Code:
Alles auswählen Aufklappen ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 14-08-2021
durchgeführt von ***** (Administrator) auf SIMULATOR-PC (Micro-Star International Co., Ltd. MS-7C37) (20-08-2021 22:44:12)
Gestartet von C:\Users\*****\Downloads
Geladene Profile: ***** & UIFlowService
Platform: Windows 10 Pro Version 21H2 22000.132 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Edge
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(cFos Software GmbH -> cFos Software GmbH) C:\Program Files\cFosSpeed\spd.exe
(DeskSoft -> DeskSoft) C:\Program Files (x86)\WindowManager\WindowManager.exe
(Discord Inc. -> Discord Inc.) C:\Users\*****\AppData\Local\Discord\app-1.0.9002\Discord.exe <6>
(Escapisim) [Datei ist nicht signiert] C:\Program Files (x86)\Steam\steamapps\common\VoiceAttack\Apps\The Digital Race Engineer\DRE Launcher.exe
(EXPRSVPN LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe
(EXPRSVPN LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPN.exe
(EXPRSVPN LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationService.exe
(File-New-Project) C:\Program Files\WindowsApps\40459File-New-Project.EarTrumpet_2.1.8.0_x86__1sdd7yawvg6ne\EarTrumpet\EarTrumpet.exe
(iRacing.com Motorsport Simulations, LLC -> iRacing) C:\Program Files (x86)\iRacing\ui\iRacingUI.exe <4>
(iRacing.com Motorsport Simulations, LLC -> iRacing.com Motorsport Simulations, LLC Bedford, MA 01730) C:\Program Files (x86)\iRacing\iRacingService64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <26>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Power Automate Desktop\Microsoft.Flow.RPA.LauncherService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Power Automate Desktop\Microsoft.Flow.RPA.LogShipper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Power Automate Desktop\UIFlowService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\21.160.0808.0001\FileCoAuth.exe
(Microsoft Corporation -> Microsoft) C:\Program Files (x86)\Power Automate Desktop\PAD.BrowserNativeMessageHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.56.11001.0_x64__8wekyb3d8bbwe\gamingservices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.56.11001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ScreenSketch_11.2104.3.0_x64__8wekyb3d8bbwe\SnippingTool\SnippingTool.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20090.0_x64__8wekyb3d8bbwe\HxAccounts.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20090.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20090.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_22108.1401.0.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.8052.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(Microsoft Windows -> ) C:\Windows\System32\AggregatorHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <5>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MiniSearchHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Scans\MsMpEngCP.exe
(Microsoft) C:\Program Files\WindowsApps\MicrosoftTeams_21217.300.928.2028_x64__8wekyb3d8bbwe\msteamsupdate.exe <2>
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Speed Up\StorageMonitor.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\True Color\New\MSI.True Color.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI Center\Super Charger\MSI_Super_Charger_Service.exe
(Micro-Star INT'L CO., LTD.) [Datei ist nicht signiert] C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControlEngine.exe
(Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e9f6c354061743a4\RtkAudUService64.exe
(Rhinode LLC -> ) C:\Program Files (x86)\Rhinode LLC\Trading Paints\Trading Paints.exe
(WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2130.9.0_x64__cv1g1gvanyjgm\app\WhatsApp.exe <7>
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e9f6c354061743a4\RtkAudUService64.exe [1270344 2021-07-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM-x32\...\Run: [ExpressVPNNotificationService] => C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationServiceStarter.exe [370088 2021-06-28] (EXPRSVPN LLC -> ExpressVPN)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [779504 2021-08-17] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKLM-x32\...\Run: [Power Automate Desktop notifier] => C:\Program Files (x86)\Power Automate Desktop\Microsoft.Flow.RPA.Notifier.exe [50592 2021-07-15] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\FRITZWLANMini.exe [944088 2017-02-06] (AVM Computersysteme Vertriebs GmbH -> AVM Berlin)
HKU\S-1-5-21-487585160-604149877-1877980533-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2338688 2021-08-19] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-487585160-604149877-1877980533-1001\...\Run: [Discord] => C:\Users\*****\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub)
HKU\S-1-5-21-487585160-604149877-1877980533-1001\...\Run: [FanaLab] => C:\Program Files (x86)\Fanatec\FanaLab\Control\FanaLab.exe [65395064 2021-08-16] (Endor AG -> Endor Fanatec)
HKU\S-1-5-21-487585160-604149877-1877980533-1001\...\Run: [Trading Paints] => C:\Program Files (x86)\Rhinode LLC\Trading Paints\Trading Paints.exe [638368 2021-06-14] (Rhinode LLC -> )
HKU\S-1-5-21-487585160-604149877-1877980533-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-21] (Valve -> Valve Corporation)
HKU\S-1-5-21-487585160-604149877-1877980533-1001\...\Run: [DRE Launcher] => C:\program files (x86)\steam\steamapps\common\VoiceAttack\Apps\The Digital Race Engineer\DRE Launcher.exe [2390016 2021-06-07] (Escapisim) [Datei ist nicht signiert]
HKU\S-1-5-21-487585160-604149877-1877980533-1001\...\Run: [ExpressVPN4] => C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPN.exe [850344 2021-06-28] (EXPRSVPN LLC -> ExpressVPN)
HKU\S-1-5-21-487585160-604149877-1877980533-1001\...\MountPoints2: {a37b9407-fe98-11eb-9f4e-a26aeb553390} - "G:\pushinst.exe"
HKLM\Software\...\Winlogon\GPExtensions: [{8472C2C4-6B70-4301-A20D-A6CEA5F82B7E}] -> C:\Windows\System32\StartTileData.dll [2021-08-15] (Microsoft Windows -> Microsoft Corporation)
Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DRE Launcher.exe(elevated).lnk [2021-08-19]
ShortcutTarget: DRE Launcher.exe(elevated).lnk -> C:\Windows\System32\schtasks.exe (Microsoft Windows -> Microsoft Corporation)
GroupPolicy: Beschränkung ? <==== ACHTUNG
Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {0628A741-FEE6-4CB7-BC6C-B3A95F66DDB5} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {0784FCB0-C376-4566-B51F-1B087907C2EF} - System32\Tasks\MSI Task Host - MSI_Smart Image Finder => C:\Program Files (x86)\MSI\MSI Center\Smart Image Finder\MSI_Smart Image Finder.exe [994104 2021-04-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_1.0.24.0_x64__kzh8wxbdkxb8p\DCv2
Task: {0CF071CA-711B-452A-B7D7-485624A0C73D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0F130E4E-1EE9-46A8-95DF-3E3FCFA91CF6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1252A84C-8F10-40E8-A3DB-1C30B0D37B16} - System32\Tasks\Microsoft\Windows\Printing\PrinterCleanupTask => {C56F065E-DE49-4E42-BE7C-305C45609D25} C:\Windows\System32\PrinterCleanupTask.dll [118784 2021-08-15] (Microsoft Windows -> Microsoft Corporation)
Task: {169BB5A6-43F3-4FC7-9068-31E587549BC0} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139112 2021-08-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {24A9C769-BA2A-4BAF-950B-F6F1D1C447DA} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [667832 2021-07-16] (Advanced Micro Devices INC. -> )
Task: {615DF84C-4037-4E74-B87C-3E6A5C59B6D0} - System32\Tasks\D3DGearRawFrameCaptureTask => C:\Program Files (x86)\iRacing\d3dgear\d3dGear.exe [1986984 2021-06-01] (D3DGear Technologies -> D3DGear Technologies.)
Task: {72F821B4-F095-4416-AC15-28B0D545859C} - System32\Tasks\DRE Launcher.exe_1642829084 => cmd.exe /c start "" "C:\Program Files (x86)\Steam\steamapps\common\VoiceAttack\Apps\The Digital Race Engineer\DRE Launcher.exe"
Task: {7B059DF4-A1AB-49CD-9989-2E3D2D016A05} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23253888 2021-08-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {8B51225E-3874-40DE-B771-408E5E7DCCBB} - System32\Tasks\Microsoft\Windows\Kernel\La57Cleanup => C:\Windows\system32\la57setup.exe [36864 2021-08-15] (Microsoft Windows -> Microsoft Corporation)
Task: {8C94665D-F9DA-4E18-BF62-B81D82E4C1A5} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [1735504 2021-07-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {9499E490-4AEB-4F2C-A07D-C4510BE51407} - System32\Tasks\NVCleanstall => C:\Program Files\NVCleanstall\NVCleanstall.exe [3593616 2021-08-18] (TechPowerUp LLC -> TechPowerUp)
Task: {982129A5-E66A-47D4-B7BC-D645CCE498F6} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139112 2021-08-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {A113AD26-AA99-4C14-9101-6C53FDBA2241} - System32\Tasks\Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup => C:\Windows\system32\MdmDiagnosticsTool.exe [90112 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
Task: {A5D28693-2D90-427E-AE30-37C2B3A90581} - System32\Tasks\WindowManager => C:\Program Files (x86)\WindowManager\WindowManager.exe [1556320 2021-08-06] (DeskSoft -> DeskSoft)
Task: {A79BA140-4629-44DD-88F3-26A23688E8F2} - System32\Tasks\microsoft\windows\capabilityaccessmanager\maintenancetasks => %windir%\system32\rundll32.exe %windir%\system32\CapabilityAccessManager.dll,CapabilityAccessManagerDoStoreMaintenance
Task: {AA87A09C-4157-45DA-9880-7EA283460D6F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23253888 2021-08-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {D3E9B511-584F-4797-A159-D7452BD5AE6F} - System32\Tasks\Microsoft\Windows\AppListBackup\Backup => {E0DCC2CC-3354-45F2-8914-519E07809082} C:\Windows\system32\AppListBackupLauncher.dll [110592 2021-08-15] (Microsoft Windows -> Microsoft Corporation)
Task: {EC78B48C-CE17-4A6A-9E2C-FDFC50E81AE4} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [3977088 2021-08-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {EF911247-B64F-40A8-9900-5CEA83FBC424} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F1321F12-EDDE-490D-B553-C1EF67162EF6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F21E75C8-2470-408B-90B9-0C16A9649589} - System32\Tasks\Microsoft\Windows\Shell\ThemesSyncedImageDownload => {79F8E185-4E45-4B74-8182-02AA430661E4} C:\Windows\System32\Themes.SsfDownload.ScheduledTask.dll [200704 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Winsock: Catalog5 07 C:\Windows\SysWOW64\nlansp_c.dll [83456 2021-06-05] (Microsoft Windows -> Microsoft Corporation) ACHTUNG: LibraryPath sollte sein "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 07 C:\Windows\system32\nlansp_c.dll [126976 2021-06-05] (Microsoft Windows -> Microsoft Corporation) ACHTUNG: LibraryPath sollte sein "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.184.96
Tcpip\..\Interfaces\{5f5840e2-9074-4bc9-a13f-fbf1490f4ac0}: [NameServer] 10.184.0.1
Tcpip\..\Interfaces\{79145c84-36d3-4c01-9a22-f2ad86882812}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{e4c6581f-355e-44a3-8e17-cb3751d64e0a}: [DhcpNameServer] 192.168.184.96
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default [2021-08-20]
Edge Notifications: Default -> hxxps://business.facebook.com; hxxps://majorsgarage.com; hxxps://www.facebook.com; hxxps://www.youtube.com
Edge HomePage: Default -> hxxps://www.youtube.com/watch?v=YVkUvmDQ3HY&list=PLAOy3YeIoPJEMl8d3ZA3AJZzB-ygKD38G
Edge StartupUrls: Default -> "hxxps://d3bxz2vegbjddt.cloudfront.net/members/pdfs/iRacing_Setup_Guide.pdf","hxxps://majorsgarage.com/","hxxps://www.simracingportal.de/teams/194/edit","hxxps://app.teamup.management/dashboard","hxxps://members.iracing.com/membersite/account_auth.jsp","hxxps://status.iracing.com/","hxxps://members.iracing.com/membersite/member/worldrecords.jsp","hxxps://members.iracing.com/membersite/member/statsseries.jsp","hxxps://members.iracing.com/jforum/recentTopics/list.page","hxxps://members.iracing.com/jforum/posts/list/3481077.page","hxxps://www.instagram.com/p/CNkb5uJhVdV/","hxxps://web.whatsapp.com/","hxxps://www.facebook.com/","hxxps://www.nessoft.com/ispeed/replay_to_irlap.html","hxxp://www.speedmaniacs.com/News,iRacing-ATLAS-Telemetriesoftware-und-Guide-verfgbar,5272","hxxps://www.z1simwheel.com/m/analyzer/","hxxps://www.nessoft.com/ispeed/pointsofinterest.html","hxxps://www.nessoft.com/ispeed/lapanalyzer.html","hxxps://www.wir-machen-rennfahrer.de/"
Edge Session Restore: Default -> ist aktiviert.
Edge Extension: (XN Price Checker) - C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bgkmdbhpfhmbgmbphejlepfcphjfaaej [2021-08-16]
Edge Extension: (Microsoft-Editor: Rechtschreibung- und Grammatikprüfung) - C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hokifickgkhplphjiodbggjmoafhignh [2021-08-20]
Edge Extension: (Tampermonkey) - C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2021-08-16]
Edge Extension: (SingleFile) - C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mpiodijhokgodhhofbcjdecpffjipkle [2021-08-19]
Edge Extension: (Microsoft Power Automate) - C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\njjljiblognghfjfpcdpdbpbfcmhgafg [2021-08-16]
Edge Extension: (Bitwarden - Kostenloser Passwortmanager) - C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nngceckbapebfimnlniiiahkandclblb [2021-08-20]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-08-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2021-08-17] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-08-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-08-17] (Adobe Inc. -> Adobe Systems)
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [842480 2021-08-17] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3779840 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3547904 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 cFosSpeedS; C:\Program Files\cFosSpeed\spd.exe [602376 2021-07-29] (cFos Software GmbH -> cFos Software GmbH)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9142128 2021-08-05] (Microsoft Corporation -> Microsoft Corporation)
S3 cloudidsvc; C:\Windows\system32\cloudidsvc.dll [135168 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2021-06-01] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 ExpressVPNService; C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe [437160 2021-06-28] (EXPRSVPN LLC -> ExpressVPN)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\21.160.0808.0001\FileSyncHelper.exe [3249536 2021-08-19] (Microsoft Corporation -> Microsoft Corporation)
S3 FrameServerMonitor; C:\Windows\system32\FrameServerMonitor.dll [319488 2021-08-15] (Microsoft Windows -> Microsoft Corporation)
S2 FWPnpService; C:\Program Files\Fanatec\Fanatec Wheel\FWPnpService.exe [423288 2021-04-28] (Endor AG -> )
R2 iRacingService; C:\Program Files (x86)\iRacing\iRacingService64.exe [1629416 2021-08-10] (iRacing.com Motorsport Simulations, LLC -> iRacing.com Motorsport Simulations, LLC Bedford, MA 01730)
R2 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [86776 2020-12-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S3 McpManagementService; C:\Windows\System32\McpManagementService.dll [319488 2021-08-15] (Microsoft Windows -> Microsoft Corporation)
R2 MSI_Central_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [150840 2021-06-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 MSI_Super_Charger_Service; C:\Program Files (x86)\MSI\MSI Center\Super Charger\MSI_Super_Charger_Service.exe [39224 2021-04-20] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [36152 2021-06-07] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [39760 2021-05-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
S3 NPSMSvc; C:\Windows\System32\npsm.dll [233472 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 NPSMSvc; C:\Windows\SysWOW64\npsm.dll [163840 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\21.160.0808.0001\OneDriveUpdaterService.exe [3711864 2021-08-19] (Microsoft Corporation -> Microsoft Corporation)
S3 P9RdrService; C:\Windows\system32\p9rdrservice.dll [122880 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5533120 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 UIFlowAgentLauncherService; C:\Program Files (x86)\Power Automate Desktop\Microsoft.Flow.RPA.LauncherService.exe [26000 2021-07-15] (Microsoft Corporation -> Microsoft Corporation)
R2 UIFlowLogShipper; C:\Program Files (x86)\Power Automate Desktop\Microsoft.Flow.RPA.LogShipper.exe [22416 2021-07-15] (Microsoft Corporation -> Microsoft Corporation)
R2 UIFlowService; C:\Program Files (x86)\Power Automate Desktop\UIFlowService.exe [32672 2021-07-15] (Microsoft Corporation -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-16] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2017-02-06] (AVM Computersysteme Vertriebs GmbH -> AVM Berlin)
R1 cFosSpeed; C:\Windows\system32\DRIVERS\cfosspeed6.sys [1695016 2021-07-29] (cFos Software GmbH -> cFos Software GmbH)
R1 CTIIO; C:\Windows\system32\drivers\CtiIo64.sys [17944 2021-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3440440 2021-06-05] (Microsoft Windows -> Marvell Semiconductor Inc.)
S0 ebdrv0; C:\Windows\System32\drivers\evbd0a.sys [3423032 2021-06-05] (Microsoft Windows -> QLogic Corporation)
R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 ExecutionContext; C:\Windows\System32\Drivers\ExecutionContext.sys [61440 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 expressvpnsplittunnel; C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys [37024 2021-06-28] (ExprsVPN LLC -> ExpressVPN)
R3 expressvpnwintun; C:\Windows\System32\drivers\expressvpn-wintun.sys [46824 2021-06-28] (Express VPN International Ltd. -> ExpressVPN)
R3 FanatecWheelFilterUsb; C:\Windows\System32\drivers\FWFilterUsb.sys [94112 2021-07-16] (Endor AG -> Endor AG)
S3 fwuac430mu; C:\Windows\system32\DRIVERS\fwuac430mu.sys [1977704 2017-02-06] (WDKTestCert rstolz,131045024706955510 -> AVM GmbH)
R3 FWVirtualInputDevice; C:\Windows\System32\drivers\FWVirtualInputDevice.sys [36240 2021-07-16] (Endor AG -> Endor AG)
S3 HidSpiCx; C:\Windows\System32\drivers\HidSpiCx.sys [118784 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [38544 2018-12-13] (Feature Integration Technology Inc -> FINTEK Corp.)
R0 IntelPMT; C:\Windows\System32\drivers\IntelPMT.sys [74224 2021-06-05] (Microsoft Windows Hardware Abstraction Layer Publisher -> Microsoft Corporation)
R3 iVCam; C:\Windows\system32\DRIVERS\iVCam.sys [1090536 2020-11-02] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft)
S0 megasas35i; C:\Windows\System32\drivers\megasas35i.sys [100176 2021-06-05] (Microsoft Windows -> Broadcom Inc)
S0 mpi3drvi; C:\Windows\System32\drivers\mpi3drvi.sys [87352 2021-06-05] (Microsoft Windows -> Broadcom Limited)
R3 MpKsl81fb8495; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{253C515F-6FA0-40C8-8BCF-6C1C167795B6}\MpKslDrv.sys [123112 2021-08-19] (Microsoft Windows -> Microsoft Corporation)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 mt7612US; C:\Windows\System32\drivers\mt7612US.sys [377864 2015-12-09] (Windows Central Build Account - X -> MediaTek Inc.)
S3 NDKPerf; C:\Windows\System32\drivers\NDKPerf.sys [78152 2021-06-05] (Microsoft Windows -> )
R3 NTIOLib_CC_Clock; C:\Program Files (x86)\MSI\MSI Center\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [32624 2021-03-16] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_CC_CPU; C:\Program Files (x86)\MSI\MSI Center\Super Charger\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NVHDA; C:\Windows\system32\drivers\nvhda64v.sys [129960 2021-08-05] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
S0 nvmedisk; C:\Windows\System32\drivers\nvmedisk.sys [82240 2021-06-05] (Microsoft Windows -> Microsoft Corporation)
S3 rpkmdrvkc; C:\Windows\system32\drivers\rpkmdrvkc.sys [49064 2020-05-13] (深圳雷柏科技股份有限公司 -> )
S3 rtcx21; C:\Windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_d2a498d51a4f7bec\rtcx21x64.sys [409000 2021-06-01] (Realtek Semiconductor Corp. -> Realtek)
R3 tapexpressvpn; C:\Windows\System32\drivers\tapexpressvpn.sys [52904 2021-06-28] (ExprsVPN LLC -> The OpenVPN Project)
S3 Usb4DeviceRouter; C:\Windows\System32\DriverStore\FileRepository\usb4devicerouter.inf_amd64_8d9a17bd8e5b4b11\Usb4DeviceRouter.sys [831800 2021-08-15] (Microsoft Windows -> Microsoft Corporation)
S3 Usb4HostRouter; C:\Windows\System32\DriverStore\FileRepository\usb4hostrouter.inf_amd64_acb1b78bb0ae3528\Usb4HostRouter.sys [557368 2021-08-15] (Microsoft Windows -> Microsoft Corporation)
S3 vmbusproxy; C:\Windows\system32\drivers\vmbusproxy.sys [90112 2021-08-18] (Microsoft Windows -> )
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49568 2021-08-16] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [434424 2021-08-16] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-16] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_2; C:\Windows\system32\drivers\WinRing0_1_2_2.sys [31152 2021-08-20] (PAIPTAC Driver -> )
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2021-08-20 22:44 - 2021-08-20 22:44 - 000031208 _____ C:\Users\*****\Downloads\FRST.txt
2021-08-20 22:44 - 2021-08-20 22:44 - 000000000 ____D C:\FRST
2021-08-20 22:43 - 2021-08-20 22:43 - 002300416 _____ (Farbar) C:\Users\*****\Downloads\FRST64.exe
2021-08-20 19:01 - 2021-08-20 19:01 - 000188158 _____ C:\Users\*****\Downloads\OneDrive.zip
2021-08-20 18:58 - 2021-08-20 18:58 - 000009197 _____ C:\Users\*****\Downloads\OneDrive-ADMX-Template-Sept2018.zip
2021-08-20 17:03 - 2021-07-29 08:07 - 001695016 _____ (cFos Software GmbH) C:\Windows\system32\Drivers\cfosspeed6.sys
2021-08-20 16:58 - 2021-08-20 16:58 - 000000000 ____D C:\Users\*****\AppData\Local\cFos
2021-08-19 20:51 - 2021-08-19 20:51 - 000003214 _____ C:\Windows\system32\Tasks\DRE Launcher.exe_1642829084
2021-08-19 20:04 - 2021-08-19 20:04 - 000000000 ____D C:\Users\*****\AppData\Local\Endor_Fanatec
2021-08-19 19:18 - 2021-08-19 19:18 - 000004316 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-18-17.csv
2021-08-19 19:17 - 2021-08-19 19:18 - 000005173 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-17-55.csv
2021-08-19 19:16 - 2021-08-19 19:16 - 000023898 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-16-35.csv
2021-08-19 19:16 - 2021-08-19 19:16 - 000003872 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-16-20.csv
2021-08-19 19:02 - 2021-08-19 19:02 - 000037371 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-02-01.csv
2021-08-19 19:02 - 2021-08-19 19:02 - 000035199 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-02-15.csv
2021-08-19 19:01 - 2021-08-19 19:01 - 000029231 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-01-53.csv
2021-08-19 19:01 - 2021-08-19 19:01 - 000003571 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-01-44.csv
2021-08-19 19:01 - 2021-08-19 19:01 - 000000045 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-01-50.csv
2021-08-19 19:01 - 2021-08-19 19:01 - 000000045 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-01-49.csv
2021-08-19 19:00 - 2021-08-19 19:00 - 000030434 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 19-00-14.csv
2021-08-19 18:58 - 2021-08-19 18:58 - 000034945 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 18-58-40.csv
2021-08-19 18:46 - 2021-08-19 18:46 - 000018730 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 18-46-22.csv
2021-08-19 18:46 - 2021-08-19 18:46 - 000017065 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 18-46-33.csv
2021-08-19 18:45 - 2021-08-19 18:45 - 000017900 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 18-45-44.csv
2021-08-19 16:37 - 2021-08-19 16:37 - 000036043 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-19 16-37-02.csv
2021-08-19 16:24 - 2021-08-19 16:24 - 000002611 _____ C:\Users\Public\Desktop\Fanatec Control Panel.lnk
2021-08-19 16:24 - 2021-08-19 16:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Endor Fanatec
2021-08-19 16:24 - 2021-08-19 16:24 - 000000000 ____D C:\Program Files\Fanatec
2021-08-19 16:24 - 2021-08-19 16:24 - 000000000 ____D C:\Program Files (x86)\Fanatec
2021-08-19 15:28 - 2021-08-20 16:54 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2021-08-19 15:26 - 2021-08-19 15:26 - 000000226 _____ C:\Windows\system32\prime.txt
2021-08-19 15:26 - 2021-08-19 15:26 - 000000190 _____ C:\Windows\system32\local.txt
2021-08-19 03:16 - 2021-08-19 03:16 - 000000000 ____D C:\Users\*****\AppData\Local\RadeonInstaller
2021-08-19 03:16 - 2021-08-19 03:16 - 000000000 ____D C:\ProgramData\AMD
2021-08-19 00:26 - 2021-08-19 00:26 - 000000000 ____D C:\Users\*****\AppData\Local\A
2021-08-18 23:43 - 2021-08-18 23:43 - 000002158 _____ C:\Users\Public\Desktop\StoreMI.lnk
2021-08-18 23:43 - 2021-08-18 23:43 - 000000946 _____ C:\Users\Public\Desktop\CPUID CPU-Z MSI.lnk
2021-08-18 23:43 - 2021-08-18 23:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2021-08-18 23:43 - 2021-08-18 23:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD
2021-08-18 23:43 - 2021-08-18 23:43 - 000000000 ____D C:\Program Files\CPUID
2021-08-18 23:26 - 2021-08-18 23:26 - 000000000 ____D C:\Users\*****\AppData\Roaming\MAXON
2021-08-18 23:22 - 2021-08-20 19:04 - 000031152 _____ C:\Windows\system32\Drivers\WinRing0_1_2_2.sys
2021-08-18 22:40 - 2021-08-19 15:26 - 000000000 ____D C:\CTR 2.1 RC5
2021-08-18 21:14 - 2021-08-18 21:14 - 000000000 ____D C:\Users\*****\AppData\Roaming\VoiceAttack
2021-08-18 21:13 - 2021-08-18 21:13 - 000001845 _____ C:\Users\Public\Desktop\The DRE Launcher.lnk
2021-08-18 21:11 - 2021-08-18 21:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VE 5.4 American English Nathan
2021-08-18 21:11 - 2021-08-18 21:11 - 000000000 ____D C:\Program Files\VE
2021-08-18 21:10 - 2021-08-18 21:10 - 000000000 ____D C:\Users\*****\AppData\LocalLow\Monkey Face Software LLC
2021-08-18 21:10 - 2021-08-18 21:10 - 000000000 ____D C:\Users\*****\AppData\Local\VoiceAttack.com
2021-08-18 21:09 - 2021-08-18 21:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Digital Race Engineer
2021-08-18 21:09 - 2021-08-18 21:09 - 000000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2021-08-18 21:07 - 2021-08-18 21:07 - 000000000 ____D C:\Users\*****\AppData\Local\Steam
2021-08-18 21:06 - 2021-08-19 22:06 - 000000000 ____D C:\Program Files (x86)\Steam
2021-08-18 21:06 - 2021-08-18 21:06 - 000001032 _____ C:\Users\Public\Desktop\Steam.lnk
2021-08-18 21:06 - 2021-08-18 21:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2021-08-18 20:35 - 2021-08-18 20:35 - 000000000 ____D C:\Users\*****\AppData\Local\ImageMagick
2021-08-18 20:33 - 2021-08-18 23:43 - 000003516 _____ C:\Windows\system32\Tasks\AMDAutoUpdate
2021-08-18 20:33 - 2021-08-18 23:43 - 000000000 ____D C:\Users\*****\AppData\Local\AMD
2021-08-18 20:33 - 2021-08-18 20:37 - 000000000 ____D C:\ProgramData\AMD AutoUpdate
2021-08-18 20:33 - 2021-08-18 20:33 - 000002219 _____ C:\Users\Public\Desktop\AMD Ryzen Master.lnk
2021-08-18 20:33 - 2021-08-18 20:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Ryzen Master
2021-08-18 18:38 - 2021-08-18 18:38 - 000032922 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-18 18-38-04.csv
2021-08-18 18:37 - 2021-08-18 18:37 - 000029435 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-18 18-37-34.csv
2021-08-18 18:18 - 2021-08-18 18:18 - 000034103 _____ C:\Users\*****\OneDrive\Dokumente\log_mforce 2021-08-18 18-18-24.csv
2021-08-18 16:59 - 2021-08-18 18:47 - 000000514 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2021-08-18 16:58 - 2021-08-18 16:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN
2021-08-18 16:58 - 2021-08-18 16:59 - 000000000 ____D C:\Program Files (x86)\avmwlanstick
2021-08-18 16:58 - 2017-02-06 01:00 - 001977704 _____ (AVM GmbH) C:\Windows\system32\Drivers\fwuac430mu.sys
2021-08-18 16:58 - 2017-02-06 01:00 - 000574640 _____ C:\Windows\system32\Drivers\fwuac430mu_wlan.bin
2021-08-18 16:58 - 2017-02-06 01:00 - 000114200 _____ (AVM Berlin) C:\Windows\system32\fwuac430muci_29.dll
2021-08-18 16:58 - 2017-02-06 01:00 - 000023821 _____ C:\Windows\system32\Drivers\fwuac430mu_otp.bin
2021-08-18 16:58 - 2017-02-06 01:00 - 000014120 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmeject.sys
2021-08-18 16:58 - 2017-02-06 01:00 - 000008124 _____ C:\Windows\system32\Drivers\fwuac430mu_bdata.bin
2021-08-18 16:54 - 2021-08-18 16:54 - 000000000 ____D C:\Users\*****\AppData\Roaming\NVIDIA
2021-08-18 16:50 - 2021-08-18 16:50 - 000000000 ____D C:\Users\*****\AppData\Local\e2eSoft
2021-08-18 15:39 - 2021-08-18 15:39 - 000000000 ___HD C:\$WinREAgent
2021-08-18 15:28 - 2021-08-18 15:28 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime
2021-08-18 15:19 - 2021-08-18 15:19 - 000000000 ___SD C:\Windows\system32\containers
2021-08-18 15:19 - 2021-08-18 15:19 - 000000000 ____D C:\Windows\system32\HvsiSettingsProviders
2021-08-18 13:47 - 2021-08-19 15:28 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2021-08-18 13:47 - 2021-08-19 15:28 - 000002148 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-08-18 13:47 - 2021-08-18 13:47 - 000000000 ___RD C:\Users\Default\OneDrive
2021-08-18 13:47 - 2021-08-18 13:47 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2021-08-18 13:46 - 2021-08-18 13:46 - 000002541 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2021-08-18 13:46 - 2021-08-18 13:46 - 000002537 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2021-08-18 13:46 - 2021-08-18 13:46 - 000002516 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2021-08-18 13:46 - 2021-08-18 13:46 - 000002491 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2021-08-18 13:46 - 2021-08-18 13:46 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2021-08-18 13:46 - 2021-08-18 13:46 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2021-08-18 13:46 - 2021-08-18 13:46 - 000002427 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2021-08-18 13:46 - 2021-08-18 13:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2021-08-18 13:43 - 2021-08-18 13:46 - 000000000 ____D C:\Program Files\Microsoft Office
2021-08-18 13:43 - 2021-08-18 13:43 - 000000000 ____D C:\Users\*****\AppData\LocalLow\Temp
2021-08-18 13:43 - 2021-08-18 13:43 - 000000000 ____D C:\Program Files\Microsoft Office 15
2021-08-18 11:10 - 2021-08-18 11:10 - 000000000 ____D C:\Users\*****\AppData\Local\Microsoft_Corporation
2021-08-18 08:27 - 2021-08-18 08:27 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2021-08-18 08:27 - 2021-08-05 19:24 - 009650987 _____ C:\Windows\system32\nvcoproc.bin
2021-08-18 08:27 - 2021-08-05 19:24 - 005672144 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2021-08-18 08:27 - 2021-08-05 19:24 - 002639568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2021-08-18 08:27 - 2021-08-05 19:24 - 001758408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2021-08-18 08:27 - 2021-08-05 19:24 - 000991440 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2021-08-18 08:27 - 2021-08-05 19:24 - 000120520 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2021-08-18 08:27 - 2021-08-05 19:24 - 000082632 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2021-08-18 08:27 - 2021-04-30 11:09 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2021-08-18 08:26 - 2021-08-06 10:41 - 001858688 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2021-08-18 08:26 - 2021-08-06 10:41 - 001858688 _____ C:\Windows\system32\vulkaninfo.exe
2021-08-18 08:26 - 2021-08-06 10:41 - 001438824 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-08-18 08:26 - 2021-08-06 10:41 - 001438824 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2021-08-18 08:26 - 2021-08-06 10:41 - 001097832 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2021-08-18 08:26 - 2021-08-06 10:41 - 001097832 _____ C:\Windows\system32\vulkan-1.dll
2021-08-18 08:26 - 2021-08-06 10:41 - 000951936 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2021-08-18 08:26 - 2021-08-06 10:41 - 000951936 _____ C:\Windows\SysWOW64\vulkan-1.dll
2021-08-18 08:26 - 2021-08-06 10:40 - 001212536 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2021-08-18 08:26 - 2021-08-06 10:38 - 001520784 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2021-08-18 08:26 - 2021-08-06 10:38 - 000716928 _____ C:\Windows\system32\nvofapi64.dll
2021-08-18 08:26 - 2021-08-06 10:38 - 000676496 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2021-08-18 08:26 - 2021-08-06 10:38 - 000577168 _____ C:\Windows\SysWOW64\nvofapi.dll
2021-08-18 08:26 - 2021-08-06 10:38 - 000564344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2021-08-18 08:26 - 2021-08-06 10:37 - 002112144 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2021-08-18 08:26 - 2021-08-06 10:37 - 001731728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6447168.dll
2021-08-18 08:26 - 2021-08-06 10:37 - 001595536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2021-08-18 08:26 - 2021-08-06 10:37 - 001491600 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6447168.dll
2021-08-18 08:26 - 2021-08-06 10:37 - 001171064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2021-08-18 08:26 - 2021-08-06 10:37 - 000919184 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2021-08-18 08:26 - 2021-08-06 10:37 - 000750224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2021-08-18 08:26 - 2021-08-06 10:36 - 008854136 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2021-08-18 08:26 - 2021-08-06 10:36 - 007920752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2021-08-18 08:26 - 2021-08-06 10:36 - 004987512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2021-08-18 08:26 - 2021-08-06 10:36 - 002925688 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2021-08-18 08:26 - 2021-08-06 10:34 - 007280840 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2021-08-18 08:26 - 2021-08-06 10:34 - 006215808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2021-08-18 08:26 - 2021-08-05 23:13 - 001682384 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2021-08-18 08:26 - 2021-08-05 23:13 - 000067138 _____ C:\Windows\system32\nvinfo.pb
2021-08-18 08:26 - 2021-08-05 23:13 - 000037680 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2021-08-18 08:22 - 2021-08-18 08:22 - 000003754 _____ C:\Windows\system32\Tasks\NVCleanstall
2021-08-18 08:22 - 2021-08-18 08:22 - 000000913 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVCleanstall.lnk
2021-08-18 08:22 - 2021-08-18 08:22 - 000000000 ____D C:\Program Files\NVCleanstall
2021-08-18 08:04 - 2021-08-18 08:04 - 000000000 ____D C:\Users\*****\AppData\Local\iRacingOnlineStatus
2021-08-18 08:00 - 2021-08-18 08:00 - 000003186 _____ C:\Windows\system32\Tasks\WindowManager
2021-08-18 08:00 - 2021-08-18 08:00 - 000000000 ____D C:\Users\*****\AppData\Roaming\DeskSoft
2021-08-18 08:00 - 2021-08-18 08:00 - 000000000 ____D C:\ProgramData\DeskSoft
2021-08-18 08:00 - 2021-08-18 08:00 - 000000000 ____D C:\Program Files (x86)\WindowManager
2021-08-18 07:59 - 2021-08-18 07:59 - 000001190 _____ C:\Users\Public\Desktop\Power Automate Desktop.lnk
2021-08-18 07:59 - 2021-08-18 07:59 - 000000932 _____ C:\Users\Public\Desktop\Winaero Tweaker.lnk
2021-08-18 07:59 - 2021-08-18 07:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winaero Tweaker
2021-08-18 07:59 - 2021-08-18 07:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Power Automate Desktop
2021-08-18 07:59 - 2021-08-18 07:59 - 000000000 ____D C:\Program Files\Winaero Tweaker
2021-08-18 07:59 - 2021-08-18 07:59 - 000000000 ____D C:\Program Files (x86)\Power Automate Desktop
2021-08-18 07:58 - 2021-08-18 07:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e2eSoft iVCam
2021-08-18 07:58 - 2021-08-18 07:58 - 000000000 ____D C:\ProgramData\Apple
2021-08-18 07:58 - 2021-08-18 07:58 - 000000000 ____D C:\Program Files\e2eSoft
2021-08-18 07:58 - 2021-08-18 07:58 - 000000000 ____D C:\Program Files\Bonjour
2021-08-18 07:58 - 2021-08-18 07:58 - 000000000 ____D C:\Program Files (x86)\Bonjour
2021-08-18 07:58 - 2020-11-02 18:40 - 001090536 _____ (e2eSoft) C:\Windows\system32\Drivers\iVCam.sys
2021-08-18 05:09 - 2021-08-18 05:09 - 000003522 _____ C:\Windows\system32\Tasks\MSI Task Host - MSI_Smart Image Finder
2021-08-18 00:42 - 2018-12-13 16:02 - 000137360 _____ (TODO: <公司名稱>) C:\Windows\system32\FintekIcon1.dll
2021-08-18 00:42 - 2018-12-13 16:02 - 000038544 _____ (FINTEK Corp.) C:\Windows\system32\Drivers\I2cHkBurn.sys
2021-08-18 00:15 - 2021-08-20 19:03 - 000000448 __RSH C:\ProgramData\ntuser.pol
2021-08-17 23:29 - 2021-08-17 23:29 - 000000000 ___RD C:\Users\*****\Recorded Calls
2021-08-17 23:29 - 2021-08-17 23:29 - 000000000 ___RD C:\Users\*****\3D Objects
2021-08-17 23:09 - 2021-08-17 23:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BCUninstaller
2021-08-17 23:08 - 2021-08-17 23:10 - 000000000 ____D C:\Program Files\BCUninstaller
2021-08-17 23:05 - 2021-08-17 23:06 - 000000000 ____D C:\Users\*****\AppData\Local\SimSync.de
2021-08-17 23:02 - 2021-08-17 23:02 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2021.lnk
2021-08-17 23:02 - 2021-08-17 23:02 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Adobe
2021-08-17 22:52 - 2021-08-17 22:52 - 000003522 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0
2021-08-17 22:52 - 2021-08-17 22:52 - 000000000 ___RD C:\Users\*****\Creative Cloud Files
2021-08-17 22:52 - 2021-08-17 22:52 - 000000000 ____D C:\Users\*****\AppData\Local\CEF
2021-08-17 22:50 - 2021-08-17 22:55 - 000000000 ____D C:\ProgramData\Adobe
2021-08-17 22:50 - 2021-08-17 22:50 - 000001382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2021-08-17 22:49 - 2021-08-17 23:02 - 000000000 ____D C:\Program Files\Common Files\Adobe
2021-08-17 22:49 - 2021-08-17 22:52 - 000000000 ____D C:\Program Files\Adobe
2021-08-17 22:49 - 2021-08-17 22:51 - 000000000 ____D C:\Program Files (x86)\Adobe
2021-08-17 22:48 - 2021-08-17 22:52 - 000000000 ____D C:\Users\*****\AppData\Local\Adobe
2021-08-17 22:17 - 2021-08-17 22:17 - 000000000 ____D C:\Program Files\DIFX
2021-08-17 22:16 - 2021-08-17 23:29 - 000000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rapoo
2021-08-17 21:54 - 2021-08-17 21:54 - 000000000 ____D C:\Users\*****\AppData\Roaming\EasyAntiCheat
2021-08-17 21:48 - 2021-08-20 17:03 - 000081346 _____ C:\Windows\cFosSpeed_Setup_Log.txt
2021-08-17 21:48 - 2021-08-20 17:03 - 000000000 ____D C:\Program Files\cFosSpeed
2021-08-17 21:48 - 2021-08-17 21:48 - 000000000 ____D C:\ProgramData\cFos
2021-08-17 21:38 - 2021-08-17 21:38 - 000000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SnoreToast
2021-08-17 21:32 - 2021-08-17 21:32 - 000002471 _____ C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YouTube Music.lnk
2021-08-17 21:32 - 2021-08-17 21:32 - 000000000 ____D C:\Users\*****\AppData\Local\youtube-music-updater
2021-08-17 21:31 - 2021-08-20 17:23 - 000000000 ____D C:\Users\*****\AppData\Roaming\YouTube Music
2021-08-17 21:30 - 2021-08-18 07:57 - 000000000 ____D C:\Users\*****\Programme_Portable
2021-08-17 20:35 - 2021-08-17 23:25 - 000000000 ____D C:\Users\*****\AppData\Roaming\TradingPaints Downloader
2021-08-17 20:35 - 2021-08-17 20:35 - 000002194 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Trading Paints.lnk
2021-08-17 20:35 - 2021-08-17 20:35 - 000002188 _____ C:\Users\Public\Desktop\Trading Paints.lnk
2021-08-17 20:35 - 2021-08-17 20:35 - 000002174 _____ C:\ProgramData\Microsoft\Windows\Start Menu\TP Updater.lnk
2021-08-17 20:35 - 2021-08-17 20:35 - 000000000 ____D C:\Program Files (x86)\Rhinode LLC
2021-08-17 20:10 - 2021-08-17 20:16 - 000000000 ____D C:\Users\*****\AppData\Local\ExpressVPN
2021-08-17 20:10 - 2021-08-17 20:10 - 000002330 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExpressVPN.lnk
2021-08-17 20:10 - 2021-08-17 20:10 - 000002160 _____ C:\Users\Public\Desktop\ExpressVPN.lnk
2021-08-17 20:10 - 2021-08-17 20:10 - 000000000 ____D C:\ProgramData\ExpressVPN
2021-08-17 20:10 - 2021-08-17 20:10 - 000000000 ____D C:\Program Files (x86)\ExpressVPN
2021-08-17 19:50 - 2021-08-17 19:50 - 000017944 _____ (Creative Technology Innovation Co., LTd.) C:\Windows\system32\Drivers\CtiIo64.sys
2021-08-17 19:50 - 2021-08-17 19:50 - 000003176 _____ C:\Windows\system32\Tasks\MSI Task Host - LEDKeeper2_Host
2021-08-17 19:50 - 2021-08-17 19:50 - 000000000 ____D C:\Program Files\ENE
2021-08-17 19:50 - 2021-08-17 19:50 - 000000000 ____D C:\Program Files (x86)\ENE
2021-08-17 19:50 - 2020-05-12 01:28 - 000020992 _____ C:\Windows\system32\Drivers\ene.sys
2021-08-17 19:50 - 2020-01-19 19:49 - 000017424 _____ (MICSYS Technology Co., LTd) C:\Windows\system32\Drivers\MsIo64.sys
2021-08-17 19:47 - 2021-07-08 01:45 - 047736047 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2021-08-17 19:46 - 2021-08-18 03:31 - 000000000 ____D C:\MSI
2021-08-17 19:45 - 2021-08-19 03:16 - 000000000 ____D C:\Program Files\AMD
2021-08-17 19:45 - 2021-08-18 20:33 - 000000000 ____D C:\Users\*****\AppData\Local\Downloaded Installations
2021-08-17 19:45 - 2021-08-17 19:45 - 000000000 ____D C:\Users\*****\AppData\Local\INetHistory
2021-08-17 19:45 - 2021-04-28 13:22 - 000015696 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2021-08-17 19:44 - 2021-08-17 19:44 - 000000000 ____D C:\Program Files (x86)\MSI
2021-08-17 19:42 - 2021-08-17 19:42 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2021-08-17 19:31 - 2021-08-17 19:31 - 000000000 ____D C:\Users\*****\AppData\Local\iRacing
2021-08-17 14:52 - 2021-08-17 14:52 - 000000000 ____D C:\Users\*****\AppData\Local\PeerDistRepub
2021-08-17 14:43 - 2021-08-20 22:45 - 000000000 ____D C:\Users\*****\AppData\Roaming\iracing-electron
2021-08-17 14:00 - 2021-08-17 14:00 - 000000000 ____D C:\Users\*****\AppData\Local\PodiumControl
2021-08-17 13:59 - 2021-08-19 16:24 - 000002599 _____ C:\Users\Public\Desktop\FanaLab.lnk
2021-08-17 13:59 - 2021-08-17 13:59 - 000000000 ____D C:\Users\Public\FanaLab Logs
2021-08-17 13:58 - 2017-02-06 01:00 - 000481632 _____ (AVM Berlin) C:\Windows\instwcli.dex
2021-08-17 13:57 - 2021-08-17 13:57 - 000000000 ____D C:\Users\*****\AppData\Roaming\BetterDiscord Installer
2021-08-17 13:56 - 2021-08-17 13:56 - 000000000 ____D C:\Users\*****\AppData\Roaming\BetterDiscord
2021-08-17 13:53 - 2021-08-17 21:54 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2021-08-17 13:53 - 2021-08-17 19:25 - 000003288 _____ C:\Windows\system32\Tasks\D3DGearRawFrameCaptureTask
2021-08-17 13:53 - 2021-08-17 13:53 - 000000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iRacing
2021-08-17 13:53 - 2021-06-01 16:08 - 001076848 _____ (Intel Corporation) C:\Windows\SysWOW64\libiomp5md.DLL
2021-08-17 13:53 - 2021-06-01 16:08 - 000158592 _____ (D3DGear Technologies.) C:\Windows\system32\D3DGearDecoder64.dll
2021-08-17 13:51 - 2021-08-20 22:39 - 000000000 ____D C:\Users\*****\AppData\Roaming\discord
2021-08-17 13:51 - 2021-08-20 20:47 - 000000000 ____D C:\Users\*****\AppData\Local\Discord
2021-08-17 13:51 - 2021-08-17 13:51 - 000000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2021-08-17 13:51 - 2021-08-17 13:51 - 000000000 ____D C:\Users\*****\AppData\Local\SquirrelTemp
2021-08-17 13:50 - 2021-08-20 20:42 - 000000000 ____D C:\Program Files (x86)\iRacing
2021-08-16 16:13 - 2021-01-08 10:21 - 001147352 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2021-08-16 16:12 - 2021-08-17 19:47 - 000000000 ___HD C:\Program Files (x86)\Temp
2021-08-16 16:12 - 2021-08-17 19:46 - 000000000 ____D C:\Program Files (x86)\Realtek
2021-08-16 16:12 - 2021-08-16 16:13 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2021-08-16 16:12 - 2021-07-08 01:55 - 006523936 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2021-08-16 16:12 - 2020-07-09 10:11 - 002877104 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2021-08-16 16:12 - 2020-07-09 10:11 - 001145480 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtCOM64.dll
2021-08-16 16:12 - 2020-07-09 10:11 - 001098480 _____ (Realtek Semiconductor) C:\Windows\system32\RtkAudUService64.exe
2021-08-16 16:12 - 2020-07-09 10:11 - 000844888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64U.dll
2021-08-16 16:12 - 2020-07-09 10:11 - 000468784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2021-08-16 16:12 - 2020-07-09 10:11 - 000224288 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2021-08-16 16:08 - 2021-08-17 21:43 - 000000000 ____D C:\ProgramData\MSI
2021-08-16 16:01 - 2021-08-18 16:58 - 000000000 ____D C:\Windows\AVM_Driver
2021-08-16 16:00 - 2021-08-16 16:00 - 000000000 ____D C:\Users\*****\AVM_Driver
2021-08-16 15:56 - 2021-08-20 18:18 - 000000000 ____D C:\Users\Public\Fanatec Logs
2021-08-16 15:56 - 2021-08-19 16:29 - 000000000 ____D C:\Users\*****\AppData\Local\Fanatec
2021-08-16 15:56 - 2021-08-16 15:56 - 000000000 ____D C:\Users\*****\AppData\Roaming\AMD
2021-08-16 15:56 - 2021-08-16 15:56 - 000000000 ____D C:\Program Files (x86)\AMD
2021-08-16 15:55 - 2021-08-19 03:17 - 000000000 ____D C:\AMD
2021-08-16 15:55 - 2021-08-18 08:31 - 000000000 ____D C:\Users\*****\AppData\Local\NVIDIA
2021-08-16 15:55 - 2021-08-18 07:59 - 000000000 ____D C:\ProgramData\Package Cache
2021-08-16 15:55 - 2021-08-17 23:08 - 000000000 ____D C:\Users\*****\AppData\Local\cache
2021-08-16 15:55 - 2021-08-16 15:55 - 000000000 ____D C:\Users\*****\AppData\Local\setup
2021-08-16 15:54 - 2021-08-16 15:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2021-08-16 15:54 - 2021-08-16 15:54 - 000000000 ____D C:\Program Files\7-Zip
2021-08-16 15:54 - 2021-08-16 15:54 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2021-08-16 15:53 - 2021-08-16 15:53 - 000000000 ____D C:\Users\*****\AppData\Local\OneDrive
2021-08-16 15:53 - 2021-08-06 10:40 - 001474680 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2021-08-16 15:51 - 2021-08-16 15:51 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2021-08-15 22:09 - 2021-08-18 00:48 - 000000000 ____D C:\Windows\Panther
2021-08-15 21:45 - 2021-08-15 21:46 - 000000000 ____D C:\Windows\system32\MRT
2021-08-15 21:45 - 2021-08-15 21:45 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\VRS-TelemetryLogger
2021-08-15 21:45 - 2021-08-15 21:45 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\*****lKohlmann
2021-08-15 21:45 - 2021-08-15 21:45 - 000000000 ____D C:\Users\*****\AppData\Local\Comms
2021-08-15 21:45 - 2020-11-09 08:06 - 000189133 _____ C:\Users\*****\OneDrive\Dokumente\Arbeitsbescheinigung.pdf
2021-08-15 21:45 - 2020-10-05 01:50 - 000019385 _____ C:\Users\*****\OneDrive\Dokumente\Rechnungen.xlsx
2021-08-15 21:43 - 2021-08-15 21:43 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Outlook-Dateien
2021-08-15 21:43 - 2021-08-15 21:43 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\img
2021-08-15 21:43 - 2021-08-15 21:43 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Holotech
2021-08-15 21:43 - 2021-08-15 21:43 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Frontier Developments
2021-08-15 21:43 - 2021-05-29 18:21 - 002150509 _____ C:\Users\*****\OneDrive\Dokumente\eBook - Learn to setup your race car.pdf
2021-08-15 21:42 - 2021-08-15 21:42 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Benutzerdefinierte Office-Vorlagen
2021-08-15 21:41 - 2021-08-20 19:08 - 000000000 ____D C:\Users\*****\AppData\Local\PlaceholderTileLogoFolder
2021-08-15 21:41 - 2021-08-20 18:56 - 000000000 ___RD C:\Users\*****\OneDrive
2021-08-15 21:41 - 2021-08-18 18:25 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\iRacing
2021-08-15 21:41 - 2021-08-15 21:43 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Visual Studio 2019
2021-08-15 21:41 - 2021-08-15 21:43 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Backups
2021-08-15 21:41 - 2021-08-15 21:42 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Z1Server
2021-08-15 21:41 - 2021-08-15 21:42 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Z1Dashboard
2021-08-15 21:41 - 2021-08-15 21:42 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Z1Analyzer
2021-08-15 21:41 - 2021-08-15 21:42 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Joel Real Timing
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ___HD C:\OneDriveTemp
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Z1Designer
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Voicemeeter
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\URD
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\The Digital Race Engineer
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\NewBlueFX
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\MoTeC
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Meine Datenquellen
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\McLaren Electronic Systems
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\MAXON
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\iRacing_OLD
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\iPitting
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\HAPPENMOTORSPORT
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\Flow Recordings
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\FeedbackHub
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\CyberLink
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\Users\*****\OneDrive\Dokumente\CapFrameX
2021-08-15 21:41 - 2021-08-15 21:41 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-08-15 21:41 - 2021-06-20 13:01 - 000012192 _____ C:\Users\*****\OneDrive\Dokumente\Mappe1.xlsx
2021-08-15 21:41 - 2021-06-10 23:15 - 000011268 _____ C:\Users\*****\OneDrive\Dokumente\IRACING SETUP RECHNER.xlsx
2021-08-15 21:41 - 2021-05-29 12:31 - 000014075 _____ C:\Users\*****\OneDrive\Dokumente\G.Skill F4-3200C16-16GTZR.html
2021-08-15 21:41 - 2021-05-07 11:18 - 000045076 _____ C:\Users\*****\OneDrive\Dokumente\l2.pdf
2021-08-15 21:41 - 2021-05-07 11:17 - 000223688 _____ C:\Users\*****\OneDrive\Dokumente\Label.pdf
2021-08-15 21:41 - 2021-05-06 23:45 - 000000124 ____R C:\Users\*****\OneDrive\Dokumente\Notizbuch von *****l.url
2021-08-15 21:41 - 2021-04-16 05:48 - 015888902 _____ C:\Users\*****\OneDrive\Dokumente\RUHX-Manual.pdf
2021-08-15 21:39 - 2021-08-20 19:08 - 000000000 ____D C:\Users\*****\AppData\Local\Packages
2021-08-15 21:39 - 2021-08-20 17:41 - 000000000 ____D C:\Users\*****\AppData\Local\D3DSCache
2021-08-15 21:39 - 2021-08-17 23:02 - 000000000 ____D C:\Users\*****\AppData\Roaming\Adobe
2021-08-15 21:39 - 2021-08-16 15:51 - 000000000 ____D C:\Users\*****\AppData\Local\ConnectedDevicesPlatform
2021-08-15 21:39 - 2021-08-15 21:41 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-08-15 21:39 - 2021-08-15 21:39 - 000000000 ____D C:\Users\*****\AppData\Local\VirtualStore
2021-08-15 21:39 - 2021-08-15 21:39 - 000000000 ____D C:\Users\*****\AppData\Local\Publishers
2021-08-15 21:38 - 2021-08-18 20:34 - 000000000 ____D C:\Users\*****
2021-08-15 21:38 - 2021-08-15 21:38 - 000000020 ___SH C:\Users\*****\ntuser.ini
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\Vorlagen
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\Startmenü
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\Netzwerkumgebung
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\Lokale Einstellungen
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\Eigene Dateien
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\Druckumgebung
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\AppData\Local\Verlauf
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\AppData\Local\Anwendungsdaten
2021-08-15 21:38 - 2021-08-15 21:38 - 000000000 _SHDL C:\Users\*****\Anwendungsdaten
2021-08-15 21:38 - 2021-06-05 14:04 - 000001281 _____ C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools.lnk
2021-08-15 21:38 - 2021-06-05 14:04 - 000000407 _____ C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\File Explorer.lnk
2021-08-15 21:25 - 2021-08-20 17:41 - 000000000 ____D C:\ProgramData\NVIDIA
2021-08-15 21:25 - 2021-08-18 15:04 - 000000000 ____D C:\ProgramData\Packages
2021-08-15 21:25 - 2021-08-18 08:27 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2021-08-15 21:24 - 2021-08-18 08:27 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2021-08-15 21:24 - 2021-08-05 23:13 - 000129960 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2021-08-15 21:24 - 2020-11-30 08:47 - 000047240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll
2021-08-15 21:15 - 2021-08-20 17:02 - 001862690 _____ C:\Windows\system32\PerfStringBackup.INI
2021-08-15 21:11 - 2021-08-18 15:20 - 000001607 _____ C:\Windows\system32\config\VSMIDK
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\Vorlagen
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\Startmenü
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\Netzwerkumgebung
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\Lokale Einstellungen
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\Eigene Dateien
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\Druckumgebung
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Users\Default\Anwendungsdaten
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Programme
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\ProgramData\Vorlagen
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\ProgramData\Startmenü
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\ProgramData\Dokumente
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\ProgramData\Anwendungsdaten
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Program Files\Gemeinsame Dateien
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 _SHDL C:\Dokumente und Einstellungen
2021-08-15 21:11 - 2021-08-15 21:11 - 000000000 ____D C:\Windows\CSC
2021-08-15 21:10 - 2021-08-16 16:29 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-08-15 21:10 - 2021-08-16 16:29 - 000002276 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-08-15 21:10 - 2021-08-15 21:17 - 000003700 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-08-15 21:10 - 2021-08-15 21:17 - 000003576 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-08-15 21:09 - 2021-08-19 22:07 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-08-15 21:09 - 2021-08-19 20:38 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-08-15 21:09 - 2021-08-18 20:35 - 000473328 _____ C:\Windows\system32\FNTCACHE.DAT
2021-08-15 21:09 - 2021-08-18 07:59 - 000000000 ____D C:\Windows\ServiceProfiles
2021-08-15 21:09 - 2021-08-18 04:18 - 000012288 ___SH C:\DumpStack.log.tmp
2021-08-15 21:09 - 2021-08-16 15:54 - 000000000 ____D C:\Windows\system32\Drivers\wd
2021-08-15 21:09 - 2021-08-15 21:09 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2021-08-15 20:47 - 2021-08-15 20:47 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2021-08-15 20:47 - 2021-08-15 20:47 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-08-15 20:47 - 2021-08-15 20:47 - 000000000 ____D C:\Program Files\MSBuild
2021-08-15 20:47 - 2021-08-15 20:47 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-08-15 20:47 - 2021-08-15 20:47 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-08-15 20:41 - 2021-08-15 20:41 - 000021047 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2021-08-15 20:40 - 2021-08-15 20:40 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\rendezvousSession.tlb
2021-08-15 20:40 - 2021-08-15 20:40 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\MsraLegacy.tlb
2021-08-15 20:40 - 2021-08-15 20:40 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsraLegacy.tlb
2021-08-15 20:40 - 2021-08-15 20:40 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rendezvousSession.tlb
2021-08-15 20:35 - 2021-08-18 15:07 - 000352576 _____ C:\Windows\system32\vp9fs.dll
2021-08-15 20:35 - 2021-08-18 15:07 - 000250176 _____ C:\Windows\system32\cmdiag.exe
2021-08-15 20:35 - 2021-08-15 20:35 - 002764800 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2021-08-15 20:35 - 2021-08-15 20:35 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2021-08-15 20:35 - 2021-08-15 20:35 - 001745736 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2021-08-15 20:35 - 2021-08-15 20:35 - 000659456 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2021-08-15 20:35 - 2021-08-15 20:35 - 000491008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2021-08-15 20:35 - 2021-08-15 20:35 - 000377136 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2021-08-15 20:35 - 2021-08-15 20:35 - 000269112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2021-08-15 20:35 - 2021-08-15 20:35 - 000267264 _____ C:\Windows\SysWOW64\Windows.Internal.UI.Dialogs.dll
2021-08-15 20:35 - 2021-08-15 20:35 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2021-08-15 20:35 - 2021-08-15 20:35 - 000014690 _____ C:\Windows\system32\DrtmAuthTxt.wim
2021-08-15 20:35 - 2021-08-15 20:35 - 000009522 _____ C:\Windows\system32\ResPriUHMImageList
2021-08-15 20:35 - 2021-08-15 20:35 - 000009522 _____ C:\Windows\system32\ResPriImageList
2021-08-15 20:35 - 2021-08-15 20:35 - 000009522 _____ C:\Windows\system32\ResPriHMImageList
2021-08-15 20:35 - 2021-08-15 20:35 - 000009402 _____ C:\Windows\system32\ResPriHMImageListLowCost
2021-08-15 20:35 - 2021-08-15 20:35 - 000008964 _____ C:\Windows\system32\ResPriLMImageList
2021-08-15 20:35 - 2021-08-15 20:35 - 000008870 _____ C:\Windows\system32\ResPriImageListLowCost
2021-08-15 20:34 - 2021-08-15 20:34 - 002310384 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2021-08-15 20:34 - 2021-08-15 20:34 - 001856848 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2021-08-15 20:34 - 2021-08-15 20:34 - 000617136 _____ C:\Windows\SysWOW64\TextShaping.dll
2021-08-15 20:34 - 2021-08-15 20:34 - 000425984 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2021-08-15 20:34 - 2021-08-15 20:34 - 000360448 _____ C:\Windows\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-08-15 20:34 - 2021-08-15 20:34 - 000335872 _____ C:\Windows\system32\Windows.Internal.UI.Dialogs.dll
2021-08-15 20:34 - 2021-08-15 20:34 - 000221184 _____ C:\Windows\SysWOW64\Microsoft.Internal.FrameworkUdk.System.dll
2021-08-15 20:34 - 2021-08-15 20:34 - 000180224 _____ C:\Windows\system32\CloudExperienceHostRedirection.dll
2021-08-15 20:34 - 2021-08-15 20:34 - 000113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmview.ocx
2021-08-15 20:34 - 2021-08-15 20:34 - 000099560 _____ C:\Windows\system32\wow64con.dll
2021-08-15 20:34 - 2021-08-15 20:34 - 000077824 _____ C:\Windows\system32\runexehelper.exe
2021-08-15 20:34 - 2021-08-15 20:34 - 000041594 _____ C:\Windows\SysWOW64\ctac.json
2021-08-15 20:34 - 2021-08-15 20:34 - 000036864 _____ C:\Windows\system32\umpodev.dll
2021-08-15 20:34 - 2021-08-15 20:34 - 000003366 _____ C:\Windows\SysWOW64\AppxProvisioning.xml
2021-08-15 20:34 - 2021-08-15 20:34 - 000003366 _____ C:\Windows\system32\AppxProvisioning.xml
2021-08-15 20:33 - 2021-08-15 20:33 - 000727584 _____ C:\Windows\system32\TextShaping.dll
2021-08-15 20:33 - 2021-08-15 20:33 - 000614400 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2021-08-15 20:33 - 2021-08-15 20:33 - 000311296 _____ C:\Windows\system32\Microsoft.Internal.FrameworkUdk.System.dll
2021-08-15 20:33 - 2021-08-15 20:33 - 000258048 _____ C:\Windows\system32\CoreMas.dll
2021-08-15 20:33 - 2021-08-15 20:33 - 000172032 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2021-08-15 20:33 - 2021-08-15 20:33 - 000155648 _____ (Microsoft Corporation) C:\Windows\system32\dmview.ocx
2021-08-15 20:33 - 2021-08-15 20:33 - 000041594 _____ C:\Windows\system32\ctac.json
2021-08-15 20:28 - 2021-08-19 22:06 - 103546880 _____ C:\Windows\system32\config\SOFTWARE
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2021-08-20 22:38 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-08-20 20:47 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SystemTemp
2021-08-20 19:08 - 2021-06-05 14:10 - 000000000 ___HD C:\Program Files\WindowsApps
2021-08-20 19:08 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\AppReadiness
2021-08-20 19:02 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\PolicyDefinitions
2021-08-20 17:03 - 2021-06-05 14:09 - 000000000 ____D C:\Windows\INF
2021-08-20 17:02 - 2021-06-05 19:52 - 000799286 _____ C:\Windows\system32\perfh007.dat
2021-08-20 17:02 - 2021-06-05 19:52 - 000174222 _____ C:\Windows\system32\perfc007.dat
2021-08-19 22:06 - 2021-06-05 14:01 - 000524288 _____ C:\Windows\system32\config\BBI
2021-08-18 22:29 - 2021-06-05 14:01 - 000000000 ____D C:\Windows\CbsTemp
2021-08-18 15:19 - 2021-06-05 14:10 - 000000000 ___SD C:\Windows\SysWOW64\lxss
2021-08-18 15:19 - 2021-06-05 14:10 - 000000000 ___SD C:\Windows\system32\lxss
2021-08-18 15:19 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SystemResources
2021-08-18 15:07 - 2021-06-05 14:21 - 000143672 _____ (Microsoft Corporation) C:\Windows\system32\rdp4vs.dll
2021-08-18 15:07 - 2021-06-05 14:21 - 000049464 _____ (Microsoft Corporation) C:\Windows\system32\UtilityVmSysprep.dll
2021-08-18 15:07 - 2021-06-05 14:20 - 000065864 _____ (Microsoft Corporation) C:\Windows\system32\NvAgent.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 001126728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lxcore.sys
2021-08-18 15:07 - 2021-06-05 14:19 - 000934224 _____ (Microsoft Corporation) C:\Windows\system32\WindowsSandbox.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000504144 _____ (Microsoft Corporation) C:\Windows\system32\NetMgmtIF.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 000323896 _____ (Microsoft Corporation) C:\Windows\system32\HvsiSettingsProvider.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 000311632 _____ (Microsoft Corporation) C:\Windows\system32\WindowsSandboxClient.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000213328 _____ C:\Windows\system32\IsolatedWindowsEnvironmentUtils.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 000192848 _____ C:\Windows\system32\HvsiSettingsWorker.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000155984 _____ (Microsoft Corporation) C:\Windows\system32\madrid.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 000143360 _____ (Microsoft Corporation) C:\Windows\system32\CCG.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000139600 _____ C:\Windows\system32\nmscrub.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000122880 _____ (Microsoft Corporation) C:\Windows\system32\wslconfig.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000122880 _____ (Microsoft Corporation) C:\Windows\system32\bash.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000119120 _____ (Microsoft Corporation) C:\Windows\system32\nmbind.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000114688 _____ C:\Windows\system32\hvsiproxyapp.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000094536 _____ (Microsoft Corporation) C:\Windows\system32\CmAgent.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 000082256 _____ C:\Windows\system32\HvsiMachinePolicies.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 000082248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\l2bridge.sys
2021-08-18 15:07 - 2021-06-05 14:19 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\CCGLaunchPad.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 000073728 _____ C:\Windows\system32\cmimageworker.exe
2021-08-18 15:07 - 2021-06-05 14:19 - 000069944 _____ C:\Windows\system32\AuditSettingsProvider.dll
2021-08-18 15:07 - 2021-06-05 14:19 - 000049488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hnswfpdriver.sys
2021-08-18 15:07 - 2021-06-05 14:19 - 000049464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lxss.sys
2021-08-18 15:07 - 2021-06-05 14:19 - 000032768 _____ C:\Windows\system32\hnsproxy.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000401736 _____ (Microsoft Corporation) C:\Windows\system32\VmSynthNic.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000368952 _____ (Microsoft Corporation) C:\Windows\system32\nvspinfo.exe
2021-08-18 15:07 - 2021-06-05 14:18 - 000360784 _____ (Microsoft Corporation) C:\Windows\system32\vmiccore.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000356680 _____ (Microsoft Corporation) C:\Windows\system32\hcsdiag.exe
2021-08-18 15:07 - 2021-06-05 14:18 - 000327992 _____ (Microsoft Corporation) C:\Windows\system32\vmsif.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000311616 _____ (Microsoft Corporation) C:\Windows\system32\vmflexio.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000270672 _____ (Microsoft Corporation) C:\Windows\system32\CExecSvc.exe
2021-08-18 15:07 - 2021-06-05 14:18 - 000258384 _____ (Microsoft Corporation) C:\Windows\system32\vmbusvdev.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000250184 _____ (Microsoft Corporation) C:\Windows\system32\gpupvdev.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000233808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcivsp.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000229688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsp.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000209232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmsvcext.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000172360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmclr.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000164176 _____ (Microsoft Corporation) C:\Windows\system32\vmvirtio.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000143672 _____ (Microsoft Corporation) C:\Windows\system32\vmsifcore.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000123208 _____ (Microsoft Corporation) C:\Windows\system32\vmwpevents.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000122880 _____ C:\Windows\system32\vmhbmgmt.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000119104 _____ (Microsoft Corporation) C:\Windows\system32\vmwpctrl.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000110904 _____ (Microsoft Corporation) C:\Windows\system32\wcsetupagent.exe
2021-08-18 15:07 - 2021-06-05 14:18 - 000090440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pvhdparser.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000090112 _____ C:\Windows\system32\Drivers\vmbusproxy.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000078144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdparser.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000069968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\passthruparser.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000069960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vkrnlintvsc.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000069952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vkrnlintvsp.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000069944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VmsProxyHNic.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000065872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VmsProxy.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000061776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvsocketcontrol.sys
2021-08-18 15:07 - 2021-06-05 14:18 - 000049480 _____ (Microsoft Corporation) C:\Windows\system32\VrdUmed.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000049464 _____ (Microsoft Corporation) C:\Windows\system32\vmsifproxystub.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000045840 _____ (Microsoft Corporation) C:\Windows\system32\sbresources.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000041288 _____ (Microsoft Corporation) C:\Windows\system32\vmcomputeeventlog.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\VmComputeProxy.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000024904 _____ (Microsoft Corporation) C:\Windows\system32\f989b52d-f928-44a3-9bf1-bf0c1da6a0d6_HyperV-DeviceVirtualization.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000024904 _____ (Microsoft Corporation) C:\Windows\system32\f1db7d81-95be-4911-935a-8ab71629112a_HyperV-IsolatedVM.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000024904 _____ (Microsoft Corporation) C:\Windows\system32\c4d66f00-b6f0-4439-ac9b-c5ea13fe54d7_HyperV-ComputeCore.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000024904 _____ (Microsoft Corporation) C:\Windows\system32\c28c7a4e-a619-4463-82b7-0fc9cc7187f5_HyperV-ComputeStorage.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000024896 _____ (Microsoft Corporation) C:\Windows\system32\d4d78066-e6db-44b7-b5cd-2eb82dce620c_HyperV-ComputeLegacy.dll
2021-08-18 15:07 - 2021-06-05 14:18 - 000006658 _____ C:\Windows\system32\VmFirmware Third-Party Notices.txt
2021-08-18 13:47 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-08-18 00:15 - 2021-06-05 14:10 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2021-08-18 00:15 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2021-08-17 19:32 - 2021-06-05 14:10 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2021-08-16 15:54 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\appcompat
2021-08-16 15:53 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Windows Defender
2021-08-16 15:52 - 2021-06-05 14:10 - 000000000 ___RD C:\Windows\PrintDialog
2021-08-15 22:09 - 2021-06-05 14:08 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2021-08-15 21:55 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\OCR
2021-08-15 21:55 - 2021-06-05 14:01 - 000000000 ____D C:\Windows\servicing
2021-08-15 21:11 - 2021-06-05 19:59 - 000000000 ____D C:\Windows\system32\FxsTmp
2021-08-15 21:11 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2021-08-15 21:11 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\spool
2021-08-15 21:11 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\ServiceState
2021-08-15 21:11 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\USOPrivate
2021-08-15 21:11 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Windows NT
2021-08-15 21:10 - 2021-06-05 14:01 - 000032768 _____ C:\Windows\system32\config\ELAM
2021-08-15 20:47 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\MUI
2021-08-15 20:47 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\MUI
2021-08-15 20:42 - 2021-06-05 20:00 - 000000000 ___SD C:\Windows\system32\AppV
2021-08-15 20:42 - 2021-06-05 20:00 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ___SD C:\Windows\system32\F12
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\vi-VN
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\oobe
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\id-ID
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\gl-ES
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\eu-ES
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\SysWOW64\ca-ES
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\WinMetadata
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\vi-VN
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\ShellExperiences
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\oobe
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\lv-LV
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\lt-LT
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\id-ID
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\gl-ES
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\eu-ES
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\et-EE
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\es-MX
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\Dism
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\ca-ES
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\system32\appraiser
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\ShellExperiences
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\ShellComponents
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\Provisioning
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\DiagTrack
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Windows\bcastdvr
2021-08-15 20:42 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Common Files\System
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2021-08-18 17:25 - 2021-08-18 17:25 - 000000000 _____ () C:\Users\*****\AppData\Local\oobelibMkey.log
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ========================