![]() |
|
Log-Analyse und Auswertung: Bitte Analysieren Sie meine PCWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() | ![]() Bitte Analysieren Sie meine PC Hallo, ich würde mich sehr freuen, wenn Sie meine PC analysieren würden. Vielen Dank Viele Grüße Top Code:
ATTFilter Untersuchungsergebnis der Verknüpfungen des Benutzers (x64) Version: 11-12-2021 durchgeführt von info (25-12-2021 13:42:23) Gestartet von C:\Users\info\Downloads Start-Modus: Normal ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.10.30.lnk -> C:\Program Files\GIMP 2\bin\gimp-2.10.exe (Spencer Kimball, Peter Mattis and the GIMP Development Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk -> C:\Program Files\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk -> C:\Program Files\Notepad++\notepad++.exe (Don HO don.h@free.fr) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk -> C:\Program Files\PCHealthCheck\PCHealthCheck.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk -> C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Benutzerhandbuch für die Konsolenversion von RAR.lnk -> C:\Program Files\WinRAR\Rar.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Hilfe zu WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Was ist neu in dieser Version.lnk -> C:\Program Files\WinRAR\WhatsNew.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQLBackupAndFTP\SQLBackupAndFTP.lnk -> C:\Program Files (x86)\SQLBackupAndFTP\SBF.Application.exe (Pranas.NET) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit)\Pageant.lnk -> C:\Program Files\PuTTY\pageant.exe (Simon Tatham) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit)\PSFTP.lnk -> C:\Program Files\PuTTY\psftp.exe (Simon Tatham) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit)\PuTTY Manual.lnk -> C:\Program Files\PuTTY\putty.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit)\PuTTY Web Site.lnk -> C:\Program Files\PuTTY\website.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit)\PuTTY.lnk -> C:\Program Files\PuTTY\putty.exe (Simon Tatham) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit)\PuTTYgen.lnk -> C:\Program Files\PuTTY\puttygen.exe (Simon Tatham) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11\OpenOffice Base.lnk -> C:\Program Files (x86)\OpenOffice 4\program\sbase.exe (Apache Software Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11\OpenOffice Calc.lnk -> C:\Program Files (x86)\OpenOffice 4\program\scalc.exe (Apache Software Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11\OpenOffice Draw.lnk -> C:\Program Files (x86)\OpenOffice 4\program\sdraw.exe (Apache Software Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11\OpenOffice Impress.lnk -> C:\Program Files (x86)\OpenOffice 4\program\simpress.exe (Apache Software Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11\OpenOffice Math.lnk -> C:\Program Files (x86)\OpenOffice 4\program\smath.exe (Apache Software Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11\OpenOffice Writer.lnk -> C:\Program Files (x86)\OpenOffice 4\program\swriter.exe (Apache Software Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11\OpenOffice.lnk -> C:\Program Files (x86)\OpenOffice 4\program\soffice.exe (Apache Software Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2017\SQL Server 2017-Datenimport und -export (64 Bit).lnk -> C:\Program Files\Microsoft SQL Server\140\DTS\Binn\DTSWizard.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2017\Konfigurationstools\Fehler- und Verwendungsberichterstellung von SQL Server 2017.lnk -> C:\Program Files\Microsoft SQL Server\140\Shared\SqlWtsn.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2017\Konfigurationstools\SQL Server 2017-Installationscenter (64 Bit).lnk -> C:\Program Files\Microsoft SQL Server\140\Setup Bootstrap\SQL2017\x64\LandingPage.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2017\Configuration Tools\SQL Server 2017 Installation Center (64-bit).lnk -> C:\Program Files\Microsoft SQL Server\140\Setup Bootstrap\SQL2017\x64\LandingPage.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech\Logitech Options.lnk -> C:\Program Files\Logitech\LogiOptions\LogiOptions.exe (Logitech, Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi\Logi Bolt.lnk -> C:\Program Files\Logi\LogiBolt\LogiBolt.exe (Logitech) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lenovo\System Update.lnk -> C:\Program Files (x86)\Lenovo\System Update\tvsu.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software\JTL-Ameise.lnk -> C:\Program Files (x86)\JTL-Software\JTL-wawi-ameise.exe (JTL-Software-GmbH) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software\JTL-Wawi-Datenbankverwaltung.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Datenbankverwaltung.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software\JTL-Wawi.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software\JTL-WMS Mobile Server.lnk -> C:\Program Files (x86)\JTL-Software\WMS-MobileServer.exe (JTL Software GmbH) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software\JTL-WMS-Mobile-WebServer.lnk -> C:\Program Files (x86)\JTL-Software\JTL-WMS-Mobile-WebServer.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software\JTL-WMS.lnk -> C:\Program Files (x86)\JTL-Software\WMS.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client\FileZilla.lnk -> C:\Program Files\FileZilla FTP Client\filezilla.exe (FileZilla Project) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client\Uninstall.lnk -> C:\Program Files\FileZilla FTP Client\uninstall.exe (Tim Kosse) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software\Event Manager.lnk -> C:\Program Files (x86)\Epson Software\Event Manager\EProjManager.exe (SEIKO EPSON CORPORATION) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\Epson Scan 2\Epson Scan 2 Utility.lnk -> C:\Program Files (x86)\epson\Epson Scan 2\Core\es2utility.exe (Seiko Epson Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\Epson Scan 2\Epson Scan 2.lnk -> C:\Program Files (x86)\epson\Epson Scan 2\Core\es2launcher.exe (Seiko Epson Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch\P-touch Editor 5.4 Hilfe.lnk -> C:\Program Files (x86)\Brother\Ptedit54\ptedit54.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch\P-touch Editor 5.4.lnk -> C:\Program Files (x86)\Brother\Ptedit54\ptedit54.exe (Brother Industries, Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch\P-touch Update Software.lnk -> C:\Program Files (x86)\Brother\PtUpdate\PtUpdater.exe (Brother Industries, Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch\P-touch Tools\P-touch Editor 5.4 Add-Ins Utility.lnk -> C:\Program Files (x86)\Brother\Ptedit54\Addins\AddinSet.exe (Brother Industries, Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BewerbungsMaster\BewerbungsMaster entfernen.LNK -> C:\Program Files (x86)\BEWERBUNGSMASTER\uninstall.exe (Robl) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BewerbungsMaster\BewerbungsMaster starten.LNK -> C:\Program Files (x86)\BEWERBUNGSMASTER\BEWERBUNGS-MASTER.exe (Bewerbung & Software Gerhard Robl *** Application & Software Gerhard Robl) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\RecoveryDrive.lnk -> C:\Windows\System32\RecoveryDrive.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Registry Editor.lnk -> C:\Windows\regedit.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Defender Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Windows Terminal.lnk -> Tile and icon assets Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Windows Terminal.lnk -> Tile and icon assets Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) Shortcut: C:\Users\info\Links\Desktop.lnk -> C:\Users\info\OneDrive\Desktop () Shortcut: C:\Users\info\Links\Downloads.lnk -> C:\Users\info\Downloads () Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\info\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Benutzerhandbuch für die Konsolenversion von RAR.lnk -> C:\Program Files\WinRAR\Rar.txt () Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Hilfe zu WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.chm () Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Was ist neu in dieser Version.lnk -> C:\Program Files\WinRAR\WhatsNew.txt () Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\JTL-Wawi.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Thunderbird.lnk -> C:\Program Files\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation) Shortcut: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PuTTY.lnk -> C:\Program Files\PuTTY\putty.exe (Simon Tatham) Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Windows Terminal.lnk -> Tile and icon assets Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Windows Terminal.lnk -> Tile and icon assets Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) Shortcut: C:\Users\Public\Desktop\FileZilla Client.lnk -> C:\Program Files\FileZilla FTP Client\filezilla.exe (FileZilla Project) Shortcut: C:\Users\Public\Desktop\Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) Shortcut: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Public\Desktop\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) Shortcut: C:\Users\Public\Desktop\Mozilla Thunderbird.lnk -> C:\Program Files\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation) Shortcut: C:\Users\Public\Desktop\Notepad++.lnk -> C:\Program Files\Notepad++\notepad++.exe (Don HO don.h@free.fr) Shortcut: C:\Users\Public\Desktop\OpenOffice 4.1.11.lnk -> C:\Program Files (x86)\OpenOffice 4\program\soffice.exe (Apache Software Foundation) Shortcut: C:\Users\Public\Desktop\P-touch Editor 5.4.lnk -> C:\Program Files (x86)\Brother\Ptedit54\ptedit54.exe (Brother Industries, Ltd.) Shortcut: C:\Users\Public\Desktop\P-touch Update Software.lnk -> C:\Program Files (x86)\Brother\PtUpdate\PtUpdater.exe (Brother Industries, Ltd.) Shortcut: C:\Users\Public\Desktop\SQLBackupAndFTP.lnk -> C:\Program Files (x86)\SQLBackupAndFTP\SBF.Application.exe (Pranas.NET) Shortcut: C:\Users\Public\Desktop\TeamViewer.lnk -> C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk -> C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAServiceHelper.exe (Intel) -> installstartup ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software\JTL-Packtisch.lnk -> C:\Program Files (x86)\JTL-Software\WMS.exe () -> 1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software\JTL-Wawi WORKER.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH) -> WORKER ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software\Epson Photo+ Tool.lnk -> C:\Program Files (x86)\Epson Software\PhotoPlus\EPPlusG.exe (Seiko Epson Corporation) -> /t ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software\Epson Photo+.lnk -> C:\Program Files (x86)\Epson Software\PhotoPlus\EPPlusG.exe (Seiko Epson Corporation) -> /p ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch\P-touch Editor 5.4 (Snap-Modus).lnk -> C:\Program Files (x86)\Brother\Ptedit54\ptedit54.exe (Brother Industries, Ltd.) -> /snap ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch\P-touch Tools\P-touch Library 2.5.lnk -> C:\Program Files (x86)\Brother\Ptedit54\PtLib25.exe (Brother Industries, Ltd.) -> /lib ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch\P-touch Tools\P-touch Transfer Manager 2.5.lnk -> C:\Program Files (x86)\Brother\Ptedit54\PtLib25.exe (Brother Industries, Ltd.) -> /trn ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.AdministrativeTools ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\TeamViewer.lnk -> C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH) -> --sendto ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAbout ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.AdministrativeTools ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\JTL-Wawi WORKER.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH) -> WORKER ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Ubiquiti Device Discovery Tool.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=hmpigflbjeapnknladcfphgkemopofig ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Zoom.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=hmbjbjdpkobdjplfobhljndfdfdipjhg ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\SendTo\Faxempfänger.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\SendTo\TeamViewer.lnk -> C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH) -> --sendto ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\JTL-Wawi WORKER.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH) -> WORKER ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\info\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} ShortcutWithArgument: C:\Users\Public\Desktop\Epson Photo+ Tool.lnk -> C:\Program Files (x86)\Epson Software\PhotoPlus\EPPlusG.exe (Seiko Epson Corporation) -> /t ShortcutWithArgument: C:\Users\Public\Desktop\Epson Photo+.lnk -> C:\Program Files (x86)\Epson Software\PhotoPlus\EPPlusG.exe (Seiko Epson Corporation) -> /p InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQLBackupAndFTP\SQLBackupAndFTP on the Web.url -> URL: hxxps://sqlbackupandftp.com InternetURL: C:\Users\info\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142 ==================== Ende vom Shortcut.txt ============================= Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 11-12-2021 durchgeführt von info (25-12-2021 13:41:45) Gestartet von C:\Users\info\Downloads Microsoft Windows 11 Pro Version 21H2 22000.376 (X64) (2021-12-24 18:14:40) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-3983496698-2749942813-3653451249-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3983496698-2749942813-3653451249-503 - Limited - Disabled) Gast (S-1-5-21-3983496698-2749942813-3653451249-501 - Limited - Disabled) info (S-1-5-21-3983496698-2749942813-3653451249-1001 - Administrator - Enabled) => C:\Users\info WDAGUtilityAccount (S-1-5-21-3983496698-2749942813-3653451249-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) BEWERBUNGSMASTER (HKLM-x32\...\ST6UNST #1) (Version: - ) Brother P-touch Editor 5.4 (HKLM-x32\...\{3D6B8787-51B7-45F3-B730-79875DA88764}) (Version: 5.4.0030 - Brother Industries, Ltd.) Brother P-touch Update Software (HKLM-x32\...\{71107E29-F03E-400A-B8CA-50B896C75D9F}) (Version: 1.0.0200 - Brother Industries, Ltd.) Browser für SQL Server 2017 (HKLM-x32\...\{DCA53E52-0CE2-457B-B5D6-FA9C3E999BA1}) (Version: 14.0.1000.169 - Microsoft Corporation) Druckerdeinstallation für EPSON Universal Print Driver (HKLM\...\EPSON Universal Print Driver) (Version: - SEIKO EPSON Corporation) EPSON ET-2720 Series Printer Uninstall (HKLM\...\EPSON ET-2720 Series) (Version: - Seiko Epson Corporation) Epson Event Manager (HKLM-x32\...\{DBC38C08-9FB5-43A5-B6BA-EB10AC7DA570}) (Version: 3.11.0053 - Seiko Epson Corporation) Epson Photo+ (HKLM-x32\...\{7F286969-84B8-4AB0-819F-5B18CE33588C}) (Version: 3.3.2.0 - Seiko Epson Corporation) Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation) FileZilla Client 3.57.0 (HKLM-x32\...\FileZilla Client) (Version: 3.57.0 - Tim Kosse) GDR 2037 für SQL Server*2017 (KB4583456) (64-bit) (HKLM\...\KB4583456) (Version: 14.0.2037.2 - Microsoft Corporation) GIMP 2.10.30 (HKLM\...\GIMP-2_is1) (Version: 2.10.30 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 96.0.4664.110 - Google LLC) Intel Driver && Support Assistant (HKLM-x32\...\{9E0D27E1-B7C9-4D9E-BADF-67CC919A9EAC}) (Version: 21.7.50.3 - Intel) Hidden Intel(R) Computing Improvement Program (HKLM\...\{88B98508-2D8F-46F1-90AD-557BE40C7067}) (Version: 2.4.07642 - Intel Corporation) Intel® Driver & Support Assistant (HKLM-x32\...\{60212f27-7b67-4ebb-bb56-547d825dc13f}) (Version: 21.7.50.3 - Intel) JTL-Wawi (HKLM-x32\...\JTL-Wawi_is1) (Version: 1.5.52.0 - JTL-Software-GmbH) Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0131 - Lenovo) Logi Bolt (HKLM\...\LogiBolt) (Version: 1.01.415.0 - Logi) Logitech Options (HKLM\...\LogiOptions) (Version: 9.40.86 - Logitech) Microsoft Access database engine 2010 (German) (HKLM-x32\...\{90140000-00D1-0407-0000-0000000FF1CE}) (Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 96.0.1054.62 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 96.0.1054.62 - Microsoft Corporation) Microsoft ODBC Driver 13 for SQL Server (HKLM\...\{5AC67778-877B-471E-807A-DE4F3352EBE6}) (Version: 14.0.2037.2 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3983496698-2749942813-3653451249-1001\...\OneDriveSetup.exe) (Version: 21.220.1024.0005 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{40A0737A-9077-456B-AD1D-532232165969}) (Version: 11.3.6020.0 - Microsoft Corporation) Microsoft SQL Server 2017 (64-bit) (HKLM\...\Microsoft SQL Server SQL2017) (Version: - Microsoft Corporation) Microsoft SQL Server 2017 Setup (English) (HKLM\...\{0D86D25D-AE80-43EE-B977-9858CA9FD43E}) (Version: 14.0.2037.2 - Microsoft Corporation) Microsoft SQL Server 2017 T-SQL-Sprachdienst (HKLM\...\{E177840C-014D-4724-836D-1D385509B0BC}) (Version: 14.0.1000.169 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{2FA9DAAC-895B-4E99-99D9-DC2965FBE79C}) (Version: 2.87.0.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.30.30704 (HKLM-x32\...\{4d8dcf8c-a72a-43e1-9833-c12724db736e}) (Version: 14.30.30704.0 - Microsoft Corporation) Microsoft VSS Writer für SQL Server 2017 (HKLM\...\{722EB272-ECE2-4B29-AAB8-3A8951AEA61B}) (Version: 14.0.1000.169 - Microsoft Corporation) Mozilla Firefox (x64 de) (HKLM\...\Mozilla Firefox 95.0.2 (x64 de)) (Version: 95.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 95.0.2 - Mozilla) Mozilla Thunderbird (x64 de) (HKLM\...\Mozilla Thunderbird 91.4.1 (x64 de)) (Version: 91.4.1 - Mozilla) Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 8.1.9.3 - Notepad++ Team) OpenOffice 4.1.11 (HKLM-x32\...\{372A5898-9772-4413-9767-06E9F4580830}) (Version: 4.111.9808 - Apache Software Foundation) OpenOffice Updater (HKU\S-1-5-21-3983496698-2749942813-3653451249-1001\...\OpenOffice Updater) (Version: 1.1.10 - OpenOffice) <==== ACHTUNG PuTTY release 0.76 (64-bit) (HKLM\...\{1E0D5689-40F1-4E46-ABBB-EAAC68B5CD89}) (Version: 0.76.0.0 - Simon Tatham) SQL Server 2017 Batch Parser (HKLM\...\{2C6E8311-28BD-4615-9545-6E39E8E83A4B}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Common Files (HKLM\...\{4CC50B3E-18A6-466D-BADC-6E4AEADB7D1F}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Common Files (HKLM\...\{9D1C0509-D490-4E9E-ACF5-A73E5C53742D}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Connection Info (HKLM\...\{68DADE8C-09DA-4320-BF19-8DA6F6038DD5}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Connection Info (HKLM\...\{A9A443F5-56E1-4FC6-937C-5F481345A843}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Database Engine Services (HKLM\...\{4B08490E-42B2-4F64-888F-08F682D00138}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Database Engine Services (HKLM\...\{DED314CA-0EFE-4593-9D66-EF75E5289A4C}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Database Engine Shared (HKLM\...\{0E22DBB4-691B-400C-B52D-8DFE8EC421AA}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Database Engine Shared (HKLM\...\{A725EDB0-3023-4AA2-AF71-E07DD58DC8E6}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 DMF (HKLM\...\{48048AC2-004E-4C3F-8C40-B5C523EC9BEA}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 DMF (HKLM\...\{B9998A13-5563-496C-B95E-597FFC70B670}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Shared Management Objects (HKLM\...\{6CBBF624-696C-499E-948D-ADBAFFA2F548}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Shared Management Objects (HKLM\...\{9669E4B3-800B-41DA-96E6-4047A2DC1F8A}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Shared Management Objects Extensions (HKLM\...\{25C04FB7-6B3E-4932-B34F-99A489C2BC7D}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 Shared Management Objects Extensions (HKLM\...\{8C515C22-BE07-4908-985C-0AA9349E1ED4}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 SQL Diagnostics (HKLM\...\{DFA6A906-3024-49DE-87AD-750EAED2FA49}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 XEvent (HKLM\...\{4FD5A63D-EF25-447D-8A81-AF22C2816E24}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQL Server 2017 XEvent (HKLM\...\{AA2A015C-C210-413B-95F6-BF9D3CDD6E0D}) (Version: 14.0.1000.169 - Microsoft Corporation) Hidden SQLBackupAndFTP (HKLM\...\{56C66705-6DBD-4F5C-9657-18D150B7CA73}) (Version: 12.6.9 - Pranas.NET) TeamViewer (HKLM\...\TeamViewer) (Version: 15.25.8 - TeamViewer) Windows*11-Installationsassistent (HKLM-x32\...\{115DF11E-4B4C-4EA9-9A79-00DB0C7EF02D}) (Version: 1.4.19041.1401 - Microsoft Corporation) Windows-PC-Integritätsprüfung (HKLM\...\{68C9C2A4-C212-4310-AB68-12F97050A416}) (Version: 3.2.2110.14001 - Microsoft Corporation) WinRAR 6.02 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH) Packages: ========= Disney+ -> C:\Program Files\WindowsApps\Disney.37853FC22B2CE_1.22.2.0_x64__6rarf9sa4v8jt [2021-12-23] (Disney) Dolby Audio -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAudio_3.20602.609.0_x64__rz1tebttyb220 [2021-12-23] (Dolby Laboratories) Intel® Grafik-Kontrollraum -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt [2021-12-24] (INTEL CORP) [Startup Task] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2019-12-07] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.3102.0_x64__8wekyb3d8bbwe [2021-12-25] (Microsoft Studios) [MS Ad] MSN Wetter -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.25.20211.0_x64__8wekyb3d8bbwe [2019-12-07] (Microsoft Corporation) [MS Ad] Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c [2019-12-07] (Skype) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0 [2021-12-23] (Spotify AB) [Startup Task] XING -> C:\Program Files\WindowsApps\XINGAG.XING_4.0.9.0_x86__xpfg3f7e9an52 [2021-12-23] (New Work SE) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3983496698-2749942813-3653451249-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> "C:\Users\info\AppData\Local\Microsoft\OneDrive\21.220.1024.0005\Microsoft.SharePoint.exe" => Keine Datei CustomCLSID: HKU\S-1-5-21-3983496698-2749942813-3653451249-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> "C:\Users\info\AppData\Local\Microsoft\OneDrive\21.220.1024.0005\Microsoft.SharePoint.exe" => Keine Datei ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2021-12-08] (Notepad++ -> ) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Ubiquiti Device Discovery Tool.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=hmpigflbjeapnknladcfphgkemopofig ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Zoom.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=hmbjbjdpkobdjplfobhljndfdfdipjhg ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2021-04-13 12:36 - 2021-04-13 12:36 - 005745664 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Intel\Driver and Support Assistant\irmfuu_module.dll 2021-09-01 11:23 - 2021-09-01 11:23 - 000144896 _____ () [Datei ist nicht signiert] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\libssh2.dll 2021-09-01 11:23 - 2021-09-01 11:23 - 000077824 _____ () [Datei ist nicht signiert] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\zlib.dll 2021-12-24 12:51 - 2021-12-02 16:51 - 000276992 _____ (IntelleSoft) [Datei ist nicht signiert] C:\Program Files (x86)\JTL-Software\BugTrap.dll 2021-05-21 14:04 - 2021-05-21 14:04 - 000130048 _____ (Sam Grogan) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files (x86)\Intel\Driver and Support Assistant\NotifyIconWin32.dll 2020-02-07 17:20 - 2020-02-07 17:20 - 000132096 _____ (Seiko Epson Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Epson Software\Event Manager\epnsm.dll 2009-10-21 17:39 - 2009-10-21 17:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] C:\Program Files (x86)\Epson Software\Event Manager\LcMgr.dll 2021-07-23 11:36 - 2021-07-23 11:36 - 002122240 _____ (SQLite Development Team) [Datei ist nicht signiert] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll 2021-09-01 11:23 - 2021-09-01 11:23 - 000355840 _____ (The cURL library, hxxp://curl.haxx.se/) [Datei ist nicht signiert] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\LIBCURL.dll 2021-09-01 11:23 - 2021-09-01 11:23 - 002286747 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\LIBEAY32.dll 2021-09-01 11:23 - 2021-09-01 11:23 - 000416627 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\SSLEAY32.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3983496698-2749942813-3653451249-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\info\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img0.jpg HKU\S-1-5-80-1395438614-360207505-1988296376-2878041436-2731989883\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-80-2266128050-168046786-4118164591-2120174550-663538628\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{89276FB7-51CD-4F99-BCFB-B7232C0AD68A}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Seiko Epson Corporation) [Datei ist nicht signiert] FirewallRules: [{96D70297-4155-4CC9-84B9-611CED12F842}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Seiko Epson Corporation) [Datei ist nicht signiert] FirewallRules: [{F6D55F7F-F3B7-444A-8500-FAC96AF02E1E}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> ) FirewallRules: [{CC10C35A-EE5A-433A-81CE-D32ED7A72214}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> ) FirewallRules: [{8C16E7C5-3AAC-4C13-80E0-B4BB80D26295}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> ) FirewallRules: [{0A320684-F5B9-4940-A419-BD75E7CFA52F}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> ) FirewallRules: [{FD2EA7B4-0545-4753-A3BC-3F28817581D6}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> ) FirewallRules: [{78B186C1-6FCB-4DA4-9E73-20365774058E}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> ) FirewallRules: [{68DAD1DB-E0DE-40AA-BF13-1043CF837CFF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{2E10F985-8559-4FB1-BF3D-0C11739C5084}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{0A5A130E-B5FB-4E88-9BF1-7F83A91FE897}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) FirewallRules: [{20126C07-F280-434C-8F47-C6AA6DF30BF2}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) FirewallRules: [{2E1A64F5-BC73-4B0B-9300-2C0A6FF6763B}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) FirewallRules: [{0555D653-C441-4F07-BFCF-43122DBBC83F}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) FirewallRules: [UDP Query User{31BC5540-5F83-4465-92CA-740C77C8E03F}C:\program files\filezilla ftp client\filezilla.exe] => (Allow) C:\program files\filezilla ftp client\filezilla.exe (Tim Kosse -> FileZilla Project) FirewallRules: [TCP Query User{C80A6E3B-E7A0-41A7-804A-FA29470C3EE3}C:\program files\filezilla ftp client\filezilla.exe] => (Allow) C:\program files\filezilla ftp client\filezilla.exe (Tim Kosse -> FileZilla Project) FirewallRules: [{E91D0A08-935F-4B3C-B56A-85D8EE081C89}] => (Allow) LPort=443 FirewallRules: [{A1645127-1A03-4E96-81B1-3011F95854DA}] => (Allow) LPort=443 FirewallRules: [{EC57019E-E2BD-4178-A944-F82544BED65D}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE (Logitech Inc -> Logitech, Inc.) FirewallRules: [{FED964C3-2582-4526-909D-C26DE1675C41}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{998992BA-73D1-41A8-A42C-64F533C96B2D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{EA14A13B-972A-4806-9EF5-A6E25B340FD3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{AF0C4023-34B6-406F-8741-623D66E53C84}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{CC63F2C9-3E7F-4C3D-AB14-991E838F068F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{DE1173FF-5EAB-43E6-BDA3-C355A261F1EB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{8BF92586-72A1-4C77-A9B8-06E84277E7EF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{78703655-6554-4B57-8595-49AAF6DCE848}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.174.631.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{2C8F3E07-8A9D-46AA-B3D3-FDABC4F17E19}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{905F3691-0D5F-4409-8498-355365C42CB7}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.62\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{AE104DC3-C89D-4D6B-AC3B-0F59E6E58FCB}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_21323.200.1078.109_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{178D9737-75D9-4365-A61F-817E2AEAAB5D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_21323.200.1078.109_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:475.92 GB) (Free:401.81 GB) (84%) ==================== Fehlerhafte Geräte im Gerätemanager ============ ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (12/25/2021 01:26:25 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: SqlBak.WatchDogService.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Threading.Tasks.TaskCanceledException bei System.Runtime.CompilerServices.TaskAwaiter.ThrowForNonSuccess(System.Threading.Tasks.Task) bei SqlBak.WatchDogService.WatchDogHandler+<>c__DisplayClass8_0+<<RunGuarding>b__0>d.MoveNext() bei System.Runtime.CompilerServices.AsyncMethodBuilderCore+<>c.<ThrowAsync>b__6_1(System.Object) bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem() bei System.Threading.ThreadPoolWorkQueue.Dispatch() bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback() Error: (12/24/2021 07:32:14 PM) (Source: DPTF) (EventID: 17) (User: NT-AUTORITÄT) Description: Event-ID 17 Error: (12/24/2021 07:32:14 PM) (Source: DPTF) (EventID: 17) (User: NT-AUTORITÄT) Description: Event-ID 17 Error: (12/24/2021 07:32:14 PM) (Source: DPTF) (EventID: 17) (User: NT-AUTORITÄT) Description: Event-ID 17 Error: (12/24/2021 07:32:14 PM) (Source: DPTF) (EventID: 17) (User: NT-AUTORITÄT) Description: Event-ID 17 Error: (12/24/2021 07:32:14 PM) (Source: DPTF) (EventID: 17) (User: NT-AUTORITÄT) Description: Event-ID 17 Error: (12/24/2021 07:32:14 PM) (Source: DPTF) (EventID: 17) (User: NT-AUTORITÄT) Description: Event-ID 17 Error: (12/24/2021 07:32:14 PM) (Source: DPTF) (EventID: 17) (User: NT-AUTORITÄT) Description: Event-ID 17 Systemfehler: ============= Error: (12/25/2021 01:29:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) SUR QC Software Asset Manager erreicht. Error: (12/25/2021 01:22:52 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80073d02 fehlgeschlagen: 9WZDNCRFJBMP-MICROSOFT.WINDOWSSTORE Error: (12/25/2021 01:20:15 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80240017 fehlgeschlagen: Sicherheitsupdate für Microsoft Office 2010 (KB2584066), 32-Bit Edition Error: (12/24/2021 07:32:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "SQLBackupAndFTP Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (12/24/2021 07:32:11 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "LanmanServer" wurde mit folgendem Fehler beendet: Der Computer wird heruntergefahren. Error: (12/24/2021 07:32:10 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "igccservice" wurde mit folgendem Fehler beendet: Bei der Verarbeitung der Steuerungsanforderung ist ein Ausnahmefehler im Dienst aufgetreten. Error: (12/24/2021 07:32:10 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "WinDefend" wurde mit folgendem Fehler beendet: %%2147943515 = Der Computer wird heruntergefahren. Error: (12/24/2021 07:32:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "SystemUsageReportSvc_QUEENCREEK" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. ==================== Speicherinformationen =========================== BIOS: LENOVO DKCN53WW 05/31/2021 Hauptplatine: LENOVO LNVNB161216 Prozessor: Intel(R) Core(TM) i5-1035G1 CPU @ 1.00GHz Prozentuale Nutzung des RAM: 33% Installierter physikalischer RAM: 20275.24 MB Verfügbarer physikalischer RAM: 13424.55 MB Summe virtueller Speicher: 23731.24 MB Verfügbarer virtueller Speicher: 16601.83 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:475.92 GB) (Free:401.81 GB) NTFS \\?\Volume{540f0047-f684-47f7-a70d-3d8e4db82b7f}\ () (Fixed) (Total:0.91 GB) (Free:0.08 GB) NTFS \\?\Volume{bf78085d-6efc-473c-af19-374b38191f8a}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ==================== Ende von Addition.txt ======================= Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 11-12-2021 durchgeführt von info (Administrator) auf DESKTOP-6BI39U0 (LENOVO 82C4) (25-12-2021 13:40:23) Gestartet von C:\Users\info\Downloads Geladene Profile: info & SQLTELEMETRY$JTLWAWI & MSSQL$JTLWAWI Plattform: Microsoft Windows 11 Pro Version 21H2 22000.376 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Edge Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~1.INF\DAX3API.exe (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <35> (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> Intel Corporation) C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_21306a77b30fd6e0\esif_uf.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxCUIServiceN.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxEMN.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_a9a2dde7124f013f\OneApp.IGCC.WinService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a634af1513618033\IntelCpHDCPSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_c98d5e0dfc88ac2f\RstMwService.exe (JTL-Software-GmbH -> ) C:\Program Files (x86)\JTL-Software\JTL-Pos-Server.exe (JTL-Software-GmbH -> JTL-Software-GmbH) C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\AutoModeDetect.exe (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\LNBITSSvc.exe (Logitech Inc -> Logitech) C:\Program Files\Logi\LogiBolt\LogiBolt.exe (Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\laclient.exe (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\sqlceip.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\info\AppData\Local\Microsoft\OneDrive\21.230.1107.0004\FileCoAuth.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2106.2807.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Scans\MsMpEngCP.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe <5> (PRANAS NET CORP -> Pranas.Net) C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.Service.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_YATIVVE.EXE (Seiko Epson Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeApp.exe (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1675680 2021-09-24] (Logitech Inc -> Logitech, Inc.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3951024 2019-10-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.) HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [288184 2021-12-08] (Intel Corporation -> Intel) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1310720 2020-02-10] (Seiko Epson Corporation) [Datei ist nicht signiert] HKU\S-1-5-21-3983496698-2749942813-3653451249-1001\...\Run: [OpenOffice Updater] => C:\Users\info\AppData\Roaming\OpenOffice Updater\Updater.exe [367480 2021-07-28] (Arne Koenig -> ) <==== ACHTUNG HKU\S-1-5-21-3983496698-2749942813-3653451249-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIVVE.EXE [416896 2017-09-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EPSON ET-2720 Series 64MonitorBE: C:\WINDOWS\system32\E_YLMBVVE.DLL [184832 2017-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EPSON Universal Print Driver 64MonitorBE: C:\WINDOWS\system32\E_2LM0DE.DLL [187392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\96.0.4664.110\Installer\chrmstp.exe [2021-12-23] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\JTL-Wawi WORKER.lnk [2021-12-24] ShortcutTarget: JTL-Wawi WORKER.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH -> JTL-Software-GmbH) Startup: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\JTL-Wawi.lnk [2021-12-24] ShortcutTarget: JTL-Wawi.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH -> JTL-Software-GmbH) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {24C9CB65-F250-41DB-94A5-526FBEF5A849} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758792 2021-09-22] (Lenovo -> ) Task: {4E37A99A-003C-45A1-85CB-749E429F18CF} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\Windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" Task: {5794EA6F-73AE-4C2B-858B-AA514EDEF648} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Keine Datei) Task: {6CF3A14A-5E32-4826-9D9F-F65E7F3022B4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8D3B596B-974B-4409-92BA-27EFBE817801} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3075936 2021-07-21] (Intel Corporation -> Intel Corporation) Task: {946D6CDF-EEBA-4637-8023-A8545B99C1D4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-23] (Google LLC -> Google LLC) Task: {AC424734-B2D9-4C43-B25D-74C18262CABE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BE9D42A6-E57A-4861-8AAE-FEDE860C33AB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C270F98A-CF38-468C-80D5-EC37B67C570B} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758792 2021-09-22] (Lenovo -> ) Task: {CB352FC4-AB11-4E58-96F5-6A1EDFC5E3C8} - System32\Tasks\EPSON ET-2720 Series Update {1F25C659-B3EE-49C0-B91D-728CC0D24E22} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSVVE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Keine Datei) Task: {D1FBEB5E-8C42-4766-B594-D2A7E7EA2609} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3075936 2021-07-21] (Intel Corporation -> Intel Corporation) Task: {D2FCBED4-F95D-4693-9A5B-C314D5CA5577} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-23] (Google LLC -> Google LLC) Task: {E42F26BF-F8B9-47BA-9BB7-7E2FFE5439FA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EFEA6E3A-F2A3-4F8D-A1FA-5313CC4135F4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\EPSON ET-2720 Series Update {1F25C659-B3EE-49C0-B91D-728CC0D24E22}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSVVE.EXE:/EXE:{1F25C659-B3EE-49C0-B91D-728CC0D24E22} /F:UpdateWORKGROUP\DESKTOP-6BI39U0$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\..\Interfaces\{01f901fc-be3f-4c76-8712-54c481891a45}: [NameServer] 192.168.178.1 Edge: ======= Edge Profile: C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default [2021-12-25] Edge Notifications: Default -> hxxps://cloudpanel.ionos.de Edge HomePage: Default -> hxxp://www.google.de/ Edge Extension: (Google Optimize) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bhdplaindhdkiflmbfbciehdccfhegci [2021-12-23] Edge Extension: (SEO META in 1 CLICK) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjogjfinolnhfhkbipphpdlldadpnmhc [2021-12-23] Edge Extension: (Tag Assistant Legacy (by Google)) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2021-12-23] Edge Extension: (MSN New Tab) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lklfbkdigihjaaeamncibechhgalldgl [2021-12-23] FireFox: ======== FF DefaultProfile: wpc9l5zv.default FF ProfilePath: C:\Users\info\AppData\Roaming\Mozilla\Firefox\Profiles\wpc9l5zv.default [2021-12-24] FF ProfilePath: C:\Users\info\AppData\Roaming\Mozilla\Firefox\Profiles\fadg2xwo.default-release [2021-12-24] Chrome: ======= CHR Profile: C:\Users\info\AppData\Local\Google\Chrome\User Data\Default [2021-12-25] CHR Notifications: Default -> hxxps://cloudpanel.ionos.de; hxxps://www.facebook.com; hxxps://www.wish.com; hxxps://www.youtube.com CHR HomePage: Default -> hxxp://www.google.de/ CHR Extension: (Präsentationen) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-12-23] CHR Extension: (Docs) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-12-23] CHR Extension: (Google Drive) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-12-23] CHR Extension: (Google Optimize) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhdplaindhdkiflmbfbciehdccfhegci [2021-12-23] CHR Extension: (SEO META in 1 CLICK) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjogjfinolnhfhkbipphpdlldadpnmhc [2021-12-23] CHR Extension: (YouTube) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-12-23] CHR Extension: (Tabellen) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-12-23] CHR Extension: (Google Docs Offline) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-23] CHR Extension: (PDF verkleinern - Online-Umwandeln.de) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdhnlmeefoadjmabbndlgofibjhghad [2021-12-23] CHR Extension: (Zoom) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmbjbjdpkobdjplfobhljndfdfdipjhg [2021-12-23] CHR Extension: (Ubiquiti Device Discovery Tool) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmpigflbjeapnknladcfphgkemopofig [2021-12-23] CHR Extension: (Tag Assistant Legacy (by Google)) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2021-12-23] CHR Extension: (MSN New Tab) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\lklfbkdigihjaaeamncibechhgalldgl [2021-12-23] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-23] CHR Extension: (Google Mail) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-12-23] CHR Profile: C:\Users\info\AppData\Local\Google\Chrome\User Data\System Profile [2021-12-23] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 DolbyDAXAPI; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe [1928648 2020-05-19] (Dolby Laboratories, Inc. -> Dolby Laboratories) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [39352 2021-12-08] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [177080 2021-12-08] (Intel Corporation -> Intel) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [206304 2020-10-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [390400 2020-05-22] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 LITSSVC; C:\WINDOWS\System32\LNBITSSvc.exe [1832944 2021-08-12] (Lenovo -> Lenovo(beijing) Limited) R2 MSSQL$JTLWAWI; C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\sqlservr.exe [478096 2020-11-03] (Microsoft Corporation -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6078536 2021-12-24] (Microsoft Windows Publisher -> Microsoft Corporation) S4 SQLAgent$JTLWAWI; C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\SQLAGENT.EXE [571792 2020-11-03] (Microsoft Corporation -> Microsoft Corporation) R2 SQLBackupAndFTP Client Service; C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.Service.exe [1313200 2021-12-09] (PRANAS NET CORP -> Pranas.Net) S2 SQLBackupAndFTP Client Service Watchdog; C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.WatchDogService.exe [26544 2021-12-09] (PRANAS NET CORP -> Pranas.Net) R2 SQLTELEMETRY$JTLWAWI; C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\sqlceip.exe [245648 2020-11-03] (Microsoft Corporation -> Microsoft Corporation) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [14545704 2021-12-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe [2876152 2021-12-24] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2021-12-24] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 Hsp; C:\WINDOWS\System32\drivers\Hsp.sys [110904 2021-12-24] (Microsoft Windows -> Microsoft Corporation) R3 iaLPSS2_I2C_ICL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_icl.inf_amd64_c8c0638291b9b209\iaLPSS2_I2C_ICL.sys [200456 2020-04-27] (Intel Corporation -> Intel Corporation) S4 RsFx0501; C:\WINDOWS\System32\DRIVERS\RsFx0501.sys [261784 2020-11-03] (Microsoft Corporation -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2021-12-24] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [435432 2021-12-24] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86248 2021-12-24] (Microsoft Windows -> Microsoft Corporation) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-12-25 13:40 - 2021-12-25 13:40 - 000021470 _____ C:\Users\info\Downloads\FRST.txt 2021-12-25 13:40 - 2021-12-25 13:40 - 000000000 ____D C:\FRST 2021-12-25 13:39 - 2021-12-25 13:39 - 002311168 _____ (Farbar) C:\Users\info\Downloads\FRST64.exe 2021-12-25 13:20 - 2021-12-25 13:20 - 000000000 ___HD C:\$WinREAgent 2021-12-24 19:17 - 2021-12-24 19:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2021-12-24 19:16 - 2021-12-24 19:16 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2021-12-24 19:15 - 2021-12-25 13:23 - 001867730 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-12-24 19:15 - 2021-12-25 13:19 - 000000000 __SHD C:\Users\info\IntelGraphicsProfiles 2021-12-24 19:15 - 2021-12-24 19:15 - 000000020 ___SH C:\Users\info\ntuser.ini 2021-12-24 19:14 - 2021-12-25 13:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-12-24 19:14 - 2021-12-24 19:14 - 000022863 _____ C:\WINDOWS\diagwrn.xml 2021-12-24 19:14 - 2021-12-24 19:14 - 000022863 _____ C:\WINDOWS\diagerr.xml 2021-12-24 19:14 - 2021-12-24 19:14 - 000003628 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-12-24 19:14 - 2021-12-24 19:14 - 000003560 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-12-24 19:14 - 2021-12-24 19:14 - 000003504 _____ C:\WINDOWS\system32\Tasks\EPSON ET-2720 Series Update {1F25C659-B3EE-49C0-B91D-728CC0D24E22} 2021-12-24 19:14 - 2021-12-24 19:14 - 000003404 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-12-24 19:14 - 2021-12-24 19:14 - 000003336 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-12-24 19:14 - 2021-12-24 19:14 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3983496698-2749942813-3653451249-1001 2021-12-24 19:14 - 2021-12-24 19:14 - 000003042 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2021-12-24 19:14 - 2021-12-24 19:14 - 000002970 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 2021-12-24 19:14 - 2021-12-24 19:14 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3983496698-2749942813-3653451249-1001 2021-12-24 19:14 - 2021-12-24 19:14 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3983496698-2749942813-3653451249-500 2021-12-24 19:14 - 2021-12-24 19:14 - 000002678 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK 2021-12-24 19:14 - 2021-12-24 19:14 - 000002604 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon 2021-12-24 19:14 - 2021-12-24 19:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\TVT 2021-12-24 19:14 - 2021-12-24 19:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-12-24 19:14 - 2020-11-19 00:58 - 000003392 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-506450434-4066129981-3206064658-500 2021-12-24 19:11 - 2021-12-24 19:14 - 000000000 ____D C:\Windows.old 2021-12-24 19:11 - 2021-12-24 19:12 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-12-24 19:11 - 2021-12-24 19:11 - 000395672 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-12-24 18:50 - 2021-12-24 19:15 - 000000000 ____D C:\Users\info 2021-12-24 18:50 - 2021-12-24 19:11 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\Vorlagen 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\Startmenü 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\Netzwerkumgebung 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\Lokale Einstellungen 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\Eigene Dateien 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\Druckumgebung 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\AppData\Local\Verlauf 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\AppData\Local\Anwendungsdaten 2021-12-24 18:50 - 2021-12-24 18:50 - 000000000 _SHDL C:\Users\info\Anwendungsdaten 2021-12-24 18:50 - 2021-06-05 13:04 - 000001281 _____ C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools.lnk 2021-12-24 18:50 - 2021-06-05 13:04 - 000000407 _____ C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\File Explorer.lnk 2021-12-24 18:49 - 2021-12-24 19:12 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2021-12-24 18:49 - 2021-12-24 18:49 - 000000000 ____D C:\WINDOWS\system32\Intel 2021-12-24 18:49 - 2021-12-24 18:49 - 000000000 ____D C:\WINDOWS\system32\dolbyaposvc 2021-12-24 18:49 - 2021-12-24 18:49 - 000000000 ____D C:\WINDOWS\system32\cAVS 2021-12-24 18:45 - 2021-12-24 18:45 - 000215552 _____ C:\WINDOWS\system32\CloudIdWxhExtension.dll 2021-12-24 18:45 - 2021-12-24 18:45 - 000040960 _____ C:\WINDOWS\system32\prxyqry.dll 2021-12-24 18:45 - 2021-12-24 18:45 - 000015000 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-12-24 18:45 - 2021-12-24 18:45 - 000013824 _____ C:\WINDOWS\SysWOW64\prxyqry.dll 2021-12-24 18:36 - 2021-12-24 18:36 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2021-12-24 18:24 - 2021-12-24 19:15 - 000000000 ___DC C:\WINDOWS\Panther 2021-12-24 18:23 - 2021-12-24 18:24 - 000000036 _____ C:\WINDOWS\progress.ini 2021-12-24 17:48 - 2021-12-24 19:14 - 000000000 ___HD C:\$GetCurrent 2021-12-24 17:48 - 2021-12-24 18:23 - 000000000 ____D C:\Program Files (x86)\WindowsInstallationAssistant 2021-12-24 17:47 - 2021-12-24 17:47 - 000002123 _____ C:\Users\Public\Desktop\Epson Photo+ Tool.lnk 2021-12-24 17:47 - 2021-12-24 17:47 - 000002115 _____ C:\Users\Public\Desktop\Epson Photo+.lnk 2021-12-24 17:47 - 2021-12-24 17:47 - 000000000 ____D C:\Users\info\AppData\Local\Seiko_Epson_Corporation 2021-12-24 17:46 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software 2021-12-24 17:46 - 2021-12-24 17:47 - 000000000 ____D C:\Program Files (x86)\Epson Software 2021-12-24 17:46 - 2021-12-24 17:46 - 048446296 _____ C:\Users\info\Downloads\epson638835eu.exe 2021-12-24 17:46 - 2021-12-24 17:46 - 000000000 ____D C:\Users\info\AppData\Roaming\Epson 2021-12-24 17:46 - 2021-12-24 17:46 - 000000000 ____D C:\Program Files (x86)\InstallShield Installation Information 2021-12-24 17:45 - 2021-12-24 17:46 - 018984024 _____ C:\Users\info\Downloads\epson636445eu.exe 2021-12-24 17:45 - 2018-06-15 04:14 - 000187392 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\E_2LM0DE.DLL 2021-12-24 17:45 - 2018-06-15 03:04 - 000083968 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\E_2D4B0DE.DLL 2021-12-24 17:43 - 2021-12-24 18:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2021-12-24 17:43 - 2021-12-24 17:46 - 000000000 ____D C:\Program Files (x86)\epson 2021-12-24 17:43 - 2021-12-24 17:44 - 056757608 _____ C:\Users\info\Downloads\epson644168eu.exe 2021-12-24 17:43 - 2021-12-24 17:43 - 000000000 ____D C:\WINDOWS\twain_64 2021-12-24 17:43 - 2021-12-24 17:43 - 000000000 ____D C:\Program Files\epson 2021-12-24 17:43 - 2020-10-02 18:10 - 000206304 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\escsvc64.exe 2021-12-24 17:43 - 2020-10-02 18:10 - 000165392 _____ (TWAIN Working Group) C:\WINDOWS\system32\twaindsm.dll 2021-12-24 17:43 - 2020-10-02 18:10 - 000147472 _____ (TWAIN Working Group) C:\WINDOWS\SysWOW64\twaindsm.dll 2021-12-24 17:42 - 2021-12-24 19:14 - 000000951 _____ C:\WINDOWS\Tasks\EPSON ET-2720 Series Update {1F25C659-B3EE-49C0-B91D-728CC0D24E22}.job 2021-12-24 17:42 - 2021-12-24 17:42 - 063589432 _____ C:\Users\info\Downloads\epson643127eu.exe 2021-12-24 17:42 - 2021-12-24 17:42 - 000000000 ____D C:\Program Files\Common Files\EPSON 2021-12-24 17:41 - 2021-12-24 17:45 - 000000000 ____D C:\ProgramData\EPSON 2021-12-24 17:41 - 2021-12-24 17:41 - 033496424 _____ C:\Users\info\Downloads\epson643130eu.exe 2021-12-24 17:41 - 2017-07-14 04:13 - 000184832 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\E_YLMBVVE.DLL 2021-12-24 17:41 - 2011-03-15 03:03 - 000083968 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\E_YD4BVVE.DLL 2021-12-24 17:39 - 2021-12-24 17:39 - 000001944 _____ C:\Users\Public\Desktop\P-touch Editor 5.4.lnk 2021-12-24 17:39 - 2021-12-24 17:39 - 000000000 ____D C:\Program Files (x86)\MSECache 2021-12-24 17:39 - 2021-12-24 17:39 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-12-24 17:38 - 2021-12-24 17:39 - 055939184 _____ (Brother Industries, Ltd. ) C:\Users\info\Downloads\pew54003ger.exe 2021-12-24 17:36 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch 2021-12-24 17:36 - 2021-12-24 18:08 - 000000000 ____D C:\Users\info\AppData\Roaming\Brother 2021-12-24 17:36 - 2021-12-24 17:39 - 000000000 ____D C:\Program Files (x86)\Brother 2021-12-24 17:36 - 2021-12-24 17:36 - 000002063 _____ C:\Users\Public\Desktop\P-touch Update Software.lnk 2021-12-24 17:35 - 2021-12-24 17:36 - 004306648 _____ (Brother Industries, Ltd. ) C:\Users\info\Downloads\puw10020.exe 2021-12-24 17:32 - 2021-12-24 17:32 - 000001100 _____ C:\WINDOWS\dsetupu_log.txt 2021-12-24 17:31 - 2021-12-24 17:31 - 004369968 _____ C:\Users\info\Downloads\qd500w550bger.exe 2021-12-24 17:31 - 2021-12-24 17:31 - 000000000 ____D C:\Users\info\Downloads\qd500w550bger 2021-12-24 17:21 - 2021-12-24 17:21 - 000000000 ____D C:\Users\info\AppData\Local\Tvsukernel 2021-12-24 17:20 - 2021-12-24 17:21 - 000000000 ____D C:\Users\info\OneDrive\Dokumente\BewerbungsMaster 2021-12-24 17:20 - 2021-12-24 17:21 - 000000000 ____D C:\Users\info\AppData\Local\BewerbungsMaster 2021-12-24 17:19 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BewerbungsMaster 2021-12-24 17:19 - 2021-12-24 17:21 - 000000000 ____D C:\Program Files (x86)\BEWERBUNGSMASTER 2021-12-24 17:19 - 2021-12-24 17:19 - 016764944 _____ C:\Users\info\Downloads\master.exe 2021-12-24 17:19 - 2021-12-24 17:19 - 000351584 _____ (Microsoft Corporation) C:\WINDOWS\Setup1.exe 2021-12-24 17:19 - 2021-12-24 17:19 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\ST6UNST.EXE 2021-12-24 17:19 - 2021-12-24 17:19 - 000000946 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.10.30.lnk 2021-12-24 17:17 - 2021-12-24 17:17 - 000000000 ____D C:\Users\info\AppData\Local\Pranas.NET 2021-12-24 17:17 - 2021-12-24 17:17 - 000000000 ____D C:\Program Files\GIMP 2 2021-12-24 17:14 - 2021-12-24 17:16 - 257259032 _____ (The GIMP Team ) C:\Users\info\Downloads\gimp-2.10.30-setup.exe 2021-12-24 17:13 - 2021-12-24 19:16 - 000000000 ____D C:\Users\info\AppData\Local\Intel 2021-12-24 17:13 - 2021-07-23 11:36 - 000041816 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys 2021-12-24 17:12 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lenovo 2021-12-24 17:12 - 2021-12-24 19:11 - 000000000 ____D C:\Program Files\Intel 2021-12-24 17:12 - 2021-12-24 17:18 - 191671856 _____ (Foxit Software Inc. ) C:\Users\info\Downloads\FoxitPDFReader111_L10N_Setup_Prom.exe 2021-12-24 17:12 - 2021-12-24 17:12 - 000001510 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk 2021-12-24 17:12 - 2021-12-24 17:12 - 000000000 ____D C:\ProgramData\Intel 2021-12-24 17:12 - 2021-12-24 17:12 - 000000000 ____D C:\Program Files (x86)\Lenovo 2021-12-24 17:12 - 2021-12-24 17:12 - 000000000 ____D C:\Program Files (x86)\Intel 2021-12-24 17:11 - 2021-12-24 17:11 - 008305760 _____ (Lenovo ) C:\Users\info\Downloads\system_update_5.07.0131 (1).exe 2021-12-24 17:11 - 2021-12-24 17:11 - 005934808 _____ (Intel) C:\Users\info\Downloads\Intel-Driver-and-Support-Assistant-Installer.exe 2021-12-24 17:11 - 2021-12-24 17:11 - 000000296 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog 2021-12-24 17:10 - 2021-12-24 17:12 - 000000000 ____D C:\WINDOWS\TempInst 2021-12-24 17:10 - 2021-12-24 17:10 - 008305760 _____ (Lenovo ) C:\Users\info\Downloads\system_update_5.07.0131.exe 2021-12-24 17:10 - 2021-12-24 17:10 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-12-24 17:10 - 2021-12-24 17:10 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk 2021-12-24 17:10 - 2021-12-24 17:10 - 000000000 ____D C:\Users\info\AppData\Local\Mozilla 2021-12-24 17:10 - 2021-12-24 17:10 - 000000000 ____D C:\ProgramData\Lenovo 2021-12-24 17:10 - 2021-12-24 17:10 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-12-24 17:09 - 2021-12-24 17:09 - 000333960 _____ (Mozilla) C:\Users\info\Downloads\Firefox Installer.exe 2021-12-24 17:08 - 2021-12-24 19:11 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11 2021-12-24 17:08 - 2021-12-24 17:22 - 000000000 ____D C:\Users\info\AppData\Roaming\OpenOffice Updater 2021-12-24 17:08 - 2021-12-24 17:08 - 000001132 _____ C:\Users\Public\Desktop\OpenOffice 4.1.11.lnk 2021-12-24 17:08 - 2021-12-24 17:08 - 000000000 ____D C:\Program Files (x86)\OpenOffice 4 2021-12-24 17:04 - 2021-12-24 17:04 - 000249552 _____ C:\Users\info\Downloads\OpenOffice_Setup.exe 2021-12-24 17:03 - 2021-12-24 18:53 - 000000128 _____ C:\Users\info\AppData\Local\PUTTY.RND 2021-12-24 17:01 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit) 2021-12-24 17:01 - 2021-12-24 17:01 - 003083264 _____ C:\Users\info\Downloads\putty-64bit-0.76-installer.msi 2021-12-24 17:01 - 2021-12-24 17:01 - 000000000 ____D C:\Program Files\PuTTY 2021-12-24 16:53 - 2021-12-24 16:53 - 000001164 _____ C:\Users\Public\Desktop\SQLBackupAndFTP.lnk 2021-12-24 16:52 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQLBackupAndFTP 2021-12-24 16:52 - 2021-12-24 16:52 - 022764248 _____ (Pranas.NET) C:\Users\info\Downloads\SQLBackupAndFTPSetup.exe 2021-12-24 16:52 - 2021-12-24 16:52 - 000000000 ____D C:\ProgramData\Pranas.NET 2021-12-24 16:52 - 2021-12-24 16:52 - 000000000 ____D C:\Program Files (x86)\SQLBackupAndFTP 2021-12-24 16:38 - 2021-12-25 13:19 - 000000000 ____D C:\Program Files\TeamViewer 2021-12-24 16:38 - 2021-12-24 16:50 - 000000000 ____D C:\Users\info\AppData\Roaming\TeamViewer 2021-12-24 16:38 - 2021-12-24 16:43 - 000000000 ____D C:\Users\info\AppData\Local\TeamViewer 2021-12-24 16:38 - 2021-12-24 16:38 - 000000889 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk 2021-12-24 16:38 - 2021-12-24 16:38 - 000000877 _____ C:\Users\Public\Desktop\TeamViewer.lnk 2021-12-24 16:37 - 2021-12-24 16:37 - 035080496 _____ (TeamViewer Germany GmbH) C:\Users\info\Downloads\TeamViewer_Setup_x64.exe 2021-12-24 16:36 - 2021-12-24 19:11 - 000000000 ____D C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-12-24 16:36 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-12-24 16:36 - 2021-12-24 16:36 - 003488616 _____ (Alexander Roshal) C:\Users\info\Downloads\winrar-x64-602d.exe 2021-12-24 16:36 - 2021-12-24 16:36 - 000000000 ____D C:\Program Files\WinRAR 2021-12-24 15:44 - 2021-12-24 15:44 - 000013175 _____ C:\Users\info\OneDrive\Dokumente\xpert73x_elster_24.12.2021_15.44.pfx 2021-12-24 14:41 - 2021-12-24 14:41 - 000000000 ____D C:\Users\info\AppData\Local\Logitech 2021-12-24 14:36 - 2021-12-24 14:37 - 000000000 ____D C:\Users\info\AppData\Roaming\Notepad++ 2021-12-24 14:36 - 2021-12-24 14:36 - 004394184 _____ (Don HO don.h@free.fr) C:\Users\info\Downloads\npp.8.1.9.3.Installer.x64.exe 2021-12-24 14:36 - 2021-12-24 14:36 - 000000877 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk 2021-12-24 14:36 - 2021-12-24 14:36 - 000000865 _____ C:\Users\Public\Desktop\Notepad++.lnk 2021-12-24 14:36 - 2021-12-24 14:36 - 000000000 ____D C:\Program Files\Notepad++ 2021-12-24 14:30 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2021-12-24 14:30 - 2021-12-24 19:10 - 000000000 ____D C:\Users\info\AppData\Roaming\FileZilla 2021-12-24 14:30 - 2021-12-24 14:38 - 000000000 ____D C:\Users\info\AppData\Local\FileZilla 2021-12-24 14:30 - 2021-12-24 14:30 - 000001927 _____ C:\Users\Public\Desktop\FileZilla Client.lnk 2021-12-24 14:30 - 2021-12-24 14:30 - 000000000 ____D C:\Program Files\FileZilla FTP Client 2021-12-24 14:29 - 2021-12-24 14:30 - 011800816 _____ (Tim Kosse) C:\Users\info\Downloads\FileZilla_3.57.0_win64_sponsored-setup.exe 2021-12-24 14:06 - 2021-12-24 14:06 - 000000000 ____D C:\Users\info\AppData\Local\JTL-Software 2021-12-24 13:53 - 2021-12-24 13:53 - 000000000 ____D C:\WINDOWS\system32\RsFx 2021-12-24 13:52 - 2021-12-24 19:11 - 000000000 ____D C:\WINDOWS\SysWOW64\1033 2021-12-24 13:52 - 2021-12-24 19:11 - 000000000 ____D C:\WINDOWS\system32\1033 2021-12-24 13:52 - 2021-12-24 13:52 - 000000000 ____D C:\Program Files\Microsoft Visual Studio 10.0 2021-12-24 13:51 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2017 2021-12-24 13:51 - 2021-12-24 17:48 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2021-12-24 13:51 - 2021-12-24 17:13 - 000000000 ____D C:\ProgramData\Package Cache 2021-12-24 13:28 - 2021-12-24 17:48 - 000000000 ____D C:\Program Files\Microsoft SQL Server 2021-12-24 13:17 - 2021-12-24 13:18 - 086906048 _____ (Logitech Inc.) C:\Users\info\Downloads\SetPoint6.70.55_64.exe 2021-12-24 13:17 - 2021-12-24 13:18 - 004147600 _____ ($Co_Name Inc.) C:\Users\info\Downloads\unifying250.exe 2021-12-24 13:17 - 2021-12-24 13:17 - 013747152 _____ C:\Users\info\Downloads\FirmwareUpdateTool_2.6.201219_x64.exe 2021-12-24 13:17 - 2021-12-24 13:17 - 000000000 ____D C:\Users\info\AppData\Local\FirmwareUpdateTool 2021-12-24 13:01 - 2021-12-25 13:39 - 000000000 ____D C:\Users\info\AppData\Local\LogiBolt 2021-12-24 13:01 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2021-12-24 13:01 - 2021-12-24 13:01 - 000000000 ____D C:\Users\info\AppData\Roaming\Logishrd 2021-12-24 13:01 - 2021-12-24 13:01 - 000000000 ____D C:\Users\info\AppData\Local\CEF 2021-12-24 13:01 - 2021-12-24 13:01 - 000000000 ____D C:\Program Files\Logi 2021-12-24 13:00 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2021-12-24 13:00 - 2021-12-24 13:46 - 000000000 ____D C:\ProgramData\Logishrd 2021-12-24 13:00 - 2021-12-24 13:00 - 000000000 ____D C:\Users\info\AppData\Local\PeerDistRepub 2021-12-24 13:00 - 2021-12-24 13:00 - 000000000 ____D C:\Program Files\Logitech 2021-12-24 12:56 - 2021-12-24 12:59 - 315128528 _____ (Logitech Inc.) C:\Users\info\Downloads\options_installer.exe 2021-12-24 12:54 - 2021-12-24 12:54 - 000000000 ____D C:\Users\info\AppData\Local\JTL-Software-GmbH 2021-12-24 12:53 - 2021-12-24 14:22 - 000000000 ____D C:\Users\info\AppData\Roaming\jtl-software 2021-12-24 12:52 - 2021-12-24 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Software 2021-12-24 12:52 - 2021-12-24 12:52 - 000000000 ____D C:\ProgramData\JTL-Software 2021-12-24 12:51 - 2021-12-24 13:28 - 000000000 ____D C:\Program Files (x86)\JTL-Software 2021-12-24 12:48 - 2021-12-24 12:50 - 213323176 _____ (JTL-Software GmbH ) C:\Users\info\Downloads\setup-jtl-wawi_1.5.52.0_1202-1548_616a4781cbe.exe 2021-12-24 12:47 - 2020-12-30 12:49 - 000000000 _____ C:\Users\info\OneDrive\Dokumente\Default.rdp 2021-12-23 19:36 - 2021-12-23 19:36 - 000000000 ____D C:\Users\info\AppData\Local\OneDrive 2021-12-23 19:27 - 2021-12-23 19:27 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2021-12-23 19:26 - 2021-12-25 13:41 - 000000000 ____D C:\Users\info\AppData\LocalLow\Mozilla 2021-12-23 19:26 - 2021-12-25 13:39 - 000000000 ____D C:\ProgramData\Mozilla 2021-12-23 19:26 - 2021-12-24 17:21 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-12-23 19:26 - 2021-12-24 17:10 - 000000000 ____D C:\Users\info\AppData\Roaming\Mozilla 2021-12-23 19:26 - 2021-12-23 19:26 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2021-12-23 19:26 - 2021-12-23 19:26 - 000001043 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2021-12-23 19:26 - 2021-12-23 19:26 - 000000000 ____D C:\Users\info\AppData\Roaming\Thunderbird 2021-12-23 19:26 - 2021-12-23 19:26 - 000000000 ____D C:\Users\info\AppData\Local\Thunderbird 2021-12-23 19:26 - 2021-12-23 19:26 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2021-12-23 19:26 - 2021-12-23 19:26 - 000000000 _____ C:\ProgramData\UpdateLock-D78BF5DD33499EC2 2021-12-23 19:25 - 2021-12-23 19:26 - 056904360 _____ (Mozilla) C:\Users\info\Downloads\Thunderbird Setup 91.4.1.exe 2021-12-23 19:24 - 2021-12-24 19:11 - 000000000 ____D C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps 2021-12-23 19:22 - 2021-12-24 19:14 - 000002239 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-12-23 19:22 - 2021-12-24 19:14 - 000002198 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-12-23 19:22 - 2021-12-23 19:22 - 000000000 ____D C:\Program Files\Google 2021-12-23 19:21 - 2021-12-25 13:26 - 000000000 ____D C:\Program Files (x86)\Google 2021-12-23 19:21 - 2021-12-23 19:49 - 000000000 ____D C:\Users\info\AppData\Local\Google 2021-12-23 19:20 - 2021-12-23 19:20 - 001341272 _____ (Google LLC) C:\Users\info\Downloads\ChromeSetup.exe 2021-12-23 19:18 - 2021-12-23 19:18 - 000000533 _____ C:\WINDOWS\system32\regtest.txt 2021-12-23 19:17 - 2021-12-23 19:17 - 000000000 ____D C:\ProgramData\Dolby 2021-12-23 19:17 - 2020-08-16 00:44 - 000003992 _____ C:\WINDOWS\system32\Drivers\SAMSfpa_17AA384610EC0230.dat 2021-12-23 19:17 - 2020-06-04 01:44 - 007359080 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2021-12-23 19:17 - 2020-06-04 01:32 - 039973860 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2021-12-23 19:14 - 2021-12-23 19:14 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-12-23 19:13 - 2021-12-23 19:13 - 000000000 ____D C:\Users\info\AppData\Local\Comms 2021-12-23 19:10 - 2020-11-18 18:00 - 019813656 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPRes.dll 2021-12-23 19:10 - 2020-11-18 18:00 - 004246296 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPEnh.exe 2021-12-23 19:10 - 2020-11-18 18:00 - 000810776 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll 2021-12-23 19:10 - 2020-11-18 18:00 - 000760600 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys 2021-12-23 19:10 - 2020-11-18 18:00 - 000339224 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPEnhService.exe 2021-12-23 19:10 - 2020-11-18 18:00 - 000275736 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll 2021-12-23 19:10 - 2020-11-18 18:00 - 000062744 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynRMIHID.sys 2021-12-23 19:09 - 2021-12-25 13:19 - 000000000 ____D C:\Intel 2021-12-23 19:09 - 2021-12-23 19:09 - 000000000 ____D C:\Users\info\AppData\LocalLow\Intel 2021-12-23 19:08 - 2021-12-25 13:20 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-12-23 19:08 - 2021-12-23 19:08 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk 2021-12-23 19:08 - 2021-12-23 19:08 - 000000000 ____D C:\Program Files\PCHealthCheck 2021-12-23 19:08 - 2020-09-28 09:29 - 000305992 _____ C:\WINDOWS\system32\libmfxhw64.dll 2021-12-23 19:08 - 2020-09-28 09:29 - 000254520 _____ C:\WINDOWS\SysWOW64\libmfxhw32.dll 2021-12-23 19:08 - 2020-09-28 09:29 - 000171464 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll 2021-12-23 19:08 - 2020-09-28 09:29 - 000146752 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll 2021-12-23 19:08 - 2020-09-28 09:28 - 026677048 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll 2021-12-23 19:08 - 2020-09-28 09:28 - 013520184 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll 2021-12-23 19:08 - 2020-09-28 09:28 - 001790200 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2021-12-23 19:08 - 2020-09-28 09:28 - 001790200 _____ C:\WINDOWS\system32\vulkaninfo.exe 2021-12-23 19:08 - 2020-09-28 09:28 - 001386232 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-12-23 19:08 - 2020-09-28 09:28 - 001386232 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2021-12-23 19:08 - 2020-09-28 09:28 - 001096288 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2021-12-23 19:08 - 2020-09-28 09:28 - 001096288 _____ C:\WINDOWS\system32\vulkan-1.dll 2021-12-23 19:08 - 2020-09-28 09:28 - 000949344 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2021-12-23 19:08 - 2020-09-28 09:28 - 000949344 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2021-12-23 19:08 - 2020-09-28 09:28 - 000462648 _____ C:\WINDOWS\system32\ze_loader.dll 2021-12-23 19:08 - 2020-09-28 09:28 - 000148792 _____ C:\WINDOWS\system32\ze_validation_layer.dll 2021-12-23 19:07 - 2021-12-24 17:22 - 000000000 ____D C:\Users\info\AppData\Local\PlaceholderTileLogoFolder 2021-12-23 19:07 - 2021-12-23 19:36 - 000000000 ____D C:\Users\info\OneDrive\Dokumente\SQLServer 2021-12-23 19:07 - 2021-12-23 19:07 - 000000000 ___HD C:\OneDriveTemp 2021-12-23 19:07 - 2021-12-23 19:07 - 000000000 ____D C:\Users\info\OneDrive\Dokumente\Eigene Etiketten 2021-12-23 19:07 - 2020-03-06 01:10 - 000481464 _____ C:\WINDOWS\system32\Drivers\dsp_fw_release.bin 2021-12-23 19:06 - 2021-12-25 13:19 - 000000000 ___RD C:\Users\info\OneDrive 2021-12-23 19:05 - 2021-12-25 13:23 - 000000000 ____D C:\Users\info\AppData\Local\Packages 2021-12-23 19:05 - 2021-12-24 19:29 - 000000000 ____D C:\Users\info\AppData\Local\D3DSCache 2021-12-23 19:05 - 2021-12-24 12:47 - 000000000 ____D C:\Users\info\AppData\Local\ConnectedDevicesPlatform 2021-12-23 19:05 - 2021-12-23 19:13 - 000000000 ____D C:\Users\info\AppData\Local\Publishers 2021-12-23 19:05 - 2021-12-23 19:05 - 000000000 ___RD C:\Users\info\3D Objects 2021-12-23 19:05 - 2021-12-23 19:05 - 000000000 ____D C:\Users\info\AppData\Roaming\Adobe 2021-12-23 19:05 - 2021-12-23 19:05 - 000000000 ____D C:\Users\info\AppData\Local\VirtualStore 2021-12-23 19:03 - 2021-12-24 19:08 - 000002396 _____ C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-12-23 19:02 - 2020-07-21 11:16 - 006041856 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RsDMFT64.dll 2021-12-23 18:51 - 2021-12-23 18:51 - 000000000 ____D C:\WINDOWS\CSC 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\Vorlagen 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\Startmenü 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\Netzwerkumgebung 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\Lokale Einstellungen 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\Eigene Dateien 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\Druckumgebung 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Users\Default\Anwendungsdaten 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Programme 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\ProgramData\Vorlagen 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\ProgramData\Startmenü 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\ProgramData\Dokumente 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\ProgramData\Anwendungsdaten 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Program Files\Gemeinsame Dateien 2021-12-23 18:49 - 2021-12-23 18:49 - 000000000 _SHDL C:\Dokumente und Einstellungen 2021-12-23 18:48 - 2021-12-25 13:19 - 000012288 ___SH C:\DumpStack.log.tmp ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-12-25 13:40 - 2021-06-05 13:09 - 000000000 ____D C:\WINDOWS\INF 2021-12-25 13:29 - 2021-06-05 13:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-12-25 13:28 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\appcompat 2021-12-25 13:23 - 2021-06-05 18:52 - 000722046 _____ C:\WINDOWS\system32\perfh007.dat 2021-12-25 13:23 - 2021-06-05 18:52 - 000149110 _____ C:\WINDOWS\system32\perfc007.dat 2021-12-25 13:23 - 2021-06-05 13:10 - 000000000 ___HD C:\Program Files\WindowsApps 2021-12-25 13:23 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-12-25 13:23 - 2020-11-19 00:54 - 000000000 ____D C:\ProgramData\Packages 2021-12-25 13:22 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemTemp 2021-12-25 13:20 - 2021-06-05 13:10 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-12-25 13:19 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\ServiceState 2021-12-24 19:32 - 2021-06-05 13:01 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-12-24 19:30 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\servicing 2021-12-24 19:30 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-12-24 19:15 - 2021-06-05 13:10 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-12-24 19:15 - 2020-11-19 00:54 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-12-24 19:14 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-12-24 19:14 - 2021-06-05 13:10 - 000000000 ____D C:\Program Files\Windows NT 2021-12-24 19:14 - 2021-06-05 13:10 - 000000000 ____D C:\Program Files\Windows Defender 2021-12-24 19:14 - 2021-06-05 13:01 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-12-24 19:13 - 2021-06-05 13:10 - 000000000 __RHD C:\Users\Public\Libraries 2021-12-24 19:12 - 2020-11-19 00:53 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-12-24 19:12 - 2020-11-19 00:53 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-12-24 19:11 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2021-12-24 19:11 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\spool 2021-12-24 19:11 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData 2021-12-24 19:11 - 2021-06-05 13:10 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-12-24 19:11 - 2021-06-05 13:08 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2021-12-24 19:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2021-12-24 19:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2021-12-24 18:52 - 2021-06-05 13:10 - 000000000 ____D C:\ProgramData\USOPrivate 2021-12-24 18:49 - 2021-06-05 13:14 - 000000000 ____D C:\WINDOWS\Setup 2021-12-24 18:47 - 2021-06-05 19:00 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemResources 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\setup 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\id-ID 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\gl-ES 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\et-EE 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\es-MX 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\ca-ES 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\appraiser 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-12-24 18:47 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-12-24 18:44 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\OCR 2021-12-24 18:43 - 2021-06-05 19:00 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-12-24 18:43 - 2021-06-05 19:00 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-12-24 18:43 - 2021-06-05 18:52 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2021-12-24 18:43 - 2021-06-05 18:52 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2021-12-24 18:43 - 2021-06-05 18:52 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2021-12-24 18:43 - 2021-06-05 18:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2021-12-24 18:43 - 2021-06-05 18:52 - 000000000 ____D C:\WINDOWS\system32\winrm 2021-12-24 18:43 - 2021-06-05 18:52 - 000000000 ____D C:\WINDOWS\system32\WCN 2021-12-24 18:43 - 2021-06-05 18:52 - 000000000 ____D C:\WINDOWS\system32\slmgr 2021-12-24 18:43 - 2021-06-05 18:52 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\system32\dsc 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-12-24 18:43 - 2021-06-05 13:10 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-12-24 12:56 - 2020-11-19 00:51 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2021-12-24 17:03 - 2021-12-24 18:53 - 000000128 _____ () C:\Users\info\AppData\Local\PUTTY.RND ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
Themen zu Bitte Analysieren Sie meine PC |
computer, defender, desktop, explorer.exe, firewall, google, icon, ics, internet, internet explorer, links, logitech, microsoft, mozilla, neu, office, performance, registry, scan, server, setup, software, system, system32, windows |