|
Antiviren-, Firewall- und andere Schutzprogramme: zulässige Bedrohung löschenWindows 7 Sämtliche Fragen zur Bedienung von Firewalls, Anti-Viren Programmen, Anti Malware und Anti Trojaner Software sind hier richtig. Dies ist ein Diskussionsforum für Sicherheitslösungen für Windows Rechner. Benötigst du Hilfe beim Trojaner entfernen oder weil du dir einen Virus eingefangen hast, erstelle ein Thema in den oberen Bereinigungsforen. |
17.08.2021, 13:32 | #1 |
| zulässige Bedrohung löschen Hallo, kann Mir jemand sagen wie ich die zulässige Bedrohung "PUA:Win32/CandyOpen" aus dem Viren- & Bedrohungsschutz Verlauf entferne? https://www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?name=PUA%3aWin32%2fCandyOpen&threatid=213956 Ich habe schon einiges Versucht aber ich bekomme die "angebliche Bedrohung" einfach nicht weg. Jemand eine Idee? Gruß, marcus locos |
17.08.2021, 15:09 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | zulässige Bedrohung löschen Bitte die Hinweise für Hilfesuchende lesen und umsetzen.
__________________Wenn Defender da Werbemüll/PUA findet ist da bestimmt noch mehr.
__________________ |
20.08.2021, 10:56 | #3 |
| zulässige Bedrohung löschen Hier die drei Logdateien (FRST.txt - Addition.txt - Shortcut.txt).
__________________ |
20.08.2021, 12:39 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | zulässige Bedrohung löschen Bitte die Hinweise richtig lesen. Da steht nichts von "alle Logs in den Anhang".
__________________ Logfiles bitte immer in CODE-Tags posten |
20.08.2021, 12:45 | #5 |
| zulässige Bedrohung löschen "Poste uns die drei Logdateien ( FRST.txt - Addition.txt - Shortcut.txt ) in deinem Thema." Das steht bei euch in der Anleitung !!! Genau das habe ich gemacht. |
20.08.2021, 13:01 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | zulässige Bedrohung löschen Bitte mal endlich richtig lesen. Da steht dass die Logs direkt (in CODE-Tags) gepostet werden sollen und nicht als Anhang reingeklatscht.
__________________ --> zulässige Bedrohung löschen |
21.08.2021, 13:51 | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ | zulässige Bedrohung löschen Kommt da noch was?
__________________ Logfiles bitte immer in CODE-Tags posten |
21.08.2021, 14:33 | #8 |
| zulässige Bedrohung löschen Ja ich bin grad dabei. Tut Mir leid wenn ich das nicht gleich richtig gemacht habe. Es geht aber auch auf die nette und freundliche Art. Ich habe mir die Anleitung durchgelesen aber das mit den CODE-Tags habe ich wohl überlesen. Wahrscheinlich weil ich damit nichts anfangen konnte. Ich verstehe immer noch nicht diesen Teil: Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke . Setze den Curser zwischen die CODE-Tags und drücke STRG+V. Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten. Wie muss ich da vorgehen? |
21.08.2021, 23:38 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | zulässige Bedrohung löschen Es steht alle da was du machen sollst. Der Text soll zwischen die CODE-Tags [CODE] hier das Log rein [/CODE]
__________________ Logfiles bitte immer in CODE-Tags posten |
22.08.2021, 13:24 | #10 |
| zulässige Bedrohung löschenCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 14-08-2021 durchgeführt von Nvidia 3D (Administrator) auf DESKTOP-K1HMADA (Gigabyte Technology Co., Ltd. B550 AORUS PRO) (20-08-2021 11:43:05) Gestartet von C:\Users\Nvidia 3D\Desktop Geladene Profile: Nvidia 3D Platform: Windows 10 Pro Version 21H1 19043.1165 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Chrome Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Elaborate Bytes AG -> Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <16> (Logitech Inc -> Logitech) C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20090.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20090.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe (NiyaShy) [Datei ist nicht signiert] C:\Users\Nvidia 3D\Documents\XB1ControllerBatteryIndicator_1.3.1\XB1ControllerBatteryIndicator.exe (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_253e24b785ea60ca\Display.NvContainer\NVDisplay.Container.exe <2> (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1090784 2020-07-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [PowerDVD19Agent] => C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe [534848 2019-12-03] (CyberLink Corp. -> CyberLink Corp.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942744 2018-12-17] (Logitech -> Logitech, Inc.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [339512 2021-08-04] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [105280 2020-02-23] (Elaborate Bytes AG -> Elaborate Bytes AG) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [8090912 2021-08-14] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [PowerDVD19Agent] => C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe [534848 2019-12-03] (CyberLink Corp. -> CyberLink Corp.) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe HKU\S-1-5-21-509884880-3617381480-1607192098-1001\...\Run: [Epson Stylus SX525WD] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGAE.EXE [224768 2010-01-12] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-509884880-3617381480-1607192098-1001\...\Run: [EPSON SX525WD Series] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGAE.EXE [224768 2010-01-12] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-509884880-3617381480-1607192098-1001\...\Run: [AnyDVD] => C:\Program Files (x86)\RedFox\AnyDVD\AnyDVDtray.exe [17132320 2021-06-30] (Redfox Technology Limited -> RedFox) HKU\S-1-5-21-509884880-3617381480-1607192098-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31171504 2021-07-02] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-509884880-3617381480-1607192098-1001\...\Run: [XB1ControllerBatteryIndicator] => C:\Users\Nvidia 3D\Documents\XB1ControllerBatteryIndicator_1.3.1\XB1ControllerBatteryIndicator.exe [2112000 2019-06-18] (NiyaShy) [Datei ist nicht signiert] HKU\S-1-5-21-509884880-3617381480-1607192098-1001\...\MountPoints2: {e0d64e11-a044-11eb-8e5f-18c04d3ac3dd} - "J:\HiSuiteDownLoader.exe" HKLM\...\Print\Monitors\EPSON SX525WD Series 64MonitorBE: C:\Windows\system32\E_ILMGAE.DLL [118784 2008-11-12] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\92.0.4515.159\Installer\chrmstp.exe [2021-08-17] (Google LLC -> Google LLC) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {2BB2E22B-87D5-4D6F-A681-F0D9BA7023D9} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {407B6611-85DA-4F11-8C72-D2ED220E8E5D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {4189F793-FDA2-475A-94E1-73E1A479FF76} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-26] (Adobe Inc. -> Adobe Inc.) Task: {41E2D6E0-B400-4796-96E6-5DC3864AA72F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-07-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5038ED76-FD34-4647-AE8E-3F81EBE70032} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2021-04-12] (Google LLC -> Google LLC) Task: {5D2C43AB-7297-4EE2-BBD1-BE69C5D57707} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [29136000 2021-07-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {6D89C321-E973-445F-9E8B-07839F8A37D9} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [129808 2021-08-13] (Dropbox, Inc -> Dropbox, Inc.) Task: {913EDFDC-56B0-4CD1-97FA-EF9602660C1C} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe Task: {9DA7B138-C764-4252-9537-B3337C403F71} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-07-16] (Piriform Software Ltd -> Piriform) Task: {B6D13146-F48D-4698-B031-93E5DF53F8F8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-07-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BE2FA65A-5B89-40BD-848E-04C05272E26A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2021-04-12] (Google LLC -> Google LLC) Task: {CD6457F7-C7F2-4462-BBD8-A24EA3C44944} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-509884880-3617381480-1607192098-500 => C:\Users\Nvidia 3D\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {CF9B43DA-CC77-447D-86B7-E42ED50AD6A9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-07-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D810C705-B76A-4AD9-8AD5-8ABCD389D597} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [40880 2021-07-02] (Garmin International, Inc. -> ) Task: {D8DAB749-A4CD-425B-923C-11FB6AF4B27F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.) Task: {DB142261-BDC8-423E-BCBD-FB2FBE43C5CE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-07-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E3DFCA3A-EE21-40FD-8C65-9826953061F1} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [129808 2021-08-13] (Dropbox, Inc -> Dropbox, Inc.) Task: {E6EE4154-DF82-4245-AF50-4EC8E387F444} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{1281bd02-6a48-4539-ae9f-4ae3aba3b4f3}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{1281bd02-6a48-4539-ae9f-4ae3aba3b4f3}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge Profile: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Edge\User Data\Default [2021-08-20] Edge Extension: (360 Viewer) - C:\Users\Nvidia 3D\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmglcbnpblebkmcllnfcgamdelbbekge [2021-08-05] FireFox: ======== FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-26] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-07-24] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default [2021-08-20] CHR DownloadDir: C:\Users\Nvidia 3D\Desktop CHR HomePage: Default -> hxxps://www.google.de/ CHR StartupUrls: Default -> "hxxps://www.google.de/" CHR Extension: (ProxFlow) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2021-05-11] CHR Extension: (Präsentationen) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-04-12] CHR Extension: (Docs) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-04-12] CHR Extension: (Google Drive) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-04-12] CHR Extension: (YouTube) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-04-12] CHR Extension: (uBlock Origin) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-07-28] CHR Extension: (Adblock für Youtube™) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2021-05-19] CHR Extension: (MyJDownloader Browser Erweiterung) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2021-06-28] CHR Extension: (Tabellen) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-04-12] CHR Extension: (Google Docs Offline) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-06-23] CHR Extension: (AdBlock*– der beste Ad-Blocker) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-08-12] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-04-12] CHR Extension: (Google Mail) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-04-12] CHR Extension: (Chrome Media Router) - C:\Users\Nvidia 3D\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-07-21] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-26] (Adobe Inc. -> Adobe Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-03-16] (Apple Inc. -> Apple Inc.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [129808 2021-08-13] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [129808 2021-08-13] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44328 2021-08-14] (Dropbox, Inc -> Dropbox, Inc.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2021-04-18] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [926176 2021-03-16] (Epic Games Inc. -> Epic Games, Inc.) S3 fpsVR Service - CPU Temperature Counter; C:\Program Files\fpsVR\fpsvrCPUTempCounterService.exe [10752 2021-06-05] () [Datei ist nicht signiert] R2 LogiFacecamService; C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe [498576 2021-02-04] (Logitech Inc -> Logitech) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [7477704 2021-08-15] (Malwarebytes Inc -> Malwarebytes) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2556048 2021-07-15] (Electronic Arts, Inc. -> Electronic Arts) S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3474584 2021-07-15] (Electronic Arts, Inc. -> Electronic Arts) S3 OVRLibraryService; C:\Program Files\Oculus\Support\oculus-librarian\OVRLibraryService.exe [144632 2021-07-28] (Oculus VR, LLC -> Facebook Technologies, LLC) R2 OVRService; C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe [511736 2021-07-28] (Oculus VR, LLC -> Facebook Technologies, LLC) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5394872 2021-07-30] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2020-11-26] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [919992 2020-11-26] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-07-24] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-07-24] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_253e24b785ea60ca\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_253e24b785ea60ca\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 AnyDVD; C:\Windows\System32\Drivers\AnyDVD.sys [163832 2019-01-28] (Microsoft Windows Hardware Compatibility Publisher -> RedFox) R3 AnyDVD; C:\Windows\SysWOW64\Drivers\AnyDVD.sys [163832 2019-01-28] (Microsoft Windows Hardware Compatibility Publisher -> RedFox) R2 CLFCL5.19; C:\Windows\system32\DRIVERS\CLFCL5.19\000.fcl [46824 2019-12-02] (CyberLink Corp. -> CyberLink Corp.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [161288 2020-12-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 ElbyCDIO; C:\Windows\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG) S3 ew_usbccgpfilter; C:\Windows\System32\drivers\ew_usbccgpfilter.sys [18944 2021-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2021-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220752 2021-08-20] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2021-08-15] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-08-15] (Malwarebytes Inc -> Malwarebytes) R3 oculusvad_oculusvad; C:\Windows\System32\drivers\oculusvad.sys [75280 2021-04-21] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 Oculus_ViGEmBus; C:\Windows\System32\drivers\Oculus_ViGEmBus.sys [32856 2021-04-21] (Oculus VR, LLC -> Facebook Inc.) R3 PlxDma; C:\Windows\System32\drivers\PlxDma.sys [82016 2012-11-14] (HighPoint Technologies, Inc. -> PLX Technology, Inc.) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [168968 2020-12-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 VClone; C:\Windows\System32\drivers\VClone.sys [44544 2020-02-22] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49568 2021-07-24] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [434424 2021-07-24] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [78072 2021-07-24] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-08-20 11:43 - 2021-08-20 11:43 - 000022055 _____ C:\Users\Nvidia 3D\Desktop\FRST.txt 2021-08-20 11:42 - 2021-08-20 11:43 - 000000000 ____D C:\FRST 2021-08-20 05:10 - 2021-08-20 05:10 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\NiyaShy 2021-08-20 05:00 - 2021-08-20 05:00 - 000220752 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-08-19 22:06 - 2021-08-19 22:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2021-08-19 22:03 - 2021-08-19 22:03 - 000000016 _____ C:\ProgramData\mntemp 2021-08-19 22:01 - 2021-08-19 22:01 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\Wondershare 2021-08-19 22:01 - 2021-08-19 22:01 - 000000000 ____D C:\ProgramData\Wondershare 2021-08-19 21:58 - 2021-08-19 22:01 - 000000000 ____D C:\Users\Public\Documents\iSkysoft 2021-08-19 21:54 - 2021-08-19 21:55 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\Apowersoft 2021-08-19 21:54 - 2021-08-19 21:55 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\Apowersoft 2021-08-19 21:54 - 2021-08-19 21:54 - 000000000 ____D C:\ProgramData\Apowersoft 2021-08-19 21:54 - 2021-08-19 21:54 - 000000000 ____D C:\Program Files (x86)\Apowersoft 2021-08-19 21:18 - 2021-08-19 22:35 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\avidemux 2021-08-19 21:18 - 2021-08-19 21:18 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\avidemux 2021-08-19 19:26 - 2021-08-19 19:26 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\JAM Software 2021-08-19 19:26 - 2021-08-19 19:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TreeSize Free 2021-08-19 19:26 - 2021-08-19 19:26 - 000000000 ____D C:\Program Files (x86)\JAM Software 2021-08-19 19:18 - 2021-08-19 19:18 - 000000113 _____ C:\Users\Nvidia 3D\Desktop\Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten-.url 2021-08-19 19:18 - 2021-08-19 19:18 - 000000097 _____ C:\Users\Nvidia 3D\Desktop\zulässige Bedrohung löschen.url 2021-08-19 17:13 - 2021-08-19 17:13 - 002300416 _____ (Farbar) C:\Users\Nvidia 3D\Desktop\FRST64.exe 2021-08-19 15:49 - 2021-08-19 15:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2021-08-17 14:07 - 2021-08-17 14:18 - 000000161 _____ C:\Windows\restoro.ini 2021-08-17 13:42 - 2021-08-17 13:42 - 008553680 _____ (Malwarebytes) C:\Users\Nvidia 3D\Documents\adwcleaner_8.3.0.exe 2021-08-17 13:23 - 2021-08-20 00:21 - 095158272 _____ C:\Windows\system32\config\SOFTWARE 2021-08-17 13:21 - 2021-08-17 13:23 - 000000000 ____D C:\Windows\Microsoft Antimalware 2021-08-17 11:47 - 2021-08-17 11:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware 2021-08-17 11:47 - 2021-08-17 11:47 - 000000000 ____D C:\ProgramData\GridinSoft 2021-08-16 10:45 - 2021-08-16 10:45 - 000000000 ____D C:\Windows\LastGood.Tmp 2021-08-16 10:44 - 2021-08-06 10:45 - 001858680 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2021-08-16 10:44 - 2021-08-06 10:45 - 001858680 _____ C:\Windows\system32\vulkaninfo.exe 2021-08-16 10:44 - 2021-08-06 10:45 - 001474672 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2021-08-16 10:44 - 2021-08-06 10:45 - 001438840 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-08-16 10:44 - 2021-08-06 10:45 - 001438840 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2021-08-16 10:44 - 2021-08-06 10:45 - 001212536 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2021-08-16 10:44 - 2021-08-06 10:45 - 001097832 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2021-08-16 10:44 - 2021-08-06 10:45 - 001097832 _____ C:\Windows\system32\vulkan-1.dll 2021-08-16 10:44 - 2021-08-06 10:45 - 000951928 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2021-08-16 10:44 - 2021-08-06 10:45 - 000951928 _____ C:\Windows\SysWOW64\vulkan-1.dll 2021-08-16 10:44 - 2021-08-06 10:42 - 000645248 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2021-08-16 10:44 - 2021-08-06 10:40 - 005680768 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2021-08-16 10:43 - 2021-08-06 10:42 - 000716928 _____ C:\Windows\system32\nvofapi64.dll 2021-08-16 10:43 - 2021-08-06 10:42 - 000577152 _____ C:\Windows\SysWOW64\nvofapi.dll 2021-08-16 10:43 - 2021-08-06 10:41 - 002112144 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2021-08-16 10:43 - 2021-08-06 10:41 - 001595536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2021-08-16 10:43 - 2021-08-06 10:41 - 001520760 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2021-08-16 10:43 - 2021-08-06 10:41 - 001171088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2021-08-16 10:43 - 2021-08-06 10:41 - 000919184 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2021-08-16 10:43 - 2021-08-06 10:41 - 000750200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2021-08-16 10:43 - 2021-08-06 10:41 - 000706168 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2021-08-16 10:43 - 2021-08-06 10:41 - 000676480 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2021-08-16 10:43 - 2021-08-06 10:41 - 000564352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2021-08-16 10:43 - 2021-08-06 10:40 - 008854136 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2021-08-16 10:43 - 2021-08-06 10:40 - 007920760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2021-08-16 10:43 - 2021-08-06 10:40 - 004987512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2021-08-16 10:43 - 2021-08-06 10:40 - 002925688 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2021-08-16 10:43 - 2021-08-06 10:40 - 000447096 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2021-08-16 10:43 - 2021-08-06 10:39 - 000849024 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2021-08-16 10:43 - 2021-08-06 10:38 - 006215808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2021-08-16 10:43 - 2021-08-05 23:12 - 000083062 _____ C:\Windows\system32\nvinfo.pb 2021-08-16 10:21 - 2021-08-20 11:19 - 000000000 ____D C:\Program Files\CCleaner 2021-08-16 10:21 - 2021-08-16 10:21 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2021-08-16 10:21 - 2021-08-16 10:21 - 000002896 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2021-08-16 10:21 - 2021-08-16 10:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-08-15 18:07 - 2021-08-15 18:07 - 000248992 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2021-08-15 18:07 - 2021-08-15 18:07 - 000002003 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-08-15 18:07 - 2021-08-15 18:06 - 000019912 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2021-08-15 16:47 - 2021-08-15 18:06 - 000199128 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2021-08-15 16:47 - 2021-08-15 16:47 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\mbamtray 2021-08-15 16:47 - 2021-08-15 16:47 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\mbam 2021-08-15 16:47 - 2021-08-15 16:47 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-08-15 16:47 - 2021-08-15 16:47 - 000000000 ____D C:\Program Files\Malwarebytes 2021-08-14 17:02 - 2021-08-14 17:02 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2021-08-14 17:02 - 2021-08-14 17:02 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2021-08-14 17:02 - 2021-08-14 17:02 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys 2021-08-14 17:02 - 2021-08-14 17:02 - 000044328 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2021-08-11 09:21 - 2021-08-11 09:21 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2021-08-11 09:21 - 2021-08-11 09:21 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2021-08-11 09:21 - 2021-08-11 09:21 - 000011347 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-08-11 09:19 - 2021-08-11 09:19 - 000000000 ___HD C:\$WinREAgent 2021-08-11 00:53 - 2021-08-11 00:53 - 000000205 _____ C:\Users\Nvidia 3D\Documents\Alternativen für schädliche Nahrungsmittel (No Foods) - auf dem Weg zur Gesundheit.url 2021-08-10 14:18 - 2021-08-10 14:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2021-08-10 14:18 - 2021-08-10 14:18 - 000000000 ____D C:\Program Files\iTunes 2021-08-07 17:30 - 2021-08-20 00:11 - 000000000 ____D C:\Program Files (x86)\Origin Games 2021-08-07 00:32 - 2021-08-08 00:59 - 000000000 ____D C:\ProgramData\ReShade 2021-08-06 23:59 - 2021-08-06 23:59 - 000000000 ____D C:\Users\Nvidia 3D\Documents\EA Games 2021-08-06 17:45 - 2021-08-06 17:45 - 000000000 ____D C:\Users\Nvidia 3D\AppData\LocalLow\Temp 2021-08-04 02:04 - 2021-08-04 02:04 - 000000000 ____D C:\Users\Public\Documents\Steam 2021-08-04 02:04 - 2021-08-04 02:04 - 000000000 ____D C:\Users\Nvidia 3D\AppData\LocalLow\Unknown Worlds 2021-07-30 13:19 - 2021-07-30 13:19 - 001823280 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2021-07-30 13:19 - 2021-07-30 13:19 - 001393480 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2021-07-30 13:19 - 2021-07-30 13:19 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2021-07-30 13:19 - 2021-07-30 13:19 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-08-20 11:42 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-08-20 11:35 - 2021-04-18 02:37 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\JDownloader 2.0 2021-08-20 11:35 - 2021-04-12 20:13 - 000000000 ____D C:\Program Files (x86)\Google 2021-08-20 11:17 - 2021-04-12 20:08 - 001732816 _____ C:\Windows\system32\PerfStringBackup.INI 2021-08-20 11:17 - 2019-12-07 16:51 - 000747628 _____ C:\Windows\system32\perfh007.dat 2021-08-20 11:17 - 2019-12-07 16:51 - 000151494 _____ C:\Windows\system32\perfc007.dat 2021-08-20 11:17 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-08-20 11:17 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2021-08-20 11:17 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2021-08-20 11:14 - 2021-04-28 01:41 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\Telegram Desktop 2021-08-20 11:12 - 2021-04-21 19:14 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\Oculus 2021-08-20 11:12 - 2021-04-12 20:08 - 000000000 ____D C:\ProgramData\NVIDIA 2021-08-20 11:12 - 2020-09-27 09:33 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-08-20 11:12 - 2020-09-27 07:33 - 000008192 ___SH C:\DumpStack.log.tmp 2021-08-20 11:12 - 2020-09-27 07:33 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-08-20 11:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState 2021-08-20 05:07 - 2021-04-14 15:29 - 000000000 ____D C:\Program Files (x86)\Steam 2021-08-20 05:01 - 2021-04-18 02:42 - 000000000 ___RD C:\Users\Nvidia 3D\Dropbox 2021-08-20 05:01 - 2021-04-18 02:40 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\Dropbox 2021-08-20 05:00 - 2020-09-27 07:33 - 000459344 _____ C:\Windows\system32\FNTCACHE.DAT 2021-08-20 00:20 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI 2021-08-20 00:19 - 2021-04-18 02:18 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\Origin 2021-08-20 00:19 - 2021-04-18 02:18 - 000000000 ____D C:\ProgramData\Origin 2021-08-20 00:11 - 2021-04-18 02:18 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\Origin 2021-08-20 00:10 - 2021-04-18 02:39 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\DVD Flick 2021-08-20 00:08 - 2021-04-18 02:23 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\vlc 2021-08-19 15:50 - 2021-04-18 02:40 - 000000000 ____D C:\Program Files (x86)\Dropbox 2021-08-19 07:49 - 2021-04-18 14:35 - 000000000 ___HD C:\ProgramData\CyberLink 2021-08-19 06:58 - 2021-04-18 02:17 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\MPC-HC 2021-08-18 16:36 - 2021-04-21 19:14 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\NVIDIA 2021-08-18 10:05 - 2021-04-18 14:41 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\Signal 2021-08-18 00:50 - 2021-04-14 00:18 - 000000000 ___HD C:\msdownld.tmp 2021-08-17 11:25 - 2021-04-12 20:14 - 000002209 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-08-16 17:10 - 2021-04-18 14:39 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\WhatsApp 2021-08-16 17:09 - 2021-04-18 14:39 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\WhatsApp 2021-08-16 10:46 - 2021-04-18 02:20 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\Ubisoft Game Launcher 2021-08-16 10:42 - 2021-06-05 14:47 - 000000000 ____D C:\Windows\Minidump 2021-08-16 10:42 - 2021-04-12 20:59 - 000000000 ____D C:\Windows\Panther 2021-08-16 00:43 - 2020-09-27 09:35 - 000003700 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-08-16 00:43 - 2020-09-27 09:35 - 000003576 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-08-15 16:47 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-08-15 16:44 - 2021-07-03 12:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2021-08-15 16:44 - 2021-07-03 12:07 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\Samsung 2021-08-15 16:44 - 2021-07-03 12:07 - 000000000 ____D C:\Program Files (x86)\Samsung 2021-08-15 14:17 - 2020-09-27 09:36 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-08-13 07:01 - 2021-04-14 23:25 - 000000000 ____D C:\ProgramData\Package Cache 2021-08-13 06:42 - 2021-04-18 02:40 - 000001252 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2021-08-13 06:42 - 2021-04-18 02:40 - 000001248 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2021-08-13 02:54 - 2021-04-18 02:40 - 000004312 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineUA 2021-08-13 02:54 - 2021-04-18 02:40 - 000004080 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineCore 2021-08-12 15:00 - 2021-04-18 02:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64 2021-08-12 15:00 - 2021-04-18 02:17 - 000000000 ____D C:\Program Files\MPC-HC 2021-08-11 10:14 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2021-08-11 10:14 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2021-08-11 09:22 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2021-08-11 09:12 - 2021-04-12 20:10 - 000000000 ____D C:\Windows\system32\MRT 2021-08-11 09:11 - 2021-04-12 20:10 - 133215968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-08-10 18:54 - 2021-04-12 20:05 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\Packages 2021-08-08 00:59 - 2021-04-14 15:31 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2021-08-07 07:05 - 2021-05-04 23:46 - 000000000 ____D C:\Users\Nvidia 3D\Documents\3D Games 2021-08-06 10:38 - 2021-04-15 15:58 - 007280848 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2021-08-05 10:30 - 2021-04-12 20:13 - 000003632 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-08-05 10:30 - 2021-04-12 20:13 - 000003508 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-08-04 10:47 - 2021-04-12 20:10 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-08-03 21:23 - 2021-07-04 18:56 - 000000000 ____D C:\Users\Nvidia 3D\Documents\Shadow of the Tomb Raider 2021-07-31 13:21 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM 2021-07-31 13:06 - 2021-04-21 19:36 - 000000000 ____D C:\Program Files (x86)\Oculus Tray Tool 2021-07-31 13:04 - 2021-04-18 02:19 - 000000000 ____D C:\Program Files (x86)\Origin 2021-07-31 12:55 - 2021-04-18 14:39 - 000000000 ____D C:\Users\Nvidia 3D\AppData\Local\SquirrelTemp 2021-07-30 13:42 - 2021-04-18 03:01 - 000000000 ____D C:\Windows\HoloShell 2021-07-30 13:42 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-07-30 13:42 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP 2021-07-30 13:42 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-07-30 13:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-07-30 13:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2021-07-30 13:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism 2021-07-30 13:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents 2021-07-30 13:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-07-30 13:42 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing 2021-07-29 12:47 - 2021-04-15 20:10 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-07-28 10:14 - 2021-04-21 19:29 - 000000000 ____D C:\Program Files\Oculus 2021-07-24 08:04 - 2020-09-27 09:33 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-07-21 20:23 - 2021-04-21 19:32 - 000000000 ____D C:\ProgramData\Oculus ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== Geändert von cosinus (22.08.2021 um 13:32 Uhr) Grund: doppeltes Log entfernt |
22.08.2021, 13:25 | #11 |
| zulässige Bedrohung löschenCode:
ATTFilter Untersuchungsergebnis der Verknüpfungen des Benutzers (x64) Version: 14-08-2021 durchgeführt von Nvidia 3D (20-08-2021 11:44:10) Gestartet von C:\Users\Nvidia 3D\Desktop Start-Modus: Normal ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Administrator\Links\Desktop.lnk -> C:\Users\Administrator\Desktop () Shortcut: C:\Users\Administrator\Links\Downloads.lnk -> C:\Users\Administrator\Downloads () Shortcut: C:\Users\Administrator\Desktop\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Administrator\Desktop\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30 Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\accicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe (Adobe Systems Incorporated) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{A3985C05-7386-411F-A4BF-32A73F37EB44}\AppleSoftwareUpdateIco.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 19 (64-bit).lnk -> C:\Program Files\CyberLink\PowerDVD19\PDVDLP.exe (CyberLink Corp.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk -> C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe (Epic Games, Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\xlicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk -> C:\Program Files (x86)\ImgBurn\ImgBurn.exe (LIGHTNING UK!) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk -> C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\grv_icons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\joticon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\outicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pptico.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pubs.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\lyncicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\wordicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Benutzerhandbuch für die Konsolenversion von RAR.lnk -> C:\Program Files\WinRAR\Rar.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Hilfe zu WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Was ist neu in dieser Version.lnk -> C:\Program Files\WinRAR\WhatsNew.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk -> C:\Program Files\VideoLAN\VLC\Documentation.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk -> C:\Program Files\VideoLAN\VLC\NEWS.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk -> C:\Program Files\VideoLAN\VLC\VideoLAN Website.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk -> C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\TriDef 3D Ignition.lnk -> C:\Program Files (x86)\TriDef\TriDef\TriDefIgnition\TriDefIgnition.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\TriDef Media Player.lnk -> C:\Program Files (x86)\TriDef\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe (DDD Group Plc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\Utilities\TriDef 3D Display Setup.lnk -> C:\Program Files (x86)\TriDef\TriDef\Common\TriDef3DDisplaySetup.exe (DDD Group Plc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\Utilities\TriDef Diagnostic Tool.lnk -> C:\Program Files (x86)\TriDef\InstallManager\DDDSystemChecker.exe (DDD Group Plc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TreeSize Free\TreeSize Free (Administrator).lnk -> C:\Program Files (x86)\JAM Software\TreeSize Free\TreeSizeFree.exe (JAM Software) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TreeSize Free\TreeSize Free Hilfe.lnk -> C:\Program Files (x86)\JAM Software\TreeSize Free\TreeSizeFree.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> C:\Program Files (x86)\Steam\steam.exe (Valve Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy\Speccy.lnk -> C:\Program Files\Speccy\Speccy64.exe (Piriform Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox\AnyDVD\AnyDVD Help.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\HelpLauncher.exe (Elaborate Bytes AG) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox\AnyDVD\AnyDVD History.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\manual\changes.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox\AnyDVD\AnyDVD.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\AnyDVDtray.exe (RedFox) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox\AnyDVD\Register AnyDVD.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\RegAnyDVD.exe (RedFox) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox\AnyDVD\Uninstall.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\AnyDVD-uninst.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin deinstallieren.lnk -> C:\Program Files (x86)\Origin\OriginUninstall.exe (Electronic Arts) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin Fehlermeldungs-Hilfe.lnk -> C:\Program Files (x86)\Origin\OriginER.exe (Electronic Arts) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin.lnk -> C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oculus Tray Tool\OculusTrayTool.lnk -> C:\Program Files (x86)\Oculus Tray Tool\OculusTrayTool.exe (ApollyonVR) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oculus Tray Tool\ReadMe.lnk -> C:\Program Files (x86)\Oculus Tray Tool\readme.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oculus Tray Tool\Uninstall OculusTrayTool.lnk -> C:\Program Files (x86)\Oculus Tray Tool\unins000.exe (Keine Datei) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oculus Tray Tool\User Guide.lnk -> C:\Program Files (x86)\Oculus Tray Tool\User Guide.pdf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64\MPC-HC entfernen.lnk -> C:\Program Files\MPC-HC\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64\MPC-HC x64.lnk -> C:\Program Files\MPC-HC\mpc-hc64.exe (MPC-HC Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Aufzeichnungs-Manager von Skype for Business.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\lyncicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Database Compare 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\dbcicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Office 2016 Upload Center.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\msouc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Office 2016-Spracheinstellungen.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\misc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Spreadsheet Compare 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\sscicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Telemetriedashboard für Office 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\osmadminicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Telemetrieprotokoll für Office 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\osmclienticon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech\Logitech Capture.lnk -> C:\Program Files\Logitech\LogiCapture\bin\LogiCapture.exe (Logitech) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\Über iTunes.lnk -> C:\Program Files\iTunes\iTunes.Resources\de.lproj\About iTunes.rtf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn\ImgBurn Read Me.lnk -> C:\Program Files (x86)\ImgBurn\ReadMe.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn\ImgBurn.lnk -> C:\Program Files (x86)\ImgBurn\ImgBurn.exe (LIGHTNING UK!) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn\Uninstall.lnk -> C:\Program Files (x86)\ImgBurn\uninstall.exe (LIGHTNING UK!) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin\Garmin Express.lnk -> C:\Program Files (x86)\Garmin\Express\express.exe (Garmin Ltd. or its subsidiaries) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps\Fraps.lnk -> C:\Program Files\Fraps\fraps.exe (Beepa P/L) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps\Uninstall.lnk -> C:\Program Files\Fraps\uninstall.exe (Beepa Pty Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON Scan\EPSON Scan-Einstellungen.lnk -> C:\Windows\twain_32\escndv\escfg.exe (SEIKO EPSON CORP.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON Scan\EPSON Scan.lnk -> C:\Windows\twain_32\escndv\escndv.exe (SEIKO EPSON CORP.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes\VirtualCloneDrive\Anleitung.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\HelpLauncher.exe (Elaborate Bytes AG) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes\VirtualCloneDrive\Uninstall.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\vcd-uninst.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes\VirtualCloneDrive\Virtual CloneDrive Revision History.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\manual\changes_vcd.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes\VirtualCloneDrive\Virtual CloneDrive.lnk -> C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDPrefs.exe (Elaborate Bytes AG) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick\DVD Flick.lnk -> C:\Program Files (x86)\DVD Flick\dvdflick.exe (Dennis "Exl" Meuwissen) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick\Uninstall DVD Flick.lnk -> C:\Program Files (x86)\DVD Flick\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick\Help and Support\Changelog.lnk -> C:\Program Files (x86)\DVD Flick\changelog.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick\Help and Support\GNU GPL License.lnk -> C:\Program Files (x86)\DVD Flick\license.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick\Help and Support\Guide.lnk -> C:\Program Files (x86)\DVD Flick\guide\index_en.html () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick\Help and Support\Readme.lnk -> C:\Program Files (x86)\DVD Flick\readme.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Advisor\CyberLink Ultra HD Blu-ray Advisor.lnk -> C:\Program Files (x86)\CyberLink\Advisor\BD_Advisor.exe (CyberLink) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo\CrystalDiskInfo.lnk -> C:\Program Files\CrystalDiskInfo\DiskInfo32.exe (Crystal Dew World) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft\BeeCut\BeeCut entfernen.lnk -> C:\Program Files (x86)\Apowersoft\Beecut\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft\BeeCut\BeeCut.lnk -> C:\Program Files (x86)\Apowersoft\Beecut\BeeCut.exe (Apowersoft) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\RecoveryDrive.lnk -> C:\Windows\System32\RecoveryDrive.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Registry Editor.lnk -> C:\Windows\regedit.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Defender Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Oculus\Oculus Support.lnk -> C:\Program Files\Oculus\Oculus.ico () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Oculus\Oculus.lnk -> C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe (Oculus VR, LLC) Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{00000000-0000-0000-0000-000000000000}\PlayTasks\0\Launch.lnk -> C:\Program Files (x86)\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe (Keine Datei) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\Nvidia 3D\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Keine Datei) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30 Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\Links\Desktop.lnk -> C:\Users\Nvidia 3D\Desktop () Shortcut: C:\Users\Nvidia 3D\Links\Downloads.lnk -> C:\Users\Nvidia 3D\Downloads () Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo.lnk -> C:\Program Files\MediaInfo\MediaInfo.exe (MediaArea.net) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Signal.lnk -> C:\Users\Nvidia 3D\AppData\Local\Programs\signal-desktop\Signal.exe (Open Whisper Systems) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XB1ControllerBatteryIndicator.lnk -> C:\Users\Nvidia 3D\Documents\XB1ControllerBatteryIndicator_1.3.1\XB1ControllerBatteryIndicator.exe (NiyaShy) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Benutzerhandbuch für die Konsolenversion von RAR.lnk -> C:\Program Files\WinRAR\Rar.txt () Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Hilfe zu WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.chm () Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Was ist neu in dieser Version.lnk -> C:\Program Files\WinRAR\WhatsNew.txt () Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp\WhatsApp.lnk -> C:\Users\Nvidia 3D\AppData\Local\WhatsApp\WhatsApp.exe (WhatsApp) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft\Ubisoft Connect\Ubisoft Connect.lnk -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftConnect.exe (Ubisoft) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft\Ubisoft Connect\Uninstall.lnk -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uninstall.exe (Ubisoft) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop\Telegram entfernen.lnk -> C:\Users\Nvidia 3D\AppData\Roaming\Telegram Desktop\unins000.exe (Telegram FZ-LLC ) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop\Telegram.lnk -> C:\Users\Nvidia 3D\AppData\Roaming\Telegram Desktop\Telegram.exe (Telegram FZ-LLC) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30 Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> C:\Program Files (x86)\Steam\steam.exe (Valve Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revive\Revive Dashboard.lnk -> C:\Program Files\Revive\ReviveOverlay.exe (LibreVR) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revive\Uninstall.lnk -> C:\Program Files\Revive\Uninstall.exe () Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader 2 Deinstallationsprogramm.lnk -> C:\Users\Nvidia 3D\AppData\Local\JDownloader 2.0\Uninstall JDownloader.exe (AppWork GmbH) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader 2 Update & Rescue.lnk -> C:\Users\Nvidia 3D\AppData\Local\JDownloader 2.0\JDownloader2Update.exe (AppWork GmbH) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader\JDownloader 2.lnk -> C:\Users\Nvidia 3D\AppData\Local\JDownloader 2.0\JDownloader2.exe (AppWork GmbH) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ImgBurn.lnk -> C:\Program Files (x86)\ImgBurn\ImgBurn.exe (LIGHTNING UK!) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\JDownloader 2.lnk -> C:\Users\Nvidia 3D\AppData\Local\JDownloader 2.0\JDownloader2.exe (AppWork GmbH) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AnyDVD.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\AnyDVD.exe (RedFox) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\BeeCut.lnk -> C:\Program Files (x86)\Apowersoft\Beecut\BeeCut.exe (Apowersoft) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CrystalDiskInfo.lnk -> C:\Program Files\CrystalDiskInfo\DiskInfo32.exe (Crystal Dew World) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CyberLink PowerDVD 19 (64-bit).lnk -> C:\Program Files\CyberLink\PowerDVD19\PDVDLP.exe (CyberLink Corp.) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CyberLink Ultra HD Blu-ray Advisor.lnk -> C:\Program Files (x86)\CyberLink\Advisor\BD_Advisor.exe (CyberLink) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\DVD Flick.lnk -> C:\Program Files (x86)\DVD Flick\dvdflick.exe (Dennis "Exl" Meuwissen) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Epic Games Launcher.lnk -> C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe (Epic Games, Inc.) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\EPSON Scan.lnk -> C:\Windows\twain_32\escndv\escndv.exe (SEIKO EPSON CORP.) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Fraps.lnk -> C:\Program Files\Fraps\fraps.exe (Beepa P/L) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Garmin Express.lnk -> E:\Meine Dateien\Windows 10\Windows 10 Pro 64 Bit\Anwendung\GarminExpress.exe (Garmin Ltd or its subsidiaries) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\ImgBurn.lnk -> C:\Program Files (x86)\ImgBurn\ImgBurn.exe (LIGHTNING UK!) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\JDownloader 2.lnk -> C:\Users\Nvidia 3D\AppData\Local\JDownloader 2.0\JDownloader2.exe (AppWork GmbH) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\MPC-HC x64.lnk -> C:\Program Files\MPC-HC\mpc-hc64.exe (MPC-HC Team) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Oculus Tray Tool.lnk -> C:\Program Files (x86)\Oculus Tray Tool\OculusTrayTool.exe (ApollyonVR) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Oculus.lnk -> C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe (Oculus VR, LLC) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Origin.lnk -> C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\ReShade Setup.lnk -> C:\Users\Nvidia 3D\Documents\ReShade_Setup_4.9.1.exe (crosire) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Revive Dashboard.lnk -> C:\Program Files\Revive\ReviveOverlay.exe (LibreVR) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Shadow of the Tomb Raider.lnk -> C:\Program Files (x86)\Steam\steamapps\common\Shadow of the Tomb Raider\SOTTR.exe (Eidos Inc.) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Signal.lnk -> C:\Users\Nvidia 3D\AppData\Local\Programs\signal-desktop\Signal.exe (Open Whisper Systems) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Speccy.lnk -> C:\Program Files\Speccy\Speccy64.exe (Piriform Ltd) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Steam.lnk -> C:\Program Files (x86)\Steam\steam.exe (Valve Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Systemkonfigurations-Hilfsprogramm.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Task-Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Telegram.lnk -> C:\Users\Nvidia 3D\AppData\Roaming\Telegram Desktop\Telegram.exe (Telegram FZ-LLC) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\TreeSize Free.lnk -> C:\Program Files (x86)\JAM Software\TreeSize Free\TreeSizeFree.exe (JAM Software) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\TriDefIgnition.lnk -> C:\Program Files (x86)\TriDef\TriDef\TriDefIgnition\TriDefIgnition.exe () Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Ubisoft Connect.lnk -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftConnect.exe (Ubisoft) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\VLC media player.lnk -> C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\WhatsApp.lnk -> C:\Users\Nvidia 3D\AppData\Local\WhatsApp\WhatsApp.exe (WhatsApp) Shortcut: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\TriDef 3D User Guide.lnk -> C:\Program Files (x86)\TriDef\InstallManager\TriDefLauncherNA.exe (DDD Group Plc.) -> -shellexecute "hxxps://www.tridef.com/user-guide/getting-started" ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Administrative Tools.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.AdministrativeTools ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk -> C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN) -> --reset-config --reset-plugins-cache vlc://quit ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk -> C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN) -> -Iskins ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\TriDef 3D.lnk -> C:\Program Files (x86)\TriDef\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe (DDD Group Plc.) -> "C:\Program Files (x86)\TriDef\Apps\TriDef3D.TriDefApp" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\Uninstall All TriDef Software.lnk -> C:\Program Files (x86)\TriDef\InstallManager\DDDInstallManager.exe (DDD Group Plc.) -> -uninstall ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\Utilities\Buy TriDef Software.lnk -> C:\Program Files (x86)\TriDef\TriDef\Common\TriDefActivator.exe (DDD Group Plc.) -> -buy start-menu ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\Utilities\Enter Activation Code.lnk -> C:\Program Files (x86)\TriDef\TriDef\Common\TriDefActivator.exe (DDD Group Plc.) -> -act start-menu ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\Utilities\TriDef License Info.lnk -> C:\Program Files (x86)\TriDef\TriDef\Common\TriDefActivationDialog.exe (DDD Group Plc.) -> -info -app start-menu ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef\Utilities\Update TriDef Software.lnk -> C:\Program Files (x86)\TriDef\InstallManager\DDDSoftwareUpdater.exe (DDD Group Plc.) -> -now -verbose ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TreeSize Free\TreeSize Free.lnk -> C:\Program Files (x86)\JAM Software\TreeSize Free\TreeSizeFree.exe (JAM Software) -> /NOADMIN ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox\AnyDVD\AnyDVD Image Ripper.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\AnyDVDtray.exe (RedFox) -> -iso ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox\AnyDVD\AnyDVD Ripper.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\AnyDVDtray.exe (RedFox) -> -r ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox\AnyDVD\AnyDVD System Information.lnk -> C:\Program Files (x86)\RedFox\AnyDVD\AnyDVDtray.exe (RedFox) -> -syslog ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX525WD Series\EPSON-Druckersoftware deinstallieren.lnk -> C:\Windows\System32\spool\drivers\x64\3\E_IINSGAE.EXE (SEIKO EPSON CORPORATION) -> /R /APD /P:"EPSON SX525WD Series" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX525WD Series\Technischer Support.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> C:\Windows\system32\spool\DRIVERS\x64\3\E_IGEPGAE.DLL,GE_OpenELINK "Epson Stylus SX525WD" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON SX525WD Series\Treiberaktualisierung.lnk -> C:\Windows\System32\spool\drivers\x64\3\E_GUPA30.EXE (SEIKO EPSON CORPORATION) -> /P "EPSON SX525WD Series" /D C:\Windows\system32\spool\DRIVERS\x64\3\E_IVIFGAE.VIF ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk -> C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) -> /home ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Oculus\Uninstall Oculus.lnk -> C:\Program Files\Oculus\OculusSetup.exe (Facebook Technologies, LLC) -> /uninstall ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Administrative Tools.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.AdministrativeTools ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Administrative Tools.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.AdministrativeTools ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\control.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.Sound /page play ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk -> C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) -> /home ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Papierkorb.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:RecycleBinFolder ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\Nvidia 3D\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} InternetURL: C:\Users\Administrator\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142 InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam Support Center.url -> URL: hxxp://support.steampowered.com/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy\Speccy Homepage.url -> URL: hxxp://www.ccleaner.com/speccy InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64\MPC-HC im Internet.url -> URL: hxxps://github.com/clsid2/mpc-hc/releases InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware\Documentation.url -> URL: hxxps://gridinsoft.com/antimalware/UsersGuide.pdf InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Flick\Help and Support\DVD Flick on the Web.url -> URL: hxxp://www.dvdflick.net InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox Website.URL -> InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> URL: hxxp://www.ccleaner.com/ccleaner InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft\BeeCut\BeeCut im Internet.url -> URL: hxxps://www.apowersoft.de InternetURL: C:\Users\Nvidia 3D\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142 InternetURL: C:\Users\Nvidia 3D\Documents\14-Tage-Wetter Waggum (Braunschweig) - WetterOnline.url -> URL: hxxps://www.wetteronline.de/wettertrend/braunschweig/waggum?fbclid=IwAR2h7fUEshjnJgKGTJpNjfAvMWW6ZA6yy_kqSRUOOUj0bpFhCkNnfkNJhjw InternetURL: C:\Users\Nvidia 3D\Documents\Alternativen für schädliche Nahrungsmittel (No Foods) - auf dem Weg zur Gesundheit.url -> URL: hxxps://heilsame-pfade.jimdofree.com/2020/03/14/alternativen-f%C3%BCr-sch%C3%A4dliche-nahrungsmittel-no-foods/?fbclid=IwAR3qxaC0mHbN_1QvsNkFh1DYiGpRkdaXYd8k9taEeBWof5TGowRYQ1tti3c InternetURL: C:\Users\Nvidia 3D\Documents\fpsVR.url -> URL: steam://rungameid/908520 InternetURL: C:\Users\Nvidia 3D\Documents\SteamVR Performance Test.url -> URL: steam://rungameid/323910 InternetURL: C:\Users\Nvidia 3D\Documents\SteamVR.url -> URL: steam://rungameid/250820 InternetURL: C:\Users\Nvidia 3D\Documents\Windows Mixed Reality for SteamVR.url -> URL: steam://rungameid/719950 InternetURL: C:\Users\Nvidia 3D\Documents\3D Games\Alien Isolation.url -> URL: steam://rungameid/214490 InternetURL: C:\Users\Nvidia 3D\Documents\3D Games\Portal 2.url -> URL: steam://rungameid/620 InternetURL: C:\Users\Nvidia 3D\Documents\3D Games\Shadow of the Tomb Raider.url -> URL: steam://rungameid/750920 InternetURL: C:\Users\Nvidia 3D\Desktop\Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten-.url -> URL: hxxps://www.trojaner-board.de/69886-alle-hilfesuchenden-eroeffnung-themas-beachten.html InternetURL: C:\Users\Nvidia 3D\Desktop\zulässige Bedrohung löschen.url -> URL: hxxps://www.trojaner-board.de/202402-zulaessige-bedrohung-loeschen.html InternetURL: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\SteamVR\GizmoVR Video Player.url -> InternetURL: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\SteamVR\SteamVR.url -> InternetURL: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Splinter Cell Blacklist.url -> URL: uplay://launch/444/0 InternetURL: C:\Users\Nvidia 3D\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam\Shadow of the Tomb Raider.url -> URL: steam://rungameid/750920 ==================== Ende vom Shortcut.txt ============================= |
22.08.2021, 13:30 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | zulässige Bedrohung löschen Störende, veraltete oder unnötige Programme deinstallieren Bitte über Programme und Features (appwiz.cpl) deinstallieren:
__________________ Logfiles bitte immer in CODE-Tags posten |
22.08.2021, 13:55 | #13 |
| zulässige Bedrohung löschen ok danke erstmal. Hab alles deinstalliert und neu gestartet aber bei der zulässigen Bedrohung wird immer noch was angezeigt. Als Browser nutze ich schon seit vielen Jahren Chrome. PDF Dateien lassen sich aber auch mit dem MS Edge öffnen aber eigentlich kann ich ja jetzt wieder alles installieren. An diesen Programmen lag es vermutlich nicht. Auf CCleaner kann ich noch verzichten und Bonjour ist ja ein Tool von Apple. Der ist glaub ich wichtig wenn ich mein iPod anschließe. Habe es jetzt schon länger nicht gemacht aber ich weiß nicht ob er jetzt noch erkannt wird. Das Tool wird ja zusammen mit iTunes installiert. |
22.08.2021, 14:39 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | zulässige Bedrohung löschen adwCleaner Führe AdwCleaner gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei in CODE-Tags. adwcleaner zwecks Kontrolle bitte wiederholen, falls es Funde gab.
__________________ Logfiles bitte immer in CODE-Tags posten |
22.08.2021, 15:12 | #15 |
| zulässige Bedrohung löschenCode:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.3.0.0 # ------------------------------- # Build: 06-29-2021 # Database: 2021-08-09.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Scan # ------------------------------- # Start: 08-22-2021 # Duration: 00:00:03 # OS: Windows 10 Pro # Scanned: 32000 # Detected: 0 ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** No malicious folders found. ***** [ Files ] ***** No malicious files found. ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** No malicious registry entries found. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries found. ***** [ Chromium URLs ] ***** No malicious Chromium URLs found. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries found. ***** [ Firefox URLs ] ***** No malicious Firefox URLs found. ***** [ Hosts File Entries ] ***** No malicious hosts file entries found. ***** [ Preinstalled Software ] ***** No Preinstalled Software found. ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ########## |
Themen zu zulässige Bedrohung löschen |
angebliche, bedrohung, einfach, entferne, g lösche, löschen, nicht, verlauf, versuch, versucht, win, zulässige |