![]() |
|
Log-Analyse und Auswertung: Audacity.de > Programme und Verknpfungen aufgetauchtWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder st鄚dig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu k霵nen, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswrdig ist und bis zur vollst鄚digen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Audacity.de > Programme und Verknpfungen aufgetaucht Guten Abend zusammen, habe mir leider heute im Stress Audacity von der Fakeseite runtergeladen. Wieso ich die Warnung von UBlock Origin ignoriert habe, kann ich nicht sagen... Searchbar von Firefox war auf einmal auf Bing eingestellt, auf dem Desktop lag das Programm AdwCleaner (wohl das fakeprogramm, direkt deinstalliert ohne es zu 鐪fnen) und eine Verknpfung zu einer Internetseite. Habe erstmal mit allen Programmen gefeuert, die ich hier gefunden habe. ![]() MBAM Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 26.02.21 Scan-Zeit: 21:09 Protokolldatei: 8f11d844-786e-11eb-b02c-18c04d3625a0.json -Softwaredaten- Version: 4.3.0.98 Komponentenversion: 1.0.1173 Version des Aktualisierungspakets: 1.0.37527 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 10 (Build 19042.804) CPU: x64 Dateisystem: NTFS Benutzer: DESKTOP-8O77MKT\Dominik -Scan-鈁ersicht- Scan-Typ: Bedrohungs-Scan Scan gestartet von: Manuell Ergebnis: Abgeschlossen Gescannte Objekte: 341590 Erkannte Bedrohungen: 6 In die Quarant鄚e verschobene Bedrohungen: 6 Abgelaufene Zeit: 1 Min., 49 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Erkennung PUM: Erkennung -Scan-Details- Prozess: 0 (keine b飉artigen Elemente erkannt) Modul: 0 (keine b飉artigen Elemente erkannt) Registrierungsschlssel: 3 Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\File IP-Hilfsdienst Pass-Through-Treiber, In Quarant鄚e, 17095, 910813, , , , , , Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{D71E687D-6485-438B-ACA7-DA1DAF0ACEF5}, In Quarant鄚e, 17095, 910813, , , , , , Trojan.DownloadProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\BOOT\{D71E687D-6485-438B-ACA7-DA1DAF0ACEF5}, In Quarant鄚e, 17095, 910813, , , , , , Registrierungswert: 0 (keine b飉artigen Elemente erkannt) Registrierungsdaten: 0 (keine b飉artigen Elemente erkannt) Daten-Stream: 0 (keine b飉artigen Elemente erkannt) Ordner: 1 Trojan.DownloadProtect, C:\PROGRAMDATA\PACKAGE CACHE\{63B8E41F-8C62-44AE-B36E-D6B640E82ACC}, In Quarant鄚e, 17095, 910813, 1.0.37527, , ame, , , Datei: 2 Trojan.DownloadProtect, C:\WINDOWS\SYSTEM32\TASKS\File IP-Hilfsdienst Pass-Through-Treiber, In Quarant鄚e, 17095, 910813, , , , , 27B763CFB97E69BF6F41A72F625789CF, D72516380898D28EAB95537AA7DE7BB0A22EDDFAA3230B59202CC1680508C5AC Trojan.DownloadProtect, C:\PROGRAMDATA\PACKAGE CACHE\{63B8E41F-8C62-44AE-B36E-D6B640E82ACC}\{B91B8EFF-2E70-4091-A5B8-CD37091592A5}, In Quarant鄚e, 17095, 910813, 1.0.37527, , ame, , 97FBC359A5C58248B71480FBA39A61E5, 6D86DB014754D6AC185F9CF232C9B6C3217025F16A5DA972532ABF0C188E81C0 Physischer Sektor: 0 (keine b飉artigen Elemente erkannt) WMI: 0 (keine b飉artigen Elemente erkannt) (end) AdwCleaner Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.1.0.0 # ------------------------------- # Build: 02-15-2021 # Database: 2021-01-11.1 (Local) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 02-26-2021 # Duration: 00:00:00 # OS: Windows 10 Education # Cleaned: 6 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\ProgramData\Application Data\Lavasoft\Web Companion ***** [ Files ] ***** No malicious files cleaned. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKCU\Software\Lavasoft\Web Companion Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Web Companion Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|Web Companion Deleted HKLM\Software\Wow6432Node\Lavasoft\Web Companion ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Hosts File Entries ] ***** No malicious hosts file entries cleaned. ***** [ Preinstalled Software ] ***** No Preinstalled Software cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [1935 octets] - [26/02/2021 21:31:11] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ########## Code:
ATTFilter RogueKiller Anti-Malware V14.8.5.0 (x64) [Feb 12 2021] (Free) von Adlice Software Mail : https://adlice.com/contact/ Website : https://adlice.com/download/roguekiller/ Betriebssystem : Windows 10 (10.0.19042) 64 bits Gestartet in : Normaler Modus Benutzer : Dominik [Administrator] Gestartet von : C:\Users\Dominik\Downloads\RogueKiller_portable64.exe Signaturen : 20210226_123752, Treiber : Geladen Modus : Standard-Scan, Scannen -- Datum : 2021/02/26 22:00:10 (Dauer : 00:03:25) 中中中中中中中中中中中中 Prozesse 中中中中中中中中中中中中 中中中中中中中中中中中中 Prozessmodule 中中中中中中中中中中中中 中中中中中中中中中中中中 Dienste 中中中中中中中中中中中中 中中中中中中中中中中中中 Tasks 中中中中中中中中中中中中 中中中中中中中中中中中中 Registry 中中中中中中中中中中中中 中中中中中中中中中中中中 WMI 中中中中中中中中中中中中 中中中中中中中中中中中中 Hosts-Datei 中中中中中中中中中中中中 中中中中中中中中中中中中 Dateien 中中中中中中中中中中中中 [PUP.BundleInstaller (Potenziell b飉artig)] (file) audacity-2-4-2.exe -- (6785719 Canada Inc.) C:\Users\Dominik\Downloads\audacity-2-4-2.exe -> Gefunden 中中中中中中中中中中中中 Webbrowser 中中中中中中中中中中中中 >>>>>> Firefox Config [PUM.SearchEngine (Potenziell b飉artig)] browser.search.selectedEngine (C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release\prefs.js) -- My Firefox Search -> Gefunden [PUM.SearchEngine (Potenziell b飉artig)] browser.search.defaultenginename (C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release\prefs.js) -- My Firefox Search -> Gefunden 中中中中中中中中中中中中 Anti-Rootkit : 0 (Driver: Geladen) 中中中中中中中中中中中中 FRST Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 24-02-2021 durchgefhrt von Dominik (Administrator) auf DESKTOP-8O77MKT (Gigabyte Technology Co., Ltd. Z490 VISION G) (26-02-2021 22:05:19) Gestartet von C:\Users\Dominik\Downloads Geladene Profile: Dominik Platform: Windows 10 Education Version 20H2 19042.804 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: FF Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_51074a304c325b5d\LMS.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.521.2012.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.521.2012.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d67c20d727d4578c\Display.NvContainer\NVDisplay.Container.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurckgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1077176 2020-03-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [527792 2017-08-09] (Open Source Developer, Robin Krom -> Greenshot) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [114273560 2020-10-14] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\RunOnce: [SelLed] => C:\Program Files (x86)\GIGABYTE\RGBFusion\RunLed.exe [50096 2019-04-29] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschr鄚kung <==== ACHTUNG HKU\S-1-5-21-2292371875-1440505530-2959979872-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3412696 2021-02-13] (Valve -> Valve Corporation) HKU\S-1-5-21-2292371875-1440505530-2959979872-1001\...\Run: [Discord] => C:\Users\Dominik\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-2292371875-1440505530-2959979872-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Dominik\AppData\Local\Microsoft\Teams\Update.exe [2453656 2021-02-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2292371875-1440505530-2959979872-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32907168 2021-02-25] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2292371875-1440505530-2959979872-1001\...\Run: [Opera Browser Assistant] => C:\Users\Dominik\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3368576 2021-02-22] (Opera Software AS -> Opera Software) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\88.0.4324.190\Installer\chrmstp.exe [2021-02-24] (Google LLC -> Google LLC) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0FC2FE43-07A2-4E4F-B3C0-D1EDF9DF21A4} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142152 2021-02-21] (Microsoft Corporation -> Microsoft Corporation) Task: {14D3B99F-B886-4377-A0F5-BA17921F1E18} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [64936 2021-02-19] (Microsoft Corporation -> Microsoft) Task: {327DFEE8-5CC5-4FBA-93C6-E27EE55C8ABA} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3E7B4E66-5739-4A4B-8748-B07D7DBAD0CC} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646896 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {42E19613-6A1D-4C47-8B04-47C091DBF8E3} - System32\Tasks\Opera scheduled Autoupdate 1614013658 => C:\Users\Dominik\AppData\Local\Programs\Opera\launcher.exe [1793664 2021-02-22] (Opera Software AS -> Opera Software) Task: {5B00481C-9FDA-4C82-ABE7-1C6067C5776B} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {709738A8-D498-461B-B9ED-84083C8D6482} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {81C1EB21-8896-4B89-B3E2-ADB4FBCD4614} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8D0AD67D-0720-448B-9449-CFCF04EF7466} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {98D7E06E-8069-4AE7-89C1-F08CDE49726B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-02-24] (Google LLC -> Google LLC) Task: {A410E0F5-AC54-4FFD-BFDE-392EC910F3A9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993800 2021-02-15] (Microsoft Corporation -> Microsoft Corporation) Task: {A946B9EF-C1C3-47E9-B6D6-E14678D45227} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {AA3FE46B-F50B-48AF-A2F4-0B005231AA34} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {B1BEDC70-A11A-4516-9BFD-AAEC8535443C} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BB3127AC-3DE3-4510-AC72-FD7A4A066F98} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302128 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C10CFC8F-1376-46A1-A3B0-D544B6B7FF27} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5199792 2021-02-18] (Microsoft Corporation -> Microsoft Corporation) Task: {E2011241-E785-439A-9B78-DCF1CF3AD3DC} - System32\Tasks\Opera scheduled assistant Autoupdate 1614013661 => C:\Users\Dominik\AppData\Local\Programs\Opera\launcher.exe [1793664 2021-02-22] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Dominik\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {E76D8BF1-F899-4DC5-9408-FE5A59A9E593} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993800 2021-02-15] (Microsoft Corporation -> Microsoft Corporation) Task: {F2FCC9EF-4A3A-4A21-9BE5-3D58D0E7E43F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-02-24] (Google LLC -> Google LLC) Task: {F6CE6B0A-63DE-476F-8C74-69612BA50F58} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [142152 2021-02-21] (Microsoft Corporation -> Microsoft Corporation) Task: {F6EB9F1D-DFFD-4D6F-9951-F879E5B43D93} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [694752 2021-02-25] (Mozilla Corporation -> Mozilla Foundation) Task: {FC0768D0-E1B9-479A-8D3A-66B5F986C1CB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5199792 2021-02-18] (Microsoft Corporation -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurckgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{bdcfd530-2eec-47a4-a892-ea2bca750c62}: [DhcpNameServer] 192.168.2.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Dominik\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-26] Edge Extension: (Outlook) - C:\Users\Dominik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2021-02-12] Edge Extension: (Word) - C:\Users\Dominik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2021-02-12] Edge Extension: (Teams) - C:\Users\Dominik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jofcjnlbhnljdeapdjgodjlakohpfnjo [2021-02-12] Edge Extension: (Excel) - C:\Users\Dominik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2021-02-12] Edge Extension: (PowerPoint) - C:\Users\Dominik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2021-02-12] FireFox: ======== FF DefaultProfile: q78wbai5.default FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\q78wbai5.default [2021-02-26] FF Homepage: Mozilla\Firefox\Profiles\q78wbai5.default -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2021-02-26 10:57:37&bName= FF NewTab: Mozilla\Firefox\Profiles\q78wbai5.default -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2021-02-26 10:57:37&bName= FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release [2021-02-26] FF NewTab: Mozilla\Firefox\Profiles\0h1gh8cw.default-release -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2021-02-26 10:57:37&bName= FF Notifications: Mozilla\Firefox\Profiles\0h1gh8cw.default-release -> hxxps://web.whatsapp.com; hxxps://web.telegram.org FF Extension: (Steam Database) - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release\Extensions\firefox-extension@steamdb.info.xpi [2021-02-23] FF Extension: (Dark Background and Light Text) - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release\Extensions\jid1-QoFqdK4qzUfGWQ@jetpack.xpi [2021-02-12] FF Extension: (uBlock Origin) - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release\Extensions\uBlock0@raymondhill.net.xpi [2021-02-12] FF Extension: (Live Recorder) - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release\Extensions\{36da9617-69e6-45b2-a495-ac5d07168ccd}.xpi [2021-02-14] FF Extension: (Watch2Gether) - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release\Extensions\{6ea0a676-b3ef-48aa-b23d-24c8876945fb}.xpi [2021-02-14] FF Extension: (Misty dark forest II) - C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\0h1gh8cw.default-release\Extensions\{ac92fc5a-c8cd-4f87-b75c-7a4268e9b5cc}.xpi [2021-02-12] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-02-18] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-02-18] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-02-18] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default [2021-02-24] CHR Extension: (Pr酲entationen) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-02-24] CHR Extension: (Docs) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-02-24] CHR Extension: (Google Drive) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-02-24] CHR Extension: (YouTube) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-02-24] CHR Extension: (Tabellen) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-02-24] CHR Extension: (Google Docs Offline) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-02-24] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-24] CHR Extension: (Google Mail) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-02-24] CHR Extension: (Chrome Media Router) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-02-24] Opera: ======= OPR Profile: C:\Users\Dominik\AppData\Roaming\Opera Software\Opera Stable [2021-02-26] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\Dominik\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-02-24] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) "TrueSight" => Dienst konnte nicht entsperrt werden. <==== ACHTUNG HKLM\SYSTEM\ControlSet001\Services\TrueSight => \??\C:\Windows\System32\drivers\truesight.sys <==== ACHTUNG (Rootkit!/Gesperrter Dienst) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8905608 2021-02-13] (Microsoft Corporation -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [805488 2021-02-23] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [410864 2021-01-25] (NVIDIA Corporation -> NVIDIA) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-02-26] (Malwarebytes Inc -> Malwarebytes) S3 Rockstar Service; C:\Launcher\RockstarService.exe [1679240 2021-02-19] (Rockstar Games, Inc. -> Rockstar Games) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5198064 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 TwitchService; C:\Program Files\Common Files\Twitch\TwitchService.exe [331648 2021-02-19] (Twitch Interactive, Inc. -> ) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d67c20d727d4578c\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d67c20d727d4578c\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> ) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2021-02-26] (Malwarebytes Corporation -> Malwarebytes) R3 gdrv2; C:\Windows\gdrv2.sys [32600 2021-02-12] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220616 2021-02-26] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2021-02-26] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [198248 2021-02-26] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [77496 2021-02-26] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-02-26] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [142416 2021-02-26] (Malwarebytes Inc -> Malwarebytes) S1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2021-02-12] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-26 22:05 - 2021-02-26 22:05 - 000021706 _____ C:\Users\Dominik\Downloads\FRST.txt 2021-02-26 22:04 - 2021-02-26 22:04 - 000003436 _____ C:\Users\Dominik\Desktop\RogueKillerTxt.txt, 2021-02-26 22:02 - 2021-02-26 22:05 - 000000000 ____D C:\FRST 2021-02-26 22:02 - 2021-02-26 22:02 - 002301440 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64.exe 2021-02-26 21:59 - 2021-02-26 22:03 - 000000000 ____D C:\ProgramData\RogueKiller 2021-02-26 21:59 - 2021-02-26 21:59 - 031051072 _____ C:\Users\Dominik\Downloads\RogueKiller_portable64.exe 2021-02-26 21:43 - 2021-02-26 21:43 - 000000288 _____ C:\Users\Dominik\Desktop\scaneset..txt 2021-02-26 21:36 - 2021-02-26 21:48 - 000000800 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2021-02-26 21:36 - 2021-02-26 21:48 - 000000672 _____ C:\Users\Dominik\Desktop\ESET Online Scanner.lnk 2021-02-26 21:36 - 2021-02-26 21:36 - 000000000 ____D C:\Users\Dominik\AppData\Local\ESET 2021-02-26 21:35 - 2021-02-26 21:36 - 015019488 _____ (ESET spol. s r.o.) C:\Users\Dominik\Downloads\ESETOnlineScanner_DEU.exe 2021-02-26 21:32 - 2021-02-26 21:32 - 000002014 _____ C:\Users\Dominik\Desktop\AdwCleaner[C00].txt 2021-02-26 21:30 - 2021-02-26 21:32 - 000000000 ____D C:\AdwCleaner 2021-02-26 21:30 - 2021-02-26 21:30 - 008463216 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_8.1.exe 2021-02-26 21:24 - 2021-02-26 21:24 - 000198248 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2021-02-26 21:24 - 2021-02-26 21:24 - 000142416 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2021-02-26 21:24 - 2021-02-26 21:24 - 000077496 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2021-02-26 21:12 - 2021-02-26 21:12 - 000002519 _____ C:\Users\Dominik\Desktop\malwarebyte.txt 2021-02-26 21:04 - 2021-02-26 21:04 - 000248992 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2021-02-26 21:04 - 2021-02-26 21:04 - 000220616 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-02-26 21:04 - 2021-02-26 21:04 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-02-26 21:04 - 2021-02-26 21:04 - 000002021 _____ C:\ProgramData\Desktop\Malwarebytes.lnk 2021-02-26 21:04 - 2021-02-26 21:04 - 000000000 ____D C:\Users\Dominik\AppData\Local\mbam 2021-02-26 21:04 - 2021-02-26 21:03 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2021-02-26 21:04 - 2021-02-26 21:03 - 000019912 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2021-02-26 21:03 - 2021-02-26 21:03 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-02-26 21:02 - 2021-02-26 21:02 - 002084016 _____ (Malwarebytes) C:\Users\Dominik\Downloads\MBSetup.exe 2021-02-26 21:02 - 2021-02-26 21:02 - 000000000 ____D C:\Program Files\Malwarebytes 2021-02-26 12:15 - 2021-02-26 12:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\TeamViewer 2021-02-26 12:14 - 2021-02-26 21:24 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-02-26 12:14 - 2021-02-26 12:14 - 029325064 _____ (TeamViewer Germany GmbH) C:\Users\Dominik\Downloads\TeamViewer_Setup.exe 2021-02-26 12:14 - 2021-02-26 12:14 - 000001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk 2021-02-26 12:14 - 2021-02-26 12:14 - 000001104 _____ C:\ProgramData\Desktop\TeamViewer.lnk 2021-02-26 12:14 - 2021-02-26 12:14 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\TeamViewer 2021-02-26 12:05 - 2021-02-26 12:11 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Leppsoft 2021-02-26 12:04 - 2021-02-14 10:33 - 000268088 _____ (Leppsoft) C:\Windows\system32\UniteFx.dll 2021-02-26 11:57 - 2021-02-26 12:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\audacity 2021-02-26 11:57 - 2021-02-26 11:57 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\npm 2021-02-26 11:57 - 2021-02-26 11:57 - 000000000 ____D C:\Users\Dominik\AppData\Local\Audacity 2021-02-26 11:57 - 2021-02-26 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js 2021-02-26 11:29 - 2021-02-26 11:29 - 000000000 ____D C:\Users\Dominik\AppData\Local\IsolatedStorage 2021-02-26 11:21 - 2021-02-26 11:21 - 000000000 ____D C:\Users\Dominik\.templateengine 2021-02-26 11:15 - 2021-02-26 11:15 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Temp 2021-02-26 11:14 - 2021-02-26 11:14 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\NuGet 2021-02-26 11:13 - 2021-02-26 11:13 - 000000000 ____D C:\Users\Dominik\source 2021-02-26 11:13 - 2021-02-26 11:13 - 000000000 ____D C:\Users\Dominik\AppData\Local\IdentityNexusIntegration 2021-02-26 11:12 - 2021-02-26 12:35 - 000000000 ____D C:\Users\Dominik\Documents\Visual Studio 2019 2021-02-26 11:07 - 2021-02-26 11:08 - 000000000 ____D C:\Users\Dominik\Desktop\PRM 2021-02-26 10:09 - 2021-02-26 10:09 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-02-25 20:15 - 2021-02-25 20:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\GameAnalytics 2021-02-25 19:11 - 2021-02-25 19:11 - 000000223 _____ C:\Users\Dominik\Desktop\The Last Stand Aftermath.url 2021-02-25 19:11 - 2021-02-25 19:11 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Con Artist Games 2021-02-25 18:27 - 2021-02-26 11:12 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-02-24 20:34 - 2021-02-24 20:34 - 000002315 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-02-24 20:34 - 2021-02-24 20:34 - 000002274 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2021-02-24 20:34 - 2021-02-24 20:34 - 000000000 ____D C:\Program Files\Google 2021-02-24 20:33 - 2021-02-24 20:36 - 000000000 ____D C:\Users\Dominik\AppData\Local\Google 2021-02-24 20:33 - 2021-02-24 20:33 - 001304160 _____ (Google LLC) C:\Users\Dominik\Downloads\ChromeSetup.exe 2021-02-24 20:33 - 2021-02-24 20:33 - 000003630 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-02-24 20:33 - 2021-02-24 20:33 - 000003506 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-02-24 20:33 - 2021-02-24 20:33 - 000000000 ____D C:\Program Files (x86)\Google 2021-02-23 21:10 - 2021-02-23 21:10 - 000000223 _____ C:\Users\Dominik\Desktop\Apex Legends.url 2021-02-22 21:16 - 2021-02-22 21:16 - 000000222 _____ C:\Users\Dominik\Desktop\Call of Duty Black Ops II - Zombies.url 2021-02-22 18:07 - 2021-02-22 18:07 - 002409112 _____ (Opera Software) C:\Users\Dominik\Downloads\OperaSetup.exe 2021-02-22 18:07 - 2021-02-22 18:07 - 000004480 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1614013661 2021-02-22 18:07 - 2021-02-22 18:07 - 000004244 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1614013658 2021-02-22 18:07 - 2021-02-22 18:07 - 000001419 _____ C:\Users\Dominik\Desktop\Opera-Browser.lnk 2021-02-22 18:07 - 2021-02-22 18:07 - 000001409 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera-Browser.lnk 2021-02-22 18:07 - 2021-02-22 18:07 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Opera Software 2021-02-22 18:07 - 2021-02-22 18:07 - 000000000 ____D C:\Users\Dominik\AppData\Local\Opera Software 2021-02-22 16:20 - 2021-02-22 16:20 - 000000222 _____ C:\Users\Dominik\Desktop\Lambda Wars.url 2021-02-22 15:46 - 2021-02-22 15:46 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-02-22 13:57 - 2021-02-22 13:57 - 000000298 _____ C:\Users\Dominik\Desktop\Absolute Drift.url 2021-02-22 13:57 - 2021-02-22 13:57 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Funselektor Labs Inc_ 2021-02-20 19:21 - 2021-02-22 15:10 - 000000000 ____D C:\Users\Dominik\Documents\Trackmania 2021-02-20 19:21 - 2021-02-20 19:59 - 000000000 ____D C:\ProgramData\Trackmania 2021-02-20 19:18 - 2021-02-20 19:18 - 000000234 _____ C:\Users\Dominik\Desktop\Trackmania.url 2021-02-20 12:22 - 2021-02-20 13:57 - 000000000 ____D C:\Users\Dominik\Desktop\Twtich 2021-02-19 20:59 - 2021-02-19 21:00 - 000000000 ____D C:\Users\Dominik\AppData\Local\Rockstar Games 2021-02-19 20:59 - 2021-02-19 20:59 - 000000000 ____D C:\Users\Dominik\Documents\Rockstar Games 2021-02-19 20:58 - 2021-02-19 20:59 - 000000000 ____D C:\Launcher 2021-02-19 20:58 - 2021-02-19 20:58 - 000000678 _____ C:\Users\Dominik\Desktop\Rockstar Games Launcher.lnk 2021-02-19 20:58 - 2021-02-19 20:58 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2021-02-19 20:58 - 2021-02-19 20:58 - 000000000 ____D C:\ProgramData\Rockstar Games 2021-02-19 20:57 - 2021-02-19 20:59 - 000000000 ____D C:\Program Files\Rockstar Games 2021-02-19 20:57 - 2021-02-19 20:59 - 000000000 ____D C:\Program Files (x86)\Rockstar Games 2021-02-19 15:24 - 2021-02-19 15:24 - 000000282 _____ C:\Users\Dominik\Desktop\Rage 2.url 2021-02-19 14:28 - 2021-02-23 20:07 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Twitch Studio 2021-02-19 14:28 - 2021-02-19 14:28 - 001262544 _____ (Twitch Interactive, Inc.) C:\Users\Dominik\Downloads\TwitchStudioSetup-network_[usher-114993171][referrer-dashboard_tools].exe 2021-02-19 14:28 - 2021-02-19 14:28 - 000001130 _____ C:\Users\Dominik\Desktop\Twitch Studio.lnk 2021-02-19 14:28 - 2021-02-19 14:28 - 000001116 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch Studio.lnk 2021-02-19 14:28 - 2021-02-19 14:28 - 000000000 ____D C:\Program Files\Common Files\Twitch 2021-02-19 11:04 - 2021-02-26 12:32 - 000000000 ____D C:\Users\Dominik\AppData\Local\.IdentityService 2021-02-19 11:03 - 2021-02-19 11:03 - 000001800 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2019.lnk 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\3082 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\2052 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1055 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1049 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1046 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1045 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1042 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1041 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1040 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1036 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1033 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1031 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1029 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\SysWOW64\1028 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\3082 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\2052 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1055 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1049 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1046 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1045 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1042 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1041 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1040 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1036 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1033 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1031 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1029 2021-02-19 11:03 - 2021-02-19 11:03 - 000000000 ____D C:\Windows\system32\1028 2021-02-19 11:03 - 2021-02-17 10:05 - 000000000 ____D C:\Users\Dominik\Desktop\2021_02_17_AWE_NimmSpiel 2021-02-19 11:02 - 2021-02-19 11:02 - 000000000 ____D C:\ProgramData\Windows App Certification Kit 2021-02-19 11:02 - 2021-02-19 11:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2021-02-19 11:02 - 2021-02-19 11:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2021-02-19 11:02 - 2021-02-19 11:02 - 000000000 ____D C:\Program Files\Application Verifier 2021-02-19 11:02 - 2021-02-19 11:02 - 000000000 ____D C:\Program Files\7-Zip 2021-02-19 11:02 - 2021-02-19 11:02 - 000000000 ____D C:\Program Files (x86)\Application Verifier 2021-02-19 11:02 - 2019-12-06 16:35 - 000374784 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DXCpl.exe 2021-02-19 11:02 - 2019-12-06 16:34 - 000417792 _____ C:\Windows\system32\d3dconfig.exe 2021-02-19 11:02 - 2019-12-06 16:27 - 000347136 _____ (Windows (R) Win 7 DDK provider) C:\Windows\SysWOW64\DXCpl.exe 2021-02-19 11:02 - 2019-12-06 16:26 - 000365056 _____ C:\Windows\SysWOW64\d3dconfig.exe 2021-02-19 11:01 - 2021-02-19 11:02 - 001478187 _____ (Igor Pavlov) C:\Users\Dominik\Downloads\7z2100-x64.exe 2021-02-19 10:57 - 2021-02-19 10:57 - 000000000 ____D C:\Program Files (x86)\NuGet 2021-02-19 10:55 - 2021-02-19 10:55 - 000000000 ____D C:\Program Files\Microsoft SQL Server 2021-02-19 10:55 - 2021-02-19 10:55 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2021-02-19 10:54 - 2021-02-19 11:03 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs 2021-02-19 10:54 - 2021-02-19 11:02 - 000000000 ____D C:\Program Files (x86)\Windows Kits 2021-02-19 10:54 - 2021-02-19 10:54 - 000000000 ____D C:\Users\Dominik\.dotnet 2021-02-19 10:54 - 2021-02-19 10:54 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2021-02-19 10:53 - 2021-02-19 10:54 - 000000000 ____D C:\Program Files\dotnet 2021-02-19 10:53 - 2021-02-19 10:54 - 000000000 ____D C:\Program Files (x86)\dotnet 2021-02-19 10:53 - 2021-02-19 10:53 - 000001799 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019.lnk 2021-02-19 10:53 - 2021-02-19 10:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019 2021-02-19 10:53 - 2021-02-19 10:53 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-02-19 10:48 - 2021-02-26 11:11 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Visual Studio Setup 2021-02-19 10:48 - 2021-02-19 10:53 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 2021-02-19 10:48 - 2021-02-19 10:48 - 000001359 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Installer.lnk 2021-02-19 10:48 - 2021-02-19 10:48 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\vstelemetry 2021-02-19 10:48 - 2021-02-19 10:48 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft Visual Studio 2021-02-19 10:48 - 2021-02-19 10:48 - 000000000 ____D C:\Users\Dominik\AppData\Local\ServiceHub 2021-02-19 10:44 - 2021-02-19 10:44 - 000000000 ____D C:\ProgramData\Microsoft Visual Studio 2021-02-18 20:03 - 2021-02-18 20:03 - 000007598 _____ C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg 2021-02-16 19:42 - 2021-02-16 19:42 - 000000000 ____D C:\Users\Dominik\Documents\Benutzerdefinierte Office-Vorlagen 2021-02-16 18:43 - 2021-02-26 11:49 - 000000000 ____D C:\Users\Dominik\Desktop\Prfung 2021-02-15 17:45 - 2021-02-24 21:10 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\EasyAntiCheat 2021-02-15 17:45 - 2021-02-15 17:45 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat 2021-02-14 21:10 - 2021-02-14 21:10 - 000000222 _____ C:\Users\Dominik\Desktop\Warhammer Vermintide 2.url 2021-02-14 20:02 - 2021-02-14 20:02 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\IO Interactive 2021-02-14 19:58 - 2021-02-14 19:58 - 000000234 _____ C:\Users\Dominik\Desktop\WATCH_DOGS 2.url 2021-02-14 19:42 - 2021-02-20 12:03 - 000000000 ____D C:\Users\Dominik\Desktop\ALLES aktuell 2021-02-14 16:49 - 2021-02-14 16:49 - 000000000 ____D C:\Users\Dominik\AppData\Local\CrashRpt 2021-02-14 15:56 - 2021-02-14 16:48 - 000003518 _____ C:\Users\Dominik\Documents\ACP.ini 2021-02-14 15:56 - 2021-02-14 15:58 - 000000000 ____D C:\Users\Dominik\Documents\Assassin's Creed Origins 2021-02-14 14:30 - 2021-02-14 14:30 - 000000222 _____ C:\Users\Dominik\Desktop\Assassin's Creed Origins.url 2021-02-14 14:29 - 2021-02-14 14:29 - 000000222 _____ C:\Users\Dominik\Desktop\Dead by Daylight.url 2021-02-14 10:40 - 2021-02-14 10:40 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Flippfly 2021-02-14 10:34 - 2021-02-14 10:34 - 000000222 _____ C:\Users\Dominik\Desktop\Teeworlds.url 2021-02-14 10:33 - 2021-02-14 10:33 - 000000222 _____ C:\Users\Dominik\Desktop\Tabletop Simulator.url 2021-02-14 10:33 - 2021-02-14 10:33 - 000000222 _____ C:\Users\Dominik\Desktop\Soundpad.url 2021-02-14 10:33 - 2021-02-14 10:33 - 000000222 _____ C:\Users\Dominik\Desktop\Race The Sun.url 2021-02-14 10:32 - 2021-02-14 10:32 - 000000222 _____ C:\Users\Dominik\Desktop\Super Seducer 2 Advanced Seduction Tactics.url 2021-02-14 00:10 - 2021-02-14 00:10 - 000000000 ____D C:\Users\Dominik\AppData\Local\FadeToSilence 2021-02-14 00:08 - 2021-02-14 00:08 - 000000222 _____ C:\Users\Dominik\Desktop\Generation Zero.url 2021-02-14 00:08 - 2021-02-14 00:08 - 000000000 ____D C:\Users\Dominik\Documents\Avalanche Studios 2021-02-13 22:14 - 2021-02-13 22:14 - 000000000 ____D C:\Users\Dominik\Documents\DeadIslandRiptideDE 2021-02-13 21:22 - 2021-02-24 19:10 - 000000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps 2021-02-13 19:02 - 2021-02-13 19:02 - 000000222 _____ C:\Users\Dominik\Desktop\7 Days to Die.url 2021-02-13 19:01 - 2021-02-13 19:01 - 000000222 _____ C:\Users\Dominik\Desktop\Grand Theft Auto V.url 2021-02-13 19:00 - 2021-02-13 19:00 - 000000222 _____ C:\Users\Dominik\Desktop\Dead Island Riptide Definitive Edition.url 2021-02-13 18:59 - 2021-02-13 18:59 - 000000222 _____ C:\Users\Dominik\Desktop\Fade to Silence.url 2021-02-13 18:58 - 2021-02-13 18:58 - 000000222 _____ C:\Users\Dominik\Desktop\Black Mesa.url 2021-02-13 16:56 - 2021-02-13 16:56 - 000000222 _____ C:\Users\Dominik\Desktop\DOOM.url 2021-02-13 16:54 - 2021-02-22 16:14 - 000000000 ____D C:\Users\Dominik\AppData\Local\Ubisoft Game Launcher 2021-02-13 16:54 - 2021-02-13 16:54 - 000001327 _____ C:\Users\Dominik\Desktop\Ubisoft Connect.lnk 2021-02-13 16:54 - 2021-02-13 16:54 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2021-02-13 16:54 - 2021-02-13 16:54 - 000000000 ____D C:\ProgramData\Ubisoft 2021-02-13 16:54 - 2021-02-13 16:54 - 000000000 ____D C:\Program Files (x86)\Ubisoft 2021-02-13 16:51 - 2021-02-13 16:51 - 004707568 _____ (Crystal Dew World ) C:\Users\Dominik\Downloads\CrystalDiskInfo8_11_0.exe 2021-02-13 16:51 - 2021-02-13 16:51 - 000001828 _____ C:\Users\Dominik\Desktop\CrystalDiskInfo.lnk 2021-02-13 16:51 - 2021-02-13 16:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2021-02-13 16:51 - 2021-02-13 16:51 - 000000000 ____D C:\Program Files\CrystalDiskInfo 2021-02-13 16:45 - 2021-02-13 16:45 - 000001841 _____ C:\Users\Dominik\Desktop\CrystalDiskMark 7.lnk 2021-02-13 16:45 - 2021-02-13 16:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskMark7 2021-02-13 16:45 - 2021-02-13 16:45 - 000000000 ____D C:\Program Files\CrystalDiskMark7 2021-02-13 13:35 - 2021-02-13 13:35 - 000000000 ____D C:\Users\Dominik\Documents\4A Games 2021-02-13 13:29 - 2021-02-13 13:29 - 000000000 ____D C:\Users\Dominik\AppData\Local\4A Games 2021-02-13 13:01 - 2021-02-14 15:52 - 000000000 ____D C:\Program Files\Epic Games 2021-02-12 21:43 - 2021-02-12 21:43 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime 2021-02-12 21:39 - 2021-02-12 21:39 - 000000000 ____D C:\Users\Dominik\AppData\Local\OneDrive 2021-02-12 21:35 - 2021-02-12 21:35 - 000000222 _____ C:\Users\Dominik\Desktop\Cloudpunk.url 2021-02-12 21:35 - 2021-02-12 21:35 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Ion Lands 2021-02-12 21:03 - 2021-02-12 21:03 - 119821600 _____ (Ubisoft) C:\Users\Dominik\Downloads\UbisoftConnectInstaller.exe 2021-02-12 21:02 - 2021-02-14 00:11 - 000000000 ____D C:\Users\Dominik\AppData\Local\UnrealEngine 2021-02-12 21:02 - 2021-02-12 21:04 - 000000000 ____D C:\ProgramData\Epic 2021-02-12 21:02 - 2021-02-12 21:02 - 000001272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2021-02-12 21:02 - 2021-02-12 21:02 - 000001260 _____ C:\ProgramData\Desktop\Epic Games Launcher.lnk 2021-02-12 21:02 - 2021-02-12 21:02 - 000000000 ____D C:\Users\Dominik\AppData\Local\UnrealEngineLauncher 2021-02-12 21:02 - 2021-02-12 21:02 - 000000000 ____D C:\Users\Dominik\AppData\Local\EpicGamesLauncher 2021-02-12 21:02 - 2021-02-12 21:02 - 000000000 ____D C:\Program Files (x86)\Epic Games 2021-02-12 21:01 - 2021-02-12 21:01 - 044568576 _____ C:\Users\Dominik\Downloads\EpicInstaller-10.19.2.msi 2021-02-12 20:57 - 2021-02-15 17:45 - 000000000 ____D C:\Users\Dominik\Documents\My Games 2021-02-12 20:57 - 2021-02-12 20:57 - 000000222 _____ C:\Users\Dominik\Desktop\Rocket League.url 2021-02-12 20:53 - 2021-02-19 20:59 - 000000000 ____D C:\Users\Dominik\AppData\Local\D3DSCache 2021-02-12 20:48 - 2021-02-12 20:48 - 000002378 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-02-12 20:48 - 2021-02-12 20:48 - 000002370 _____ C:\Users\Dominik\Desktop\Microsoft Teams.lnk 2021-02-12 20:48 - 2021-02-12 20:48 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Teams 2021-02-12 20:43 - 2021-02-18 17:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2021-02-12 20:43 - 2021-02-12 20:43 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk 2021-02-12 20:43 - 2021-02-12 20:43 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-02-12 20:43 - 2021-02-12 20:43 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-02-12 20:43 - 2021-02-12 20:43 - 000002414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2021-02-12 20:43 - 2021-02-12 20:43 - 000002413 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-02-12 20:43 - 2021-02-12 20:43 - 000002407 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-02-12 20:43 - 2021-02-12 20:43 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2021-02-12 20:43 - 2021-02-12 20:43 - 000002393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-02-12 20:43 - 2021-02-12 20:43 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2021-02-12 20:43 - 2021-02-12 20:43 - 000000000 ____D C:\Program Files (x86)\Teams Installer 2021-02-12 20:40 - 2021-02-21 13:48 - 000000000 ____D C:\Program Files\Microsoft Office 2021-02-12 20:40 - 2021-02-12 20:40 - 000000000 ____D C:\Program Files\Microsoft Office 15 2021-02-12 20:17 - 2021-02-26 13:52 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Teeworlds 2021-02-12 19:42 - 2021-02-12 19:42 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2021-02-12 19:22 - 2021-02-12 19:22 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Greenshot 2021-02-12 19:22 - 2021-02-12 19:22 - 000000000 ____D C:\Users\Dominik\AppData\Local\Greenshot 2021-02-12 19:22 - 2021-02-12 19:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot 2021-02-12 19:22 - 2021-02-12 19:22 - 000000000 ____D C:\Program Files\Greenshot 2021-02-12 19:10 - 2021-02-26 21:32 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\discord 2021-02-12 19:10 - 2021-02-12 19:10 - 000002241 _____ C:\Users\Dominik\Desktop\Discord.lnk 2021-02-12 19:10 - 2021-02-12 19:10 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2021-02-12 19:10 - 2021-02-12 19:10 - 000000000 ____D C:\Users\Dominik\AppData\Local\Steam 2021-02-12 19:09 - 2021-02-26 21:24 - 000000000 ____D C:\Program Files (x86)\Steam 2021-02-12 19:09 - 2021-02-12 20:48 - 000000000 ____D C:\Users\Dominik\AppData\Local\SquirrelTemp 2021-02-12 19:09 - 2021-02-12 19:10 - 000000000 ____D C:\Users\Dominik\AppData\Local\Discord 2021-02-12 19:09 - 2021-02-12 19:09 - 000001036 _____ C:\ProgramData\Desktop\Steam.lnk 2021-02-12 19:09 - 2021-02-12 19:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2021-02-12 18:47 - 2021-02-12 18:47 - 000002924 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-02-12 18:47 - 2021-02-12 18:47 - 000002918 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-02-12 18:47 - 2021-02-12 18:47 - 000002914 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Teams.lnk 2021-02-12 18:47 - 2021-02-12 18:47 - 000002914 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-02-12 18:47 - 2021-02-12 18:47 - 000002912 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-02-12 18:47 - 2021-02-12 18:47 - 000000000 ___HD C:\OneDriveTemp 2021-02-12 18:35 - 2021-02-16 18:45 - 000000000 ____D C:\Users\Dominik\AppData\Local\PlaceholderTileLogoFolder 2021-02-12 18:28 - 2021-02-12 18:28 - 000032600 ____N (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Windows\gdrv2.sys 2021-02-12 18:28 - 2021-02-12 18:28 - 000000000 ____D C:\Users\Dominik\Documents\temp 2021-02-12 18:27 - 2021-02-12 18:27 - 000017424 _____ (MICSYS Technology Co., LTd) C:\Windows\system32\Drivers\MsIo64.sys 2021-02-12 18:27 - 2021-02-12 18:27 - 000000000 ____D C:\Users\Dominik\Intel 2021-02-12 18:27 - 2021-02-12 18:27 - 000000000 ____D C:\ProgramData\Intel 2021-02-12 18:27 - 2021-02-12 18:27 - 000000000 ____D C:\Program Files (x86)\Intel 2021-02-12 18:26 - 2021-02-12 18:27 - 000000000 ____D C:\Program Files\ENE 2021-02-12 18:26 - 2021-02-12 18:26 - 000002206 _____ C:\ProgramData\Desktop\RGBFusion 2.0.lnk 2021-02-12 18:26 - 2021-02-12 18:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\Downloaded Installations 2021-02-12 18:26 - 2021-02-12 18:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AORUS 2021-02-12 18:26 - 2021-02-12 18:26 - 000000000 ____D C:\Program Files\Patriot 2021-02-12 18:26 - 2021-02-12 18:26 - 000000000 ____D C:\Program Files (x86)\GIGABYTE 2021-02-12 18:26 - 2021-02-12 18:26 - 000000000 ____D C:\Program Files (x86)\ENE 2021-02-12 18:26 - 2020-05-12 01:28 - 000020992 _____ C:\Windows\system32\Drivers\ene.sys 2021-02-12 18:22 - 2021-02-12 18:22 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2021-02-12 18:22 - 2021-02-12 18:22 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2021-02-12 18:22 - 2021-02-12 18:22 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 002254336 _____ C:\Windows\system32\dwmscene.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 001822272 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2021-02-12 18:22 - 2021-02-12 18:22 - 001393496 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2021-02-12 18:22 - 2021-02-12 18:22 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 001314112 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi 2021-02-12 18:22 - 2021-02-12 18:22 - 001162240 _____ C:\Windows\system32\MBR2GPT.EXE 2021-02-12 18:22 - 2021-02-12 18:22 - 000729600 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2021-02-12 18:22 - 2021-02-12 18:22 - 000643072 _____ C:\Windows\system32\WindowManagementAPI.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000581120 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2021-02-12 18:22 - 2021-02-12 18:22 - 000575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx 2021-02-12 18:22 - 2021-02-12 18:22 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2021-02-12 18:22 - 2021-02-12 18:22 - 000544768 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr 2021-02-12 18:22 - 2021-02-12 18:22 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000467968 _____ C:\Windows\system32\AssignedAccessCsp.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000455680 _____ C:\Windows\SysWOW64\WindowManagementAPI.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000446976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000422912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2021-02-12 18:22 - 2021-02-12 18:22 - 000363520 _____ C:\Windows\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000330752 _____ C:\Windows\SysWOW64\ssdm.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000306688 _____ C:\Windows\system32\HeatCore.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2021-02-12 18:22 - 2021-02-12 18:22 - 000266240 _____ C:\Windows\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000240640 _____ C:\Windows\SysWOW64\CoreMas.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000238592 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000235520 _____ C:\Windows\SysWOW64\HeatCore.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000234496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax 2021-02-12 18:22 - 2021-02-12 18:22 - 000231232 _____ C:\Windows\system32\containerdevicemanagement.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000190976 _____ C:\Windows\system32\BthpanContextHandler.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2021-02-12 18:22 - 2021-02-12 18:22 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-02-12 18:22 - 2021-02-12 18:22 - 000157184 _____ C:\Windows\system32\uwfcsp.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000152064 _____ C:\Windows\system32\EoAExperiences.exe 2021-02-12 18:22 - 2021-02-12 18:22 - 000138056 _____ C:\Windows\system32\HvsiManagementApi.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax 2021-02-12 18:22 - 2021-02-12 18:22 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000101704 _____ C:\Windows\SysWOW64\HvsiManagementApi.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000095744 _____ C:\Windows\system32\VirtualMonitorManager.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2021-02-12 18:22 - 2021-02-12 18:22 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000074240 _____ C:\Windows\system32\rdsxvmaudio.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2021-02-12 18:22 - 2021-02-12 18:22 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl 2021-02-12 18:22 - 2021-02-12 18:22 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2021-02-12 18:22 - 2021-02-12 18:22 - 000053760 _____ C:\Windows\SysWOW64\BWContextHandler.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2021-02-12 18:22 - 2021-02-12 18:22 - 000010892 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-02-12 18:22 - 2021-02-12 18:22 - 000010752 _____ C:\Windows\SysWOW64\agentactivationruntimestarter.exe 2021-02-12 18:22 - 2021-02-12 18:22 - 000001370 _____ C:\Windows\system32\ThirdPartyNoticesBySHS.txt 2021-02-12 18:21 - 2021-02-12 18:21 - 000455168 _____ C:\Windows\system32\ssdm.dll 2021-02-12 18:21 - 2021-02-12 18:21 - 000287232 _____ C:\Windows\system32\CoreMas.dll 2021-02-12 18:21 - 2021-02-12 18:21 - 000089088 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2021-02-12 18:21 - 2021-02-12 18:21 - 000073216 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2021-02-12 18:21 - 2021-02-12 18:21 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe 2021-02-12 18:17 - 2021-02-12 18:17 - 000000000 ___HD C:\$WinREAgent 2021-02-12 18:17 - 2021-02-12 18:17 - 000000000 ____D C:\Windows\system32\MRT 2021-02-12 18:14 - 2021-01-22 23:59 - 000038640 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll 2021-02-12 18:13 - 2021-01-23 09:15 - 001435864 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-02-12 18:13 - 2021-01-23 09:15 - 001435864 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2021-02-12 18:13 - 2021-01-23 09:14 - 001855192 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2021-02-12 18:13 - 2021-01-23 09:14 - 001855192 _____ C:\Windows\system32\vulkaninfo.exe 2021-02-12 18:13 - 2021-01-23 09:14 - 001453728 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2021-02-12 18:13 - 2021-01-23 09:14 - 001193120 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2021-02-12 18:13 - 2021-01-23 09:14 - 001094880 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2021-02-12 18:13 - 2021-01-23 09:14 - 001094880 _____ C:\Windows\system32\vulkan-1.dll 2021-02-12 18:13 - 2021-01-23 09:14 - 000948952 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2021-02-12 18:13 - 2021-01-23 09:14 - 000948952 _____ C:\Windows\SysWOW64\vulkan-1.dll 2021-02-12 18:13 - 2021-01-23 09:12 - 001512096 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2021-02-12 18:13 - 2021-01-23 09:12 - 001164960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2021-02-12 18:13 - 2021-01-23 09:12 - 000689312 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2021-02-12 18:13 - 2021-01-23 09:12 - 000680096 _____ C:\Windows\system32\nvofapi64.dll 2021-02-12 18:13 - 2021-01-23 09:12 - 000672928 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2021-02-12 18:13 - 2021-01-23 09:12 - 000613536 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2021-02-12 18:13 - 2021-01-23 09:12 - 000558240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2021-02-12 18:13 - 2021-01-23 09:12 - 000547488 _____ C:\Windows\SysWOW64\nvofapi.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 008262304 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 007392928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 004611744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 002731168 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 002103456 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 001589408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 000813216 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 000657056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2021-02-12 18:13 - 2021-01-23 09:11 - 000446624 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2021-02-12 18:13 - 2021-01-23 09:10 - 006070848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2021-02-12 18:13 - 2021-01-23 09:10 - 000850080 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2021-02-12 18:13 - 2021-01-22 23:59 - 000084264 _____ C:\Windows\system32\nvinfo.pb 2021-02-12 18:10 - 2021-02-26 21:12 - 000000000 ____D C:\ProgramData\Package Cache 2021-02-12 18:10 - 2021-02-14 20:01 - 000000000 ____D C:\Users\Dominik\AppData\Local\NVIDIA Corporation 2021-02-12 18:10 - 2021-02-12 18:14 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2021-02-12 18:10 - 2021-02-12 18:10 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000004106 _____ C:\Windows\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000003976 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-02-12 18:10 - 2021-02-12 18:10 - 000001447 _____ C:\ProgramData\Desktop\GeForce Experience.lnk 2021-02-12 18:10 - 2021-02-12 18:10 - 000000000 ____D C:\Users\Dominik\AppData\Local\NVIDIA 2021-02-12 18:10 - 2021-02-12 18:10 - 000000000 ____D C:\Users\Dominik\AppData\Local\CEF 2021-02-12 18:10 - 2021-02-12 18:10 - 000000000 ____D C:\Users\Dominik\ansel 2021-02-12 18:10 - 2021-02-12 18:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2021-02-12 18:10 - 2021-01-27 12:17 - 002797808 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2021-02-12 18:10 - 2021-01-27 12:17 - 002154224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2021-02-12 18:10 - 2021-01-27 12:17 - 001295088 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll 2021-02-12 18:10 - 2021-01-25 04:38 - 000070896 _____ C:\Windows\system32\FvSDK_x64.dll 2021-02-12 18:10 - 2021-01-25 04:38 - 000059632 _____ C:\Windows\SysWOW64\FvSDK_x86.dll 2021-02-12 18:10 - 2021-01-11 17:26 - 000001951 _____ C:\Windows\NvContainerRecovery.bat 2021-02-12 18:10 - 2020-12-02 07:48 - 000169272 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2021-02-12 18:10 - 2020-12-02 07:48 - 000145208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2021-02-12 18:10 - 2020-03-11 20:26 - 000067456 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys 2021-02-12 18:10 - 2020-03-06 11:03 - 000069840 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2021-02-12 18:10 - 2020-03-04 13:54 - 000050592 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\NvModuleTracker.sys 2021-02-12 18:06 - 2021-02-26 21:32 - 000000000 ____D C:\ProgramData\NVIDIA 2021-02-12 18:06 - 2021-02-12 20:46 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-02-12 18:06 - 2021-02-12 18:10 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-02-12 18:06 - 2021-02-12 18:06 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2021-02-12 18:06 - 2020-03-24 04:44 - 005611104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPOU64.dll 2021-02-12 18:06 - 2020-03-24 04:44 - 001145680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtCOM64.dll 2021-02-12 18:06 - 2020-03-24 04:44 - 001077176 _____ (Realtek Semiconductor) C:\Windows\system32\RtkAudUService64.exe 2021-02-12 18:06 - 2020-03-24 04:44 - 000843072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64U.dll 2021-02-12 18:06 - 2020-03-24 04:44 - 000495496 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2021-02-12 18:06 - 2020-03-24 04:44 - 000274936 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTHDASIO64.dll 2021-02-12 18:06 - 2020-03-24 04:44 - 000229904 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RTHDASIO.dll 2021-02-12 18:06 - 2020-03-24 04:44 - 000224504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2021-02-12 18:05 - 2021-01-23 09:10 - 007116680 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2021-02-12 18:05 - 2021-01-22 23:59 - 000135408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2021-02-12 18:05 - 2020-11-30 08:46 - 005519600 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2021-02-12 18:04 - 2021-02-26 21:34 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Mozilla 2021-02-12 18:04 - 2021-02-26 21:34 - 000000000 ____D C:\ProgramData\Mozilla 2021-02-12 18:04 - 2021-02-26 11:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-02-12 18:04 - 2021-02-26 10:09 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-02-12 18:04 - 2021-02-12 18:04 - 000000993 _____ C:\ProgramData\Desktop\Firefox.lnk 2021-02-12 18:04 - 2021-02-12 18:04 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Mozilla 2021-02-12 18:04 - 2021-02-12 18:04 - 000000000 ____D C:\Users\Dominik\AppData\Local\Mozilla 2021-02-12 18:02 - 2020-07-15 01:23 - 000513408 _____ (Intel Corporation) C:\Windows\system32\Drivers\e2f68.sys 2021-02-12 18:02 - 2020-07-15 01:10 - 000002996 _____ C:\Windows\system32\e2f68.din 2021-02-12 17:58 - 2021-02-13 23:16 - 000000000 ____D C:\Users\Dominik\AppData\Local\Comms 2021-02-12 17:41 - 2021-02-26 21:24 - 000000000 ___RD C:\Users\Dominik\OneDrive 2021-02-12 17:41 - 2021-02-19 19:03 - 000003384 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2292371875-1440505530-2959979872-1001 2021-02-12 17:41 - 2021-02-12 17:41 - 000000000 ____D C:\Users\Dominik\AppData\Local\PeerDistRepub 2021-02-12 17:40 - 2021-02-26 21:31 - 001632020 _____ C:\Windows\system32\PerfStringBackup.INI 2021-02-12 17:40 - 2021-02-26 10:27 - 000000000 ____D C:\Users\Dominik\AppData\Local\Packages 2021-02-12 17:40 - 2021-02-12 20:52 - 000000000 ____D C:\Users\Dominik\AppData\Local\ConnectedDevicesPlatform 2021-02-12 17:40 - 2021-02-12 17:40 - 000000000 ___RD C:\Users\Dominik\3D Objects 2021-02-12 17:40 - 2021-02-12 17:40 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Adobe 2021-02-12 17:40 - 2021-02-12 17:40 - 000000000 ____D C:\Users\Dominik\AppData\Local\VirtualStore 2021-02-12 17:40 - 2021-02-12 17:40 - 000000000 ____D C:\Users\Dominik\AppData\Local\Publishers 2021-02-12 17:39 - 2021-02-26 11:21 - 000000000 ____D C:\Users\Dominik 2021-02-12 17:39 - 2021-02-19 19:03 - 000002389 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-02-12 17:39 - 2021-02-12 17:39 - 000000020 ___SH C:\Users\Dominik\ntuser.ini 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Vorlagen 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Startmen 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Netzwerkumgebung 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Lokale Einstellungen 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Eigene Dateien 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Druckumgebung 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Documents\Eigene Videos 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Documents\Eigene Musik 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Documents\Eigene Bilder 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\AppData\Local\Verlauf 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\AppData\Local\Anwendungsdaten 2021-02-12 17:39 - 2021-02-12 17:39 - 000000000 _SHDL C:\Users\Dominik\Anwendungsdaten 2021-02-12 17:37 - 2021-02-12 17:37 - 000000000 ____D C:\Windows\CSC 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Vorlagen 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Startmen 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Netzwerkumgebung 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Lokale Einstellungen 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Eigene Dateien 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Druckumgebung 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Documents\Eigene Videos 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Users\Default\Anwendungsdaten 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Programme 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\ProgramData\Vorlagen 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\ProgramData\Startmen 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\ProgramData\Dokumente 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\ProgramData\Anwendungsdaten 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Program Files\Gemeinsame Dateien 2021-02-12 17:35 - 2021-02-12 17:35 - 000000000 _SHDL C:\Dokumente und Einstellungen 2021-02-12 17:34 - 2021-02-26 21:24 - 000008192 ___SH C:\DumpStack.log.tmp 2021-02-12 17:34 - 2021-02-12 17:34 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2292371875-1440505530-2959979872-500 2021-02-12 17:34 - 2021-02-12 17:34 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2021-02-12 17:33 - 2021-02-14 20:42 - 000000000 ____D C:\Windows\Panther ==================== Ein Monat (ge鄚derte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-02-26 21:54 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-02-26 21:39 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2021-02-26 21:31 - 2019-12-07 15:51 - 000705950 _____ C:\Windows\system32\perfh007.dat 2021-02-26 21:31 - 2019-12-07 15:51 - 000142244 _____ C:\Windows\system32\perfc007.dat 2021-02-26 21:31 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2021-02-26 21:24 - 2020-11-19 00:51 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-02-26 21:24 - 2020-11-18 23:50 - 000440896 _____ C:\Windows\system32\FNTCACHE.DAT 2021-02-26 21:23 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI 2021-02-26 21:04 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-02-26 16:00 - 2020-11-18 23:50 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-02-24 14:35 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-02-20 13:18 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports 2021-02-19 20:42 - 2020-11-19 00:53 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-02-19 20:42 - 2020-11-19 00:53 - 000002274 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk 2021-02-19 11:03 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-02-19 11:02 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2021-02-15 17:45 - 2020-11-19 00:54 - 000000000 ____D C:\ProgramData\Packages 2021-02-13 10:40 - 2020-11-19 00:53 - 000003700 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-02-13 10:40 - 2020-11-19 00:53 - 000003576 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-02-13 10:31 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\appcompat 2021-02-12 18:56 - 2020-11-19 00:51 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-02-12 18:56 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-02-12 18:46 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-02-12 18:46 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-02-12 18:46 - 2019-12-07 15:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\UNP 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\F12 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\PrintDialog 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Keywords 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Com 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Sysprep 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\migwiz 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Keywords 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\es-MX 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Com 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellComponents 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Provisioning 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\IME 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-02-12 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-02-12 18:46 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing 2021-02-12 18:21 - 2020-11-19 00:53 - 002877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2021-02-12 17:51 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF 2021-02-12 17:38 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate 2021-02-12 17:37 - 2019-12-07 15:52 - 000000000 ____D C:\Windows\system32\FxsTmp 2021-02-12 17:35 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState 2021-02-12 17:35 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT 2021-02-12 17:33 - 2019-12-07 10:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2021-02-18 20:03 - 2021-02-18 20:03 - 000007598 _____ () C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Es ist kein automatischer Fix fr Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== ![]() |
Themen zu Audacity.de > Programme und Verknpfungen aufgetaucht |
administrator, adobe, defender, desktop, dll, excel, explorer, failed, firefox, geforce, google, homepage, monitor, mozilla, nvcontainer, nvcontainer.exe, nvidia, opera, programm, programme, prozesse, realtek, registry, rundll, updates, warnung, windows |