![]() |
|
Log-Analyse und Auswertung: Windows 10: Malwarebefall durch audacity.de, ziemlich hatnäckigWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Windows 10: Malwarebefall durch audacity.de, ziemlich hatnäckig Hallo, durch einen kurzzeitigen Ausfall meines biologischen Virenschutzes "Brain" habe ich auf meinem PC nun eine ziemliche Plage, der ich nicht Herr werde. Ich benötige also bitte Hilfe. Das Protokoll von Malwarebyte von heute morgen sieht so aus: Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 18.02.21 Scan-Zeit: 07:22 Protokolldatei: 9d29c770-71b1-11eb-8757-64006a663433.json -Softwaredaten- Version: 4.3.0.98 Komponentenversion: 1.0.1173 Version des Aktualisierungspakets: 1.0.37249 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 10 (Build 19042.804) CPU: x64 Dateisystem: NTFS Benutzer: System -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Scan gestartet von: Zeitplaner Ergebnis: Abgeschlossen Gescannte Objekte: 336247 Erkannte Bedrohungen: 13 In die Quarantäne verschobene Bedrohungen: 13 Abgelaufene Zeit: 3 Min., 14 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Erkennung PUM: Erkennung -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 6 Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Background Microsoft-NDIS-Aufzeichnung Windows, In Quarantäne, 17095, 910813, , , , , , Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5A67D17F-CE35-4AC6-9633-61E9F802B3D1}, In Quarantäne, 17095, 910813, , , , , , Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\BOOT\{5A67D17F-CE35-4AC6-9633-61E9F802B3D1}, In Quarantäne, 17095, 910813, , , , , , Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\BrowserfürComputerbrowser, In Quarantäne, 17095, 910814, , , , , , Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4694CD9E-B0A1-45EA-AB69-FCAC931CD8AC}, In Quarantäne, 17095, 910814, , , , , , Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\BOOT\{4694CD9E-B0A1-45EA-AB69-FCAC931CD8AC}, In Quarantäne, 17095, 910814, , , , , , Registrierungswert: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 2 Trojan.DownloadProtect, C:\PROGRAMDATA\PACKAGE CACHE\{31E9B2ED-78EA-4776-85EB-86C2E8D7524A}, In Quarantäne, 17095, 910813, 1.0.37249, , ame, , , Trojan.DownloadProtect, C:\WINDOWS\INSTALLER\{BC192F4C-D03F-47A8-8B95-11FFC39AEE82}, In Quarantäne, 17095, 910814, 1.0.37249, , ame, , , Datei: 5 PUP.Optional.MyFireSearch, C:\USERS\FMGDT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\60WQIJQA.DEFAULT-RELEASE\SEARCHPLUGINS\MY FIREFOX SEARCH.XML, In Quarantäne, 17096, 910682, 1.0.37249, , ame, , 8EFD9CB5F410CC221E8FD7D91A81088B, 01125776B3E76B3F18E4AA062BDF8B6BD36A077BA6019F2F6BD5821A3884890B Trojan.DownloadProtect, C:\WINDOWS\SYSTEM32\TASKS\Background Microsoft-NDIS-Aufzeichnung Windows, In Quarantäne, 17095, 910813, , , , , 46F2500A379E40C67AC98470ED39D7C0, C74915CDD54FF8EC6B4E5C7787100254BF709E932827BDBE20265425B782E29B Trojan.DownloadProtect, C:\PROGRAMDATA\PACKAGE CACHE\{31E9B2ED-78EA-4776-85EB-86C2E8D7524A}\{19F26F3C-071E-4C56-ADFF-1A9AB492041B}, In Quarantäne, 17095, 910813, 1.0.37249, , ame, , B8D110760C28744F88F92FABB6CFE256, F138DD7CED213A35D33E0DB5EFA74A3740834DD5C569F7D022B79BB2403E76DF Trojan.DownloadProtect, C:\WINDOWS\SYSTEM32\TASKS\BrowserfürComputerbrowser, In Quarantäne, 17095, 910814, , , , , 5A0970F34BF0DD83B839B91B7FE20AAE, A34E7E0E25C1CC5E313A81DB41CED278D5A7BED7FC7CDBD0518D84E8FBB1C498 Trojan.DownloadProtect, C:\WINDOWS\INSTALLER\{BC192F4C-D03F-47A8-8B95-11FFC39AEE82}\{C184377B-1E2F-456E-AF97-8854269B4813}, In Quarantäne, 17095, 910814, 1.0.37249, , ame, , 3184BBB15B9BDE0C6A3EAC913C3832E5, 27FEC56E81A290697C7238FA31BFF5A9D1917704B67B7B624FBB3B0E284F2997 Physischer Sektor: 0 (keine bösartigen Elemente erkannt) WMI: 0 (keine bösartigen Elemente erkannt) (end) Ich bedanke mich schon mal im Voraus für jede Unterstützung! Hier noch FRST.txt: FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 17-02-2021 01 durchgeführt von fmgdt (Administrator) auf MARTINS-I5 (Dell Inc. OptiPlex 9020) (18-02-2021 07:58:08) Gestartet von C:\Users\fmgdt\Desktop\FRST Geladene Profile: fmgdt Platform: Windows 10 Pro Version 20H2 19042.804 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: FF Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\Adobe Installer.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud Helper.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe <4> (Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc\AdobeNotificationClient.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\116.4.368\QtWebEngineProcess.exe <3> (Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe <2> (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\fmgdt\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2101.15643.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20566.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20566.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <7> (Node.js Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe (Node.js Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8538872 2016-01-13] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1415928 2016-01-13] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [Focusrite Notifier] => C:\Program Files\Focusriteusb\Focusrite Notifier.exe [5029376 2020-06-02] (Focusrite Audio Engineering, Ltd.) [Datei ist nicht signiert] HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2095672 2021-01-27] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-02-04] (Adobe Inc. -> ) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files\KeePass Password Safe 2\KeePass.exe [3137728 2021-01-09] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5237416 2021-02-15] (Adobe Inc. -> Adobe Systems Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7992336 2021-02-14] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschränkung <==== ACHTUNG HKU\S-1-5-21-432176779-2769377027-3090007192-1004\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [50011008 2021-01-20] (Google LLC -> ) HKU\S-1-5-21-432176779-2769377027-3090007192-1004\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-432176779-2769377027-3090007192-1004\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5536424 2021-02-15] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-432176779-2769377027-3090007192-1004\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3412696 2021-02-08] (Valve -> Valve Corporation) HKU\S-1-5-21-432176779-2769377027-3090007192-1004\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32440376 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [65496 2020-12-07] (Adobe Inc. -> Adobe Systems Inc) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 9.8 PE.lnk [2021-02-08] ShortcutTarget: PHOTOfunSTUDIO 9.8 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (Panasonic Corporation -> Panasonic Corporation) BootExecute: autocheck autochk * sdnclean64.exe ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0346D751-41DF-43DE-ACEA-7DAA7BBA1F69} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [3047944 2020-10-12] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) Task: {22839E9C-95AD-46F1-9786-2342F9AE9D28} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2021-01-27] (Dropbox, Inc -> Dropbox, Inc.) Task: {2908020B-92B2-4B0A-8951-0B5E604D1F45} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {413E22FB-8239-4C2E-9260-793C7F1AA824} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [677344 2021-02-11] (Mozilla Corporation -> Mozilla Foundation) Task: {421E3B1A-F2D5-4EC3-A904-FB0AC119CD0A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {5625506D-67ED-4CD1-93F0-68B109198305} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26913848 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) Task: {5777540D-3C47-46AA-9CB0-AA389A888923} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2021-01-27] (Dropbox, Inc -> Dropbox, Inc.) Task: {5B671E05-C565-41E3-860F-26C674DF8ED6} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {5C33BA0C-ECF6-49CB-8E31-CBA8B025AA9D} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {5D027DB3-2149-4EE4-820A-CCAFC5324821} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {80377104-DEF2-4452-8CB6-8EA67FE79DD5} - \OneDrive Standalone Update Task-S-1-5-21-432176779-2769377027-3090007192-1001 -> Keine Datei <==== ACHTUNG Task: {9D2BD163-3350-4DC4-9188-B03943CC725B} - System32\Tasks\SoftMakerUpdater => C:\Program Files\SoftMaker Office 2018\SoftMakerUpdaterTool.exe [6367440 2019-03-04] (SoftMaker Software GmbH -> ) Task: {B9A8E101-61B0-4D1B-B053-14D15FAFD7D8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) Task: {C909A49C-22C1-4703-8B0C-E79CD4182171} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.43.174 Tcpip\..\Interfaces\{009141ac-ec40-4a1c-80a8-6a5e4c335449}: [DhcpNameServer] 192.168.43.174 Tcpip\..\Interfaces\{74962702-8045-4dda-91e6-c967484f8e9a}: [DhcpNameServer] 192.168.43.108 Tcpip\..\Interfaces\{b5f2aaa2-9168-4865-b972-81112fdd866d}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\fmgdt\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-16] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\fmgdt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-02-16] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF DefaultProfile: miqycwla.default FF ProfilePath: C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\miqycwla.default [2021-02-15] FF user.js: detected! => C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\miqycwla.default\user.js [2021-02-11] FF Homepage: Mozilla\Firefox\Profiles\miqycwla.default -> hxxps://www.google.com/ FF NewTab: Mozilla\Firefox\Profiles\miqycwla.default -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2021-01-28 11:57:53&bName= FF ProfilePath: C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release [2021-02-18] FF user.js: detected! => C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\user.js [2021-02-11] FF Homepage: Mozilla\Firefox\Profiles\60wqijqa.default-release -> hxxps://www.google.de/ FF NewTab: Mozilla\Firefox\Profiles\60wqijqa.default-release -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2021-01-28 11:57:53&bName= FF Notifications: Mozilla\Firefox\Profiles\60wqijqa.default-release -> hxxps://calendar.google.com; hxxps://mein.ionos.de; hxxps://cloudpanel.ionos.de FF Extension: (Google search link fix) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\jid0-XWJxt5VvCXkKzQK99PhZqAn7Xbg@jetpack.xpi [2021-01-27] FF Extension: („Merken“-Button von Pinterest) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2021-01-27] FF Extension: (Nimbus Screen Capture: Screenshots, Annotate) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\nimbusscreencaptureff@everhelper.me.xpi [2021-01-27] FF Extension: (Show/Hide passwords) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\shpassword@shpassword.fr.xpi [2021-01-27] FF Extension: (uBlock Origin) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\uBlock0@raymondhill.net.xpi [2021-02-02] FF Extension: (Malwarebytes Browser Guard) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2021-02-15] FF Extension: (FBCleaner) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\{4ce95b29-49c2-44f3-b371-8635790b98fb}.xpi [2021-01-27] FF Extension: (Font Finder) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\{a658a273-612e-489e-b4f1-5344e672f4f5}.xpi [2021-01-27] FF Extension: (YouTube Video and Audio Downloader (Dev Edt.)) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\Extensions\{f73df109-8fb4-453e-8373-f59e61ca4da3}.xpi [2021-01-27] FF Extension: (Reset Search Defaults) - C:\Users\fmgdt\AppData\Roaming\Mozilla\Firefox\Profiles\60wqijqa.default-release\features\{a6644df4-12a2-4236-9f85-53192d9d48e4}\reset-search-defaults@mozilla.com.xpi [2021-02-12] FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2020-12-07] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-02-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-02-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2021-01-27] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-03-16] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Datei ist nicht signiert] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-03-16] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Datei ist nicht signiert] FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-02-15] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-01-27] (Adobe Inc. -> Adobe Systems) Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [852024 2021-01-27] (Adobe Inc. -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3739728 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3511376 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2021-01-27] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2021-01-27] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44064 2021-02-14] (Dropbox, Inc -> Dropbox, Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-02-14] (Malwarebytes Inc -> Malwarebytes) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5198064 2021-01-27] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2021-02-14] (Malwarebytes Corporation -> Malwarebytes) R3 Focusriteusb; C:\WINDOWS\System32\drivers\Focusriteusb.sys [123456 2020-06-02] (WDKTestCert builds,132265248139626354 -> Focusrite Audio Engineering Ltd.) R3 FocusriteusbSwRoot; C:\WINDOWS\System32\drivers\FocusriteusbSwRoot.sys [92568 2020-06-02] (WDKTestCert builds,132265248139626354 -> Focusrite Audio Engineering Ltd.) R3 Focusriteusb_AUDIO; C:\WINDOWS\system32\drivers\FocusriteusbAudio.sys [87912 2020-06-02] (WDKTestCert builds,132265248139626354 -> Focusrite Audio Engineering Ltd.) S3 LifeCamTrueColor; C:\WINDOWS\system32\DRIVERS\LifeCamTrueColor.sys [37928 2016-07-27] (Microsoft Corporation -> Microsoft Corporation) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220616 2021-02-14] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-02-14] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [198248 2021-02-15] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77496 2021-02-15] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-02-14] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [142416 2021-02-15] (Malwarebytes Inc -> Malwarebytes) R0 PxHlpa64; C:\WINDOWS\System32\drivers\PxHlpa64.sys [56336 2013-10-16] (Corel Corporation -> Corel Corporation) S3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [127512 2021-01-21] (WDKTestCert dant,132134237881206156 -> Wacom Technology, Corp.) S3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [28680 2021-01-21] (WDKTestCert dant,132134237881206156 -> Wacom Technology, Corp.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49552 2021-02-13] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [419040 2021-02-13] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-13] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-18 07:38 - 2021-02-18 07:38 - 000003979 _____ C:\Users\fmgdt\Desktop\Malwarebytes Scanlog.txt 2021-02-18 07:20 - 2021-02-18 07:20 - 000000950 _____ C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk 2021-02-18 07:20 - 2021-02-18 07:20 - 000000902 _____ C:\Users\fmgdt\Desktop\Start Tor Browser.lnk 2021-02-18 07:19 - 2021-02-18 07:19 - 073044456 _____ C:\Users\fmgdt\Downloads\torbrowser-install-win64-10.0.11_de.exe 2021-02-18 07:19 - 2021-02-18 07:19 - 000000000 ____D C:\Users\fmgdt\Desktop\Tor Browser 2021-02-18 07:19 - 2021-02-18 07:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2021-02-16 09:28 - 2021-02-16 09:28 - 000001088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2021-02-16 09:28 - 2021-02-16 09:28 - 000001076 _____ C:\ProgramData\Desktop\Audacity.lnk 2021-02-16 09:28 - 2021-02-16 09:28 - 000000000 ____D C:\Program Files (x86)\Audacity 2021-02-16 09:18 - 2021-02-16 09:18 - 000042122 _____ C:\Users\fmgdt\Downloads\KeePass-2.47-German.zip 2021-02-15 20:23 - 2021-02-15 20:23 - 030326784 _____ C:\Users\fmgdt\Downloads\node-v14.15.5-x64.msi 2021-02-15 20:13 - 2021-02-15 20:13 - 028141904 _____ (Audacity Team ) C:\Users\fmgdt\Downloads\audacity-win-2.4.2.exe 2021-02-15 18:51 - 2021-02-15 18:51 - 000198248 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2021-02-15 18:51 - 2021-02-15 18:51 - 000142416 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2021-02-15 18:51 - 2021-02-15 18:51 - 000077496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2021-02-15 18:46 - 2021-02-15 18:46 - 026055624 _____ (Adlice Software ) C:\Users\fmgdt\Downloads\UCheck_setup.exe 2021-02-15 18:43 - 2021-02-15 18:43 - 000000000 ____D C:\Users\fmgdt\Desktop\RogueKiller 2021-02-15 18:33 - 2021-02-15 18:40 - 000000000 ____D C:\ProgramData\RogueKiller 2021-02-15 18:08 - 2021-02-18 07:58 - 000000000 ____D C:\Users\fmgdt\Desktop\FRST 2021-02-15 17:56 - 2021-02-18 07:58 - 000000000 ____D C:\FRST 2021-02-15 09:49 - 2021-02-15 09:49 - 000002364 _____ C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-02-15 09:49 - 2021-02-15 09:49 - 000002356 _____ C:\Users\fmgdt\Desktop\Microsoft Teams.lnk 2021-02-15 09:20 - 2021-02-15 09:20 - 000001317 _____ C:\ProgramData\Desktop\DC Toolkit Enterprise 26.lnk 2021-02-15 09:20 - 2021-02-15 09:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DC Toolkit Enterprise 26 2021-02-14 13:21 - 2021-02-14 13:21 - 000001993 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-02-14 13:21 - 2021-02-14 13:21 - 000001981 _____ C:\ProgramData\Desktop\Malwarebytes.lnk 2021-02-14 13:21 - 2021-02-14 13:21 - 000000000 ____D C:\Users\fmgdt\AppData\Local\mbam 2021-02-14 13:20 - 2021-02-14 13:20 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-02-14 13:20 - 2021-02-14 13:20 - 000220616 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-02-14 13:20 - 2021-02-14 13:20 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2021-02-14 13:20 - 2021-02-14 13:20 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2021-02-14 13:20 - 2021-02-14 13:20 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-02-14 13:19 - 2021-02-14 13:19 - 002086424 _____ (Malwarebytes) C:\Users\fmgdt\Downloads\MB43Setup.exe 2021-02-14 13:19 - 2021-02-14 13:19 - 000000000 ____D C:\Program Files\Malwarebytes 2021-02-14 13:00 - 2021-02-14 13:04 - 000001200 _____ C:\Users\fmgdt\.lmmsrc.xml 2021-02-14 13:00 - 2021-02-14 13:00 - 000000000 ____D C:\Users\fmgdt\Documents\lmms 2021-02-14 12:59 - 2021-02-14 12:59 - 000000000 ____D C:\Users\fmgdt\.tuxguitar-1.5.4 2021-02-14 12:55 - 2021-02-14 12:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VirtualDub2 20.19 2021-02-14 12:55 - 2021-02-14 12:55 - 000000000 ____D C:\Program Files\VirtualDub2 2021-02-14 12:54 - 2021-02-14 12:54 - 000000950 _____ C:\ProgramData\Desktop\freac - free audio converter.lnk 2021-02-14 12:54 - 2021-02-14 12:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LMMS 1.2.2 2021-02-14 12:54 - 2021-02-14 12:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\freac - free audio converter 2021-02-14 12:54 - 2021-02-14 12:54 - 000000000 ____D C:\Program Files\LMMS 2021-02-14 12:54 - 2021-02-14 12:54 - 000000000 ____D C:\Program Files\freac 2021-02-14 12:53 - 2021-02-14 12:54 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Avidemux 2.7 VC++ 64bits 2021-02-14 12:53 - 2021-02-14 12:54 - 000000000 ____D C:\Program Files\Avidemux 2.7 VC++ 64bits 2021-02-14 12:53 - 2021-02-14 12:53 - 001444320 _____ C:\Users\fmgdt\Documents\tmp_7151893.mp4 2021-02-14 12:52 - 2021-02-14 12:53 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Winff 2021-02-14 12:52 - 2021-02-14 12:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinFF 1.5.5 2021-02-14 12:52 - 2021-02-14 12:52 - 000000000 ____D C:\Program Files (x86)\WinFF 2021-02-14 12:51 - 2021-02-14 12:51 - 000002096 _____ C:\ProgramData\Desktop\TuxGuitar.lnk 2021-02-14 12:51 - 2021-02-14 12:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuxGuitar 2021-02-14 12:51 - 2021-02-14 12:51 - 000000000 ____D C:\Program Files (x86)\tuxguitar-1.5.4 2021-02-14 12:38 - 2021-02-14 12:51 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\flightgear.org 2021-02-14 12:38 - 2021-02-14 12:38 - 000000000 ____D C:\Users\fmgdt\FlightGear 2021-02-14 12:38 - 2021-02-14 12:38 - 000000000 ____D C:\Users\fmgdt\AppData\Local\FlightGear 2021-02-14 12:36 - 2021-02-14 12:36 - 000000984 _____ C:\Users\fmgdt\Desktop\FlightGear 2020.3.5.lnk 2021-02-14 12:36 - 2021-02-14 12:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlightGear 2020.3.5 2021-02-14 12:33 - 2021-02-14 12:33 - 000000000 ____D C:\Program Files\FlightGear 2020.3.5 2021-02-14 12:32 - 2021-02-14 12:32 - 000004542 _____ C:\Users\fmgdt\.ganttproject 2021-02-14 12:32 - 2021-02-14 12:32 - 000002056 _____ C:\ProgramData\Desktop\GanttProject.lnk 2021-02-14 12:32 - 2021-02-14 12:32 - 000000000 ____D C:\Users\fmgdt\Documents\GanttProject 2021-02-14 12:32 - 2021-02-14 12:32 - 000000000 ____D C:\Users\fmgdt\.ganttproject.d 2021-02-14 12:32 - 2021-02-14 12:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject 2021-02-14 12:32 - 2021-02-14 12:32 - 000000000 ____D C:\Program Files (x86)\GanttProject-3.0 2021-02-14 11:18 - 2021-02-14 11:18 - 026051960 _____ (Opensource-DVD) C:\Users\fmgdt\Downloads\virtualdub2_64Bit.exe 2021-02-14 11:12 - 2021-02-14 11:12 - 036829951 _____ C:\Users\fmgdt\Downloads\lmms-1.2.2-win64.exe 2021-02-14 11:10 - 2021-02-14 11:10 - 020527888 _____ C:\Users\fmgdt\Downloads\freac-1.1.3-windows-x64.exe 2021-02-14 11:08 - 2021-02-14 11:08 - 039133231 _____ C:\Users\fmgdt\Downloads\Avidemux_2.7.6VC++64bits.exe 2021-02-14 11:06 - 2021-02-14 11:06 - 021312824 _____ (Opensource-DVD) C:\Users\fmgdt\Downloads\winff_setup.exe 2021-02-14 11:03 - 2021-02-14 11:04 - 143675136 _____ (TuxGuitar) C:\Users\fmgdt\Downloads\tuxguitar-1.5.4-windows-x86-installer.exe 2021-02-14 10:52 - 2021-02-14 10:53 - 114651200 _____ C:\Users\fmgdt\Downloads\ganttproject-3.0.3000.exe 2021-02-14 10:44 - 2021-02-14 10:57 - 2013860761 _____ (The FlightGear Team ) C:\Users\fmgdt\Downloads\FlightGear-2020.3.5.exe 2021-02-14 04:12 - 2021-02-14 04:12 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2021-02-14 04:12 - 2021-02-14 04:12 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2021-02-14 04:12 - 2021-02-14 04:12 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2021-02-14 04:12 - 2021-02-14 04:12 - 000044064 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2021-02-13 19:33 - 2021-02-13 22:06 - 000000000 ____D C:\Users\fmgdt\Documents\DesignCAD 3D MAX 2016 64-bit 2021-02-13 19:29 - 2021-02-13 19:29 - 000002145 _____ C:\ProgramData\Desktop\DesignCAD 3D Max 2016 64-bit.lnk 2021-02-13 19:29 - 2021-02-13 19:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DesignCAD 3D Max 2016 64-bit 2021-02-13 19:29 - 2021-02-13 19:29 - 000000000 ____D C:\Program Files\IMSIDesign 2021-02-13 19:02 - 2021-02-13 19:02 - 000013588 _____ C:\Users\fmgdt\Documents\WinSCP.ini 2021-02-13 19:00 - 2021-02-13 19:00 - 000001118 _____ C:\Users\fmgdt\Desktop\Winmail Opener.lnk 2021-02-13 19:00 - 2021-02-13 19:00 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winmail Opener 2021-02-13 19:00 - 2021-02-13 19:00 - 000000000 ____D C:\Program Files (x86)\Winmail Opener 2021-02-13 18:54 - 2021-02-13 18:54 - 000000085 _____ C:\WINDOWS\wininit.ini 2021-02-13 18:49 - 2021-02-13 18:49 - 000364020 _____ C:\Users\fmgdt\Downloads\winmail_16-17opener.exe 2021-02-12 09:56 - 2021-02-12 09:57 - 000000000 ____D C:\Users\fmgdt\Documents\CCleaner Backups 2021-02-12 09:54 - 2021-02-18 07:20 - 000000000 ____D C:\Program Files\CCleaner 2021-02-12 09:54 - 2021-02-12 09:54 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-02-12 09:54 - 2021-02-12 09:54 - 000002878 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2021-02-12 09:54 - 2021-02-12 09:54 - 000000823 _____ C:\ProgramData\Desktop\CCleaner.lnk 2021-02-12 09:54 - 2021-02-12 09:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-02-12 09:53 - 2021-02-12 09:53 - 030584912 _____ (Piriform Software Ltd) C:\Users\fmgdt\Downloads\ccsetup576.exe 2021-02-11 14:20 - 2021-02-11 14:21 - 000004536 _____ C:\Users\fmgdt\AppData\Roaming\CamStudio.cfg 2021-02-11 14:20 - 2021-02-11 14:21 - 000000408 _____ C:\Users\fmgdt\AppData\Roaming\CamShapes.ini 2021-02-11 14:20 - 2021-02-11 14:21 - 000000408 _____ C:\Users\fmgdt\AppData\Roaming\CamLayout.ini 2021-02-11 14:20 - 2021-02-11 14:21 - 000000096 _____ C:\Users\fmgdt\AppData\Roaming\Camdata.ini 2021-02-11 14:19 - 2021-02-11 14:20 - 000000096 _____ C:\Users\fmgdt\AppData\Roaming\version2.xml 2021-02-11 14:19 - 2021-02-11 14:19 - 000000890 _____ C:\ProgramData\Desktop\CamStudio.lnk 2021-02-11 14:19 - 2021-02-11 14:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CamStudio 2.7 2021-02-11 14:19 - 2021-02-11 14:19 - 000000000 ____D C:\Program Files\CamStudio 2.7 2021-02-11 13:57 - 2021-02-11 13:57 - 000003342 _____ C:\WINDOWS\system32\Tasks\SamsungMagician 2021-02-11 13:57 - 2021-02-11 13:57 - 000001293 _____ C:\ProgramData\Desktop\Samsung Magician.lnk 2021-02-11 13:57 - 2021-02-11 13:57 - 000000000 ____D C:\ProgramData\Samsung 2021-02-11 13:57 - 2021-02-11 13:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician 2021-02-11 13:57 - 2021-02-11 13:57 - 000000000 ____D C:\Program Files (x86)\Samsung 2021-02-11 11:30 - 2015-10-30 08:21 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts.20210211-113028.backup 2021-02-11 11:05 - 2021-02-11 11:05 - 000000000 ____D C:\WINDOWS\system32\Tasks\Safer-Networking 2021-02-11 11:05 - 2021-02-11 11:05 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Safer-Networking Ltd 2021-02-11 11:04 - 2021-02-13 18:54 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy 2021-02-11 11:02 - 2021-02-11 11:02 - 069300040 _____ (Safer-Networking Ltd. ) C:\Users\fmgdt\Downloads\spybotsd-2.8.68.0.exe 2021-02-11 09:51 - 2021-02-11 09:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-02-10 22:30 - 2021-02-10 22:30 - 000000218 _____ C:\Users\fmgdt\AppData\Local\recently-used.xbel 2021-02-10 13:09 - 2021-02-10 13:09 - 000000000 ____D C:\Users\fmgdt\AppData\Local\GoToAssist Corporate 2021-02-10 11:56 - 2021-02-10 11:56 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\inkscape 2021-02-10 11:56 - 2021-02-10 11:56 - 000000000 ____D C:\Users\fmgdt\AppData\Local\fontconfig 2021-02-10 11:56 - 2021-02-10 11:56 - 000000000 ____D C:\Users\fmgdt\.dbus-keyrings 2021-02-10 11:55 - 2021-02-10 11:55 - 000001058 _____ C:\Users\fmgdt\Desktop\Inkscape.lnk 2021-02-10 11:55 - 2021-02-10 11:55 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Inkscape 2021-02-10 11:55 - 2021-02-10 11:55 - 000000000 ____D C:\Program Files\Inkscape 2021-02-10 11:54 - 2021-02-10 11:54 - 122014219 _____ C:\Users\fmgdt\Downloads\inkscape-1.0.2_2021-01-15_e86c870879-x64.msi 2021-02-10 10:42 - 2021-02-10 10:42 - 011456172 _____ (CamStudio Open Source ) C:\Users\fmgdt\Downloads\CamStudioSetup.exe 2021-02-10 10:42 - 2021-02-10 10:42 - 000152734 _____ C:\Users\fmgdt\Downloads\CamStudioCodec_1.5_Setup.exe 2021-02-10 08:45 - 2021-02-10 08:45 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-02-10 08:45 - 2021-02-10 08:45 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-02-10 08:45 - 2021-02-10 08:45 - 001314112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-02-10 08:45 - 2021-02-10 08:45 - 000010892 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-02-10 08:44 - 2021-02-10 08:44 - 000231232 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-02-10 08:00 - 2021-02-10 08:00 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator 2021.lnk 2021-02-10 07:56 - 2021-02-10 07:56 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2021.lnk 2021-02-09 16:34 - 2021-02-09 16:34 - 000000000 ____D C:\Users\fmgdt\Documents\Audacity 2021-02-08 13:23 - 2021-02-08 13:24 - 000000000 ____D C:\Users\fmgdt\AppData\Local\ISL 2021-02-08 13:20 - 2021-02-08 13:20 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Panasonic 2021-02-08 13:20 - 2021-02-08 13:20 - 000000000 ____D C:\ProgramData\Panasonic 2021-02-08 13:02 - 2007-06-22 00:10 - 000501912 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\PICSDK2.dll 2021-02-08 13:02 - 2007-06-22 00:10 - 000000097 _____ C:\WINDOWS\SysWOW64\PICSDK.ini 2021-02-08 13:02 - 2006-10-31 00:10 - 000120992 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\EpPicPrt.dll 2021-02-08 13:02 - 2006-10-31 00:10 - 000071840 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\EPPicMgr.dll 2021-02-08 13:02 - 2006-10-20 00:10 - 000108704 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\PICEntry.dll 2021-02-08 13:02 - 2006-10-20 00:10 - 000080024 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\PICSDK.dll 2021-02-08 13:02 - 2005-06-01 00:20 - 000111932 _____ C:\WINDOWS\SysWOW64\EPPICPrinterDB.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000031053 _____ C:\WINDOWS\SysWOW64\EPPICPattern131.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000027417 _____ C:\WINDOWS\SysWOW64\EPPICPattern121.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000026154 _____ C:\WINDOWS\SysWOW64\EPPICPattern1.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000024903 _____ C:\WINDOWS\SysWOW64\EPPICPattern3.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000021390 _____ C:\WINDOWS\SysWOW64\EPPICPattern5.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000020148 _____ C:\WINDOWS\SysWOW64\EPPICPattern2.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000013732 _____ C:\WINDOWS\SysWOW64\EPPICLocal_EN.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000011811 _____ C:\WINDOWS\SysWOW64\EPPICPattern4.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000006442 _____ C:\WINDOWS\SysWOW64\EPPICLocal_IT.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000006347 _____ C:\WINDOWS\SysWOW64\EPPICLocal_PT.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000006347 _____ C:\WINDOWS\SysWOW64\EPPICLocal_BP.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000006335 _____ C:\WINDOWS\SysWOW64\EPPICLocal_GE.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000006195 _____ C:\WINDOWS\SysWOW64\EPPICLocal_FR.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000006195 _____ C:\WINDOWS\SysWOW64\EPPICLocal_CF.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000006122 _____ C:\WINDOWS\SysWOW64\EPPICLocal_DU.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000006103 _____ C:\WINDOWS\SysWOW64\EPPICLocal_ES.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000005817 _____ C:\WINDOWS\SysWOW64\EPPICLocal_KO.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000005436 _____ C:\WINDOWS\SysWOW64\EPPICLocal_SC.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000004943 _____ C:\WINDOWS\SysWOW64\EPPICPattern6.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000002889 _____ C:\WINDOWS\SysWOW64\EPPICLocal_RU.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000002426 _____ C:\WINDOWS\SysWOW64\EPPICLocal_TC.cfg 2021-02-08 13:02 - 2004-03-03 06:10 - 000001146 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_DU.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000001139 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_PT.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000001139 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_BP.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000001136 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_ES.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000001129 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_FR.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000001129 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_CF.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000001120 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_IT.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000001107 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_GE.dat 2021-02-08 13:02 - 2004-03-03 06:10 - 000001104 _____ C:\WINDOWS\SysWOW64\EPPICPresetData_EN.dat 2021-02-08 13:01 - 2021-02-08 13:01 - 000002044 _____ C:\ProgramData\Desktop\PHOTOfunSTUDIO 9.8 PE.lnk 2021-02-08 13:01 - 2021-02-08 13:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panasonic 2021-02-08 13:01 - 2021-02-08 13:01 - 000000000 ____D C:\Program Files\Panasonic 2021-02-08 13:01 - 2021-02-08 13:01 - 000000000 ____D C:\Program Files\Microsoft Synchronization Services 2021-02-08 13:01 - 2021-02-08 13:01 - 000000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2021-02-08 13:01 - 2021-02-08 13:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services 2021-02-08 13:01 - 2021-02-08 13:01 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2021-02-08 13:01 - 2013-10-16 03:01 - 000056336 ____N (Corel Corporation) C:\WINDOWS\system32\Drivers\PxHlpa64.sys 2021-02-08 13:01 - 2012-04-24 03:01 - 000011376 ____N (Corel Corporation) C:\WINDOWS\system32\Drivers\cdralw2k.sys 2021-02-08 13:01 - 2012-04-24 03:01 - 000010864 ____N (Corel Corporation) C:\WINDOWS\system32\Drivers\cdr4_xp.sys 2021-02-08 13:00 - 2021-02-08 13:00 - 000000737 _____ C:\ProgramData\Desktop\SILKYPIX Developer Studio 8 SE.lnk 2021-02-08 13:00 - 2021-02-08 13:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SILKYPIX Developer Studio 8 SE 2021-02-08 13:00 - 2021-02-08 13:00 - 000000000 ____D C:\Program Files\ISL 2021-02-08 12:17 - 2021-02-08 12:21 - 000000000 ____D C:\Users\fmgdt\.mediathek3 2021-02-08 12:17 - 2021-02-08 12:17 - 000000000 ____D C:\Users\fmgdt\.openjfx 2021-02-08 12:17 - 2021-02-08 12:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediathekView 2021-02-08 12:16 - 2021-02-08 12:17 - 000000000 ____D C:\Program Files\MediathekView 2021-02-08 12:13 - 2021-02-08 12:14 - 142936576 _____ (MediathekView Team) C:\Users\fmgdt\Downloads\MediathekView-latest-win.exe 2021-02-08 09:51 - 2021-02-08 11:41 - 000000960 _____ C:\Users\fmgdt\Desktop\jameica-win64.exe - Verknüpfung.lnk 2021-02-08 09:24 - 2021-02-11 14:40 - 000000000 ____D C:\Users\fmgdt\.jameica 2021-02-08 09:24 - 2021-02-08 09:26 - 000000133 _____ C:\Users\fmgdt\.jameica.properties 2021-02-08 09:24 - 2021-02-08 09:24 - 000000000 ____D C:\Users\fmgdt\.swt 2021-02-08 09:21 - 2021-02-08 09:21 - 000000000 ____D C:\Users\fmgdt\Downloads\jameica-win64-2.10.0 2021-02-07 13:01 - 2021-02-07 13:01 - 000001953 _____ C:\ProgramData\Desktop\yEd Graph Editor.lnk 2021-02-07 13:01 - 2021-02-07 13:01 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\yWorks 2021-02-07 13:01 - 2021-02-07 13:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\yEd Graph Editor 2021-02-07 13:01 - 2021-02-07 13:01 - 000000000 ____D C:\Program Files\yWorks 2021-02-07 13:00 - 2021-02-07 13:00 - 121066976 _____ (yWorks GmbH) C:\Users\fmgdt\Downloads\yEd-3.20.1_with-JRE13_64-bit_setup.exe 2021-02-07 12:44 - 2021-02-07 12:59 - 000000000 ____D C:\Users\fmgdt\.freemind 2021-02-07 12:44 - 2021-02-07 12:44 - 000192168 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2021-02-07 12:44 - 2021-02-07 12:44 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Sun 2021-02-07 12:44 - 2021-02-07 12:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2021-02-07 12:43 - 2021-02-07 12:43 - 000000000 ____D C:\Users\fmgdt\AppData\LocalLow\Sun 2021-02-07 12:43 - 2021-02-07 12:43 - 000000000 ____D C:\Program Files\Java 2021-02-07 12:42 - 2021-02-07 12:43 - 083548808 _____ (Oracle Corporation) C:\Users\fmgdt\Downloads\jre-8u281-windows-x64.exe 2021-02-07 12:42 - 2021-02-07 12:42 - 000001160 _____ C:\Users\fmgdt\Desktop\FreeMind.lnk 2021-02-07 12:42 - 2021-02-07 12:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind 2021-02-07 12:42 - 2021-02-07 12:42 - 000000000 ____D C:\Program Files (x86)\FreeMind 2021-02-07 12:41 - 2021-02-07 12:41 - 037675279 _____ ( ) C:\Users\fmgdt\Downloads\FreeMind-Windows-Installer-1.0.1-max.exe 2021-02-05 18:23 - 2021-02-05 18:23 - 000000000 ____D C:\ProgramData\Surge 2021-02-05 18:23 - 2021-02-05 18:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Surge 2021-02-05 10:59 - 2021-02-05 11:03 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Tokyo Dawn Labs 2021-02-05 10:57 - 2021-02-05 18:23 - 000000000 ____D C:\Program Files\Common Files\VST3 2021-02-05 10:57 - 2021-02-05 10:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tokyo Dawn Labs 2021-02-05 10:57 - 2021-02-05 10:57 - 000000000 ____D C:\Program Files\Tokyo Dawn Labs 2021-02-05 10:57 - 2021-02-05 10:57 - 000000000 ____D C:\Program Files\Steinberg 2021-02-05 10:57 - 2021-02-05 10:57 - 000000000 ____D C:\Program Files\Common Files\Avid 2021-02-05 10:57 - 2021-02-05 10:57 - 000000000 ____D C:\Program Files (x86)\Steinberg 2021-02-05 09:24 - 2021-02-13 20:00 - 000000000 ____D C:\Users\fmgdt\Documents\DC Toolkit 2021-02-04 14:10 - 2021-02-04 14:10 - 000798073 _____ C:\Users\fmgdt\Downloads\CAInstaller.exe 2021-02-04 14:10 - 2021-02-04 14:10 - 000002118 _____ C:\Users\fmgdt\Desktop\Crack Attack!.lnk 2021-02-04 14:10 - 2021-02-04 14:10 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crack Attack! 2021-02-04 14:10 - 2021-02-04 14:10 - 000000000 ____D C:\Program Files (x86)\CrackAttack 2021-02-04 09:09 - 2021-02-04 09:09 - 000001052 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign 2021.lnk 2021-02-02 14:31 - 2021-02-14 20:25 - 000000128 _____ C:\Users\fmgdt\AppData\Roaming\winscp.rnd 2021-02-02 13:14 - 2021-02-02 13:14 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Skype 2021-02-02 12:58 - 2021-02-02 12:58 - 011155568 _____ (Martin Prikryl ) C:\Users\fmgdt\Downloads\WinSCP-5.17.10-Setup.exe 2021-02-02 12:58 - 2021-02-02 12:58 - 000001164 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk 2021-02-02 12:58 - 2021-02-02 12:58 - 000001152 _____ C:\ProgramData\Desktop\WinSCP.lnk 2021-02-02 12:58 - 2021-02-02 12:58 - 000000000 ____D C:\Program Files (x86)\WinSCP 2021-02-02 11:58 - 2021-02-02 11:58 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Meltytech 2021-02-02 11:18 - 2021-02-02 11:18 - 032124067 _____ C:\Users\fmgdt\Downloads\Hydrogen-1.0.1-win64.exe 2021-02-02 11:18 - 2021-02-02 11:18 - 000000000 ____D C:\Users\fmgdt\.hydrogen 2021-02-02 11:18 - 2021-02-02 11:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hydrogen - 1.0.1 64Bit 2021-02-02 11:18 - 2021-02-02 11:18 - 000000000 ____D C:\Program Files\Hydrogen 2021-02-02 11:16 - 2021-02-02 11:16 - 000001892 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shotcut.lnk 2021-02-02 11:16 - 2021-02-02 11:16 - 000001880 _____ C:\ProgramData\Desktop\Shotcut.lnk 2021-02-02 11:15 - 2021-02-02 11:16 - 000000000 ____D C:\Program Files\Shotcut 2021-02-02 11:14 - 2021-02-02 11:15 - 084620912 _____ C:\Users\fmgdt\Downloads\shotcut-win64-210129.exe 2021-02-02 10:37 - 2021-02-02 10:37 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_LifeCamTrueColor_01011.Wdf 2021-02-02 10:37 - 2021-02-02 10:37 - 000000000 ____D C:\WINDOWS\SysWOW64\LifeCamTrueColor 2021-02-02 10:37 - 2021-02-02 10:37 - 000000000 ____D C:\WINDOWS\system32\LifeCamTrueColor 2021-02-02 09:56 - 2021-02-02 09:56 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2021-02-02 09:56 - 2021-02-02 09:56 - 000000000 ____D C:\Users\fmgdt\AppData\Local\AAR 2021-02-02 09:42 - 2021-02-02 09:42 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\WPersistent 2021-02-02 09:41 - 2021-02-18 07:17 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\WTablet 2021-02-02 09:41 - 2021-02-02 09:41 - 000000000 ____D C:\Users\fmgdt\.android 2021-02-02 09:40 - 2021-02-02 09:40 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom Tablett 2021-02-02 09:40 - 2021-01-21 03:42 - 000127512 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\Drivers\wachidrouter.sys 2021-02-02 09:40 - 2021-01-21 03:42 - 000028680 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\Drivers\wacomrouterfilter.sys 2021-02-02 09:40 - 2021-01-21 03:41 - 002532400 _____ (Wacom Co. Ltd.) C:\WINDOWS\system32\Wacom_Tablet.dll 2021-02-02 09:40 - 2021-01-21 03:41 - 002525744 _____ (Wacom Co. Ltd.) C:\WINDOWS\system32\Wacom_Touch_Tablet.dll 2021-02-02 09:40 - 2021-01-21 03:41 - 002379312 _____ (Wacom Co. Ltd.) C:\WINDOWS\system32\WacomMT.dll 2021-02-02 09:40 - 2021-01-21 03:41 - 002349616 _____ (Wacom Co. Ltd.) C:\WINDOWS\system32\Wintab32.dll 2021-02-02 09:40 - 2021-01-21 03:41 - 002081840 _____ (Wacom Co. Ltd.) C:\WINDOWS\SysWOW64\Wacom_Tablet.dll 2021-02-02 09:40 - 2021-01-21 03:41 - 002074672 _____ (Wacom Co. Ltd.) C:\WINDOWS\SysWOW64\Wacom_Touch_Tablet.dll 2021-02-02 09:40 - 2021-01-21 03:41 - 001927728 _____ (Wacom Co. Ltd.) C:\WINDOWS\SysWOW64\WacomMT.dll 2021-02-02 09:40 - 2021-01-21 03:41 - 001894960 _____ (Wacom Co. Ltd.) C:\WINDOWS\SysWOW64\Wintab32.dll 2021-02-02 09:39 - 2021-02-02 09:40 - 000000000 ____D C:\Program Files\Tablet 2021-02-01 16:54 - 2021-02-01 16:55 - 000000000 ____D C:\Users\fmgdt\Documents\Keys 2021-01-31 09:51 - 2021-02-17 18:26 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\WhatsApp 2021-01-31 09:51 - 2021-02-05 11:21 - 000000000 ____D C:\Users\fmgdt\AppData\Local\WhatsApp 2021-01-31 09:51 - 2021-01-31 09:51 - 000002197 _____ C:\Users\fmgdt\Desktop\WhatsApp.lnk 2021-01-31 09:51 - 2021-01-31 09:51 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2021-01-31 09:48 - 2021-01-31 09:49 - 131303608 _____ (WhatsApp) C:\Users\fmgdt\Downloads\WhatsAppSetup.exe 2021-01-30 17:35 - 2021-01-30 17:35 - 000000000 ____D C:\Users\fmgdt\Desktop\PEBBLE 2021-01-30 17:34 - 2021-01-30 17:34 - 009287921 _____ C:\Users\fmgdt\Downloads\pebble.zip 2021-01-30 17:34 - 2021-01-30 17:34 - 000000000 ____D C:\Users\fmgdt\Downloads\pebble 2021-01-30 17:28 - 2021-01-30 17:28 - 000728142 _____ C:\Users\fmgdt\Downloads\BreadboardSim_v1.0.zip 2021-01-30 17:28 - 2021-01-30 17:28 - 000000000 ____D C:\Users\fmgdt\Desktop\BreadboardSim_v1.0 2021-01-30 17:21 - 2021-01-30 17:21 - 000000000 ____D C:\Users\fmgdt\diylc 2021-01-30 17:21 - 2021-01-30 17:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DIY Layout Creator 2021-01-30 17:21 - 2021-01-30 17:21 - 000000000 ____D C:\Program Files (x86)\DIYLC 2021-01-30 17:20 - 2021-01-30 17:20 - 052452677 _____ ( ) C:\Users\fmgdt\Downloads\diylc-4.16.0-win.exe 2021-01-30 09:59 - 2021-01-30 09:59 - 000000000 ____D C:\Users\fmgdt\Desktop\chrome-win 2021-01-30 09:59 - 2021-01-30 09:59 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Chromium 2021-01-30 09:58 - 2021-01-30 09:58 - 000000000 ____D C:\Users\fmgdt\Downloads\chrome-win 2021-01-30 09:57 - 2021-01-30 09:58 - 170356247 _____ C:\Users\fmgdt\Downloads\chrome-win.zip 2021-01-29 13:17 - 2021-02-15 20:27 - 000000000 _____ C:\Users\fmgdt\.node_repl_history 2021-01-29 09:49 - 2021-01-29 09:49 - 000000000 ____D C:\Users\fmgdt\Documents\My Games 2021-01-29 09:49 - 2021-01-29 09:49 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Skyrim Special Edition 2021-01-29 08:32 - 2021-01-29 08:32 - 000000222 _____ C:\Users\fmgdt\Desktop\The Elder Scrolls V Skyrim Special Edition.url 2021-01-29 08:32 - 2021-01-29 08:32 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2021-01-29 08:28 - 2021-01-29 08:28 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Steam 2021-01-29 08:27 - 2021-02-11 14:37 - 000000000 ____D C:\Program Files (x86)\Steam 2021-01-29 08:27 - 2021-01-29 08:27 - 000001032 _____ C:\ProgramData\Desktop\Steam.lnk 2021-01-29 08:27 - 2021-01-29 08:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2021-01-29 08:26 - 2021-01-29 08:26 - 001573568 _____ C:\Users\fmgdt\Downloads\SteamSetup.exe 2021-01-28 19:04 - 2021-01-28 19:06 - 000000000 ____D C:\AdwCleaner 2021-01-28 19:02 - 2021-01-28 19:04 - 008457584 _____ (Malwarebytes) C:\Users\fmgdt\Desktop\adwcleaner_8.0.9.1.exe 2021-01-28 13:49 - 2021-01-28 14:00 - 000000000 ____D C:\Users\fmgdt\Documents\Arduino 2021-01-28 13:49 - 2021-01-28 13:50 - 000000000 ____D C:\Users\fmgdt\Documents\ArduinoData 2021-01-28 13:49 - 2021-01-28 13:49 - 000000000 ____D C:\ProgramData\Oracle 2021-01-28 12:58 - 2021-02-16 09:29 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\audacity 2021-01-28 12:58 - 2021-01-28 12:58 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Audacity 2021-01-28 12:48 - 2021-01-28 12:48 - 009534704 _____ (Focusrite Audio Engineering, Ltd. ) C:\Users\fmgdt\Downloads\Focusrite_Usb_4.65.5.658.exe 2021-01-28 12:48 - 2021-01-28 12:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Focusrite 2021-01-28 12:48 - 2021-01-28 12:48 - 000000000 ____D C:\Program Files\Focusriteusb 2021-01-28 12:48 - 2020-06-02 15:35 - 000123456 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\Focusriteusb.sys 2021-01-28 12:48 - 2020-06-02 15:35 - 000092568 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteusbSwRoot.sys 2021-01-28 12:48 - 2020-06-02 15:35 - 000087912 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteusbAudio.sys 2021-01-28 11:50 - 2021-01-28 11:50 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\MPC-HC 2021-01-28 11:49 - 2021-01-28 11:49 - 000001745 _____ C:\Users\fmgdt\Desktop\MPC-HC x64.lnk 2021-01-28 11:49 - 2021-01-28 11:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64 2021-01-28 11:49 - 2021-01-28 11:49 - 000000000 ____D C:\Program Files\MPC-HC 2021-01-28 11:39 - 2021-01-28 11:39 - 008860733 _____ (mtsplayer.com ) C:\Users\fmgdt\Downloads\mtsplayer_setup.exe 2021-01-28 11:08 - 2021-02-15 09:49 - 000000000 ____D C:\Users\fmgdt\AppData\Local\SquirrelTemp 2021-01-28 11:08 - 2021-01-28 11:08 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Teams 2021-01-28 02:41 - 2021-01-28 02:41 - 000001547 _____ C:\ProgramData\Desktop\EEP 13.0.lnk 2021-01-28 02:41 - 2021-01-28 02:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trend 2021-01-28 02:25 - 2021-02-08 13:01 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2021-01-28 02:25 - 2021-01-28 02:25 - 000000000 ____D C:\Trend 2021-01-28 01:56 - 2021-01-28 01:57 - 000000000 ____D C:\Users\fmgdt\Documents\Ableton 2021-01-28 01:56 - 2021-01-28 01:56 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Ableton 2021-01-28 01:56 - 2021-01-28 01:56 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Ableton 2021-01-28 01:55 - 2021-01-28 01:55 - 000000000 ____D C:\Program Files\Common Files\Propellerhead Software 2021-01-28 01:54 - 2021-01-28 01:54 - 000000871 _____ C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ableton Live 10 Intro.lnk 2021-01-28 01:54 - 2021-01-28 01:54 - 000000000 ____D C:\ProgramData\Ableton 2021-01-28 01:51 - 2021-01-28 01:51 - 000000000 ____D C:\Users\fmgdt\Downloads\ableton_live_intro_10.1.30_64 2021-01-28 01:50 - 2021-01-28 01:50 - 000462251 _____ C:\Users\fmgdt\Downloads\ASIO4ALL_2_14_English.exe 2021-01-28 01:50 - 2021-01-28 01:50 - 000001207 _____ C:\Users\fmgdt\Desktop\ASIO4ALL v2 Instruction Manual.lnk 2021-01-28 01:50 - 2021-01-28 01:50 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2021-01-28 01:50 - 2021-01-28 01:50 - 000000000 ____D C:\Program Files (x86)\ASIO4ALL v2 2021-01-28 01:15 - 2021-02-05 09:27 - 000000000 ____D C:\Users\fmgdt\Documents\DesignCAD 3D MAX 25 32-bit 2021-01-28 01:12 - 2021-02-15 09:20 - 000000000 ____D C:\Program Files (x86)\DCToolkit 2021-01-28 01:04 - 2021-01-28 01:05 - 099559288 _____ ( ) C:\Users\fmgdt\Downloads\dc3dv25setup.exe 2021-01-28 00:57 - 2021-02-08 12:07 - 000000000 ____D C:\Users\fmgdt\Documents\DesignCAD 3D MAX 24 2021-01-28 00:55 - 2021-02-14 09:59 - 000000000 ____D C:\ProgramData\IMSIDesign 2021-01-28 00:52 - 2021-02-15 09:22 - 000000000 ____D C:\ProgramData\TEMP 2021-01-28 00:32 - 2021-01-28 00:32 - 000003842 _____ C:\WINDOWS\system32\Tasks\SoftMakerUpdater 2021-01-28 00:31 - 2021-01-28 00:32 - 000000000 ____D C:\Program Files\SoftMaker Office 2018 2021-01-28 00:31 - 2021-01-28 00:31 - 000001760 _____ C:\ProgramData\Desktop\Presentations 2018.lnk 2021-01-28 00:31 - 2021-01-28 00:31 - 000001740 _____ C:\ProgramData\Desktop\BasicMaker 2018.lnk 2021-01-28 00:31 - 2021-01-28 00:31 - 000001732 _____ C:\ProgramData\Desktop\TextMaker 2018.lnk 2021-01-28 00:31 - 2021-01-28 00:31 - 000001732 _____ C:\ProgramData\Desktop\PlanMaker 2018.lnk 2021-01-28 00:31 - 2021-01-28 00:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftMaker Office 2018 2021-01-28 00:28 - 2021-01-28 00:29 - 420483072 _____ C:\Users\fmgdt\Downloads\ofw2018_64.msi 2021-01-28 00:24 - 2021-01-28 00:33 - 000000000 ____D C:\ProgramData\SoftMaker 2021-01-28 00:22 - 2021-02-15 11:03 - 000000000 ____D C:\Users\fmgdt\Documents\SoftMaker 2021-01-28 00:22 - 2021-02-15 10:57 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\SoftMaker 2021-01-28 00:17 - 2021-01-28 00:20 - 350613328 _____ (SoftMaker Software GmbH) C:\Users\fmgdt\Downloads\ofw2016.exe 2021-01-27 22:09 - 2021-01-27 22:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP 2021-01-27 22:01 - 2021-01-27 22:05 - 163767888 _____ (Bitnami) C:\Users\fmgdt\Downloads\xampp-windows-x64-7.4.14-0-VC15-installer.exe 2021-01-27 21:47 - 2021-01-27 21:47 - 000004491 _____ C:\Users\fmgdt\Downloads\ecirgbv20.zip 2021-01-27 21:47 - 2021-01-27 21:47 - 000000000 ____D C:\Users\fmgdt\Downloads\ecirgbv20 2021-01-27 21:40 - 2021-01-27 21:40 - 036555248 _____ C:\Users\fmgdt\Downloads\Cleverprinting-Handbuch-2016.zip 2021-01-27 21:40 - 2021-01-27 21:40 - 000000000 ____D C:\Users\fmgdt\Downloads\eci_offset_2009 2021-01-27 21:40 - 2021-01-27 21:40 - 000000000 ____D C:\Users\fmgdt\Downloads\Cleverprinting-Handbuch-2016 2021-01-27 21:38 - 2021-01-27 21:38 - 017410183 _____ C:\Users\fmgdt\Downloads\eci_offset_2009.zip 2021-01-27 21:21 - 2021-02-16 22:01 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\vlc 2021-01-27 21:21 - 2021-01-27 21:21 - 000000916 _____ C:\ProgramData\Desktop\VLC media player.lnk 2021-01-27 21:21 - 2021-01-27 21:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2021-01-27 21:20 - 2021-01-27 21:20 - 042585440 _____ C:\Users\fmgdt\Downloads\vlc-3.0.12-win64.exe 2021-01-27 21:20 - 2021-01-27 21:20 - 000000000 ____D C:\Program Files\VideoLAN 2021-01-27 20:50 - 2021-01-27 20:50 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Blender Foundation 2021-01-27 20:49 - 2021-01-27 20:49 - 000001192 _____ C:\Users\fmgdt\Desktop\blender.lnk 2021-01-27 20:49 - 2021-01-27 20:49 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender 2021-01-27 20:49 - 2021-01-27 20:49 - 000000000 ____D C:\Users\fmgdt\.thumbnails 2021-01-27 20:49 - 2021-01-27 20:49 - 000000000 ____D C:\Program Files\Blender Foundation 2021-01-27 20:47 - 2021-01-27 20:49 - 174338048 _____ C:\Users\fmgdt\Downloads\blender-2.91.2-windows64.msi 2021-01-27 20:24 - 2021-01-27 20:26 - 000000000 ____D C:\ProgramData\Affinity 2021-01-27 20:24 - 2021-01-27 20:25 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Affinity 2021-01-27 20:24 - 2021-01-27 20:24 - 000000112 _____ C:\Users\fmgdt\.bash_history 2021-01-27 20:19 - 2021-01-27 20:19 - 000000055 _____ C:\Users\fmgdt\.gitconfig 2021-01-27 20:17 - 2021-01-27 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git 2021-01-27 20:16 - 2021-01-27 20:17 - 000000000 ____D C:\Program Files\Git 2021-01-27 20:14 - 2021-02-15 20:27 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Code 2021-01-27 20:14 - 2021-02-14 13:58 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2021-01-27 20:14 - 2021-01-27 20:14 - 000000000 ____D C:\Users\fmgdt\.vscode 2021-01-27 20:11 - 2021-01-27 20:12 - 048823136 _____ (The Git Development Community ) C:\Users\fmgdt\Downloads\Git-2.30.0.2-64-bit.exe 2021-01-27 20:08 - 2021-01-27 20:23 - 000000000 ____D C:\Users\fmgdt\Documents\Adobe 2021-01-27 20:08 - 2021-01-27 20:08 - 000000000 ____D C:\Users\fmgdt\AppData\Local\NVIDIA 2021-01-27 20:06 - 2021-02-04 16:47 - 000001049 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Affinity Publisher.lnk 2021-01-27 20:06 - 2021-02-04 16:47 - 000001037 _____ C:\ProgramData\Desktop\Affinity Publisher.lnk 2021-01-27 20:06 - 2021-01-27 20:09 - 000000000 ____D C:\Users\fmgdt\AppData\LocalLow\Adobe 2021-01-27 20:05 - 2021-02-04 16:46 - 000001001 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Affinity Photo.lnk 2021-01-27 20:05 - 2021-02-04 16:46 - 000000989 _____ C:\ProgramData\Desktop\Affinity Photo.lnk 2021-01-27 20:04 - 2021-02-04 16:47 - 000000000 ____D C:\Program Files\Affinity 2021-01-27 20:04 - 2021-02-04 16:44 - 000001039 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Affinity Designer.lnk 2021-01-27 20:04 - 2021-02-04 16:44 - 000001027 _____ C:\ProgramData\Desktop\Affinity Designer.lnk 2021-01-27 19:35 - 2021-02-15 09:06 - 000000438 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2021-01-27 19:29 - 2021-01-27 19:29 - 015282176 _____ C:\Users\fmgdt\Downloads\wsl_update_x64.msi 2021-01-27 19:28 - 2021-02-15 18:51 - 000001134 _____ C:\WINDOWS\system32\config\VSMIDK 2021-01-27 19:27 - 2021-01-27 19:27 - 000000000 ___SD C:\WINDOWS\SysWOW64\lxss 2021-01-27 19:27 - 2021-01-27 19:27 - 000000000 ___SD C:\WINDOWS\system32\lxss 2021-01-27 19:21 - 2021-02-16 10:12 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\KeePass 2021-01-27 19:21 - 2021-01-27 19:21 - 000000000 ____D C:\Users\fmgdt\AppData\Local\gtk-3.0 2021-01-27 19:17 - 2021-01-27 19:17 - 000001917 _____ C:\Users\fmgdt\Desktop\IrfanView 64 Thumbnails.lnk 2021-01-27 19:17 - 2021-01-27 19:17 - 000001088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Dreamweaver 2021.lnk 2021-01-27 19:17 - 2021-01-27 19:17 - 000001047 _____ C:\Users\fmgdt\Desktop\IrfanView 64.lnk 2021-01-27 19:17 - 2021-01-27 19:17 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView 2021-01-27 19:17 - 2021-01-27 19:17 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\IrfanView 2021-01-27 19:17 - 2021-01-27 19:17 - 000000000 ____D C:\Program Files\IrfanView 2021-01-27 19:16 - 2021-01-27 19:16 - 003994712 _____ (Irfan Skiljan) C:\Users\fmgdt\Downloads\iview456g_x64_setup.exe 2021-01-27 19:15 - 2021-01-27 19:15 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\zim 2021-01-27 19:14 - 2021-02-10 08:00 - 000000000 ___HD C:\adobeTemp 2021-01-27 19:14 - 2021-01-27 19:14 - 001447178 _____ (Igor Pavlov) C:\Users\fmgdt\Downloads\7z1900-x64.exe 2021-01-27 19:14 - 2021-01-27 19:14 - 000001071 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zim Desktop Wiki.lnk 2021-01-27 19:14 - 2021-01-27 19:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2021-01-27 19:14 - 2021-01-27 19:14 - 000000000 ____D C:\Program Files\Zim Desktop Wiki 2021-01-27 19:14 - 2021-01-27 19:14 - 000000000 ____D C:\Program Files\7-Zip 2021-01-27 19:11 - 2021-01-27 19:13 - 020686049 _____ C:\Users\fmgdt\Downloads\zim-desktop-wiki-0.73.4-setup-w64_x86.exe 2021-01-27 19:08 - 2021-01-27 19:08 - 000001026 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge 2021.lnk 2021-01-27 19:04 - 2021-01-27 19:04 - 000001299 _____ C:\Users\fmgdt\Desktop\Dropbox.lnk 2021-01-27 19:02 - 2021-02-14 12:38 - 000000000 ____D C:\Users\fmgdt\AppData\Local\cache 2021-01-27 19:00 - 2021-01-27 19:00 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Dropbox 2021-01-27 18:59 - 2021-02-18 07:19 - 000000000 ____D C:\Program Files (x86)\Dropbox 2021-01-27 18:59 - 2021-01-27 19:22 - 000001244 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2021-01-27 18:59 - 2021-01-27 19:22 - 000001240 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2021-01-27 18:59 - 2021-01-27 19:04 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Dropbox 2021-01-27 18:59 - 2021-01-27 18:59 - 000673400 _____ (Dropbox, Inc.) C:\Users\fmgdt\Downloads\DropboxInstaller.exe 2021-01-27 18:59 - 2021-01-27 18:59 - 000004304 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2021-01-27 18:59 - 2021-01-27 18:59 - 000004072 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2021-01-27 18:59 - 2021-01-27 18:59 - 000000000 ____D C:\ProgramData\Dropbox 2021-01-27 18:58 - 2021-02-15 18:43 - 000002114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk 2021-01-27 18:58 - 2021-02-15 18:43 - 000002103 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2021-01-27 18:58 - 2021-02-09 16:27 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-01-27 18:58 - 2021-01-27 18:58 - 000002091 _____ C:\ProgramData\Desktop\Adobe Acrobat DC.lnk 2021-01-27 18:58 - 2021-01-27 18:58 - 000000040 ____H C:\2DD7BC221A93 2021-01-27 18:58 - 2021-01-27 18:58 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2021-01-27 18:55 - 2021-01-27 18:55 - 000000963 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2021-01-27 18:55 - 2021-01-27 18:55 - 000000000 ____D C:\Program Files\KeePass Password Safe 2 2021-01-27 18:54 - 2021-01-27 18:54 - 004304792 _____ (Dominik Reichl ) C:\Users\fmgdt\Downloads\KeePass-2.47-Setup.exe 2021-01-27 18:49 - 2021-01-27 18:49 - 000000000 ____D C:\Users\fmgdt\AppData\Local\OneDrive 2021-01-27 18:45 - 2021-01-27 18:45 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\NVIDIA 2021-01-27 18:39 - 2021-01-27 18:51 - 000001508 _____ C:\Users\fmgdt\Desktop\Google Drive.lnk 2021-01-27 18:36 - 2021-01-27 18:36 - 000002073 _____ C:\ProgramData\Desktop\Google Slides.lnk 2021-01-27 18:36 - 2021-01-27 18:36 - 000002071 _____ C:\ProgramData\Desktop\Google Sheets.lnk 2021-01-27 18:36 - 2021-01-27 18:36 - 000002061 _____ C:\ProgramData\Desktop\Google Docs.lnk 2021-01-27 18:36 - 2021-01-27 18:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google 2021-01-27 18:36 - 2021-01-27 18:36 - 000000000 ____D C:\Program Files\Google 2021-01-27 18:35 - 2021-01-29 12:55 - 000000000 ____D C:\Program Files (x86)\Google 2021-01-27 18:35 - 2021-01-28 17:50 - 000003618 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-01-27 18:35 - 2021-01-28 17:50 - 000003394 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-01-27 18:35 - 2021-01-27 18:36 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Google 2021-01-27 18:35 - 2021-01-27 18:35 - 001321688 _____ (Google LLC) C:\Users\fmgdt\Downloads\installbackupandsync.exe 2021-01-27 18:32 - 2021-01-27 18:32 - 000003522 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2021-01-27 18:30 - 2021-02-18 07:18 - 000000000 ___RD C:\Users\fmgdt\Creative Cloud Files 2021-01-27 18:30 - 2021-01-27 18:30 - 000000000 ____D C:\Users\fmgdt\AppData\Local\CEF 2021-01-27 18:27 - 2021-02-18 07:26 - 000000000 ____D C:\ProgramData\Package Cache 2021-01-27 18:27 - 2021-02-10 08:00 - 000000000 ____D C:\Program Files\Common Files\Adobe 2021-01-27 18:27 - 2021-02-04 13:57 - 000000000 ____D C:\Program Files\Adobe 2021-01-27 18:27 - 2021-01-29 12:54 - 000000000 ____D C:\Users\fmgdt\AppData\Local\D3DSCache 2021-01-27 18:27 - 2021-01-27 19:40 - 000000000 ____D C:\ProgramData\Adobe 2021-01-27 18:27 - 2021-01-27 18:57 - 000000000 ____D C:\Program Files (x86)\Adobe 2021-01-27 18:27 - 2021-01-27 18:27 - 000001364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2021-01-27 18:27 - 2021-01-27 18:27 - 000001352 _____ C:\ProgramData\Desktop\Adobe Creative Cloud.lnk 2021-01-27 18:25 - 2021-01-27 20:22 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Adobe 2021-01-27 18:04 - 2021-01-27 18:04 - 000000000 ____D C:\Users\fmgdt\AppData\Local\PeerDistRepub 2021-01-27 17:49 - 2021-02-11 14:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2021-01-27 17:49 - 2021-02-11 09:48 - 000001278 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2021-01-27 17:49 - 2021-01-27 17:49 - 000001266 _____ C:\ProgramData\Desktop\Mozilla Thunderbird.lnk 2021-01-27 17:49 - 2021-01-27 17:49 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Thunderbird 2021-01-27 17:49 - 2021-01-27 17:49 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Thunderbird 2021-01-27 17:48 - 2021-01-27 17:49 - 050104520 _____ (Mozilla) C:\Users\fmgdt\Downloads\Thunderbird Setup 78.7.0.exe 2021-01-27 17:41 - 2021-02-18 07:40 - 000000000 ____D C:\Users\fmgdt\AppData\LocalLow\Mozilla 2021-01-27 17:41 - 2021-02-11 14:41 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-01-27 17:41 - 2021-02-11 14:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-01-27 17:41 - 2021-02-11 09:51 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-01-27 17:41 - 2021-01-28 13:03 - 000000000 ____D C:\ProgramData\Mozilla 2021-01-27 17:41 - 2021-01-27 17:41 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Mozilla 2021-01-27 17:41 - 2021-01-27 17:41 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Mozilla 2021-01-27 17:39 - 2021-01-27 17:39 - 000333112 _____ (Mozilla) C:\Users\fmgdt\Downloads\Firefox Installer.exe 2021-01-27 17:37 - 2021-02-04 21:58 - 000000000 ____D C:\Users\fmgdt\AppData\Local\PlaceholderTileLogoFolder 2021-01-27 17:35 - 2021-01-27 17:45 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Comms 2021-01-27 17:34 - 2021-01-27 17:34 - 000000000 ___HD C:\OneDriveTemp 2021-01-27 17:32 - 2021-02-18 07:17 - 000000000 ___RD C:\Users\fmgdt\OneDrive 2021-01-27 17:32 - 2021-02-02 09:42 - 000003368 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-432176779-2769377027-3090007192-1004 2021-01-27 17:30 - 2021-02-14 13:00 - 000000000 ____D C:\Users\fmgdt 2021-01-27 17:30 - 2021-02-04 14:10 - 000000000 ____D C:\Users\fmgdt\AppData\Local\VirtualStore 2021-01-27 17:30 - 2021-02-02 09:49 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Packages 2021-01-27 17:30 - 2021-02-02 09:42 - 000002379 _____ C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-01-27 17:30 - 2021-01-27 20:22 - 000000000 ____D C:\Users\fmgdt\AppData\Roaming\Adobe 2021-01-27 17:30 - 2021-01-27 17:33 - 000000000 ____D C:\Users\fmgdt\AppData\Local\ConnectedDevicesPlatform 2021-01-27 17:30 - 2021-01-27 17:30 - 000000020 ___SH C:\Users\fmgdt\ntuser.ini 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Vorlagen 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Startmenü 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Netzwerkumgebung 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Lokale Einstellungen 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Eigene Dateien 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Druckumgebung 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Documents\Eigene Videos 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Documents\Eigene Musik 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Documents\Eigene Bilder 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\AppData\Local\Verlauf 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\AppData\Local\Anwendungsdaten 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 _SHDL C:\Users\fmgdt\Anwendungsdaten 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 ___RD C:\Users\fmgdt\3D Objects 2021-01-27 17:30 - 2021-01-27 17:30 - 000000000 ____D C:\Users\fmgdt\AppData\Local\Publishers 2021-01-27 17:28 - 2021-01-27 17:28 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-01-27 17:28 - 2021-01-27 17:28 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-01-27 17:28 - 2021-01-27 17:28 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-01-27 17:28 - 2021-01-27 17:28 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-01-27 17:28 - 2021-01-27 17:28 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-01-27 17:28 - 2021-01-27 17:28 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-01-27 17:28 - 2021-01-27 17:28 - 000467968 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2021-01-27 17:28 - 2021-01-27 17:28 - 000374072 _____ C:\WINDOWS\system32\vp9fs.dll 2021-01-27 17:28 - 2021-01-27 17:28 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-01-27 17:28 - 2021-01-27 17:28 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-01-27 17:28 - 2021-01-27 17:28 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-01-27 17:28 - 2021-01-27 17:28 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll 2021-01-27 17:28 - 2021-01-27 17:28 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll 2021-01-27 17:28 - 2021-01-27 17:28 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-01-27 17:28 - 2021-01-27 17:28 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll 2021-01-27 17:28 - 2021-01-27 17:28 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-01-27 17:28 - 2021-01-27 17:28 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-01-27 17:28 - 2021-01-27 17:28 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-01-27 17:28 - 2021-01-27 17:28 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-01-27 17:28 - 2021-01-27 17:28 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-01-27 17:28 - 2021-01-27 17:28 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-01-27 17:28 - 2021-01-27 17:28 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-01-27 13:04 - 2021-01-27 13:04 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-01-27 13:04 - 2021-01-27 13:04 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-01-27 13:04 - 2021-01-27 13:04 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-01-27 13:04 - 2021-01-27 13:04 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-01-27 13:04 - 2021-01-27 13:04 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-01-27 13:04 - 2021-01-27 13:04 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2021-01-27 13:03 - 2021-01-27 13:03 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-01-27 13:03 - 2021-01-27 13:03 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-01-27 13:03 - 2021-01-27 13:03 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-01-27 13:03 - 2021-01-27 13:03 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-01-27 13:03 - 2021-01-27 13:03 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-01-27 13:03 - 2021-01-27 13:03 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-01-27 13:03 - 2021-01-27 13:03 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-01-27 13:03 - 2021-01-27 13:03 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-01-27 13:03 - 2021-01-27 13:03 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-01-27 13:03 - 2021-01-27 13:03 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-01-27 13:03 - 2021-01-27 13:03 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-01-27 13:03 - 2021-01-27 13:03 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-01-27 13:03 - 2021-01-27 13:03 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-01-27 13:03 - 2021-01-27 13:03 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-01-27 13:03 - 2021-01-27 13:03 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-01-27 13:03 - 2021-01-27 13:03 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-01-27 13:03 - 2021-01-27 13:03 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2021-01-27 13:03 - 2021-01-27 13:03 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-18 07:17 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-02-17 18:45 - 2020-12-05 21:43 - 000000000 ____D C:\ProgramData\NVIDIA 2021-02-17 10:00 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-02-17 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-02-15 18:58 - 2020-12-05 19:31 - 001632024 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-02-15 18:58 - 2019-12-07 15:50 - 000706062 _____ C:\WINDOWS\system32\perfh007.dat 2021-02-15 18:58 - 2019-12-07 15:50 - 000142356 _____ C:\WINDOWS\system32\perfc007.dat 2021-02-15 18:58 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-02-15 18:51 - 2020-12-05 19:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-02-15 18:51 - 2020-12-05 19:47 - 000008192 ___SH C:\DumpStack.log.tmp 2021-02-15 18:51 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-02-15 18:07 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-02-14 13:20 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-02-14 12:18 - 2020-12-05 19:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-02-13 19:05 - 2020-12-05 19:50 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-02-10 09:09 - 2020-12-05 21:31 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-02-10 09:09 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-02-10 09:07 - 2020-12-05 21:31 - 130141752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-02-10 08:54 - 2020-12-05 19:47 - 000289648 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-02-10 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-02-10 08:53 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2021-02-03 18:10 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-01-28 17:50 - 2020-12-06 14:27 - 000003688 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-01-28 17:50 - 2020-12-06 14:27 - 000003464 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-01-28 17:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-01-28 13:53 - 2020-12-05 19:50 - 000000000 ____D C:\ProgramData\Packages 2021-01-28 11:55 - 2020-12-06 14:27 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-01-28 02:48 - 2019-12-07 10:10 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll 2021-01-28 02:48 - 2019-12-07 10:10 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll 2021-01-28 02:48 - 2019-12-07 10:10 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll 2021-01-28 02:48 - 2019-12-07 10:10 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll 2021-01-28 02:48 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll 2021-01-28 02:48 - 2019-12-07 10:10 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe 2021-01-28 02:48 - 2019-12-07 10:10 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe 2021-01-28 02:48 - 2019-12-07 10:10 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll 2021-01-28 02:48 - 2019-12-07 10:10 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll 2021-01-28 02:48 - 2019-12-07 10:10 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll 2021-01-28 02:48 - 2019-12-07 10:10 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll 2021-01-28 02:48 - 2019-12-07 10:09 - 000494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll 2021-01-28 02:48 - 2019-12-07 10:09 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll 2021-01-28 02:48 - 2019-12-07 10:09 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe 2021-01-28 02:48 - 2019-12-07 10:09 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll 2021-01-28 02:48 - 2019-12-07 10:09 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll 2021-01-28 02:48 - 2019-12-07 10:09 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll 2021-01-28 02:48 - 2019-12-07 10:09 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll 2021-01-28 01:55 - 2015-10-30 08:24 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2021-01-27 19:27 - 2020-09-07 04:49 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmvpci.dll 2021-01-27 19:27 - 2020-09-07 04:49 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnsdiag.exe 2021-01-27 19:27 - 2020-09-07 04:49 - 000109384 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmwpevents.dll 2021-01-27 19:27 - 2020-09-07 04:48 - 000206152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpcivsp.sys 2021-01-27 19:27 - 2019-12-07 10:09 - 000260616 _____ (Microsoft Corporation) C:\WINDOWS\system32\hcsdiag.exe 2021-01-27 19:27 - 2019-12-07 10:09 - 000129336 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmvirtio.dll 2021-01-27 19:27 - 2019-12-07 10:09 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pvhdparser.sys 2021-01-27 19:27 - 2019-12-07 10:09 - 000058888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\l2bridge.sys 2021-01-27 19:27 - 2019-12-07 10:09 - 000049192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdparser.sys 2021-01-27 19:27 - 2019-12-07 10:09 - 000041784 _____ (Microsoft Corporation) C:\WINDOWS\system32\NvAgent.dll 2021-01-27 19:27 - 2019-12-07 10:09 - 000039440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\passthruparser.sys 2021-01-27 19:27 - 2019-12-07 10:09 - 000037112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbresources.dll 2021-01-27 19:27 - 2019-12-07 10:09 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocketcontrol.sys 2021-01-27 19:27 - 2019-12-07 10:09 - 000031544 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmcomputeeventlog.dll 2021-01-27 19:27 - 2019-12-07 10:09 - 000027448 _____ (Microsoft Corporation) C:\WINDOWS\system32\VrdUmed.dll 2021-01-27 19:27 - 2019-12-07 10:09 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hnswfpdriver.sys 2021-01-27 19:27 - 2019-12-07 10:09 - 000012816 _____ (Microsoft Corporation) C:\WINDOWS\system32\f989b52d-f928-44a3-9bf1-bf0c1da6a0d6_HyperV-DeviceVirtualization.dll 2021-01-27 19:27 - 2019-12-07 10:09 - 000012600 _____ (Microsoft Corporation) C:\WINDOWS\system32\d4d78066-e6db-44b7-b5cd-2eb82dce620c_HyperV-ComputeLegacy.dll 2021-01-27 19:27 - 2019-12-07 10:09 - 000012600 _____ (Microsoft Corporation) C:\WINDOWS\system32\c4d66f00-b6f0-4439-ac9b-c5ea13fe54d7_HyperV-ComputeCore.dll 2021-01-27 19:27 - 2019-12-07 10:09 - 000012304 _____ (Microsoft Corporation) C:\WINDOWS\system32\07409496-a423-4a3e-b620-2cfb01a9318d_HyperV-ComputeNetwork.dll 2021-01-27 19:25 - 2020-09-07 04:49 - 001115448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lxcore.sys 2021-01-27 19:25 - 2020-09-07 04:49 - 000199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsl.exe 2021-01-27 19:25 - 2020-09-07 04:49 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wslconfig.exe 2021-01-27 19:25 - 2020-09-07 04:49 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\bash.exe 2021-01-27 19:25 - 2019-12-07 10:09 - 000222008 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetMgmtIF.dll 2021-01-27 19:25 - 2019-12-07 10:09 - 000151352 _____ C:\WINDOWS\system32\nmscrub.exe 2021-01-27 19:25 - 2019-12-07 10:09 - 000142648 _____ (Microsoft Corporation) C:\WINDOWS\system32\nmbind.exe 2021-01-27 19:25 - 2019-12-07 10:09 - 000123704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys 2021-01-27 19:25 - 2019-12-07 10:09 - 000107048 _____ (Microsoft Corporation) C:\WINDOWS\system32\p9np.dll 2021-01-27 19:25 - 2019-12-07 10:09 - 000091152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\p9rdr.sys 2021-01-27 19:25 - 2019-12-07 10:09 - 000081208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\p9np.dll 2021-01-27 19:25 - 2019-12-07 10:09 - 000015880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lxss.sys 2021-01-27 18:27 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-01-27 17:34 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-01-27 17:32 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-27 17:32 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-01-27 17:32 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME 2021-01-27 17:32 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-27 13:03 - 2020-12-05 19:50 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2021-01-27 12:27 - 2020-12-05 19:30 - 000000000 ___DC C:\WINDOWS\Panther 2021-01-27 12:17 - 2020-12-06 14:24 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-432176779-2769377027-3090007192-1003 2021-01-27 12:17 - 2020-12-05 21:32 - 000799104 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2021-02-11 14:20 - 2021-02-11 14:21 - 000000096 _____ () C:\Users\fmgdt\AppData\Roaming\Camdata.ini 2021-02-11 14:20 - 2021-02-11 14:21 - 000000408 _____ () C:\Users\fmgdt\AppData\Roaming\CamLayout.ini 2021-02-11 14:20 - 2021-02-11 14:21 - 000000408 _____ () C:\Users\fmgdt\AppData\Roaming\CamShapes.ini 2021-02-11 14:20 - 2021-02-11 14:21 - 000004536 _____ () C:\Users\fmgdt\AppData\Roaming\CamStudio.cfg 2021-02-11 14:19 - 2021-02-11 14:20 - 000000096 _____ () C:\Users\fmgdt\AppData\Roaming\version2.xml 2021-02-02 14:31 - 2021-02-14 20:25 - 000000128 _____ () C:\Users\fmgdt\AppData\Roaming\winscp.rnd 2021-01-27 19:40 - 2021-01-27 19:40 - 000000000 _____ () C:\Users\fmgdt\AppData\Local\oobelibMkey.log 2021-02-10 22:30 - 2021-02-10 22:30 - 000000218 _____ () C:\Users\fmgdt\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
Themen zu Windows 10: Malwarebefall durch audacity.de, ziemlich hatnäckig |
appdata, audacity; bereinigung, bedrohungen, benötige, boot, build, bösartige, c:\windows, code, firefox, gestartet, heute, installer, kurzzeitige, microsoft, morgen, mozilla, plagegeister, protokoll, quarantäne, roaming, system32, tasks, trojaner, unterstützung, users, windows |