|
Alles rund um Windows: Win 10: Langsamer System- und ProgrammstartWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
05.02.2021, 11:33 | #1 |
| Problem: Win 10: Langsamer System- und Programmstart Liebe Community, mein Laptop startet extrem langsam und Programme ebenfalls. Ich habe unlängst eine Reparaturinstallation von Win 10 vorgenommen, ohne erkennbare Verbesserung. Ein Scan mit Malwarebytes ergab keinen Befund. Eine Analyse mit FRST konnte nicht vollständig durchgeführt werden, das Programm hängt und gibt keine Rückmeldung. Die erzeugten Logfiles füge ich trotzdem mal ein. Könnte ein Hardwarefehler die Ursache sein? Würde mich über Hilfe sehr freuen. System: Fujitsu Celsius H7600 CPU: i7-6820HQ @2.70 GHz GPU: NVIDIA Quadro M1000M RAM 16 GB Win 10 pro 64 FRST Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-02-2021 durchgeführt von User (Administrator) auf *****-NOTEBOOK (FUJITSU CELSIUS H760) (05-02-2021 10:38:42) Gestartet von C:\Users\User\Desktop Geladene Profile: User Platform: Windows 10 Pro Version 20H2 19042.746 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: FF Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Acresso Software Inc. -> Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (FUJITSU CLIENT COMPUTING LIMITED -> Fujitsu Technology Solutions) C:\Program Files (x86)\Fujitsu\DeskUpdate\DeskUpdateNotifier.exe (FUJITSU LIMITED -> FUJITSU LIMITED) C:\Program Files (x86)\Fujitsu\IndicatorUty\IndicatorUty.exe (FUJITSU LIMITED -> FUJITSU LIMITED) C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe (FUJITSU LIMITED -> FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe (FUJITSU LIMITED -> FUJITSU LIMITED) C:\Program Files\Fujitsu\RadioSwitchUtility\RadioSwitchUtilityDaemon.exe (FUJITSU LIMITED -> FUJITSU LIMITED) C:\Program Files\Fujitsu\StatusPanelSwitch\StatusPanelSwitchDaemon.exe (FUJITSU LIMITED) [Datei ist nicht signiert] C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.exe (FUJITSU LIMITED) [Datei ist nicht signiert] C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe (FUJITSU LIMITED) [Datei ist nicht signiert] C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_c28b7f61e3210448\LMS.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_72e516c32b54a52f\igfxCUIService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_72e516c32b54a52f\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_72e516c32b54a52f\IntelCpHDCPSvc.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_72e516c32b54a52f\IntelCpHeciSvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentask.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2101.15643.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Dynamic Code Publisher -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.740_none_e752aa59261f271f\TiWorker.exe (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MpCmdRun.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <6> (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvwmi64.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Sierra Wireless, Inc. -> Sierra Wireless, Inc.) C:\Program Files (x86)\Sierra Wireless Inc\Utils\SwiService.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391104 2018-11-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506368 2018-11-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3404512 2016-09-08] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [LoadBtnHnd] => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [49824 2015-07-06] (FUJITSU LIMITED -> FUJITSU LIMITED) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [299504 2016-03-16] (Intel(R) USB eXtensible Host Controller Drivers -> Intel Corporation) HKLM-x32\...\Run: [IndicatorUtility] => C:\Program Files (x86)\Fujitsu\IndicatorUty\IndicatorUty.exe [56992 2015-01-28] (FUJITSU LIMITED -> FUJITSU LIMITED) HKLM-x32\...\Run: [DeskUpdateNotifier] => C:\Program Files (x86)\Fujitsu\DeskUpdate\DeskUpdateNotifier.exe [101232 2020-06-24] (FUJITSU CLIENT COMPUTING LIMITED -> Fujitsu Technology Solutions) HKLM-x32\...\Run: [YouCam Service6] => C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe [515512 2015-08-04] (CyberLink Corp. -> CyberLink Corp.) HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-08] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-08] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [PPort12reminder] => C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [328992 2010-02-09] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [DATAflor Support-Anfrage] => C:\Program Files (x86)\Common Files\DATAflor\SYS\DATAflor.SupportAnfrage.exe [1437744 2017-02-14] (DATAflor AG -> DATAflor AG) HKLM-x32\...\Run: [FUJ02E3_BatteryChargingControlUpdate] => C:\Program Files (x86)\Fujitsu\FUJ02E3_BatteryChargingControlUpdate\CheckBatteryFW.exe [437376 2019-09-05] (FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU LIMITED) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.) HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Software Inc. -> Acresso Corporation) HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\Run: [BingSvc] => C:\Users\User\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (Microsoft Corporation -> © 2015 Microsoft Corporation) HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\Policies\Explorer: [] HKU\S-1-5-21-616903011-1919554280-1958241982-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Ribbons.scr [153600 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Providers\Internet Print Provider: C:\Windows\system32\\inetpp.dll [184320 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Providers\LanMan Print Services: C:\Windows\system32\\win32spl.dll [885248 2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\Canon MX530 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDC3.DLL [30208 2013-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [109080 2018-12-06] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Windows x64\Print Processors\OKC04EPP: C:\Windows\System32\spool\prtprocs\x64\OKC04EPP.DLL [52224 2015-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Oki Data Corporation) HKLM\...\Print\Monitors\Appmon: C:\Windows\system32\\AppMon.dll [114688 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\Local Port: C:\Windows\system32\\localspl.dll [1278976 2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\Microsoft Shared Fax Monitor: C:\Windows\system32\\FXSMON.DLL [49152 2019-12-06] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\Oki Language Monitor v2 x64: C:\Windows\system32\\OPPFLM64.DLL [24064 2011-07-04] (Microsoft Windows Hardware Compatibility Publisher -> Oki Data Corporation) HKLM\...\Print\Monitors\PCL hpz3llhn: C:\Windows\system32\\hpz3llhn.dll [44248 2018-12-06] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\...\Print\Monitors\Standard TCP/IP Port: C:\Windows\system32\\tcpmon.dll [225280 2020-11-19] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\USB Monitor: C:\Windows\system32\\usbmon.dll [935424 2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\WSD Port: C:\Windows\system32\\APMon.dll [1486848 2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] -> C:\Windows\system32\\themeui.dll [2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{89820200-ECBD-11cf-8B85-00AA005B4340}] -> C:\Windows\system32\\shell32.dll [2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.104\Installer\chrmstp.exe [2021-01-29] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> HKLM\Software\...\Authentication\Credential Providers: [{FA076B7A-C331-48e2-9EE9-7683A553739E}] -> C:\Program Files (x86)\CyberLink\YouCam6\CLCredProv\x64\CLCredProv.dll [2015-08-04] (CyberLink Corp. -> CyberLink) HKLM\Software\...\Authentication\Credential Provider Filters: [{FA076B7A-C331-48e2-9EE9-7683A553739E}] -> C:\Program Files (x86)\CyberLink\YouCam6\CLCredProv\x64\CLCredProv.dll [2015-08-04] (CyberLink Corp. -> CyberLink) HKLM\Software\...\Winlogon\GPExtensions: [{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63}] -> C:\Windows\system32\\wlgpclnt.dll [2020-11-19] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{169EBF44-942F-4C43-87CE-13C93996EBBE}] -> C:\Windows\system32\\AppManagementConfiguration.dll [2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{16be69fa-4209-4250-88cb-716cf41954e0}] -> C:\Windows\system32\\auditcse.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{25537BA6-77A8-11D2-9B6C-0000F8080861}] -> C:\Windows\system32\\fdeploy.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{2BFCC077-22D2-48DE-BDE1-2F618D9B476D}] -> C:\Windows\system32\\AppManagementConfiguration.dll [2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{426031c0-0b47-4852-b0ca-ac3d37bfcb39}] -> C:\Windows\system32\\gptext.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{4d968b55-cac2-4ff5-983f-0a54603781a3}] -> C:\Windows\system32\\WorkFoldersGPExt.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{7909AD9E-09EE-4247-BAB9-7029D5F0A278}] -> C:\Windows\system32\\dmenrollengine.dll [2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{827D319E-6EAC-11D2-A4EA-00C04F79F83A}] -> C:\Windows\system32\\scecli.dll [2020-11-19] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{9650FDBC-053A-4715-AD14-FC2DC65E8330}] -> C:\Windows\system32\\hvsigpext.dll [2020-11-19] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{B587E2B1-4D59-4e7e-AED9-22B9DF11D053}] -> C:\Windows\system32\\dot3gpclnt.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{BA649533-0AAC-4E04-B9BC-4DBAE0325B12}] -> C:\Windows\system32\\pwlauncher.dll [2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{C34B2751-1CF4-44F5-9262-C3FC39666591}] -> C:\Windows\system32\\pwlauncher.dll [2021-02-02] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{c6dc5466-785a-11d2-84d0-00c04fb169f7}] -> C:\Windows\system32\\appmgmts.dll [2020-11-19] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{cdeafc3d-948d-49dd-ab12-e578ba4af7aa}] -> C:\Windows\system32\\gptext.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{F312195E-3D9D-447A-A3F5-08DFFA24735E}] -> C:\Windows\system32\\dggpext.dll [2020-11-19] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{f3ccc681-b74c-4060-9f26-cd84525dca2a}] -> C:\Windows\system32\\auditcse.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{FB2CA36D-0B40-4307-821B-A13B252DE56C}] -> C:\Windows\system32\\gptext.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f}] -> C:\Windows\system32\\gptext.dll [2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Winlogon\GPExtensions: [{FC491EF1-C4AA-4CE1-B329-414B101DB823}] -> C:\Windows\system32\\dggpext.dll [2020-11-19] (Microsoft Windows -> Microsoft Corporation) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk [2016-09-08] ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions) [Datei ist nicht signiert] Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk [2016-09-08] ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions) [Datei ist nicht signiert] Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagentaCLOUD.lnk [2020-08-25] ShortcutTarget: MagentaCLOUD.lnk -> C:\Program Files (x86)\Telekom\MagentaCloud\MagentaCloud.App.exe (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) GroupPolicy: Beschränkung ? <==== ACHTUNG Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07C21938-8948-47EE-9E3B-D7682BCC964F} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\Thunderbolt.exe [363160 2015-11-05] (Intel(R) Client Connectivity Division SW -> Intel Corporation) Task: {0A178238-4F6C-45A2-8663-6846113F3856} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.) Task: {0A7FC420-403E-4F3E-8626-076B7CA878DD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-21] (Google Inc -> Google Inc.) Task: {0BF3435E-986E-4D05-B78D-1922DA2CDE04} - System32\Tasks\Fujitsu\PointingDeviceUtility\ToggleIPD => C:\Program Files\Fujitsu\PointingDeviceUtility\FJPDAutoSet.exe [142496 2015-07-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {0EA7FE6B-E60C-45A8-9550-1E13F07CE5E5} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\WINDOWS\system32\sipnotify.exe [338944 2019-10-11] (Microsoft Corporation) [Datei ist nicht signiert] Task: {1012AC33-9435-4A75-8433-EC7B3082F7B0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {153DA664-03F8-4EB6-B282-D962D2AAFA3C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993288 2021-02-05] (Microsoft Corporation -> Microsoft Corporation) Task: {157113B5-7432-4BDB-BE5A-56D7CA092829} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {17AA81F4-63B0-4167-B857-F8CE93D2D4A1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993288 2021-02-05] (Microsoft Corporation -> Microsoft Corporation) Task: {1B326324-5953-42A9-960D-E4FA0D8CB31C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {24F2B129-997B-4606-9044-10FAA2F675D3} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {25A188C8-9DBA-46B5-A3D4-47B2A13F2A58} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2D178485-207E-4ADA-81DC-1EBD480AE8E7} - System32\Tasks\Fujitsu\RadioSwitchUtility\ChangeAirplaneModeToOn => "sc" control FJRadioSwitchUtilityService 130 Task: {2DE9EE1B-C66C-4BDE-BE0E-7794AB569FE0} - System32\Tasks\Fujitsu\RadioSwitchUtility\NotifyAirplaneModeOnFailed => C:\Program Files\Fujitsu\RadioSwitchUtility\BalloonNotification.exe [119456 2015-09-25] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {34A35627-7109-421A-B286-2BEB40C04D3C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {357777BB-6188-432B-9917-4E966F37A86D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {38CEC35F-89D6-48A7-A1B7-7E10BBE048E1} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115048 2021-02-05] (Microsoft Corporation -> Microsoft Corporation) Task: {3B77A372-B854-47B2-A45F-5A2BEC04372D} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {3B9D1B9C-1B77-4914-AD16-D6C82CBA0CDD} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3F8F0BD2-BADF-4F8A-B731-5318908332B9} - System32\Tasks\Fujitsu\StatusPanelSwitch\ShowDialogToRestartSuspendPrevention => C:\Program Files\Fujitsu\StatusPanelSwitch\StatusPanelSwitch.exe [555864 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {40E0BA65-DFB8-4B87-8A9F-9B7AB68F31D6} - System32\Tasks\Fujitsu\StatusPanelSwitch\StopPopupPrevention => C:\Program Files\Fujitsu\StatusPanelSwitch\DeviceEngine\StopPopupPrevention.exe [48800 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {46F098E1-3D36-46DD-B158-5C978C4C5E4B} - System32\Tasks\Fujitsu\StatusPanelSwitch\AdjustEcoLED => C:\Program Files\Fujitsu\StatusPanelSwitch\StatusPanelSwitch.exe [555864 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {472DB513-6334-4FE8-AFDE-15A909D897E2} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {48222908-1207-4962-9FF0-ED857CDC4792} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {4A4092CB-530E-4563-8821-09699D663FC9} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {4C7E1CFE-FD99-4CB4-968A-F10A6441A6AD} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {4E1F2D6C-A3DC-4D39-A2AB-AB721A82CB03} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {4F650B9E-2618-48CF-9883-84E5E9F66DA3} - System32\Tasks\Fujitsu\DeskUpdate => C:\Program Files (x86)\Fujitsu\DeskUpdate\ducmd.exe [119152 2020-06-24] (FUJITSU CLIENT COMPUTING LIMITED -> ) Task: {57E47776-AFAD-4B46-B7E7-C0476C2A03B5} - System32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1537960 2021-01-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5D31B614-EA88-478C-9382-C595142EB377} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {60D6BC97-6660-4418-8579-DB7C2CB7B065} - System32\Tasks\Fujitsu\StatusPanelSwitch\EnableLANAdapter => C:\Program Files\Fujitsu\StatusPanelSwitch\DeviceEngine\LANCtrl.exe [30368 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {78C994EA-6D00-4147-BD18-A06F0FEEDD84} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {7AB865B7-05F6-41D0-8487-015FE5D2506A} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {7E2DC363-FA99-445F-B045-DB4C9007DF09} - System32\Tasks\Fujitsu\RadioSwitchUtility\NotifyAirplaneModeOff => C:\Program Files\Fujitsu\RadioSwitchUtility\BalloonNotification.exe [119456 2015-09-25] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {8396B92B-CC27-4B25-B4AE-BCDA231A61EC} - System32\Tasks\Fujitsu\StatusPanelSwitch\PressHoldButton => C:\Program Files\Fujitsu\StatusPanelSwitch\PressHoldButton.exe [66720 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {888FDDBB-8DE4-412A-8BA6-48FE92E9B7C7} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {89DFD4D9-3F47-43D1-BECA-F4B61FB4F975} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\Thunderbolt.exe [363160 2015-11-05] (Intel(R) Client Connectivity Division SW -> Intel Corporation) Task: {8DEA09F6-73C1-4784-AE9D-7C4AACD6F7F7} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1126296 2021-02-05] (Microsoft Corporation -> Microsoft Corporation) Task: {8FAB32B1-D940-4837-9963-F5B37A9D6DE0} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [677344 2021-01-29] (Mozilla Corporation -> Mozilla Foundation) Task: {979F6FF6-9C8C-438E-82CE-22E1854CE967} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {9C72644A-029F-43B8-82A8-4958D6A381B4} - System32\Tasks\Fujitsu\StatusPanelSwitch\QuickNoteTaking => C:\Program Files\Fujitsu\StatusPanelSwitch\ScreenCapture.exe [505504 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {A0D7E0A6-5E8E-45F7-8BBA-107741570498} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe [338944 2019-10-11] (Microsoft Corporation) [Datei ist nicht signiert] Task: {A2E78248-D6B3-44E0-8E4A-BD237AA24E42} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService Task: {A73541C9-4B74-4F33-826F-4BB9E6C96E6E} - System32\Tasks\Fujitsu\StatusPanelSwitch\NotifyOfCradleStatusChange => C:\Program Files\Fujitsu\StatusPanelSwitch\StatusPanelSwitch.exe [555864 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {A8A3B14C-92DA-4D62-9C99-DB16B131A206} - System32\Tasks\Fujitsu\RadioSwitchUtility\ChangeAirplaneModeToOff => "sc" control FJRadioSwitchUtilityService 129 Task: {A980052B-2B1B-4250-BAB1-58D24D3F78A7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-11-21] (Google Inc -> Google Inc.) Task: {AAE29551-C981-4B61-9B44-FF453E99AE56} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {AB05B368-13F7-468A-9B30-E553C06B5449} - System32\Tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask => C:\Windows\system32\\BthUdTask.exe [40448 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {AE25E78E-8E07-4020-B1D6-284CAB657079} - System32\Tasks\Fujitsu\StatusPanelSwitch\ResetDeviceCurrentStatus => C:\Program Files\Fujitsu\StatusPanelSwitch\SetDeviceCurrentStatus.exe [43168 2015-11-07] (FUJITSU LIMITED -> Fujitsu Limited) Task: {AE68CDF3-BCAA-4E8B-98C4-63893A31DD20} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {B024F80B-E64C-4588-99B0-A44603D4EF51} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B2E54F99-7C72-404A-A970-45BCB0CE542C} - System32\Tasks\Fujitsu\RadioSwitchUtility\NotifyAirplaneModeOn => C:\Program Files\Fujitsu\RadioSwitchUtility\BalloonNotification.exe [119456 2015-09-25] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {B3B25EFC-CAC3-4E68-8FC1-D15BADC866B4} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {B46DCB02-1641-40E2-B1E9-8CA74D033D3D} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B75ACE1C-BE26-4DFA-A4FB-B4D305BC5961} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BC6C546F-6CED-4FD3-B890-36EB08170BDD} - System32\Tasks\Fujitsu\RadioSwitchUtility\NotifyAirplaneModeOffFailed => C:\Program Files\Fujitsu\RadioSwitchUtility\BalloonNotification.exe [119456 2015-09-25] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {C0661ED2-A1DC-4BE1-9183-3464A9664996} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C0D07867-CF87-49B6-9895-995A35616429} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {C58F9BAF-196B-45E0-8CDB-3AA80A86754C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D6158B8A-A68D-456E-88B2-A1D0A978C3C2} - System32\Tasks\Fujitsu\RadioSwitchUtility\ChangeAirplaneModeToggle => "sc" control FJRadioSwitchUtilityService 128 Task: {D87E840B-A2B7-4783-91A4-4F7B1DAB8B18} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {DCC2DD4F-D343-4FA1-BF25-FFA10FAB4C1D} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [1831064 2015-11-05] (Intel(R) Client Connectivity Division SW -> Intel Corporation) Task: {E6A376AE-3910-4E15-9D61-58A6A281383C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115048 2021-02-05] (Microsoft Corporation -> Microsoft Corporation) Task: {E82C8FE2-5887-4E41-AC9B-6B9C0DB3BEE7} - System32\Tasks\Fujitsu\StatusPanelSwitch\StopSuspendPrevention => C:\Program Files\Fujitsu\StatusPanelSwitch\DeviceEngine\StopSuspendPrevention.exe [48800 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {E945F923-2681-422B-8F3D-DA82FB764D47} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {F02B0B05-0225-4C08-B20A-5C2EFC1241C6} - System32\Tasks\EPSON DS-1630 Update => C:\Program Files (x86)\epson\Epson Scan 2\Update\e_dtsksd.exe [690176 2018-03-30] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Task: {F0B5C478-8525-46C6-BB3C-CD3484842B08} - System32\Tasks\Fujitsu\PointingDeviceUtility\SetDriverIfFuj02b1DisableOnLogon => C:\Program Files\Fujitsu\PointingDeviceUtility\FJPDAutoSet.exe [142496 2015-07-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {F8CE5A30-112F-4049-BEC0-B4E43EC21F6A} - System32\Tasks\Fujitsu\StatusPanelSwitch\DisableLANAdapter => C:\Program Files\Fujitsu\StatusPanelSwitch\DeviceEngine\LANCtrl.exe [30368 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) Task: {FE0EF540-ECD7-433D-82E8-69051F9FEFF0} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\EPSON DS-1630 Update.job => C:\Program Files (x86)\epson\Epson Scan 2\Update\e_dtsksd.exe0/EXE_S:EPSON DS-1630,ES013A.DAT /F:Update*****-NOTEBOOK\UserĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{49DE1369-01D2-40DD-A0E4-CA938630BB5D}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{F5C9E060-4261-4E80-987B-039625476B5A}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-02] FireFox: ======== FF DefaultProfile: o1gid7vf.default-1546366018701 FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\o1gid7vf.default-1546366018701 [2021-02-05] FF Extension: (Firefox DevTools ADB Extension) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\o1gid7vf.default-1546366018701\Extensions\adb@mozilla.org.xpi [2019-02-13] [UpdateUrl:hxxps://ftp.mozilla.org/pub/labs/devtools/adb-extension/win32/update.json] FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\o1gid7vf.default-1546366018701\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2021-01-29] FF Extension: (Video DownloadHelper) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\o1gid7vf.default-1546366018701\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2020-12-18] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1227197.dll [2017-02-20] (Adobe Systems, Inc.) [Datei ist nicht signiert] FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Datei ist nicht signiert] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Keine Datei] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Keine Datei] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-02-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-12-07] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-616903011-1919554280-1958241982-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\User\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-05-07] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) Chrome: ======= CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2019-12-04] CHR Notifications: Default -> hxxps://www.facebook.com CHR DefaultSearchURL: Default -> hxxps://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms} CHR DefaultSuggestURL: Default -> hxxps://www.bing.com/osjson.aspx?FORM=__PARAM__DF&PC=__PARAM__&query={searchTerms} CHR Extension: (Präsentationen) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-21] CHR Extension: (Docs) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-21] CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-11-21] CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-11-21] CHR Extension: (Bing Search Engine) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmkckgpgekmanipelfidlhmkfcjicion [2019-11-07] CHR Extension: (Tabellen) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-21] CHR Extension: (Google Docs Offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-17] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-11-07] CHR Extension: (Google Mail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-11-07] CHR Extension: (Chrome Media Router) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-07] CHR HKU\S-1-5-21-616903011-1919554280-1958241982-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bmkckgpgekmanipelfidlhmkfcjicion] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8902024 2021-02-05] (Microsoft Corporation -> Microsoft Corporation) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [145224 2018-03-30] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 FJRadioSwitchUtilityService; C:\Program Files\Fujitsu\RadioSwitchUtility\RadioSwitchUtilityDaemon.exe [159576 2015-09-25] (FUJITSU LIMITED -> FUJITSU LIMITED) R2 FJStatusPanelSwitchDaemon; C:\Program Files\Fujitsu\StatusPanelSwitch\StatusPanelSwitchDaemon.exe [430240 2015-11-07] (FUJITSU LIMITED -> FUJITSU LIMITED) S2 Fuj02e3DriverUtilityService; C:\WINDOWS\System32\DriverStore\FileRepository\fuj02e3.inf_amd64_f13688afded4a291\fuj02e3-utility.exe [346576 2018-05-25] (Microsoft Windows Hardware Compatibility Publisher -> FUJITSU LIMITED) R2 FUJ02E3Service; C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [63648 2015-07-02] (FUJITSU LIMITED -> FUJITSU LIMITED) S2 MagentaCLOUDMaintenanceService; C:\Program Files (x86)\Telekom\MagentaCloud\Updater\MaintenanceService.exe [947632 2019-12-15] (Deutsche Telekom AG -> Deutsche Telekom AG) R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6970968 2020-08-23] (Malwarebytes Inc -> Malwarebytes) R2 NVWMI; C:\WINDOWS\system32\nvwmi64.exe [4788120 2021-01-12] (NVIDIA Corporation -> NVIDIA Corporation) R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-08] (Nuance Communications, Inc. -> Nuance Communications, Inc.) R2 PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2220032 2015-10-22] (FUJITSU LIMITED) [Datei ist nicht signiert] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5198064 2021-02-02] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SwiService; C:\Program Files (x86)\Sierra Wireless Inc\Utils\SWIService.exe [801544 2015-07-30] (Sierra Wireless, Inc. -> Sierra Wireless, Inc.) R2 valWBFPolicyService; C:\WINDOWS\System32\valWBFPolicyService.exe [83928 2018-09-14] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WirelessKB850NotificationService; C:\WINDOWS\system32\WirelessKB850NotificationService.exe [174256 2018-05-14] (Microsoft Corporation -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] R3 clwvd6; C:\WINDOWS\System32\drivers\clwvd6.sys [41704 2013-10-29] (CyberLink Corp. -> CyberLink Corporation) R3 dc3d; C:\WINDOWS\System32\drivers\dc3d.sys [47616 2011-05-18] (Hardware Group Test Cert -> Microsoft Corporation) R3 FBIOSDRV; C:\WINDOWS\System32\DriverStore\FileRepository\fbiosdrv.inf_amd64_bc9210767f641cd2\FBIOSDRV.sys [33128 2018-05-25] (FUJITSU LIMITED -> FUJITSU LIMITED) R3 fuj02e3; C:\WINDOWS\System32\DriverStore\FileRepository\fuj02e3.inf_amd64_f13688afded4a291\fuj02e3.sys [67856 2018-05-25] (FUJITSU LIMITED -> FUJITSU LIMITED) R3 GabiAcpi; C:\WINDOWS\System32\drivers\GabiAcpi.sys [40488 2020-07-15] (FUJITSU CLIENT COMPUTING LIMITED -> Fujitsu Technology Solutions) R3 guardian2; C:\WINDOWS\System32\Drivers\oz776x64.sys [97464 2015-06-08] (BayHub Technology Inc. -> O2Micro) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [216056 2021-02-05] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-08-23] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-08-23] (Malwarebytes Inc -> Malwarebytes) R3 MpKsl141f3ba8; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D95AE37C-8CB8-4AA0-B01B-CB0A5E7969D8}\MpKslDrv.sys [47344 2021-02-05] (Microsoft Windows -> Microsoft Corporation) S3 swg3kmbb00; C:\WINDOWS\System32\drivers\swg3kmbb00.sys [556816 2015-07-30] (Sierra Wireless, Inc. -> Sierra Wireless Incorporated) S3 swg3knmea00; C:\WINDOWS\system32\DRIVERS\swg3knmea00.sys [276720 2015-07-30] (Sierra Wireless, Inc. -> Sierra Wireless Incorporated) S3 swg3kser00; C:\WINDOWS\system32\DRIVERS\swg3kser00.sys [285456 2015-07-30] (Sierra Wireless, Inc. -> Sierra Wireless Incorporated) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-12-06] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429296 2020-12-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-06] (Microsoft Windows -> Microsoft Corporation) R3 WirelessKeyboardFilter; C:\WINDOWS\System32\drivers\WirelessKeyboardFilter.sys [49336 2018-03-11] (Microsoft Corporation -> Microsoft Corporation) U3 idsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-05 10:38 - 2021-02-05 10:40 - 000044878 _____ C:\Users\User\Desktop\FRST.txt 2021-02-05 10:29 - 2021-02-05 10:29 - 000000000 ____D C:\Users\User\Desktop\FRST-OlderVersion 2021-02-05 10:27 - 2021-02-05 10:39 - 000000000 ____D C:\FRST 2021-02-05 10:24 - 2021-02-05 10:25 - 000001420 _____ C:\Users\User\Desktop\Malwarebytes_Scan.txt 2021-02-05 10:12 - 2021-01-12 23:16 - 001780960 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2021-02-05 10:12 - 2021-01-12 23:16 - 001780960 _____ C:\WINDOWS\system32\vulkaninfo.exe 2021-02-05 10:12 - 2021-01-12 23:16 - 001371352 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-02-05 10:12 - 2021-01-12 23:16 - 001371352 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2021-02-05 10:12 - 2021-01-12 23:16 - 001086680 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2021-02-05 10:12 - 2021-01-12 23:16 - 001086680 _____ C:\WINDOWS\system32\vulkan-1.dll 2021-02-05 10:12 - 2021-01-12 23:16 - 000946400 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2021-02-05 10:12 - 2021-01-12 23:16 - 000946400 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2021-02-05 10:12 - 2021-01-12 23:16 - 000456600 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2021-02-05 10:12 - 2021-01-12 23:16 - 000351128 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2021-02-05 10:12 - 2021-01-12 23:14 - 001486576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2021-02-05 10:12 - 2021-01-12 23:14 - 001146776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2021-02-05 10:12 - 2021-01-12 23:14 - 000816880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2021-02-05 10:12 - 2021-01-12 23:14 - 000674544 _____ C:\WINDOWS\system32\nvofapi64.dll 2021-02-05 10:12 - 2021-01-12 23:14 - 000671128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2021-02-05 10:12 - 2021-01-12 23:14 - 000555248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2021-02-05 10:12 - 2021-01-12 23:14 - 000543640 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 006654872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 005884144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 003916016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 002376432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 002078616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 001723288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6445266.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 001571224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 001482992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6445266.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 000813976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2021-02-05 10:12 - 2021-01-12 23:13 - 000657304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2021-02-05 10:12 - 2021-01-12 23:11 - 004708720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2021-02-05 09:41 - 2021-02-05 09:41 - 002086424 _____ (Malwarebytes) C:\Users\User\Downloads\MBSetup.exe 2021-02-02 17:21 - 2021-02-05 10:29 - 002297856 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2021-02-02 15:23 - 2021-02-02 15:23 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-02-02 15:22 - 2021-02-02 15:22 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-02-02 15:22 - 2021-02-02 15:22 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-02-02 15:22 - 2021-02-02 15:22 - 000467968 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2021-02-02 15:22 - 2021-02-02 15:22 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-02-02 15:22 - 2021-02-02 15:22 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll 2021-02-02 15:22 - 2021-02-02 15:22 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll 2021-02-02 15:22 - 2021-02-02 15:22 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-02-02 15:22 - 2021-02-02 15:22 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll 2021-02-02 15:22 - 2021-02-02 15:22 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-02-02 15:21 - 2021-02-02 15:21 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-02-02 15:21 - 2021-02-02 15:21 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-02-02 15:21 - 2021-02-02 15:21 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-02-02 15:21 - 2021-02-02 15:21 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-02-02 15:21 - 2021-02-02 15:21 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-02-02 15:21 - 2021-02-02 15:21 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-02-02 15:21 - 2021-02-02 15:21 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-02-02 15:20 - 2021-02-02 15:20 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-02-02 15:20 - 2021-02-02 15:20 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-02-02 15:20 - 2021-02-02 15:20 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-02-02 15:20 - 2021-02-02 15:20 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-02-02 15:20 - 2021-02-02 15:20 - 000010894 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-02-02 15:19 - 2021-02-02 15:19 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-02-02 15:19 - 2021-02-02 15:19 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-02-02 15:19 - 2021-02-02 15:19 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-02-02 15:18 - 2021-02-02 15:18 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-02-02 15:18 - 2021-02-02 15:18 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-02-02 15:18 - 2021-02-02 15:18 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-02-02 15:18 - 2021-02-02 15:18 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-02-02 15:18 - 2021-02-02 15:18 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-02-02 15:18 - 2021-02-02 15:18 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-02-02 15:17 - 2021-02-02 15:17 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-02-02 15:16 - 2021-02-02 15:16 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-02-02 15:16 - 2021-02-02 15:16 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-02-02 15:16 - 2021-02-02 15:16 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-02-02 15:16 - 2021-02-02 15:16 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-02-02 15:16 - 2021-02-02 15:16 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-02-02 15:15 - 2021-02-02 15:15 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-02-02 15:15 - 2021-02-02 15:15 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-02-02 15:14 - 2021-02-02 15:14 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-02-02 15:14 - 2021-02-02 15:14 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-02-02 15:14 - 2021-02-02 15:14 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-02-02 15:14 - 2021-02-02 15:14 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-02-02 15:14 - 2021-02-02 15:14 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll 2021-01-29 13:55 - 2021-01-29 13:55 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-01-29 13:46 - 2021-02-02 17:32 - 000000000 ____D C:\Program Files\Mozilla Firefox ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-05 10:42 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-02-05 10:36 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-02-05 10:24 - 2020-11-18 23:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-02-05 10:19 - 2016-09-14 00:45 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-02-05 10:17 - 2021-01-02 19:58 - 000003566 _____ C:\WINDOWS\system32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-05 10:17 - 2020-04-10 09:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2021-02-05 10:17 - 2017-02-28 16:45 - 000000000 ____D C:\ProgramData\NVIDIA 2021-02-05 10:16 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-02-05 10:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help 2021-02-05 10:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-02-05 10:05 - 2020-08-23 12:48 - 000216056 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-02-05 09:47 - 2021-01-02 17:42 - 000000000 ___DC C:\WINDOWS\Panther 2021-02-05 09:39 - 2017-03-11 01:13 - 000000000 ____D C:\Users\User\AppData\LocalLow\Mozilla 2021-02-05 09:35 - 2017-04-03 06:40 - 000000000 ____D C:\Users\User\Documents\YouCam 2021-02-05 09:35 - 2017-02-28 08:02 - 000000000 ___RD C:\Users\User\OneDrive 2021-02-05 09:31 - 2017-02-28 08:02 - 000000000 __SHD C:\Users\User\IntelGraphicsProfiles 2021-02-05 09:27 - 2019-12-16 13:19 - 000000000 ____D C:\ProgramData\Synaptics 2021-02-05 09:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-02-05 09:26 - 2020-12-01 18:56 - 000008192 ___SH C:\DumpStack.log.tmp 2021-02-05 09:26 - 2020-11-19 00:51 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-02-02 17:42 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-02-02 17:39 - 2021-01-02 19:48 - 001834832 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-02-02 17:39 - 2019-12-07 15:51 - 000786980 _____ C:\WINDOWS\system32\perfh007.dat 2021-02-02 17:39 - 2019-12-07 15:51 - 000168058 _____ C:\WINDOWS\system32\perfc007.dat 2021-02-02 17:34 - 2020-11-18 23:50 - 000461976 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-02-02 17:32 - 2017-02-28 11:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-02-02 17:29 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-02-02 17:29 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-02-02 17:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-02-02 17:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2021-02-02 17:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-02-02 17:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-02-02 17:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-02-02 17:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-02-02 17:28 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-02-02 17:28 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-02-02 17:28 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-02-02 17:28 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-02-02 15:31 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2021-02-02 15:31 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-02-02 15:13 - 2020-11-19 00:53 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2021-02-02 14:33 - 2017-03-13 07:16 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-02-02 14:13 - 2021-01-04 13:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2021-02-02 14:06 - 2020-11-19 00:53 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-02-02 14:06 - 2020-11-19 00:53 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-02-02 14:06 - 2020-11-19 00:53 - 000002280 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk 2021-02-02 14:04 - 2019-12-07 11:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2021-02-02 13:59 - 2017-03-13 07:15 - 135062968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-01-29 15:34 - 2019-12-04 17:49 - 000000000 ____D C:\Users\User\AppData\Local\Packages 2021-01-29 14:01 - 2019-12-04 17:55 - 000000000 ____D C:\Users\User\AppData\Local\PlaceholderTileLogoFolder 2021-01-29 13:55 - 2018-02-11 20:26 - 000000942 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-01-29 13:52 - 2019-11-09 01:11 - 000000000 ____D C:\Program Files\KeyboardNotification 2021-01-29 13:50 - 2017-11-21 22:04 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-01-29 13:50 - 2017-11-21 22:04 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-01-29 13:50 - 2017-11-21 22:04 - 000002258 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2021-01-29 13:47 - 2010-11-21 04:27 - 000799104 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2021-01-29 13:42 - 2021-01-04 12:55 - 000003606 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6c80ef823443d 2021-01-29 13:42 - 2020-11-19 00:53 - 000003700 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-01-12 23:16 - 2017-02-28 16:46 - 004788120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwmi64.exe 2021-01-12 23:11 - 2020-12-02 16:45 - 005397312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2021-01-12 22:56 - 2020-12-02 16:45 - 000058714 _____ C:\WINDOWS\system32\nvinfo.pb 2021-01-12 22:56 - 2017-02-28 16:46 - 000014175 _____ C:\WINDOWS\system32\nvPerfProvider.man 2021-01-07 17:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat 2021-01-07 16:07 - 2017-02-28 08:02 - 000000592 __RSH C:\ProgramData\ntuser.pol ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2018-04-17 14:27 - 2018-04-17 14:27 - 000000165 _____ () C:\Users\User\AppData\Roaming\Opusbext.dat ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-02-2021 durchgeführt von User (05-02-2021 10:43:54) Gestartet von C:\Users\User\Desktop Windows 10 Pro Version 20H2 19042.746 (X64) (2021-01-02 18:59:44) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-616903011-1919554280-1958241982-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-616903011-1919554280-1958241982-503 - Limited - Disabled) Gast (S-1-5-21-616903011-1919554280-1958241982-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-616903011-1919554280-1958241982-1003 - Limited - Enabled) User (S-1-5-21-616903011-1919554280-1958241982-1000 - Administrator - Enabled) => C:\Users\User WDAGUtilityAccount (S-1-5-21-616903011-1919554280-1958241982-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Microsoft Security Essentials (Enabled - Up to date) {CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 20.013.20074 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 24.0.0.180 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.7.197 - Adobe Systems, Inc.) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.5.14 - Canon Inc.) Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.6.0 - Canon Inc.) Canon MX530 series Benutzerregistrierung (HKLM-x32\...\Canon MX530 series Benutzerregistrierung) (Version: - *Canon Inc.) Canon MX530 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX530_series) (Version: 1.01 - Canon Inc.) Canon MX530 series On-screen Manual (HKLM-x32\...\Canon MX530 series On-screen Manual) (Version: 7.6.1 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.) ConvertHelper 3.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1) (Version: - DownloadHelper) CyberLink YouCam 6 (HKLM-x32\...\{A9CEDD6E-4792-493e-BB35-D86D2E188A5A}) (Version: 6.0.4404.0 - CyberLink Corp.) DeskUpdate (HKLM-x32\...\DeskUpdate_is1) (Version: 5.1.64.0 - Fujitsu Technology Solutions) Documentation Manager (HKLM\...\{1C8E0D25-2AD1-4A5B-885E-03256A0ED8B6}) (Version: 21.70.0.6 - Intel Corporation) Hidden Dynamic Application Loader Host Interface Service (HKLM\...\{0417E277-CEB0-4BED-97BC-122A7EAF7299}) (Version: 1.0.0.0 - Intel Corporation) Hidden ELAN Touchpad 15.12.2.5_X64_WHQL (HKLM\...\Elantech) (Version: 15.12.2.5 - ELAN Microelectronic Corp.) Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation) Epson Software Updater (HKLM-x32\...\{D2D9559D-359A-4C61-B93A-FE01AE2BFB75}) (Version: 4.5.4 - Seiko Epson Corporation) Fujitsu BIOS Driver (HKLM\...\{7292FFCF-FA9A-4585-AB80-A71961F931AF}) (Version: 2.0.10.0 - FUJITSU LIMITED) Hidden Fujitsu BIOS Driver (HKLM-x32\...\InstallShield_{7292FFCF-FA9A-4585-AB80-A71961F931AF}) (Version: 2.0.10.0 - FUJITSU LIMITED) Fujitsu Hotkey Utility (HKLM-x32\...\{C8E4B31D-337C-483D-822D-16F11441669B}) (Version: 3.80.2.0 - FUJITSU LIMITED) Hidden Fujitsu Hotkey Utility (HKLM-x32\...\InstallShield_{C8E4B31D-337C-483D-822D-16F11441669B}) (Version: 3.80.2.0 - FUJITSU LIMITED) Fujitsu MobilityCenter Extension Utility (HKLM\...\{EC314CDF-3521-482B-A21C-65AC95664814}) (Version: 4.01.00.000 - FUJITSU LIMITED) Hidden Fujitsu MobilityCenter Extension Utility (HKLM-x32\...\InstallShield_{EC314CDF-3521-482B-A21C-65AC95664814}) (Version: 4.01.00.000 - FUJITSU LIMITED) Fujitsu System Extension Utility (HKLM\...\{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}) (Version: 4.0.1.0 - FUJITSU CLIENT COMPUTING LIMITED) Fujitsu System Extension Utility (HKLM-x32\...\InstallShield_{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}) (Version: 3.6.3.0 - FUJITSU LIMITED) Function Manager (HKLM\...\{FFAA234C-E621-4787-A02D-5CD0852000D4}) (Version: 1.2.4.0 - FUJITSU LIMITED) Hidden Function Manager (HKLM-x32\...\InstallShield_{FFAA234C-E621-4787-A02D-5CD0852000D4}) (Version: 1.2.4.0 - FUJITSU LIMITED) Garmin USB Drivers (HKLM-x32\...\{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}) (Version: 2.3.1.0 - Garmin Ltd or its subsidiaries) Garmin WebUpdater (HKLM-x32\...\{AE1EC58E-B2AC-4959-A4C2-C38202A25239}) (Version: 2.5.6 - Garmin Ltd or its subsidiaries) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 88.0.4324.104 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden Image Resizer for Windows (64 bit) (HKLM\...\{617CA6E9-D5FB-4017-8130-82E68C56C34D}) (Version: 3.0.4802.35565 - Brice Lambson) Hidden Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson) Intel(R) Chipset Device Software (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2012.14.0.1517 - Intel Corporation) Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 20.2 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7986 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.9.8.1051 - Intel Corporation) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{2b32b7d0-4f9f-47c8-adb7-807e6cb2fb75}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 4.0.5.55 - Intel Corporation) Intel(R) Wireless Bluetooth(R)(patch version 18.1.1546.2762) (HKLM\...\{302600C1-6BDF-4FD1-1510-148929CC1385}) (Version: 18.1.1510.0550 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{8c595286-0f9e-42de-a0d4-969aba282637}) (Version: 20.50.0 - Intel Corporation) Intel® Software Installer (HKLM-x32\...\{872629d3-f307-4b6e-b774-0ebe7d6e9908}) (Version: 21.70.0.6 - Intel Corporation) Hidden Intel® USB 3.1 Device Driver (HKLM\...\{7DFE2F7E-3154-45D6-A468-4725DE033AC8}) (Version: 15.2.30.250 - Intel Corporation) LIFEBOOK Application Panel (HKLM\...\{6226477E-444F-4DFE-BA19-9F4F7D4565BC}) (Version: 8.5.11.0 - FUJITSU LIMITED) Hidden LIFEBOOK Application Panel (HKLM-x32\...\InstallShield_{6226477E-444F-4DFE-BA19-9F4F7D4565BC}) (Version: 8.5.11.0 - FUJITSU LIMITED) MagentaCLOUD Software (HKLM-x32\...\{FEC8AEE1-DB2B-4035-9A87-E081D557E664}) (Version: 6.1.0.12 - Deutsche Telekom AG) Malwarebytes version 4.1.2.73 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.2.73 - Malwarebytes) Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.6.8928.0 - Waves Audio Ltd.) Hidden Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.13628.20274 - Microsoft Corporation) Microsoft 365 - es-es (HKLM\...\O365HomePremRetail - es-es) (Version: 16.0.13628.20274 - Microsoft Corporation) Microsoft 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.13628.20274 - Microsoft Corporation) Microsoft 365 - it-it (HKLM\...\O365HomePremRetail - it-it) (Version: 16.0.13628.20274 - Microsoft Corporation) Microsoft 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 16.0.13628.20274 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 88.0.705.56 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.71 - ) Microsoft OneDrive (HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\OneDriveSetup.exe) (Version: 20.201.1005.0009 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\Teams) (Version: 1.3.00.28779 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{0BCA8FBE-0C1C-4C65-98A3-5D34AAF41737}) (Version: 2.70.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) Mozilla Firefox 85.0 (x64 de) (HKLM\...\Mozilla Firefox 85.0 (x64 de)) (Version: 85.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0.2 - Mozilla) Mozilla Thunderbird 78.6.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 78.6.0 (x86 de)) (Version: 78.6.0 - Mozilla) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Nuance PaperPort 12 (HKLM-x32\...\{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}) (Version: 12.1.0000 - Nuance Communications, Inc.) Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc) NVIDIA Grafiktreiber 452.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 452.66 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NVIDIA Quadro View 200.93 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 200.93 - NVIDIA Corporation) NVIDIA WMI 2.35.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.35.0 - NVIDIA Corporation) O2Micro OZ776 SCR Driver (HKLM\...\{AFC83FEB-9F7A-4F30-9FF2-6AC1CD86CD45}) (Version: 2.1.4.240GS - O2Micro) Hidden O2Micro OZ776 SCR Driver (HKLM-x32\...\InstallShield_{AFC83FEB-9F7A-4F30-9FF2-6AC1CD86CD45}) (Version: 2.1.4.240GS - O2Micro) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 25.0.4 - OBS Project) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0410-0000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0413-0000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0C0A-0000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden OpenOffice 4.1.7 (HKLM-x32\...\{81D7585D-3E44-4984-B99B-911492419D3E}) (Version: 4.17.9800 - Apache Software Foundation) ORCA AVA (HKLM-x32\...\{AB5D7FCD-BFE6-4DE2-92D6-7C2FB97E0F2F}) (Version: 20.0.2.115 - ORCA Software GmbH) PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 1.00.0001 - Nuance Communications, Inc.) PicPick (HKLM-x32\...\PicPick) (Version: 5.0.3 - NGWIN) Pixum Fotowelt (HKLM-x32\...\Pixum Fotowelt) (Version: 7.0.4 - CEWE Stiftung u Co. KGaA) Plugfree NETWORK (HKLM\...\{482BDA98-4E64-46D0-A911-4932D7B9D0AE}) (Version: 7.3.001 - FUJITSU LIMITED) Hidden Plugfree NETWORK (HKLM\...\{7BA64D21-EE46-4a9a-8145-52B0175C3F86}) (Version: 7.3.0.1 - FUJITSU LIMITED) Pointing Device Utility (HKLM\...\{DDC49774-40B9-47AE-9C63-5569C08C4082}) (Version: 2.3.1.0 - FUJITSU LIMITED) Hidden Pointing Device Utility (HKLM-x32\...\InstallShield_{DDC49774-40B9-47AE-9C63-5569C08C4082}) (Version: 2.3.1.0 - FUJITSU LIMITED) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.21292 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8569 - Realtek Semiconductor Corp.) Scansoft PDF Professional (HKLM-x32\...\{068724F8-D8BE-4B43-8DDD-B9FE9E49FD76}) (Version: - ) Hidden Sierra Wireless Fujitsu Mobile Broadband Driver Package (HKLM-x32\...\SWIFujitsuDrvInstaller) (Version: 6.16.4323.0303 - Sierra Wireless, Inc.) Sierra Wireless Skylight (HKLM\...\{84B14718-3004-469F-85A8-611686FE750B}) (Version: 6.0.4290.6603 - Sierra Wireless, Inc.) SketchUp 2017 (HKLM\...\{C711666A-E8CC-4E2A-802F-BAA35E76045F}) (Version: 17.2.2555 - Trimble Navigation Limited) SketchUp-Import 2016-2017 (HKLM-x32\...\{063925DB-9D8C-48E2-8F04-1B7038B6C783}) (Version: 2.2.0 - ) Sky Go 10.2.0.0 (HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\com.bskyb.skygoplayer_is1) (Version: 10.2.0.0 - Sky) Skype Version 8.58 (HKLM-x32\...\Skype_is1) (Version: 8.58 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\Spotify) (Version: 1.1.39.612.g1e7e78a4 - Spotify AB) swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Telegram Desktop version 2.1.6 (HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 2.1.6 - Telegram FZ-LLC) Thunderbolt(TM) Software (HKLM-x32\...\{B0E8A8CA-5A40-49C3-BE5E-9076664DB9AA}) (Version: 15.3.39.250 - Intel Corporation) Validity WBF Driver (HKLM\...\{02D59CF0-9A4C-470C-B9EC-0F0DCE8FA93E}) (Version: 4.5.237.0 - Validity Sensors, Inc.) Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM-x32\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation) VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN) Windows Driver Package - FUJITSU (FUJ02E3) System (06/01/2009 1.20) (HKLM\...\8C5090DA899AFB3A2C18265BC30EA144F4FCC1F3) (Version: 06/01/2009 1.20 - FUJITSU) Windows Driver Package - Fujitsu (GabiAcpi) System (12/15/2015 1.0.0.0) (HKLM\...\DEDC835C009C29F298DF424460F109016F0D2D89) (Version: 12/15/2015 1.0.0.0 - Fujitsu) Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin) Wireless Radio Switch Utility (HKLM\...\{B066AB17-D209-41C4-A469-EB0DD8EDC36A}) (Version: 1.0.2.0 - FUJITSU LIMITED) Hidden Wireless Radio Switch Utility (HKLM-x32\...\InstallShield_{B066AB17-D209-41C4-A469-EB0DD8EDC36A}) (Version: 1.0.2.0 - FUJITSU LIMITED) Zoom (HKU\S-1-5-21-616903011-1919554280-1958241982-1000\...\ZoomUMX) (Version: 5.0 - Zoom Video Communications, Inc.) Zoom Outlook Plugin (HKLM-x32\...\{BB570A23-18DB-45A0-B445-DF6DA375B211}) (Version: 4.8.17303 - Zoom) Packages: ========= Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-01-02] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-01-02] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-02-05] (Microsoft Studios) [MS Ad] ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{0D327DA6-B4DF-4842-B833-2CFF84F0948F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2017\acad.exe /Automation => Keine Datei CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileCoAuthLib64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2018 - English\en-US\dwgviewrficn.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{49E0BE0A-39E0-4932-B7BE-F249D56ACD31}\InprocServer32 -> csp16.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{720DB9AF-D62C-4ED0-A377-429C22312852}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2017\acad.exe => Keine Datei CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{B6EB585B-B467-4E46-A9C7-48D7D6FD26CB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2018 - English\dwgviewr.exe => Keine Datei CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\User\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-616903011-1919554280-1958241982-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2017\de-DE\acadficn.dll => Keine Datei ShellIconOverlayIdentifiers: [ MagentaOverlayIconCheck] -> {c7cbfc67-eaa0-31a6-8716-2094818cc658} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ShellIconOverlayIdentifiers: [ MagentaOverlayIconCheckCrypt] -> {ef9ff704-9d03-3efc-b43e-10ce1d8f3da3} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ShellIconOverlayIdentifiers: [ MagentaOverlayIconError] -> {d2881291-dbf9-387b-b2f6-b77c006f2fbd} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ShellIconOverlayIdentifiers: [ MagentaOverlayIconErrorCrypt] -> {b432e860-6894-321a-bc55-bb09db6ab3a4} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ShellIconOverlayIdentifiers: [ MagentaOverlayIconSync] -> {1ec40561-9794-316f-b39e-bbaffeae32ee} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ShellIconOverlayIdentifiers: [ MagentaOverlayIconSyncCrypt] -> {88394625-baac-3a0b-a182-924a75bb0022} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers1: [Image Resizer] -> {51B4D7E5-7568-4234-B4BB-47FB3C016A69} => C:\Program Files\Image Resizer for Windows\ShellExtensions.dll [2013-02-23] (Brice Lambson) [Datei ist nicht signiert] ContextMenuHandlers1: [MagentaCopyExtension] -> {4c6afdda-0e7f-3648-bbfe-cdc27038a5a9} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ContextMenuHandlers1: [MagentaShareExtension] -> {63b5f11c-b10f-3e50-94a5-5145a5597f5e} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => C:\Program Files\PDFCreator\PDFCreatorShell.DLL -> Keine Datei ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-23] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers4: [MagentaCopyExtension] -> {4c6afdda-0e7f-3648-bbfe-cdc27038a5a9} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ContextMenuHandlers4: [MagentaShareExtension] -> {63b5f11c-b10f-3e50-94a5-5145a5597f5e} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei ContextMenuHandlers5: [HiDriveCreateCryptContainerExtension] -> {b18bf273-3c74-38aa-b05c-0465ddd1488c} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Keine Datei ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_72e516c32b54a52f\igfxDTCM.dll [2020-07-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [MagentaOpenSettings] -> {9597ffd7-f281-382e-8d33-6f76030f727b} => C:\Program Files (x86)\Telekom\MagentaCloud\ShellExtensions\MagentaCloudShellExtensions.dll [2019-10-28] (Deutsche Telekom AG -> DEUTSCHE TELEKOM AG) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-11-20] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers5: [NvQuadroView] -> {1E9B04FB-F9E5-4718-997B-B8DA88302A48} => C:\Program Files\NVIDIA Corporation\nview\nvshell.dll [2021-01-12] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-08-23] (Malwarebytes Corporation -> Malwarebytes) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] ShortcutWithArgument: C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2005-09-07 13:03 - 2005-09-07 13:03 - 000036864 _____ (Black Ice Software, Inc.) [Datei ist nicht signiert] C:\Program Files (x86)\Nuance\PaperPort\blicectr.dll 2013-02-23 11:47 - 2013-02-23 11:47 - 000166400 _____ (Brice Lambson) [Datei ist nicht signiert] C:\Program Files\Image Resizer for Windows\ShellExtensions.dll 2015-10-23 03:09 - 2015-10-23 03:09 - 002427392 _____ (FUJITSU LIMITED) [Datei ist nicht signiert] C:\Program Files\Fujitsu\Plugfree NETWORK\PFNCommon.dll 2015-10-23 03:09 - 2015-10-23 03:09 - 002281984 _____ (FUJITSU LIMITED) [Datei ist nicht signiert] C:\Program Files\Fujitsu\Plugfree NETWORK\PFNWLAN.DLL 2021-01-08 14:55 - 2021-01-08 14:55 - 000427008 _____ (FUJITSU LIMITED) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\PFNLocSet\15b0e4d1e5b844d6956197ff7bb2ab90\PFNLocSet.ni.dll 2021-01-08 14:55 - 2021-01-08 14:55 - 000476672 _____ (FUJITSU LIMITED) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\PFNSwData\5da304de6bdfc73941b2b80c91145ea5\PFNSwData.ni.dll 2017-02-28 11:57 - 2016-10-04 15:51 - 000076800 _____ (Igor Pavlov) [Datei ist nicht signiert] C:\Program Files\7-Zip\7-zip.dll 2021-01-02 19:39 - 2021-01-02 19:39 - 001093120 _____ (Microsoft Corporation) [Datei ist nicht signiert] C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80U.DLL 2021-01-02 19:39 - 2021-01-02 19:39 - 000065536 _____ (Microsoft Corporation) [Datei ist nicht signiert] C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3\MFC80DEU.DLL ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKU\S-1-5-21-616903011-1919554280-1958241982-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://fujitsu17prewin10.msn.com/?pc=FSTE HKU\S-1-5-21-616903011-1919554280-1958241982-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://fujitsu17prewin10.msn.com/?pc=FSTE SearchScopes: HKU\S-1-5-21-616903011-1919554280-1958241982-1000 -> DefaultScope {0972C874-A737-4E19-B6BD-806BA8B2E9B1} URL = SearchScopes: HKU\S-1-5-21-616903011-1919554280-1958241982-1000 -> {0972C874-A737-4E19-B6BD-806BA8B2E9B1} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2021-02-05] (Microsoft Corporation -> Microsoft Corporation) BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation) [Datei ist nicht signiert] Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-05] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-05] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-05] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-05] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2009-06-10 22:00 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2020-04-10 08:06 - 2020-04-10 08:06 - 000000434 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files (x86)\Common Files\DATAflor\CAD\Shared\ODBC;C:\Program Files\Common Files\DATAflor\CAD\Shared\ODBC;C:\Program Files\Common Files\DATAflor\CAD\Shared\EmguCV;C:\Program Files\Common Files\DATAflor\CAD\Shared\SketchUp;C:\Program Files\Common Files\DATAflor\CAD\Shared\GDAL;C:\Program Files\Common Files\DATAflor\CAD\Shared\ImageMagick;C:\Program Files\Common Files\DATAflor\CAD\Shared;C:\Windows\system32\;C:\ProgramData\Oracle\Java\javapath;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Common Files\DATAflor\SYS;C:\Program Files (x86)\Common Files\DATAflor\DFLizenzen;C:\Program Files\Common Files\DATAflor\SYS;C:\Program Files (x86)\Intel\UCRT\;C:\Program Files\Intel\UCRT\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-616903011-1919554280-1958241982-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName0 -> C:\Windows\system32\\unimdm.tsp (Microsoft Windows -> Microsoft Corporation) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName1 -> C:\Windows\system32\\kmddsp.tsp (Microsoft Windows -> Microsoft Corporation) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Keine Datei) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFilename3 -> C:\Windows\system32\\hidphone.tsp (Microsoft Windows -> Microsoft Corporation) HKLM\software\wow6432node\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName0 -> C:\Windows\SysWOW64\\unimdm.tsp (Microsoft Windows -> Microsoft Corporation) HKLM\software\wow6432node\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName1 -> C:\Windows\SysWOW64\\kmddsp.tsp (Microsoft Windows -> Microsoft Corporation) HKLM\software\wow6432node\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> C:\Windows\SysWOW64\\hidphone.tsp (Microsoft Windows -> Microsoft Corporation) Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 05.02.21 Scan-Zeit: 10:07 Protokolldatei: 9a93bf22-6791-11eb-9ad5-fc084a6c6fbb.json -Softwaredaten- Version: 4.1.2.73 Komponentenversion: 1.0.1003 Version des Aktualisierungspakets: 1.0.36749 Lizenz: Kostenlos -Systemdaten- Betriebssystem: Windows 10 (Build 19041.746) CPU: x64 Dateisystem: NTFS Benutzer: *****-NOTEBOOK\User -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Scan gestartet von: Manuell Ergebnis: Abgeschlossen Gescannte Objekte: 332396 Erkannte Bedrohungen: 0 In die Quarantäne verschobene Bedrohungen: 0 Abgelaufene Zeit: 10 Min., 16 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Erkennung PUM: Erkennung -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswert: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Datei: 0 (keine bösartigen Elemente erkannt) Physischer Sektor: 0 (keine bösartigen Elemente erkannt) WMI: 0 (keine bösartigen Elemente erkannt) (end) |
05.02.2021, 11:44 | #2 | |
/// TB-Ausbilder | Win 10: Langsamer System- und Programmstart Anleitung / HilfeZitat:
Eine Analyse ist zudem nicht zielführend, wenn FRST nicht durchläuft. Ich verschiebe nach Windows. |
05.02.2021, 11:50 | #3 | |
| Win 10: Langsamer System- und Programmstart Details Hallo MKDB,
__________________erstaml vielen Dank für deine Antwort. Zitat:
Melde mich dann wieder. |
16.02.2021, 11:37 | #4 |
| Lösung: Win 10: Langsamer System- und Programmstart *Gelöst* Sooooo, hab gemäß Empfehlung und Anleitung eine saubere Neuinstallation durchgeführt und das Problem scheint behoben. Der Rechner bootet schnell und Browser, Thunderbird laden auch schnell. Mal sehen, wie es läuft, wenn wieder ein paar Programme dazu kommen. Vielen Dank für die Hilfe, wie immer top! |
16.02.2021, 12:52 | #5 |
| Wie Win 10: Langsamer System- und Programmstart Und jetzt wenn dein Windows 10 fertig eingerichtet ist, der Tipp: schliesse eine externe USB Festplatte an, installiere dir ein Backup Programm mit dem du Systembackups machen kannst und mach damit Windows 10 Systembackups auf die externe USB Festplatte.
__________________ Windows 10 64 Pro 22H2 |
Themen zu Win 10: Langsamer System- und Programmstart |
administrator, adobe, defender, error, explorer, failed, firefox, frage, google, hängt, internet, internet explorer, langsam, mozilla, nvidia, programmstart, prozesse, realtek, registry, scan, security, software, updates, usb, windows |