|
Mülltonne: Windows 10: Audacity TrojanerWindows 7 Beiträge, die gegen unsere Regeln verstoßen haben, solche, die die Welt nicht braucht oder sonstiger Müll landet hier in der Mülltonne... |
24.01.2021, 18:33 | #1 |
| Windows 10: Audacity Trojaner Hallo, ich habe mir vor paar Wochen Audacity von der inoffiziellen Homepage gedownloadet, ich wusste das mit dem Trojaner nicht. JEtzht ist eine Verknüpfung updatepush.com auf meinem Destop erschienen. Ich habe mit FSRT schon Logfiles gemacht, kann diese aber nicht auslesen denn ich kenn mich nicht aus: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 24-01-2021 01 durchgeführt von janni (Administrator) auf LAPTOP-JANNIS (Acer Aspire E5-772G) (24-01-2021 18:02:52) Gestartet von C:\Users\janni\Downloads Geladene Profile: janni Platform: Windows 10 Home Version 20H2 19042.746 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: FF Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) () [Datei ist nicht signiert] C:\Program Files (x86)\Gaming Keyboard\Monitor.exe () [Datei ist nicht signiert] C:\Program Files (x86)\Gaming Keyboard\OSD.exe (0) [Datei ist nicht signiert] C:\Program Files (x86)\SKILLER MECH SGK3\SKILLER MECH SGK3.exe (Acer Incorporated -> ) C:\Program Files (x86)\Acer\Care Center\ACCStd.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerButton_NB.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (Amazon Services LLC -> ) C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe (Apple Computer, Inc.) [Datei ist nicht signiert] C:\Program Files (x86)\QuickTime\qttask.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Discord Inc. -> Discord Inc.) C:\Users\janni\AppData\Local\Discord\app-0.0.309\Discord.exe <2> (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxext.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.1\avp.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.1\avpui.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 5.1\ksde.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 5.1\ksdeui.exe (Lavasoft Limited -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.766\SSScheduler.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.420.11102.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.420.11102.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mshta.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <9> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvaci.inf_amd64_9f8adc8ebf9ca45d\Display.NvContainer\NVDisplay.Container.exe <2> (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (StagWare) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe (SweetLabs Inc. -> SweetLabs, Inc) C:\Users\janni\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe (WildTangent Inc -> ) C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe (Wondershare software CO., LIMITED -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.2.222\WsAppService.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-14] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [91488 2017-09-28] (Acer Incorporated -> ) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\qttask.exe [98304 2016-05-19] (Apple Computer, Inc.) [Datei ist nicht signiert] HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [710776 2020-06-18] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Launch 0 FwCustom] => C:\Program Files (x86)\SKILLER MECH SGK3\SKILLER MECH SGK3.exe [3323904 2017-05-19] (0) [Datei ist nicht signiert] HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschränkung <==== ACHTUNG HKU\S-1-5-21-1892241721-2923544030-2117440216-1001\...\Run: [Discord] => C:\Users\janni\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-1892241721-2923544030-2117440216-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssText3d.scr [224768 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\us003PC: C:\Windows\System32\spool\prtprocs\x64\us003pc.dll [43520 2015-03-12] (Windows (R) Codename Longhorn DDK provider) [Datei ist nicht signiert] HKLM\...\Print\Monitors\us003 Langmon: C:\Windows\system32\us003lm.dll [22528 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\us008 Langmon: C:\Windows\system32\us008lm.dll [31256 2016-04-30] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Policies\Microsoft\Edge: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {2376E3F3-0875-40E3-8E1A-D511F44F4BFC} - System32\Tasks\CareCenter\RTHDVCPL_Reg_HKLMRun => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-14] (Realtek Semiconductor Corp -> Realtek Semiconductor) Task: {246DB7B1-1A19-4A50-9D23-7E8E496CEC23} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2947D19C-A5F9-4803-8F0B-574BDF4CEF29} - System32\Tasks\CareCenter\McAfee Security Scan Plus.lnk_FolderCommonAppdata => C:\Program Files\McAfee Security Scan\3.11.766\SSScheduler.exe [536912 2018-07-11] (McAfee, Inc. -> McAfee, Inc.) Task: {2968B845-17E4-4C53-87F1-0B95AA29673C} - System32\Tasks\App Explorer => C:\Users\janni\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [7968424 2020-12-03] (SweetLabs Inc. -> SweetLabs, Inc) <==== ACHTUNG Task: {3976D7DE-2FFF-476A-A44A-80BA301B030A} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {4A4A9C60-12C2-4913-ACF6-E97369C2C295} - System32\Tasks\Opera scheduled Autoupdate 1609699394 => C:\Users\janni\AppData\Local\Programs\Opera\launcher.exe Task: {5BEE168C-61D0-4B91-A00C-A8442DB8B4BC} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [384256 2015-05-14] (Acer Incorporated -> Acer Incorporated) Task: {6506A078-637B-4F36-81A9-31D4701F2EA2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {6BF565A1-807A-49A6-87F5-7202C9AB817A} - System32\Tasks\Power Button => C:\Program Files\Acer\Acer Power Management\ePowerButton_NB.exe [2770688 2015-05-14] (Acer Incorporated -> Acer Incorporated) Task: {6F744612-5EB3-44C8-AC2D-FE46EBE926CD} - System32\Tasks\CareCenter\NvBackend_Reg_HKLMRun => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe Task: {748C56D9-D949-423A-BAD8-FA08023868C5} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472928 2015-07-10] (Acer Incorporated -> Acer Incorporated) Task: {7C6B1A22-200B-458C-985A-C2251E2FAFB3} - System32\Tasks\CareCenter\QuickTime Task_Reg_HKLMWow6432Run => C:\Program Files (x86)\QuickTime\qttask.exe [98304 2016-05-19] (Apple Computer, Inc.) [Datei ist nicht signiert] <==== ACHTUNG Task: {8372E4A0-D82D-4DE6-8AC9-F774C429BDC9} - System32\Tasks\CareCenter\Gaming Keyboard_Reg_HKLMWow6432Run => C:\Program Files (x86)\Gaming Keyboard\Monitor.exe [2345984 2019-03-19] () [Datei ist nicht signiert] Task: {8A5F96A5-9940-467C-8107-610FFE7A85E1} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {8E348B6E-A516-4F82-87F9-89C6128E18A4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [693216 2021-01-07] (Mozilla Corporation -> Mozilla Foundation) Task: {8F18A49A-B036-46F9-B2FB-AAFA509039D8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {91F9D2B6-9405-4B55-8297-BF24C7AD5C78} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [40288 2015-07-10] (Acer Incorporated -> ) Task: {92C0EE1B-4BA2-4D64-B7EF-016DACBB9181} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {95B4513F-0824-41A2-98A7-AD1699B4BF2E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {963D0548-1350-439C-91DB-3B3E394E6CEE} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2920752 2017-05-24] (Acer Incorporated -> ) Task: {995FCF98-F070-4B3F-9C71-D835D6A98C5A} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Keine Datei <==== ACHTUNG Task: {9B2887ED-216F-4D98-BDDA-0951BF3998D2} - System32\Tasks\FUBTrackingByPLD => C:\OEM\Preload\FubTracking\FubTracking.exe [30976 2015-05-14] (Acer Incorporated -> ) Task: {A05249EA-E1F9-47EE-8D5F-C0F927CEEC96} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A812CE0E-ACB7-4584-B6C5-CECF0F0B0148} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {A8C49777-F2DB-414E-9610-204843F144A5} - System32\Tasks\CareCenter\Avast SecureLine VPN.lnk_FolderCommonAppdata => C:\Program Files\AVAST Software\SecureLine\Vpn.exe [4278152 2019-11-16] (AVAST Software s.r.o. -> AVAST Software) Task: {AAEAB011-D967-49EC-8B73-C615E9D81A2A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {ADCD525A-9B81-4CB8-BD5A-787236295344} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {AE11AFFE-EECD-4EEE-9FDC-3676D2604433} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301176 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B2557D7E-125D-47BC-9A2F-FDD04D10977E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B9A9F4B6-F0AD-46D1-8D98-48E16D6875EC} - System32\Tasks\Avast SecureLine VPN Update => c:\program files\avast software\secureline\vpnupdate.exe [1390472 2019-11-16] (AVAST Software s.r.o. -> AVAST Software) Task: {B9C26C00-BA13-46B7-8764-3856A589BBA8} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {BB0FD6C8-2C33-46A9-9EF6-6259114F5EFC} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BFD7E0B9-415C-4CF7-90D8-DEED8A310407} - System32\Tasks\CareCenter\Wondershare Helper Compact.exe_Reg_HKLMWow6432Run => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare) Task: {C41B4580-DBC2-4D9F-BB5E-2BCAE7263191} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [379232 2015-07-09] (Acer Incorporated -> Acer Incorporated) Task: {CB50EBA8-1F0A-417A-8F7B-A8EBFE5659E6} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {CD6F702C-470B-4241-8589-E1071B89BA8F} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4696880 2018-05-28] (Acer Incorporated -> ) Task: {D1793C01-BF9D-4FC8-BC4F-C71C0A228854} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E277AC7E-EB94-4E76-AA51-647BE951EE8B} - System32\Tasks\abDocsDllLoader => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2017-09-28] (Acer Incorporated -> ) Task: {EF5C0382-DC6B-46FA-A058-18A6E19074E3} - System32\Tasks\CareCenter\EpicGamesLauncher_Reg_HKCURun_S-1-5-21-1892241721-2923544030-2117440216-1001 => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32873544 2021-01-15] (Epic Games Inc. -> Epic Games, Inc.) Task: {F0D396E7-1537-4FC9-82C3-3D227F1B066E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F7A7F21C-F6DB-4453-B569-DA62F8DC9540} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6de15a52260f6 => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {F7A89572-1BE5-494C-B977-F98DA5BE0745} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65824 2017-09-26] (Acer Incorporated -> Acer Incorporated) Task: {FE1849AA-2817-44C7-B2AA-643E9604E625} - System32\Tasks\Opera scheduled assistant Autoupdate 1609699395 => C:\Users\janni\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\janni\AppData\Local\Programs\Opera\assistant" $(Arg0) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: 0.0.0.1 mssplus.mcafee.com Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{bdda7bbc-db30-49e0-8517-124b7b45d374}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{e267de44-8564-4d63-909f-8fe0b862b731}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{fe8d0aa0-f2da-436f-82ee-4570ca493229}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\janni\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-24] Edge Extension: ( ) - C:\Users\janni\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lhidnnjcipmpdijajhjbppghaipdkhci [2021-01-22] Edge HKU\S-1-5-21-1892241721-2923544030-2117440216-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] FireFox: ======== FF DefaultProfile: cldggxrg.default-1584732106419 FF ProfilePath: C:\Users\janni\AppData\Roaming\Mozilla\Firefox\Profiles\cldggxrg.default-1584732106419 [2021-01-24] FF user.js: detected! => C:\Users\janni\AppData\Roaming\Mozilla\Firefox\Profiles\cldggxrg.default-1584732106419\user.js [2021-01-21] FF Notifications: Mozilla\Firefox\Profiles\cldggxrg.default-1584732106419 -> hxxps://www2a.rudyvalencia.pro; hxxps://aternos.org FF Extension: (AdBlocker Ultimate) - C:\Users\janni\AppData\Roaming\Mozilla\Firefox\Profiles\cldggxrg.default-1584732106419\Extensions\adblockultimate@adblockultimate.net.xpi [2020-12-16] FF Extension: (Pixel Art City) - C:\Users\janni\AppData\Roaming\Mozilla\Firefox\Profiles\cldggxrg.default-1584732106419\Extensions\{fd9490e3-7529-47cf-85ff-618a7beb4cf0}.xpi [2020-06-19] FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.1\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.1\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_28_0_0_137.dll [2018-02-02] (Adobe Systems Incorporated -> ) FF Plugin: @java.com/DTPlugin,version=11.261.2 -> C:\Program Files\Java\jre1.8.0_261\bin\dtplugin\npDeployJava1.dll [2020-08-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.261.2 -> C:\Program Files\Java\jre1.8.0_261\bin\plugin2\npjp2.dll [2020-08-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_137.dll [2018-02-02] (Adobe Systems Incorporated -> ) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Keine Datei] FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2021-01-24] <==== ACHTUNG (Zeigt auf eine *.cfg Datei) FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2021-01-24] <==== ACHTUNG Chrome: ======= CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/ahkjpbeeocnddjkakilopmfdlnjdpcdm Opera: ======= OPR Profile: C:\Users\janni\AppData\Roaming\Opera Software\Opera Stable [2021-01-03] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\janni\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-01-03] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 Amazon Assistant Service; C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe [105136 2018-02-22] (Amazon Services LLC -> ) R2 AVP21.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.1\avp.exe [381968 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8736880 2020-10-21] (BattlEye Innovations e.K. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-11-18] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573568 2015-05-14] (Acer Incorporated -> Acer Incorporated) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2020-01-15] (FUTUREMARK INC -> Futuremark) S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-12-12] (NVIDIA Corporation -> NVIDIA) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert] S3 klvssbridge64_21.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.1\x64\vssbridge64.exe [436168 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) S3 kpm_launch_service; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.2\kpm_service.exe [351424 2020-09-23] (Kaspersky Lab JSC -> AO Kaspersky Lab) R2 KSDE5.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 5.1\ksde.exe [644312 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-01-24] (Malwarebytes Inc -> Malwarebytes) R2 NbfcService; C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe [8704 2019-04-14] (StagWare) [Datei ist nicht signiert] [Datei wird verwendet] R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [398176 2015-07-09] (Acer Incorporated -> Acer Incorporated) R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [450400 2015-07-09] (Acer Incorporated -> Acer Incorporated) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1352832 2020-11-06] (Rockstar Games, Inc. -> Rockstar Games) S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [247040 2015-05-27] (Acer Incorporated -> acer) R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [25888 2019-03-28] (Lavasoft Limited -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1640240 2020-10-05] (WildTangent Inc -> ) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.2.222\WsAppService.exe [474768 2017-03-01] (Wondershare software CO., LIMITED -> Wondershare) S4 edgeupdate; "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /svc [X] S4 edgeupdatem; "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /medsvc [X] R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_9f8adc8ebf9ca45d\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_9f8adc8ebf9ca45d\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 BadlionAnticheat; C:\WINDOWS\system32\drivers\BadlionAnticheat.sys [2500640 2021-01-11] (Microsoft Windows Hardware Compatibility Publisher -> <Turtle Entertainment>) R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [248504 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [159600 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2021-01-24] (Malwarebytes Corporation -> Malwarebytes) R3 iVCam; C:\WINDOWS\system32\DRIVERS\iVCam.sys [1090536 2020-11-02] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft) R1 klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [104712 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [205048 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [121088 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [37496 2020-06-29] (Microsoft Windows Early Launch Anti-Malware Publisher -> AO Kaspersky Lab) R1 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [509184 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klgse; C:\WINDOWS\System32\DRIVERS\klgse.sys [659768 2020-12-25] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klhk; C:\WINDOWS\system32\DRIVERS\klhk.sys [1341232 2020-12-25] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klids; C:\ProgramData\Kaspersky Lab\AVP21.1\Bases\klids.sys [245784 2021-01-24] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [984320 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klim6; C:\WINDOWS\system32\DRIVERS\klim6.sys [87808 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [106768 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [106752 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [79104 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klpnpflt; C:\WINDOWS\system32\DRIVERS\klpnpflt.sys [90368 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [55592 2020-06-29] (AnchorFree Inc -> The OpenVPN Project) R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [257208 2021-01-24] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [99152 2021-01-24] (Kaspersky Lab -> AO Kaspersky Lab) R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [310232 2021-01-24] (Kaspersky Lab JSC -> AO Kaspersky Lab) R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [116888 2021-01-24] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [207352 2021-01-24] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [133888 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [242944 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [279824 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [31000 2018-05-15] (Acer Incorporated -> Acer Incorporated) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220160 2021-01-24] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-01-24] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [197792 2021-01-24] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77496 2021-01-24] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-01-24] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [141472 2021-01-24] (Malwarebytes Inc -> Malwarebytes) R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [25368 2018-05-15] (Acer Incorporated -> Acer Incorporated) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-12-16] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429296 2020-12-16] (Microsoft Windows -> Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-16] (Microsoft Windows -> Microsoft Corporation) R1 WinRing0_1_2_0; C:\Program Files (x86)\NoteBook FanControl\WinRing0x64.sys [14544 2021-01-19] (Noriyuki MIYAZAKI -> OpenLibSys.org) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-01-24 18:02 - 2021-01-24 18:06 - 000035173 _____ C:\Users\janni\Downloads\FRST.txt 2021-01-24 18:02 - 2021-01-24 18:05 - 000000000 ____D C:\FRST 2021-01-24 18:00 - 2021-01-24 18:01 - 002297344 _____ (Farbar) C:\Users\janni\Downloads\FRST64(1).exe 2021-01-24 15:41 - 2021-01-24 15:41 - 000197792 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2021-01-24 15:41 - 2021-01-24 15:41 - 000141472 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2021-01-24 15:41 - 2021-01-24 15:41 - 000077496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2021-01-24 12:44 - 2021-01-24 12:44 - 000310232 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys 2021-01-24 12:38 - 2021-01-24 12:38 - 002297344 _____ (Farbar) C:\Users\janni\Downloads\FRST64.exe 2021-01-24 12:35 - 2021-01-24 12:36 - 000000000 ____D C:\AdwCleaner 2021-01-24 12:35 - 2021-01-24 12:35 - 000001231 _____ C:\Users\Public\Desktop\Kaspersky Password Manager.lnk 2021-01-24 12:35 - 2021-01-24 12:35 - 000001231 _____ C:\ProgramData\Desktop\Kaspersky Password Manager.lnk 2021-01-24 12:35 - 2021-01-24 12:35 - 000000000 ____D C:\Users\Default\AppData\Local\Kaspersky Lab 2021-01-24 12:35 - 2021-01-24 12:35 - 000000000 ____D C:\Users\Default User\AppData\Local\Kaspersky Lab 2021-01-24 12:35 - 2021-01-24 12:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Password Manager 2021-01-24 12:34 - 2021-01-24 12:35 - 000000000 ____D C:\Program Files\Common Files\AV 2021-01-24 12:34 - 2021-01-24 12:34 - 000257208 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys 2021-01-24 12:34 - 2021-01-24 12:34 - 000207352 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys 2021-01-24 12:34 - 2021-01-24 12:34 - 000116888 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys 2021-01-24 12:34 - 2021-01-24 12:34 - 000099152 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys 2021-01-24 12:34 - 2021-01-24 12:34 - 000002201 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk 2021-01-24 12:34 - 2021-01-24 12:34 - 000002201 _____ C:\ProgramData\Desktop\Kaspersky Internet Security.lnk 2021-01-24 12:34 - 2021-01-24 12:34 - 000001283 _____ C:\Users\Public\Desktop\Kaspersky Secure Connection.lnk 2021-01-24 12:34 - 2021-01-24 12:34 - 000001283 _____ C:\ProgramData\Desktop\Kaspersky Secure Connection.lnk 2021-01-24 12:34 - 2021-01-24 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection 2021-01-24 12:34 - 2021-01-24 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security 2021-01-24 12:33 - 2021-01-24 15:37 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2021-01-24 12:33 - 2021-01-24 12:35 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab 2021-01-24 12:33 - 2020-06-29 20:14 - 000984320 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klif.sys 2021-01-24 12:33 - 2020-06-29 20:14 - 000509184 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klflt.sys 2021-01-24 12:33 - 2020-06-29 20:14 - 000110176 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\klfphc.dll 2021-01-24 12:07 - 2021-01-24 12:07 - 000002037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-01-24 12:07 - 2021-01-24 12:07 - 000002025 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-01-24 12:07 - 2021-01-24 12:07 - 000002025 _____ C:\ProgramData\Desktop\Malwarebytes.lnk 2021-01-24 12:07 - 2021-01-24 12:07 - 000000000 ____D C:\Users\janni\AppData\Local\mbam 2021-01-24 12:06 - 2021-01-24 15:34 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-01-24 12:06 - 2021-01-24 12:06 - 000220160 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-01-24 12:06 - 2021-01-24 12:06 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2021-01-24 12:06 - 2021-01-24 12:06 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2021-01-24 12:06 - 2021-01-24 12:06 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-01-24 12:06 - 2021-01-24 12:06 - 000000000 ____D C:\Program Files\Malwarebytes 2021-01-24 10:12 - 2021-01-24 10:12 - 000001509 _____ C:\Users\janni\Desktop\HP Smart.lnk 2021-01-23 21:16 - 2021-01-23 21:16 - 000012788 _____ C:\Users\janni\AppData\Local\recently-used.xbel 2021-01-23 20:44 - 2021-01-23 20:44 - 000051570 _____ C:\Users\janni\Downloads\hoobie.zip 2021-01-23 19:17 - 2021-01-23 19:17 - 000103124 _____ C:\Users\janni\Downloads\04 Busy.ani 2021-01-23 19:17 - 2021-01-23 19:17 - 000054022 _____ C:\Users\janni\Downloads\Never-Lost Rainbow 01a (select).ani 2021-01-23 19:17 - 2021-01-23 19:17 - 000043084 _____ C:\Users\janni\Downloads\Diamond Sword.ani 2021-01-23 19:17 - 2021-01-23 19:17 - 000004362 _____ C:\Users\janni\Downloads\15 Link Select(1).ani 2021-01-23 19:16 - 2021-01-23 19:17 - 000214988 _____ C:\Users\janni\Downloads\Minecrfat Sword color.ani 2021-01-23 19:16 - 2021-01-23 19:16 - 000128942 _____ C:\Users\janni\Downloads\Normal Select.ani 2021-01-23 19:16 - 2021-01-23 19:16 - 000077360 _____ C:\Users\janni\Downloads\03 Working In Background.ani 2021-01-23 19:16 - 2021-01-23 19:16 - 000013670 _____ C:\Users\janni\Downloads\neoncursors.zip 2021-01-23 19:16 - 2021-01-23 19:16 - 000004362 _____ C:\Users\janni\Downloads\15 Link Select.ani 2021-01-23 19:16 - 2021-01-23 19:16 - 000004362 _____ C:\Users\janni\Downloads\01 Normal Select.ani 2021-01-23 19:15 - 2021-01-23 19:15 - 000034478 _____ C:\Users\janni\Downloads\Animated Moving Cursors neon blue.ani 2021-01-23 19:14 - 2021-01-23 19:14 - 000120608 _____ C:\Users\janni\Downloads\RGB_neon_working.ani 2021-01-23 19:12 - 2021-01-23 19:12 - 000176122 _____ C:\Users\janni\Downloads\RGB CURSOR.ani 2021-01-23 19:12 - 2021-01-23 19:12 - 000060184 _____ C:\Users\janni\Downloads\Normal-RGB.ani 2021-01-23 12:39 - 2021-01-23 12:39 - 000000000 ____D C:\Users\janni\AppData\LocalLow\Statespace 2021-01-23 12:32 - 2021-01-23 12:32 - 010631329 _____ C:\Users\janni\Downloads\GalacticraftCore-1.12.2-4.0.2.281.jar 2021-01-23 12:32 - 2021-01-23 12:32 - 003987531 _____ C:\Users\janni\Downloads\Galacticraft-Planets-1.12.2-4.0.2.281.jar 2021-01-23 12:32 - 2021-01-23 12:32 - 000053300 _____ C:\Users\janni\Downloads\MicdoodleCore-1.12.2-4.0.2.281.jar 2021-01-23 12:23 - 2021-01-23 12:23 - 000000222 _____ C:\Users\janni\Desktop\Aim Lab.url 2021-01-22 21:04 - 2021-01-22 21:04 - 000000000 ____D C:\Program Files (x86)\Notepad++ 2021-01-22 21:03 - 2021-01-22 21:04 - 000000000 ____D C:\Program Files (x86)\AldhibainLuminaryslbSetup 2021-01-22 20:20 - 2021-01-22 20:20 - 000000000 ____D C:\Users\janni\AppData\Local\eFAan0Z3J8RsPOF9rut 2021-01-22 20:18 - 2021-01-22 20:18 - 000000000 ____D C:\Users\janni\AppData\Roaming\NAppUpdateProcessUpdateBackups637469398986125852 2021-01-22 20:13 - 2021-01-22 20:21 - 000000000 ____D C:\Users\janni\Documents\MCCToolchestPE 2021-01-22 20:13 - 2021-01-22 20:20 - 000000000 ____D C:\Program Files (x86)\MCCToolChestPE 2021-01-22 20:13 - 2021-01-22 20:13 - 000002673 _____ C:\Users\Public\Desktop\MCC Tool Chest PE.lnk 2021-01-22 20:13 - 2021-01-22 20:13 - 000002673 _____ C:\ProgramData\Microsoft\Windows\Start Menu\MCC Tool Chest PE.lnk 2021-01-22 20:13 - 2021-01-22 20:13 - 000002673 _____ C:\ProgramData\Desktop\MCC Tool Chest PE.lnk 2021-01-22 20:13 - 2021-01-22 20:13 - 000000000 ____D C:\Users\janni\AppData\Local\YWBU6VsreWsgMaSDoLI 2021-01-22 20:13 - 2021-01-22 20:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCC Tool Chest PE 2021-01-22 20:11 - 2021-01-22 20:12 - 005241761 _____ C:\Users\janni\Downloads\MCCToolChestPE_Setup.zip 2021-01-22 09:10 - 2021-01-22 09:10 - 029765771 _____ C:\Users\janni\Downloads\WhatsApp Video 2021-01-06 at 16.02.36.3gpp 2021-01-20 08:43 - 2021-01-20 08:43 - 000000300 _____ C:\Users\janni\Desktop\Farming Simulator 19.url 2021-01-19 20:50 - 2021-01-19 20:50 - 005683973 _____ C:\Users\janni\Downloads\OptiFine_1.16.1_HD_U_G2(1).jar 2021-01-19 20:48 - 2021-01-19 20:48 - 005162449 _____ C:\Users\janni\Downloads\OptiFine_1.16.1_HD_U_G2_MOD.jar 2021-01-19 20:47 - 2021-01-19 20:48 - 005683973 _____ C:\Users\janni\Downloads\OptiFine_1.16.1_HD_U_G2.jar 2021-01-19 10:05 - 2021-01-19 10:05 - 003086696 _____ C:\Users\janni\Downloads\instspeedfan452.exe 2021-01-19 09:40 - 2021-01-19 09:41 - 000000000 ____D C:\ProgramData\NbfcService 2021-01-19 09:40 - 2021-01-19 09:40 - 000000000 ____D C:\Users\janni\AppData\Roaming\NoteBookFanControl 2021-01-19 09:40 - 2021-01-19 09:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoteBook FanControl 2021-01-19 09:40 - 2021-01-19 09:40 - 000000000 ____D C:\Program Files (x86)\NoteBook FanControl 2021-01-19 09:39 - 2021-01-19 09:39 - 002315790 _____ (Stefan Hirschmann - StagWare) C:\Users\janni\Downloads\NoteBookFanControl.1.6.3.setup.exe 2021-01-18 18:50 - 2021-01-18 18:50 - 002014845 _____ C:\Users\janni\Downloads\LittleTiles_v1.5.0-pre311_mc1.12.2.jar 2021-01-16 23:56 - 2021-01-16 23:56 - 005064377 _____ (Xaymars Technology Workshop ) C:\Users\janni\Downloads\streamfx-windows2019-0.8.0.0-e343e4cb.exe 2021-01-16 23:56 - 2021-01-16 23:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StreamFX for OBS Studio 2021-01-16 23:51 - 2021-01-16 23:56 - 000000000 ____D C:\Program Files\obs-studio_plugin 2021-01-15 19:22 - 2021-01-15 19:26 - 000002587 _____ C:\Users\janni\Desktop\Roblox.lnk 2021-01-15 16:52 - 2021-01-15 16:52 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-01-15 16:52 - 2021-01-15 16:52 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-01-15 16:52 - 2021-01-15 16:52 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-01-15 16:52 - 2021-01-15 16:52 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-01-15 16:52 - 2021-01-15 16:52 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-01-15 16:52 - 2021-01-15 16:52 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-01-15 16:52 - 2021-01-15 16:52 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-01-15 16:52 - 2021-01-15 16:52 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-01-15 16:52 - 2021-01-15 16:52 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-01-15 16:52 - 2021-01-15 16:52 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-01-15 16:52 - 2021-01-15 16:52 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-01-15 16:52 - 2021-01-15 16:52 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-01-15 16:52 - 2021-01-15 16:52 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-01-15 16:52 - 2021-01-15 16:52 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-01-15 16:52 - 2021-01-15 16:52 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-01-15 16:52 - 2021-01-15 16:52 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-01-15 16:52 - 2021-01-15 16:52 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-01-15 16:52 - 2021-01-15 16:52 - 000010894 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-01-15 16:51 - 2021-01-15 16:51 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-01-15 16:51 - 2021-01-15 16:51 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-01-15 16:51 - 2021-01-15 16:51 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-01-15 16:51 - 2021-01-15 16:51 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-01-15 16:51 - 2021-01-15 16:51 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-01-15 16:51 - 2021-01-15 16:51 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-01-15 16:51 - 2021-01-15 16:51 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-01-15 16:51 - 2021-01-15 16:51 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-01-15 16:51 - 2021-01-15 16:51 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-01-15 16:51 - 2021-01-15 16:51 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-01-15 16:51 - 2021-01-15 16:51 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-01-15 16:51 - 2021-01-15 16:51 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-01-15 16:51 - 2021-01-15 16:51 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-01-15 16:51 - 2021-01-15 16:51 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-01-15 16:51 - 2021-01-15 16:51 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-01-15 16:51 - 2021-01-15 16:51 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-01-15 16:50 - 2021-01-15 16:50 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-01-15 16:50 - 2021-01-15 16:50 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-01-15 16:50 - 2021-01-15 16:50 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-01-15 16:50 - 2021-01-15 16:50 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-01-15 16:50 - 2021-01-15 16:50 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-01-15 16:50 - 2021-01-15 16:50 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll 2021-01-14 15:03 - 2021-01-14 15:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2021-01-13 19:45 - 2021-01-18 17:54 - 000000000 ____D C:\Users\janni\AppData\Local\@badlionnative-desktop-updater 2021-01-13 18:46 - 2021-01-13 18:47 - 000000186 _____ C:\Users\janni\Desktop\Steam Data.url 2021-01-12 10:07 - 2021-01-12 20:54 - 000003494 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6de15a52260f6 2021-01-12 09:45 - 2021-01-12 09:45 - 097914943 _____ C:\Users\janni\Downloads\ModernArch R89 [1.15 - 1.16.1] [256x].zip 2021-01-11 15:32 - 2021-01-11 15:32 - 000042025 _____ C:\Users\janni\Downloads\CUDA Shaders v4.2 Basic.zip 2021-01-09 12:20 - 2021-01-09 13:02 - 000000089 _____ C:\Users\janni\Desktop\Nummern.txt 2021-01-09 10:59 - 2021-01-10 13:51 - 000000000 ____D C:\Users\janni\Documents\Image-Line 2021-01-07 22:30 - 2021-01-07 22:30 - 000001215 _____ C:\Users\janni\Desktop\ASIO4ALL v2 Instruction Manual.lnk 2021-01-07 22:30 - 2021-01-07 22:30 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2021-01-07 22:30 - 2021-01-07 22:30 - 000000000 ____D C:\Program Files (x86)\ASIO4ALL v2 2021-01-07 22:28 - 2021-01-20 11:39 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line 2021-01-07 22:28 - 2021-01-07 22:28 - 000001886 _____ C:\Users\Public\Desktop\FL Studio 20.lnk 2021-01-07 22:28 - 2021-01-07 22:28 - 000001886 _____ C:\ProgramData\Desktop\FL Studio 20.lnk 2021-01-07 22:28 - 2021-01-07 22:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line 2021-01-07 22:28 - 2021-01-07 22:28 - 000000000 ____D C:\Program Files\Common Files\VST2 2021-01-07 22:28 - 2021-01-07 22:28 - 000000000 ____D C:\Program Files\Common Files\Propellerhead Software 2021-01-07 22:23 - 2021-01-07 22:30 - 000000000 ____D C:\Program Files\Image-Line 2021-01-07 22:20 - 2021-01-07 22:22 - 969356480 _____ (Image-Line) C:\Users\janni\Downloads\flstudio_win_20.8.0.2115.exe 2021-01-07 21:44 - 2021-01-07 21:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-01-03 19:43 - 2021-01-03 19:43 - 000004452 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1609699395 2021-01-03 19:43 - 2021-01-03 19:43 - 000004220 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1609699394 2021-01-03 19:43 - 2021-01-03 19:43 - 000000408 _____ C:\Users\Public\Desktop\updatepush.com.lnk 2021-01-03 19:43 - 2021-01-03 19:43 - 000000408 _____ C:\ProgramData\Desktop\updatepush.com.lnk 2021-01-03 19:43 - 2021-01-03 19:43 - 000000000 ____D C:\Users\janni\AppData\Roaming\npm 2021-01-03 19:43 - 2021-01-03 19:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js 2021-01-03 19:43 - 2021-01-03 19:43 - 000000000 ____D C:\Program Files (x86)\nodejs 2021-01-03 19:42 - 2021-01-07 22:11 - 000000000 ____D C:\Users\janni\AppData\Roaming\audacity 2021-01-03 19:42 - 2021-01-03 19:42 - 000000000 ____D C:\Users\janni\AppData\Local\Audacity 2020-12-30 14:02 - 2020-12-30 14:02 - 000001451 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2020-12-30 14:02 - 2020-12-30 14:02 - 000001451 _____ C:\ProgramData\Desktop\GeForce Experience.lnk 2020-12-30 14:02 - 2020-12-30 14:02 - 000000000 ____D C:\Users\janni\ansel 2020-12-30 14:00 - 2020-12-30 14:00 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-30 14:00 - 2020-12-30 14:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2020-12-30 14:00 - 2020-12-30 14:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2020-12-30 14:00 - 2020-12-12 05:01 - 002797552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2020-12-30 14:00 - 2020-12-12 05:01 - 002154984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2020-12-30 14:00 - 2020-12-12 05:01 - 001294832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll 2020-12-30 14:00 - 2020-12-12 05:01 - 000169272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2020-12-30 14:00 - 2020-12-12 05:01 - 000145208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2020-12-30 14:00 - 2020-12-12 05:01 - 000069608 _____ C:\WINDOWS\system32\FvSDK_x64.dll 2020-12-30 14:00 - 2020-12-12 05:01 - 000058344 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll 2020-12-30 14:00 - 2020-12-12 05:01 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2020-12-30 13:57 - 2020-12-12 05:01 - 000069840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2020-12-30 13:57 - 2020-12-12 05:01 - 000067456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2020-12-30 13:57 - 2020-12-12 05:01 - 000050592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\NvModuleTracker.sys 2020-12-30 13:55 - 2020-12-12 14:50 - 001786584 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2020-12-30 13:55 - 2020-12-12 14:50 - 001786584 _____ C:\WINDOWS\system32\vulkaninfo.exe 2020-12-30 13:55 - 2020-12-12 14:50 - 001454488 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2020-12-30 13:55 - 2020-12-12 14:50 - 001382616 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2020-12-30 13:55 - 2020-12-12 14:50 - 001382616 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2020-12-30 13:55 - 2020-12-12 14:50 - 001193880 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2020-12-30 13:55 - 2020-12-12 14:50 - 001087704 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2020-12-30 13:55 - 2020-12-12 14:50 - 001087704 _____ C:\WINDOWS\system32\vulkan-1.dll 2020-12-30 13:55 - 2020-12-12 14:50 - 000940760 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2020-12-30 13:55 - 2020-12-12 14:50 - 000940760 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2020-12-30 13:55 - 2020-12-12 14:48 - 001512856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2020-12-30 13:55 - 2020-12-12 14:48 - 001164528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2020-12-30 13:55 - 2020-12-12 14:48 - 000685976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2020-12-30 13:55 - 2020-12-12 14:48 - 000680856 _____ C:\WINDOWS\system32\nvofapi64.dll 2020-12-30 13:55 - 2020-12-12 14:48 - 000672496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2020-12-30 13:55 - 2020-12-12 14:48 - 000609688 _____ C:\WINDOWS\system32\nvml.dll 2020-12-30 13:55 - 2020-12-12 14:48 - 000559000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2020-12-30 13:55 - 2020-12-12 14:48 - 000547056 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 008261360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 007391984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 005631896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 004612504 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 002731928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 002103024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 001589144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 000812784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 000657816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2020-12-30 13:55 - 2020-12-12 14:47 - 000447384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2020-12-30 13:55 - 2020-12-12 14:46 - 000849648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2020-12-30 13:55 - 2020-12-12 14:45 - 006070008 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2020-12-30 13:55 - 2020-12-12 05:01 - 000084008 _____ C:\WINDOWS\system32\nvinfo.pb 2020-12-30 13:52 - 2020-12-30 13:54 - 658616888 _____ (NVIDIA Corporation) C:\Users\janni\Downloads\460.89-notebook-win10-64bit-international-dch-whql.exe 2020-12-29 23:50 - 2020-12-29 23:52 - 555985240 _____ (NVIDIA Corporation) C:\Users\janni\Downloads\442.92-notebook-win10-64bit-international-nsd-dch-whql(1).exe 2020-12-29 23:43 - 2020-12-29 23:44 - 555985240 _____ (NVIDIA Corporation) C:\Users\janni\Downloads\442.92-notebook-win10-64bit-international-nsd-dch-whql.exe 2020-12-29 20:12 - 2020-12-29 20:12 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2020-12-29 20:09 - 2021-01-24 15:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-12-29 20:09 - 2021-01-12 20:54 - 000003688 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-12-29 20:09 - 2021-01-07 20:32 - 000003464 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-12-29 20:09 - 2020-12-29 20:09 - 000007623 _____ C:\WINDOWS\diagwrn.xml 2020-12-29 20:09 - 2020-12-29 20:09 - 000007623 _____ C:\WINDOWS\diagerr.xml 2020-12-29 20:09 - 2020-12-29 20:09 - 000004302 _____ C:\WINDOWS\system32\Tasks\Software Update Application 2020-12-29 20:09 - 2020-12-29 20:09 - 000003852 _____ C:\WINDOWS\system32\Tasks\ACCAgent 2020-12-29 20:09 - 2020-12-29 20:09 - 000003072 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update 2020-12-29 20:09 - 2020-12-29 20:09 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1892241721-2923544030-2117440216-1001 2020-12-29 20:09 - 2020-12-29 20:09 - 000002820 _____ C:\WINDOWS\system32\Tasks\ACC 2020-12-29 20:09 - 2020-12-29 20:09 - 000002760 _____ C:\WINDOWS\system32\Tasks\BacKGroundAgent 2020-12-29 20:09 - 2020-12-29 20:09 - 000002604 _____ C:\WINDOWS\system32\Tasks\App Explorer 2020-12-29 20:09 - 2020-12-29 20:09 - 000002550 _____ C:\WINDOWS\system32\Tasks\abDocsDllLoader 2020-12-29 20:09 - 2020-12-29 20:09 - 000002328 _____ C:\WINDOWS\system32\Tasks\ACCBackgroundApplication 2020-12-29 20:09 - 2020-12-29 20:09 - 000002264 _____ C:\WINDOWS\system32\Tasks\Power Button 2020-12-29 20:09 - 2020-12-29 20:09 - 000002222 _____ C:\WINDOWS\system32\Tasks\Power Management 2020-12-29 20:09 - 2020-12-29 20:09 - 000002180 _____ C:\WINDOWS\system32\Tasks\Quick Access 2020-12-29 20:09 - 2020-12-29 20:09 - 000002074 _____ C:\WINDOWS\system32\Tasks\FUBTrackingByPLD 2020-12-29 20:09 - 2020-12-29 20:09 - 000000020 ___SH C:\Users\janni\ntuser.ini 2020-12-29 20:09 - 2020-12-29 20:09 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-1892241721-2923544030-2117440216-1001 2020-12-29 20:09 - 2020-12-29 20:09 - 000000000 ____D C:\WINDOWS\system32\Tasks\OfficeSoftwareProtectionPlatform 2020-12-29 20:09 - 2020-12-29 20:09 - 000000000 ____D C:\WINDOWS\system32\Tasks\CareCenter 2020-12-29 20:06 - 2021-01-24 15:45 - 001722792 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-12-29 20:01 - 2021-01-24 15:41 - 000000000 ____D C:\Users\janni 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Vorlagen 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Startmenü 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Netzwerkumgebung 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Lokale Einstellungen 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Eigene Dateien 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Druckumgebung 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Documents\Eigene Videos 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Documents\Eigene Musik 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Documents\Eigene Bilder 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\AppData\Local\Verlauf 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\AppData\Local\Anwendungsdaten 2020-12-29 20:01 - 2020-12-29 20:01 - 000000000 _SHDL C:\Users\janni\Anwendungsdaten 2020-12-29 20:01 - 2019-12-07 10:10 - 000001105 _____ C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-12-29 19:59 - 2021-01-24 17:49 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-12-29 19:59 - 2021-01-15 18:04 - 000543216 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-12-29 19:58 - 2021-01-24 15:41 - 000008192 ___SH C:\DumpStack.log.tmp 2020-12-29 19:58 - 2020-12-29 20:09 - 000000000 ____D C:\Windows.old 2020-12-29 19:55 - 2020-12-29 19:58 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2020-12-29 19:53 - 2020-12-29 19:55 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2020-12-29 19:53 - 2020-12-29 19:53 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2020-12-29 19:51 - 2020-12-29 19:51 - 000000000 ____D C:\ProgramData\ssh 2020-12-29 19:48 - 2020-12-29 19:48 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2020-12-29 19:48 - 2020-12-29 19:48 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2020-12-29 19:48 - 2020-12-29 19:48 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax 2020-12-29 19:48 - 2020-12-29 19:48 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax 2020-12-29 19:48 - 2020-12-29 19:48 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2020-12-29 19:47 - 2020-12-29 19:47 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2020-12-29 19:47 - 2020-12-29 19:47 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 001309504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2020-12-29 19:47 - 2020-12-29 19:47 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl 2020-12-29 19:47 - 2020-12-29 19:47 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl 2020-12-29 19:47 - 2020-12-29 19:47 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb 2020-12-29 19:47 - 2020-12-29 19:47 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb 2020-12-29 19:47 - 2020-12-29 19:47 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2020-12-29 19:47 - 2020-12-29 19:47 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2020-12-29 19:47 - 2020-12-29 19:47 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2020-12-29 19:47 - 2020-12-29 19:47 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2020-12-29 19:47 - 2020-12-29 19:47 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv 2020-12-29 19:47 - 2020-12-29 19:47 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe 2020-12-29 19:47 - 2020-12-29 19:47 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt 2020-12-29 19:46 - 2020-12-29 19:46 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin 2020-12-29 19:46 - 2020-12-29 19:46 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv 2020-12-29 19:46 - 2020-12-29 19:46 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll 2020-12-29 19:46 - 2020-12-29 19:46 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2020-12-29 19:40 - 2020-12-29 19:40 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2020-12-29 19:40 - 2020-12-29 19:40 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2020-12-29 19:40 - 2020-12-29 19:40 - 000000000 __RSD C:\WINDOWS\SysWOW64\WindowsDevicePortal 2020-12-29 19:40 - 2020-12-29 19:40 - 000000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal 2020-12-29 19:40 - 2020-12-29 19:40 - 000000000 ___RD C:\WINDOWS\WebManagement 2020-12-29 19:38 - 2020-12-29 19:38 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2020-12-29 19:38 - 2020-12-29 19:38 - 000000000 ____D C:\Program Files\Reference Assemblies 2020-12-29 19:38 - 2020-12-29 19:38 - 000000000 ____D C:\Program Files\MSBuild 2020-12-29 19:38 - 2020-12-29 19:38 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2020-12-29 19:38 - 2020-12-29 19:38 - 000000000 ____D C:\Program Files (x86)\MSBuild 2020-12-29 17:45 - 2020-12-29 20:09 - 000000000 ___DC C:\WINDOWS\Panther 2020-12-29 17:43 - 2020-12-29 17:43 - 000041048 _____ C:\Users\janni\Downloads\Sildurs Vibrant Shaders v1.10 High.zip 2020-12-29 17:43 - 2020-12-29 17:43 - 000041048 _____ C:\Users\janni\Downloads\Sildurs Vibrant Shaders v1.10 High - Motionblur.zip 2020-12-29 17:36 - 2020-12-29 17:36 - 000000000 ___HD C:\$WinREAgent 2020-12-27 23:19 - 2020-12-28 16:39 - 000001996 _____ C:\Users\janni\Desktop\DaVinci Resolve.lnk 2020-12-27 23:19 - 2020-12-27 23:19 - 000002016 _____ C:\Users\janni\Desktop\DaVinci Resolve Project Server.lnk 2020-12-27 23:18 - 2020-12-29 20:02 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blackmagic Design 2020-12-27 22:52 - 2020-12-27 22:58 - 2434500339 _____ C:\Users\janni\Downloads\DaVinci_Resolve_17.0b6_Windows.zip 2020-12-27 21:53 - 2020-12-27 21:53 - 018126878 _____ C:\Users\janni\Downloads\POPULAR WHOOSH SOUND EFFECTS FOR EDITS hd.mp4 2020-12-26 15:23 - 2020-12-26 15:23 - 000039958 _____ C:\Users\janni\Downloads\Community Overlay.zip 2020-12-25 14:42 - 2020-12-25 14:43 - 090699776 _____ (TeamSpeak Systems GmbH) C:\Users\janni\Downloads\TeamSpeak3-Client-win64-3.5.6.exe 2020-12-25 13:51 - 2020-12-25 13:51 - 006193253 _____ C:\Users\janni\Downloads\dollar sign green screen video hd.mp4 ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-01-24 18:02 - 2020-08-30 14:29 - 000000000 ____D C:\Users\janni\AppData\Roaming\discord 2021-01-24 17:51 - 2017-01-01 12:14 - 000000000 ____D C:\Users\janni\AppData\LocalLow\Mozilla 2021-01-24 17:50 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-01-24 16:13 - 2016-04-26 19:10 - 000000000 ____D C:\Users\janni\AppData\Local\CrashDumps 2021-01-24 16:12 - 2016-12-02 17:15 - 000000000 ____D C:\ProgramData\NVIDIA 2021-01-24 16:10 - 2017-07-22 09:51 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2021-01-24 16:10 - 2016-04-26 18:45 - 000000000 __SHD C:\Users\janni\IntelGraphicsProfiles 2021-01-24 15:45 - 2019-12-07 15:50 - 000744968 _____ C:\WINDOWS\system32\perfh007.dat 2021-01-24 15:45 - 2019-12-07 15:50 - 000150354 _____ C:\WINDOWS\system32\perfc007.dat 2021-01-24 15:45 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-01-24 15:41 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-01-24 15:09 - 2015-09-17 21:03 - 000000000 ____D C:\Program Files\Booking.COM 2021-01-24 13:39 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-01-24 12:37 - 2020-12-23 20:31 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-01-24 12:33 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-01-24 10:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-01-24 10:15 - 2017-12-19 14:27 - 000000000 ____D C:\Users\janni\AppData\Local\PlaceholderTileLogoFolder 2021-01-24 10:15 - 2017-12-09 20:50 - 000000000 ____D C:\Users\janni\AppData\Local\Packages 2021-01-24 10:10 - 2018-06-06 16:37 - 000000000 ____D C:\Users\janni\AppData\Local\Host App Service 2021-01-23 22:17 - 2019-08-28 11:31 - 000000000 ____D C:\Users\janni\AppData\Roaming\.minecraft 2021-01-23 21:30 - 2019-01-19 15:17 - 000000000 ____D C:\Users\janni\AppData\Local\babl-0.1 2021-01-23 21:16 - 2019-01-19 15:19 - 000000000 ____D C:\Users\janni\AppData\Local\gtk-2.0 2021-01-23 15:25 - 2018-07-04 19:51 - 000000000 ____D C:\Program Files (x86)\Steam 2021-01-23 10:54 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-01-22 21:27 - 2018-02-20 20:58 - 000000000 ____D C:\Users\janni\Documents\Soundaufnahmen 2021-01-22 21:04 - 2020-09-06 19:24 - 000001108 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk 2021-01-22 21:04 - 2020-09-06 19:24 - 000000000 ____D C:\Users\janni\AppData\Roaming\Notepad++ 2021-01-22 20:12 - 2018-07-04 19:51 - 000000000 ____D C:\Users\janni\AppData\Local\Downloaded Installations 2021-01-22 14:53 - 2019-01-19 15:17 - 000001121 _____ C:\Users\janni\Desktop\GIMP 2.10.8.lnk 2021-01-22 14:07 - 2018-09-15 12:11 - 000000000 ____D C:\Users\janni\AppData\Local\D3DSCache 2021-01-22 07:32 - 2016-04-26 19:14 - 000799104 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2021-01-21 20:55 - 2019-08-20 15:01 - 000000000 ____D C:\Users\janni\AppData\Roaming\obs-studio 2021-01-20 11:47 - 2019-11-18 19:34 - 000000000 ____D C:\Program Files\Epic Games 2021-01-19 13:18 - 2020-09-30 19:50 - 000000000 ____D C:\Users\janni\AppData\Roaming\Badlion Client 2021-01-19 12:35 - 2020-09-30 20:08 - 000000000 ____D C:\Users\janni\AppData\Local\Badlion Client 2021-01-19 10:13 - 2019-01-19 11:42 - 000000000 ____D C:\Program Files (x86)\SpeedFan 2021-01-19 10:06 - 2019-01-19 11:42 - 000000045 _____ C:\WINDOWS\SysWOW64\initdebug.nfo 2021-01-19 09:40 - 2015-09-17 20:44 - 000000000 ____D C:\ProgramData\Package Cache 2021-01-18 17:55 - 2020-09-30 19:48 - 000000000 ____D C:\Program Files\Badlion Client 2021-01-16 23:56 - 2019-12-07 19:10 - 000000000 ____D C:\Program Files\obs-studio 2021-01-16 12:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-01-15 19:40 - 2019-09-20 12:26 - 000000000 ____D C:\Users\janni\AppData\Local\Roblox 2021-01-15 19:34 - 2020-02-24 12:11 - 000001429 _____ C:\Users\janni\Desktop\Roblox Player.lnk 2021-01-15 19:34 - 2019-09-20 12:29 - 000001252 _____ C:\Users\janni\Desktop\Roblox Studio.lnk 2021-01-15 19:34 - 2019-09-20 12:29 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2021-01-15 18:03 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-15 18:03 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-01-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-15 16:55 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2021-01-15 16:55 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-01-15 16:42 - 2016-04-27 14:38 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-01-15 16:39 - 2016-04-27 14:38 - 135062968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-01-13 18:47 - 2018-07-04 19:51 - 000001906 _____ C:\Users\Public\Desktop\Steam.lnk 2021-01-13 18:47 - 2018-07-04 19:51 - 000001906 _____ C:\ProgramData\Desktop\Steam.lnk 2021-01-13 16:57 - 2018-10-13 14:46 - 000000000 ____D C:\Users\janni\AppData\Roaming\SpinTires MudRunner 2021-01-12 16:19 - 2015-07-16 04:33 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-01-12 14:31 - 2020-09-30 19:50 - 000000000 ____D C:\ProgramData\BadlionClient 2021-01-11 15:33 - 2020-09-30 20:09 - 002500640 _____ (<Turtle Entertainment>) C:\WINDOWS\system32\Drivers\BadlionAnticheat.sys 2021-01-11 14:36 - 2019-02-18 13:56 - 000000000 ____D C:\Users\janni\.dbus-keyrings 2021-01-10 17:28 - 2017-07-22 09:51 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-01-09 12:50 - 2020-06-13 22:32 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-01-09 12:50 - 2020-06-13 22:32 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-01-09 12:50 - 2020-06-13 22:32 - 000002278 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk 2021-01-07 21:44 - 2018-01-04 21:44 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-01-07 20:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-01-07 20:32 - 2016-04-26 18:47 - 000000000 ____D C:\Users\janni\AppData\Local\NVIDIA Corporation 2021-01-07 20:32 - 2015-07-10 12:04 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2021-01-03 19:43 - 2020-04-22 21:08 - 000000000 ____D C:\Users\janni\AppData\Local\Opera Software 2021-01-03 19:42 - 2020-04-22 21:07 - 000000000 ____D C:\Users\janni\AppData\Roaming\Opera Software 2021-01-03 19:37 - 2015-07-16 04:33 - 000000000 ____D C:\ProgramData\Mozilla 2020-12-31 00:00 - 2018-02-15 13:57 - 000000661 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2020-12-30 16:00 - 2017-07-22 09:51 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2020-12-30 15:45 - 2018-09-15 13:43 - 000007597 _____ C:\Users\janni\AppData\Local\Resmon.ResmonCfg 2020-12-30 14:03 - 2016-04-26 18:46 - 000000000 ____D C:\Users\janni\AppData\Local\NVIDIA 2020-12-30 14:00 - 2018-07-11 12:44 - 000000000 ____D C:\ProgramData\Packages 2020-12-30 14:00 - 2018-07-05 16:45 - 000000000 ____D C:\Users\janni\AppData\Roaming\NVIDIA 2020-12-30 14:00 - 2015-09-17 20:59 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2020-12-30 13:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help 2020-12-30 13:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat 2020-12-29 20:10 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate 2020-12-29 20:10 - 2016-05-11 15:28 - 000000000 ___RD C:\Users\janni\3D Objects 2020-12-29 20:10 - 2016-02-13 18:30 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-12-29 20:09 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration 2020-12-29 20:09 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT 2020-12-29 20:05 - 2016-05-13 18:55 - 000023056 _____ C:\WINDOWS\system32\emptyregdb.dat 2020-12-29 20:03 - 2020-05-20 18:37 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2020-12-29 20:03 - 2020-01-28 18:02 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server 2020-12-29 20:03 - 2020-01-28 18:01 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2020-12-29 20:03 - 2019-10-19 09:38 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2020-12-29 20:03 - 2019-10-17 21:11 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Empire Gaming 2020-12-29 20:03 - 2018-07-05 16:20 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2020-12-29 20:03 - 2016-08-24 10:21 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wizadora 2020-12-29 20:02 - 2020-08-30 14:29 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2020-12-29 20:02 - 2017-11-25 17:17 - 000000000 ____D C:\Users\janni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2020-12-29 20:01 - 2017-07-22 09:51 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2020-12-29 20:01 - 2017-07-22 09:51 - 000000000 ____D C:\Program Files\Elantech 2020-12-29 20:00 - 2017-07-22 09:51 - 001247948 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip 2020-12-29 20:00 - 2017-07-22 09:51 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2020-12-29 20:00 - 2017-07-22 09:51 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2020-12-29 20:00 - 2017-07-22 09:51 - 000000000 ____D C:\WINDOWS\system32\DAX2 2020-12-29 19:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2020-12-29 19:58 - 2020-12-03 19:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e2eSoft iVCam 2020-12-29 19:58 - 2020-11-27 21:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\obs-websocket 2020-12-29 19:58 - 2020-11-27 20:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Touch Portal 2020-12-29 19:58 - 2020-10-21 12:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SKILLER MECH SGK3 2020-12-29 19:58 - 2020-09-06 19:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git 2020-12-29 19:58 - 2020-08-06 13:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2020-12-29 19:58 - 2020-07-18 12:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft Launcher 2020-12-29 19:58 - 2020-04-11 12:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 17 2020-12-29 19:58 - 2020-03-23 16:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Camera 2020-12-29 19:58 - 2019-12-07 10:18 - 000000000 ____D C:\WINDOWS\Setup 2020-12-29 19:58 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2020-12-29 19:58 - 2019-12-07 10:14 - 000000000 __RHD C:\Users\Public\Libraries 2020-12-29 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-12-29 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2020-12-29 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ta-in 2020-12-29 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool 2020-12-29 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-12-29 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-12-29 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-12-29 19:58 - 2019-08-20 15:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2020-12-29 19:58 - 2019-08-07 16:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gaming Keyboard 2020-12-29 19:58 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2020-12-29 19:58 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2020-12-29 19:58 - 2018-08-30 16:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2020-12-29 19:58 - 2018-07-26 17:09 - 000000000 ____D C:\WINDOWS\de 2020-12-29 19:58 - 2018-07-04 19:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2020-12-29 19:58 - 2018-04-12 17:17 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB 2020-12-29 19:58 - 2018-04-12 17:17 - 000000000 ____D C:\WINDOWS\system32\gd-GB 2020-12-29 19:58 - 2017-07-22 09:51 - 000000000 ____D C:\Program Files\Intel 2020-12-29 19:58 - 2017-05-31 14:25 - 000000000 ____D C:\Program Files\UNP 2020-12-29 19:58 - 2017-05-21 17:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROBOPro 2020-12-29 19:58 - 2016-11-30 16:50 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2020-12-29 19:58 - 2016-08-24 10:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wizadora 2020-12-29 19:58 - 2016-05-19 15:50 - 000000000 ____D C:\WINDOWS\SysWOW64\QuickTime 2020-12-29 19:58 - 2016-05-19 15:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2020-12-29 19:58 - 2016-05-07 11:51 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers 2020-12-29 19:58 - 2016-04-28 19:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2020-12-29 19:58 - 2016-04-26 18:29 - 000000000 ____D C:\WINDOWS\oem 2020-12-29 19:58 - 2016-02-13 18:12 - 000000000 ____D C:\WINDOWS\ShellNew 2020-12-29 19:58 - 2015-09-17 21:07 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 12 2020-12-29 19:58 - 2015-09-17 21:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF 2020-12-29 19:58 - 2015-09-17 20:55 - 000000000 ___HD C:\WINDOWS\system32\WLANProfiles 2020-12-29 19:58 - 2015-07-16 04:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2020-12-29 19:58 - 2015-07-16 04:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2020-12-29 19:58 - 2015-07-16 04:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2020-12-29 19:55 - 2020-05-19 11:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare 2020-12-29 19:55 - 2020-04-11 13:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iZotope 2020-12-29 19:55 - 2020-02-26 16:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blackmagic Design 2020-12-29 19:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Resources 2020-12-29 19:55 - 2018-10-18 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\C.C.Buchner 2020-12-29 19:55 - 2018-09-09 13:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft 2020-12-29 19:55 - 2018-02-06 20:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2020-12-29 19:55 - 2017-07-22 09:51 - 000000000 ____D C:\Program Files\Realtek 2020-12-29 19:55 - 2016-11-30 16:50 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2020-12-29 19:52 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2020-12-29 19:52 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2020-12-29 19:51 - 2019-12-07 15:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2020-12-29 19:51 - 2019-12-07 15:54 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2020-12-29 19:51 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2020-12-29 19:40 - 2019-12-07 15:51 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2020-12-29 19:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2020-12-29 19:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2020-12-29 19:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2020-12-29 19:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2020-12-29 19:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemApps 2020-12-29 19:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2020-12-29 19:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2020-12-29 19:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2020-12-29 19:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2020-12-29 19:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2020-12-29 11:30 - 2018-09-16 12:46 - 000000000 ____D C:\Users\janni\Documents\Euro Truck Simulator 2 2020-12-28 11:49 - 2016-04-26 18:45 - 000000000 ____D C:\Users\janni\AppData\Local\Publishers 2020-12-28 11:49 - 2015-09-17 20:46 - 000000000 ____D C:\ProgramData\Intel 2020-12-27 23:17 - 2019-12-30 10:24 - 000000000 ____D C:\Program Files (x86)\Blackmagic Design 2020-12-25 18:13 - 2020-06-29 20:14 - 001341232 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys 2020-12-25 18:13 - 2020-06-29 20:14 - 000659768 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klgse.sys ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2019-03-02 14:47 - 2019-03-02 14:47 - 000000000 ___RH () C:\Users\janni\AppData\Roaming\0ff2ab4ae734a64383d32a7650e57bcc2 2020-06-14 10:24 - 2020-06-14 10:24 - 000000186 _____ () C:\Users\janni\AppData\Roaming\LAPTOP-JANNIS.MTBF.txt 2020-12-03 19:49 - 2020-12-03 19:49 - 000000015 _____ () C:\Users\janni\AppData\Roaming\obs-virtualcam.txt 2020-04-11 13:06 - 2020-05-06 14:22 - 000000384 _____ () C:\Users\janni\AppData\Roaming\PC.MTBF.txt 2020-04-11 13:06 - 2020-06-14 10:25 - 000001580 _____ () C:\Users\janni\AppData\Roaming\__AvidCloudManager.log 2020-04-11 13:06 - 2020-05-06 14:22 - 000001227 _____ () C:\Users\janni\AppData\Roaming\__AvidCloudManagerPrevious.log 2020-04-11 13:18 - 2020-04-11 13:18 - 000003584 _____ () C:\Users\janni\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2017-05-21 18:22 - 2017-05-23 19:22 - 000000600 _____ () C:\Users\janni\AppData\Local\PUTTY.RND 2021-01-23 21:16 - 2021-01-23 21:16 - 000012788 _____ () C:\Users\janni\AppData\Local\recently-used.xbel 2018-09-15 13:43 - 2020-12-30 15:45 - 000007597 _____ () C:\Users\janni\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
24.01.2021, 19:44 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 10: Audacity Trojaner Das zweite FRST-Log fehlt.
__________________
__________________ |
24.01.2021, 22:09 | #3 | |
/// TB-Ausbilder | Windows 10: Audacity Trojaner Hallo moinmeista (oder sollte ich besser bexi005 schreiben?)
__________________Gemäß den Nutzungsbedingungen ist es nicht erlaubt, mehr als einen Account hier zu erstellen: Zitat:
Es wird ja immer "lustiger" mit dir... Im 1. Thema hältst du dich nicht an die Regeln der Bereinigung. Im 2. Thema stellst du dich als ahnungslos hin und tust so, als hätten wir etwas falsch gemacht. Im 3. Thema verstößt du gegen die Nutzungsbedingungen. Genaues Lesen würde dir gut tun. Jetzt ist Schluss mit deinen "Spielchen". Such dir einen anderen Platz zum Trollen. |
Themen zu Windows 10: Audacity Trojaner |
audacity trojaner, avast, bonjour, computer, defender, desktop, euro, explorer, firefox, google, homepage, internet, kaspersky, mozilla, nvcontainer, nvcontainer.exe, pixel, prozesse, realtek, registry, rundll, scan, security, software, teamspeak, trojaner, updatepush.com, usb, windows |