8600-8841-4D4C-AE7C-BEAC47F1FA63} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures Task: {EDBDB6CB-814E-4646-938E-ABC65706505A} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask Task: {EDD0DC82-5A98-4BDF-B7A4-D62684EFFC55} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {EDFAF44C-B64E-4CCE-A064-B5BD4D635EB7} - System32\Tasks\HP AR Program Upload - c5d7096e8a7041e1adb9f43382b70f6bb7d79ab1ef33457cbb0519a12e3027a6 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {EE91A728-5463-4C50-96DE-D75635B10A14} - System32\Tasks\HP AR Program Upload - 4f60a7f610654c7cbbc59ad9701b2c4e981e9316372045c3a0fcafd934ed8283 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {F108FC97-F5B0-4510-9C8E-EB2E8F5AE0EA} - System32\Tasks\HP AR Program Upload - aa75a83ba0e54f469f9229056b3523d0eb35faeb3e174ec898b456f50bbc2c60 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {F1615097-D4AC-4259-8EA3-D22FF59062A6} - System32\Tasks\Microsoft\Windows\NlaSvc\WiFiTask => C:\Windows\System32\WiFiTask.exe [2020-06-09] (Microsoft Corporation) Task: {F2E8AA59-252D-4EA4-AF79-32DB90AB50D6} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTask => C:\Windows\System32\XblGameSaveTask.exe [2020-05-14] (Microsoft Corporation) Task: {F2FCCCBA-0DA2-43B1-8383-00F0D84C51F0} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => C:\Windows\system32\compattelrunner.exe [2020-10-15] (Microsoft Corporation) Task: {F30712C0-5F79-4616-BFEE-8D27E1822469} - System32\Tasks\{581487AC-8AAF-40E1-A997-6B8519F0C5EC} => C:\Program Files (x86)\Chandler1.0.3\chandler.exe Task: {F369958F-78A7-4AF3-9208-D840060ECE2F} - System32\Tasks\Microsoft\Windows\DiskFootprint\StorageSense Task: {F5C8CD5E-4AE6-4905-A40A-FE41E95BBCD0} - System32\Tasks\HP AR Program Upload - 4e87e193ced545948cef775c4226ba4b2926f9dc50154c4a8b71dc91d015e394 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [2012-10-17] (TODO: <Company name>) Task: {F880A225-F7DE-4289-90B1-111C5A5F67B1} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {F983E937-6426-4EB2-BBC3-9E94E3752925} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask Task: {FA103B2E-5EB2-499F-9443-9765F29C7B5B} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation Task: {FD4D8ACC-09B4-4FFB-8BEF-4A38EE759CBB} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {FD99B9AA-26F4-41C8-A511-227192E65CF5} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice Task: {FF014C31-9580-458A-A3CC-476887BB1738} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [2020-11-06] (Microsoft Corporation) Task: {FF19ABB7-3365-461D-9EB1-CFE7D417B65D} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2020-06-09] (Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1242904208-471078349-2963378918-1000.job => 0x000A01008692B6E6B1018744A62E57A1B99F723E46003802000000003C000A00200000000014730F000000000513040000248421000000000000000000000000000000000000480043003A005C00550073006500720073005C00440061006E00690065006C00650020004300690070007200690061006E006F005C0041007000700044006100740061005C004C006F00630061006C005C0047006F0054006F004D0065006500740069006E0067005C00310038003900360032005C00670032006D007500700064006100740065002E00650078006500000000003A0043003A005C00550073006500720073005C00440061006E00690065006C00650020004300690070007200690061006E006F005C0041007000700044006100740061005C004C006F00630061006C005C0047006F0054006F004D0065006500740069006E0067005C003100380039003600320000001800410072006200650069007400730063006F006D00700075007400650072005C00440061006E00690065006C006500000054004B006500650070007300200047006F0054006F004D0065006500740069006E006700200075007000200074006F00200064006100740065002E002000540068006900730020007400610073006B002000690073002000720065006D006F0076006500640020007700680065006E00200047006F0054006F004D0065006500740069006E006700200069007300200075006E0069006E007300740061006C006C00650064002E000000000008000313040000000000010030000000E4070A001600000000000000110024009F0500003C0000000000000001000000010000000000000000000000 Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-1242904208-471078349-2963378918-1000.job => 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eladene Module (Nicht auf der Ausnahmeliste) ============== 2019-03-19 05:43 - 2019-03-19 05:43 - 00054960 _____ () C:\WINDOWS\System32\UMPDC.dll 2020-02-12 12:39 - 2020-02-12 12:39 - 01841152 _____ () C:\WINDOWS\system32\TextInputMethodFormatter.dll 2019-03-19 05:59 - 2019-03-19 13:18 - 00094720 _____ () C:\Windows\System32\VirtualMonitorManager.dll 2020-10-07 00:28 - 2020-10-07 00:28 - 06602552 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll 2019-03-19 05:43 - 2019-03-19 05:43 - 00494592 _____ () C:\Windows\ShellExperiences\TileControl.dll 2019-11-05 15:03 - 2019-11-05 15:03 - 02880000 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll 2020-08-12 17:35 - 2020-08-12 17:35 - 00943936 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe 2020-09-12 21:22 - 2020-09-12 21:22 - 01799168 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2019-07-19 11:55 - 2019-07-19 11:55 - 00037888 _____ () C:\Windows\System32\usocoreps.dll 2020-11-21 07:03 - 2020-11-21 07:03 - 03963088 _____ () C:\Program Files\Mozilla Firefox\libGLESv2.dll 2020-11-21 07:03 - 2020-11-21 07:03 - 00045264 _____ () C:\Program Files\Mozilla Firefox\libEGL.dll 2020-10-15 20:29 - 2020-10-15 20:29 - 00619768 _____ () C:\WINDOWS\SYSTEM32\WINBIOPLUGINS\FACEBOOTSTRAPADAPTER.DLL ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\FreeOCR:Win32App_1 AlternateDataStreams: C:\Program Files\Apoint2K:Win32App_1 AlternateDataStreams: C:\Program Files\Bonjour:Win32App_1 AlternateDataStreams: C:\Program Files\Broadcom:Win32App_1 AlternateDataStreams: C:\Program Files\CCleaner:Win32App_1 AlternateDataStreams: C:\Program Files\Eraser:Win32App_1 AlternateDataStreams: C:\Program Files\GIMP 2:Win32App_1 AlternateDataStreams: C:\Program Files\iTunes:Win32App_1 AlternateDataStreams: C:\Program Files\LSI SoftModem:Win32App_1 AlternateDataStreams: C:\Program Files\Microsoft Silverlight:Win32App_1 AlternateDataStreams: C:\Program Files\PDF Architect 4:Win32App_1 AlternateDataStreams: C:\Program Files\Recuva:Win32App_1 AlternateDataStreams: C:\Program Files\UNP:Win32App_1 AlternateDataStreams: C:\Program Files\WinRAR:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\AC3Filter:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Acronis:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\AllDup:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Allway Sync:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\AmIcoSingLun:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\AOMEI Partition Assistant Standard Edition 6.0:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Apple Software Update:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\ATI Technologies:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Audacity:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\BatteryCare:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Bonjour:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\CDBurnerXP:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\CrystalDiskInfo:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\DVD Flick:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\DVDVideoSoft:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\ElsterFormular:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\FreeMind:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\FRITZ!Fernzugang einrichten:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\HD Tune:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\HP:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\HTC:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\ImgBurn:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Join Air:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\K-Lite Codec Pack:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Launch Manager:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Microsoft Office:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Microsoft Office Suite Activation Assistant:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Microsoft Silverlight:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Microsoft Works:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Mozilla Firefox:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\MPC-HC:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\MSXML 4.0:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\NewTech Infosystems:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\PDF Architect:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\PDF Architect 4:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\PDF24:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\pomodairo:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\QuickTime:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\RescueTime:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Restorer2000:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Shutdown Manager:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\SIW:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\SpywareBlaster:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Steganos Safe 14:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\TeamViewer:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Time Stamp:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Xvid:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Zuzahlung30:Win32App_1 AlternateDataStreams: C:\ProgramData\Acronis:Win32App_1 AlternateDataStreams: C:\ProgramData\AmUStor:Win32App_1 AlternateDataStreams: C:\ProgramData\HP:Win32App_1 AlternateDataStreams: C:\Users\XXX XXX\Documents\Unfallkarte und Kontaktdaten.jpeg:3or4kl4x13tuuug3Byamue2s4b AlternateDataStreams: C:\Users\XXX XXX\Documents\Unfallkarte und Kontaktdaten.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318} => ""="Media" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318} => "SafeBootDrivers"="1" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52} => ""="Firmware" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioEndpointBuilder => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioSrv => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CBDHSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudAddService.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudBus.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetSetupSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SerCx2.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SpbCx.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\uefi.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\usbaudio.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WinQuic => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318} => ""="Media" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318} => "SafeBootDrivers"="1" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52} => ""="Firmware" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer trusted/restricted =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\download.microsoft.com -> hxxp://download.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\download.windowsupdate.com -> hxxp://download.windowsupdate.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\download.windowsupdate.com -> hxxps://download.windowsupdate.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\microsoft.com -> hxxp://ntservicepack.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ntservicepack.microsoft.com -> hxxp://ntservicepack.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\sklavenzentrale.com -> hxxps://www.sklavenzentrale.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\update.microsoft.com -> hxxp://update.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\update.microsoft.com -> hxxps://update.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\windows.com -> hxxp://wustat.windows.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\windowsupdate.com -> hxxp://download.windowsupdate.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\windowsupdate.com -> hxxps://download.windowsupdate.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\windowsupdate.microsoft.com -> hxxp://windowsupdate.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ws.microsoft.com -> hxxp://ws.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ws.microsoft.com -> hxxps://ws.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\wustat.windows.com -> hxxp://wustat.windows.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0411dd.com -> 0411dd.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0511zfhl.com -> 0511zfhl.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0632qyw.com -> 0632qyw.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\1-2005-search.com -> www.1-2005-search.com Da befinden sich 12656 mehr eingeschränkte Seiten. ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\XXX XXX\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\4473591-doctor-who-wallpapers.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist deaktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\Services: aakore => 2 MSCONFIG\Services: AAV UpdateService => 2 MSCONFIG\Services: AcronisActiveProtectionService => 2 MSCONFIG\Services: AcrSch2Svc => 2 MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: afcdpsrv => 2 MSCONFIG\Services: AgereModemAudio => 2 MSCONFIG\Services: AMD External Events Utility => 2 MSCONFIG\Services: Apple Mobile Device => 2 MSCONFIG\Services: Apple Mobile Device Service => 2 MSCONFIG\Services: Avira.ServiceHost => 2 MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: BotkindSyncService => 2 MSCONFIG\Services: dbupdate => 2 MSCONFIG\Services: dbupdatem => 3 MSCONFIG\Services: DbxSvc => 2 MSCONFIG\Services: DigitalWave.Update.Service => 2 MSCONFIG\Services: ePowerSvc => 2 MSCONFIG\Services: Everything => 2 MSCONFIG\Services: FoxitCloudUpdateService => 2 MSCONFIG\Services: GoogleChromeElevationService => 3 MSCONFIG\Services: Greg_Service => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: HPSupportSolutionsFrameworkService => 2 MSCONFIG\Services: IAANTMON => 2 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: LMS => 2 MSCONFIG\Services: mmsminisrv => 2 MSCONFIG\Services: mobile_backup_server => 3 MSCONFIG\Services: mobile_backup_status_server => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: NoIPDUCService4 => 2 MSCONFIG\Services: NTI IScheduleSvc => 2 MSCONFIG\Services: NTIBackupSvc => 3 MSCONFIG\Services: NTISchedulerSvc => 2 MSCONFIG\Services: OODefragAgent => 3 MSCONFIG\Services: PassThru Service => 2 MSCONFIG\Services: PDF Architect 4 => 3 MSCONFIG\Services: PDF Architect 4 CrashHandler => 3 MSCONFIG\Services: PDF Architect 4 Creator => 2 MSCONFIG\Services: PDF Architect 6 => 3 MSCONFIG\Services: PDF Architect 6 Creator => 2 MSCONFIG\Services: PDF Architect 6 Update Service => 2 MSCONFIG\Services: PDF24 => 2 MSCONFIG\Services: RS_Service => 2 MSCONFIG\Services: SandraAgentSrv => 3 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\Services: syncagentsrv => 2 MSCONFIG\Services: SynTPEnhService => 2 MSCONFIG\Services: TeamViewer => 2 MSCONFIG\Services: TeamViewer9 => 2 MSCONFIG\Services: Tib Mounter Service => 3 MSCONFIG\Services: TomTomHOMEService => 2 MSCONFIG\Services: TurboBoost => 3 MSCONFIG\Services: UNS => 2 MSCONFIG\Services: Updater Service => 2 MSCONFIG\startupfolder: C:^Users^XXX XXX^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^EvernoteClipper.lnk => C:\Windows\pss\EvernoteClipper.lnk.Startup MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe" MSCONFIG\startupreg: adm_tray.exe => C:\Program Files (x86)\Acronis\DriveMonitor\adm_tray.exe MSCONFIG\startupreg: APSDaemon => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe MSCONFIG\startupreg: Eraser => "C:\Program Files\Eraser\Eraser.exe" --atRestart MSCONFIG\startupreg: HP Photosmart 5520 series (NET) => "C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN45U712HT0602:NW" -scfn "HP Photosmart 5520 series (NET)" -AutoStart 1 MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: SandboxieControl => "C:\Program Files\Sandboxie\SbieCtrl.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" HKLM\...\StartupApproved\Run: => "PLFSetI" HKLM\...\StartupApproved\Run: => "Acer ePower Management" HKLM\...\StartupApproved\Run: => "IAAnotif" HKLM\...\StartupApproved\Run: => "mwlDaemon" HKLM\...\StartupApproved\Run: => "OODefragTray" HKLM\...\StartupApproved\Run: => "AmIcoSinglun64" HKLM\...\StartupApproved\Run: => "SynTPEnh" HKLM\...\StartupApproved\Run: => "Everything" HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service" HKLM\...\StartupApproved\Run32: => "AcronisTibMounterMonitor" HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe" HKLM\...\StartupApproved\Run32: => "StartCCC" HKLM\...\StartupApproved\Run32: => "LManager" HKLM\...\StartupApproved\Run32: => "SimpleScreenshot" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Dropbox" HKLM\...\StartupApproved\Run32: => "PDFPrint" HKLM\...\StartupApproved\Run32: => "Acronis Scheduler2 Service" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "HP Photosmart 5520 series (NET)" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "MyDriveConnect.exe" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "HP OfficeJet 3830 series (NET)" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "WinPatrol" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "Convert2MP3 - YouTube Downloader" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "HP OfficeJet 3830 series (NET) #2" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "vidnotifier.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) %systemroot%\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [SNMP-Out-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-In-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-Out-UDP] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-In-UDP] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [Microsoft-Windows-DeviceManagement-OmaDmClient-TCP-Out] => (Allow) %SystemRoot%\system32\omadmclient.exe FirewallRules: [Microsoft-Windows-DeviceManagement-deviceenroller-TCP-Out] => (Allow) %SystemRoot%\system32\deviceenroller.exe FirewallRules: [Microsoft-Windows-DeviceManagement-CertificateInstall-TCP-Out] => (Allow) %SystemRoot%\system32\dmcertinst.exe FirewallRules: [WirelessDisplay-Infra-In-TCP] => (Allow) %systemroot%\system32\CastSrv.exe FirewallRules: [{7EF60B72-A5DB-4332-801C-186B251B075D}] => (Allow) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe FirewallRules: [TCP Query User{F44CA375-BE23-4596-8ADD-44232CDA2E58}C:\program files\hp\hp officejet 3830 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp officejet 3830 series\bin\hpnetworkcommunicatorcom.exe FirewallRules: [UDP Query User{34BF9858-0070-4A7A-AB2B-60B6FB64C59D}C:\program files\hp\hp officejet 3830 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp officejet 3830 series\bin\hpnetworkcommunicatorcom.exe FirewallRules: [TCP Query User{82AF103C-188F-4C29-968B-C9A3249FDB73}C:\program files\hp\hp photosmart 5520 series\bin\hpnetworkcommunicator.exe] => (Allow) C:\program files\hp\hp photosmart 5520 series\bin\hpnetworkcommunicator.exe FirewallRules: [UDP Query User{C0DF81B1-E33A-42CB-AB4D-A701FA8587C0}C:\program files\hp\hp photosmart 5520 series\bin\hpnetworkcommunicator.exe] => (Allow) C:\program files\hp\hp photosmart 5520 series\bin\hpnetworkcommunicator.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/29/2020 05:22:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x2b7c Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0 Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1 Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2 Berichtskennung: backgroundTaskHost.exe3 Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5 Error: (11/29/2020 05:06:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x1124 Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0 Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1 Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2 Berichtskennung: backgroundTaskHost.exe3 Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5 Error: (11/29/2020 03:06:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x2a88 Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0 Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1 Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2 Berichtskennung: backgroundTaskHost.exe3 Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5 Error: (11/29/2020 02:53:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0xbb0 Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0 Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1 Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2 Berichtskennung: backgroundTaskHost.exe3 Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5 Error: (11/29/2020 02:36:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x1274 Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0 Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1 Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2 Berichtskennung: backgroundTaskHost.exe3 Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5 Error: (11/29/2020 12:08:30 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Error: (11/29/2020 12:08:30 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (11/29/2020 12:04:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x139c Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0 Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1 Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2 Berichtskennung: backgroundTaskHost.exe3 Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5 Error: (11/29/2020 11:34:37 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x29c4 Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0 Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1 Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2 Berichtskennung: backgroundTaskHost.exe3 Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5 Error: (11/29/2020 11:23:11 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Microsoft.Photos.exe, Version: 2019.19081.22010.0, Zeitstempel: 0x5de084e9 Name des fehlerhaften Moduls: Windows.UI.Xaml.dll, Version: 10.0.18362.1139, Zeitstempel: 0x97b8f732 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000007132e0 ID des fehlerhaften Prozesses: 0x2804 Startzeit der fehlerhaften Anwendung: 0xMicrosoft.Photos.exe0 Pfad der fehlerhaften Anwendung: Microsoft.Photos.exe1 Pfad des fehlerhaften Moduls: Microsoft.Photos.exe2 Berichtskennung: Microsoft.Photos.exe3 Vollständiger Name des fehlerhaften Pakets: Microsoft.Photos.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.Photos.exe5 Systemfehler: ============= Error: (11/29/2020 02:50:37 PM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding2147942593{94269C4E-071A-4116-90E6-52E557067E4E} Error: (11/29/2020 02:24:06 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) Description: Windows.Internal.StateRepository.ApplicationExtension Error: (11/29/2020 02:22:12 PM) (Source: SNMP) (EventID: 1500) (User: ) Description: Beim Zugreifen auf den Registrierungsschlüssel SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration ist ein Fehler aufgetreten. Error: (11/29/2020 11:09:46 AM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding2147942593{94269C4E-071A-4116-90E6-52E557067E4E} Error: (11/29/2020 10:54:32 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Übermittlungsoptimierung" wurde nicht richtig gestartet. Error: (11/29/2020 10:53:04 AM) (Source: DCOM) (EventID: 10010) (User: Arbeitscomputer) Description: Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca Error: (11/29/2020 10:49:43 AM) (Source: SNMP) (EventID: 1500) (User: ) Description: Beim Zugreifen auf den Registrierungsschlüssel SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration ist ein Fehler aufgetreten. Error: (11/28/2020 07:42:31 PM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding2147942593{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD} Error: (11/28/2020 06:52:22 PM) (Source: DCOM) (EventID: 10010) (User: Arbeitscomputer) Description: Microsoft.WindowsFeedbackHub_1.1907.3152.0_x64__8wekyb3d8bbwe!App.AppXsdjy3vfbpyyren487rr1k4k8g5t1k844.mca Error: (11/28/2020 02:25:06 PM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding2147942593{94269C4E-071A-4116-90E6-52E557067E4E} Microsoft Office: ========================= Error: (11/29/2020 05:22:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: backgroundTaskHost.exe10.0.18362.1533f8404twinapi.appcore.dll10.0.18362.959eeb9f7a6c000027b00000000000d65d82b7c01d6c66bc558d885C:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dlldb042b29-17e7-480b-b052-eee2e70ec234Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub Error: (11/29/2020 05:06:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: backgroundTaskHost.exe10.0.18362.1533f8404twinapi.appcore.dll10.0.18362.959eeb9f7a6c000027b00000000000d65d8112401d6c66987d8474dC:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dll83d1dc19-7ebc-4c8e-b988-1574ffbe448bMicrosoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub Error: (11/29/2020 03:06:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: backgroundTaskHost.exe10.0.18362.1533f8404twinapi.appcore.dll10.0.18362.959eeb9f7a6c000027b00000000000d65d82a8801d6c658c45ea710C:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dll05ba8454-aa25-425c-80a8-49fd8a196412Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub Error: (11/29/2020 02:53:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: backgroundTaskHost.exe10.0.18362.1533f8404twinapi.appcore.dll10.0.18362.959eeb9f7a6c000027b00000000000d65d8bb001d6c656e88fb39dC:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dll61328fd9-e749-410b-8e66-621cb4080729Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub Error: (11/29/2020 02:36:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: backgroundTaskHost.exe10.0.18362.1533f8404twinapi.appcore.dll10.0.18362.959eeb9f7a6c000027b00000000000d65d8127401d6c6547123df53C:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dll837358b3-2a28-4fd7-9a6a-5a25511eef04Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub Error: (11/29/2020 12:08:30 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x8007045b, Der Computer wird heruntergefahren. Error: (11/29/2020 12:08:30 PM) (Source: VSS) (EventID: 13) (User: ) Description: {4e14fba2-2e22-11d1-9964-00c04fbbb345}CEventSystem0x8007045b, Der Computer wird heruntergefahren. Error: (11/29/2020 12:04:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: backgroundTaskHost.exe10.0.18362.1533f8404twinapi.appcore.dll10.0.18362.959eeb9f7a6c000027b00000000000d65d8139c01d6c63f6a05a6bcC:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dll531ce306-ee76-4733-8b3a-bb8959b8b438Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub Error: (11/29/2020 11:34:37 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: backgroundTaskHost.exe10.0.18362.1533f8404twinapi.appcore.dll10.0.18362.959eeb9f7a6c000027b00000000000d65d829c401d6c63b3910985dC:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dllf17ca7b3-38ba-4047-8e75-9e8f029e3bb9Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbweMicrosoft.MicrosoftOfficeHub Error: (11/29/2020 11:23:11 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Microsoft.Photos.exe2019.19081.22010.05de084e9Windows.UI.Xaml.dll10.0.18362.113997b8f732c000027b00000000007132e0280401d6c63998c02bc3C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19081.22010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exeC:\Windows\System32\Windows.UI.Xaml.dll5c36e9c3-e4fa-43dc-88af-5cc800813736Microsoft.Windows.Photos_2019.19081.22010.0_x64__8wekyb3d8bbweApp CodeIntegrity: =================================== Date: 2020-11-15 17:53:46.063 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\appid.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:53:46.060 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\appid.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:53:46.058 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\appid.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:53:46.055 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\appid.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.944 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiostorageadapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.943 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiostorageadapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.940 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiostorageadapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.921 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiostorageadapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.915 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiosensoradapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.913 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiosensoradapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz Percentage of memory in use: 67% Total physical RAM: 3956.5 MB Available physical RAM: 1278.23 MB Total Virtual: 7924.5 MB Available Virtual: 4173.54 MB ==================== Drives ================================ Drive c: (ACER) (Fixed) (Total:290.05 GB) (Free:56.47 GB) NTFS Drive d: (ACER) (Fixed) (Total:625.83 GB) (Free:606.78 GB) NTFS ==>[System mit Startkomponenten (eingeholt von lesen Laufwerk)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 4626722B) Partition 1: (Not Active) - (Size=15.6 GB) - (Type=27) Partition 2: (Not Active) - (Size=290.1 GB) - (Type=07 NTFS) Partition 3: (Active) - (Size=625.8 GB) - (Type=07 NTFS) ==================== Ende von log ============================ |
29.11.2020, 17:48 | #11 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Update lässt sich nicht installieren [gelöst]Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
29.11.2020, 19:27 | #12 |
| Windows Update lässt sich nicht installieren [gelöst] Die neueste Version konnte ich leider nicht herunterladen. So, habe nun noch eins machen lassen... Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 29-11-2020 durchgeführt von XXX (Administrator) auf ARBEITSCOMPUTER (Acer Aspire 7740) (29-11-2020 18:53:57) Gestartet von C:\Users\XXX XXX\Downloads Geladene Profile: XXX Platform: Windows 10 Home Version 1909 18363.1139 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: FF Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\SecurityHealthHost.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\SysWOW64\dllhost.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <9> (pdfforge GmbH -> pdfforge GmbH) C:\Program Files\PDF Architect 7\creator\common\creator-ws.exe (pdfforge GmbH -> pdfforge GmbH) C:\Program Files\PDF Architect 7\updater-ws.exe (pdfforge GmbH -> pdfforge GmbH) C:\Program Files\PDF Architect 7\ws.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8312352 2009-10-29] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [295936 2009-05-22] (Microsoft Windows Hardware Compatibility Publisher -> Alps Electric Co., Ltd.) HKLM\...\Run: [PLFSetI] => C:\Windows\PLFSetI.exe [200704 2011-11-13] () [Datei ist nicht signiert] HKLM\...\Run: [mwlDaemon] => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [349480 2009-09-11] (EGIS TECHNOLOGY INC. -> Egis Technology Inc.) HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation -> Intel Corporation) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [323072 2009-07-22] (AlcorMicro Co., Ltd.) [Datei ist nicht signiert] HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [823840 2009-09-30] (Acer Incorporated -> Acer Incorporated) HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [3942216 2011-01-25] (O and O Software GmbH -> O&O Software GmbH) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3951280 2016-01-07] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2254152 2020-09-01] (voidtools -> voidtools) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [827200 2020-10-07] (Acronis International GmbH -> Acronis International GmbH) HKLM-x32\...\Run: [SimpleScreenshot] => C:\Program Files (x86)\SSS\SimpleScreenshot.exe [2255360 2008-02-09] (Mirko Böer) [Datei ist nicht signiert] HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1094736 2009-11-02] (Dritek System Inc. -> Dritek System Inc.) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5806664 2020-10-07] (Acronis International GmbH -> ) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6261760 2020-02-04] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [483976 2020-08-13] (Geek Software GmbH -> Geek Software GmbH) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [HP Photosmart 5520 series (NET)] => C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2852128 2016-08-03] (Valve -> Valve Corporation) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [MyDriveConnect.exe] => C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe -startwithoutDA HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [HP OfficeJet 3830 series (NET)] => C:\Program Files\HP\HP OfficeJet 3830 series\Bin\ScanToPCActivationApp.exe [3770504 2017-03-27] (Hewlett Packard -> HP Inc.) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22515488 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [WinPatrol] => C:\Program Files (x86)\Ruiware\WinPatrol\winpatrol.exe [1223560 2017-05-08] (Ruiware, LLC -> Ruiware) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [com.squirrel.Teams.Teams] => C:\Users\XXX XXX\AppData\Local\Microsoft\Teams\Update.exe [2324624 2019-12-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [HP OfficeJet 3830 series (NET) #2] => C:\Program Files\HP\HP OfficeJet 3830 series\Bin\ScanToPCActivationApp.exe [3770504 2017-03-27] (Hewlett Packard -> HP Inc.) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [Convert2MP3 - YouTube Downloader] => C:\Users\XXX XXX\AppData\Local\Programs\convert2mp3-youtube-downloader\Convert2MP3 - YouTube Downloader.exe [86154240 2020-04-04] (Convert2MP3) [Datei ist nicht signiert] HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [2469184 2020-11-12] (Digital Wave Ltd -> Digital Wave Ltd) HKU\S-1-5-21-1242904208-471078349-2963378918-1000\Software\Policies\...\system: [disablecmd] 0 HKU\S-1-5-21-1242904208-471078349-2963378918-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [807936 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\Canon MG5700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCS.DLL [30208 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Windows x64\Print Processors\hpzppwn7: C:\Windows\System32\spool\prtprocs\x64\hpzppwn7.dll [101376 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5700 series: C:\WINDOWS\system32\CNMLMCS.DLL [406528 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MP160: C:\WINDOWS\system32\CNMLM83.DLL [234496 2006-09-12] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Print\Monitors\HP a211 Status Monitor: C:\WINDOWS\system32\hpinkstsa211LM.dll [331664 2012-06-13] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP B111 Status Monitor: C:\WINDOWS\system32\hpinkstsB111LM.dll [331664 2012-06-13] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Photosmart 5520 series): C:\WINDOWS\system32\HPDiscoPMB111.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP E511 Status Monitor: C:\WINDOWS\system32\hpinkstsE511LM.dll [393352 2017-03-10] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\PCL hpz3lw71: C:\WINDOWS\system32\hpz3lw71.dll [46080 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\PCL hpz3lwn7: C:\WINDOWS\system32\hpz3lwn7.dll [36352 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\...\Print\Monitors\PDF Architect 7 Monitor: C:\WINDOWS\system32\spool\DRIVERS\x64\pdf architect_pdfpmon_v.4.12.26.3.dll [932984 2019-10-21] (PDF Tools AG -> PDF Tools AG (hxxp://www.pdf-tools.com)) HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [120200 2018-12-04] (pdfforge GmbH) [Datei ist nicht signiert] HKLM\Software\...\AppCompatFlags\Custom\chrome.exe: [{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb] -> HKLM\Software\...\AppCompatFlags\Custom\explorer.zza: [{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb] -> HKLM\Software\...\AppCompatFlags\Custom\iexplore.exe: [{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb] -> HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\Installer\chrmstp.exe [2020-11-14] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {06808131-9C9A-47BD-BA0F-BF67127ED08E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-03-12] (Piriform Software Ltd -> Piriform Software Ltd) Task: {08F12298-ED23-43F7-A8BC-B3EF9993D813} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {0A17BE20-076C-42DA-8F99-A26025333D5F} - System32\Tasks\HP AR Program Upload - c77186144c9e4d9887733fcbfeb43c949342edc65b3a40a69306946f2a856eae => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {145C3AC4-4E4E-4FC1-9D66-7278918E8E54} - System32\Tasks\HP AR Program Upload - 7cc53373cd304f8c999d87fa1c38910608fc6fdfa6d7487c8dbb11e531d53d10 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {14876E89-52E5-41AD-A9FC-897754B47003} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {1B2187D4-3738-49A9-9552-770B28C5F06F} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1C03E9C3-4B4B-4ACB-A8AB-17B2C42F6D36} - System32\Tasks\HP AR Program Upload - 86702d7e2b234fe0ac4104c075da5675aa9e3e32525c4609a8c1d9652126c508 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {1C43CA8A-5CBB-4D62-A8A9-59EB5FD5E5BD} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1E70C993-4466-4BAD-A746-3D88BC0ECBFA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {313BECCB-A073-490F-843C-8EFEE2F71B8E} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_445_Plugin.exe [1502264 2020-10-22] (Adobe Inc. -> Adobe) Task: {34678CAF-04EE-4B64-B842-C38C8BAA175D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {34A34F92-362A-49E3-9830-EECF17ABB479} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {380D4907-4102-47C7-A0CD-70F9A99073EA} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {3AFE5C37-28C2-4B7C-B6A6-1F46F1B946AE} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {3BDE7946-D531-44B9-BB06-3311E124332C} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {40978C8B-1D20-43E6-89F1-B1BA719E581E} - System32\Tasks\HP AR Program Upload - 80a8e838e6934cd8b655baa83b9a353e1c06edcb6d694a43b472cfefd87bcfc5 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {411484AC-BD71-4DE3-8AA4-5473F69B8EA3} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {419DDB67-5AD4-45B9-AD3F-0E19A2BB7B2D} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {478A3CAF-E492-410F-BC39-E1A43D7BF89D} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22939528 2020-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {47C46238-A6C4-4C4B-BE85-E6E1425608CB} - System32\Tasks\{144D2C4F-2583-452B-AC74-C64839CF03CC} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe" -d "C:\Program Files (x86)\VS Revo Group\Revo Uninstaller" -c -hunter Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {48F2CE0B-A0AC-45A7-BA8A-D829454C36BD} - System32\Tasks\HPPrintMonitorService => C:\Program Files (x86)\HP\Diagnostics\PrintMonitorService\HPPrintMonitorService.exe [73224 2020-10-13] (HP Inc. -> ) Task: {49723E02-558F-4E12-BD48-8ACD6598EC43} - System32\Tasks\HP AR Program Upload - 854d1af6a1324f42910f1f8b74b2b3f41fb51fedf01b43d1a63e88c9a6f21790 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {4A603911-66D0-4586-B010-05A61DF8ECD7} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {50210B17-0E65-49B5-8378-604667F33EAC} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [670928 2020-11-21] (Mozilla Corporation -> Mozilla Foundation) Task: {50CD27F6-1FBE-4505-BA99-EFA8D9503159} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {52FE82CE-EC2E-4802-BCC3-4E0421151CFC} - System32\Tasks\{F3B963CB-BFF7-43C8-ADEF-9881996EFE34} => msiexec.exe /package "C:\Users\XXX XXX\Downloads\HPSupportSolutionsFramework-11.51.0048.msi" Task: {5A42985A-DC32-4FE1-8210-CA09F67316FC} - System32\Tasks\HPCustPartic.exe_{96420065-3C4E-4B3E-96DB-DB0760F51DDD} => C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5E1E681C-C0F1-4E87-8C95-38A011634E9C} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Keine Datei <==== ACHTUNG Task: {681029CD-B8CB-42AA-9842-CF7EDBF5E5DA} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {68134DAF-D093-41B4-81A7-3699F92D4938} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {68E7EBEF-ADBD-46F6-A830-9F150DECC219} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {786DB5A0-25AD-4CDC-BB7E-97656C616113} - System32\Tasks\HP AR Program Upload - 1f34e1c96e2441c2954c4ee9bad5d9a7c0a8147dcd0a401485574ee6cc4342d5 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {792B72B2-C51B-4379-B2AA-007529DB50F0} - System32\Tasks\{8D77E667-A31C-4EB4-B209-1E559B732CBC} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Canon\IJEREG\MP160\UNINST.EXE" Task: {7A3202FC-4B05-4284-91B4-1672A1BE9E79} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7AEAE564-35D2-434E-8BC2-12BF5BC672DE} - System32\Tasks\HPCustParticipation HP Deskjet 3070 B611 series => C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) Task: {7EF35221-FB0C-46A6-A192-205B5FD553A1} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {872BF206-06C0-453D-9886-8AC9326641E0} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {8935E931-DE1D-4861-A3C7-0B51845FC33F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [117600 2020-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {8B63D47F-68D1-4294-81D7-BAB2F0FB94F4} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-02-04] (Dropbox, Inc -> Dropbox, Inc.) Task: {92533B9B-37E7-4E54-B7DE-F8B0B255CFEE} - System32\Tasks\{4781B96F-C3F4-45CF-AB6F-C64C9AD3E88D} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{319D91C6-3D44-436C-9F79-36C0D22372DC}\setup.exe" -d "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK" -c -runfromtemp -removeonly Task: {938A304E-C2FE-4408-9A42-C5F3AD2F9170} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {97CC0222-F646-4DF1-A3E1-FCA3ECEE956C} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1146776 2020-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {9871084F-8757-4D3E-9DCE-3D0ECB1129D7} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {98C665F9-788F-4BCA-B16D-C37BC33F8868} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-02-04] (Dropbox, Inc -> Dropbox, Inc.) Task: {98D50E70-7C0D-48DC-97D6-0784CA5142DA} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {98FF15AC-7B0A-4006-8AA9-46F22DE5EA96} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A1D835EF-9220-45A2-811E-2CA5B38166BF} - System32\Tasks\hpUrlLauncher.exe_{4AF7A75F-FDE8-41B8-80D9-5C3EBC32D019} => C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\utils\hpUrlLauncher.exe -> https://h30495.www3.hp.com/printers/add?jumpID=in_instKarnak5%2F&cc=de&modelName=HP%20Deskjet%203070%20B611%20series&serialNo=CN1AG4719H&serialNo_Extra=05MQ&modelID=CQ191B&serviceID=22088&invitation=no Task: {A2488771-C70F-410B-ACC7-0C57087007C2} - System32\Tasks\HP AR Program Upload - 35705e1cf9504357848dc302c9669a5caa95e00a3e9f4a8d9f6ab1f8a3caa919 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {A684E35C-2BB4-40E9-A108-EA9F4CA1A550} - System32\Tasks\HP AR Program Upload - 03c1600c004a411789f6d8d580f9808adcf1f1d2947c4a7ea0c8a6884556b976 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {A8E85CF5-280D-463A-87FA-085DDBCDF6B9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {AA102638-D3DE-421D-86B6-F2855CAC3F08} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {AC577598-18CA-4F02-9CC5-26340D8702A2} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {AE2D7B3C-B28C-4E42-86C3-D9BF1ED0424C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22939528 2020-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {AF4EEFF6-7AC7-4FB8-8036-E090A9EB3AFC} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe Task: {AF8B4826-8277-49A7-89C0-ACEBA877E5A5} - System32\Tasks\HPCustParticipation HP OfficeJet 3830 series => C:\Program Files\HP\HP OfficeJet 3830 series\Bin\HPCustPartic.exe [6438536 2017-03-27] (Hewlett Packard -> HP Inc.) Task: {B084B8EA-32F7-4952-A0E7-6E89CD668254} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B523DF24-D94C-41A6-A328-BCF13B2EDE4A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.) Task: {B608EBAA-A759-44B4-B758-5C039701BB1D} - System32\Tasks\G2MUpdateTask-S-1-5-21-1242904208-471078349-2963378918-1000 => C:\Users\XXX XXX\AppData\Local\GoToMeeting\18962\g2mupdate.exe [31320 2020-10-22] (LogMeIn, Inc. -> LogMeIn, Inc.) Task: {B70DE820-5E4A-4D50-880F-5AF4416A4229} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {BC02D38B-B9A7-413C-AF2E-D1E3D4E8CD99} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16509040 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd) Task: {C5A63EED-4FE6-45F0-A490-AE35FB29B04D} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C787E70A-60D6-48A1-8C4A-0B14D2349CDA} - System32\Tasks\HP AR Program Upload - 41ef4bbbee3b49c3a813725f7b93d37d63ad611e24cd4ecc9aa891fa5366d204 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {D3C8250E-FAC7-4C67-A7FE-89F284D7F2B0} - System32\Tasks\G2MUploadTask-S-1-5-21-1242904208-471078349-2963378918-1000 => C:\Users\XXX XXX\AppData\Local\GoToMeeting\18962\g2mupload.exe [31320 2020-10-22] (LogMeIn, Inc. -> LogMeIn, Inc.) Task: {D62D6B07-4BC7-4A35-BDC4-C29537003F93} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {DEB9F23A-78EE-47F2-BFE3-F0202A2F0BB5} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {E36CA599-B047-467B-99AF-5E380AFECE05} - System32\Tasks\{AC797CD7-B058-4AC8-84B2-B2307D6AFF9B} => C:\Program Files (x86)\Chandler1.0.3\chandler.exe Task: {E3BD13E8-E6BC-4FFE-B71A-F218B72D4590} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [117600 2020-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {E85DBE85-E344-4E48-A05A-ACF97445121F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {EB183C01-5912-4CA6-A1A4-D43D8F1930D8} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-10-22] (Adobe Inc. -> Adobe) Task: {EDD0DC82-5A98-4BDF-B7A4-D62684EFFC55} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [569416 2016-02-23] (Apple Inc. -> Apple Inc.) Task: {EDFAF44C-B64E-4CCE-A064-B5BD4D635EB7} - System32\Tasks\HP AR Program Upload - c5d7096e8a7041e1adb9f43382b70f6bb7d79ab1ef33457cbb0519a12e3027a6 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {EE91A728-5463-4C50-96DE-D75635B10A14} - System32\Tasks\HP AR Program Upload - 4f60a7f610654c7cbbc59ad9701b2c4e981e9316372045c3a0fcafd934ed8283 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {F108FC97-F5B0-4510-9C8E-EB2E8F5AE0EA} - System32\Tasks\HP AR Program Upload - aa75a83ba0e54f469f9229056b3523d0eb35faeb3e174ec898b456f50bbc2c60 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {F30712C0-5F79-4616-BFEE-8D27E1822469} - System32\Tasks\{581487AC-8AAF-40E1-A997-6B8519F0C5EC} => C:\Program Files (x86)\Chandler1.0.3\chandler.exe Task: {F5C8CD5E-4AE6-4905-A40A-FE41E95BBCD0} - System32\Tasks\HP AR Program Upload - 4e87e193ced545948cef775c4226ba4b2926f9dc50154c4a8b71dc91d015e394 => C:\Program Files\HP\HP Photosmart 5520 series\bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: <Company name>) Task: {F880A225-F7DE-4289-90B1-111C5A5F67B1} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {FD4D8ACC-09B4-4FFB-8BEF-4A38EE759CBB} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {FF014C31-9580-458A-A3CC-476887BB1738} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1242904208-471078349-2963378918-1000.job => C:\Users\XXX XXX\AppData\Local\GoToMeeting\18962\g2mupdate.exe Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-1242904208-471078349-2963378918-1000.job => C:\Users\XXX XXX\AppData\Local\GoToMeeting\18962\g2mupload.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{15ef09c9-ceb0-425c-a5ac-002b19b46047}: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{c020751a-5210-47b5-9035-51239104e46c}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{c10dcd24-bf50-4b4b-b20c-22407fc328c8}: [DhcpNameServer] 192.168.178.1 Edge: ====== Edge Profile: C:\Users\XXX XXX\AppData\Local\Microsoft\Edge\User Data\Default [2020-11-17] FireFox: ======== FF DefaultProfile: wvzn3hl7.default-1577543066729 FF ProfilePath: C:\Users\XXX XXX\AppData\Roaming\TomTom\HOME\Profiles\g8j9gnvn.default [2016-08-15] FF Extension: (Kein Name) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [nicht gefunden] FF ProfilePath: C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\i5isbji2.default-release [2020-05-17] FF ProfilePath: C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\rukqt95k.App [2020-01-25] FF ProfilePath: C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729 [2020-11-29] FF Homepage: Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729 -> about:newtab FF NetworkProxy: Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729 -> backup.ftp", "" FF Extension: (Cisco Webex Extension) - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\ciscowebexstart1@cisco.com.xpi [2020-06-06] FF Extension: (Ghostery – Datenschutzorientierter Werbeblocker) - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\firefox@ghostery.com.xpi [2020-10-14] FF Extension: (FoxyProxy Standard) - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\foxyproxy@eric.h.jung.xpi [2020-08-03] FF Extension: (Bisexual) - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\{baf0ead8-2703-4b97-9417-3f01dca53a77}.xpi [2019-12-28] FF Extension: (Bisexual Pride) - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\{d85e8352-eab4-4933-ad58-d06dd168081b}.xpi [2019-12-28] FF Extension: (Tardis Doctor Who) - C:\Users\XXX XXX\AppData\Roaming\Mozilla\Firefox\Profiles\wvzn3hl7.default-1577543066729\Extensions\{dba2afc7-e7f1-4ff1-90cb-b815a84c5810}.xpi [2019-12-28] FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension FF Extension: (PDF Architect 4 Creator) - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2017-10-24] [] [ist nicht signiert] FF HKLM\...\Firefox\Extensions: [pdf_architect_6_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 6\creator\plugins\FirefoxAddin\pdf_architect_6_conv_v.2@pdfforge.org.xpi FF Extension: (PDF Architect 6 Creator) - C:\Program Files\PDF Architect 6\creator\plugins\FirefoxAddin\pdf_architect_6_conv_v.2@pdfforge.org.xpi [2018-09-18] FF HKLM\...\Firefox\Extensions: [pdf_architect_7_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 7\creator\plugins\FirefoxAddin\pdf_architect_7_conv_v.2@pdfforge.org.xpi FF Extension: (PDF Architect 7 Creator) - C:\Program Files\PDF Architect 7\creator\plugins\FirefoxAddin\pdf_architect_7_conv_v.2@pdfforge.org.xpi [2019-10-02] FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_6_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 6\creator\plugins\FirefoxAddin\pdf_architect_6_conv_v.2@pdfforge.org.xpi FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_7_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 7\creator\plugins\FirefoxAddin\pdf_architect_7_conv_v.2@pdfforge.org.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_445.dll [2020-10-22] (Adobe Inc. -> ) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_445.dll [2020-10-22] (Adobe Inc. -> ) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-08] (Apple Inc. -> ) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation -> Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-08-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-08-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files (x86)\Yahoo!\Shared\npYState.dll [2012-05-25] (Yahoo! Inc. -> Yahoo! Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-14] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> C:\Program Files (x86)\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.) [Datei ist nicht signiert] FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-11-19] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [2016-08-05] (pdfforge GmbH -> pdfforge GmbH) FF Plugin-x32: PDF Architect 6 -> C:\Program Files (x86)\PDF Architect 6\np-previewer.dll [2018-10-23] (pdfforge GmbH -> pdfforge GmbH) FF Plugin HKU\S-1-5-21-1242904208-471078349-2963378918-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\XXX XXX\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-05-18] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FF Plugin ProgramFiles/Appdata: C:\Users\XXX XXX\AppData\Roaming\mozilla\plugins\npatgpc.dll [2017-08-30] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default [2020-06-23] CHR Session Restore: default -> ist aktiviert. CHR Extension: (Präsentationen) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-05] CHR Extension: (Docs) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-05] CHR Extension: (Google Drive) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-28] CHR Extension: (YouTube) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-28] CHR Extension: (Tabellen) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-05] CHR Extension: (Avira Browserschutz) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2020-06-23] CHR Extension: (Google Docs Offline) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-23] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-14] CHR Extension: (Google Mail) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-02-18] CHR Extension: (Chrome Media Router) - C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-23] CHR Profile: C:\Users\XXX XXX\AppData\Local\Google\Chrome\User Data\System Profile [2020-05-17] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S4 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [15749536 2020-10-07] (Acronis International GmbH -> Acronis International GmbH) S4 AAV UpdateService; C:\Program Files (x86)\Common Files\AAV\aavus.exe [122880 2007-10-04] () [Datei ist nicht signiert] S4 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [10369952 2020-10-07] (Acronis International GmbH -> ) S4 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1412984 2020-10-07] (Acronis International GmbH -> Acronis International GmbH) S4 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1264400 2020-10-07] (Acronis International GmbH -> Acronis International GmbH) S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.) S4 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-10-22] (Adobe Inc. -> Adobe) S4 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6388072 2020-11-20] (Acronis International GmbH -> ) S4 AgereModemAudio; C:\Program Files\LSI SoftModem\agr64svc.exe [16896 2009-03-28] (Microsoft Windows Hardware Compatibility Publisher -> LSI Corporation) S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc. -> Apple Inc.) S4 BotkindSyncService; C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe [182784 2013-10-10] () [Datei ist nicht signiert] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9057136 2020-11-04] (Microsoft Corporation -> Microsoft Corporation) S4 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-02-04] (Dropbox, Inc -> Dropbox, Inc.) S4 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-02-04] (Dropbox, Inc -> Dropbox, Inc.) S4 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-02-04] (Dropbox, Inc -> Dropbox, Inc.) S4 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [438592 2020-11-12] (Digital Wave Ltd -> Digital Wave Ltd) S4 Everything; C:\Program Files\Everything\Everything.exe [2254152 2020-09-01] (voidtools -> voidtools) S4 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [241704 2014-03-25] (Foxit Corporation -> Foxit Corporation) S4 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89864 2014-12-11] (Hewlett-Packard Company -> Hewlett-Packard Company) S4 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4808088 2020-10-07] (Acronis International GmbH -> Acronis International GmbH) S4 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2020-10-07] (Acronis International GmbH -> Acronis International GmbH) S4 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2093376 2020-10-07] (Acronis International GmbH -> ) S3 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [305448 2009-09-11] (EGIS TECHNOLOGY INC. -> Egis Technology Inc.) R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert] S4 NoIPDUCService4; C:\Program Files (x86)\No-IP\ducservice.exe [11264 2013-01-24] () [Datei ist nicht signiert] S4 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [3051848 2011-01-25] (O and O Software GmbH -> O&O Software GmbH) S4 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [80896 2011-03-31] () [Datei ist nicht signiert] S4 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2438880 2016-08-05] (pdfforge GmbH -> pdfforge GmbH) S4 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-08-05] (pdfforge GmbH -> pdfforge GmbH) S4 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2016-08-05] (pdfforge GmbH -> pdfforge GmbH) S4 PDF Architect 6; C:\Program Files\PDF Architect 6\ws.exe [2569976 2018-10-23] (pdfforge GmbH -> pdfforge GmbH) S4 PDF Architect 6 Creator; C:\Program Files\PDF Architect 6\creator\common\creator-ws.exe [832248 2018-10-23] (pdfforge GmbH -> pdfforge GmbH) S4 PDF Architect 6 Update Service; C:\Program Files\PDF Architect 6\updater-ws.exe [1665272 2018-10-23] (pdfforge GmbH -> pdfforge GmbH) R2 PDF Architect 7; C:\Program Files\PDF Architect 7\ws.exe [2579752 2019-10-07] (pdfforge GmbH -> pdfforge GmbH) R2 PDF Architect 7 Creator; C:\Program Files\PDF Architect 7\creator\common\creator-ws.exe [692008 2019-10-07] (pdfforge GmbH -> pdfforge GmbH) R2 PDF Architect 7 Update Service; C:\Program Files\PDF Architect 7\updater-ws.exe [1832232 2019-10-07] (pdfforge GmbH -> pdfforge GmbH) S4 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [483976 2020-08-13] (Geek Software GmbH -> Geek Software GmbH) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert] S4 RS_Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [253952 2009-07-10] (Acer Incorporated) [Datei ist nicht signiert] S4 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2020\RpcAgentSrv.exe [135176 2020-04-27] (SiSoftware SPC -> SiSoftware) [Datei ist nicht signiert] S4 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7388888 2020-10-07] (Acronis International GmbH -> ) S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10888944 2017-04-25] (TeamViewer GmbH -> TeamViewer GmbH) S4 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5871520 2020-10-07] (Acronis International GmbH -> Acronis International GmbH) S4 UI Assistant Service; C:\Program Files (x86)\Join Air\AssistantServices.exe [247152 2010-04-27] (ZTE CORPORATION -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe [2467088 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 ampa; C:\WINDOWS\system32\ampa.sys [19568 2015-11-10] (ChengDu AoMei Tech Co., Ltd -> ) [Datei ist nicht signiert] S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStor.SYS [40448 2009-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Alcor Micro, Corp.) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [367096 2020-10-07] (Bitdefender SRL -> Bitdefender) R2 EkaProt6; C:\WINDOWS\system32\DRIVERS\ekaprot6.sys [27288 2012-03-23] (Ekahau Inc. -> Ekahau Inc.) R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [694408 2020-11-20] (Acronis International GmbH -> Acronis International GmbH) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [386688 2020-11-20] (Acronis International GmbH -> Acronis International GmbH) S3 htcnprot; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [36928 2010-06-25] (HTC Corp. -> Windows (R) Win 7 DDK provider) R3 MpKsl4a4a46e6; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{21C07493-F2AA-4F51-9275-84C5D244DDB4}\MpKslDrv.sys [47336 2020-11-29] (Microsoft Windows -> Microsoft Corporation) R1 ngscan; C:\WINDOWS\System32\DRIVERS\ngscan.sys [167728 2020-10-07] (Acronis International GmbH -> Acronis International GmbH) S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2020\WNt600x64\Sandra.sys [23112 2009-08-07] (SiSoftware Ltd -> SiSoftware) R1 SLEE_18_DRIVER; C:\Windows\Sleen1864.sys [109144 2014-01-30] (Softwareentwicklung Patric Remus - ArchiCrypt - (Patric W.Remus) -> Softwareentwicklung Remus - ArchiCrypt -) R0 speedfan; C:\Windows\SysWow64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [887024 2020-11-20] (Acronis International GmbH -> Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [175744 2020-11-20] (Acronis International GmbH -> Acronis International GmbH) S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [694904 2020-11-20] (Acronis International GmbH -> Acronis International GmbH) R2 TurboB; C:\WINDOWS\System32\DRIVERS\TurboB.sys [13784 2009-11-02] (Intel(R) Extreme Tuning Utility -> ) R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [334968 2020-11-20] (Acronis International GmbH -> Acronis International GmbH) R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [251016 2020-11-20] (Acronis International GmbH -> Acronis International GmbH) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-11-06] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429288 2020-11-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-06] (Microsoft Windows -> Microsoft Corporation) U3 idsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2020-11-29 18:52 - 2020-11-29 18:53 - 002290176 _____ (Farbar) C:\Users\XXX XXX\Downloads\FRST64(1).exe 2020-11-29 18:01 - 2020-11-29 18:01 - 000153471 _____ C:\Users\XXX XXX\Downloads\2020_06rechnung_5625127785.pdf 2020-11-29 18:01 - 2020-11-29 18:01 - 000152350 _____ C:\Users\XXX XXX\Downloads\2020_10rechnung_5625127785.pdf 2020-11-29 18:01 - 2020-11-29 18:01 - 000151882 _____ C:\Users\XXX XXX\Downloads\2020_07rechnung_5625127785.pdf 2020-11-29 18:00 - 2020-11-29 18:00 - 000151898 _____ C:\Users\XXX XXX\Downloads\2020_11rechnung_5625127785.pdf 2020-11-29 17:38 - 2020-11-29 17:44 - 000112925 _____ C:\Users\XXX XXX\Downloads\Addition.txt 2020-11-29 17:32 - 2020-11-29 19:01 - 000047530 _____ C:\Users\XXX XXX\Downloads\FRST.txt 2020-11-29 17:31 - 2020-11-29 17:32 - 002169856 _____ (Farbar) C:\Users\XXX XXX\Downloads\FRST64.exe 2020-11-29 17:28 - 2020-11-29 17:28 - 000001233 _____ C:\Users\XXX XXX\Desktop\CrystalDiskInfo.lnk 2020-11-29 17:26 - 2020-11-29 17:26 - 003945408 _____ (Crystal Dew World ) C:\Users\XXX XXX\Downloads\CrystalDiskInfo8_1_0.exe 2020-11-28 19:30 - 2020-11-28 19:30 - 000000053 _____ C:\Users\XXX XXX\Desktop\google5f4bfdc9a56a7b21.html 2020-11-28 18:55 - 2020-11-28 18:55 - 000000248 _____ C:\Users\XXX XXX\Desktop\WordPress SEO Eine praktische (und einfache) Anleitung.URL 2020-11-28 16:59 - 2020-11-28 16:59 - 000002330 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2020-2021.lnk 2020-11-28 16:59 - 2020-11-28 16:59 - 000002273 _____ C:\Users\Public\Desktop\Steuer-Ratgeber 2020-2021.lnk 2020-11-28 16:59 - 2020-11-28 16:59 - 000002273 _____ C:\ProgramData\Desktop\Steuer-Ratgeber 2020-2021.lnk 2020-11-28 16:59 - 2020-11-28 16:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2020-2021 2020-11-28 16:55 - 2020-11-28 16:55 - 000002275 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2021.lnk 2020-11-28 16:55 - 2020-11-28 16:55 - 000002218 _____ C:\Users\Public\Desktop\SteuerSparErklärung 2021.lnk 2020-11-28 16:55 - 2020-11-28 16:55 - 000002218 _____ C:\ProgramData\Desktop\SteuerSparErklärung 2021.lnk 2020-11-28 16:55 - 2020-11-28 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2021 2020-11-28 16:40 - 2020-11-28 16:40 - 000037105 _____ C:\Users\XXX XXX\Downloads\ShopApotheke_Rechnung_45943654.pdf 2020-11-27 14:25 - 2020-11-27 14:27 - 450836736 _____ C:\Users\XXX XXX\Downloads\Win-SteuerSparErklaerung_26.20.32.exe 2020-11-27 11:12 - 2020-11-27 11:12 - 000245717 _____ C:\Users\XXX XXX\Downloads\Rechnung_AR182230.pdf 2020-11-27 11:04 - 2020-11-27 11:04 - 000151893 _____ C:\Users\XXX XXX\Downloads\2020_12rechnung_5625127785.pdf 2020-11-26 22:18 - 2020-11-27 03:29 - 000000000 ___HD C:\$WINDOWS.~BT 2020-11-26 21:40 - 2020-11-26 21:59 - 000000000 ____D C:\Program Files\Malwarebytes 2020-11-26 21:27 - 2020-11-26 21:27 - 002290176 _____ (Farbar) C:\Users\XXX XXX\Downloads\FRSTEnglish.exe 2020-11-26 21:26 - 2020-11-26 21:26 - 011289960 _____ C:\Users\XXX XXX\Downloads\mb-support-1.8.0.848.exe 2020-11-26 20:42 - 2020-11-26 20:42 - 000010466 _____ C:\drivers.txt 2020-11-26 20:38 - 2020-11-26 20:39 - 000009359 _____ C:\Users\XXX XXX\Desktop\DriversList.txt 2020-11-26 20:31 - 2020-11-26 20:37 - 000000268 _____ C:\Users\XXX 2020-11-26 16:24 - 2020-11-26 16:24 - 001053466 _____ C:\Users\XXX XXX\Downloads\2020_11_26_Besetzungsverzeichnis_oeff__BI.pdf 2020-11-26 02:21 - 2020-11-26 02:21 - 000000080 ___SH C:\bootTel.dat 2020-11-25 11:31 - 2020-11-27 10:47 - 000000000 ____D C:\Users\XXX XXX\Downloads\ResetWUEng 2020-11-25 10:53 - 2020-11-25 10:53 - 000010500 _____ C:\Users\XXX XXX\Downloads\Rechnung-Facebook-Nov-1-2020-Nov-25-2020.xlsx 2020-11-25 10:51 - 2020-11-25 10:51 - 000000631 _____ C:\Users\XXX XXX\Downloads\Rechnung-Facebook-Nov-1-2020-Nov-25-2020.csv 2020-11-25 10:15 - 2020-11-25 10:15 - 000071687 _____ C:\Users\XXX XXX\Downloads\320201405801.pdf 2020-11-24 19:32 - 2020-11-24 19:32 - 000075743 _____ C:\Users\XXX XXX\Downloads\201114_AG-Vorstandsmodell.pdf 2020-11-24 16:51 - 2020-11-24 16:52 - 000529929 _____ C:\Users\XXX XXX\Downloads\LeftLessons2_Nr3_Zusammenfassung_Altmann.pdf 2020-11-24 15:40 - 2020-11-24 15:40 - 000017624 _____ C:\Users\XXX XXX\Downloads\2020Apr.MonthlyTransaction(1).xlsx 2020-11-24 15:39 - 2020-11-24 15:39 - 000016462 _____ C:\Users\XXX XXX\Downloads\2020MärzMonthlyTransaction(1).xlsx 2020-11-23 16:31 - 2020-11-23 16:31 - 000012276 _____ C:\Users\XXX XXX\Desktop\Pires_Soares_Julio_Lohnausweis_2016.pdf 2020-11-23 16:08 - 2020-11-23 16:08 - 000438559 _____ C:\Users\XXX XXX\Downloads\Merkblatt_BVG_Grenzbetraege_2016__de_.pdf 2020-11-23 15:58 - 2020-11-23 15:58 - 000013708 _____ C:\Users\XXX XXX\Downloads\Bescheinigung obligatorische Leistungen.pdf 2020-11-23 15:55 - 2020-11-23 15:55 - 002125373 _____ C:\Users\XXX XXX\Downloads\Nr. 151 (16.12.2019) 151.pdf 2020-11-23 15:51 - 2020-11-23 15:51 - 000071205 _____ C:\Users\XXX XXX\Downloads\2016-07-27-Schweiz-vorsorgeeinrichtungen-nach-der-zweiten-saeule-der-schweizerischen-altersvorsorge(1).pdf 2020-11-23 09:48 - 2020-11-23 09:49 - 000065698 _____ C:\Users\XXX XXX\Downloads\2020-11-02-umsatzsteuer-umrechnungskurse-2020.pdf 2020-11-23 07:57 - 2020-11-23 07:57 - 000000000 ____D C:\Users\XXX XXX\Desktop\hmd 2020-11-22 22:01 - 2020-11-22 22:08 - 000000000 _____ C:\Recovery.txt 2020-11-22 20:45 - 2020-11-22 20:45 - 000000000 ___HD C:\$Windows.~WS 2020-11-22 20:38 - 2020-11-27 03:15 - 000000000 ____D C:\WINDOWS\system32\Catroot2.bak 2020-11-22 20:37 - 2020-11-22 20:37 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\SyncService 2020-11-22 20:31 - 2020-11-22 20:41 - 000000000 ____D C:\WINDOWS\SoftwareDistribution.bak 2020-11-22 19:47 - 2020-11-22 19:57 - 000000000 ____D C:\Users\XXX XXX\Desktop\Backup 2020-11-22 12:13 - 2020-11-22 19:57 - 000000000 ____D C:\Users\XXX XXX\Desktop\update2 2020-11-22 12:13 - 2020-11-22 12:13 - 000130234 _____ C:\Users\XXX XXX\Downloads\ResetWUEng.zip 2020-11-22 12:10 - 2020-11-22 12:12 - 000000000 ____D C:\Users\XXX XXX\Desktop\update_ 2020-11-22 12:10 - 2020-11-22 12:10 - 000001870 _____ C:\Users\XXX XXX\Downloads\reset-windowsupdate.zip 2020-11-22 12:10 - 2020-11-22 12:10 - 000000000 ____D C:\Users\XXX XXX\Desktop\update 2020-11-22 10:18 - 2020-11-22 10:18 - 000000313 _____ C:\Users\XXX XXX\Desktop\Windows Update macht Ärger - Seite 2.URL 2020-11-21 22:46 - 2020-11-21 22:46 - 000587777 _____ C:\Users\XXX XXX\Downloads\ews-beitrittserklaerung-satzung-09-2020.pdf 2020-11-21 22:45 - 2020-11-21 22:45 - 000521092 _____ C:\Users\XXX XXX\Downloads\ews-zulassungskriterien-19-11.pdf 2020-11-21 17:56 - 2020-11-21 17:56 - 000130038 _____ C:\Users\XXX XXX\Desktop\Fraktionsbeiträge_2020.pdf 2020-11-21 16:51 - 2020-11-22 21:44 - 000000000 ____D C:\ESD 2020-11-21 14:40 - 2020-11-21 14:40 - 000000000 ____D C:\Users\XXX XXX\AppData\Local\hmd_software_AG 2020-11-21 14:39 - 2020-11-27 03:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hmd 2020-11-21 14:39 - 2020-11-21 14:39 - 000001105 _____ C:\Users\Public\Desktop\ASP.Client.lnk 2020-11-21 14:39 - 2020-11-21 14:39 - 000001105 _____ C:\ProgramData\Desktop\ASP.Client.lnk 2020-11-21 14:36 - 2020-11-21 14:36 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\hmd 2020-11-21 14:36 - 2020-11-21 14:36 - 000000000 ____D C:\Users\XXX XXX\AppData\Local\hmd-software_AG 2020-11-21 14:35 - 2020-11-21 14:35 - 000000000 ____D C:\Program Files (x86)\Hmd 2020-11-21 14:31 - 2020-11-21 14:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2020-11-21 14:28 - 2020-11-21 14:28 - 038547456 _____ C:\Users\XXX XXX\Downloads\ASPClient.msi 2020-11-21 12:03 - 2020-11-21 12:03 - 000023439 _____ C:\Users\XXX XXX\Downloads\2018-05-25_RE19339124(1)(2).pdf 2020-11-21 11:45 - 2020-11-21 11:45 - 000134210 _____ C:\Users\XXX XXX\Desktop\Wohnungsgeberbestätigung.pdf 2020-11-21 11:03 - 2020-11-21 11:03 - 000071869 _____ C:\Users\XXX XXX\Downloads\Wohnungsgeberbestätigung.pdf 2020-11-21 07:02 - 2020-11-21 21:45 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-11-20 20:35 - 2020-11-20 20:35 - 000089120 _____ C:\Users\XXX XXX\Downloads\248573919.pdf 2020-11-20 19:02 - 2020-11-20 19:02 - 000000000 ____D C:\Users\XXX XXX\AppData\Local\GoTo Opener 2020-11-20 18:59 - 2020-11-20 18:59 - 000231029 _____ C:\Users\XXX XXX\Downloads\2020_Kandidaturen_Digitaler_LPT.pdf 2020-11-20 18:54 - 2020-11-20 18:54 - 000160536 _____ C:\Users\XXX XXX\Downloads\Einladung KV 20.11.2020.pdf 2020-11-20 16:34 - 2020-10-07 00:18 - 000367096 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bddci.sys 2020-11-20 16:33 - 2020-11-20 16:33 - 000000000 ____D C:\Program Files\Common Files\Acronis 2020-11-20 16:33 - 2020-11-20 16:33 - 000000000 ____D C:\Program Files\Acronis 2020-11-20 16:33 - 2020-10-07 00:19 - 000167728 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\ngscan.sys 2020-11-20 16:29 - 2020-11-20 16:29 - 000694408 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_protector.sys 2020-11-20 16:29 - 2020-11-20 16:29 - 000000000 ____D C:\ProgramData\Acronis Mobile Backup Data 2020-11-20 16:28 - 2020-11-20 16:28 - 000334968 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file10014.sys 2020-11-20 16:28 - 2020-11-20 16:28 - 000251016 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\volume_tracker.sys 2020-11-20 16:27 - 2020-11-20 16:27 - 000183928 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\fltsrv3371.sys 2020-11-20 15:28 - 2020-11-20 15:28 - 000372148 _____ C:\Users\XXX XXX\Downloads\Rechnung R20201122114.pdf 2020-11-20 15:16 - 2020-11-20 15:24 - 831155880 _____ C:\Users\XXX XXX\Downloads\AcronisTrueImage2021.exe 2020-11-20 15:06 - 2020-11-20 15:06 - 000069259 _____ C:\Users\XXX XXX\Downloads\Datenänderung(47).PDF 2020-11-20 15:01 - 2020-11-20 16:27 - 000001238 _____ C:\Users\Public\Desktop\Acronis True Image.lnk 2020-11-20 15:01 - 2020-11-20 16:27 - 000001238 _____ C:\ProgramData\Desktop\Acronis True Image.lnk 2020-11-20 14:47 - 2020-11-20 14:51 - 503043688 _____ C:\Users\XXX XXX\AppData\Local\AcronisTrueImage2016_6595.exe 2020-11-19 18:45 - 2020-11-19 18:45 - 000150358 _____ C:\Users\XXX XXX\Downloads\de.formsolutions.FillServlet 2020-11-18 20:42 - 2020-11-18 20:42 - 000075705 _____ C:\Users\XXX XXX\Downloads\NV 2 A(1).pdf 2020-11-18 20:41 - 2020-11-18 20:41 - 000075705 _____ C:\Users\XXX XXX\Downloads\NV 2 A.pdf 2020-11-17 22:16 - 2020-11-17 22:26 - 000427028 _____ C:\WINDOWS\Minidump\111720-49718-01.dmp 2020-11-17 22:16 - 2020-11-17 22:16 - 195031485 _____ C:\WINDOWS\MEMORY.DMP 2020-11-17 20:08 - 2020-11-17 20:08 - 000000000 ____D C:\RegBackup 2020-11-17 19:39 - 2020-11-17 19:39 - 000000000 ____D C:\Program Files (x86)\Tweaking.com 2020-11-17 18:56 - 2020-11-17 22:13 - 000000000 ____D C:\ProgramData\Restoro 2020-11-17 18:56 - 2020-11-17 22:13 - 000000000 ____D C:\Program Files\Restoro 2020-11-17 17:38 - 2020-11-17 17:38 - 000000295 _____ C:\Users\XXX XXX\Desktop\Update 1903 bricht ab, Fehler 0xC1900101 - 0x30018 — CHIP-Forum.URL 2020-11-17 04:46 - 2020-11-17 04:47 - 000008192 ___SH C:\DumpStack.log.tmp 2020-11-16 21:30 - 2020-11-16 21:30 - 000330677 _____ C:\Users\XXX XXX\Downloads\Wahlprogramm_LTW_2021.pdf 2020-11-16 21:17 - 2020-11-16 21:17 - 000666727 _____ C:\Users\XXX XXX\Downloads\Antragsbuch_mit_Begruendungen_web.pdf 2020-11-16 21:16 - 2020-11-16 21:16 - 000443914 _____ C:\Users\XXX XXX\Downloads\2020_Aktuelle_Uebersicht_Urnenstandorte.pdf 2020-11-16 21:11 - 2020-11-16 21:11 - 006039975 _____ C:\Users\XXX XXX\Downloads\Doku_SozStadt12.pdf 2020-11-16 19:47 - 2020-11-16 19:47 - 000460421 _____ C:\Users\XXX XXX\Downloads\sig_70(2).pdf 2020-11-16 19:44 - 2020-11-16 19:44 - 001184438 _____ C:\Users\XXX XXX\Downloads\sandimgetriebe33.pdf 2020-11-16 19:42 - 2020-11-16 19:42 - 000460421 _____ C:\Users\XXX XXX\Downloads\sig_70.pdf 2020-11-16 19:42 - 2020-11-16 19:42 - 000460421 _____ C:\Users\XXX XXX\Downloads\sig_70(1).pdf 2020-11-16 18:54 - 2020-11-16 18:54 - 000616695 _____ C:\Users\XXX XXX\Downloads\14086-20180205.pdf 2020-11-16 18:41 - 2020-11-16 18:41 - 001825437 _____ C:\Users\XXX XXX\Desktop\2020-11-16_German_OEM_dt.pdf 2020-11-16 18:12 - 2020-11-16 18:12 - 000135565 _____ C:\Users\XXX XXX\Downloads\Einladung 16-11-20-Telko.pdf 2020-11-16 18:05 - 2020-11-16 18:05 - 000109663 _____ C:\Users\XXX XXX\Downloads\Programm MK Automobil 16.11.20.pdf 2020-11-15 17:48 - 2020-11-15 17:48 - 000029540 _____ C:\Users\XXX XXX\Downloads\DRP83735917.pdf 2020-11-15 17:47 - 2020-11-15 17:47 - 000019065 _____ C:\Users\XXX XXX\Downloads\DRP85101451(1).pdf 2020-11-15 17:31 - 2020-11-26 10:20 - 000000000 ____D C:\Users\XXX XXX\AppData\Local\Everything 2020-11-15 17:30 - 2020-11-15 17:30 - 000002114 _____ C:\Users\XXX XXX\Desktop\.mp4-Suche.search-ms 2020-11-15 16:54 - 2020-11-27 03:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Everything 2020-11-15 16:54 - 2020-11-26 10:20 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Everything 2020-11-15 16:54 - 2020-11-15 16:54 - 000001062 _____ C:\Users\Public\Desktop\Suche Everything.lnk 2020-11-15 16:54 - 2020-11-15 16:54 - 000001062 _____ C:\ProgramData\Desktop\Suche Everything.lnk 2020-11-15 16:54 - 2020-11-15 16:54 - 000000000 ____D C:\Program Files\Everything 2020-11-15 16:53 - 2020-11-15 16:53 - 003100917 _____ C:\Users\XXX XXX\Downloads\Everything-1.4.1.992.zip 2020-11-15 16:49 - 2020-11-27 03:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirPrintOK 2020-11-15 16:49 - 2020-11-27 03:14 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DirPrintOK 2020-11-15 16:49 - 2020-11-15 16:49 - 000002070 _____ C:\Users\XXX XXX\Desktop\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 000002070 _____ C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 000001954 _____ C:\Users\Public\Desktop\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 000001954 _____ C:\ProgramData\Microsoft\Windows\Start Menu\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 000001954 _____ C:\ProgramData\Desktop\DirPrintOK.lnk 2020-11-15 16:49 - 2020-11-15 16:49 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\DirPrintOK 2020-11-15 16:49 - 2020-11-15 16:49 - 000000000 ____D C:\Program Files\DirPrintOK 2020-11-15 16:45 - 2020-11-15 16:46 - 001337312 _____ C:\Users\XXX XXX\Downloads\DPOK445.zip 2020-11-15 15:19 - 2020-11-15 15:48 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\XMedia Recode 2020-11-15 15:16 - 2020-11-27 03:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode 64bit 2020-11-15 15:16 - 2020-11-15 15:16 - 000000959 _____ C:\Users\Public\Desktop\XMedia Recode 64bit.lnk 2020-11-15 15:16 - 2020-11-15 15:16 - 000000959 _____ C:\ProgramData\Desktop\XMedia Recode 64bit.lnk 2020-11-15 15:16 - 2020-11-15 15:16 - 000000000 ____D C:\Program Files\XMedia Recode 64bit 2020-11-15 15:13 - 2020-11-15 15:14 - 030402620 _____ C:\Users\XXX XXX\Downloads\xmedia352.zip 2020-11-15 15:08 - 2020-11-27 03:14 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP3Gain 2020-11-15 15:08 - 2020-11-15 15:12 - 000000000 ____D C:\Program Files (x86)\MP3Gain 2020-11-15 14:57 - 2020-11-15 14:57 - 001980509 _____ C:\Users\XXX XXX\Downloads\mp3gain-win-full-1_3_4.exe 2020-11-14 12:23 - 2020-11-14 12:23 - 000071205 _____ C:\Users\XXX XXX\Downloads\2016-07-27-Schweiz-vorsorgeeinrichtungen-nach-der-zweiten-saeule-der-schweizerischen-altersvorsorge.pdf 2020-11-11 21:49 - 2020-11-11 21:49 - 000207153 _____ C:\Users\XXX XXX\Downloads\KommAufbau(2)_2020.pdf 2020-11-11 21:28 - 2020-11-11 21:28 - 001004111 _____ C:\Users\XXX XXX\Downloads\Einladung_final.pdf 2020-11-09 21:30 - 2020-11-09 21:30 - 000051163 _____ C:\Users\XXX XXX\Downloads\20201109_KaufFondsZertifikate_1003383084_171119643.pdf 2020-11-09 21:29 - 2020-11-09 21:29 - 000055594 _____ C:\Users\XXX XXX\Downloads\20201105_MiFIDKosteninformation_1003383084_170703210.pdf 2020-11-09 21:28 - 2020-11-09 21:28 - 000049535 _____ C:\Users\XXX XXX\Downloads\20201004_Saldenmitteilung_1003383084_168084967.pdf 2020-11-09 21:28 - 2020-11-09 21:28 - 000046827 _____ C:\Users\XXX XXX\Downloads\20201002_Kontoauszug_1003383084_167555155.pdf 2020-11-09 21:27 - 2020-11-09 21:27 - 000049196 _____ C:\Users\XXX XXX\Downloads\20201001_Kontoauszug_1003383084_166388149.pdf 2020-11-09 21:27 - 2020-11-09 21:27 - 000045419 _____ C:\Users\XXX XXX\Downloads\20201001_Kontoauszug_1003383084_165557843.pdf 2020-11-09 21:26 - 2020-11-09 21:26 - 000224713 _____ C:\Users\XXX XXX\Downloads\20200725_AnschreibenInformationsbogenEinlagensicherung_2610308_160589596.pdf 2020-11-09 21:26 - 2020-11-09 21:26 - 000057288 _____ C:\Users\XXX XXX\Downloads\20200825_Fondsertragsausschuettung_1003383084_163128661.pdf 2020-11-09 21:26 - 2020-11-09 21:26 - 000057288 _____ C:\Users\XXX XXX\Downloads\20200825_Fondsertragsausschuettung_1003383084_163128661(1).pdf 2020-11-08 10:48 - 2020-11-08 10:49 - 000000240 _____ C:\Users\XXX XXX\Downloads\win-10-funktionsupdates-stoppen-version-2004.rar 2020-11-07 08:23 - 2020-11-07 08:23 - 000013633 _____ C:\Users\XXX XXX\Downloads\Invoice RE4062089.pdf 2020-11-07 08:08 - 2020-11-07 08:08 - 000019546 _____ C:\Users\XXX XXX\Downloads\Rechnung_Wahlkampf_Webseite.pdf 2020-11-06 15:41 - 2020-11-06 15:42 - 000075936 _____ C:\Users\XXX XXX\Downloads\RG150669008364.pdf 2020-11-06 15:32 - 2020-11-06 15:32 - 000000000 ___HD C:\$WinREAgent 2020-11-06 13:44 - 2020-11-06 13:44 - 000651214 _____ C:\Users\XXX XXX\Downloads\Gesellschaftliches_Gutachten_Fritz_Kaspar.pdf 2020-11-02 17:16 - 2020-11-02 17:16 - 000032719 _____ C:\Users\XXX XXX\Downloads\20201102-1006279-umsatz.CSV 2020-10-31 22:43 - 2020-10-31 22:43 - 000964676 _____ C:\Users\XXX XXX\Downloads\12990-20161214(1).pdf ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2020-11-29 19:03 - 2019-07-19 12:50 - 000004192 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{01E0E035-8801-47A3-8026-B8DAA69A5C75} 2020-11-29 18:59 - 2017-03-13 23:10 - 000000000 ____D C:\FRST 2020-11-29 18:47 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-11-29 18:03 - 2017-08-30 17:51 - 000000000 ____D C:\Users\XXX XXX\AppData\LocalLow\WebEx 2020-11-29 17:28 - 2016-05-22 07:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2020-11-29 17:28 - 2016-05-22 07:05 - 000000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2020-11-29 16:57 - 2019-07-19 12:03 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-11-29 14:28 - 2012-04-28 18:38 - 000000000 ____D C:\ProgramData\Mozilla 2020-11-29 14:27 - 2016-11-22 20:39 - 000000000 ____D C:\Users\XXX XXX\AppData\LocalLow\Mozilla 2020-11-29 14:22 - 2019-07-19 12:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-11-29 12:08 - 2019-03-19 05:37 - 001572864 _____ C:\WINDOWS\system32\config\BBI 2020-11-29 12:07 - 2012-03-25 11:40 - 000000000 ____D C:\Users\XXX XXX\Documents\Steuerfälle 2020-11-29 10:50 - 2019-07-19 12:03 - 000470288 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-11-28 17:53 - 2014-03-23 17:23 - 000000000 ____D C:\Users\XXX XXX\Documents\Benutzerdefinierte Office-Vorlagen 2020-11-28 16:57 - 2012-03-25 11:26 - 000000000 ____D C:\Program Files (x86)\Akademische Arbeitsgemeinschaft 2020-11-28 13:57 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2020-11-28 13:56 - 2020-08-03 15:54 - 000003798 _____ C:\WINDOWS\system32\Tasks\HPPrintMonitorService 2020-11-28 13:53 - 2019-07-19 12:29 - 001916826 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-11-28 13:53 - 2019-03-19 13:16 - 000822074 _____ C:\WINDOWS\system32\perfh007.dat 2020-11-28 13:53 - 2019-03-19 13:16 - 000177472 _____ C:\WINDOWS\system32\perfc007.dat 2020-11-27 11:47 - 2017-10-24 21:15 - 000000000 ____D C:\Users\XXX XXX\Documents\PDF Architect 2020-11-27 09:38 - 2019-07-19 12:50 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2020-11-27 03:16 - 2020-08-27 20:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote 2020-11-27 03:16 - 2020-08-27 18:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2020-11-27 03:16 - 2020-08-23 08:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OSCAR 2020-11-27 03:16 - 2020-05-25 20:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2020-11-27 03:16 - 2020-04-22 17:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unified Android Toolkit 2020-11-27 03:16 - 2020-03-20 11:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2020-11-27 03:16 - 2020-02-05 08:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-11-27 03:16 - 2020-01-20 11:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2020 2020-11-27 03:16 - 2020-01-09 13:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2019-2020 2020-11-27 03:16 - 2019-10-21 08:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 7 2020-11-27 03:16 - 2019-10-15 20:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2020-11-27 03:16 - 2019-07-19 12:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2020-11-27 03:16 - 2019-03-19 05:52 - 000000000 __SHD C:\Program Files\Windows Sidebar 2020-11-27 03:16 - 2019-03-19 05:52 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2020-11-27 03:16 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2020-11-27 03:16 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2020-11-27 03:16 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2020-11-27 03:16 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-11-27 03:16 - 2019-02-10 20:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2019 2020-11-27 03:16 - 2019-02-10 19:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2018-2019 2020-11-27 03:16 - 2018-12-04 14:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 6 2020-11-27 03:16 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2020-11-27 03:16 - 2018-08-12 15:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2020-11-27 03:16 - 2018-07-03 16:19 - 000000000 ____D C:\ProgramData\Packages 2020-11-27 03:16 - 2018-02-27 18:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2017-2018 2020-11-27 03:16 - 2018-02-27 18:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2018 2020-11-27 03:16 - 2017-12-30 12:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression 2020-11-27 03:16 - 2017-09-29 14:46 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2020-11-27 03:16 - 2017-08-18 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2020-11-27 03:16 - 2017-05-12 22:48 - 000000000 ____D C:\Program Files\UNP 2020-11-27 03:16 - 2017-01-07 11:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools 2020-11-27 03:16 - 2017-01-03 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2020-11-27 03:16 - 2017-01-03 16:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva 2020-11-27 03:16 - 2016-12-31 09:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuer-Ratgeber 2016-2017 2020-11-27 03:16 - 2016-12-31 09:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2017 2020-11-27 03:16 - 2016-08-07 15:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2020-11-27 03:16 - 2016-06-05 18:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ElsterFormular 2020-11-27 03:16 - 2016-05-22 19:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 6.0 2020-11-27 03:16 - 2016-03-11 08:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2020-11-27 03:16 - 2016-03-03 22:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2020-11-27 03:16 - 2016-02-16 08:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 4 2020-11-27 03:16 - 2016-02-13 18:30 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-11-27 03:16 - 2016-01-31 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung 2016 2020-11-27 03:16 - 2015-12-06 15:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AllDup 2020-11-27 03:16 - 2015-11-21 07:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune 2020-11-27 03:16 - 2015-11-19 15:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeOCR 2020-11-27 03:16 - 2014-10-11 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger 2020-11-27 03:16 - 2014-09-23 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-11-27 03:16 - 2014-08-08 22:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer 2020-11-27 03:16 - 2014-07-10 23:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steganos Safe 14 2020-11-27 03:16 - 2014-06-26 10:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!Fernzugang 2020-11-27 03:16 - 2014-06-15 13:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan 2020-11-27 03:16 - 2014-06-12 08:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp 2020-11-27 03:16 - 2014-06-10 11:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn 2020-11-27 03:16 - 2014-06-10 11:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2020-11-27 03:16 - 2014-06-08 13:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC 2020-11-27 03:16 - 2014-06-08 13:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol 2020-11-27 03:16 - 2014-06-08 13:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster 2020-11-27 03:16 - 2013-12-31 18:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fiat 2020-11-27 03:16 - 2013-12-23 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Time Stamp 2020-11-27 03:16 - 2013-11-25 16:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Allway Sync 2020-11-27 03:16 - 2013-08-07 09:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekahau 2020-11-27 03:16 - 2013-05-22 21:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RescueTime 2020-11-27 03:16 - 2013-03-30 16:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick 2020-11-27 03:16 - 2013-03-30 16:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid 2020-11-27 03:16 - 2013-03-30 16:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow 2020-11-27 03:16 - 2013-03-30 16:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2020-11-27 03:16 - 2013-03-30 16:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter 2020-11-27 03:16 - 2013-03-30 16:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5 2020-11-27 03:16 - 2013-03-30 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avi2Dvd 2020-11-27 03:16 - 2012-09-30 14:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK 2020-11-27 03:16 - 2012-09-22 16:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BatteryCare 2020-11-27 03:16 - 2012-08-07 08:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup 2020-11-27 03:16 - 2012-04-16 17:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Join Air 2020-11-27 03:16 - 2012-04-11 05:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shutdown Manager 2020-11-27 03:16 - 2012-03-31 10:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2020-11-27 03:16 - 2012-03-19 10:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind 2020-11-27 03:16 - 2012-01-28 14:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2020-11-27 03:16 - 2011-12-25 17:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2020-11-27 03:16 - 2011-12-14 18:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2020-11-27 03:16 - 2011-12-11 00:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Restorer2000 2020-11-27 03:16 - 2011-11-15 21:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-11-27 03:16 - 2011-11-13 23:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SIW 2020-11-27 03:16 - 2011-11-13 23:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works 2020-11-27 03:16 - 2011-11-13 22:55 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Deluxe 2020-11-27 03:16 - 2011-11-13 22:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager 2020-11-27 03:16 - 2011-11-13 22:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye webcam 2020-11-27 03:16 - 2011-11-13 22:50 - 000000000 ____D C:\Program Files\Intel 2020-11-27 03:16 - 2009-11-05 04:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Online Backup 2020-11-27 03:16 - 2009-11-05 04:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone 2020-11-27 03:16 - 2009-11-05 04:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Backup Manager 2020-11-27 03:16 - 2009-11-05 04:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager 2020-11-27 03:16 - 2009-11-05 04:23 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2020-11-27 03:16 - 2009-11-05 01:49 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2020-11-27 03:16 - 2009-11-05 01:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GridVista 2020-11-27 03:16 - 2009-11-05 01:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5 2020-11-27 03:16 - 2009-11-05 01:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8 2020-11-27 03:16 - 2009-11-05 01:39 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSobi v2 2020-11-27 03:16 - 2009-11-05 01:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem 2020-11-27 03:16 - 2009-07-14 06:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2020-11-27 03:15 - 2019-03-19 13:16 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2020-11-27 03:15 - 2019-03-19 13:16 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2020-11-27 03:15 - 2019-03-19 13:16 - 000000000 ____D C:\WINDOWS\system32\WCN 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\system32\F12 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\IME 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\catroot2.old 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\schemas 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Resources 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2020-11-27 03:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2020-11-27 03:15 - 2018-02-14 17:54 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2020-11-27 03:15 - 2013-07-13 08:36 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-11-27 03:15 - 2012-09-22 17:09 - 000000000 ____D C:\WINDOWS\system32\oodag 2020-11-27 03:15 - 2012-04-16 17:33 - 000000000 ____D C:\WINDOWS\SysWOW64\SupportAppCB 2020-11-27 03:15 - 2011-11-20 13:40 - 000000000 ____D C:\WINDOWS\system32\SPReview 2020-11-27 03:15 - 2011-11-20 13:40 - 000000000 ____D C:\WINDOWS\system32\EventProviders 2020-11-27 03:15 - 2009-11-05 01:49 - 000000000 ____D C:\WINDOWS\oem 2020-11-27 03:14 - 2020-08-23 07:41 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SleepyHead 2020-11-27 03:14 - 2020-05-18 18:54 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2020-11-27 03:14 - 2020-04-22 17:12 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\SkipSoft Android Toolkit 2020-11-27 03:14 - 2019-07-19 12:15 - 000000000 ____D C:\Users\Versuch 2020-11-27 03:14 - 2019-07-19 12:15 - 000000000 ____D C:\Users\XXX 2020-11-27 03:14 - 2019-07-19 12:15 - 000000000 ____D C:\Users\XXX XXX 2020-11-27 03:14 - 2017-05-12 20:04 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DreamBoxEdit 2020-11-27 03:14 - 2017-01-03 15:59 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FineRecovery 2020-11-27 03:14 - 2016-11-07 16:27 - 000000000 ____D C:\Users\Versuch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DreamBoxEdit 2020-11-27 03:14 - 2016-08-07 15:29 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2020-11-27 03:14 - 2016-02-20 00:19 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2020-11-27 03:14 - 2014-12-23 21:57 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView 2020-11-27 03:14 - 2014-08-08 18:13 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kassenbuch 2020-11-27 03:14 - 2014-01-06 14:59 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2020-11-27 03:14 - 2014-01-01 17:33 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alle meine Passworte 2020-11-27 03:14 - 2013-12-23 16:18 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC 2020-11-27 03:14 - 2012-04-29 17:05 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FrostWire 5 2020-11-27 03:14 - 2011-11-20 16:01 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SimpleScreenshot 2020-11-27 03:14 - 2011-11-17 21:04 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Random Dresser 2020-11-27 03:14 - 2011-11-15 21:00 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-11-27 03:13 - 2019-07-19 12:15 - 000000000 ____D C:\Users\DefaultAppPool 2020-11-27 02:27 - 2016-08-01 00:44 - 000023056 _____ C:\WINDOWS\system32\emptyregdb.dat 2020-11-27 00:43 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\registration 2020-11-26 22:35 - 2019-07-04 07:13 - 000000000 ___DC C:\WINDOWS\Panther 2020-11-26 22:16 - 2019-07-19 12:46 - 000001890 _____ C:\WINDOWS\diagwrn.xml 2020-11-26 22:16 - 2019-07-19 12:46 - 000001890 _____ C:\WINDOWS\diagerr.xml 2020-11-26 11:43 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2020-11-26 02:38 - 2019-07-19 12:50 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-11-26 02:37 - 2015-12-06 12:57 - 000002100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-11-25 23:40 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-11-25 20:58 - 2020-07-09 18:50 - 000002400 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2020-11-25 12:23 - 2020-05-25 20:37 - 000000000 ____D C:\Users\XXX XXX\Desktop\Finanzen 2020-11-25 11:37 - 2020-05-17 15:43 - 000000276 _____ C:\WINDOWS\WindowsUpdate.log.bak 2020-11-24 21:48 - 2019-11-07 12:57 - 000000000 ____D C:\Users\XXX XXX\Desktop\Stadtjugendring 2020-11-24 20:36 - 2020-02-28 10:06 - 000000000 ____D C:\Users\XXX XXX\Desktop\BiNe WPS 2020-11-23 17:50 - 2020-02-18 08:36 - 000000000 ____D C:\Users\XXX XXX\Desktop\EStE 2020-11-23 16:46 - 2018-12-25 11:26 - 000002244 _____ C:\Users\Public\Desktop\SteuerSparErklärung 2018.lnk 2020-11-23 16:46 - 2018-12-25 11:26 - 000002244 _____ C:\ProgramData\Desktop\SteuerSparErklärung 2018.lnk 2020-11-23 14:37 - 2019-07-19 12:50 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1242904208-471078349-2963378918-1000 2020-11-23 14:37 - 2019-07-19 12:15 - 000002461 _____ C:\Users\XXX XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-11-23 14:37 - 2016-05-22 07:07 - 000000000 ___RD C:\Users\XXX XXX\OneDrive 2020-11-22 20:27 - 2013-03-14 17:55 - 000000000 ____D C:\Users\XXX XXX\AppData\Local\ElevatedDiagnostics 2020-11-21 21:45 - 2019-02-04 12:44 - 000001266 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2020-11-21 21:45 - 2019-02-04 12:44 - 000001262 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2020-11-21 21:45 - 2015-08-07 21:58 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-11-21 21:41 - 2019-07-19 12:50 - 000003840 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2020-11-21 21:41 - 2019-07-19 12:50 - 000003616 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2020-11-21 21:40 - 2017-01-03 16:14 - 000000000 ____D C:\Program Files\CCleaner 2020-11-21 17:30 - 2019-11-08 12:58 - 000000000 ____D C:\Users\XXX XXX\Desktop\USB Stick 11_2019 Kopien 2020-11-21 16:34 - 2019-02-04 12:44 - 000000000 ____D C:\Program Files (x86)\Dropbox 2020-11-21 14:31 - 2015-08-07 21:58 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-11-20 20:47 - 2019-07-19 11:40 - 000000000 ____D C:\WINDOWS\system32\msmq 2020-11-20 20:46 - 2015-11-21 07:36 - 000000000 ____D C:\ProgramData\Acronis 2020-11-20 18:10 - 2018-01-12 18:33 - 000000000 ____D C:\Users\XXX XXX\AppData\Local\PlaceholderTileLogoFolder 2020-11-20 16:34 - 2020-03-20 15:59 - 000000000 ____D C:\Users\XXX XXX\Desktop\KV Lörrach 2020-11-20 16:29 - 2016-05-02 09:49 - 000386688 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_tracker.sys 2020-11-20 16:28 - 2016-05-02 09:48 - 000887024 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib.sys 2020-11-20 16:28 - 2016-05-02 09:48 - 000694904 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tnd.sys 2020-11-20 16:28 - 2016-05-02 09:48 - 000383608 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\snapman.sys 2020-11-20 16:28 - 2016-05-02 09:48 - 000334968 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file.sys 2020-11-20 16:27 - 2016-05-02 09:48 - 000183928 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\fltsrv.sys 2020-11-20 16:27 - 2016-05-02 09:48 - 000175744 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib_mounter.sys 2020-11-20 16:27 - 2016-05-02 09:47 - 000001250 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image.lnk 2020-11-20 16:23 - 2015-11-21 07:36 - 000000000 ____D C:\Program Files (x86)\Acronis 2020-11-17 22:16 - 2019-11-14 16:14 - 000000000 ____D C:\WINDOWS\Minidump 2020-11-17 21:25 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ServiceState 2020-11-17 20:10 - 2013-07-18 20:08 - 000000000 ____D C:\WINDOWS\sold.old 2020-11-17 09:12 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\spool 2020-11-17 04:01 - 2011-11-18 19:58 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-11-16 18:41 - 2017-11-26 20:24 - 000000000 ____D C:\Users\XXX XXX\Documents\Zoom 2020-11-16 14:52 - 2020-10-22 21:11 - 000011645 _____ C:\Users\XXX XXX\Desktop\Mappe1.xlsx 2020-11-15 17:35 - 2015-12-07 12:22 - 000000000 ____D C:\Users\XXX XXX\Documents\Outlook-Dateien 2020-11-15 15:47 - 2013-02-09 01:20 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\Audacity 2020-11-15 15:40 - 2011-12-14 20:04 - 000000000 ____D C:\Users\XXX XXX\AppData\Roaming\DVDVideoSoft 2020-11-15 15:37 - 2011-12-14 18:44 - 000000000 ____D C:\Program Files (x86)\DVDVideoSoft 2020-11-15 15:12 - 2009-11-05 04:21 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2020-11-14 11:39 - 2016-03-15 14:58 - 000002216 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-11-14 11:39 - 2016-03-15 14:58 - 000002216 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2020-11-14 11:39 - 2015-08-02 16:38 - 000002257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-11-09 16:32 - 2017-12-11 08:50 - 000000000 ____D C:\Users\XXX XXX\AppData\Local\Packages 2020-11-07 08:36 - 2017-07-08 09:23 - 000000000 ____D C:\Users\XXX XXX\AppData\Local\GoToMeeting 2020-11-02 15:21 - 2020-07-09 18:49 - 000003700 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-11-02 15:21 - 2020-07-09 18:49 - 000003576 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-10-31 20:10 - 2011-11-15 21:40 - 000795000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2020-05-25 20:59 - 2020-05-25 21:06 - 017797120 _____ () C:\Users\XXX XXX\AppData\Roaming\Sandra.mdb 2015-01-30 20:51 - 2020-02-27 07:21 - 000000600 _____ () C:\Users\XXX XXX\AppData\Roaming\winscp.rnd 2017-06-03 07:03 - 2017-06-03 07:06 - 503005056 _____ () C:\Users\XXX XXX\AppData\Local\AcronisTrueImage2016_6589.exe 2020-11-20 14:47 - 2020-11-20 14:51 - 503043688 _____ () C:\Users\XXX XXX\AppData\Local\AcronisTrueImage2016_6595.exe 2012-04-20 18:28 - 2017-08-16 15:00 - 000007168 _____ () C:\Users\XXX XXX\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-09-22 21:07 - 2014-09-22 21:07 - 000001482 _____ () C:\Users\XXX XXX\AppData\Local\RecConfig.xml 2020-10-10 22:00 - 2020-10-10 22:00 - 000000895 _____ () C:\Users\XXX XXX\AppData\Local\recently-used.xbel 2013-08-12 21:15 - 2019-10-16 10:34 - 000007603 _____ () C:\Users\XXX XXX\AppData\Local\Resmon.ResmonCfg 2020-07-17 15:38 - 2020-07-17 15:38 - 000000000 _____ () C:\Users\XXX XXX\AppData\Local\{0E784C28-887A-4724-B93C-E33F57A4ACD2} 2020-09-04 20:01 - 2020-09-04 20:01 - 000000000 _____ () C:\Users\XXX XXX\AppData\Local\{1AF13D18-0078-49D0-8725-98FAB4DE8706} 2020-06-05 13:10 - 2020-06-05 13:14 - 000000000 _____ () C:\Users\XXX XXX\AppData\Local\{75203C11-CCE4-4F00-BCC4-7E7733ED8627} 2020-07-20 18:23 - 2020-07-20 18:27 - 000000000 _____ () C:\Users\XXX XXX\AppData\Local\{B58AA7C7-ABEF-42ED-B54A-EFC51438571D} 2020-07-20 17:41 - 2020-07-20 17:47 - 000000000 _____ () C:\Users\XXX XXX\AppData\Local\{B6EE960F-BF64-4F26-BD2A-45F26B8964B2} ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
29.11.2020, 19:28 | #13 |
| Windows Update lässt sich nicht installieren [gelöst]Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 29-11-2020 durchgeführt von XXX (29-11-2020 19:13:01) Gestartet von C:\Users\XXX XXX\Downloads Windows 10 Home Version 1909 18363.1139 (X64) (2019-07-19 11:52:50) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1242904208-471078349-2963378918-500 - Administrator - Disabled) XXX (S-1-5-21-1242904208-471078349-2963378918-1000 - Administrator - Enabled) => C:\Users\XXX XXX DefaultAccount (S-1-5-21-1242904208-471078349-2963378918-503 - Limited - Disabled) XXX (S-1-5-21-1242904208-471078349-2963378918-1003 - Limited - Enabled) => C:\Users\XXX Gast (S-1-5-21-1242904208-471078349-2963378918-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1242904208-471078349-2963378918-1002 - Limited - Enabled) Versuch (S-1-5-21-1242904208-471078349-2963378918-1004 - Administrator - Enabled) => C:\Users\Versuch WDAGUtilityAccount (S-1-5-21-1242904208-471078349-2963378918-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden AAVUpdateManager (HKLM-x32\...\{AFA42FE1-A5C3-485F-9180-BFCF5BF1F1C3}) (Version: 18.00.0000 - Wolters Kluwer Deutschland GmbH) AC3Filter 1.63b (HKLM-x32\...\AC3Filter_is1) (Version: 1.63b - Alexander Vigovsky) Acer Arcade Deluxe (HKLM-x32\...\{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 3.0.7112 - CyberLink Corp.) Hidden Acer Arcade Deluxe (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 3.0.7112 - CyberLink Corp.) Acer Backup Manager (HKLM-x32\...\InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}) (Version: 2.0.0.29 - NewTech Infosystems) Acer Crystal Eye webcam Ver:1.1.124.1120 (HKLM-x32\...\{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}) (Version: 1.1.124.1120 - Chicony Electronics Co.,Ltd.) Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 4.05.3004 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3005 - Acer Incorporated) Acer GameZone Console (HKLM-x32\...\{8ed9688e-4f79-4308-91ca-f1c37ca142b4}_is1) (Version: 5.1.0.2 - Oberon Media, Inc.) Acer GridVista (HKLM-x32\...\GridVista) (Version: 3.01.0730 - Acer Inc.) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.2009.1217 - Acer Incorporated) Acer VCM (HKLM-x32\...\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}) (Version: 4.05.3000 - Acer Incorporated) Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated) Acronis Drive Monitor (HKLM-x32\...\{706AE61D-40A4-4F50-8359-FE8F6F7FA461}) (Version: 1.0.566 - Acronis) Acronis Drivers (HKLM\...\{A9DA1EFE-A45D-4583-8639-2537DEB70950}) (Version: 25.5.32010 - Acronis) Hidden Acronis True Image (HKLM-x32\...\{7885F0AF-BC9F-4819-BD1F-FA6B00FCB291}) (Version: 25.5.32010 - Acronis) Hidden Acronis True Image (HKLM-x32\...\{7885F0AF-BC9F-4819-BD1F-FA6B00FCB291}Visible) (Version: 25.5.32010 - Acronis) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 20.013.20066 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.103 - Adobe Systems Incorporated) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.445 - Adobe) Akamai NetSession Interface (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Alcor Micro USB Card Reader (HKLM-x32\...\{DBCE1208-433D-4D3E-A26A-CB1B5E71A8F5}) (Version: 1.4.17.35005 - Alcor Micro Corp.) Hidden Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{DBCE1208-433D-4D3E-A26A-CB1B5E71A8F5}) (Version: 1.4.17.35005 - Alcor Micro Corp.) Alice Greenfingers (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}) (Version: - Oberon Media) AllDup 3.4.24 (HKLM-x32\...\AllDup_is1) (Version: 3.4.24 - Michael Thummerer Software Design) Alle meine Passworte 4.13 (HKLM\...\AllemeinePassworte) (Version: - Mirko Böer) Allway Sync version 12.16.9 (HKLM-x32\...\Allway Sync_is1) (Version: - Botkind Inc) ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.105.2015.1105 - Alps Electric) Amazonia (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}) (Version: - Oberon Media) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AOMEI Partition Assistant Standard Edition 6.0 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI Technology Co., Ltd.) Apple Application Support (32-Bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) ASPClient (HKLM-x32\...\{AB46DAEE-3FF0-41EF-ABFC-5BD409D08055}) (Version: 2.4.193 - hmd-software AG) ATI Catalyst Install Manager (HKLM\...\{11F38253-8940-FFDA-D131-B14120C357E4}) (Version: 3.0.754.0 - ATI Technologies, Inc.) Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team) Avi2Dvd 0.6.4 (HKLM-x32\...\Avi2Dvd) (Version: 0.6.4 - TrustFm) AviSynth 2.5 (HKLM-x32\...\AviSynth) (Version: - ) Backup Manager Basic (HKLM-x32\...\{72B776E5-4530-4C4B-9453-751DF87D9D93}) (Version: 2.0.0.29 - NewTech Infosystems) Hidden BatteryCare 0.9.10.0 (HKLM-x32\...\{C6A6036D-FBD0-4324-BEAA-C0845257160C}_is1) (Version: 0.9.10.0 - Filipe Lourenço) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Broadcom Gigabit NetLink Controller (HKLM\...\{A325B368-A9EC-40EF-A95C-9DEAD3683AE3}) (Version: 12.33.03 - Broadcom Corporation) Canon MP160 Benutzerregistrierung (HKLM-x32\...\Canon MP160 Benutzerregistrierung) (Version: - ) ccc-core-static (HKLM-x32\...\{357C0C30-051F-FE77-4709-025786123FB1}) (Version: 2009.1209.2335.42329 - Ihr Firmenname) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.56 - Piriform) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.4852 - CDBurnerXP) Chicken Invaders 2 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593}) (Version: - Oberon Media) Cisco Webex Meetings (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ActiveTouchMeetingClient) (Version: - Cisco Webex LLC) Convert2MP3 - YouTube Downloader 1.0.11 (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\c4878346-5b5f-589a-b130-8033c196ef00) (Version: 1.0.11 - Convert2MP3) CoreAAC Audio Decoder (remove only) (HKLM-x32\...\CoreAAC Audio Decoder) (Version: - ) CPUID CPU-Z 1.91 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.91 - CPUID, Inc.) CrystalDiskInfo 8.1.0 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 8.1.0 - Crystal Dew World) Dairy Dash (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}) (Version: - Oberon Media) DirPrintOK (HKLM\...\DirPrintOK) (Version: - ) DirPrintOK (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\DirPrintOK) (Version: - ) Dream Day First Home (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}) (Version: - Oberon Media) DreamBoxEdit -- The one and only settings editor for your Dreambox (HKLM-x32\...\DreamBoxEdit) (Version: - ) Dropbox (HKLM-x32\...\Dropbox) (Version: 90.4.307 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.377.1 - Dropbox, Inc.) Hidden DVD Flick 1.3.0.7 (HKLM-x32\...\DVD Flick_is1) (Version: 1.3.0.7 - Dennis Meuwissen) eBay Worldwide (HKLM-x32\...\{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}) (Version: 2.1.0901 - OEM) EinsteinBrainTrainer (remove only) (HKLM-x32\...\EinsteinBrainTrainer) (Version: - ) Ekahau HeatMapper (HKLM\...\Heatmapper-1.1.4.39795) (Version: 1.1.4.39795 - Ekahau Inc.) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 17.3.24.20160513 - Landesfinanzdirektion Thüringen) Eraser 6.0.10.2620 (HKLM\...\{6E5159B4-A519-41EF-80EF-AD58371515DF}) (Version: 6.0.2620 - The Eraser Project) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) eSobi v2 (HKLM-x32\...\{15D967B5-A4BE-42AE-9E84-64CD062B25AA}) (Version: 2.0.4.000274 - esobi Inc.) Hidden eSobi v2 (HKLM-x32\...\InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}) (Version: 2.0.4.000274 - esobi Inc.) EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) Evernote v. 6.25.1 (HKLM-x32\...\{CA92FF58-B652-11EA-A23A-42010A401FD0}) (Version: 6.25.1.9091 - Evernote Corp.) Everything 1.4.1.992 (x64) (HKLM\...\Everything) (Version: 1.4.1.992 - voidtools) Farm Frenzy 2 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}) (Version: - Oberon Media) ffdshow [rev 3299] [2010-03-03] (HKLM-x32\...\ffdshow_is1) (Version: 1.0.0.3299 - ) Fiat eco:Drive (HKLM-x32\...\{279E8677-8DE4-6481-5570-47E0CCDFD239}) (Version: 2.0.2 - Fiat Group Automobiles) Hidden Fiat eco:Drive (HKLM-x32\...\com.fiat.convergence.385E4263E7379A5D22A7076E99B02868EFF10711.1) (Version: 2.0.2 - Fiat Group Automobiles) FineRecovery v5.0 (HKLM-x32\...\FineRecovery) (Version: v5.0 - FineRecovery Software) First Class Flurry (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115208410}) (Version: - Oberon Media) Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 1.3.105.325 - Foxit Corporation) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.3.321 - Foxit Corporation) Free Audio CD to MP3 Converter version 1.3.12.1228 (HKLM-x32\...\Free Audio CD to MP3 Converter_is1) (Version: 1.3.12.1228 - DVDVideoSoft Ltd.) Free DVD Video Burner version 3.0.4.426 (HKLM-x32\...\Free DVD Video Burner_is1) (Version: - DVDVideoSoft Limited.) Free System Utilities (HKLM-x32\...\{ad2818b3-1616-4ec8-855d-be6936103e5a}) (Version: 1.1.0.70 - Covus Freemium GmbH) Free SystemUtilities (HKLM-x32\...\{649C4BED-C473-4F9E-918E-B11DC0D95818}) (Version: 1.1.0.70 - Covus Freemium GmbH) Hidden Free YouTube Download version 3.1.37.918 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.1.37.918 - DVDVideoSoft Ltd.) Free YouTube To MP3 Converter (HKLM-x32\...\Free YouTube To MP3 Converter_is1) (Version: 4.3.34.1110 - Digital Wave Ltd) FreeMind (HKLM-x32\...\B991B020-2968-11D8-AF23-444553540000_is1) (Version: 1.0.1 - ) FreeOCR v5.4 (HKLM-x32\...\freeocr_is1) (Version: - ) FRITZ!Box-Fernzugang einrichten (HKLM-x32\...\{EFADD989-D9F2-49F6-A280-675951CC78D3}) (Version: 1.0.3 - AVM Berlin) FrostWire 5.3.5 (HKLM-x32\...\FrostWire 5) (Version: 5.3.5.0 - FrostWire Team) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.198 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden GoTo Opener (HKLM-x32\...\{C2A61D74-BB65-42AD-B81F-AC25E1F7DE02}) (Version: 1.0.536 - LogMeIn, Inc.) GoToMeeting 10.14.0.18962 (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\GoToMeeting) (Version: 10.14.0.18962 - LogMeIn, Inc.) Granny In Paradise (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110551697}) (Version: - Oberon Media) Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - ) HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Heroes of Hellas (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}) (Version: - Oberon Media) HP Dropbox Plugin (HKLM-x32\...\{1E18E86D-632C-48B5-962C-B60C2E53A478}) (Version: 36.0.41.58587 - HP) HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard) HP Google Drive Plugin (HKLM-x32\...\{039DDA62-50CC-4E7F-9D54-7CF032A2D362}) (Version: 36.0.41.58587 - HP) HP OfficeJet 3830 series - Grundlegende Software für das Gerät (HKLM\...\{DAA02EA6-3D2E-4BF4-9110-9DFAE6FD9EB0}) (Version: 40.11.1119.1786 - HP Inc.) HP OfficeJet 3830 series Hilfe (HKLM-x32\...\{99C52AB4-FBA3-4C12-9AC3-B19A3421EB96}) (Version: 35.0.0 - Hewlett Packard) HP Photosmart 5520 series - Grundlegende Software für das Gerät (HKLM\...\{4F396B08-301D-4E53-A372-95A7E93ABD04}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Support Solutions Framework (HKLM-x32\...\{96D12EC9-720B-45FB-904C-36D6307A1C76}) (Version: 11.51.0048 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (HKLM-x32\...\{B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D}) (Version: 1.00.0001 - Microsoft) Hidden HTC Driver Installer (HKLM-x32\...\{6D6664A9-3342-4948-9B7E-034EFE366F0F}) (Version: 3.0.0.007 - HTC Corporation) Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated) ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.01.1002 - Intel Corporation) Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) iTunes (HKLM\...\{E690A491-702F-4DEC-9977-C015D1DBB57C}) (Version: 12.3.1.23 - Apple Inc.) Java 8 Update 181 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation) Join Air (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.2 - ZTE Corporation) Kassenbuch (HKLM-x32\...\{29531C6B-7B64-4C53-B54A-6C8AB5DE2159}) (Version: 1.0.0 - Office Consult GmbH) K-Lite Codec Pack 9.2.0 (Basic) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.2.0 - ) korAccount (HKLM-x32\...\{EF0904D0-29FE-4EB0-8212-72E2DEC2A23D}) (Version: 4.8.7.0 - Kornelius) Launch Manager (HKLM-x32\...\LManager) (Version: 3.0.05 - Acer Inc.) LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.2.98 - LSI Corporation) MediaHuman YouTube to MP3 Converter Version 3.3 (HKLM-x32\...\MediaHuman YouTube to MP3 Converter_is1) (Version: 3.3 - ) Microsoft 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.13328.20356 - Microsoft Corporation) Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 87.0.664.47 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - ) Microsoft Expression Web 4 (HKLM-x32\...\Web_4.0.1460.0) (Version: 4.0.1460.0 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0407-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation) Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM-x32\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Teams) (Version: 1.2.00.34161 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.25.28508 (HKLM-x32\...\{65e650ff-30be-469d-b63a-418d71ea1765}) (Version: 14.25.28508.3 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Works (HKLM-x32\...\{62F7DA7E-CCCB-439C-A760-00C3926E761F}) (Version: 9.7.0621 - Microsoft Corporation) MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek) Mozilla Firefox 72.0.2 (x64 de) (HKLM\...\Mozilla Firefox 72.0.2 (x64 de)) (Version: 72.0.2 - Mozilla) Mozilla Firefox 83.0 (x64 de) (HKLM\...\Mozilla Firefox 83.0 (x64 de)) (Version: 83.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.2 - Mozilla) MPC-HC 1.7.0 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.0.7858 - MPC-HC Team) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.5 - F.J. Wechselberger) MyWinLocker (HKLM-x32\...\{68301905-2DEA-41CE-A4D4-E8B443B099BA}) (Version: 3.1.76.0 - Egis Technology Inc.) No-IP DUC (HKLM-x32\...\NoIPDUC) (Version: 4.0.1 - Vitalwerks Internet Solutions LLC) Norton Online Backup (HKLM-x32\...\{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}) (Version: 1.2.0.36 - Symantec) NTI Backup Now 5 (HKLM-x32\...\InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}) (Version: 5.1.2.627 - NewTech Infosystems) NTI Backup Now Standard (HKLM-x32\...\{12EFA1A4-AC3B-443C-8143-237EDE760403}) (Version: 5.1.2.627 - NewTech Infosystems) Hidden NTI Media Maker 8 (HKLM-x32\...\{2413930C-8309-47A6-BC61-5EF27A4222BC}) (Version: 8.0.12.6623 - NewTech Infosystems) Hidden NTI Media Maker 8 (HKLM-x32\...\InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}) (Version: 8.0.12.6623 - NewTech Infosystems) O&O Defrag Free Edition (HKLM\...\{C10CAF82-9D36-4D9A-9DC0-C4549F06B519}) (Version: 14.1.431 - O&O Software GmbH) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden OSCAR (HKLM\...\{FC6F08E6-69BF-4469-ADE3-78199288D305}_is1) (Version: 1.0.1-r1-Win64-a102a85d - The OSCAR Team) PDF Architect 4 (HKLM-x32\...\PDF Architect 4) (Version: 4.0.34.26215 - pdfforge GmbH) PDF Architect 4 Create Module (HKLM\...\{72B9DF2C-76FA-40B5-A469-16EAB159CE72}) (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDF Architect 4 Edit Module (HKLM\...\{BDF7326B-7ED4-4034-B867-F4E88D4E628B}) (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDF Architect 4 View Module (HKLM\...\{03E04B47-9270-4613-8D7E-DA4AD2B259A0}) (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDF Architect 6 (HKLM-x32\...\PDF Architect 6) (Version: 6.1.19.842 - pdfforge GmbH) PDF Architect 6 Create Module (HKLM\...\{A0ACB885-7CDD-4E43-9109-E49CF70E4039}) (Version: 6.1.24.1862 - pdfforge GmbH) Hidden PDF Architect 6 Edit Module (HKLM\...\{FC39343C-732F-433E-9929-F9D08BA73792}) (Version: 6.1.24.1862 - pdfforge GmbH) Hidden PDF Architect 6 View Module (HKLM\...\{7FFD0E0F-478A-4393-BBB0-4B20FAF5F3B7}) (Version: 6.1.24.1862 - pdfforge GmbH) Hidden PDF Architect 7 (HKLM-x32\...\PDF Architect 7) (Version: 7.0.24.1546 - pdfforge GmbH) PDF Architect 7 Create Module (HKLM\...\{B600CC13-8F68-4D44-8867-93490894FAE5}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Edit Module (HKLM\...\{BA2C2671-B379-4101-A21C-4C549671FC8D}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 View Module (HKLM\...\{E947A304-6110-4CFE-98AD-E6909072E87D}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF24 Creator 9.2.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 9.2.0 - PDF24.org) PDFCreator (HKLM\...\{00010FEF-82A2-497E-983A-7105A0167FA7}) (Version: 4.0.3 - pdfforge GmbH) pomodairo (HKLM-x32\...\{EEBEA077-AB92-5083-ECB1-C15BD842D00B}) (Version: 1.9 - UNKNOWN) QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) Random Dresser (HKLM-x32\...\RandomDresser) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5969 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) RescueTime 2.2.1 (HKLM-x32\...\{2505571C-03B3-4F9F-AC35-33F1CB4B5E9E}_is1) (Version: - RescueTime.com) Restorer2000 3.3 (HKLM-x32\...\Restorer2000_is1) (Version: 3.3 - Bitmart Inc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SeaTools for Windows 1.4.0.2 (HKLM-x32\...\SeaTools for Windows) (Version: 1.4.0.2 - Seagate Technology) Shutdown Manager (HKLM-x32\...\{C457BA5F-35F9-480C-90F8-5C91DB443A15}_is1) (Version: 2.0.7 - Daniel Höllig) Signal 1.26.2 (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\7d96caee-06e6-597c-9f2f-c7bb2e0948b4) (Version: 1.26.2 - Open Whisper Systems) SimpleScreenshot 1.40 (HKLM-x32\...\SimpleScreenshot) (Version: - ) SiSoftware Sandra Lite 2020 (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2596}_is1) (Version: 30.41.2020.5 - SiSoftware) SIW version 2011.10.29 (HKLM-x32\...\{AB67580-257C-45FF-B8F4-C8C30682091A}_is1) (Version: 2011.10.29 - Topala Software Solutions) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.) SleepyHead (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\{765e9bfa-a49a-4fa3-ab81-e6854b15d6fc}) (Version: 1.0.0-1 - Jedimark) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\Spotify) (Version: 0.9.10.14.g578d350b - Spotify AB) SpywareBlaster 5.0 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.0.0 - BrightFort LLC) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Steganos Safe 14 (HKLM-x32\...\{13B7FBFB-622E-4002-8570-594798E6167D}) (Version: 14.2.2 - Steganos Software GmbH) Steuer-Ratgeber 2016-2017 (HKLM-x32\...\{2D99CB45-87EE-4834-BB15-5DD59A024E4C}) (Version: 16.11.6 - Wolters Kluwer Deutschland GmbH) Steuer-Ratgeber 2017-2018 (HKLM-x32\...\{BC4EE761-703C-485C-A0D6-E8DD7D28F927}) (Version: 17.11.2 - Wolters Kluwer Deutschland GmbH) Steuer-Ratgeber 2018-2019 (HKLM-x32\...\{B96CAC3C-B7E7-4291-B422-0544096E217B}) (Version: 18.11.0 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerRatgeber 2019-2020 (HKLM-x32\...\{8D323537-9904-4A5A-BB0F-92B4B7EB512F}) (Version: 20.00.4 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerRatgeber 2020-2021 (HKLM-x32\...\{2E5063A0-872A-4B65-8163-168B25E6D50A}) (Version: 20.10.14 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) Steuer-Spar-Erklärung 2008 (HKLM-x32\...\{BBE67B86-FCD7-4D3C-8B00-063DEAD8E30C}) (Version: 13.02.0000 - Akademische Arbeitsgemeinschaft) Steuer-Spar-Erklärung 2009 (HKLM-x32\...\{32E00E5E-22B1-4D5A-9DC2-CD75E087A5E6}) (Version: 14.01.0000 - Akademische Arbeitsgemeinschaft Verlag) Steuer-Spar-Erklärung 2010 (HKLM-x32\...\{D8E1DFEE-622B-46BA-AEFF-AB7E541C0B21}) (Version: 15.15 - Akademische Arbeitsgemeinschaft Verlag) Steuer-Spar-Erklärung 2011 (HKLM-x32\...\{9F5FD796-86F0-4360-85F8-D54C0F5411EB}) (Version: 16.18 - Akademische Arbeitsgemeinschaft Verlag) Steuer-Spar-Erklärung 2012 (HKLM-x32\...\{CCD2BAD2-0919-40CB-80CC-E9538B0E4C2E}) (Version: 17.15.11 - Wolters Kluwer Deutschland GmbH) Steuer-Spar-Erklärung 2013 (HKLM-x32\...\{AEB61F7A-4BBA-4292-A096-7893E09034A4}) (Version: 18.11.11 - Wolters Kluwer Deutschland GmbH) SteuerSparErklärung 2014 (HKLM-x32\...\{A463EB06-22A6-47F5-9593-E52B291EF13E}) (Version: 19.14.99 - Akademische Arbeitsgemeinschaft) SteuerSparErklärung 2015 (HKLM-x32\...\{312C0E08-8F94-4536-AAF6-3413F784AC5F}) (Version: 20.42.175 - Akademische Arbeitsgemeinschaft) SteuerSparErklärung 2016 (HKLM-x32\...\{D331D50C-C578-423B-8BC7-94D3133CE315}) (Version: 21.43.115 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2017 (HKLM-x32\...\{45815686-22F8-4D24-872D-E481A654B230}) (Version: 22.42.95 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2018 (HKLM-x32\...\{A1D1FDBD-02F9-49B6-9EB2-2DC6B1D37E16}) (Version: 23.40.59 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2019 (HKLM-x32\...\{C1274A30-7822-4CAE-A4C8-395E9E687107}) (Version: 24.36.138 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2020 (HKLM-x32\...\{E7E3F711-933D-4D9A-BA51-01F47179F23C}) (Version: 25.39.90 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) SteuerSparErklärung 2021 (HKLM-x32\...\{8C111EC2-454D-4C0B-B0D7-E845F1B3AAAD}) (Version: 26.20.32 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH) Streamripper (Remove only) (HKLM-x32\...\Streamripper) (Version: - ) Studie zur Verbesserung von HP Deskjet 3070 B611 series Produkten (HKLM\...\{CAD7B6DD-9C82-4D17-BAE8-3E9AE4971B90}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Studie zur Verbesserung von HP OfficeJet 3830 series (HKLM\...\{9C598F48-B5D8-4C16-B59A-FC46C18DE206}) (Version: 40.11.1119.1786 - HP Inc.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.1 - Synaptics Incorporated) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.77242 - TeamViewer) Time Stamp (HKLM-x32\...\Time Stamp_is1) (Version: - 3.23.2010-0313) TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.0.0 - TP-LINK) Tunatic (HKLM-x32\...\Tunatic) (Version: - ) Überwachungstool für die Intel® Turbo-Boost-Technik (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.186.6 - Intel) Uninstall 1.0.0.1 (HKLM-x32\...\Uninstall_is1) (Version: - ) Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod) Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.00.3008 - Acer Incorporated) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinPatrol (HKLM\...\{6A206A04-6BC1-411B-AA04-4E52EDEEADF2}) (Version: 35.5.2017.8 - Ruiware) WinPatrol (HKLM\...\{6E575124-6D34-4E65-9375-7D69468A6089}) (Version: 30.9 - BillP Studios) WinRAR 5.10 Beta 4 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.4 - win.rar GmbH) XMedia Recode 64bit Version 3.5.2.0 (HKLM\...\{D31E6E69-4C6A-42CC-926F-CC7B186864EB}_is1) (Version: 3.5.2.0 - XMedia Recode 64bit) Xvid 1.2.2 final uninstall (HKLM-x32\...\Xvid_is1) (Version: 1.2 - Xvid team (Koepi)) Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version: - Yahoo! Inc.) Yahoo! Software Update (HKLM-x32\...\Yahoo! Software Update) (Version: - ) Zoom (HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ZoomUMX) (Version: 5.0 - Zoom Video Communications, Inc.) Zuzahlungsrechner (HKLM-x32\...\{B2C69E77-F209-4B63-8676-4F32B27E162B}) (Version: 3.6.0 - sfr-software-fuers-heim) Packages: ========= Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2020-11-17] (Autodesk Inc.) Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.5.8.0_x86__kgqvnymyfvs32 [2020-11-17] (king.com) Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.157.400.0_x86__kgqvnymyfvs32 [2020-11-17] (king.com) Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.1.4081.0_x64__rz1tebttyb220 [2020-11-17] (Dolby Laboratories) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_110.1.671.0_x64__v10z8vjag6ke6 [2020-11-17] (HP Inc.) Ihr Smartphone -> C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19123.13.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_4.6.0.11_x86__h6adky7gbf63m [2020-11-17] (Gameloft.) Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) [MS Ad] Microsoft News – Nachrichten -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.35.20273.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Studios) [MS Ad] Minecraft for Windows 10 -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.14.3002.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Studios) Mp3 Cutter -> C:\Program Files\WindowsApps\KastorSoft.Mp3Cutter_1.0.0.16_x64__8hk6z7t2es12c [2020-11-17] (KastorSoft) MSN Finanzen -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.34.20074.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) [MS Ad] MSN Sport -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.34.20074.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) [MS Ad] MSN Wetter -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.34.13393.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) [MS Ad] RICOH Driver Utility -> C:\Program Files\WindowsApps\3EA2211E.RICOHDriverUtility_4.4.0.5_x86__fxme7667cy4q4 [2020-11-17] (Ricoh Company, Ltd.) Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c [2020-11-17] (Skype) Todoist: To-Do List and Task Manager -> C:\Program Files\WindowsApps\88449BC3.TodoistTo-DoListTaskManager_2.2.5106.0_x86__71ef4824z52ta [2020-11-17] (Doist Inc.) [Startup Task] Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2020-11-17] (Twitter Inc.) WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2020-11-17] (Microsoft Corporation) XING -> C:\Program Files\WindowsApps\XINGAG.XING_3.145.2.0_x86__xpfg3f7e9an52 [2020-11-17] (New Work SE) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19317.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\GoToMeeting\18962\G2MOutlookAddin64.dll (LogMeIn, Inc. -> LogMeIn, Inc.) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\XXX XXX\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19317.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1242904208-471078349-2963378918-1000_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\XXX XXX\Dropbox [2019-02-04 12:52] ShellIconOverlayIdentifiers: [ AcronisDrive] -> {5D74FD4B-4EFB-4586-8022-8637BBE40970} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll [2020-10-07] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll [2020-10-07] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll [2020-10-07] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64_25_5_32010.dll [2020-10-07] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\psdprotect.dll [2009-09-11] (EGIS TECHNOLOGY INC. -> Egis Technology Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\psdprotect.dll [2009-09-11] (EGIS TECHNOLOGY INC. -> Egis Technology Inc.) ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [EDSshellExt] -> {29FF7AB0-BE34-4992-A30B-53A9D86EE239} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\mwlshellext.dll [2009-09-11] (EGIS TECHNOLOGY INC. -> Egis Technology Inc.) ContextMenuHandlers1: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2012-05-22] (Joel Low - Open Source Developer -> The Eraser Project) ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2013-12-10] (Foxit Corporation -> Foxit Corporation) ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [Datei ist nicht signiert] ContextMenuHandlers1: [PDFArchitect4_ManagerExt] -> {3AECFCB3-8472-48E9-BC7B-5A3CD945C886} => C:\Program Files\PDF Architect 4\creator-context-menu.dll [2016-08-05] (pdfforge GmbH -> pdfforge GmbH) ContextMenuHandlers1: [PDFArchitect6_ManagerExt] -> {6508EEA0-C540-4420-AF21-64937A1536D0} => C:\Program Files\PDF Architect 6\context-menu.dll [2018-10-23] (pdfforge GmbH -> pdfforge GmbH) ContextMenuHandlers1: [PDFArchitect7_ManagerExt] -> {21989F59-B260-4302-90C3-E51740E03639} => C:\Program Files\PDF Architect 7\context-menu.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => C:\Program Files\PDFCreator\PDFCreatorShell.DLL [2019-11-19] (pdfforge GmbH -> pdfforge GmbH) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-05-06] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-05-06] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2012-05-22] (Joel Low - Open Source Developer -> The Eraser Project) ContextMenuHandlers2: [SteganosShellExtension] -> {FAE0A3E0-3010-41BA-9DDC-A631394F047F} => C:\Program Files (x86)\Steganos Safe 14\ShellExtension.dll [2013-07-17] () [Datei ist nicht signiert] ContextMenuHandlers3: [SteganosShellExtension] -> {FAE0A3E0-3010-41BA-9DDC-A631394F047F} => C:\Program Files (x86)\Steganos Safe 14\ShellExtension.dll [2013-07-17] () [Datei ist nicht signiert] ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> ) ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers4: [EDSshellExt] -> {29FF7AB0-BE34-4992-A30B-53A9D86EE239} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\mwlshellext.dll [2009-09-11] (EGIS TECHNOLOGY INC. -> Egis Technology Inc.) ContextMenuHandlers4: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2012-05-22] (Joel Low - Open Source Developer -> The Eraser Project) ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd) ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-05-06] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-05-06] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.0.dll [2019-12-05] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei ContextMenuHandlers6: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2012-05-22] (Joel Low - Open Source Developer -> The Eraser Project) ContextMenuHandlers6: [Fast Explorer] -> {693BE9C0-BEC3-11D2-B4C1-C33BBD3AD64B} => C:\ProgramData\AllDup\FEShlExt.dll [2008-08-20] (Alex Yakovlev) [Datei ist nicht signiert] ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd) ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> ) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-05-06] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-05-06] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Drivers32: [msacm.ac3filter] => C:\WINDOWS\system32\ac3filter64.acm [580096 2009-08-11] () [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.l3fhg] => C:\Windows\SysWOW64\mp3fhg.acm [232448 2006-10-18] (Fraunhofer Institut Integrierte Schaltungen IIS) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [180224 2009-06-07] () [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.YV12] => C:\Windows\SysWOW64\xvidvfw.dll [180224 2009-06-07] () [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [151552 2011-07-16] (fccHandler) [Datei ist nicht signiert] HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [85504 2010-03-03] () [Datei ist nicht signiert] HKLM\...\Drivers32: [msacm.ac3filter] => C:\Windows\SysWOW64\ac3filter.acm [497664 2009-08-11] () [Datei ist nicht signiert] ==================== Verknüpfungen & WMI ======================== ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2013-07-17 12:54 - 2013-07-17 12:54 - 000220672 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Steganos Safe 14\ShellExtension.dll 2015-12-06 15:30 - 2008-08-20 19:08 - 001107520 _____ (Alex Yakovlev) [Datei ist nicht signiert] C:\ProgramData\AllDup\FEShlExt.dll 2011-11-20 12:12 - 2006-09-12 21:00 - 000234496 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNMLM83.DLL 2010-08-06 11:15 - 2010-08-06 11:15 - 000071680 _____ (Hewlett-Packard) [Datei ist nicht signiert] c:\windows\system32\hpzinw12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000089600 _____ (Hewlett-Packard) [Datei ist nicht signiert] c:\windows\system32\hpzipm12.dll 2012-06-13 04:21 - 2020-11-17 01:47 - 001186304 _____ (Microsoft Corporation) [Datei ist nicht signiert] C:\WINDOWS\system32\spool\DRIVERS\x64\3\UniDrvUI.dll 2017-01-07 11:16 - 2017-01-07 11:16 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Client\AppVIsvSubsystems32.dll 2017-01-07 11:16 - 2017-01-07 11:16 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Client\C2R32.dll 2020-04-20 14:34 - 2020-04-20 14:34 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Root\Office16\AppVIsvSubsystems32.dll 2020-04-20 14:34 - 2020-04-20 14:34 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Root\Office16\c2r32.dll 2014-08-25 18:18 - 2018-12-04 14:06 - 000120200 _____ (pdfforge GmbH) [Datei ist nicht signiert] C:\WINDOWS\System32\pdfcmon.dll 2018-12-10 09:29 - 2018-12-10 09:29 - 000438272 _____ (The curl library, hxxps://curl.haxx.se/) [Datei ist nicht signiert] C:\Program Files\PDF Architect 7\libcurl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Users\XXX XXX\Documents\Unfallkarte und Kontaktdaten.jpeg:3or4kl4x13tuuug3Byamue2s4b [99] AlternateDataStreams: C:\Users\XXX XXX\Documents\Unfallkarte und Kontaktdaten.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-1242904208-471078349-2963378918-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\S-1-5-21-1242904208-471078349-2963378918-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} BHO: PDF Architect 7 Helper -> {2B035CAB-1F3D-4DE6-A32D-39B9E5F456D0} -> C:\Program Files\PDF Architect 7\creator\plugins\IEAddin\creator-ie-helper.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-09-14] (Microsoft Corporation -> Microsoft Corporation) BHO: PDF Architect 6 Helper -> {9FD094B1-A4BF-415A-82AE-8C2845D0B769} -> C:\Program Files\PDF Architect 6\creator\plugins\IEAddin\creator-ie-helper.dll [2018-10-23] (pdfforge GmbH -> pdfforge GmbH) BHO-x32: PDF Architect 7 Helper -> {2B035CAB-1F3D-4DE6-A32D-39B9E5F456D0} -> C:\Program Files (x86)\PDF Architect 7\creator\plugins\IEAddin\creator-ie-helper.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) BHO-x32: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files (x86)\PDF Architect 4\creator-ie-helper.dll [2016-08-05] (pdfforge GmbH -> pdfforge GmbH) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\ssv.dll [2018-08-12] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2020-06-24] (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: PDF Architect 6 Helper -> {9FD094B1-A4BF-415A-82AE-8C2845D0B769} -> C:\Program Files (x86)\PDF Architect 6\creator\plugins\IEAddin\creator-ie-helper.dll [2018-10-23] (pdfforge GmbH -> pdfforge GmbH) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-08-12] (Oracle America, Inc. -> Oracle Corporation) Toolbar: HKLM - PDF Architect 6 Toolbar - {E8536605-CA24-4DFF-B1BC-316EE27F6DF7} - C:\Program Files\PDF Architect 6\creator\plugins\IEAddin\creator-ie-plugin.dll [2018-10-23] (pdfforge GmbH -> pdfforge GmbH) Toolbar: HKLM - PDF Architect 7 Toolbar - {61E612A7-2382-4570-8D3F-42BC136DDAD7} - C:\Program Files\PDF Architect 7\creator\plugins\IEAddin\creator-ie-plugin.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) Toolbar: HKLM-x32 - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files (x86)\PDF Architect 4\creator-ie-plugin.dll [2016-08-05] (pdfforge GmbH -> pdfforge GmbH) Toolbar: HKLM-x32 - PDF Architect 6 Toolbar - {E8536605-CA24-4DFF-B1BC-316EE27F6DF7} - C:\Program Files (x86)\PDF Architect 6\creator\plugins\IEAddin\creator-ie-plugin.dll [2018-10-23] (pdfforge GmbH -> pdfforge GmbH) Toolbar: HKLM-x32 - PDF Architect 7 Toolbar - {61E612A7-2382-4570-8D3F-42BC136DDAD7} - C:\Program Files (x86)\PDF Architect 7\creator\plugins\IEAddin\creator-ie-plugin.dll [2019-10-07] (pdfforge GmbH -> pdfforge GmbH) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Software Sarl -> Skype Technologies) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\download.microsoft.com -> hxxp://download.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\download.windowsupdate.com -> hxxp://download.windowsupdate.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\download.windowsupdate.com -> hxxps://download.windowsupdate.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\microsoft.com -> hxxp://ntservicepack.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ntservicepack.microsoft.com -> hxxp://ntservicepack.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\sklavenzentrale.com -> hxxps://www.sklavenzentrale.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\update.microsoft.com -> hxxp://update.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\update.microsoft.com -> hxxps://update.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\windows.com -> hxxp://wustat.windows.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\windowsupdate.com -> hxxp://download.windowsupdate.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\windowsupdate.com -> hxxps://download.windowsupdate.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\windowsupdate.microsoft.com -> hxxp://windowsupdate.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ws.microsoft.com -> hxxp://ws.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\ws.microsoft.com -> hxxps://ws.microsoft.com IE trusted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\wustat.windows.com -> hxxp://wustat.windows.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0411dd.com -> 0411dd.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0511zfhl.com -> 0511zfhl.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0632qyw.com -> 0632qyw.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\1-2005-search.com -> www.1-2005-search.com Da befinden sich 12656 mehr Seiten. ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2015-11-28 15:42 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts 127.0.0.1 localhost ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0;C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86;C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\QuickTime\QTSystem;C:\Program Files (x86)\Skype\Phone;C:\Program Files (x86)\QuickTime\QTSystem\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile64\;C:\Program Files (x86)\Common Files\Acronis\SnapAPI\;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Common Files\Acronis\FileProtector\;C:\Program Files (x86)\Common Files\Acronis\FileProtector64\ HKU\S-1-5-21-1242904208-471078349-2963378918-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\XXX XXX\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\4473591-doctor-who-wallpapers.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Keine Datei) ist deaktiviert. Network Binding: ============= LAN-Verbindung: HTC NDIS Protocol Driver -> MS_NDISPROT (enabled) LAN-Verbindung: Ekahau User Protocol Driver for NDIS 6 -> EKA_NDISPROT (enabled) Drahtlosnetzwerkverbindung: HTC NDIS Protocol Driver -> MS_NDISPROT (enabled) Drahtlosnetzwerkverbindung: Ekahau User Protocol Driver for NDIS 6 -> EKA_NDISPROT (enabled) Bluetooth-Netzwerkverbindung: HTC NDIS Protocol Driver -> MS_NDISPROT (enabled) Bluetooth-Netzwerkverbindung: Ekahau User Protocol Driver for NDIS 6 -> EKA_NDISPROT (enabled) ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) MSCONFIG\Services: aakore => 2 MSCONFIG\Services: AAV UpdateService => 2 MSCONFIG\Services: AcronisActiveProtectionService => 2 MSCONFIG\Services: AcrSch2Svc => 2 MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: afcdpsrv => 2 MSCONFIG\Services: AgereModemAudio => 2 MSCONFIG\Services: AMD External Events Utility => 2 MSCONFIG\Services: Apple Mobile Device => 2 MSCONFIG\Services: Apple Mobile Device Service => 2 MSCONFIG\Services: Avira.ServiceHost => 2 MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: BotkindSyncService => 2 MSCONFIG\Services: dbupdate => 2 MSCONFIG\Services: dbupdatem => 3 MSCONFIG\Services: DbxSvc => 2 MSCONFIG\Services: DigitalWave.Update.Service => 2 MSCONFIG\Services: ePowerSvc => 2 MSCONFIG\Services: Everything => 2 MSCONFIG\Services: FoxitCloudUpdateService => 2 MSCONFIG\Services: GoogleChromeElevationService => 3 MSCONFIG\Services: Greg_Service => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: HPSupportSolutionsFrameworkService => 2 MSCONFIG\Services: IAANTMON => 2 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: LMS => 2 MSCONFIG\Services: mmsminisrv => 2 MSCONFIG\Services: mobile_backup_server => 3 MSCONFIG\Services: mobile_backup_status_server => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: NoIPDUCService4 => 2 MSCONFIG\Services: NTI IScheduleSvc => 2 MSCONFIG\Services: NTIBackupSvc => 3 MSCONFIG\Services: NTISchedulerSvc => 2 MSCONFIG\Services: OODefragAgent => 3 MSCONFIG\Services: PassThru Service => 2 MSCONFIG\Services: PDF Architect 4 => 3 MSCONFIG\Services: PDF Architect 4 CrashHandler => 3 MSCONFIG\Services: PDF Architect 4 Creator => 2 MSCONFIG\Services: PDF Architect 6 => 3 MSCONFIG\Services: PDF Architect 6 Creator => 2 MSCONFIG\Services: PDF Architect 6 Update Service => 2 MSCONFIG\Services: PDF24 => 2 MSCONFIG\Services: RS_Service => 2 MSCONFIG\Services: SandraAgentSrv => 3 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\Services: syncagentsrv => 2 MSCONFIG\Services: SynTPEnhService => 2 MSCONFIG\Services: TeamViewer => 2 MSCONFIG\Services: TeamViewer9 => 2 MSCONFIG\Services: Tib Mounter Service => 3 MSCONFIG\Services: TomTomHOMEService => 2 MSCONFIG\Services: TurboBoost => 3 MSCONFIG\Services: UNS => 2 MSCONFIG\Services: Updater Service => 2 MSCONFIG\startupfolder: C:^Users^XXX XXX^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^EvernoteClipper.lnk => C:\Windows\pss\EvernoteClipper.lnk.Startup MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe" MSCONFIG\startupreg: adm_tray.exe => C:\Program Files (x86)\Acronis\DriveMonitor\adm_tray.exe MSCONFIG\startupreg: APSDaemon => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe MSCONFIG\startupreg: Eraser => "C:\Program Files\Eraser\Eraser.exe" --atRestart MSCONFIG\startupreg: HP Photosmart 5520 series (NET) => "C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN45U712HT0602:NW" -scfn "HP Photosmart 5520 series (NET)" -AutoStart 1 MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: SandboxieControl => "C:\Program Files\Sandboxie\SbieCtrl.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "RtHDVCpl" HKLM\...\StartupApproved\Run: => "Apoint" HKLM\...\StartupApproved\Run: => "PLFSetI" HKLM\...\StartupApproved\Run: => "Acer ePower Management" HKLM\...\StartupApproved\Run: => "IAAnotif" HKLM\...\StartupApproved\Run: => "mwlDaemon" HKLM\...\StartupApproved\Run: => "OODefragTray" HKLM\...\StartupApproved\Run: => "AmIcoSinglun64" HKLM\...\StartupApproved\Run: => "SynTPEnh" HKLM\...\StartupApproved\Run: => "Everything" HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service" HKLM\...\StartupApproved\Run32: => "AcronisTibMounterMonitor" HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe" HKLM\...\StartupApproved\Run32: => "StartCCC" HKLM\...\StartupApproved\Run32: => "LManager" HKLM\...\StartupApproved\Run32: => "SimpleScreenshot" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Dropbox" HKLM\...\StartupApproved\Run32: => "PDFPrint" HKLM\...\StartupApproved\Run32: => "Acronis Scheduler2 Service" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "HP Photosmart 5520 series (NET)" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "MyDriveConnect.exe" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "HP OfficeJet 3830 series (NET)" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "WinPatrol" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "Convert2MP3 - YouTube Downloader" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "HP OfficeJet 3830 series (NET) #2" HKU\S-1-5-21-1242904208-471078349-2963378918-1000\...\StartupApproved\Run: => "vidnotifier.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [TCP Query User{F44CA375-BE23-4596-8ADD-44232CDA2E58}C:\program files\hp\hp officejet 3830 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp officejet 3830 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> HP Inc.) FirewallRules: [UDP Query User{34BF9858-0070-4A7A-AB2B-60B6FB64C59D}C:\program files\hp\hp officejet 3830 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp officejet 3830 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> HP Inc.) FirewallRules: [TCP Query User{82AF103C-188F-4C29-968B-C9A3249FDB73}C:\program files\hp\hp photosmart 5520 series\bin\hpnetworkcommunicator.exe] => (Allow) C:\program files\hp\hp photosmart 5520 series\bin\hpnetworkcommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [UDP Query User{C0DF81B1-E33A-42CB-AB4D-A701FA8587C0}C:\program files\hp\hp photosmart 5520 series\bin\hpnetworkcommunicator.exe] => (Allow) C:\program files\hp\hp photosmart 5520 series\bin\hpnetworkcommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.) ==================== Wiederherstellungspunkte ========================= 27-11-2020 13:31:44 Geplanter Prüfpunkt 28-11-2020 16:47:58 SteuerSparErklärung 2021 wurde installiert. ==================== Fehlerhafte Geräte im Gerätemanager ============ ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (11/29/2020 06:36:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0xc60 Startzeit der fehlerhaften Anwendung: 0x01d6c6761c1db62f Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\twinapi.appcore.dll Berichtskennung: 92fba80e-7966-4fd9-8a99-e97eec0bd02c Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.MicrosoftOfficeHub Error: (11/29/2020 06:19:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x22fc Startzeit der fehlerhaften Anwendung: 0x01d6c673d0ac5a73 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\twinapi.appcore.dll Berichtskennung: 90daa583-64f2-4256-92bc-536d037a6d45 Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.MicrosoftOfficeHub Error: (11/29/2020 05:52:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x1694 Startzeit der fehlerhaften Anwendung: 0x01d6c66fe77f82fe Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\twinapi.appcore.dll Berichtskennung: 662f32c0-b337-4e0b-90d2-a38d7c0f6407 Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.MicrosoftOfficeHub Error: (11/29/2020 05:22:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x2b7c Startzeit der fehlerhaften Anwendung: 0x01d6c66bc558d885 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\twinapi.appcore.dll Berichtskennung: db042b29-17e7-480b-b052-eee2e70ec234 Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.MicrosoftOfficeHub Error: (11/29/2020 05:06:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x1124 Startzeit der fehlerhaften Anwendung: 0x01d6c66987d8474d Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\twinapi.appcore.dll Berichtskennung: 83d1dc19-7ebc-4c8e-b988-1574ffbe448b Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.MicrosoftOfficeHub Error: (11/29/2020 03:06:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x2a88 Startzeit der fehlerhaften Anwendung: 0x01d6c658c45ea710 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\twinapi.appcore.dll Berichtskennung: 05ba8454-aa25-425c-80a8-49fd8a196412 Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.MicrosoftOfficeHub Error: (11/29/2020 02:53:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0xbb0 Startzeit der fehlerhaften Anwendung: 0x01d6c656e88fb39d Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\twinapi.appcore.dll Berichtskennung: 61328fd9-e749-410b-8e66-621cb4080729 Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.MicrosoftOfficeHub Error: (11/29/2020 02:36:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.18362.1, Zeitstempel: 0x533f8404 Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.18362.959, Zeitstempel: 0xeeb9f7a6 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000d65d8 ID des fehlerhaften Prozesses: 0x1274 Startzeit der fehlerhaften Anwendung: 0x01d6c6547123df53 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\twinapi.appcore.dll Berichtskennung: 837358b3-2a28-4fd7-9a6a-5a25511eef04 Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftOfficeHub_18.2001.1241.0_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Microsoft.MicrosoftOfficeHub Systemfehler: ============= Error: (11/29/2020 07:11:23 PM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: Ein DCOM-Server konnte nicht gestartet werden: {71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}. Fehler: "2147942593" Aufgetreten beim Start dieses Befehls: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding Error: (11/29/2020 07:11:23 PM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: Ein DCOM-Server konnte nicht gestartet werden: {71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}. Fehler: "2147942593" Aufgetreten beim Start dieses Befehls: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding Error: (11/29/2020 06:38:26 PM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: Ein DCOM-Server konnte nicht gestartet werden: {94269C4E-071A-4116-90E6-52E557067E4E}. Fehler: "2147942593" Aufgetreten beim Start dieses Befehls: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding Error: (11/29/2020 02:50:37 PM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: Ein DCOM-Server konnte nicht gestartet werden: {94269C4E-071A-4116-90E6-52E557067E4E}. Fehler: "2147942593" Aufgetreten beim Start dieses Befehls: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding Error: (11/29/2020 02:24:06 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) Description: Der Server "Windows.Internal.StateRepository.ApplicationExtension" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (11/29/2020 02:22:12 PM) (Source: SNMP) (EventID: 1500) (User: ) Description: Beim Zugreifen auf den Registrierungsschlüssel SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration ist ein Fehler aufgetreten. Error: (11/29/2020 11:09:46 AM) (Source: DCOM) (EventID: 10000) (User: Arbeitscomputer) Description: Ein DCOM-Server konnte nicht gestartet werden: {94269C4E-071A-4116-90E6-52E557067E4E}. Fehler: "2147942593" Aufgetreten beim Start dieses Befehls: C:\Users\XXX XXX\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding Error: (11/29/2020 10:54:32 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Übermittlungsoptimierung" wurde nicht richtig gestartet. Windows Defender: =================================== Date: 2020-11-28 14:24:50.475 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {9407473A-D789-4CA9-B4A6-D141D3F011F5} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\Netzwerkdienst Date: 2020-11-25 18:09:52.893 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {B08727A8-AA17-40B7-8CF8-1419801C1D7C} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2020-11-24 17:06:14.437 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {DE17C629-C462-4533-99D5-B4AB1A89B479} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2020-11-23 13:34:49.372 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {AD8E7745-A291-4A80-97E4-7F658181C919} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2020-11-21 10:18:00.795 Description: Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {864840FB-EFE7-4366-98AF-1903352F98DA} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2020-11-27 03:38:34.668 Description: Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.327.1598.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.17600.5 Fehlercode: 0x80240438 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2020-11-26 22:24:38.865 Description: Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.327.1598.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.17600.5 Fehlercode: 0x80240438 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2020-11-26 15:54:12.063 Description: Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.327.1543.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.17600.5 Fehlercode: 0x8024402c Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2020-11-26 10:38:30.155 Description: Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.327.1543.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.17600.5 Fehlercode: 0x80240438 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2020-11-20 22:37:25.385 Description: Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.327.1257.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.17600.5 Fehlercode: 0x80070102 Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. CodeIntegrity: =================================== Date: 2020-11-15 17:53:46.063 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\appid.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:53:46.060 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\appid.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:53:46.058 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\appid.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:53:46.055 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\appid.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.944 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiostorageadapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.943 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiostorageadapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.940 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiostorageadapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-11-15 17:50:02.921 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WinBioPlugIns\winbiostorageadapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Speicherinformationen =========================== BIOS: Phoenix Technologies LTD V1.15 12/25/2009 Hauptplatine: Acer Aspire 7740 Prozessor: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz Prozentuale Nutzung des RAM: 77% Installierter physikalischer RAM: 3956.5 MB Verfügbarer physikalischer RAM: 873.58 MB Summe virtueller Speicher: 7924.5 MB Verfügbarer virtueller Speicher: 3425.51 MB ==================== Laufwerke ================================ Drive c: (ACER) (Fixed) (Total:290.05 GB) (Free:54.7 GB) NTFS Drive d: (ACER) (Fixed) (Total:625.83 GB) (Free:606.78 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] \\?\Volume{b305a80c-0e37-11e1-862a-806e6f6e6963}\ (PQSERVICE) (Fixed) (Total:15.62 GB) (Free:3.21 GB) NTFS ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 4626722B) Partition 1: (Not Active) - (Size=15.6 GB) - (Type=27) Partition 2: (Not Active) - (Size=290.1 GB) - (Type=07 NTFS) Partition 3: (Active) - (Size=625.8 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ======================= |
29.11.2020, 20:29 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows Update lässt sich nicht installieren [gelöst] Dass das Upgrade nicht funktioniert ist kein wirkliches Wunder, denn dein Rechner ist zugemüllt mit etlichen Programmen. Sichere alle wichtigen Daten und dann ne Neuinstallation machen. Und künftig den Rechner nicht planlos zumüllen. Es darf nur das installiert werden, was auch wirklich benötigt wird. Alte und nicht benötigte Software muss man auch mal deinstallieren.
__________________ Logfiles bitte immer in CODE-Tags posten |
29.11.2020, 22:18 | #15 |
| Windows Update lässt sich nicht installieren [gelöst] Das ist ja großartig.. toll... Danke Dir trotzdem |
Themen zu Windows Update lässt sich nicht installieren |
andere, anschauen, automatisch, bereits, beschreibung, daraus, doppel, doppelt, fehler, fehlermeldung, festplatte, installieren, installiert, liebe, liest, msconfig, platte, programm, prüfen, reparieren, reset, tan, update, windows, windows update |