![]() |
|
Log-Analyse und Auswertung: Izito und Zapmeda Werbeanzeigen nach Audacity InstallationWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Izito und Zapmeda Werbeanzeigen nach Audacity Installation Hallo liebe Helfer aus dem Internet, ich habe mir blöderweise von der falschen Seite "Audacity.de" Audacity runtergeladen und damit nun nervige Werbeanzeigen in Firefox bei Googlesuchen, die sich zwar kurzzeitig per adwCleaner entfernen lassen, aber sich immer wieder selbst zu installieren scheinen. Beim AdwCleaner erscheint auch der VLC player, der von vlc.de wohl auch nicht der richtige war -.- Ich habe gesehen, dass ihr schon einigen mit dem Problem hier helfen konntet und wäre sehr dankbar, wenn ihr mir auch eure FRST-Magie zuteil werden lasst. FRST.txt Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 08-02-2021 01 durchgeführt von my-cl (Administrator) auf DESKTOP-KJJG597 (Micro-Star International Co., Ltd. MS-7B94) (09-02-2021 23:07:30) Gestartet von C:\Users\my-cl\Downloads Geladene Profile: my-cl Platform: Windows 10 Pro Version 20H2 19042.746 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: FF Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (cFos Software GmbH -> cFos Software GmbH) C:\Program Files\cFosSpeed\spd.exe (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) pGFX -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe (Intel(R) Software -> Intel Corporation) C:\Program Files (x86)\Intel Corporation\Intel(R) Turbo Boost Max Technology 3.0\ITBM.exe (Intel(R) Software -> Intel Corporation) C:\Windows\SysWOW64\ITBMSvc.exe (Malwarebytes Inc -> Malwarebytes) C:\Users\my-cl\Downloads\adwcleaner_8.0.9.1(1).exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI.CentralServer.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDKeeper2.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControlEngine.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <8> (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5dcb5bbf5c3edcf2\Display.NvContainer\NVDisplay.Container.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_d87c47469b47c3f9\RtkAudUService64.exe <2> (voidtools -> voidtools) C:\Program Files\Everything\Everything.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_d87c47469b47c3f9\RtkAudUService64.exe [1201448 2020-10-22] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2261832 2020-11-25] (voidtools -> voidtools) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschränkung <==== ACHTUNG HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3412696 2021-02-05] (Valve -> Valve Corporation) HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\Run: [Discord] => C:\Users\my-cl\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32894024 2021-02-05] (Epic Games Inc. -> Epic Games, Inc.) GroupPolicy: Beschränkung - Chrome <==== ACHTUNG HKLM\SOFTWARE\Policies\Mozilla\Firefox: Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Policies\Microsoft\Edge: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {08BE12FA-44E0-4F15-B1B6-B0A848B18734} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {09F7C8F9-DCC3-4A60-9C12-D650D2CE251E} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {16CD9840-F058-4EB5-A355-4C9ECEBF84C1} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2D2E8588-1C9C-4328-9435-02251D24D66E} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {3086E991-4FCD-4CA8-A6D7-32EEAB0A9765} - System32\Tasks\ApplicationCompatibilityAllJoyn-Routerdienst => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> C:\Windows\Installer\{A39261B2-967E-4EFC-BD1B-28CE173C8FF4}\{DD4AD3DD-8C95-4A71-A7A3-F27A9BCFE64E} <==== ACHTUNG Task: {3202DC82-6C3C-4A89-86DB-F332E733575F} - System32\Tasks\Kontaktdaten Anwendungsverwaltung Diagnostic => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> "C:\ProgramData\Package Cache\{B86D2478-AB43-418D-A87E-63634B488DAE}\{C600E0D6-02C7-4374-83F0-7FC1716BD656}" <==== ACHTUNG Task: {325B2DCE-9E2D-4068-BF17-57E23F4DE616} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-02-07] (Google LLC -> Google LLC) Task: {387BED55-4C42-4FDC-9D56-014E390CED9C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {471CCD35-7D8A-4194-902F-AEE80E9616B9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4AF1193C-0513-44B6-8BDC-170BD6A2CD34} - System32\Tasks\MSI Task Host - MSI.True Color => C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe [44720 2020-05-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {5EC6928E-4B9B-4C32-976A-AB0B2D2552C8} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {65585613-6B8B-460E-9CC9-2148D92E6092} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-02-07] (Google LLC -> Google LLC) Task: {6C4DFBC1-2E9E-4BEB-8214-37D4E942120C} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [64936 2020-11-28] (Microsoft Corporation -> Microsoft) Task: {78C3E7F5-4070-4070-AC5B-A1604FE4B357} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7921BE45-4AF2-46E1-A0EE-E326B722F12D} - System32\Tasks\MSI Task Host - DisplayID => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [74528 2020-09-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {7A3BC28D-220F-4E2A-BFE4-DFF3AF06C803} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {97B7362F-2FE0-49F5-8458-9EBE29ACD3D5} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A58D8526-EC66-4D23-80C5-B6A8D745193E} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDKeeper2.exe [1591568 2020-11-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {A59ECEA8-1FA8-4A73-BC57-3B61FE9BD951} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A7B17BB7-9185-4D02-B65C-DDDA551954EC} - System32\Tasks\MSI Task Host - Detect_Monitor => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [74528 2020-09-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {BA5078E8-42B9-4E4A-9971-1A172831BC0B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [677344 2021-02-09] (Mozilla Corporation -> Mozilla Foundation) Task: {BA7BA634-CCE8-4BFC-B1C2-4412BED2929F} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BB21341F-D3C0-4229-B366-F4CFF8B1EC8A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301176 2020-10-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C088A7F9-168C-4A2E-B7C3-08A3625F7550} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E4636BEB-8E7E-4264-893D-CAA39E0C03ED} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E6EDE14B-472D-4F09-9063-EAD5A394B061} - System32\Tasks\Intel(R) Turbo Boost Max 3.0 Technology Application Launcher => C:\Program Files (x86)\Intel Corporation\Intel(R) Turbo Boost Max Technology 3.0\ITBM.EXE [4337584 2018-05-15] (Intel(R) Software -> Intel Corporation) Task: {EDB05944-CC62-4C14-947D-48D251AA7458} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F54C9444-F535-4387-8C42-B9C674965C8C} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe [903520 2019-02-13] (Intel(R) Trust Services -> Intel(R) Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{52850734-2012-4650-8e64-96c8712122c2}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge Profile: C:\Users\my-cl\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-09] Edge Extension: ( ) - C:\Users\my-cl\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dignikpeeiddmleimnlilckijignjidb [2021-02-07] FireFox: ======== FF DefaultProfile: dwn12wqm.default FF ProfilePath: C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\dwn12wqm.default [2021-02-09] FF user.js: detected! => C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\dwn12wqm.default\user.js [2021-02-09] FF Homepage: Mozilla\Firefox\Profiles\dwn12wqm.default -> hxxps://www.google.com/ FF NewTab: Mozilla\Firefox\Profiles\dwn12wqm.default -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2021-02-03 08:20:09&bName= FF ProfilePath: C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\c9upaskz.default-release [2021-02-09] FF user.js: detected! => C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\c9upaskz.default-release\user.js [2021-02-09] FF Homepage: Mozilla\Firefox\Profiles\c9upaskz.default-release -> hxxps://www.google.de/ FF NewTab: Mozilla\Firefox\Profiles\c9upaskz.default-release -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2021-02-03 08:20:09&bName= FF Extension: (MyJDownloader Browser Erweiterung) - C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\c9upaskz.default-release\Extensions\jid1-OY8Xu5BsKZQa6A@jetpack.xpi [2021-01-18] [UpdateUrl:hxxps://my.jdownloader.org/extensions/firefox.json] FF Extension: (LastPass: Free Password Manager) - C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\c9upaskz.default-release\Extensions\support@lastpass.com.xpi [2021-02-02] FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\c9upaskz.default-release\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2020-12-07] FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\c9upaskz.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-01-28] FF SearchPlugin: C:\Users\my-cl\AppData\Roaming\Mozilla\Firefox\Profiles\c9upaskz.default-release\searchplugins\My Firefox Search.xml [2021-02-03] FF HKLM\...\Firefox\Extensions: [{96400FDB-DA1A-437C-B1C4-25081ADE66EB}] - C:\Windows\Installer\{5F5F2A7A-06D6-4695-812C-17657B3F9D8F}\{96400FDB-DA1A-437C-B1C4-25081ADE66EB}.xpi FF Extension: ( ) - C:\Windows\Installer\{5F5F2A7A-06D6-4695-812C-17657B3F9D8F}\{96400FDB-DA1A-437C-B1C4-25081ADE66EB}.xpi [2021-02-09] FF HKLM-x32\...\Firefox\Extensions: [{96400FDB-DA1A-437C-B1C4-25081ADE66EB}] - C:\Windows\Installer\{5F5F2A7A-06D6-4695-812C-17657B3F9D8F}\{96400FDB-DA1A-437C-B1C4-25081ADE66EB}.xpi FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 cFosSpeedS; C:\Program Files\cFosSpeed\spd.exe [623880 2020-11-07] (cFos Software GmbH -> cFos Software GmbH) R2 Everything; C:\Program Files\Everything\Everything.exe [2261832 2020-11-25] (voidtools -> voidtools) S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA) R2 ITBMService; C:\Windows\SysWOW64\ITBMSvc.exe [49584 2018-05-15] (Intel(R) Software -> Intel Corporation) R2 LightKeeperService; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe [87184 2020-09-28] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 MSI_Central_Service; C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe [147088 2020-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 MSI_Companion_Service; C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe [122616 2020-10-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe [35504 2020-07-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1631360 2020-12-28] (Rockstar Games, Inc. -> Rockstar Games) R2 RtkAudioUniversalService; C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_d87c47469b47c3f9\RtkAudUService64.exe [1201448 2020-10-22] (Realtek Semiconductor Corp. -> Realtek Semiconductor) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5198064 2021-01-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 VoiceControlService; C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe [32400 2020-07-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) S4 edgeupdate; "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /svc [X] S4 edgeupdatem; "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /medsvc [X] R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5dcb5bbf5c3edcf2\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5dcb5bbf5c3edcf2\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] R1 cFosSpeed; C:\Windows\system32\DRIVERS\cfosspeed6.sys [1804072 2020-11-06] (cFos Software GmbH -> cFos Software GmbH) R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> ) R3 FTSER2K; C:\Windows\system32\drivers\ftser2k.sys [79872 2020-09-18] (Microsoft Windows Hardware Compatibility Publisher -> FTDI Ltd.) R3 IntelTurboBoostMax; C:\Windows\System32\drivers\IntelNit.sys [134400 2018-05-15] (Intel(R) Software -> Intel Corporation) R3 MpKsld730023f; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{61290FB2-9A12-4A42-991E-057D2AA91521}\MpKslDrv.sys [47344 2021-02-09] (Microsoft Windows -> Microsoft Corporation) R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [18448 2019-10-17] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) R3 NAL; C:\Windows\system32\Drivers\iqvw64e.sys [58520 2018-10-11] (Intel(R) INTELND1820 -> Intel Corporation) R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\One Dragon Center\Lib\SYS\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) S3 WacHidRouterPro; C:\Windows\System32\drivers\wachidrouter.sys [127512 2020-09-18] (WDKTestCert dant,132134237881206156 -> Wacom Technology, Corp.) S3 wacomrouterfilter; C:\Windows\System32\drivers\wacomrouterfilter.sys [28680 2020-09-18] (WDKTestCert dant,132134237881206156 -> Wacom Technology, Corp.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-12-04] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [429296 2020-12-04] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-04] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-09 23:01 - 2021-02-09 23:01 - 000000000 ____D C:\Users\my-cl\AppData\Roaming\vlc 2021-02-09 23:01 - 2021-02-09 23:01 - 000000000 ____D C:\Program Files\VideoLAN 2021-02-09 23:00 - 2021-02-09 23:00 - 042585440 _____ C:\Users\my-cl\Downloads\vlc-3.0.12-win64.exe 2021-02-09 22:52 - 2021-02-09 22:53 - 000046774 _____ C:\Users\my-cl\Downloads\Addition.txt 2021-02-09 22:51 - 2021-02-09 23:07 - 000024305 _____ C:\Users\my-cl\Downloads\FRST.txt 2021-02-09 22:51 - 2021-02-09 23:07 - 000000000 ____D C:\FRST 2021-02-09 22:50 - 2021-02-09 22:50 - 002297344 _____ (Farbar) C:\Users\my-cl\Downloads\FRST64.exe 2021-02-09 22:41 - 2021-02-09 22:41 - 000228544 _____ (AVAST Software) C:\Users\my-cl\Downloads\avast_free_antivirus_setup_online.exe 2021-02-09 21:09 - 2021-02-09 21:09 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-02-08 17:27 - 2021-02-08 17:27 - 000003340 _____ C:\Windows\system32\Tasks\Intel(R) Turbo Boost Max 3.0 Technology Application Launcher 2021-02-07 14:14 - 2021-02-07 14:14 - 001304160 _____ (Google LLC) C:\Users\my-cl\Downloads\ChromeSetup.exe 2021-02-07 14:08 - 2021-02-07 14:08 - 000000000 ___HD C:\$SysReset 2021-02-07 13:46 - 2021-02-07 13:46 - 000000000 ____D C:\Program Files\cFosSpeed 2021-02-07 13:46 - 2020-11-06 17:43 - 001804072 _____ (cFos Software GmbH) C:\Windows\system32\Drivers\cfosspeed6.sys 2021-02-07 10:21 - 2021-02-07 10:21 - 008457584 _____ (Malwarebytes) C:\Users\my-cl\Downloads\adwcleaner_8.0.9.1(1).exe 2021-02-04 21:21 - 2021-02-04 21:22 - 000000000 ____D C:\AdwCleaner 2021-02-04 20:01 - 2021-02-04 20:01 - 000004954 _____ C:\Windows\system32\Tasks\ApplicationCompatibilityAllJoyn-Routerdienst 2021-02-03 09:20 - 2021-02-03 09:24 - 000000000 ____D C:\Users\my-cl\AppData\Roaming\audacity 2021-02-03 09:20 - 2021-02-03 09:20 - 000004642 _____ C:\Windows\system32\Tasks\Kontaktdaten Anwendungsverwaltung Diagnostic 2021-02-03 09:20 - 2021-02-03 09:20 - 000000000 ____D C:\Users\my-cl\AppData\Roaming\npm 2021-02-03 09:20 - 2021-02-03 09:20 - 000000000 ____D C:\Users\my-cl\AppData\Local\Audacity 2021-02-03 09:20 - 2021-02-03 09:20 - 000000000 ____D C:\Program Files (x86)\nodejs 2021-02-03 09:19 - 2021-02-03 09:19 - 031582264 _____ (Audacity Team) C:\Users\my-cl\Downloads\audacity2-4-2.exe 2021-01-28 18:32 - 2021-02-09 23:06 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-01-25 10:40 - 2021-01-25 10:40 - 000000000 ____D C:\Users\my-cl\.config 2021-01-25 10:14 - 2021-01-25 10:14 - 000000000 ____D C:\Users\my-cl\AppData\Local\IsolatedStorage 2021-01-21 17:39 - 2021-01-21 17:39 - 000000000 ____D C:\Users\my-cl\AppData\Local\DBG 2021-01-20 20:55 - 2021-01-20 20:55 - 000000953 _____ C:\Users\my-cl\Desktop\aktien.lnk 2021-01-17 22:37 - 2021-02-07 13:42 - 000000000 ____D C:\Users\my-cl\Downloads\Attack on Titan S03 2021-01-17 22:27 - 2021-01-17 22:34 - 000000000 ____D C:\Program Files\net.downloadhelper.coapp 2021-01-17 22:27 - 2021-01-17 22:27 - 044757608 _____ (DownloadHelper ) C:\Users\my-cl\Downloads\VdhCoAppSetup-1.6.0(1).exe 2021-01-17 22:21 - 2021-01-17 22:21 - 044757608 _____ (DownloadHelper ) C:\Users\my-cl\Downloads\VdhCoAppSetup-1.6.0.exe 2021-01-16 17:41 - 2021-01-16 17:52 - 000000000 ____D C:\Users\my-cl\Downloads\Der Aktionär Börsenmagazin No 03 vom 15 Januar 2021 2021-01-14 16:14 - 2021-01-14 16:14 - 000000000 ____D C:\Users\my-cl\.android 2021-01-13 18:27 - 2021-01-13 18:27 - 000729600 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2021-01-13 18:27 - 2021-01-13 18:27 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2021-01-13 18:27 - 2021-01-13 18:27 - 000581120 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2021-01-13 18:27 - 2021-01-13 18:27 - 000575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx 2021-01-13 18:27 - 2021-01-13 18:27 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr 2021-01-13 18:27 - 2021-01-13 18:27 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl 2021-01-13 18:27 - 2021-01-13 18:27 - 000467968 _____ C:\Windows\system32\AssignedAccessCsp.dll 2021-01-13 18:27 - 2021-01-13 18:27 - 000446976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2021-01-13 18:27 - 2021-01-13 18:27 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2021-01-13 18:27 - 2021-01-13 18:27 - 000234496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax 2021-01-13 18:27 - 2021-01-13 18:27 - 000178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2021-01-13 18:27 - 2021-01-13 18:27 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2021-01-13 18:27 - 2021-01-13 18:27 - 000157184 _____ C:\Windows\system32\uwfcsp.dll 2021-01-13 18:27 - 2021-01-13 18:27 - 000138056 _____ C:\Windows\system32\HvsiManagementApi.dll 2021-01-13 18:27 - 2021-01-13 18:27 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax 2021-01-13 18:27 - 2021-01-13 18:27 - 000101704 _____ C:\Windows\SysWOW64\HvsiManagementApi.dll 2021-01-13 18:27 - 2021-01-13 18:27 - 000095744 _____ C:\Windows\system32\VirtualMonitorManager.dll 2021-01-13 18:27 - 2021-01-13 18:27 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2021-01-13 18:27 - 2021-01-13 18:27 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2021-01-13 18:27 - 2021-01-13 18:27 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2021-01-13 18:27 - 2021-01-13 18:27 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl 2021-01-13 18:27 - 2021-01-13 18:27 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll 2021-01-13 18:27 - 2021-01-13 18:27 - 000053760 _____ C:\Windows\SysWOW64\BWContextHandler.dll 2021-01-13 18:27 - 2021-01-13 18:27 - 000010894 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-01-13 18:26 - 2021-01-13 18:26 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 002254336 _____ C:\Windows\system32\dwmscene.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 001162240 _____ C:\Windows\system32\MBR2GPT.EXE 2021-01-13 18:26 - 2021-01-13 18:26 - 000643072 _____ C:\Windows\system32\WindowManagementAPI.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2021-01-13 18:26 - 2021-01-13 18:26 - 000544768 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2021-01-13 18:26 - 2021-01-13 18:26 - 000455680 _____ C:\Windows\SysWOW64\WindowManagementAPI.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 000455168 _____ C:\Windows\system32\ssdm.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 000422912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2021-01-13 18:26 - 2021-01-13 18:26 - 000330752 _____ C:\Windows\SysWOW64\ssdm.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 000306688 _____ C:\Windows\system32\HeatCore.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2021-01-13 18:26 - 2021-01-13 18:26 - 000238592 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2021-01-13 18:26 - 2021-01-13 18:26 - 000235520 _____ C:\Windows\SysWOW64\HeatCore.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 000190976 _____ C:\Windows\system32\BthpanContextHandler.dll 2021-01-13 18:26 - 2021-01-13 18:26 - 000182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2021-01-13 18:26 - 2021-01-13 18:26 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-01-13 18:26 - 2021-01-13 18:26 - 000152064 _____ C:\Windows\system32\EoAExperiences.exe 2021-01-13 18:26 - 2021-01-13 18:26 - 000074240 _____ C:\Windows\system32\rdsxvmaudio.dll 2021-01-11 22:02 - 2021-01-11 22:02 - 000000000 ____D C:\Users\my-cl\Downloads\FireballFiles 2021-01-11 22:01 - 2021-01-11 22:01 - 001548299 _____ C:\Users\my-cl\Downloads\FireballFiles.zip 2021-01-11 21:37 - 2021-01-11 21:37 - 000000000 ____D C:\Program Files\GIMP 2 2021-01-11 21:36 - 2021-01-11 21:36 - 241147480 _____ (The GIMP Team ) C:\Users\my-cl\Downloads\gimp-2.10.22-setup.exe ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-09 23:06 - 2020-11-26 12:57 - 000000000 ____D C:\Users\my-cl\AppData\LocalLow\Mozilla 2021-02-09 23:03 - 2020-12-01 07:11 - 000000000 ____D C:\Users\my-cl\AppData\Roaming\WTablet 2021-02-09 23:03 - 2020-11-28 14:29 - 000000000 ____D C:\Users\my-cl\AppData\Local\Everything 2021-02-09 23:03 - 2020-11-28 12:12 - 000000000 ____D C:\Users\my-cl\AppData\Roaming\Everything 2021-02-09 23:03 - 2020-09-27 08:33 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-02-09 23:03 - 2020-09-27 06:33 - 000008192 ___SH C:\DumpStack.log.tmp 2021-02-09 23:02 - 2020-11-26 12:57 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-02-09 23:02 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI 2021-02-09 22:58 - 2020-12-01 17:31 - 000000000 ____D C:\Users\my-cl\AppData\Roaming\discord 2021-02-09 22:42 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-02-09 19:28 - 2020-11-26 12:51 - 001723220 _____ C:\Windows\system32\PerfStringBackup.INI 2021-02-09 19:28 - 2019-12-07 15:51 - 000743818 _____ C:\Windows\system32\perfh007.dat 2021-02-09 19:28 - 2019-12-07 15:51 - 000150240 _____ C:\Windows\system32\perfc007.dat 2021-02-09 19:28 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2021-02-09 19:25 - 2020-11-28 12:08 - 000000000 ____D C:\Program Files (x86)\Steam 2021-02-09 19:18 - 2020-09-27 06:33 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-02-09 17:50 - 2020-11-26 13:07 - 000003618 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-02-09 17:50 - 2020-11-26 13:07 - 000003394 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-02-08 17:31 - 2020-11-26 12:52 - 000003374 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2485268424-229068541-47212010-1001 2021-02-08 17:31 - 2020-11-26 12:52 - 000000000 ___RD C:\Users\my-cl\OneDrive 2021-02-08 17:31 - 2020-11-26 12:49 - 000002375 _____ C:\Users\my-cl\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-02-07 14:43 - 2020-11-28 12:12 - 000000000 ____D C:\Program Files\Everything 2021-02-07 14:23 - 2020-11-26 13:07 - 000000000 ____D C:\Users\my-cl\AppData\Local\Google 2021-02-07 14:23 - 2020-11-26 13:06 - 000000000 ____D C:\Program Files (x86)\Google 2021-02-07 13:46 - 2020-11-28 14:55 - 000083591 _____ C:\Windows\cFosSpeed_Setup_Log.txt 2021-02-07 13:44 - 2020-12-07 20:09 - 000000000 ____D C:\Users\my-cl\AppData\Local\JDownloader 2.0 2021-02-07 11:29 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-02-07 11:29 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2021-02-04 20:01 - 2020-09-27 08:35 - 000003688 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-02-04 20:01 - 2020-09-27 08:35 - 000003464 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-01-28 20:38 - 2020-11-26 12:51 - 000000000 ____D C:\Users\my-cl\AppData\Local\Packages 2021-01-25 12:17 - 2020-11-28 13:26 - 000001752 _____ C:\Users\my-cl\.bash_history 2021-01-25 12:17 - 2020-11-28 11:01 - 000000000 ____D C:\Users\my-cl\AppData\Local\.IdentityService 2021-01-25 10:40 - 2020-11-26 12:49 - 000000000 ____D C:\Users\my-cl 2021-01-25 10:20 - 2020-11-29 11:30 - 000000000 ____D C:\Users\my-cl\AppData\Local\CrashDumps 2021-01-23 09:16 - 2020-11-26 15:28 - 000799104 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2021-01-13 23:58 - 2020-09-27 06:33 - 000442432 _____ C:\Windows\system32\FNTCACHE.DAT 2021-01-13 23:57 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-13 23:57 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-01-13 23:57 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\UNP 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\F12 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\PrintDialog 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Com 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Sysprep 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Com 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellComponents 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Provisioning 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\IME 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2021-01-13 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-13 19:28 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2021-01-13 18:26 - 2020-09-27 08:35 - 002877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2021-01-13 18:23 - 2020-12-01 08:15 - 000000000 ____D C:\Windows\system32\MRT 2021-01-13 18:21 - 2020-12-01 08:15 - 135062968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 08-02-2021 01 durchgeführt von my-cl (09-02-2021 23:08:45) Gestartet von C:\Users\my-cl\Downloads Windows 10 Pro Version 20H2 19042.746 (X64) (2020-11-26 11:47:58) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2485268424-229068541-47212010-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2485268424-229068541-47212010-503 - Limited - Disabled) Gast (S-1-5-21-2485268424-229068541-47212010-501 - Limited - Disabled) my-cl (S-1-5-21-2485268424-229068541-47212010-1001 - Administrator - Enabled) => C:\Users\my-cl WDAGUtilityAccount (S-1-5-21-2485268424-229068541-47212010-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ${{arpDisplayName}} (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cufft_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden Application Verifier x64 External Package (HKLM\...\{10CA1677-8F02-3131-F25C-780BAB52E468}) (Version: 10.1.18362.1 - Microsoft) Hidden cFosSpeed 11.07 (HKLM\...\cFosSpeed) (Version: 11.07 - cFos Software GmbH, Bonn) CMake (HKLM\...\{7DE75D02-7437-410E-89A0-7882828D3CB6}) (Version: 3.19.1 - Kitware) Compute Sanitizer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_sanitizer_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CPUID HWMonitor 1.43 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.43 - CPUID, Inc.) CUBLAS Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cublas_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUBLAS Runtime (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cublas_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUDA Documentation (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_documentation_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUDA Profiler Tools (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvprof_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUDA Toolkit (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_CUDAToolkit_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUDART Runtime (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cudart_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUFFT Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cufft_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden cuobjdump (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cuobjdump_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUPTI (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cupti_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CURAND Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_curand_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CURAND Runtime (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_curand_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUSOLVER Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cusolver_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUSOLVER Runtime (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cusolver_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUSPARSE Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cusparse_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden CUSPARSE Runtime (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_cusparse_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden Demo Suite (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_demo_suite_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden DiagnosticsHub_CollectionService (HKLM\...\{1F3C3AAC-9F7A-47DA-A082-0ACE770041BE}) (Version: 16.1.28901 - Microsoft Corporation) Hidden Disassembler (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvdisasm_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden Discord (HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\Discord) (Version: 0.0.309 - Discord Inc.) ENE IO Driver (HKLM-x32\...\{D0512FFD-6194-4D2E-967E-25B82A3322FF}) (Version: 3.3.0 - ENE TECHNOLOGY INC.) Hidden ENE_DRAM_RGB_AIO (HKLM\...\{1745D314-9077-46C9-8562-1C62BAE189B7}) (Version: 1.0.0.10 - Ene Tech.) Hidden ENE_DRAM_RGB_AIO (HKLM-x32\...\{52d1d7de-19c3-4f83-97bb-f9435dc84c5b}) (Version: 1.0.0.10 - Ene Tech.) Hidden ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.6.0 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_M2_HAL (HKLM-x32\...\{d8516682-de60-4332-ad6f-49373754b677}) (Version: 1.0.6.0 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_SSS_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.1.0 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_SSS_HAL (HKLM-x32\...\{20610ecc-e094-423e-af0c-7d0bcfe117e9}) (Version: 1.0.1.0 - ENE TECHNOLOGY INC.) Hidden Epic Games Launcher (HKLM-x32\...\{07D9F8F3-EC99-4133-919D-DA341C62937C}) (Version: 1.1.298.0 - Epic Games, Inc.) Everything 1.4.1.999 (x64) (HKLM\...\Everything) (Version: 1.4.1.999 - voidtools) GIMP 2.10.22 (HKLM\...\GIMP-2_is1) (Version: 2.10.22 - The GIMP Team) Git version 2.29.2.2 (HKLM\...\Git_is1) (Version: 2.29.2.2 - The Git Development Community) Google Drive (HKLM-x32\...\{459CE109-4E46-4340-92BC-054642BC3BC2}) (Version: 1.31.2873.2758 - Google, Inc.) icecap_collection_neutral (HKLM-x32\...\{7C703135-98AC-4EB9-86C0-0C3169C99649}) (Version: 16.8.30509 - Microsoft Corporation) Hidden icecap_collection_x64 (HKLM\...\{7C914878-C64B-4CA6-8E41-91308877A586}) (Version: 16.8.30509 - Microsoft Corporation) Hidden icecap_collectionresources (HKLM-x32\...\{C28C9D95-66E3-48A9-8CC4-A517661DD132}) (Version: 16.8.30607 - Microsoft Corporation) Hidden icecap_collectionresourcesx64 (HKLM-x32\...\{D3B94F9C-CBFC-4571-B30B-7665B3A9DB4F}) (Version: 16.8.30530 - Microsoft Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1909.12.0.1236 - Intel Corporation) Intel(R) Network Connections 24.0.0.11 (HKLM\...\PROSetDX) (Version: 24.0.0.11 - Intel) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.52.230.1 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{c6de84fd-ece7-4c2a-9f06-8cabe7ab79a0}) (Version: 1.52.230.1 - Intel Corporation) Hidden Intel(R) Turbo Boost Max Technology 3.0 (HKLM-x32\...\5E689C1A-19C0-482B-B2C8-A9DA37AA011D) (Version: 1.1.0.1005 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{4551f75f-3c54-4f09-8221-8c8a061bad00}) (Version: 10.1.18019.8144 - Intel(R) Corporation) JDownloader 2 (HKLM-x32\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Kits Configuration Installer (HKLM-x32\...\{63AAA877-5536-9481-2385-28A082100D78}) (Version: 10.1.18362.1 - Microsoft) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden MEMCHECK (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_memcheck_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 88.0.705.56 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.71 - ) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\OneDriveSetup.exe) (Version: 21.002.0104.0005 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation) Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 2.8.3074.1022 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2019 CTP2.2 (HKLM\...\{0AF3B52A-F38D-4D63-9F72-73623C601CD9}) (Version: 15.0.1200.24 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2019 CTP2.2 (HKLM-x32\...\{BF16A1DB-06A6-4A8E-B7A8-61F1F9C9FBA3}) (Version: 15.0.1200.24 - Microsoft Corporation) Mozilla Firefox 85.0.2 (x64 de) (HKLM\...\Mozilla Firefox 85.0.2 (x64 de)) (Version: 85.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 83.0 - Mozilla) MSI Development Tools (HKLM-x32\...\{DB4DB790-64DD-1902-4BF2-833B3B6DBCA1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden MSI SDK (HKLM-x32\...\{EE7D557C-3AE7-4348-8DCA-3A89790D0002}}_is1) (Version: 2.2020.1117.00 - MSI) Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.8.8 - Notepad++ Team) NPP Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_npp_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NPP Runtime (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_npp_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden nvcc (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvcc_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NVIDIA CUDA Development 11.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_CUDADevelopment_11.1) (Version: 11.1 - NVIDIA Corporation) NVIDIA CUDA Documentation 11.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_CUDADocument_11.1) (Version: 11.1 - NVIDIA Corporation) NVIDIA CUDA Nsight NVTX 11.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nsight_nvtx_11.1) (Version: 11.1 - NVIDIA Corporation) NVIDIA CUDA Runtime 11.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_CUDARuntimes_11.1) (Version: 11.1 - NVIDIA Corporation) NVIDIA CUDA Samples 11.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_samples_11.1) (Version: 11.1 - NVIDIA Corporation) NVIDIA CUDA Visual Studio Integration 11.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_visual_studio_integration_11.1) (Version: 11.1 - NVIDIA Corporation) NVIDIA FrameView SDK 1.1.4923.29214634 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29214634 - NVIDIA Corporation) NVIDIA GeForce Experience 3.20.5.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.5.70 - NVIDIA Corporation) NVIDIA Grafiktreiber 457.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 457.30 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation) NVIDIA Nsight Compute 2020.2.1 (HKLM\...\{94BBCD7B-AA29-445E-8577-0E28694CB51B}) (Version: 20.2.1.0 - NVIDIA Corporation) NVIDIA Nsight Systems 2020.3.4 (HKLM\...\{C0CCFF06-1309-41DC-B09C-0C5B13B9F175}) (Version: 20.3.4.32 - NVIDIA Corporation) NVIDIA Nsight Visual Studio Edition 2020.2.0.20284 (HKLM\...\{00BA1B4D-9493-4BD7-A1D5-0E36A0CF01EE}) (Version: 20.2.0.20284 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NVIDIA Tools Extension SDK (NVTX) - 64 bit (HKLM\...\{B56D2F88-8865-40FD-B7AC-F074EE4D201D}) (Version: 1.00.00.00 - NVIDIA Corporation) NVIDIA USBC Driver 1.45.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.45.831.832 - NVIDIA Corporation) NVJPEG Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvjpeg_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NVJPEG Runtime (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvjpeg_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NVML Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvml_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden nvprune (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvprune_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NVRTC Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvrtc_dev_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NVRTC Runtime (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvrtc_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden NVTX Development (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_nvtx_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden Occupancy Calculator (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_occupancy_calculator_11.1) (Version: 11.1 - NVIDIA Corporation) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.35.510.2019 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8787.1 - Realtek Semiconductor Corp.) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.33.319 - Rockstar Games) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.7.5 - Rockstar Games) SDK ARM Additions (HKLM-x32\...\{73681F86-CD86-4208-572F-959B45430B04}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden SDK ARM Redistributables (HKLM-x32\...\{67EE3804-9642-62BA-EBF1-B1561FB4ECBE}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) UE4 Prerequisites (x64) (HKLM\...\{D7B591D8-1091-4A00-A0B3-5301C45E5D51}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden UltraStar Deluxe (HKLM-x32\...\UltraStar Deluxe) (Version: 2020.4.0 Stable - USDX Team) UltraStar-Creator (HKLM-x32\...\UltraStar-Creator) (Version: 1.2.0 - UltraStar-Creator Community) UltraStar-Manager (HKLM-x32\...\UltraStar-Manager) (Version: 1.8.4 - UltraStar-Manager Community) Universal CRT Extension SDK (HKLM-x32\...\{13952D7A-B7B3-F4F8-5F29-5CD18E8168B7}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (HKLM-x32\...\{74CBC330-ED16-31B9-E8BE-0C6A8E67DE32}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{847D4DAF-0182-265B-324F-406462E8A90D}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal CRT Tools x64 (HKLM\...\{54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal CRT Tools x86 (HKLM-x32\...\{9F7B0D96-881D-8850-C303-43F3A08E6902}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Universal General MIDI DLS Extension SDK (HKLM-x32\...\{6F54BF87-2EE6-FA6D-431D-33A665992D49}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) vcpp_crt.redist.clickonce (HKLM-x32\...\{21928C37-911F-4FC7-936F-720AB8739C0E}) (Version: 14.28.29334 - Microsoft Corporation) Hidden Visual Studio Community 2019 (HKLM-x32\...\47bbc2ed) (Version: 16.8.30717.126 - Microsoft Corporation) VLC media player (HKLM\...\VLC media player) (Version: 3.0.12 - VideoLAN) VS Immersive Activate Helper (HKLM-x32\...\{A71406B5-E487-4B01-8E59-D466841350F5}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden VS JIT Debugger (HKLM\...\{C7E8A4F2-EF09-42A8-B892-69D5ED99D965}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden VS Script Debugging Common (HKLM\...\{A4272808-82F5-410F-A5F9-1BF6F63F6B9A}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden vs_communitymsi (HKLM-x32\...\{DEB11EB7-B61A-4883-8CB0-99013A4873AB}) (Version: 16.8.30608 - Microsoft Corporation) Hidden vs_communitymsires (HKLM-x32\...\{A90E107F-D024-4EEC-A6F4-9E2858B4E506}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_devenvmsi (HKLM-x32\...\{AD0C92A4-1514-4BC1-A723-A272A8343924}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_filehandler_amd64 (HKLM-x32\...\{E9439DB7-BF01-4820-8CB1-80957150AB86}) (Version: 16.8.30530 - Microsoft Corporation) Hidden vs_filehandler_x86 (HKLM-x32\...\{8990F1B6-F880-4E73-A2D9-7A611F4C38A1}) (Version: 16.8.30530 - Microsoft Corporation) Hidden vs_FileTracker_Singleton (HKLM-x32\...\{3C4B2ED3-2296-4203-A420-AC042BE8484D}) (Version: 16.8.30509 - Microsoft Corporation) Hidden vs_Graphics_Singletonx64 (HKLM\...\{2EE7854B-D67F-41D8-94F4-D885FA7C4385}) (Version: 16.8.30608 - Microsoft Corporation) Hidden vs_Graphics_Singletonx86 (HKLM-x32\...\{4085E209-B871-4079-B58D-778D5293AFD5}) (Version: 16.8.30608 - Microsoft Corporation) Hidden vs_minshellinteropmsi (HKLM-x32\...\{27B16914-BC5D-4018-8074-071262A27F6D}) (Version: 16.2.28917 - Microsoft Corporation) Hidden vs_minshellmsi (HKLM-x32\...\{08AF5DA9-F3BD-4B59-8D99-C47CC4D53CAD}) (Version: 16.8.30530 - Microsoft Corporation) Hidden vs_minshellmsires (HKLM-x32\...\{6013F369-D916-4C44-A79F-B1A35AEDAEBB}) (Version: 16.8.30530 - Microsoft Corporation) Hidden vs_tipsmsi (HKLM-x32\...\{E208E682-50EE-4F2F-9860-C91B906B8A03}) (Version: 16.0.28329 - Microsoft Corporation) Hidden vs_vswebprotocolselectormsi (HKLM-x32\...\{BEEB2E56-91DB-4AFB-AC88-8E98B18DD889}) (Version: 16.8.30509 - Microsoft Corporation) Hidden vs_vswebprotocolselectormsires (HKLM-x32\...\{0F772F74-D1D4-4D63-B37D-FBBC3D9581C7}) (Version: 16.8.30509 - Microsoft Corporation) Hidden Wacom Tablett (HKLM\...\Wacom Tablet Driver) (Version: 6.3.41-1 - Wacom Technology Corp.) WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK AN1500 (HKLM-x32\...\{9c94735f-73fd-4b0f-9ddb-8be7b3cc4681}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK D50 (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK D50 (HKLM-x32\...\{a1d1ba00-92b7-4a99-8ebd-65b25c0e9e44}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden WinAppDeploy (HKLM-x32\...\{8E3AE0EF-D067-700C-BDB4-10D5552155DC}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Windows SDK AddOn (HKLM-x32\...\{E6F877A1-2F65-4BF0-87B6-A4071B7663D3}) (Version: 10.1.0.0 - Microsoft Corporation) Windows Software Development Kit - Windows 10.0.18362.1 (HKLM-x32\...\{126dedf0-cc0e-4b48-9ece-806b0e437195}) (Version: 10.1.18362.1 - Microsoft Corporation) WinRAR 5.71 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH) WinRT Intellisense Desktop - en-us (HKLM-x32\...\{E67F1F03-FB4A-3D61-8999-E6A4C4B26F34}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{7EF010FF-7800-28BA-FF49-2D219EC7BA82}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense IoT - en-us (HKLM-x32\...\{36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{6B03A6A4-643C-57CE-CA6F-4E19BF47497A}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense Mobile - en-us (HKLM-x32\...\{918A448F-59E8-FBF5-B087-D3F07160C7E0}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense PPI - en-us (HKLM-x32\...\{66483041-F590-EC46-4AF0-EE39C62FB680}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{9C61E6D2-C43E-6746-B519-6185558C4A24}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense UAP - en-us (HKLM-x32\...\{6B37CC5B-78DF-5050-2215-68479716A587}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{250D5341-0879-4016-399C-BBCD87B80E95}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden Packages: ========= DragonCenter -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.100.0_x64__kzh8wxbdkxb8p [2021-01-28] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-02-02] (Microsoft Studios) [MS Ad] NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.960.0_x64__56jybvy8sckqj [2021-01-19] (NVIDIA Corp.) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj [2021-01-19] (Realtek Semiconductor Corp) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0 [2021-02-07] (Spotify AB) [Startup Task] XING -> C:\Program Files\WindowsApps\XINGAG.XING_4.0.7.0_x86__xpfg3f7e9an52 [2021-01-19] (New Work SE) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google Inc -> Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google Inc -> Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google Inc -> Google) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Keine Datei ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2020-06-24] (Notepad++ -> ) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2016-07-29] (Google Inc -> Google) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2016-07-29] (Google Inc -> Google) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5dcb5bbf5c3edcf2\nvshext.dll [2020-11-07] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== ==================== Verknüpfungen & WMI ======================== ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2020-11-28 14:54 - 2017-08-03 05:48 - 000237568 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDControl.dll 2021-02-04 20:01 - 2021-02-09 23:06 - 000228352 _____ () [Datei ist nicht signiert] C:\Program Files\Mozilla Firefox\zlib1.dll 2020-11-26 13:08 - 2020-11-26 13:08 - 000710656 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\XINGAG.XING_4.0.7.0_x86__xpfg3f7e9an52\e_sqlite3.dll 2021-01-19 17:23 - 2021-01-19 17:23 - 038125568 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\XINGAG.XING_4.0.7.0_x86__xpfg3f7e9an52\Xing.UWP.dll 2020-02-24 17:38 - 2020-02-24 17:38 - 000176128 _____ (ENE Technology inc.) [Datei ist nicht signiert] C:\Program Files\ENE\Aac_ENE_EHD_SSS_HAL\AacHal_x86.dll 2020-11-28 14:54 - 2018-08-31 07:26 - 000053760 _____ (MS) [Datei ist nicht signiert] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\MsIo32_Galax.dll 2020-11-28 14:54 - 2016-10-04 04:43 - 000399872 _____ (TODO: <公司名稱>) [Datei ist nicht signiert] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Lib\SDKDLL.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== SearchScopes: HKU\S-1-5-21-2485268424-229068541-47212010-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\localhost -> localhost ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\NVIDIA GPU Computing Toolkit\CUDA\v11.1\bin;C:\Program Files\NVIDIA GPU Computing Toolkit\CUDA\v11.1\libnvvp;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\CMake\bin;C:\Program Files\Git\cmd;C:\Program Files\NVIDIA Corporation\Nsight Compute 2020.2.1\;C:\Program Files (x86)\nodejs\ HKU\S-1-5-21-2485268424-229068541-47212010-1001\Control Panel\Desktop\\Wallpaper -> c:\users\my-cl\appdata\local\microsoft\windows\themes\roamedthemefiles\desktopbackground\big_storm_is_coming-hd-wallpapers-1080p.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) ist aktiviert. Network Binding: ============= Ethernet: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled) Ethernet 2: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled) ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) HKLM\...\StartupApproved\Run: => "Everything" HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-2485268424-229068541-47212010-1001\...\StartupApproved\Run: => "EpicGamesLauncher" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{FE6DA5C8-E239-418B-8440-66C4B67AC27E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{59812DA3-38BA-4FE2-89A4-753DDE62FDC4}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{347F06A7-E510-466F-B9BA-508A396A90D5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{A39D9549-C76A-4722-975A-078F51C06B21}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{3CB3ADE1-F5EB-480A-A6C8-05EFD874F09C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{EBC13F49-0C73-44CE-AA7A-FA19D9B714C6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{A973354D-C1EA-4032-AA1B-96E9BC3542A6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{AAF1EEB0-5FE2-4FFA-B723-FA919E310B79}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{35959C11-3165-4946-9E8F-B2031FDD8792}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{0BAE50DA-0922-40CE-8BCB-C784B9C903D4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{20414FDA-D212-4DDB-A122-F62EA6290A00}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei FirewallRules: [{7C696DF9-FB25-451C-8BE4-9AE508AE3C74}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei FirewallRules: [{81A496F7-BC5D-4514-8EF6-882864F634C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY XIV Online\boot\ffxivboot.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.) FirewallRules: [{F3C7D567-35C3-48D3-81D3-C1F89D41EC14}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FINAL FANTASY XIV Online\boot\ffxivboot.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.) FirewallRules: [{614223A9-2093-4E2D-BDC5-0C81DD877BA1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Raft\Raft.exe () [Datei ist nicht signiert] FirewallRules: [{390C90D5-9A2A-45D3-87F2-AB746BB1D44F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Raft\Raft.exe () [Datei ist nicht signiert] FirewallRules: [{F6460475-92E3-41B5-A215-BA28046E3877}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{9F5EC01A-32FA-4903-8DC3-65371492686D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [TCP Query User{82166E07-4468-4124-B5D8-B51770AFEE92}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => Keine Datei FirewallRules: [UDP Query User{DC2BA70E-64B9-46BF-A7AA-A246EDF64A2E}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => Keine Datei FirewallRules: [{43800415-376B-4DB2-A010-6399E18BF22C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Healer's Quest\nw.exe (The NWJS Community) [Datei ist nicht signiert] FirewallRules: [{B97887E3-51EE-4251-95E4-C2E3B66BBCE3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Healer's Quest\nw.exe (The NWJS Community) [Datei ist nicht signiert] FirewallRules: [TCP Query User{DA4DFE71-7DD7-47ED-927E-84531A35954E}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{3EEB832B-7ACF-4A7C-A0AA-9133780060CC}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{89B7BB27-E2DD-4F00-908E-897B0AB3D29D}C:\program files\epic games\ue_4.26\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\ue_4.26\engine\binaries\win64\ue4editor.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{36A9BB04-4374-4BBC-AE60-B7EB929095B1}C:\program files\epic games\ue_4.26\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\ue_4.26\engine\binaries\win64\ue4editor.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{2E3724E5-BF13-43F0-B01C-731460D71D3F}C:\program files\epic games\ue_4.26\engine\binaries\dotnet\swarmagent.exe] => (Allow) C:\program files\epic games\ue_4.26\engine\binaries\dotnet\swarmagent.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{B1AD5560-ED9A-414B-A714-E9CF61EF22C3}C:\program files\epic games\ue_4.26\engine\binaries\dotnet\swarmagent.exe] => (Allow) C:\program files\epic games\ue_4.26\engine\binaries\dotnet\swarmagent.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{5895F145-71C6-49D4-8E5F-F17087F8A7DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Human Fall Flat\Human.exe () [Datei ist nicht signiert] FirewallRules: [{158E4040-A775-41D1-972E-7A0001613C6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Human Fall Flat\Human.exe () [Datei ist nicht signiert] FirewallRules: [TCP Query User{43EC194D-A052-436A-BA95-4DEFDBCE9CA5}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{C2A897B2-2CB0-47EE-8DAC-3AF1BE7D35FF}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{90652241-177B-4136-8D10-6A899AC5EE92}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{120FE5A0-DDDB-4B99-85C9-4D8EF2EEAA70}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{0A380654-7257-4580-99AC-BFEA825E8D0E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{64250D86-E5BE-4480-9366-C7EAE77C3D89}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{0CF8D2E0-75EB-47A0-8BE3-4A8598C7C5B8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{94AF13DB-C32E-4250-88E7-2CE05BD4B1AA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{B03707CB-0701-4F67-878C-03C4B73E60A3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{D54E93C9-FBD9-4DC5-9561-E17EF85FA2E3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{5E7E0C87-7F30-4381-8082-A3E65166D5D3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{2E7A2739-E5BF-4177-AA00-2584AF4E5F9C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{B1826AE2-6AEB-43F1-9C0E-6101DD641C1D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{018AB814-71BF-464A-B01C-E09A6975028F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{2B277498-37F5-462C-9B8E-2FBD50D5CC40}] => (Allow) LPort=32682 ==================== Wiederherstellungspunkte ========================= 20-01-2021 19:20:33 Geplanter Prüfpunkt 02-02-2021 23:17:39 Geplanter Prüfpunkt ==================== Fehlerhafte Geräte im Gerätemanager ============ ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (02/03/2021 09:25:12 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Error: (02/03/2021 09:25:12 AM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (02/03/2021 09:25:12 AM) (Source: System.ServiceModel 3.0.0.0) (EventID: 19) (User: NT-AUTORITÄT) Description: Die Registrierung des WMI-Anbieters wurde nicht aufgehoben. WMI-Objekt: System.ServiceModel.Administration.WbemProvider/7880838 Fehler:800706ba Prozessname: Lavasoft.WCAssistant.WinService Prozess-ID: 12096 Error: (02/03/2021 09:25:12 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Error: (02/03/2021 09:25:12 AM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (02/03/2021 09:02:57 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: NT-AUTORITÄT) Description: Der Zugriff auf Leistungsdaten wurde für den Benutzer "SYSTEM" (Wert von getbenutzername() für den ausgeführten Thread) verweigert, da er vom Modul "C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe" (Wert von GetModuleFileName() für die Binärdatei, die die Abfrage ausgegeben hat) versucht wurde. Error: (01/25/2021 10:20:54 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: face_animation.exe, Version: 0.0.0.0, Zeitstempel: 0x600e8d71 Name des fehlerhaften Moduls: ucrtbase.dll, Version: 10.0.19041.546, Zeitstempel: 0x43cbc11d Ausnahmecode: 0xc0000409 Fehleroffset: 0x000000000007287e ID des fehlerhaften Prozesses: 0x3710 Startzeit der fehlerhaften Anwendung: 0x01d6f2fb5f399ff5 Pfad der fehlerhaften Anwendung: C:\Users\my-cl\Documents\Visual Studio 2019\Projects\1-teaching\ca-face-animation\build\Release\face_animation.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\ucrtbase.dll Berichtskennung: 8cd3b74d-49bf-42e3-b81d-aefbeaa10537 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (01/25/2021 10:18:45 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: face_animation.exe, Version: 0.0.0.0, Zeitstempel: 0x600e8ce4 Name des fehlerhaften Moduls: face_animation.exe, Version: 0.0.0.0, Zeitstempel: 0x600e8ce4 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000004038 ID des fehlerhaften Prozesses: 0x3c6c Startzeit der fehlerhaften Anwendung: 0x01d6f2fb0b6386e1 Pfad der fehlerhaften Anwendung: C:\Users\my-cl\Documents\Visual Studio 2019\Projects\1-teaching\ca-face-animation\build\Release\face_animation.exe Pfad des fehlerhaften Moduls: C:\Users\my-cl\Documents\Visual Studio 2019\Projects\1-teaching\ca-face-animation\build\Release\face_animation.exe Berichtskennung: 1cdd0609-7a99-4101-b5d0-8d45e4dc6f33 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Systemfehler: ============= Error: (02/09/2021 10:58:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Steam Client Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (02/09/2021 10:58:46 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "cFosSpeed System Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/09/2021 10:58:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (02/09/2021 10:58:46 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "NVIDIA LocalSystem Container" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 6000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/09/2021 10:58:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "LightKeeperService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (02/09/2021 10:58:46 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Realtek Audio Universal Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/09/2021 10:58:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "VoiceControlService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (02/09/2021 10:58:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "MSI Central Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Windows Defender: =================================== Date: 2021-02-09 22:42:25.2720000Z Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {76F73AA7-4884-482F-A2A6-669C09B42E0D} Überprüfungstyp: Antimalware Überprüfungsparameter: Vollständige Überprüfung Benutzer: DESKTOP-KJJG597\my-cl Date: 2021-02-09 17:58:10.4430000Z Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {68D62FA9-7F23-4C11-8915-BA7B0B5641B6} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2021-02-07 10:29:26.3440000Z Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {0231A086-11D4-4958-A012-10329F1D3F25} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2021-02-05 18:02:53.1630000Z Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {CE16BAEE-19F6-4896-9666-8A1048CF70AA} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2021-01-28 19:38:21.9480000Z Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {D82071F3-695E-4ACB-B951-695CB1D6FC84} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM CodeIntegrity: =================================== Date: 2021-02-09 22:42:24.4750000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume7\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2021-02-09 22:42:24.4460000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume7\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2021-02-09 22:42:23.5720000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume7\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== BIOS: American Megatrends Inc. 1.20 12/05/2019 Hauptplatine: Micro-Star International Co., Ltd. X299 PRO (MS-7B94) Prozessor: Intel(R) Core(TM) i9-10900X CPU @ 3.70GHz Prozentuale Nutzung des RAM: 9% Installierter physikalischer RAM: 65221.57 MB Verfügbarer physikalischer RAM: 59278.93 MB Summe virtueller Speicher: 74949.57 MB Verfügbarer virtueller Speicher: 67042.67 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:930.9 GB) (Free:687.67 GB) NTFS Drive d: (LaCie SSD) (Fixed) (Total:931.48 GB) (Free:691.31 GB) exFAT \\?\Volume{11a10c0e-ab9c-431f-b614-c9ec9571aa0f}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS \\?\Volume{d5950160-5cb3-4fb0-8f05-1892c8cd97fe}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: DE1EC4D1) Partition 1: (Not Active) - (Size=976 MB) - (Type=83) Partition 2: (Not Active) - (Size=7.5 GB) - (Type=05) Partition 3: (Not Active) - (Size=139.7 GB) - (Type=83) Partition 4: (Not Active) - (Size=317.6 GB) - (Type=83) ========================================================== Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 2 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 0E1E9E38) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ======================= Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.0.9.1 # ------------------------------- # Build: 01-20-2021 # Database: 2021-01-11.1 (Local) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Scan # ------------------------------- # Start: 02-04-2021 # Duration: 00:00:09 # OS: Windows 10 Pro # Scanned: 31956 # Detected: 23 ***** [ Services ] ***** PUP.Optional.Legacy WCAssistantService ***** [ Folders ] ***** PUP.Optional.VLCPlusPlayer.DE C:\Program Files\VLC Plus Player PUP.Optional.VLCPlusPlayer.DE C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VLC Plus Player PUP.Optional.WebCompanion C:\Program Files (x86)\Lavasoft\Web Companion PUP.Optional.WebCompanion C:\ProgramData\Application Data\Lavasoft\Web Companion PUP.Optional.WebCompanion C:\ProgramData\Lavasoft\Web Companion PUP.Optional.WebCompanion C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft\WebCompanion PUP.Optional.WebCompanion C:\Users\my-cl\AppData\Local\Lavasoft\WEBCOMPANION.EXE_URL_SIQ0LWF3TZGXP2KHFKLLYBK3IDTBEHNG PUP.Optional.WebCompanion C:\Users\my-cl\AppData\Roaming\Lavasoft\Web Companion ***** [ Files ] ***** Adware.DownloadProtect C:\Windows\Installer\{5F5F2A7A-06D6-4695-812C-17657B3F9D8F}\{96400FDB-DA1A-437C-B1C4-25081ADE66EB}.XPI PUP.Optional.WebCompanion C:\Users\my-cl\AppData\Local\Temp\WebCompanion.zip ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** PUP.Adware.Heuristic HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{608f6d6f-2d62-4fce-839a-1096525c0efb}|DisplayIcon PUP.Adware.Heuristic HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{608f6d6f-2d62-4fce-839a-1096525c0efb}|DisplayName PUP.Adware.Heuristic HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{608f6d6f-2d62-4fce-839a-1096525c0efb}|UninstallString PUP.Optional.Conduit HKCU\Software\Microsoft\Internet Explorer\Main|Start Page PUP.Optional.Conduit HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Run|Web Companion PUP.Optional.WebCompanion HKCU\Software\Lavasoft\Web Companion PUP.Optional.WebCompanion HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com PUP.Optional.WebCompanion HKLM\Software\Wow6432Node\Lavasoft\Web Companion PUP.Optional.WebCompanion HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com PUP.Optional.WebCompanion HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries found. ***** [ Chromium URLs ] ***** No malicious Chromium URLs found. ***** [ Firefox (and derivatives) ] ***** PUP.Optional.Legacy Honey - jid1-93CWPmRbVPjRQA@jetpack ***** [ Firefox URLs ] ***** No malicious Firefox URLs found. ***** [ Hosts File Entries ] ***** No malicious hosts file entries found. ***** [ Preinstalled Software ] ***** No Preinstalled Software found. ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ########## Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.0.9.1 # ------------------------------- # Build: 01-20-2021 # Database: 2021-01-11.1 (Local) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Scan # ------------------------------- # Start: 02-09-2021 # Duration: 00:00:12 # OS: Windows 10 Pro # Scanned: 31956 # Detected: 1 ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** No malicious folders found. ***** [ Files ] ***** Adware.DownloadProtect C:\Windows\Installer\{5F5F2A7A-06D6-4695-812C-17657B3F9D8F}\{96400FDB-DA1A-437C-B1C4-25081ADE66EB}.XPI ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** No malicious registry entries found. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries found. ***** [ Chromium URLs ] ***** No malicious Chromium URLs found. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries found. ***** [ Firefox URLs ] ***** No malicious Firefox URLs found. ***** [ Hosts File Entries ] ***** No malicious hosts file entries found. ***** [ Preinstalled Software ] ***** No Preinstalled Software found. AdwCleaner[S00].txt - [3652 octets] - [04/02/2021 21:21:58] AdwCleaner[C00].txt - [3516 octets] - [04/02/2021 21:22:18] AdwCleaner[S01].txt - [1733 octets] - [07/02/2021 10:23:11] AdwCleaner[C01].txt - [1981 octets] - [07/02/2021 10:23:34] AdwCleaner[S02].txt - [1897 octets] - [07/02/2021 13:55:36] AdwCleaner[C02].txt - [2026 octets] - [07/02/2021 13:56:31] AdwCleaner[S03].txt - [1910 octets] - [07/02/2021 14:00:08] AdwCleaner[S04].txt - [1971 octets] - [07/02/2021 14:18:58] AdwCleaner[S05].txt - [2032 octets] - [07/02/2021 14:51:04] AdwCleaner[S06].txt - [2202 octets] - [09/02/2021 19:20:19] AdwCleaner[C06].txt - [2653 octets] - [09/02/2021 19:20:37] AdwCleaner[S07].txt - [2215 octets] - [09/02/2021 19:22:29] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S08].txt ########## So ich hoffe, das war alles. Vielen Dank schon mal ![]() |
Themen zu Izito und Zapmeda Werbeanzeigen nach Audacity Installation |
administrator, adware, antivirus, audacity, avast, computer, defender, entfernen, explorer, firefox, firewall, homepage, installation, internet, internet explorer, microsoft defender, mozilla, neustart, nvcontainer, nvcontainer.exe, problem, prozesse, realtek, registry, rundll, scan, software, udp, updates, windows |