![]() |
|
Log-Analyse und Auswertung: Windows 10: Presenoker Bedrohung durch Audacity DownloadWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Windows 10: Presenoker Bedrohung durch Audacity Download Guten Tag, ein Dozent an der Uni empfahl Audacity um eine Aufgabe zu bearbeiten. Windows Defender zeigt mir unter aktuellen Bedrohungen "PUA:Win32/Presenoker" an. Bisher habe ich nichts unternommen, sondern bin nach der Warunung durch Windows-Defender beim Googlen auf dieses Forum gestoßen, wo dem User "Home0815" geholfen wurde. Vielen Dank im Voraus! Es folgt die FRST.txt: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 08-02-2021 01 durchgeführt von T-1000 (Administrator) auf DESKTOP-4Q8BVLF (12-02-2021 09:08:10) Gestartet von C:\Users\tords\Desktop Geladene Profile: T-1000 Platform: Windows 10 Home Version 2004 19041.746 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: FF Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.00.01\atkexComSvc.exe (ASUSTeK Computer Inc. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\GPU TweakII\GPUTweakII.exe (ASUSTeK Computer Inc. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\GPU TweakII\Monitor.exe (Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (Geek Software GmbH -> Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Intel(R) Extreme Tuning Utility -> Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe (Logitech Inc -> ) C:\Program Files\LGHUB\logi_analytics_client.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3> (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\tords\AppData\Local\Microsoft\OneDrive\21.002.0104.0005\FileCoAuth.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\tords\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2101.1002.1.0_x64__8wekyb3d8bbwe\XboxAppServices.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.47.10001.0_x64__8wekyb3d8bbwe\GamingServices.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.47.10001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2012.21.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20566.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20566.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <7> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Telegram FZ-LLC -> Telegram FZ-LLC) C:\Users\tords\AppData\Roaming\Telegram Desktop\Telegram.exe (WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2104.8.0_x64__cv1g1gvanyjgm\app\WhatsApp.exe <6> ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8899592 2016-08-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [C:\WINDOWS\system32\V0770Ext.ax] => C:\WINDOWS\system32\RegSvr32.exe /s C:\WINDOWS\system32\V0770Ext.ax HKLM-x32\...\Run: [C:\WINDOWS\System32\V0770Ext.ax] => C:\WINDOWS\system32\RegSvr32.exe /s C:\WINDOWS\System32\V0770Ext.ax HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [487048 2019-10-21] (Geek Software GmbH -> Geek Software GmbH) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [5160760 2020-03-04] (Cisco Systems, Inc. -> Cisco Systems, Inc.) HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3412696 2021-02-12] (Valve -> Valve Corporation) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [Discord] => C:\Users\tords\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [CAM] => C:\Program Files (x86)\NZXT\CAM\Launcher\CAM.exe [67662960 2018-11-07] (NZXT -> NZXT) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [Spotify] => C:\Users\tords\AppData\Roaming\Spotify\Spotify.exe [23597424 2021-01-22] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\tords\AppData\Local\Microsoft\Teams\Update.exe [1789976 2019-09-17] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32873544 2021-01-15] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [DeepL] => C:\Users\tords\AppData\Local\DeepL\app-1.17.1\DeepL.exe [207984 2021-02-03] (DeepL GmbH -> DeepL GmbH) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [123792272 2021-01-13] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-124567967-3126026983-1649499283-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\Installer\chrmstp.exe [2021-02-11] (Google LLC -> Google LLC) Startup: C:\Users\tords\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2021-02-12] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0621681A-0C9A-4B37-A241-ADCDEB91C3DB} - System32\Tasks\GPU Tweak II => C:\Program Files (x86)\ASUS\GPU TweakII\GPUTweakII.exe [12538984 2018-10-08] (ASUSTeK Computer Inc. -> ASUSTeK COMPUTER INC.) Task: {0630ABF0-5FFD-4E4E-AC1A-62A650D6A8D0} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646896 2021-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1AEA47C8-0B3B-4EBD-9E7D-EC87F5A35260} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1EC0325B-AD0D-4400-9554-8B5608203D7C} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1F10515F-A559-4AB9-96EC-4AAEFFD17DD6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {27030714-1BE0-4BC9-98A0-60E80BCBAEDF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {4086CCD6-94E4-4471-85A3-6728397B554E} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {41F6E06F-A75B-47A8-B5F1-0AA31F8B70D4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5680D8CD-E6D9-4E5D-849D-8477071ED7D5} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1283480 2021-01-16] (Microsoft Corporation -> Microsoft Corporation) Task: {58A066FC-AD86-4C80-AADC-632387E7D7B9} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5DB606FC-4951-474F-8F0E-06635BB0BBE8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {79E36777-2531-4BA2-9FA6-565110228B11} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [118120 2021-01-16] (Microsoft Corporation -> Microsoft Corporation) Task: {7A9554FE-8D31-485D-8AF4-A5A5FEB530AB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22763912 2021-01-10] (Microsoft Corporation -> Microsoft Corporation) Task: {7AA8F563-3866-4FD6-A543-9A89850A02F4} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302128 2021-01-21] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7AF7B9F9-5040-463F-9AEA-F4FFF751688D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [3915176 2021-01-16] (Microsoft Corporation -> Microsoft Corporation) Task: {7E571EA4-F535-47E4-A6FE-764330A4A5E3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-14] (Google Inc -> Google Inc.) Task: {9338CA2C-B67E-4CFF-87F6-73F037C2D979} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9608F6D6-767A-4FA3-BDEE-91186AFC7AB4} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {97C4E733-8811-453E-B1BC-2E4BB6C9FD7C} - System32\Tasks\CAM.Desktop => C:\Program Files (x86)\NZXT\CAM\CAM.Desktop.exe [332912 2018-11-07] (NZXT -> ) Task: {9A1EBB91-5B76-4543-ABAE-B498D762E0DE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9B9CBE1A-94F8-4755-898C-777DD81916F6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-14] (Google Inc -> Google Inc.) Task: {AE684386-D2FD-42F5-86B4-4AF7976B1719} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BA733E62-CA38-4194-9BEA-6007571B3430} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22763912 2021-01-10] (Microsoft Corporation -> Microsoft Corporation) Task: {C17FA04A-0756-4F08-AE21-ECF3D87DC8C6} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [677344 2021-02-11] (Mozilla Corporation -> Mozilla Foundation) Task: {C4AF7E07-683C-40C5-BE91-2FF05DE3AE9E} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-124567967-3126026983-1649499283-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {D940271A-59F7-4B68-A893-031E5B29DF47} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {F4F81825-3710-4C04-9B2F-86D57A33EA62} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [3915176 2021-01-16] (Microsoft Corporation -> Microsoft Corporation) Task: {FD00AA55-36BB-4560-99AC-504A9E96C0A0} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [118120 2021-01-16] (Microsoft Corporation -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{b60e3be6-d878-4714-88f2-3eca6fe36518}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{b60e3be6-d878-4714-88f2-3eca6fe36518}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Profile: C:\Users\tords\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-27] FireFox: ======== FF DefaultProfile: fg5vtfbt.default-1524587747218 FF ProfilePath: C:\Users\tords\AppData\Roaming\Mozilla\Firefox\Profiles\fg5vtfbt.default-1524587747218 [2021-02-12] FF Homepage: Mozilla\Firefox\Profiles\fg5vtfbt.default-1524587747218 -> hxxps://calendar.google.com/calendar/u/0/r FF NewTab: Mozilla\Firefox\Profiles\fg5vtfbt.default-1524587747218 -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2021-01-15 11:33:28&bName= FF Notifications: Mozilla\Firefox\Profiles\fg5vtfbt.default-1524587747218 -> hxxps://tomato-timer.com; hxxps://www.prosieben.de; hxxps://www.aerzteblatt.de FF Extension: (Facebook Container) - C:\Users\tords\AppData\Roaming\Mozilla\Firefox\Profiles\fg5vtfbt.default-1524587747218\Extensions\@contain-facebook.xpi [2020-09-29] FF Extension: (uBlock Origin) - C:\Users\tords\AppData\Roaming\Mozilla\Firefox\Profiles\fg5vtfbt.default-1524587747218\Extensions\uBlock0@raymondhill.net.xpi [2021-02-02] FF Extension: (Citavi Picker) - C:\Users\tords\AppData\Roaming\Mozilla\Firefox\Profiles\fg5vtfbt.default-1524587747218\Extensions\{8AA36F4F-6DC7-4c06-77AF-5035170634FE}.xpi [2021-01-10] FF SearchPlugin: C:\Users\tords\AppData\Roaming\Mozilla\Firefox\Profiles\fg5vtfbt.default-1524587747218\searchplugins\My Firefox Search.xml [2021-01-15] FF Extension: (Citavi Picker) - C:\Program Files\Mozilla Firefox\distribution\extensions\{8AA36F4F-6DC7-4c06-77AF-5035170634FE}.xpi [2018-09-11] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2020-09-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-02-02] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default [2020-06-15] CHR Extension: (Präsentationen) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-10-14] CHR Extension: (Docs) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-10-14] CHR Extension: (Google Drive) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-14] CHR Extension: (YouTube) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-10-14] CHR Extension: (Tabellen) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-10-14] CHR Extension: (Google Docs Offline) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-12] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-04-22] CHR Extension: (Google Mail) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-02] CHR Extension: (Chrome Media Router) - C:\Users\tords\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-12] CHR HKLM-x32\...\Chrome\Extension: [ohgndokldibnndfnjnagojmheejlengn] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.00.01\atkexComSvc.exe [382424 2018-01-05] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8808480 2021-01-16] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8854920 2021-01-10] (Microsoft Corporation -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-11-12] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1113864 2020-05-08] (Bayerisches Landesamt fuer Steuern -> ) S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [410424 2020-12-16] (NVIDIA Corporation -> NVIDIA) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10897296 2021-01-13] (Logitech Inc -> Logitech, Inc.) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2533952 2021-02-02] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3479624 2021-02-02] (Electronic Arts, Inc. -> Electronic Arts) R2 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [487048 2019-10-21] (Geek Software GmbH -> Geek Software GmbH) S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182128 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2017-04-14] (ASUSTeK Computer Inc. -> ) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] R1 HWiNFO; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [55960 2018-04-12] (Martin Malik - REALiX -> REALiX(tm)) R1 HWiNFO_150; C:\WINDOWS\system32\drivers\HWiNFO64A_150.SYS [62240 2020-05-14] (Martin Malik - REALiX -> REALiX(tm)) R3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [34064 2017-05-08] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) S3 ladfGSS; C:\WINDOWS\system32\drivers\ladfGSS.sys [45168 2018-05-07] (Logitech Inc -> Logitech Inc.) R2 LGHUBTemperatureService; C:\ProgramData\LGHUB\depots\73248\driver_cpu_temperature\logi_core_temp.sys [25448 2021-01-13] (Logitech Inc. -> Logitech) R3 logi_audio_surround; C:\WINDOWS\system32\drivers\logi_audio_surround.sys [44096 2020-12-16] (Logitech Inc -> Logitech) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [38136 2020-10-24] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [26672 2020-10-24] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66808 2020-10-24] (Logitech Inc -> Logitech) R3 MpKsl8e1199b2; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AE9C30A4-E7E6-432E-AEAF-4A56150CF28B}\MpKslDrv.sys [47344 2021-02-12] (Microsoft Windows -> Microsoft Corporation) R3 SIUSBXP; C:\WINDOWS\system32\drivers\SiUSBXp.sys [19456 2017-09-22] (Asetek A/S -> Silicon Laboratories) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43376 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2018-06-08] (Valve Corp. -> ) R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2018-06-08] (Valve Corp. -> ) S3 vpnva; C:\WINDOWS\System32\drivers\vpnva64-6.sys [74048 2020-03-04] (Cisco Systems, Inc. -> Cisco Systems, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-12 09:08 - 2021-02-12 09:08 - 000025766 _____ C:\Users\tords\Desktop\FRST.txt 2021-02-12 09:03 - 2021-02-12 09:08 - 000000000 ____D C:\FRST 2021-02-12 08:57 - 2021-02-12 08:57 - 002297344 _____ (Farbar) C:\Users\tords\Desktop\FRST64.exe 2021-02-11 20:10 - 2021-02-11 20:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-02-11 15:30 - 2021-02-11 20:10 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-02-03 22:10 - 2021-02-03 22:10 - 003672015 _____ C:\Users\tords\Downloads\b79ee037091eac9b.mp4 2021-02-03 21:15 - 2021-02-03 21:15 - 000000000 ____D C:\Users\tords\AppData\Roaming\EasyAntiCheat 2021-02-03 18:01 - 2021-02-03 18:01 - 002769332 _____ C:\Users\tords\Downloads\7 Präsentation FD1_09.12.19_Version 3.pdf 2021-02-02 10:18 - 2021-02-02 12:45 - 000000000 ____D C:\Users\tords\AppData\Local\Synthetik 2021-02-01 13:32 - 2021-02-03 10:15 - 000002120 _____ C:\Users\tords\Desktop\Lesedaten2.csv 2021-01-31 08:58 - 2021-01-31 08:58 - 004769750 _____ C:\Users\tords\Downloads\4cab6557fc2025ea.mp4 2021-01-30 21:07 - 2021-01-23 09:57 - 001855184 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2021-01-30 21:07 - 2021-01-23 09:57 - 001855184 _____ C:\WINDOWS\system32\vulkaninfo.exe 2021-01-30 21:07 - 2021-01-23 09:57 - 001453720 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2021-01-30 21:07 - 2021-01-23 09:57 - 001435872 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-01-30 21:07 - 2021-01-23 09:57 - 001435872 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2021-01-30 21:07 - 2021-01-23 09:57 - 001094872 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2021-01-30 21:07 - 2021-01-23 09:57 - 001094872 _____ C:\WINDOWS\system32\vulkan-1.dll 2021-01-30 21:07 - 2021-01-23 09:57 - 000948960 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2021-01-30 21:07 - 2021-01-23 09:57 - 000948960 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2021-01-30 21:07 - 2021-01-23 09:56 - 001193112 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2021-01-30 21:07 - 2021-01-23 09:54 - 001512104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2021-01-30 21:07 - 2021-01-23 09:54 - 001164968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2021-01-30 21:07 - 2021-01-23 09:54 - 000680088 _____ C:\WINDOWS\system32\nvofapi64.dll 2021-01-30 21:07 - 2021-01-23 09:54 - 000672936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2021-01-30 21:07 - 2021-01-23 09:54 - 000558248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2021-01-30 21:07 - 2021-01-23 09:54 - 000547480 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 008262312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 007392920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 004611760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 002731184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 002103448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 001732264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6446140.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 001589400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 001491608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6446140.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 000813208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2021-01-30 21:07 - 2021-01-23 09:53 - 000657048 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2021-01-30 20:52 - 2021-01-30 20:52 - 002688327 _____ C:\Users\tords\Downloads\318e1a0a446d5b9d.mp4 2021-01-30 10:14 - 2021-01-30 10:25 - 000000676 _____ C:\Users\tords\Desktop\Lesedaten.csv 2021-01-30 10:13 - 2021-01-30 10:13 - 000000000 _____ C:\Users\tords\Desktop\Neues Textdokument.txt 2021-01-30 08:52 - 2021-01-30 08:52 - 000000000 ____D C:\Users\tords\.ssh 2021-01-30 08:43 - 2021-01-30 08:43 - 465117048 _____ C:\Users\tords\Downloads\pycharm-professional-2020.3.3.exe 2021-01-29 20:30 - 2021-01-29 20:30 - 005829706 _____ C:\Users\tords\Downloads\77591914d16541ed.mp4 2021-01-29 16:42 - 2021-01-29 16:42 - 007256340 _____ C:\Users\tords\Downloads\video_2021-01-29_16-41-57.mp4 2021-01-29 11:00 - 2021-01-29 11:00 - 006337020 _____ C:\Users\tords\Downloads\549547192aaf074c.mp4 2021-01-29 09:39 - 2021-01-29 09:39 - 001759702 _____ C:\Users\tords\Downloads\e4dd2d35bb2aba6e.mp4 2021-01-28 10:51 - 2021-01-28 10:51 - 000108179 _____ C:\Users\tords\Downloads\Lernbereichsplanung Gerechtigkeit.pdf 2021-01-28 10:16 - 2021-01-28 10:16 - 003257328 _____ C:\Users\tords\Downloads\c27fc6186070c4d2.mp4 2021-01-26 17:33 - 2021-01-26 17:33 - 008580848 _____ C:\Users\tords\Downloads\Vl22 +ff RNA, Trankription, Prozessierung 1.pdf 2021-01-26 16:32 - 2021-01-26 16:32 - 001577475 _____ C:\Users\tords\Downloads\90b71504b9f8205d.mp4 2021-01-26 09:32 - 2021-01-26 09:32 - 001392286 _____ C:\Users\tords\Downloads\fa8d6f7bf26e7625.mp4 2021-01-24 16:56 - 2021-01-24 16:56 - 001106478 _____ C:\Users\tords\Downloads\8d1648127e7aa7c0.mp4 2021-01-23 12:47 - 2021-02-03 10:28 - 000000000 ____D C:\Users\tords\Downloads\Telegram Desktop 2021-01-23 08:22 - 2021-01-23 08:22 - 003451870 _____ C:\Users\tords\Downloads\e7302a909dc2352c.mp4 2021-01-23 08:10 - 2021-02-12 08:04 - 000000000 ____D C:\Users\tords\AppData\Roaming\Telegram Desktop 2021-01-23 08:10 - 2021-01-23 08:10 - 000000000 ____D C:\Users\tords\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop 2021-01-23 08:09 - 2021-01-23 08:09 - 026944816 _____ (Telegram FZ-LLC ) C:\Users\tords\Downloads\tsetup.2.5.1.exe 2021-01-20 20:18 - 2021-02-03 07:57 - 000000128 _____ C:\Users\tords\AppData\Local\PUTTY.RND 2021-01-20 20:08 - 2021-01-20 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit) 2021-01-20 20:08 - 2021-01-20 20:08 - 000000000 ____D C:\Program Files\PuTTY 2021-01-20 20:06 - 2021-01-20 20:06 - 002843648 _____ C:\Users\tords\Downloads\putty-64bit-0.74-installer.msi 2021-01-20 13:28 - 2021-01-20 13:28 - 000665262 _____ C:\Users\tords\Downloads\44de587ee3ce1f2a.mp4 2021-01-19 15:49 - 2021-01-19 15:49 - 002749177 _____ C:\Users\tords\Downloads\0e5559b55b631b23.mp4 2021-01-18 16:36 - 2021-01-18 16:36 - 000000000 ____D C:\Users\tords\AppData\Local\pip 2021-01-18 16:35 - 2021-01-22 11:30 - 000000000 ____D C:\Users\tords\PycharmProjects 2021-01-18 16:35 - 2021-01-18 16:35 - 000000000 ____D C:\Users\tords\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.8 2021-01-18 16:35 - 2021-01-18 16:35 - 000000000 ____D C:\Users\tords\AppData\Local\Package Cache 2021-01-18 16:34 - 2021-01-30 08:54 - 000000000 ____D C:\Users\tords\AppData\Roaming\JetBrains 2021-01-18 16:34 - 2021-01-30 08:45 - 000000000 ____D C:\Users\tords\AppData\Local\JetBrains 2021-01-18 16:32 - 2021-01-30 08:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains 2021-01-18 16:31 - 2021-01-30 08:44 - 000000000 ____D C:\Program Files\JetBrains 2021-01-18 16:28 - 2021-01-18 16:29 - 365527656 _____ C:\Users\tords\Downloads\pycharm-community-2020.3.2.exe 2021-01-18 10:44 - 2021-01-18 10:44 - 000733523 _____ C:\Users\tords\Downloads\eef55aa5d41c537b.mp4 2021-01-16 22:04 - 2021-01-16 22:04 - 000000000 ____D C:\Users\tords\AppData\Local\Epic Games 2021-01-16 21:48 - 2021-01-16 21:48 - 000000324 _____ C:\Users\tords\Desktop\ARK Survival Evolved.url 2021-01-16 21:04 - 2021-02-03 21:10 - 000000000 ____D C:\Program Files (x86)\Origin Games 2021-01-16 20:23 - 2021-01-16 20:23 - 000000000 ____D C:\Ark 2021-01-16 13:17 - 2021-01-16 13:17 - 000062550 _____ C:\Users\tords\Downloads\2021-01-16-12-07-31.aup 2021-01-16 13:17 - 2021-01-16 13:17 - 000000000 ____D C:\Users\tords\Downloads\2021-01-16-12-07-31_data 2021-01-16 09:52 - 2021-01-16 09:52 - 001279013 _____ C:\Users\tords\Downloads\f79641f68f9ea740.mp4 2021-01-15 18:27 - 2021-01-15 18:27 - 000000000 ____D C:\Users\tords\AppData\LocalLow\SKS 2021-01-15 13:03 - 2021-02-02 20:24 - 000000000 ____D C:\Users\tords\AppData\Roaming\obs-studio 2021-01-15 13:03 - 2021-01-15 13:03 - 000001052 _____ C:\ProgramData\Desktop\OBS Studio.lnk 2021-01-15 13:03 - 2021-01-15 13:03 - 000000000 ____D C:\ProgramData\obs-studio-hook 2021-01-15 13:03 - 2021-01-15 13:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2021-01-15 13:03 - 2021-01-15 13:03 - 000000000 ____D C:\Program Files\obs-studio 2021-01-15 13:00 - 2021-01-15 13:02 - 075607864 _____ (obsproject.com) C:\Users\tords\Downloads\OBS-Studio-26.1.1-Full-Installer-x64.exe 2021-01-15 12:33 - 2021-01-15 12:33 - 000001088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2021-01-15 12:32 - 2021-01-15 12:32 - 031582264 _____ (Audacity Team) C:\Users\tords\Downloads\audacity2-4-2.exe 2021-01-15 08:20 - 2021-01-15 08:20 - 003310925 _____ C:\Users\tords\Downloads\b725a080fe31fba3.mp4 2021-01-15 07:45 - 2021-01-15 07:45 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-01-15 07:45 - 2021-01-15 07:45 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-01-15 07:45 - 2021-01-15 07:45 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-01-15 07:45 - 2021-01-15 07:45 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-01-15 07:45 - 2021-01-15 07:45 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-01-15 07:45 - 2021-01-15 07:45 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-01-15 07:45 - 2021-01-15 07:45 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-01-15 07:45 - 2021-01-15 07:45 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-01-15 07:45 - 2021-01-15 07:45 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-01-15 07:45 - 2021-01-15 07:45 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-01-15 07:45 - 2021-01-15 07:45 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-01-15 07:45 - 2021-01-15 07:45 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-01-15 07:45 - 2021-01-15 07:45 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-01-15 07:45 - 2021-01-15 07:45 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-01-15 07:45 - 2021-01-15 07:45 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-01-15 07:45 - 2021-01-15 07:45 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-01-15 07:45 - 2021-01-15 07:45 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-01-15 07:45 - 2021-01-15 07:45 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-01-15 07:45 - 2021-01-15 07:45 - 000010894 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-01-15 07:44 - 2021-01-15 07:44 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-01-15 07:44 - 2021-01-15 07:44 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-01-15 07:44 - 2021-01-15 07:44 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-01-15 07:44 - 2021-01-15 07:44 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-01-15 07:44 - 2021-01-15 07:44 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-01-15 07:44 - 2021-01-15 07:44 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-01-15 07:44 - 2021-01-15 07:44 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-01-15 07:44 - 2021-01-15 07:44 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-01-15 07:44 - 2021-01-15 07:44 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-01-15 07:44 - 2021-01-15 07:44 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-01-15 07:44 - 2021-01-15 07:44 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-01-15 07:44 - 2021-01-15 07:44 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll 2021-01-14 07:13 - 2021-01-14 07:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2021-01-14 07:13 - 2021-01-14 07:13 - 000000000 ____D C:\Program Files\LGHUB 2021-01-13 15:59 - 2021-01-13 15:59 - 001944624 _____ C:\Users\tords\Downloads\3fdb5bda833d8f51.mp4 2021-01-13 12:09 - 2021-01-13 12:09 - 001850364 _____ C:\Users\tords\Downloads\d1137f1249204e0e.mp4 2021-01-13 11:41 - 2021-01-13 11:41 - 000207318 _____ C:\Users\tords\Downloads\PruefungstermineBIO-BCH-LA-WiSe2021.pdf ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-12 09:07 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-02-12 09:03 - 2020-09-29 08:02 - 000000000 ____D C:\Users\tords\AppData\Roaming\Anki2 2021-02-12 09:03 - 2018-02-14 22:53 - 000000000 ____D C:\Program Files (x86)\Steam 2021-02-12 08:58 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-02-12 07:44 - 2020-10-24 18:26 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-02-12 07:29 - 2018-03-01 20:47 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-02-12 07:24 - 2018-02-14 22:10 - 000000000 ____D C:\ProgramData\NVIDIA 2021-02-12 07:22 - 2020-10-24 18:32 - 000003096 _____ C:\WINDOWS\system32\Tasks\GPU Tweak II 2021-02-12 07:22 - 2020-04-21 13:24 - 000000000 ____D C:\Users\tords\AppData\Roaming\LGHUB 2021-02-12 07:22 - 2020-04-21 13:24 - 000000000 ____D C:\Users\tords\AppData\Local\LGHUB 2021-02-12 07:22 - 2018-02-14 22:08 - 000000000 ____D C:\Users\tords\AppData\LocalLow\Mozilla 2021-02-12 07:22 - 2018-02-14 22:04 - 000000000 ___RD C:\Users\tords\OneDrive 2021-02-11 20:10 - 2018-04-24 17:35 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-02-11 20:10 - 2018-04-24 17:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-02-11 20:08 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-02-11 20:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-02-11 20:08 - 2018-04-08 16:53 - 000000000 ____D C:\Users\tords\AppData\Roaming\discord 2021-02-11 16:09 - 2018-09-05 16:08 - 000000000 ____D C:\Program Files (x86)\Origin 2021-02-11 16:09 - 2018-09-05 16:07 - 000000000 ____D C:\ProgramData\Origin 2021-02-11 15:31 - 2020-10-24 18:32 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-02-11 15:30 - 2020-08-22 23:28 - 000002419 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-02-11 15:30 - 2018-06-27 17:20 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-02-11 15:26 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-02-11 15:24 - 2020-10-24 18:40 - 000003606 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6aa2b8e843753 2021-02-11 15:24 - 2020-10-24 18:32 - 000003700 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-02-11 15:24 - 2018-10-14 19:52 - 000002293 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-02-03 22:15 - 2018-09-05 16:07 - 000000000 ____D C:\Users\tords\AppData\Roaming\Origin 2021-02-03 21:10 - 2018-09-05 16:07 - 000000000 ____D C:\Users\tords\AppData\Local\Origin 2021-02-03 20:51 - 2020-10-24 18:36 - 001722788 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-02-03 20:51 - 2019-12-07 15:50 - 000743546 _____ C:\WINDOWS\system32\perfh007.dat 2021-02-03 20:51 - 2019-12-07 15:50 - 000149968 _____ C:\WINDOWS\system32\perfc007.dat 2021-02-03 20:44 - 2020-10-24 18:32 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-02-03 20:44 - 2020-10-24 18:26 - 000008192 ___SH C:\DumpStack.log.tmp 2021-02-03 20:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-02-03 20:44 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2021-02-03 20:43 - 2019-08-30 09:22 - 000000000 ____D C:\Users\tords\Documents\Citavi 6 2021-02-03 18:13 - 2019-12-03 18:35 - 000000000 ____D C:\Users\tords\AppData\Local\DeepL_GmbH 2021-02-03 11:11 - 2019-12-03 18:35 - 000000000 ____D C:\Users\tords\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DeepL GmbH 2021-02-03 11:11 - 2019-12-03 18:35 - 000000000 ____D C:\Users\tords\AppData\Local\DeepL 2021-02-02 17:37 - 2020-10-24 18:32 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-124567967-3126026983-1649499283-1001 2021-02-02 17:37 - 2020-10-24 18:06 - 000002379 _____ C:\Users\tords\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-02-02 14:07 - 2018-12-19 08:12 - 000000000 ____D C:\Users\tords\AppData\Roaming\Spotify 2021-02-02 14:07 - 2018-12-19 08:12 - 000000000 ____D C:\Users\tords\AppData\Local\Spotify 2021-02-02 12:46 - 2018-11-29 13:52 - 000000000 ____D C:\Users\tords\AppData\Roaming\TS3Client 2021-01-30 21:10 - 2018-02-14 23:46 - 000000000 ____D C:\Users\tords\AppData\Local\CrashDumps 2021-01-30 20:58 - 2020-10-24 18:32 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2020-10-24 18:32 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-01-30 20:58 - 2018-02-14 22:19 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2021-01-30 20:58 - 2018-02-14 22:10 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-01-30 20:58 - 2018-02-14 22:10 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-01-30 08:52 - 2020-10-24 18:06 - 000000000 ____D C:\Users\tords 2021-01-28 20:40 - 2018-02-14 22:02 - 000000000 ____D C:\Users\tords\AppData\Local\Packages 2021-01-28 07:28 - 2020-10-24 18:32 - 000003630 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-01-28 07:28 - 2020-10-24 18:32 - 000003506 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-01-27 09:31 - 2018-02-14 22:19 - 000000000 ____D C:\Users\tords\AppData\Local\PlaceholderTileLogoFolder 2021-01-27 08:33 - 2018-09-27 11:17 - 000000000 ____D C:\Users\tords\AppData\Local\Ubisoft Game Launcher 2021-01-23 09:50 - 2020-10-11 12:31 - 007116688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2021-01-23 09:50 - 2020-10-11 12:31 - 006070848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2021-01-22 23:59 - 2020-10-11 12:31 - 000061071 _____ C:\WINDOWS\system32\nvinfo.pb 2021-01-22 20:53 - 2020-10-02 07:02 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-01-22 20:04 - 2018-02-14 22:19 - 005629168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2021-01-22 20:04 - 2018-02-14 22:19 - 002637040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2021-01-22 20:04 - 2018-02-14 22:19 - 001759472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2021-01-22 20:04 - 2018-02-14 22:19 - 000991472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2021-01-22 20:04 - 2018-02-14 22:19 - 000121584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2021-01-22 20:04 - 2018-02-14 22:19 - 000083696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2021-01-22 18:12 - 2020-04-18 16:22 - 000000000 ____D C:\Users\tords\Documents\MAXON 2021-01-22 18:12 - 2020-04-18 16:22 - 000000000 ____D C:\Users\tords\AppData\Roaming\MAXON 2021-01-22 11:30 - 2018-05-27 20:48 - 000000000 ____D C:\Users\tords\AppData\Local\D3DSCache 2021-01-22 09:45 - 2018-02-14 22:19 - 009482357 _____ C:\WINDOWS\system32\nvcoproc.bin 2021-01-22 07:28 - 2018-02-15 11:02 - 000799104 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2021-01-20 19:09 - 2018-05-17 21:07 - 002797808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2021-01-20 19:09 - 2018-05-17 21:07 - 002154224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2021-01-20 19:09 - 2018-05-17 21:07 - 001295088 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll 2021-01-18 16:35 - 2018-02-14 23:43 - 000000000 ____D C:\ProgramData\Package Cache 2021-01-18 13:08 - 2018-02-14 22:02 - 000000000 ____D C:\Users\tords\AppData\Local\ConnectedDevicesPlatform 2021-01-16 22:04 - 2018-07-05 09:12 - 000000000 ____D C:\Users\tords\AppData\Local\BattlEye 2021-01-16 21:04 - 2018-09-05 16:35 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller 2021-01-16 13:17 - 2018-02-25 16:41 - 000000000 ____D C:\Users\tords\AppData\Roaming\audacity 2021-01-16 08:26 - 2018-03-03 22:09 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-01-15 18:02 - 2020-10-24 18:26 - 000450664 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-01-15 18:01 - 2020-10-24 17:51 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB 2021-01-15 18:01 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-15 18:01 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-01-15 18:01 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-15 17:12 - 2020-04-24 13:43 - 000000000 ____D C:\Riot Games 2021-01-15 17:12 - 2020-04-24 13:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2021-01-15 12:36 - 2019-02-05 06:47 - 000000000 ____D C:\ProgramData\Mozilla 2021-01-15 12:33 - 2018-02-25 16:41 - 000000000 ____D C:\Program Files (x86)\Audacity 2021-01-15 07:44 - 2020-10-24 18:29 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2021-01-15 07:44 - 2018-02-14 19:17 - 000413698 __RSH C:\bootmgr 2021-01-15 07:38 - 2018-02-15 11:01 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-01-15 07:36 - 2018-02-15 11:01 - 135062968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-01-14 08:04 - 2018-11-29 13:52 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2018-12-01 16:47 - 2018-12-02 14:32 - 000000040 _____ () C:\Users\tords\AppData\Roaming\cdr.ini 2021-01-20 20:18 - 2021-02-03 07:57 - 000000128 _____ () C:\Users\tords\AppData\Local\PUTTY.RND 2020-03-24 10:21 - 2020-03-24 10:21 - 000007619 _____ () C:\Users\tords\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== Geändert von Vektor (12.02.2021 um 09:45 Uhr) Grund: Edit: Addition.txt in den Anhang geladen |
Themen zu Windows 10: Presenoker Bedrohung durch Audacity Download |
administrator, adobe, asus, computer, cpu, defender, firefox, geforce, google, home, homepage, internet, mozilla, nvcontainer.exe, nvidia, pdf, prozesse, realtek, registry, router, rundll, scan, software, teamspeak, updates, windows |