|
Netzwerk und Hardware: Hotspot shield malware und chrome.exeWindows 7 Hilfe zu Motherboards, CPUs, Lüfter, Raid-Controller, Digitalkameras, Treiber usw. Bitte alle relevanten Angaben zur Hardware machen. Welche Hardware habe ich? Themen zum Trojaner Entfernen oder Viren Beseitigung bitte in den Bereinigungsforen des Trojaner-Boards posten. |
14.07.2022, 11:29 | #1 |
| Hotspot shield malware und chrome.exe Siehe mein vor einigen Tagen gerade abgeschlossenes Thema. 2 Dinge sind passiert: ich habe Hotel wieder installiert und dann entfernt. Malwarebytes ist im Hintergrund weiter gelaufen und hat irgendwann ein pop up geöffnet, das Chrome.exe ein Trojaner ist. Daraufhin habe ich einen scan mit Malwarebytes durchgeführt. Dabei wurde keine Schadsoftware gefunden. Ich habe dann der Reihe nach Frst, Malwarebytes, Adwcleaner und roguekiller laufen lassen. Dabei wurde nur Hotspot Shield malware gefunden, keine Meldung bezüglich chrome Im folgenden die Log-Dateien: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 11-07-2022 durchgeführt von wrt (Administrator) auf RYZEN (Acer Aspire GX-281) (14-07-2022 16:18:32) Gestartet von C:\Users\wrt\Downloads Geladene Profile: wrt Plattform: Microsoft Windows 10 Pro Version 21H2 19044.1766 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Chrome Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2> (C:\Program Files\Everything\Everything.exe ->) (ADLICE -> ) C:\Users\wrt\Downloads\RogueKiller_portable64.exe (C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\browsernativehost.exe ->) (FreeDownloadManager.org) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\fdm.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (cmd.exe ->) () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\browsernativehost.exe (cmd.exe ->) (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\dgnria_nmhost.exe (explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\winkmd\TOTALCMD64.EXE (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <32> (explorer.exe ->) (voidtools -> voidtools) C:\Program Files\Everything\Everything.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (services.exe ->) (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (svchost.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.722.5052.0_x64__8wekyb3d8bbwe\GameBar.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.722.5052.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16706080 2018-03-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2782096 2010-07-26] (Canon Inc. -> CANON INC.) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [585296 2017-12-22] (Acronis International GmbH -> ) HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2075480 2013-06-24] (Flexera Software LLC -> Flexera Software LLC.) HKLM-x32\...\Run: [DNS7reminder] => C:\Program Files (x86)\Nuance\NaturallySpeaking13\Ereg\Ereg.exe [325960 2014-05-30] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [4871640 2021-12-02] (Acronis International GmbH -> ) HKLM-x32\...\Run: [Bonus.SSR.FR11] => C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe [1364496 2013-06-28] (ABBYY PRODUCTION LLC -> ABBYY Production LLC) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [3237808 2018-01-09] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKLM-x32\...\Run: [DocFetcher-Daemon] => C:\Program Files (x86)\DocFetcher\docfetcher-daemon-windows.exe [563621 2021-05-26] () [Datei ist nicht signiert] HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452016 2010-09-09] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [10587912 2022-07-04] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [AllShareAgent] => C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe [285072 2012-03-01] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [279240 2016-12-09] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [Everything] => C:\Program Files (x86)\Everything\Everything.exe [1774160 2021-01-25] (voidtools -> voidtools) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [425864 2017-12-22] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [117528 2022-02-18] (VMware, Inc. -> VMware, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [708840 2022-04-26] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Beschränkung <==== ACHTUNG HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2075480 2013-06-24] (Flexera Software LLC -> Flexera Software LLC.) HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Run: [Free Download Manager] => C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\fdm.exe [10203648 2019-01-30] (FreeDownloadManager.org) [Datei ist nicht signiert] HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31162288 2021-04-29] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [116056952 2022-02-23] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Run: [MicrosoftEdgeAutoLaunch_46CDB3F20D5A4745D54DCEE527247EDD] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-07-06] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Run: [Opera Browser Assistant] => C:\Users\wrt\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4110832 2022-07-06] (Opera Norway AS -> Opera Software) HKU\S-1-5-21-779246859-3990032973-3551585165-500\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2632088 2022-07-14] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-779246859-3990032973-3551585165-500\...\Run: [886685649D2A507C991FC995626687C37E813F73._service_run] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8 [3601824 2022-07-06] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\Canon G3010 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDEI.DLL [482816 2017-08-22] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\Canon MX420 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDAM.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX420 series: C:\WINDOWS\system32\CNCALAM.DLL [302080 2010-10-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor G3010 series: C:\WINDOWS\system32\CNMLMEI.DLL [1303040 2017-08-22] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MX420 series: C:\WINDOWS\system32\CNMLMAM.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2012-06-14] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Print\Monitors\FPR10:: C:\WINDOWS\system32\fpmon10-x64.dll [226760 2020-09-01] (FinePrint Software, LLC -> FinePrint Software, LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\103.0.5060.114\Installer\chrmstp.exe [2022-07-05] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MaxLauncher.lnk [2020-01-08] ShortcutTarget: MaxLauncher.lnk -> C:\Program Files\MaxLauncher\MaxLauncher.exe (Roberto Concepcion) [Datei ist nicht signiert] Startup: C:\Users\wrt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2021-05-15] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\Users\wrt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Data [2021-03-09] Startup: C:\Users\wrt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DocFetcher Pro Demo Daemon.lnk [2022-01-03] ShortcutTarget: DocFetcher Pro Demo Daemon.lnk -> C:\Program Files\DocFetcher Pro Demo\docfetcher-pro-daemon-d.exe () [Datei ist nicht signiert] Startup: C:\Users\wrt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dragon NaturallySpeaking.lnk [2021-07-25] ShortcutTarget: Dragon NaturallySpeaking.lnk -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\natspeak.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) Startup: C:\Users\wrt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IntentionActivator.exe - Verknüpfung.lnk [2018-10-12] ShortcutTarget: IntentionActivator.exe - Verknüpfung.lnk -> C:\Program Files (x86)\Intention activator\IntentionActivator.exe () [Datei ist nicht signiert] Startup: C:\Users\wrt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MadAppLauncher.lnk [2018-03-06] ShortcutTarget: MadAppLauncher.lnk -> C:\Programme wr\MadAppLauncher\MadAppLauncher.exe () [Datei ist nicht signiert] ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {001E3010-73A9-417D-A80E-F9AF7C7FDAF2} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) Task: {03C846F1-A7FF-42B2-8AD4-0E7F3A828350} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23378880 2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Task: {044F3AA5-8042-4853-849E-0F81E1F6C836} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [40880 2021-04-29] (Garmin International, Inc. -> ) Task: {0B5CD838-6196-497F-A350-15198F19090D} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1709344 2021-03-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {0BBF98D4-26A7-49BD-8376-A34D997F2AB7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145304 2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Task: {1505733E-46E8-478B-B9D1-BCCEC589E27A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:NHV12:{} /WakeupRun (Zugriff verweigert) <==== ACHTUNG Task: {15FFF743-AB60-4A18-8C22-FE1D150CBC6C} - System32\Tasks\Opera scheduled assistant Autoupdate 1627569296 => C:\Users\wrt\AppData\Local\Programs\Opera\launcher.exe [2518008 2022-07-05] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\wrt\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {2D7AE1B1-188E-462C-8EF4-7A58B98DDC72} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:NHV12:{} /CalendarRun (Zugriff verweigert) <==== ACHTUNG Task: {3B85578C-5601-4C8F-A171-8A0954F8B0C9} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {3F20E8F7-0FD2-49EC-AAC3-5A7F89E6DC7E} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [3867928 2020-11-15] (Nero AG -> Nero AG) Task: {419869E2-0CFF-40DA-BC7D-F079A6B7444C} - System32\Tasks\EZCastServiceSchedule => C:\Program Files (x86)\EZCast\EZCast.exe [6048064 2019-10-08] (Actions Microelectronics Co.,Ltd. -> ) Task: {45983CCD-82A3-498E-83F9-F4E2E87F29FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-03-03] (Google Inc -> Google Inc.) Task: {48A93B24-DC7E-4336-B161-DE203CD5C92F} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:NHV12:{} (Zugriff verweigert) <==== ACHTUNG Task: {4E48C07D-7DB7-49AE-8E39-4E90DCEFBDAE} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1709344 2021-03-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {5A607ACA-A8E9-4167-AECF-4002C3FB0650} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [566592 2008-07-30] (Apple Inc. -> Apple Inc.) Task: {68BDCA2C-CED7-4006-A158-6DF0C85EE5F2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-03-03] (Google Inc -> Google Inc.) Task: {7159ADE2-418F-4A6D-8241-C5043AC33E3F} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-779246859-3990032973-3551585165-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214144 2022-07-14] (Microsoft Corporation -> Microsoft Corporation) Task: {873491E9-B7CD-45F9-96D6-08C36CA12967} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [68176 2021-03-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {8E3C2A42-887A-47DE-9AC1-7EAB7E5AB9A5} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214144 2022-07-14] (Microsoft Corporation -> Microsoft Corporation) Task: {92668079-69A8-42CB-A2EA-FB8864ABF954} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.) Task: {9DDBC009-01A8-4318-A6D6-189363669F13} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145304 2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Task: {A079ACB7-7695-4D4B-BE58-3EC2B91DBFF5} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60496 2021-03-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {A460D746-9FC0-480E-B15E-F682DC49BEE7} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1000928 2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Task: {D1B64B0F-2D8B-406F-891F-56F6670B325D} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [64416 2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Task: {D4A2E6A3-E5BF-46C9-95A4-807FB79BAF60} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-779246859-3990032973-3551585165-500 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214144 2022-07-14] (Microsoft Corporation -> Microsoft Corporation) Task: {D5A2A4E8-2F20-4616-BBF6-C08798907DBA} - System32\Tasks\Opera scheduled Autoupdate 1627569282 => C:\Users\wrt\AppData\Local\Programs\Opera\launcher.exe [2518008 2022-07-05] (Opera Norway AS -> Opera Software) Task: {E31D94B8-5EE5-4C3F-B6AD-38D8332D8DCE} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [220816 2019-10-01] (Tweaking LLC -> Tweaking.com) Task: {F7259928-9C54-4484-8AB8-D2BDAF92A119} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23378880 2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Task: {FDB7BF1B-9611-4EDC-A21E-C92A9577C71D} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{2533f77b-1d4f-435f-8466-79d6e3c81c4b}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{275bfb08-bb13-4461-8f88-8a01ff26ae94}: [DhcpNameServer] 192.168.0.1 0.0.0.0 Tcpip\..\Interfaces\{38e77d75-a546-469b-aadf-57a377551e87}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{5fdf102f-d92b-4e9e-b85c-8ab59ac3823c}: [DhcpNameServer] 192.168.0.1 0.0.0.0 Tcpip\..\Interfaces\{74f45b62-e5e7-4339-82ef-bd29351a171d}: [DhcpNameServer] 8.8.8.8 Tcpip\..\Interfaces\{89062fd4-48a3-410d-8b24-b45bd6b0332d}: [DhcpNameServer] 192.168.0.1 0.0.0.0 Tcpip\..\Interfaces\{94d30481-e060-45fd-bd5f-d15ad7158a23}: [DhcpNameServer] 192.168.0.1 0.0.0.0 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <==== ACHTUNG Edge: ======= DownloadDir: C:\Users\wrt\Downloads Edge DefaultProfile: Default Edge Profile: C:\Users\wrt\AppData\Local\Microsoft\Edge\User Data\Default [2022-07-14] Edge DownloadDir: Default -> C:\Users\wrt\Downloads Edge Extension: (Malwarebytes Browser Guard) - C:\Users\wrt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2022-07-07] Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] FireFox: ======== FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: nuance.com/DgnRia2_x86_64 -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\x64\npDgnRia2_x64.dll [2014-11-04] (Nuance Communications, Inc. -> Nuance Communications, Inc.) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Datei ist nicht signiert] FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google Inc -> Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.333.2 -> C:\Program Files (x86)\Java\jre1.8.0_333\bin\dtplugin\npDeployJava1.dll [2022-06-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.333.2 -> C:\Program Files (x86)\Java\jre1.8.0_333\bin\plugin2\npjp2.dll [2022-06-07] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2022-06-05] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: nuance.com/DgnRia2 -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\npDgnRia2.dll [2014-11-04] (Nuance Communications, Inc. -> Nuance Communications, Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default [2022-07-14] CHR Notifications: Default -> hxxps://calendar.google.com CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms} CHR DefaultSearchKeyword: Default -> duckduckgo.com CHR DefaultNewTabURL: Default -> hxxps://duckduckgo.com/chrome_newtab CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list CHR Session Restore: Default -> ist aktiviert. CHR Extension: (Google Übersetzer) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-12] CHR Extension: (Free Download Manager) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2021-10-21] CHR Extension: (DuckDuckGo) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2022-07-01] CHR Extension: (Tab Manager Plus for Chrome) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkdjjdmfiffagllbiiilooaoofcoeff [2020-06-22] CHR Extension: (Dragon Weberweiterung) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddaloccgjfibfpkalenodgehlhkgoahe [2020-07-17] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-07-01] CHR Extension: (Voice Recognition) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikjmfindklfaonkodbnidahohdfbdhkn [2020-01-08] CHR Extension: (Nehmen Sie vollständige Webseiten auf - FireShot) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcbpblocgmgfnpjjppndjkmgjaogfceg [2022-06-16] CHR Extension: (SingleFile) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpiodijhokgodhhofbcjdecpffjipkle [2022-07-14] CHR Extension: (Hotspot Shield Free VPN Proxy - Unlimited VPN) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlbejmccbhkncgokjcmghpfloaajcffj [2022-07-12] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30] CHR Profile: C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-07-05] CHR Extension: (Präsentationen) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-08-22] CHR Extension: (Docs) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2018-08-22] CHR Extension: (Google Drive) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-29] CHR Extension: (YouTube) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-08-22] CHR Extension: (Adobe Acrobat) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-10-29] CHR Extension: (ZenMate Free VPN – Bestes VPN für Chrome) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2020-10-29] CHR Extension: (Tabellen) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-08-22] CHR Extension: (Google Docs Offline) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-10-29] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2020-10-29] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-10-29] CHR Extension: (Google Mail) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-29] CHR Extension: (Chrome Media Router) - C:\Users\wrt\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-10-29] CHR Profile: C:\Users\wrt\AppData\Local\Google\Chrome\User Data\System Profile [2022-07-05] CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKU\S-1-5-21-779246859-3990032973-3551585165-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] Opera: ======= OPR Profile: C:\Users\wrt\AppData\Roaming\Opera Software\Opera Stable [2022-07-14] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\wrt\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-06-24] OPR Extension: (Opera Crypto Wallet) - C:\Users\wrt\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-06-24] OPR Extension: (Amazon Assistant Promotion) - C:\Users\wrt\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-10-10] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 ABBYY.Licensing.FineReader.Professional.11.0; C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe [821048 2013-06-17] (ABBYY PRODUCTION LLC -> ABBYY InfoPoisk LLC) R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [2728304 2021-12-02] (Acronis International GmbH -> Acronis International GmbH) R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1216760 2017-12-22] (Acronis International GmbH -> ) S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.) R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6096688 2021-12-09] (Acronis International GmbH -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12111264 2022-07-09] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46864 2022-07-04] (Dropbox, Inc -> Dropbox, Inc.) R2 DragonLoggerService; C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe [151616 2014-11-04] (Nuance Communications, Inc. -> Nuance Communications, Inc.) S2 Everything; C:\Program Files (x86)\Everything\Everything.exe [1774160 2021-01-25] (voidtools -> voidtools) S2 EZCastService; C:\Program Files (x86)\EZCast\EZCastService.exe [286016 2019-10-08] (Actions Microelectronics Co.,Ltd. -> ) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncHelper.exe [3381632 2022-07-14] (Microsoft Corporation -> Microsoft Corporation) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> ) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8677120 2022-07-01] (Malwarebytes Inc. -> Malwarebytes) S2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4882992 2021-12-02] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2017-12-22] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [1753528 2021-12-02] (Acronis International GmbH -> ) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.131.0619.0001\OneDriveUpdaterService.exe [3822496 2022-07-14] (Microsoft Corporation -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6254368 2022-06-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7157960 2021-12-02] (Acronis International GmbH -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2018-03-06] (AnchorFree Inc -> The OpenVPN Project) R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 DRHARD64; C:\WINDOWS\system32\drivers\DRHARD64.sys [21984 2011-11-03] (Peter A. Gebhard Softwareentwicklung -> Licensed for Gebhard Software) R2 DRHMSR64; C:\WINDOWS\system32\drivers\DRHMSR64.sys [13760 2013-07-21] (Peter A. Gebhard Softwareentwicklung -> ) R3 DroidCam; C:\WINDOWS\System32\drivers\droidcam.sys [33592 2015-05-24] (DEV47 APPS -> Dev47Apps) R3 DroidCamVideo; C:\WINDOWS\System32\drivers\droidcamvideo.sys [230712 2015-05-24] (DEV47 APPS -> Windows (R) Win 7 DDK provider) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2022-07-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [569392 2021-12-09] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [379664 2021-12-09] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R0 fltsrv; C:\WINDOWS\System32\DRIVERS\fltsrv.sys [182832 2018-04-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-07-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-07-01] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [192960 2022-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [74704 2022-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-07-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181992 2022-07-14] (Malwarebytes Inc. -> Malwarebytes) R2 npf; C:\WINDOWS\system32\drivers\npf.sys [36600 2019-07-16] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [162360 2018-05-20] (Disc Soft Ltd -> Duplex Secure Ltd) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1310552 2021-12-09] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [213336 2021-12-09] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [690520 2021-12-09] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [41920 2022-07-14] (ADLICE (Julien ASCOET) -> ) S3 usbser; C:\Windows\SysWOW64\drivers\usbser.sys [26112 2013-07-04] (Microsoft Corporation) [Datei ist nicht signiert] R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [331976 2021-12-09] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R1 vmkbd3; C:\WINDOWS\system32\DRIVERS\vmkbd.sys [60344 2022-01-12] (VMware, Inc. -> VMware, Inc.) R2 VMnetBridge; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [67072 2022-02-18] (VMware, Inc. -> VMware, Inc.) R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [243472 2021-12-09] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [105912 2021-08-16] (VMware, Inc. -> VMware, Inc.) R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [38320 2022-02-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.) S3 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-06-23] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2018-03-03] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) S3 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-23] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-23] (Microsoft Windows -> Microsoft Corporation) S3 hsstap; \SystemRoot\System32\drivers\hsstap.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-07-14 16:18 - 2022-07-14 16:20 - 000038104 _____ C:\Users\wrt\Downloads\FRST.txt 2022-07-14 16:17 - 2022-07-14 16:19 - 000000000 ____D C:\FRST 2022-07-14 16:00 - 2022-07-14 16:06 - 000000000 ____D C:\Users\wrt\Desktop\scan 1407 2022-07-14 15:51 - 2022-07-14 15:51 - 000010890 _____ C:\Users\wrt\Downloads\roguekiller.txt, 2022-07-14 13:46 - 2022-07-14 13:46 - 000074704 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2022-07-14 13:45 - 2022-07-14 13:45 - 000192960 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2022-07-14 13:45 - 2022-07-14 13:45 - 000181992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2022-07-13 21:33 - 2022-07-13 21:33 - 000001415 _____ C:\Users\wrt\Desktop\malwarebytes ERgebnis.txt 2022-07-13 09:29 - 2022-07-13 21:27 - 000000000 ____D C:\Users\wrt\Desktop\JPG s 2022-07-11 20:19 - 2022-07-11 20:19 - 002369536 _____ (Farbar) C:\Users\wrt\Downloads\FRST64 (1).exe 2022-07-11 10:06 - 2022-07-11 10:06 - 000000000 _____ C:\Users\wrt\AppData\Roaming\.NANotifyHere 2022-07-09 07:14 - 2022-07-09 07:14 - 001681396 _____ C:\Users\wrt\Downloads\ELB-Discharge_report_(ueber_Browser_oeffnen)_#0106202210480065.pdf 2022-07-09 07:14 - 2022-07-09 07:14 - 001681396 _____ C:\Users\wrt\Downloads\ELB-Discharge_report_(ueber_Browser_oeffnen)_#0106202210480065 (1).pdf 2022-07-08 09:11 - 2022-07-08 09:11 - 000000000 ____D C:\Users\wrt\Documents\Custom Office Templates 2022-07-07 12:14 - 2022-07-07 12:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2022-07-07 06:55 - 2022-07-14 12:57 - 000000000 ____D C:\Users\wrt\AppData\LocalLow\IGDump 2022-07-07 06:54 - 2022-07-07 06:54 - 000000008 __RSH C:\ProgramData\ntuser.pol 2022-07-06 08:34 - 2022-07-06 08:34 - 001011049 _____ C:\Users\wrt\Downloads\20210921_EnergyFlowsUserGuide.pdf 2022-07-05 06:50 - 2022-07-05 06:50 - 000138646 _____ C:\Users\wrt\Downloads\Re_ Für die Frage gibt es eine Antwort_ kein Mikrofonsymbol in Word für Android.eml 2022-07-05 06:46 - 2022-07-05 06:46 - 000081256 _____ C:\Users\wrt\Downloads\Screenshot_2022-07-04-14-10-05-44_a27b88515698e5a58d06d430da63049d.jpg.fdmdownload 2022-07-04 21:36 - 2022-07-04 21:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2022-07-04 21:36 - 2022-07-04 21:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2022-07-04 21:36 - 2022-07-04 21:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2022-07-04 21:36 - 2022-07-04 21:36 - 000046864 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2022-07-03 16:54 - 2022-07-03 16:54 - 000000000 ____D C:\Users\wrt\.ms-ad 2022-07-03 15:58 - 2022-07-14 13:55 - 000041920 _____ C:\WINDOWS\system32\Drivers\truesight.sys 2022-07-03 15:53 - 2022-07-03 16:15 - 000000000 ____D C:\ProgramData\RogueKiller 2022-07-03 15:51 - 2022-07-03 15:52 - 034312152 _____ C:\Users\wrt\Downloads\RogueKiller_portable64.exe 2022-07-03 15:42 - 2022-07-03 15:42 - 000001414 _____ C:\Users\wrt\Desktop\mbam 2.txt 2022-07-02 20:30 - 2022-07-02 20:35 - 000000000 ____D C:\AdwCleaner 2022-07-02 10:36 - 2022-07-02 10:34 - 000084250 _____ C:\Users\wrt\Downloads\Rechnung Juni .pdf 2022-07-02 10:36 - 2022-07-02 08:00 - 000070551 _____ C:\Users\wrt\Downloads\Gesprächsprotokoll Juni.pdf 2022-07-02 07:46 - 2022-07-02 07:46 - 000052138 _____ C:\Users\wrt\Downloads\call_history_2022-06.csv 2022-07-01 20:13 - 2022-07-01 20:13 - 000000000 ____D C:\Users\wrt\AppData\Local\mbam 2022-07-01 20:12 - 2022-07-01 20:12 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2022-07-01 20:12 - 2022-07-01 20:12 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2022-07-01 20:12 - 2022-07-01 20:12 - 000002041 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2022-07-01 20:12 - 2022-07-01 20:12 - 000002029 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2022-07-01 20:12 - 2022-07-01 20:11 - 000158640 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2022-07-01 20:12 - 2022-07-01 20:11 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2022-07-01 20:10 - 2022-07-01 20:10 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-07-01 20:10 - 2022-07-01 20:10 - 000000000 ____D C:\Program Files\Malwarebytes 2022-06-28 08:25 - 2022-06-28 08:25 - 000002784 _____ C:\Users\wrt\AppData\Local\recently-used.xbel 2022-06-27 19:17 - 2022-06-27 19:17 - 000002662 _____ C:\Users\wrt\Neues Dokument 2.2022_06_27_19_17_25.0.svg 2022-06-27 18:59 - 2022-06-27 18:59 - 000001649 _____ C:\Users\wrt\Desktop\cherrytree - Verknüpfung.lnk 2022-06-24 17:39 - 2022-06-24 17:58 - 000066785 _____ C:\Users\wrt\Desktop\FRST_24-06-2022 17.39.12.txt 2022-06-24 17:39 - 2022-06-24 17:39 - 000106348 _____ C:\Users\wrt\Desktop\Addition_24-06-2022 17.39.12.txt 2022-06-24 17:27 - 2022-06-24 17:57 - 000066785 _____ C:\Users\wrt\Desktop\FRST.txt 2022-06-24 16:47 - 2022-06-24 16:47 - 000064320 _____ C:\Users\wrt\Downloads\Download.htm 2022-06-24 02:04 - 2022-06-24 02:04 - 000056366 _____ C:\Users\wrt\Downloads\ernaehrungstagebuch102.pdf 2022-06-23 21:06 - 2022-06-23 21:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode 64bit 2022-06-23 13:50 - 2022-06-23 13:50 - 019590136 _____ (XMedia Recode 64bit ) C:\Users\wrt\Downloads\XMediaRecode3558_x64_setup.exe 2022-06-21 17:45 - 2022-06-22 13:41 - 000056201 _____ C:\Users\wrt\Desktop\dotts auf pc.ods 2022-06-21 08:13 - 2022-06-21 08:13 - 000234088 _____ C:\Users\wrt\Downloads\kasikto ausz.pdf 2022-06-21 08:10 - 2022-06-21 08:10 - 000227864 _____ C:\Users\wrt\Downloads\0c423fcb-fe2c-489d-8328-023f7522824f.pdf 2022-06-20 20:38 - 2022-06-29 20:13 - 000000000 ____D C:\Users\wrt\Downloads\bilder für lazada 2022-06-20 11:25 - 2022-06-20 11:25 - 000000000 ____D C:\Users\wrt\AppData\Roaming\Pdfsvg 2022-06-20 11:23 - 2022-06-20 11:23 - 000000000 ____D C:\Users\wrt\Documents\eBook Converter 2022-06-20 11:23 - 2022-06-20 11:23 - 000000000 ____D C:\Users\Public\Documents\eBook Converter 2022-06-20 07:54 - 2022-06-24 11:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBook Converter 2022-06-16 19:33 - 2022-06-16 19:33 - 001349689 _____ C:\Users\wrt\Downloads\Gamma40Manual.pdf 2022-06-15 23:40 - 2022-06-15 23:40 - 021111172 _____ (The OSCAR Team ) C:\Users\wrt\Downloads\OSCAR-1.4.0-Win64.exe 2022-06-15 22:07 - 2022-06-15 22:07 - 000479744 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2022-06-15 22:07 - 2022-06-15 22:07 - 000040960 _____ C:\WINDOWS\system32\uwfservicingapi.dll 2022-06-15 22:06 - 2022-06-15 22:06 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-06-15 22:06 - 2022-06-15 22:06 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll 2022-06-15 22:06 - 2022-06-15 22:06 - 000011787 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-06-15 22:05 - 2022-06-15 22:05 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-06-15 22:05 - 2022-06-15 22:05 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2022-06-15 21:29 - 2022-06-15 21:29 - 000000000 ___HD C:\$WinREAgent ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-07-14 16:16 - 2020-03-09 18:53 - 000000000 ____D C:\Users\wrt\AppData\Local\Free Download Manager 2022-07-14 16:11 - 2019-12-07 16:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-07-14 16:00 - 2018-03-03 18:27 - 000000000 ____D C:\Users\wrt\AppData\Local\GHISLER 2022-07-14 15:53 - 2019-02-10 23:11 - 000000000 ____D C:\Users\wrt\AppData\Roaming\Everything 2022-07-14 15:50 - 2021-03-09 16:56 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-07-14 15:40 - 2018-03-03 19:05 - 000000000 ____D C:\Program Files (x86)\Google 2022-07-14 14:31 - 2019-12-07 16:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-07-14 14:31 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-07-14 13:50 - 2019-08-15 10:56 - 000000000 ____D C:\Users\wrt\AppData\Local\CrashDumps 2022-07-14 13:45 - 2021-08-23 10:06 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2022-07-14 13:45 - 2021-03-09 17:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-07-14 13:45 - 2021-03-09 16:56 - 000008192 ___SH C:\DumpStack.log.tmp 2022-07-14 13:45 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\ServiceState 2022-07-14 13:45 - 2018-03-05 20:24 - 000000000 ____D C:\ProgramData\VMware 2022-07-14 13:30 - 2019-12-07 16:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2022-07-14 13:30 - 2018-03-04 01:11 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin 2022-07-14 13:29 - 2020-02-28 16:34 - 000000000 ____D C:\Users\wrt\AppData\Roaming\calibre 2022-07-14 13:29 - 2019-02-10 23:11 - 000000000 ____D C:\Users\wrt\AppData\Local\Everything 2022-07-14 13:29 - 2018-03-04 21:30 - 000000000 ____D C:\ProgramData\TEMP 2022-07-14 13:03 - 2018-03-06 08:08 - 000002350 _____ C:\Users\wrt\Documents\Default.rdp 2022-07-14 11:34 - 2021-12-13 00:51 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-779246859-3990032973-3551585165-500 2022-07-14 11:34 - 2021-03-09 17:23 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2022-07-14 11:33 - 2021-12-13 00:51 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-779246859-3990032973-3551585165-1001 2022-07-14 11:33 - 2020-05-21 16:41 - 000002156 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-07-14 08:19 - 2019-12-07 16:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2022-07-14 08:16 - 2021-03-09 17:12 - 001598370 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-07-14 08:16 - 2019-12-07 21:51 - 000687482 _____ C:\WINDOWS\system32\perfh007.dat 2022-07-14 08:16 - 2019-12-07 21:51 - 000142466 _____ C:\WINDOWS\system32\perfc007.dat 2022-07-14 08:16 - 2019-12-07 16:13 - 000000000 ____D C:\WINDOWS\INF 2022-07-14 08:15 - 2018-03-04 01:11 - 000000000 ____D C:\ProgramData\Package Cache 2022-07-14 08:00 - 2018-03-04 22:30 - 000001515 _____ C:\Users\wrt\AppData\Roaming\SAS7_000.DAT 2022-07-14 06:56 - 2018-03-06 08:46 - 000000000 ____D C:\Users\wrt\AppData\Roaming\VMware 2022-07-13 20:47 - 2018-03-06 08:46 - 000000000 ____D C:\Users\wrt\AppData\Local\VMware 2022-07-13 17:46 - 2018-05-20 14:24 - 000000000 ____D C:\Users\wrt\AppData\Local\D3DSCache 2022-07-13 13:14 - 2018-03-03 19:15 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-07-13 13:08 - 2018-03-03 19:15 - 146546848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-07-13 11:52 - 2021-03-09 11:44 - 000000000 ____D C:\Users\wrt 2022-07-13 11:35 - 2021-03-09 11:44 - 000000000 ____D C:\Users\Administrator 2022-07-12 18:31 - 2022-04-03 20:11 - 000000000 ____D C:\Users\wrt\Desktop\LLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLösch 2022-07-12 10:09 - 2021-02-23 10:13 - 000000000 ____D C:\ProgramData\Hotspot Shield 2022-07-12 09:44 - 2018-09-04 17:01 - 000000000 ____D C:\Users\wrt\AppData\Roaming\DocFetcher 2022-07-11 20:56 - 2018-09-04 17:11 - 000054380 _____ C:\Users\wrt\.pdfbox.cache 2022-07-09 14:42 - 2020-04-14 16:19 - 000000000 ____D C:\Program Files\Microsoft Office 2022-07-08 19:39 - 2021-03-22 20:37 - 000000000 ____D C:\Users\wrt\AppData\Local\AMD_Common 2022-07-08 16:17 - 2020-06-10 08:25 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-07-08 11:49 - 2021-09-15 14:16 - 000004380 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1627569296 2022-07-07 21:11 - 2021-07-29 21:35 - 000004152 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1627569282 2022-07-07 21:11 - 2021-07-29 21:34 - 000001442 _____ C:\Users\wrt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera-Browser.lnk 2022-07-07 12:15 - 2020-01-29 19:44 - 000000000 ____D C:\Users\wrt\AppData\Local\Dropbox 2022-07-07 12:15 - 2020-01-29 19:44 - 000000000 ____D C:\Program Files (x86)\Dropbox 2022-07-06 11:56 - 2018-03-04 21:00 - 000000000 ____D C:\Users\wrt\Documents\FinePrint files 2022-07-06 09:30 - 2020-09-15 14:04 - 000000000 ____D C:\Users\wrt\Documents\OSCAR_Data 2022-07-05 07:22 - 2018-03-08 13:32 - 000000000 ____D C:\Users\wrt\AppData\LocalLow\Temp 2022-07-05 07:21 - 2019-12-07 16:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-07-05 07:03 - 2018-03-04 19:00 - 000000000 ____D C:\Users\wrt\AppData\Local\PlaceholderTileLogoFolder 2022-07-05 07:03 - 2015-07-10 18:04 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2022-07-05 07:01 - 2019-12-07 21:53 - 000000000 ____D C:\WINDOWS\OCR 2022-07-05 00:42 - 2020-04-01 17:06 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-07-04 22:52 - 2018-03-03 23:30 - 000000000 ____D C:\Users\wrt\AppData\Local\Packages 2022-07-04 15:48 - 2018-06-20 15:14 - 000000000 ____D C:\Users\wrt\AppData\Roaming\vlc 2022-07-03 15:39 - 2018-08-15 20:21 - 000000000 ____D C:\Program Files\Everything 2022-07-03 07:08 - 2018-03-03 23:30 - 000000000 __RHD C:\Users\Public\AccountPictures 2022-07-02 23:00 - 2021-03-09 17:23 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-07-02 20:24 - 2018-09-19 18:58 - 000002144 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2022-07-02 19:13 - 2020-03-17 09:23 - 000000000 ____D C:\ProgramData\CanonIJPLM 2022-07-02 16:05 - 2021-01-14 14:08 - 000000000 ____D C:\Users\wrt\AppData\Local\TeamViewer 2022-07-02 16:05 - 2018-10-26 06:15 - 000000000 ____D C:\Users\wrt\AppData\Roaming\TeamViewer 2022-07-01 20:12 - 2019-12-07 16:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-07-01 06:28 - 2022-04-30 11:56 - 000023516 _____ C:\Users\wrt\Desktop\formulare, selbst, forbes, notes etc.odt 2022-06-29 21:07 - 2022-05-30 09:59 - 000000000 ____D C:\Users\wrt\Downloads\Richard Dotts 220530 2022-06-28 08:15 - 2020-02-28 16:34 - 000000000 ____D C:\Users\wrt\Calibre-Bibliothek 2022-06-27 19:08 - 2018-09-15 15:19 - 000000000 ____D C:\Users\wrt\AppData\Roaming\inkscape 2022-06-26 13:32 - 2021-07-18 21:39 - 000000000 ____D C:\Users\wrt\Documents\My Kindle Content 2022-06-25 22:19 - 2018-07-11 11:29 - 000000000 ____D C:\ProgramData\Packages 2022-06-25 18:12 - 2018-04-29 22:43 - 000000000 ____D C:\Users\wrt\AppData\Local\ElevatedDiagnostics 2022-06-24 11:15 - 2020-10-25 22:31 - 000000000 ____D C:\Program Files\CherryTree 2022-06-24 11:12 - 2018-03-05 13:53 - 000000000 ____D C:\Programme wr 2022-06-23 21:07 - 2020-05-18 21:03 - 000000000 ____D C:\Users\wrt\AppData\Roaming\XMedia Recode 2022-06-23 21:06 - 2020-05-17 23:03 - 000000000 ____D C:\Program Files\XMedia Recode 64bit 2022-06-23 13:55 - 2018-03-04 19:17 - 000000000 ____D C:\Users\wrt\AppData\Roaming\audacity 2022-06-23 10:19 - 2018-03-04 19:26 - 000000000 ____D C:\Users\wrt\AppData\LocalLow\Mozilla 2022-06-23 08:01 - 2021-08-12 15:42 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2022-06-23 06:20 - 2018-03-04 07:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-06-22 13:44 - 2022-05-23 21:03 - 000002325 _____ C:\Users\wrt\Desktop\Kindle.lnk 2022-06-22 10:01 - 2020-10-25 22:32 - 000000000 ____D C:\Users\wrt\AppData\Local\cherrytree 2022-06-22 09:46 - 2020-10-25 22:32 - 000000000 ____D C:\Users\wrt\.dbus-keyrings 2022-06-19 20:59 - 2020-09-15 13:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OSCAR 2022-06-19 20:59 - 2020-09-15 13:34 - 000000000 ____D C:\Program Files\OSCAR 2022-06-19 18:50 - 2018-03-05 21:00 - 000000000 ____D C:\Temp 2022-06-16 12:11 - 2021-04-26 09:25 - 000003662 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d714cc92528094 2022-06-16 12:11 - 2021-03-09 17:23 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-06-16 06:29 - 2021-03-09 16:56 - 000625080 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-06-16 06:26 - 2019-12-07 21:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-06-16 06:26 - 2019-12-07 16:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-06-16 06:26 - 2019-12-07 16:03 - 000000000 ____D C:\WINDOWS\servicing 2022-06-15 22:04 - 2021-03-09 17:00 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-06-15 19:20 - 2022-03-16 19:08 - 000000000 ____D C:\Users\wrt\Downloads\books märz 22 radiologie 2022-06-15 19:20 - 2022-02-20 10:34 - 000000000 ____D C:\Users\wrt\Downloads\z lib ebooks 2022-06-15 19:20 - 2022-02-13 19:57 - 000000000 ____D C:\Users\wrt\Downloads\books feb 2022 2022-06-15 19:20 - 2022-01-26 06:20 - 000000000 ____D C:\Users\wrt\Downloads\Ortho 2022-06-15 19:20 - 2021-11-26 22:07 - 000000000 ____D C:\Users\wrt\Downloads\books nov26 21 ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2018-03-06 10:08 - 2018-03-06 10:08 - 000000000 _____ () C:\Program Files (x86)\mstsc 2022-07-11 10:06 - 2022-07-11 10:06 - 000000000 _____ () C:\Users\wrt\AppData\Roaming\.NANotifyHere 2018-03-04 22:30 - 2022-07-14 08:00 - 000001515 _____ () C:\Users\wrt\AppData\Roaming\SAS7_000.DAT 2018-05-20 20:36 - 2022-02-20 18:34 - 000011776 _____ () C:\Users\wrt\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2022-06-28 08:25 - 2022-06-28 08:25 - 000002784 _____ () C:\Users\wrt\AppData\Local\recently-used.xbel ==================== FLock ============================== 2018-03-03 19:18 C:\WINDOWS\UpdateAssistant ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 14.07.22 Scan-Zeit: 16:51 Protokolldatei: 7fa727ba-035a-11ed-8665-98eecb6c1ddf.json -Softwaredaten- Version: 4.5.11.202 Komponentenversion: 1.0.1716 Version des Aktualisierungspakets: 1.0.57232 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 10 (Build 19044.1766) CPU: x64 Dateisystem: NTFS Benutzer: Ryzen\wrt -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Scan gestartet von: Manuell Ergebnis: Abgeschlossen Gescannte Objekte: 355940 Erkannte Bedrohungen: 0 In die Quarantäne verschobene Bedrohungen: 0 Abgelaufene Zeit: 8 Min., 58 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Erkennung PUM: Erkennung -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswert: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Datei: 0 (keine bösartigen Elemente erkannt) Physischer Sektor: 0 (keine bösartigen Elemente erkannt) WMI: 0 (keine bösartigen Elemente erkannt) (end) |
14.07.2022, 11:33 | #2 |
| Fortsetzung (Addition u. rogue) Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 11-07-2022
__________________durchgeführt von wrt (14-07-2022 16:21:41) Gestartet von C:\Users\wrt\Downloads Microsoft Windows 10 Pro Version 21H2 19044.1766 (X64) (2021-03-09 10:24:05) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-779246859-3990032973-3551585165-500 - Administrator - Enabled) => C:\Users\Administrator DefaultAccount (S-1-5-21-779246859-3990032973-3551585165-503 - Limited - Disabled) drrei (S-1-5-21-779246859-3990032973-3551585165-1004 - Limited - Disabled) Gast (S-1-5-21-779246859-3990032973-3551585165-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-779246859-3990032973-3551585165-504 - Limited - Disabled) wrt (S-1-5-21-779246859-3990032973-3551585165-1001 - Administrator - Enabled) => C:\Users\wrt ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 4K Video Downloader 4.4 (HKLM-x32\...\{D04F9BA2-CF6F-41AD-8BD1-313ABD28FAF2}) (Version: 4.4.4.2275 - Open Media LLC) ABBYY FineReader 11 (HKLM-x32\...\{F11000FE-0010-0000-0000-074957833700}) (Version: 11.11.194 - ABBYY Production LLC) Acronis True Image (HKLM-x32\...\{E8C3CECC-4A39-489A-AE2A-28160E194BD9}) (Version: 22.7.15560 - Acronis) Hidden Acronis True Image (HKLM-x32\...\{E8C3CECC-4A39-489A-AE2A-28160E194BD9}Visible) (Version: 22.7.15560 - Acronis) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 22.001.20142 - Adobe Systems Incorporated) Adobe Audition 3.0 (HKLM-x32\...\Adobe Audition 3.0) (Version: 3.0 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-001824458876}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Amazon Kindle (HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Amazon Kindle) (Version: 1.37.0.65274 - Amazon) AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.117 - Advanced Micro Devices, Inc.) Hidden AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.82 - Advanced Micro Devices, Inc.) Hidden AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 4.13.0.0 - Advanced Micro Devices, Inc.) Hidden AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 6.0.0.9 - Advanced Micro Devices, Inc.) Hidden AMD SBxxx SMBus Driver Alpha (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 21.3.1 - Advanced Micro Devices, Inc.) AMD_Chipset_Drivers (HKLM-x32\...\{40c19864-e557-4855-95ee-075689dfcf8e}) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) Hidden ANT Drivers Installer x64 (HKLM\...\{1BC0225E-AF99-4434-92CC-615111CE698F}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden ApowerMirror Version 1.4.1.9 (HKLM-x32\...\{a9482532-9c34-478c-80c3-85bdccbb981f}_is1) (Version: 1.4.1.9 - APOWERSOFT LIMITED) Apple Software Update (HKLM-x32\...\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}) (Version: 2.1.1.116 - Apple Inc.) AquaSoft DiaShow 7 Ultimate (HKLM-x32\...\{2FAA2415-618E-4EC0-8253-3CDA076C84D6}) (Version: 7.8.01 - AquaSoft) Hidden AquaSoft DiaShow 7 Ultimate (HKLM-x32\...\AquaSoft DiaShow 7 Ultimate) (Version: 7.8.01 - AquaSoft) Audacity 3.0.2 (HKLM-x32\...\Audacity_is1) (Version: 3.0.2 - Audacity Team) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bonjour-Druckdienste (HKLM\...\{0DA20600-6130-443B-9D4B-F30520315FA6}) (Version: 2.0.2.0 - Apple Inc.) BrainWave Generator (HKLM-x32\...\BrainWave Generator) (Version: - ) Branding64 (HKLM\...\{856DA29A-EA4A-468B-BBC2-B5F60DD75BFE}) (Version: 1.00.0002 - Advanced Micro Devices, Inc.) Hidden calibre (HKLM-x32\...\{85703FD4-26A1-436A-85DA-A2612DE45C60}) (Version: 5.43.0 - Kovid Goyal) Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: - ) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.) Canon G3010 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_G3010_series) (Version: 1.01 - Canon Inc.) Canon G3010 series On-Screen-Handbuch (HKLM-x32\...\Canon G3010 series On-Screen-Handbuch) (Version: 1.2.0 - Canon Inc.) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - ) Canon IJ Network Scanner Selector EX2 (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX2) (Version: 2.0.5.3 - Canon Inc.) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.1 - Canon Inc.) Canon IJ Printer Assistant Tool (HKLM-x32\...\Canon IJ Printer Assistant Tool) (Version: 1.05.1.51 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.4.0.16 - Canon Inc.) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.4.0 - Canon Inc.) Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: - ) Canon MP Navigator EX 4.1 (HKLM-x32\...\MP Navigator EX 4.1) (Version: - ) Canon MX420 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX420_series) (Version: - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: - ) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.) Canon Wi-Fi Connection Assistant (HKLM-x32\...\Wi-Fi Connection Assistant) (Version: 1.20.0 - Canon Inc.) CherryTree Version 0.39.4 (HKLM-x32\...\{DBA7384C-E1C6-44B5-A3B4-C94F2F0B8C0C}_is1) (Version: 0.39.4 - Giuseppe Penone) Chessmaster Grandmaster Edition (HKLM-x32\...\InstallShield_{27614800-84A9-484E-9CCB-43ED2F1205F5}) (Version: 1.00.0000 - Ubisoft) CPUID CPU-Z 1.89 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.89 - CPUID, Inc.) CUEcards 2000 (HKLM-x32\...\CUEcards 2000) (Version: - Marcus Humann Software-Technik) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DocFetcher (HKLM-x32\...\DocFetcher) (Version: 1.1.25 - ) DocFetcher Pro Demo (HKLM\...\DocFetcher Pro Demo) (Version: 1.15 - ) Dr. Hardware 2019 19.0.1 (HKLM-x32\...\Dr. Hardware 2019_is1) (Version: - Peter A. Gebhard) Dr. Robert Anthony's Intention Activator (HKLM-x32\...\{1C35ABA7-6507-4CB9-91E7-6311B105A526}) (Version: 2.00 - ) Dragon NaturallySpeaking 13 (HKLM-x32\...\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}) (Version: 13.00.000 - Nuance Communications Inc.) Dropbox (HKLM-x32\...\Dropbox) (Version: 152.4.4880 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.583.1 - Dropbox, Inc.) Hidden eBook Converter Bundle 3.22.10306.440 (HKLM-x32\...\{74173236-3507-49A7-A0FC-1BDABF0A9338}_is1) (Version: 3.22.10306.440 - eBook Converter Team) Effective File Search 6.8.1 (HKLM-x32\...\Effective File Search) (Version: 6.8.1 - SOW) Elevated Installer (HKLM-x32\...\{C3D3E0B3-6B8D-4AF4-B49A-3583E512ECE8}) (Version: 7.5.0.0 - Garmin Ltd or its subsidiaries) Hidden Enchanter X 2.0 (HKLM-x32\...\Enchanter_X_2.0) (Version: - ) EncoreBasic (HKLM-x32\...\{4C0C787B-EF87-4A5F-B4CC-A022BC97A2FC}) (Version: 2.4 - Ihr Firmenname) Epubor Ultimate (HKLM-x32\...\Epubor Ultimate) (Version: 3.0.14.402 - Epubor Inc.) Everything 1.4.1.1005 (x86) (HKLM-x32\...\Everything) (Version: 1.4.1.1005 - voidtools) Everything 1.4.1.935 (x64) (HKLM\...\Everything) (Version: 1.4.1.935 - David Carpenter) EZCast (HKLM-x32\...\{74CECDD9-4B8E-4AE3-9571-8070A17F3C34}) (Version: 2.8.0.145 - Actions-Micro) FFmpeg v0.6.2 for Audacity (HKLM-x32\...\FFmpeg for Audacity_is1) (Version: - ) FinePrint (HKLM\...\FinePrint) (Version: 10.40 - FinePrint Software, LLC) Fotogalerie (HKLM-x32\...\{41BF4A3B-D60A-4E92-883F-C88C8C157261}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Foxit Phantom (HKLM-x32\...\Foxit Phantom) (Version: 2.0.0.0424 - Foxit Software Company) Free Download Manager (HKLM\...\{43781dff-e0df-49ce-a6d2-47da96a485e7}}_is1) (Version: 5.1.38.7312 - FreeDownloadManager.ORG) Free Download Manager 3.9.7 (HKLM-x32\...\Free Download Manager_is1) (Version: - FreeDownloadManager.ORG) fx-ES PLUS Emulator Subscription for fx-991ES PLUS C 2nd edition (HKLM-x32\...\{12CC30ED-A07C-46D4-8075-C5660DE67856}) (Version: 5.00.0000 - CASIO COMPUTER CO., LTD.) Garmin Communicator Plugin (HKLM-x32\...\{71DBFBF2-F7EB-4268-8485-9471D83C4E66}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries) Garmin Communicator Plugin x64 (HKLM\...\{70A381F1-C161-4D61-A20C-BE12FC6777DF}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries) Garmin Express (HKLM-x32\...\{034F279C-D74E-42F2-8CEC-216E91969B29}) (Version: 7.5.0.0 - Garmin Ltd or its subsidiaries) Hidden Garmin Express (HKLM-x32\...\{afe06296-a3d5-48cf-88a2-77629aeb124b}) (Version: 7.5.0.0 - Garmin Ltd or its subsidiaries) Gnaural ver. 1.0.20080808 (HKLM-x32\...\Gnaural_is1) (Version: - Bret Logan) Gnaural2 ver. 0.1.20080229 (HKLM-x32\...\Gnaural2_is1) (Version: - Bret Logan) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 103.0.5060.114 - Google LLC) Google Earth Pro (HKLM\...\{DE181B35-ACEF-4DB0-86D9-731D5767ABB1}) (Version: 7.3.4.8642 - Google) I-Doser Premium (HKLM-x32\...\I-Doser) (Version: 5.1 - I-Doser.com) ifap praxisCENTER® (HKLM-x32\...\{0B59E9CB-DA5B-4CDE-88E8-3F7C269DE130}_is1) (Version: 3.34.0.122 - ifap GmbH) Inkscape 0.92.3 (HKLM-x32\...\Inkscape) (Version: 0.92.3 - Inkscape Project) IrfanView 4.50 (64-bit) (HKLM\...\IrfanView64) (Version: 4.50 - Irfan Skiljan) Java 8 Update 333 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180333F0}) (Version: 8.0.3330.2 - Oracle Corporation) KeePass Password Safe 2.38 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.38 - Dominik Reichl) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) LibreOffice 7.3 Help Pack (German) (HKLM\...\{D3A8CE42-862A-491E-B149-AC475F815D60}) (Version: 7.3.2.2 - The Document Foundation) LibreOffice 7.3.2.2 (HKLM\...\{001D6695-F9B8-4CBD-AA92-FE8A58638060}) (Version: 7.3.2.2 - The Document Foundation) MadAppLauncher version 1.10.0.0 (HKLM-x32\...\{73F59F3E-E753-4D3D-B123-B497B74A549A}_is1) (Version: 1.10.0.0 - Roberto Concepcion) Malwarebytes version 4.5.10.200 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.10.200 - Malwarebytes) MaxLauncher version 1.20.1.0 (HKLM\...\{D887E7A5-7906-4A0B-9E16-791BD8F2FD2F}_is1) (Version: 1.20.1.0 - Roberto Concepcion) MD Medicus vOffice (HKLM-x32\...\vOffice 2.3.0) (Version: 2.3.0 - MD Medicus) Med7 (HKLM-x32\...\{36427C11-0CC8-4AF9-A5F8-DC9FD5BE3D97}) (Version: 8.40.0004 - Bitron GmbH) Microsoft 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.15330.20230 - Microsoft Corporation) Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.15330.20230 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 103.0.1264.49 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 103.0.1264.49 - Microsoft Corporation) Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 22.131.0619.0001 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29913 (HKLM-x32\...\{855e31d2-9031-46e1-b06d-c9d7777deefb}) (Version: 14.28.29913.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29913 (HKLM-x32\...\{03d1453c-7d5c-479c-afea-8482f406e036}) (Version: 14.28.29913.0 - Microsoft Corporation) Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29913 (HKLM\...\{620A7633-7A09-42A8-8580-076A4483C4B0}) (Version: 14.28.29913 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29913 (HKLM\...\{EECDD137-13DA-46ED-ADA0-BDF7F8BE65B8}) (Version: 14.28.29913 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29913 (HKLM-x32\...\{572DCD10-CF2E-43D1-8151-8BD9AC9086D0}) (Version: 14.28.29913 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29913 (HKLM-x32\...\{6236EBBD-F50F-40B3-B819-8DB0C608308C}) (Version: 14.28.29913 - Microsoft Corporation) Hidden MindMaster (HKLM-x32\...\{D5A2C78C-5D8F-40D2-A130-7696D4F22953}) (Version: 2.2.9 - MindMaster) Mini Manifestor 4-2 (HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Mini Manifestor 4-2) (Version: - ) Movie Maker (HKLM-x32\...\{70C91B91-61E8-4D06-86D6-A9DCC291983A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 68.12.0.7577 - Mozilla) Mozilla Thunderbird 68.12.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 68.12.1 (x86 de)) (Version: 68.12.1 - Mozilla) MSVCRT (HKLM-x32\...\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (HKLM-x32\...\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}) (Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (HKLM\...\{E9FA781F-3E80-4399-825A-AD3E11C28C77}) (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.9 - F.J. Wechselberger) Nero ControlCenter (HKLM-x32\...\{ABC88553-8770-4B97-B43E-5A90647A5B63}) (Version: 11.4.3033 - Nero AG) Hidden Nero Core Components (HKLM-x32\...\{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}) (Version: 11.8.1063 - Nero AG) Hidden Nero Info (HKLM-x32\...\{F030BFE8-8476-4C08-A553-233DE80A2BE1}) (Version: 21.0.3001 - Nero AG) Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 21.0.1014 - Nero AG) Hidden Nero WaveEditor (HKLM-x32\...\{C2B4762F-2F35-4CB0-A413-1B3C0C1D9ACE}) (Version: 21.0.1002 - Nero AG) Hidden Nero WaveEditor (HKLM-x32\...\{D261A45C-CC66-419A-8D50-1FB933468DCB}) (Version: 21.0.00100 - Nero AG) Neuro-Programmer 3.3.1 (HKLM-x32\...\Neuro-Programmer 3_is1) (Version: - Transparent Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.15330.20230 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.15330.20230 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.15128.20178 - Microsoft Corporation) Hidden Onis 2.3 Free Edition (HKLM-x32\...\{185514C4-3F4C-499A-A9DD-5E280450BE8D}) (Version: 2.3.0 - Digitalcore) Opera Stable 88.0.4412.74 (HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\Opera 88.0.4412.74) (Version: 88.0.4412.74 - Opera Software) OSCAR (HKLM\...\{FC6F08E6-69BF-4469-ADE3-78199288D305}_is1) (Version: 1.4.0-Win64-e35d47b3 - The OSCAR Team) Photo Common (HKLM-x32\...\{87DABDEA-47A4-4182-AA7C-2C90DAAE3117}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Photo Gallery (HKLM-x32\...\{07AAB66E-4718-422D-9218-4AFB3C922A71}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7917 - Realtek Semiconductor Corp.) Remote Desktop assistant (HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\4ffdbc81071cec8e) (Version: 1.0.0.103 - Remote Desktop assistant) Rife Generator 3.4 (HKLM-x32\...\{9D334442-BC5A-4654-952E-518C74B4852C}_is1) (Version: - Timo Esser) Samsung AllShare (HKLM-x32\...\{DF47ACA3-7C78-4C08-8007-AC682563C9F1}) (Version: 2.1.0.12031_10 - Samsung Electronics Co., Ltd.) Hidden Samsung AllShare (HKLM-x32\...\InstallShield_{DF47ACA3-7C78-4C08-8007-AC682563C9F1}) (Version: 2.1.0.12031_10 - Samsung Electronics Co., Ltd.) Skype Version 8.81 (HKLM-x32\...\Skype_is1) (Version: 8.81 - Skype Technologies S.A.) SpO2 Assistant V3.0.5 (HKLM-x32\...\SpO2 Assistant V3.0.5_is1) (Version: - ) Stellarium 0.13.0 (HKLM-x32\...\Stellarium_is1) (Version: 0.13.0 - Stellarium team) synedra View Personal (HKLM-x32\...\synedraViewPersonal) (Version: - ) TAP-Windows 9.24.2 (HKLM\...\TAP-Windows) (Version: 9.24.2 - OpenVPN Technologies, Inc.) ThaiTrainer111-V4 (HKLM-x32\...\ThaiTrainer111-V4_is1) (Version: - © 1998-2008 by WANTANA Software) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 10.50 beta 8 - Ghisler Software GmbH) TreePad X Enterprise 384 Gb (single-user) 7.12 (HKLM-x32\...\TreePadXEnterprise_384Gb) (Version: - ) TreeSize Free V4.4.2 (HKLM-x32\...\TreeSize Free_is1) (Version: 4.4.2 - JAM Software) TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation) Tweaking.com - Windows Repair (HKLM-x32\...\Tweaking.com - Windows Repair) (Version: 4.9.0 - Tweaking.com) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation) UpdateAssistant (HKLM\...\{567756E0-361F-4E88-AF74-8B0E4628E5BC}) (Version: 1.12.0.0 - Microsoft Corporation) Hidden VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN) vOffice (HKLM-x32\...\{D21BBB39-EA60-4ADB-84A6-5C0F72CDA1CE}) (Version: 2.3.0 - MD Medicus) Hidden Windows Live Communications Platform (HKLM-x32\...\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\{66233218-CA57-4AB2-BA43-A97AA4635960}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Installer (HKLM-x32\...\{659CB81C-B54E-4DF1-B618-F35777393A54}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (HKLM-x32\...\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (HKLM-x32\...\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (HKLM-x32\...\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (HKLM-x32\...\{D1893000-EA77-493C-8DDD-E262436E959B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (HKLM-x32\...\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (HKLM-x32\...\{FC071B45-4A5F-408F-92F8-4D9D693E866F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{714E162E-CD4F-4F1B-8302-7F5179409C25}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{955E4722-1480-4198-A144-65FA5F4446DA}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (HKLM-x32\...\{A951D5DA-4759-4C3B-9C36-C6BF30082A2F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - ) Windows-PC-Integritätsprüfung (HKLM\...\{AD47C6B2-6C72-4F0E-B66F-7685C28ACDFD}) (Version: 3.3.2110.22002 - Microsoft Corporation) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) Windows-Treiberpaket - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.) Windows-Treiberpaket - Silicon Laboratories (silabenm) Ports (03/19/2014 6.7.0.0) (HKLM\...\B97004A400E30DCF940971EFA7A0C13C6B0A4B66) (Version: 03/19/2014 6.7.0.0 - Silicon Laboratories) Windows-Treiberpaket - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software) Windows-Treiberpaket - STMicroelectronics (usbser) Ports (08/02/2013 1.4.0) (HKLM\...\04B4996F06620A7ECFBFE8F9BCC458F9761E39F7) (Version: 08/02/2013 1.4.0 - STMicroelectronics) XMedia Recode 64bit Version 3.5.5.8 (HKLM\...\{D31E6E69-4C6A-42CC-926F-CC7B186864EB}_is1) (Version: 3.5.5.8 - XMedia Recode 64bit) Zoom (HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\ZoomUMX) (Version: 5.4.1 (58698.1027) - Zoom Video Communications, Inc.) Packages: ========= Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_3.1.0.0_neutral__6e5tt8cgb93ep [2022-04-15] (Canon Inc.) Clockmaker: Match Three in Row -> C:\Program Files\WindowsApps\SamfinacoLimited.ClockmakerMatchThreeinRow_66.0.2.0_x86__aj0b1qrpyg0w6 [2022-07-07] (Samfinaco Limited) Hypnosis Wheel -> C:\Program Files\WindowsApps\43852Rob.Kachmar.HypnosisWheel_1.0.0.1_neutral__a29k398mwv6a8 [2022-04-15] (Rob.Kachmar) Microsoft Advertising SDK for JavaScript -> C:\Program Files\WindowsApps\Microsoft.Advertising.JavaScript_10.1805.2.0_x64__8wekyb3d8bbwe [2022-04-15] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for JavaScript -> C:\Program Files\WindowsApps\Microsoft.Advertising.JavaScript_10.1805.2.0_x86__8wekyb3d8bbwe [2022-04-15] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-04-15] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-04-15] (Microsoft Corporation) [MS Ad] Microsoft Remote Desktop -> C:\Program Files\WindowsApps\Microsoft.RemoteDesktop_10.2.1817.0_x64__8wekyb3d8bbwe [2022-04-15] (Microsoft Corporation) Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.13.7040.0_x64__8wekyb3d8bbwe [2022-07-08] (Microsoft Studios) [MS Ad] Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.74.51921.0_x64__8wekyb3d8bbwe [2022-07-13] (Microsoft Corporation) [Startup Task] Movie Maker & Video Editor : Slideshow Maker -> C:\Program Files\WindowsApps\3631PhotoVideoZone.MovieMakerVideoEditorSlideshowM_1.1.13.0_x64__vfc75da8vjzxg [2022-04-15] (Photo Video Zone) [MS Ad] Pinball Deluxe Reloaded 3D -> C:\Program Files\WindowsApps\18880GatesKingsGroupHoldi.PinballDeluxeReloaded3D_6.6.6.0_x64__mgran42w2k48p [2022-04-15] (Gates Kings Group Holdings) PowerPom - Pomodoro Timer -> C:\Program Files\WindowsApps\25994ProdDev.PowerPom-PomodoroTimer_1.1.6.0_x64__w3j63e9zf5dsr [2022-06-01] (Productive Team) RECOIL -> C:\Program Files\WindowsApps\9998PiotrFusik.RECOIL_6.2.0.0_x64__5dbjqw3zx3tpw [2022-07-14] (Piotr Fusik) Scatter Slots -> C:\Program Files\WindowsApps\Fishsticksserviceslimited.ScatterSlots_4.27.0.0_x64__bcx82fedc2d04 [2022-07-03] (Murka Games Limited) Sudoku - Pro -> C:\Program Files\WindowsApps\26720RandomSaladGamesLLC.Sudoku-Pro_3.1.19.0_x64__kx24dqmazqk8j [2022-07-04] (Random Salad Games LLC) Super Craft Mario Run -> C:\Program Files\WindowsApps\62585RoyalKingGamesStudio.SuperCraftMarioRun_10.5.2.0_x86__b66x5gv52tdk6 [2022-04-15] (Royal King Games Studio) [MS Ad] VLC -> C:\Program Files\WindowsApps\VideoLAN.VLC_3.2.1.0_x64__paz6r1rewnh0a [2022-06-01] (VideoLAN) Wi-Fi Transfer -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.Wi-FiTransfer_2.0.26.0_x64__3c1yjt4zspk6g [2022-06-01] (Samsung Electronics Co. Ltd.) Word Finder Scrabble -> C:\Program Files\WindowsApps\15985Yasindewid.WordFinderScrabble_4.1.2.0_x64__39dp1177718dj [2022-04-15] (Yasin dewid) Wordplay: Exercise your brain -> C:\Program Files\WindowsApps\828B5831.WordplayExerciseyourbrain_1.12.1400.0_x64__ytsefhwckbdv6 [2022-04-15] (G5 Entertainment AB) Words Scrabble & Friends -> C:\Program Files\WindowsApps\54753DragonKingsGamesFree.WordsScrabbleFriends_13.2.0.0_x64__nj2hqgcefq0de [2022-04-15] (Dragon Kings Games Free Inc.) [MS Ad] ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-779246859-3990032973-3551585165-1001_Classes\CLSID\{A2B78634-DD87-2E5F-D25B-10D9E13A0B1F}\InprocServer32 -> C:\WINDOWS\system32\ole32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-779246859-3990032973-3551585165-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\wrt\Dropbox [2020-01-29 19:54] ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ AcronisDrive] -> {5D74FD4B-4EFB-4586-8022-8637BBE40970} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2017-12-22] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2017-12-22] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2017-12-22] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2017-12-22] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [FineReader11ContextMenu] -> {79E48320-C6B5-49F1-992B-571D53586885} => C:\Program Files (x86)\ABBYY FineReader 11\FRIntegration.x64.dll [2013-06-28] (ABBYY PRODUCTION LLC -> ABBYY Production LLC) ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-31] (F.J. Wechselberger) [Datei ist nicht signiert] ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Workstation\vmdkShellExt.dll [2022-02-18] (VMware, Inc. -> VMware, Inc.) ContextMenuHandlers2: [VMDiskMenuHandler64] -> {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} => C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll [2022-02-18] (VMware, Inc. -> VMware, Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-07-01] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-14] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\WINDOWS\System32\atiacm64.dll [2021-03-17] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-01-19] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers6: [FineReader11ContextMenu] -> {79E48320-C6B5-49F1-992B-571D53586885} => C:\Program Files (x86)\ABBYY FineReader 11\FRIntegration.x64.dll [2013-06-28] (ABBYY PRODUCTION LLC -> ABBYY Production LLC) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-07-01] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Drivers32: [msacm.pspgru] => C:\Windows\SysWOW64\pspgru.acm [401920 2010-03-22] (Philips Austria GmbH - Speech Processing) [Datei ist nicht signiert] ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\wrt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Google Drive.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=aghbiahbpaijignceidepookljebhfak ShortcutWithArgument: C:\Users\wrt\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Drive.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=aghbiahbpaijignceidepookljebhfak ShortcutWithArgument: C:\Users\wrt\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\6ba478f6faf86bd4\ZenMate VPN - Top Internet Security & Unblock.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=fdcgdnkidjaadafnichfpabhfomcebme ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2017-12-22 06:45 - 2017-12-22 06:45 - 000277538 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\LIBMAGIC.dll 2020-03-10 11:20 - 2017-04-13 11:42 - 012242432 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\avcodec-57.dll 2020-03-10 11:20 - 2017-04-13 11:42 - 001825792 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\avfilter-6.dll 2020-03-10 11:20 - 2017-04-13 11:42 - 002158592 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\avformat-57.dll 2020-03-10 11:20 - 2017-04-13 11:42 - 000485376 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\avutil-55.dll 2020-03-10 11:20 - 2017-04-13 11:46 - 069740544 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\libcef.dll 2020-03-09 18:53 - 2018-05-15 06:32 - 000015360 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\libegl.dll 2020-03-09 18:53 - 2018-05-15 06:32 - 002521088 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\libglesv2.dll 2020-03-10 11:20 - 2017-04-13 11:42 - 000138752 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\swresample-2.dll 2020-03-10 11:20 - 2017-04-13 11:42 - 000662016 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\swscale-4.dll 2020-03-09 18:52 - 2019-01-30 21:58 - 000048640 _____ () [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\winunivappfeatures.dll 2018-12-26 11:37 - 2012-06-14 17:18 - 000359936 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNMN6PPM.DLL 2020-03-09 18:52 - 2019-01-30 21:59 - 000436224 _____ (FreeDownloadManager.org) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\common.dll 2020-03-09 18:52 - 2019-01-30 21:59 - 000110080 _____ (FreeDownloadManager.org) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\mediahelper.dll 2020-03-09 18:52 - 2019-01-30 21:59 - 000676864 _____ (FreeDownloadManager.org) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\wba.dll 2020-03-10 11:20 - 2017-04-13 11:42 - 001712640 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\LIBEAY32.dll 2020-03-10 11:20 - 2017-04-13 11:42 - 000351744 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\SSLEAY32.dll 2020-03-10 11:20 - 2018-05-15 06:39 - 000049152 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\bearer\qgenericbearer.dll 2020-03-10 11:20 - 2018-05-15 06:38 - 000032768 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\imageformats\qgif.dll 2020-03-10 11:20 - 2018-05-15 06:48 - 000041984 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\imageformats\qicns.dll 2020-03-10 11:20 - 2018-05-15 06:38 - 000033280 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\imageformats\qico.dll 2020-03-10 11:20 - 2018-05-15 06:39 - 000331264 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\imageformats\qjpeg.dll 2020-03-10 11:20 - 2018-05-15 06:48 - 000025600 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\imageformats\qtga.dll 2020-03-10 11:20 - 2018-05-15 06:48 - 000371712 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\imageformats\qtiff.dll 2020-03-10 11:20 - 2018-05-15 06:48 - 000024064 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\imageformats\qwbmp.dll 2020-03-10 11:20 - 2018-05-15 06:48 - 000478720 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\imageformats\qwebp.dll 2020-03-10 11:20 - 2018-05-15 06:40 - 001439744 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\platforms\qwindows.dll 2020-03-10 11:20 - 2019-01-30 22:01 - 005938176 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\Qt5Core.dll 2020-03-10 11:20 - 2018-05-15 06:35 - 006345216 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\Qt5Gui.dll 2020-03-10 11:20 - 2018-05-15 06:35 - 001256960 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\Qt5Network.dll 2020-03-10 11:20 - 2018-05-15 06:33 - 000207360 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\Qt5Sql.dll 2020-03-10 11:20 - 2018-05-15 06:38 - 005515264 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\Qt5Widgets.dll 2020-03-10 11:20 - 2018-05-15 06:39 - 001121280 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\sqldrivers\qsqlite.dll 2020-03-10 11:20 - 2018-05-15 06:39 - 000136192 _____ (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\styles\qwindowsvistastyle.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\TEMP:0FF263E8 [510] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\x64\dgnriaie_x64.dll [2014-11-04] (Nuance Communications, Inc. -> Nuance Communications, Inc.) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO-x32: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\dgnriaie.dll [2014-11-04] (Nuance Communications, Inc. -> Nuance Communications, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_333\bin\ssv.dll [2022-06-07] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Free Download Manager -> {CC59E0F9-7E43-44FA-9FAA-8377850BF205} -> C:\Program Files (x86)\Free Download Manager\iefdm2.dll [2018-11-14] (FreeDownloadManager.ORG) [Datei ist nicht signiert] BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_333\bin\jp2ssv.dll [2022-06-07] (Oracle America, Inc. -> Oracle Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKU\S-1-5-21-779246859-3990032973-3551585165-1001 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-10 18:04 - 2022-07-05 07:19 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts 127.0.0.1 localhost 2019-05-05 21:06 - 2021-10-23 23:42 - 000000436 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\VMware\VMware Workstation\bin\;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\Win dowsPowerShell\v1.0\;C:\Program Files (x86)\Common Files\Acronis\SnapAPI\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile64\;C:\Program Files (x86)\Common Files\Acronis\FileProtector\;C:\Program Files (x86)\Common Files\Acronis\FileProtector64\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Calibre2\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\synedra\ViewPersonal HKU\S-1-5-21-779246859-3990032973-3551585165-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\wrt\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\irfanview_wallpaper.png HKU\S-1-5-21-779246859-3990032973-3551585165-500\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) ist aktiviert. Network Binding: ============= VMware Network Adapter VMnet8: VMware Bridge Protocol -> vmware_bridge (disabled) LAN-Verbindung: VMware Bridge Protocol -> vmware_bridge (enabled) Ethernet: VMware Bridge Protocol -> vmware_bridge (enabled) WLAN: VMware Bridge Protocol -> vmware_bridge (enabled) VMware Network Adapter VMnet1: VMware Bridge Protocol -> vmware_bridge (disabled) ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) HKLM\...\StartupApproved\StartupFolder: => "MaxLauncher.lnk" HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service" HKLM\...\StartupApproved\Run32: => "KeePass 2 PreLoad" HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe" HKLM\...\StartupApproved\Run32: => "AcronisTibMounterMonitor" HKLM\...\StartupApproved\Run32: => "IJNetworkScannerSelectorEX" HKLM\...\StartupApproved\Run32: => "ISUSPM" HKLM\...\StartupApproved\Run32: => "DNS7reminder" HKLM\...\StartupApproved\Run32: => "Dropbox" HKLM\...\StartupApproved\Run32: => "IJNetworkScannerSelectorEX2" HKLM\...\StartupApproved\Run32: => "AllShareAgent" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\StartupFolder: => "MadAppLauncher.lnk" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\StartupFolder: => "ZenMate.bat" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\StartupFolder: => "MindMasterV2.exe" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\StartupFolder: => "IntentionActivator.exe - Verknüpfung.lnk" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\StartupFolder: => "Dragon NaturallySpeaking.lnk" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\Run: => "ISUSPM" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\Run: => "Skype for Desktop" HKU\S-1-5-21-779246859-3990032973-3551585165-1001\...\StartupApproved\Run: => "GarminExpress" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{4B454696-C4A8-426A-AE41-FFBB52CA5B7F}] => (Allow) LPort=51001 FirewallRules: [TCP Query User{BE634D55-0B89-49EE-8105-AB14088D0979}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{679AD103-ED3E-4FA5-B96A-17BDC770EA45}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{BD6BDF2A-5A62-49D0-8629-155EC78034A7}] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{4EF86B53-E7D7-47F6-8EF6-7D0B8EF1D524}] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{B4F94747-CD34-4F0C-A863-ABF7A4689A07}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{1A65D6B3-A20E-4965-B455-01F6278BE010}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{346C51B0-7890-4688-91D5-A3097A8AC329}C:\program files (x86)\acronis\trueimagehome\trueimage.exe] => (Allow) C:\program files (x86)\acronis\trueimagehome\trueimage.exe (Acronis International GmbH -> ) FirewallRules: [UDP Query User{70BEE53B-0D88-4B8E-AE9C-FEF021FF8545}C:\program files (x86)\acronis\trueimagehome\trueimage.exe] => (Allow) C:\program files (x86)\acronis\trueimagehome\trueimage.exe (Acronis International GmbH -> ) FirewallRules: [{1587EF67-D3D7-474E-8009-A42327BC3DAF}] => (Block) C:\program files (x86)\acronis\trueimagehome\trueimage.exe (Acronis International GmbH -> ) FirewallRules: [{E2C5380C-242D-4332-A864-D22EB490921D}] => (Block) C:\program files (x86)\acronis\trueimagehome\trueimage.exe (Acronis International GmbH -> ) FirewallRules: [{8978EF4D-A8FE-49D2-A7CD-8C3E8D82A33F}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\103.0.1264.49\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{37C8354A-8414-407E-893F-206937510AA8}C:\program files (x86)\acronis\trueimagehome\ga_service.exe] => (Allow) C:\program files (x86)\acronis\trueimagehome\ga_service.exe (Acronis International GmbH -> ) FirewallRules: [UDP Query User{672940D8-3184-47ED-97DE-EF6653B35B6F}C:\program files (x86)\acronis\trueimagehome\ga_service.exe] => (Allow) C:\program files (x86)\acronis\trueimagehome\ga_service.exe (Acronis International GmbH -> ) FirewallRules: [{02AD545C-5C8B-4614-9EC4-F25858C9F7D8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{0C1FA531-2B05-49FF-AB51-632A32F4CE36}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{6A71C120-B1E6-4778-9740-670CD033FC07}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{BAC7DEBB-E468-4F09-BEE8-B8B12BAD4F50}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) ==================== Wiederherstellungspunkte ========================= 13-07-2022 17:49:13 Geplanter Prüfpunkt ==================== Fehlerhafte Geräte im Gerätemanager ============ ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (07/14/2022 01:50:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NeroInfo.exe, Version: 21.0.3.1, Zeitstempel: 0x5fb1dbf9 Name des fehlerhaften Moduls: NeroInfo.exe, Version: 21.0.3.1, Zeitstempel: 0x5fb1dbf9 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00031fe3 ID des fehlerhaften Prozesses: 0x4794 Startzeit der fehlerhaften Anwendung: 0x01d8974dfb9cfee9 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe Berichtskennung: 1036b467-8848-4c00-9f2e-90196b49a49f Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (07/14/2022 01:49:51 PM) (Source: SamsungAllShareV2.0) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt. bei AllShareDmsUtil.Configuration.ConfigurationManager.GetSharingFolderList() bei AllShareDmsUtil.Manager.AllShareDmsManager.LoadSharingFolderList() bei AllShareDmsUtil.Manager.AllShareDmsManager.InitContentsDirectoryManager() bei AllShareDmsUtil.Manager.AllShareDmsManager.Initialize() bei AllShareDmsUtil.Manager.AllShareDmsManager..ctor() bei AllShareDmsUtil.Manager.AllShareDmsManager.get_Instance() bei AllShareDMS.AllShareDMS.DoStart() bei AllShareDMS.AllShareDMS.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (07/14/2022 01:49:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NeroInfo.exe, Version: 21.0.3.1, Zeitstempel: 0x5fb1dbf9 Name des fehlerhaften Moduls: NeroInfo.exe, Version: 21.0.3.1, Zeitstempel: 0x5fb1dbf9 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00031fe3 ID des fehlerhaften Prozesses: 0x3720 Startzeit der fehlerhaften Anwendung: 0x01d8974da723b193 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe Berichtskennung: 21a4efda-6c96-474d-9f31-73b96f668b20 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (07/14/2022 01:30:09 PM) (Source: DNS logging) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/14/2022 01:30:08 PM) (Source: DNS logging) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/14/2022 01:30:08 PM) (Source: DNS logging) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/14/2022 01:30:08 PM) (Source: DNS logging) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/14/2022 01:30:08 PM) (Source: DNS logging) (EventID: 0) (User: ) Description: Event-ID 0 Systemfehler: ============= Error: (07/14/2022 04:19:52 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (07/14/2022 04:19:48 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (07/14/2022 04:19:45 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (07/14/2022 04:19:41 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (07/14/2022 04:19:37 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (07/14/2022 04:19:33 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (07/14/2022 04:19:29 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (07/14/2022 04:19:25 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Windows Defender: ================ Date: 2022-07-13 10:46:24 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {0140696D-02E4-4AEC-B9E1-1EF60BF0B189} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-07-01 06:34:27 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {F31327EA-7973-46EE-80BA-29EE323B8D42} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-06-30 06:39:21 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {CB7CADA5-D73C-4CBF-A77D-4B092E4B4436} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-06-29 07:04:38 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {19B1A66A-C64A-4261-ABDC-9268C2582C23} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-06-27 15:47:43 Description: C:\Windows\System32\RuntimeBroker.exe wurde durch den überwachten Ordnerzugriff daran gehindert, %userprofile%\Favorites zu ändern. Erkennungszeit: 2022-06-27T08:47:43.633Z Benutzer: RYZEN\wrt Pfad: %userprofile%\Favorites Prozessname: C:\Windows\System32\RuntimeBroker.exe Sicherheitsversion: 1.369.304.0 Modulversion: 1.1.19300.2 Produktversion: 4.18.2205.7 Event[0]: Date: 2022-07-09 12:20:17 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.369.539.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiSpyware Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19300.2 Fehlercode: 0x80072ee7 Fehlerbeschreibung: Der Servername oder die Serveradresse konnte nicht verarbeitet werden. Date: 2022-07-09 12:20:17 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.369.539.0 Update Source: Microsoft Center zum Schutz vor Schadsoftware Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19300.2 Fehlercode: 0x80072ee7 Fehlerbeschreibung: Der Servername oder die Serveradresse konnte nicht verarbeitet werden. Date: 2022-07-09 12:19:49 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.369.539.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19300.2 Fehlercode: 0x8007045b Fehlerbeschreibung: Der Computer wird heruntergefahren. CodeIntegrity: =============== Date: 2022-07-14 16:13:42 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements. ==================== Speicherinformationen =========================== BIOS: American Megatrends Inc. R01-A3 10/25/2017 Hauptplatine: Acer Aspire GX-281 Prozessor: AMD Ryzen 7 1700 Eight-Core Processor Prozentuale Nutzung des RAM: 36% Installierter physikalischer RAM: 16314.88 MB Verfügbarer physikalischer RAM: 10312.23 MB Summe virtueller Speicher: 18746.88 MB Verfügbarer virtueller Speicher: 10915.53 MB ==================== Laufwerke ================================ Drive c: (treesize) (Fixed) (Total:317.12 GB) (Free:95.6 GB) (Model: WDC WD10EZEX-21WN4A0) NTFS Drive d: (Volume) (Fixed) (Total:612.86 GB) (Free:50.66 GB) (Model: WDC WD10EZEX-21WN4A0) NTFS Drive f: (Seagate Backup Plus Drive) (Fixed) (Total:3726.02 GB) (Free:1059.5 GB) (Model: Seagate Backup+ Desk SCSI Disk Device) NTFS Drive g: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WD My Passport 25E1 USB Device) Drive h: (Backup Plus) (Fixed) (Total:3725.75 GB) (Free:1616.08 GB) (Model: Seagate BUP Portable SCSI Disk Device) exFAT Drive i: (System-reserviert) (Fixed) (Total:0.49 GB) (Free:0.39 GB) (Model: WDC WD10EZEX-21WN4A0) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive j: (USB HD rot) (Fixed) (Total:1862.86 GB) (Free:409.76 GB) (Model: WD My Passport 25E2 USB Device) NTFS Drive m: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WDC WD10EZEX-21WN4A0) Drive n: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WDC WD10EZEX-21WN4A0) \\?\Volume{2b434e5a-ef35-469b-96f5-adc30ba7be98}\ (EFI) (Fixed) (Total:0.19 GB) (Free:0.19 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 90C151F2) Partition 1: (Not Active) - (Size=600 MB) - (Type=42) Partition 2: (Active) - (Size=500 MB) - (Type=42) Partition 3: (Not Active) - (Size=317.1 GB) - (Type=42) Partition 4: (Not Active) - (Size=613.3 GB) - (Type=42) ========================================================== Disk: 1 (Size: 1863 GB) (Disk ID: 16F2A91F) Partition: GPT. ========================================================== Disk: 2 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 3 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: C865BF2D) Partition: GPT. Attempted reading MBR returned 0 bytes. Could not read MBR for disk 4. ==================== Ende von Addition.txt ======================= Code:
ATTFilter Program : RogueKiller Anti-Malware Version : 15.5.3.0 x64 : Yes Program Date : Jun 13 2022 Location : C:\Users\wrt\Downloads\RogueKiller_portable64.exe Premium : No Company : Adlice Software Website : https://www.adlice.com/ Contact : https://adlice.com/contact/ Website : https://adlice.com/download/roguekiller/ Operating System : Windows 10 (10.0.19044) 64-bit 64-bit OS : Yes Startup : 0 WindowsPE : No User : wrt User is Admin : Yes Date : 2022/07/14 07:16:20 Type : Scan Aborted : No Scan Mode : Standard Duration : 1272 Found items : 1 Total scanned : 97699 Signatures Version : 20220711_090857 Truesight Driver : Yes Updates Count : 13 ************************* Warnings ************************* ************************* Updates ************************* CPUID CPU-Z 1.89 (64-bit), version 1.89 [+] Available Version : 2.01 [+] Size : 4,32 MB [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\CPUID\CPU-Z\ Everything 1.4.1.935 (x64) (64-bit), version 1.4.1.935 [+] Available Version : 1.4.1.1017 [+] Wow6432 : No [+] Portable : No VLC media player (64-bit), version 3.0.3 [+] Available Version : 3.0.17.4 [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\VideoLAN\VLC LibreOffice 7.3.2.2 (64-bit), version 7.3.2.2 [+] Available Version : 7.3.4 [+] Size : 788 MB [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\LibreOffice\ Free Download Manager (64-bit), version 5.1.38.7312 [+] Available Version : 6.16.2.4586 [+] Size : 173 MB [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\ Everything 1.4.1.1005 (x86) (32-bit), version 1.4.1.1005 [+] Available Version : 1.4.1.1017 [+] Size : 3,00 MB [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\Everything Free Download Manager 3.9.7 (32-bit), version 3.9.1641.0 [+] Available Version : 6.16.2.4586 [+] Size : 35,0 MB [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\Free Download Manager\ KeePass Password Safe 2.38 (32-bit), version 2.38 [+] Available Version : 2.51.1 [+] Size : 7,66 MB [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\KeePass Password Safe 2\ Mozilla Thunderbird 68.12.1 (x86 de) (32-bit), version 68.12.1 [+] Available Version : 102.0.2 [+] Size : 164 MB [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\Mozilla Thunderbird Skype Version 8.81 (32-bit), version 8.81.0.268 [+] Available Version : 8.86.0.409 [+] Size : 266 MB [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\Microsoft\Skype for Desktop\ TreeSize Free V4.4.2 (32-bit), version 4.4.2 [+] Available Version : 4.5.3 [+] Size : 10,6 MB [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\JAM Software\TreeSize Free\ CherryTree Version 0.39.4 (32-bit), version 0.39.4 [+] Available Version : 0.99.48.0 [+] Size : 124 MB [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\CherryTree\ Zoom (64-bit), version 5.4.1 (58698.1027) [+] Available Version : 5.11.1 [+] Size : 9,76 MB [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Users\wrt\AppData\Roaming\Zoom\bin ************************* Processes ************************* ************************* Modules ************************* ************************* Services ************************* ************************* Scheduled Tasks ************************* ************************* Registry ************************* ************************* WMI ************************* ************************* Hosts File ************************* is_too_big : No hosts_file_path : C:\Windows\System32\drivers\etc\hosts ************************* Filesystem ************************* [Adw.HotspotShield (Bösartig)] (folder) Hotspot Shield -- C:\ProgramData\Hotspot Shield -> Gefunden ************************* Web Browsers ************************* ************************* Antirootkit ************************* |
14.07.2022, 11:42 | #3 |
| 2.Fortsetzung RogueKiller Anti-Malware_debug.logCode:
ATTFilter 2022/07/03 15:53:58:CRITICAL [SDKConfig] Unable to unserialize existing config (or empty), searching backup... 2022/07/03 15:53:58:CRITICAL [SDKConfig] No backup found, starting with empty config 2022/07/03 15:53:58:INFO [SDKConfig::MigrateOldConfig] Attempting to migrate old config... 2022/07/03 15:53:58:INFO [InstallManager::Install] Installing (C:\ProgramData\RogueKiller)... 2022/07/03 15:53:58:DEBUG [RKCore::InitImpl] Initializing RogueKiller Anti-Malware:15.5.3.0 2022/07/03 15:53:58:DEBUG [RKCore::Init] Initializing RogueKiller Anti-Malware:15.5.3.0 2022/07/03 15:53:58:CRITICAL [SDKConfig] Unable to unserialize existing config (or empty), searching backup... 2022/07/03 15:53:58:CRITICAL [SDKConfig] No backup found, starting with empty config 2022/07/03 15:53:58:INFO [SDKConfig::MigrateOldConfig] Attempting to migrate old config... 2022/07/03 15:53:58:DEBUG [Licensing::CheckLicense] No license found, missing info 2022/07/03 15:53:58:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/03 15:53:58:DEBUG [ReportEngine::SetPath] Path set (C:\ProgramData\RogueKiller\reports) 2022/07/03 15:53:58:DEBUG [ReportEngine::Unserialize] Unserializing, found 0 reports. 2022/07/03 15:53:58:DEBUG [SchedulerCommon::Load] Loading tasks... 2022/07/03 15:53:58:DEBUG [SchedulerCommon::CreateTask] Creating task (scan) 2022/07/03 15:53:58:DEBUG [SchedulerCommon::CreateTask] Creating task (update_check) 2022/07/03 15:53:58:DEBUG [SchedulerCommon::CreateTask] Creating task (scan_reminder) 2022/07/03 15:53:58:DEBUG [SchedulerCommon::CreateTask] Creating task (marketing) 2022/07/03 15:53:58:DEBUG [SchedulerCommon::CreateTask] Creating task (review) 2022/07/03 15:53:58:DEBUG [SchedulerCommon::CreateTask] Creating task (rtp) 2022/07/03 15:53:58:DEBUG [ITask] Added TaskScan:scan::0362256D [interval: 0/0] [start: 2/5] [run: 0/-1] [last run: 1601/01/01 07:00:00] [last set: 2022/07/03 15:53:58] [next run: 00:00:00] 2022/07/03 15:53:58:DEBUG [ITask] Added TaskUpdateCheck:update_check::A4D9ECCD [interval: 3/1] [start: 2/10] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/03 16:03:58] 2022/07/03 15:53:58:DEBUG [ITask] Added TaskScanReminder:scan_reminder::C11D8350 [interval: 4/1] [start: 2/30] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/03 16:23:58] 2022/07/03 15:53:58:DEBUG [ITask] Added TaskMarketing:marketing::6FE60CE9 [interval: 4/1] [start: 3/6] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/03 21:53:58] 2022/07/03 15:53:58:DEBUG [ITask] Added TaskReview:review::CBAB6171 [interval: 4/7] [start: 4/1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/04 15:53:58] 2022/07/03 15:53:58:DEBUG [ITask] Added TaskRTP [interval: 2/15] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/03 15:53:58] 2022/07/03 15:53:58:DEBUG [Workers::Register] Registering worker (Scheduler)... 2022/07/03 15:53:58:DEBUG [Workers::Register] Registering worker (Agent)... 2022/07/03 15:53:58:DEBUG [Workers::Start] Starting worker (Agent)... 2022/07/03 15:53:58:DEBUG [Workers::Start] Starting worker (Scheduler)... 2022/07/03 15:53:58:INFO [InstallManager::RegisterAtStartup] Registration, startup=0, name=RogueKiller Anti-Malware, path=C:\Users\wrt\Downloads\RogueKiller_portable64.exe, svc=rkrtservice, admin=1 2022/07/03 15:53:58:INFO [InstallManager::RegisterAtStartup] Removing all startup entries, name=RogueKiller Anti-Malware 2022/07/03 15:53:58:DEBUG [Advert::Unserialize] Loading campaigns... 2022/07/03 15:53:58:DEBUG [Workers::Register] Registering worker (AdvertNotifs)... 2022/07/03 15:53:59:INFO [VTScanner::UnSerializeCache] Loading cache... 2022/07/03 15:53:59:INFO [VTScanner::UnSerializeCache] 0 entries loaded 2022/07/03 15:53:59:INFO [Cloud::UnSerializeCache] Loading cache... 2022/07/03 15:53:59:INFO [Cloud::UnSerializeCache] 0 entries loaded 2022/07/03 15:53:59:INFO [QuarantineEngine::Init] Loading quarantine engine... 2022/07/03 15:53:59:INFO [QuarantineEngine::SetQuarantineFolder] Loading quarantine items from (C:\ProgramData\RogueKiller\quarantine) 2022/07/03 15:53:59:INFO [QuarantineEngine::Release] Releasing quarantine items... 2022/07/03 15:53:59:INFO [QuarantineEngine::SetQuarantineFolder] Loaded 0 items. 2022/07/03 15:53:59:INFO [Exclusions::Unserialize] Loading exclusions... 2022/07/03 15:53:59:INFO [RulesEngine::LoadRules] Loading rules... 2022/07/03 15:53:59:INFO [RulesEngine::ReadRulesFromResources] Loading rules from resources... 2022/07/03 15:53:59:INFO [Exclusions::Serialize] Saving exclusions... 2022/07/03 15:53:59:DEBUG [ReportFactory::RegisterType] Registered type RK-REPORT 2022/07/03 15:53:59:DEBUG [ReportEngine::Unserialize] Unserializing, found 0 reports. 2022/07/03 15:53:59:DEBUG [CoreScanner::RegisterWorkers] Registering & starting workers... 2022/07/03 15:53:59:DEBUG [Workers::Register] Registering worker (ScannerWorker)... 2022/07/03 15:53:59:DEBUG [Workers::Start] Starting worker (ScannerWorker)... 2022/07/03 15:53:59:DEBUG [CoreScanner::RegisterSignals] Registering callbacks... 2022/07/03 15:54:00:DEBUG [ITask] Added TaskAdvert:12 [campaign: Save 20% with our special Bundle !] [interval: 3/5] [start: 2/5] [run: 0/2] [last run: 00:00:00] [last set: 2022/07/03 15:54:00] [next run: 2022/07/03 15:59:00] 2022/07/03 15:54:00:DEBUG [Advert::Serialize] Saving campaigns... 2022/07/03 15:57:47:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/03 15:57:48:INFO [YaraScanner::CheckForUpdates] Signatures outdated ( => 20220628_123012). 2022/07/03 15:58:42:DEBUG [Workers::Register] Registering worker (Advert)... 2022/07/03 15:58:42:DEBUG [UCheck::GetUpdateable] Getting updateable programs... 2022/07/03 15:58:42:DEBUG [UCheck::GetUpdateable] Found 231 updateable programs. 2022/07/03 15:58:42:DEBUG [UCheck::CreateInstalledList] Searching installed programs... 2022/07/03 15:58:44:DEBUG [UCheck::HandleDuplicates] Found duplicate: Everything 1.4.1.1005 (x86) 2022/07/03 15:58:44:DEBUG [UCheck::HandleDuplicates] Found duplicate: Free Download Manager 3.9.7 2022/07/03 15:58:44:DEBUG [UCheck::HandleDuplicates] Found duplicate: Everything 1.4.1.935 (x64) 2022/07/03 15:58:44:DEBUG [UCheck::HandleDuplicates] Found duplicate: Free Download Manager 2022/07/03 15:58:44:DEBUG [UCheck::CreateInstalledList] Found 139 installed programs, total size 12694180864. 2022/07/03 15:58:44:DEBUG [UCheck::CreateUpdatesList] Searching updates... 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: CPUID CPU-Z 1.89 (1.89 => 2.01) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Everything 1.4.1.935 (x64) (1.4.1.935 => 1.4.1.1017) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: VLC media player (3.0.3 => 3.0.17.4) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: LibreOffice 7.3.2.2 (7.3.2.2 => 7.3.4) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Free Download Manager (5.1.38.7312 => 6.16.2.4586) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Everything 1.4.1.1005 (x86) (1.4.1.1005 => 1.4.1.1017) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Free Download Manager 3.9.7 (3.9.1641.0 => 6.16.2.4586) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: KeePass Password Safe 2.38 (2.38 => 2.51.1) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Mozilla Thunderbird 68.12.1 (x86 de) (68.12.1 => 102.0) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Skype Version 8.81 (8.81.0.268 => 8.85.0.409) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: TreeSize Free V4.4.2 (4.4.2 => 4.5.3) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: CherryTree Version 0.39.4 (0.39.4 => 0.99.48.0) 2022/07/03 15:58:45:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Zoom (5.4.1 (58698.1027) => 5.11.1) 2022/07/03 15:58:45:DEBUG [CoreScanner::StartScan] Starting scan. 2022/07/03 15:58:45:DEBUG [CoreScanner::StartScan] Starting CPU limiter. 2022/07/03 15:58:45:DEBUG [CoreScanner::LoadDefinitions] Loading signatures... 2022/07/03 15:58:45:INFO [YaraScanner::LoadRemoteSignatures] Loading remote signatures, download_new=1... 2022/07/03 15:58:45:INFO [YaraScanner::LoadVersionInformation] Found signatures version (20210423_062556) 2022/07/03 15:58:46:INFO [YaraScanner::CheckForUpdates] Signatures outdated (20210423_062556 => 20220628_123012). 2022/07/03 15:58:46:INFO YaraScanner::LoadRemoteSignatures: Downloading 20220628_123012... 2022/07/03 15:58:53:INFO [YaraScanner::LoadSignaturesPackage] Loading signatures package (C:\Users\wrt\AppData\Local\Temp\as_DC55.tmp.zip)... 2022/07/03 15:58:54:INFO [YaraScanner::LoadSignaturesPackage] Extracted signatures to (C:\ProgramData\RogueKiller\signatures) 2022/07/03 15:58:54:INFO [YaraScanner::LoadRemoteSignatures] Signatures updated (20210423_062556 => 20220628_123012). 2022/07/03 15:58:54:INFO [YaraScanner::LoadExistingSignatures] Loading local signatures... 2022/07/03 15:58:54:INFO [YaraScanner::LoadVersionInformation] Found signatures version (20220628_123012) 2022/07/03 15:58:55:INFO [VTScanner::UnSerializeCache] Loading cache... 2022/07/03 15:58:55:INFO [VTScanner::UnSerializeCache] 0 entries loaded 2022/07/03 15:58:55:DEBUG [CoreScanner::LoadDrivers] Loading kernel drivers... 2022/07/03 15:58:55:INFO [Truesight::Load] Driver loaded. 2022/07/03 15:58:55:DEBUG [CoreScanner::LoadDrivers] Truesight driver loaded. 2022/07/03 15:58:55:DEBUG [CoreScanner::LoadDefinitions] Loading MalPE_AI model... 2022/07/03 15:58:55:INFO [MalPE_AI::LoadFromResources] Loading AI, fast=0... 2022/07/03 15:58:55:INFO [MalPE_AI::LoadFromResources] Model loaded, fast=0 2022/07/03 15:58:55:INFO [MalPE_AI::LoadFromResources] Loading AI, fast=1... 2022/07/03 15:58:55:INFO [MalPE_AI::LoadFromResources] Model loaded, fast=1 2022/07/03 15:59:01:DEBUG [TaskAdvert] Running [campaign: Save 20% with our special Bundle !] [run_count: 0/2] 2022/07/03 15:59:02:DEBUG [ITask] Running TaskAdvert:12 [campaign: Save 20% with our special Bundle !] [interval: 3/5] [start: 2/5] [run: 0/2] [last run: 00:00:00] [last set: 2022/07/03 15:54:00] [next run: 2022/07/03 15:59:00] 2022/07/03 15:59:02:DEBUG [TaskAdvert] Updating Run Date [campaign: Save 20% with our special Bundle !] [2022/07/03 15:59:00] 2022/07/03 15:59:02:DEBUG [ITask] Added TaskAdvert:4 [campaign: Adlice PEViewer] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:59:02] [next run: 00:00:00] 2022/07/03 15:59:02:DEBUG [ITask] Added TaskAdvert:24 [campaign: Need secure navigation ?] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:59:02] [next run: 00:00:00] 2022/07/03 15:59:02:DEBUG [ITask] Added TaskAdvert:2 [campaign: Follow us on Facebook] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:59:02] [next run: 00:00:00] 2022/07/03 15:59:02:DEBUG [ITask] Added TaskAdvert:20 [campaign: Rip DVD Free and Fast] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:59:02] [next run: 00:00:00] 2022/07/03 15:59:02:DEBUG [Advert::Serialize] Saving campaigns... 2022/07/03 15:59:02:DEBUG [Advert::Serialize] Unable to save campaigns to 2022/07/03 15:59:09:INFO [CloudScanner::PreProcess] Processing detection (winwfpmonitor.exe)... 2022/07/03 15:59:10:INFO [CloudScanner::PostProcess] Processing detection (winwfpmonitor.exe)... 2022/07/03 15:59:10:INFO [CloudScanner::PostProcess] Detection processed (winwfpmonitor.exe) : 0/64 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (fdm.exe)... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (Beep)... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (bcmfn2 [Microsoft Windows])... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (CimFS)... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (exfat)... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (fastfat)... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_GPIO2 [Microsoft Windows])... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (iai2c [Microsoft Windows])... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_GPIO2_BXT_P [Microsoft Windows])... 2022/07/03 15:59:16:INFO [CloudScanner::PreProcess] Processing detection (iagpio [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (fdm.exe)... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (fdm.exe) : 0/67 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (Beep)... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (Beep) : -1/0 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (bcmfn2 [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (bcmfn2 [Microsoft Windows]) : 0/66 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (CimFS)... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (CimFS) : -1/0 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (exfat)... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (exfat) : -1/0 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (fastfat)... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (fastfat) : -1/0 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_GPIO2 [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_GPIO2 [Microsoft Windows]) : 0/67 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (iai2c [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (iai2c [Microsoft Windows]) : 0/65 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_GPIO2_BXT_P [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_GPIO2_BXT_P [Microsoft Windows]) : 0/66 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Processing detection (iagpio [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PostProcess] Detection processed (iagpio [Microsoft Windows]) : 0/64 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_GPIO2_CNL [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_GPIO2_GLK [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_I2C [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_I2C_BXT_P [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_I2C_GLK [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_I2C_CNL [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (ibtsiva)... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (iaLPSSi_I2C [Microsoft Windows])... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (Msfs)... 2022/07/03 15:59:17:INFO [CloudScanner::PreProcess] Processing detection (MsRPC)... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_GPIO2_CNL [Microsoft Windows])... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_GPIO2_CNL [Microsoft Windows]) : 0/62 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_GPIO2_GLK [Microsoft Windows])... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_GPIO2_GLK [Microsoft Windows]) : 0/63 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_I2C [Microsoft Windows])... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_I2C [Microsoft Windows]) : 0/62 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_I2C_BXT_P [Microsoft Windows])... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_I2C_BXT_P [Microsoft Windows]) : 0/67 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_I2C_GLK [Microsoft Windows])... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_I2C_GLK [Microsoft Windows]) : 0/67 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_I2C_CNL [Microsoft Windows])... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_I2C_CNL [Microsoft Windows]) : 0/67 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (ibtsiva)... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (ibtsiva) : -1/0 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (iaLPSSi_I2C [Microsoft Windows])... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (iaLPSSi_I2C [Microsoft Windows]) : 0/65 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (Msfs)... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (Msfs) : -1/0 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Processing detection (MsRPC)... 2022/07/03 15:59:18:INFO [CloudScanner::PostProcess] Detection processed (MsRPC) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (Npfs)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (Ntfs)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (Null)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (Netwtw04 [Microsoft Windows])... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (ReFS)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (ReFSv1)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (ssh-agent [Microsoft Windows])... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (vstor2-mntapi20-shared)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (Wof)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (Npfs)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (Npfs) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (Ntfs)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (Ntfs) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (Null)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (Null) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (Netwtw04 [Microsoft Windows])... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (Netwtw04 [Microsoft Windows]) : 0/68 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (ReFS)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (ReFS) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (ReFSv1)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (ReFSv1) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (ssh-agent [Microsoft Windows])... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (ssh-agent [Microsoft Windows]) : 0/67 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (vstor2-mntapi20-shared)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (vstor2-mntapi20-shared) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (Wof)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (Wof) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated))... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual))... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\AppID\EDP Policy Manager)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\AppID\SmartScreenSpecific)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\AppListBackup\Backup)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated))... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual))... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\AppID\EDP Policy Manager)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\AppID\EDP Policy Manager) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\AppID\SmartScreenSpecific)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\AppID\SmartScreenSpecific) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\AppListBackup\Backup)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\AppListBackup\Backup) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\SystemTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\UserTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\UserTask-Roam)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Chkdsk\ProactiveScan)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CloudExperienceHost\CreateObjectTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\SystemTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\SystemTask) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\UserTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\UserTask) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\UserTask-Roam)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\UserTask-Roam) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Chkdsk\ProactiveScan)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Chkdsk\ProactiveScan) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CloudExperienceHost\CreateObjectTask)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CloudExperienceHost\CreateObjectTask) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Autochk\Proxy)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Device Setup\Metadata Refresh)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\HandleCommand)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Autochk\Proxy)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Autochk\Proxy) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Device Setup\Metadata Refresh)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Device Setup\Metadata Refresh) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\HandleCommand)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\HandleCommand) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Diagnosis\Scheduled)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Diagnosis\Scheduled)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Diagnosis\Scheduled) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DiskFootprint\StorageSense)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\EDP\EDP App Launch Task)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\EDP\EDP Auth Task)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\EDP\StorageCardEncryption Task)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\FileHistory\File History (maintenance mode))... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DiskFootprint\StorageSense)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DiskFootprint\StorageSense) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\EDP\EDP App Launch Task)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\EDP\EDP App Launch Task) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\EDP\EDP Auth Task)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\EDP\EDP Auth Task) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\EDP\StorageCardEncryption Task)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\EDP\StorageCardEncryption Task) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\FileHistory\File History (maintenance mode))... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\FileHistory\File History (maintenance mode)) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Flighting\OneSettings\RefreshCache)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Input\LocalUserSyncDataAvailable)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Input\MouseSyncDataAvailable)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Input\PenSyncDataAvailable)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Input\TouchpadSyncDataAvailable)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\ScanForUpdates)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\ScanForUpdatesAsUser)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\SmartRetry)... 2022/07/03 15:59:21:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Flighting\OneSettings\RefreshCache)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Flighting\OneSettings\RefreshCache) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Input\LocalUserSyncDataAvailable)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Input\LocalUserSyncDataAvailable) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Input\MouseSyncDataAvailable)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Input\MouseSyncDataAvailable) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Input\PenSyncDataAvailable)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Input\PenSyncDataAvailable) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Input\TouchpadSyncDataAvailable)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Input\TouchpadSyncDataAvailable) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\ScanForUpdates)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\ScanForUpdates) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\ScanForUpdatesAsUser)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\ScanForUpdatesAsUser) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\SmartRetry)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\SmartRetry) : -1/0 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates)... 2022/07/03 15:59:21:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates) : -1/0 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\International\Synchronize Language Settings)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\Installation)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\License Manager\TempSignedLicenseExchange)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Maintenance\WinSAT)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Maps\MapsToastTask)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Maps\MapsUpdateTask)... 2022/07/03 15:59:22:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\HelloFace\FODCleanupTask)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\International\Synchronize Language Settings)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\International\Synchronize Language Settings) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\Installation)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\LanguageComponentsInstaller\Installation) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\License Manager\TempSignedLicenseExchange)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\License Manager\TempSignedLicenseExchange) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Maintenance\WinSAT)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Maintenance\WinSAT) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Maps\MapsToastTask)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Maps\MapsToastTask) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Maps\MapsUpdateTask)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Maps\MapsUpdateTask) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\HelloFace\FODCleanupTask)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\HelloFace\FODCleanupTask) : 0/67 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Multimedia\SystemSoundsService)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Offline Files\Background Synchronization)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Offline Files\Logon Synchronization)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\PI\Secure-Boot-Update)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\NetTrace\GatherNetworkInfo)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\PI\Sqm-Tasks)... 2022/07/03 15:59:23:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Plug and Play\Device Install Group Policy)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Multimedia\SystemSoundsService)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Multimedia\SystemSoundsService) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Offline Files\Background Synchronization)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Offline Files\Background Synchronization) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Offline Files\Logon Synchronization)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Offline Files\Logon Synchronization) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\PI\Secure-Boot-Update)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\PI\Secure-Boot-Update) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\NetTrace\GatherNetworkInfo)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\NetTrace\GatherNetworkInfo) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\PI\Sqm-Tasks)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\PI\Sqm-Tasks) : -1/0 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Plug and Play\Device Install Group Policy)... 2022/07/03 15:59:23:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Plug and Play\Device Install Group Policy) : -1/0 2022/07/03 15:59:23:INFO [CLSIDScanner::Parse] Loading CLSID entries, this may take some time... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Plug and Play\Device Install Reboot Required)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Plug and Play\Plug and Play Cleanup)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Ras\MobilityManager)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Registry\RegIdleBackup)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Servicing\StartComponentCleanup)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SettingSync\BackgroundUploadTask)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SettingSync\NetworkStateChangeTask)... 2022/07/03 15:59:24:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Plug and Play\Device Install Reboot Required)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Plug and Play\Device Install Reboot Required) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Plug and Play\Plug and Play Cleanup)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Plug and Play\Plug and Play Cleanup) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Ras\MobilityManager)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Ras\MobilityManager) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Registry\RegIdleBackup)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Registry\RegIdleBackup) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Servicing\StartComponentCleanup)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Servicing\StartComponentCleanup) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SettingSync\BackgroundUploadTask)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SettingSync\BackgroundUploadTask) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SettingSync\NetworkStateChangeTask)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SettingSync\NetworkStateChangeTask) : -1/0 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask)... 2022/07/03 15:59:24:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\CreateObjectTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\FamilySafetyRefreshTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\IndexerAutomaticMaintenance)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\UpdateUserPictureTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization)... 2022/07/03 15:59:25:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\CreateObjectTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\CreateObjectTask) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\FamilySafetyRefreshTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\FamilySafetyRefreshTask) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\IndexerAutomaticMaintenance)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\IndexerAutomaticMaintenance) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\UpdateUserPictureTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\UpdateUserPictureTask) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization) : -1/0 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate)... 2022/07/03 15:59:25:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Sysmain\ResPriStaticDbSync)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Task Manager\Interactive)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\TextServicesFramework\MsCtfMonitor)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\TPM\Tpm-HASCertRetr)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\TPM\Tpm-Maintenance)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun)... 2022/07/03 15:59:26:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Sysmain\ResPriStaticDbSync)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Sysmain\ResPriStaticDbSync) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Task Manager\Interactive)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Task Manager\Interactive) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\TextServicesFramework\MsCtfMonitor)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\TextServicesFramework\MsCtfMonitor) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\TPM\Tpm-HASCertRetr)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\TPM\Tpm-HASCertRetr) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\TPM\Tpm-Maintenance)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\TPM\Tpm-Maintenance) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun) : -1/0 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun)... 2022/07/03 15:59:26:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\USB\Usb-Notifications)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WaaSMedic\PerformRemediation)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\User Profile Service\HiveUploadTask)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WDI\ResolutionHost)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WindowsColorSystem\Calibration Loader)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Wininet\CacheTask)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WlanSvc\CDSSync)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WOF\WIM-Hash-Management)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler)... 2022/07/03 15:59:27:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WOF\WIM-Hash-Validation)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\USB\Usb-Notifications)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\USB\Usb-Notifications) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WaaSMedic\PerformRemediation)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WaaSMedic\PerformRemediation) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\User Profile Service\HiveUploadTask)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\User Profile Service\HiveUploadTask) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WDI\ResolutionHost)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WDI\ResolutionHost) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WindowsColorSystem\Calibration Loader)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WindowsColorSystem\Calibration Loader) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Wininet\CacheTask)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Wininet\CacheTask) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WlanSvc\CDSSync)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WlanSvc\CDSSync) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WOF\WIM-Hash-Management)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WOF\WIM-Hash-Management) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler) : -1/0 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WOF\WIM-Hash-Validation)... 2022/07/03 15:59:27:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WOF\WIM-Hash-Validation) : -1/0 2022/07/03 15:59:27:INFO [CLSIDScanner::Parse] Loaded 8306 entries. 2022/07/03 15:59:33:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization)... 2022/07/03 15:59:33:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Work Folders\Work Folders Maintenance Work)... 2022/07/03 15:59:33:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Workplace Join\Device-Sync)... 2022/07/03 15:59:33:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WwanSvc\OobeDiscovery)... |
14.07.2022, 11:45 | #4 |
| debug log Teil 2 von 3Code:
ATTFilter 2022/07/03 15:59:33:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task)... 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization)... 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization) : -1/0 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Work Folders\Work Folders Maintenance Work)... 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Work Folders\Work Folders Maintenance Work) : -1/0 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Workplace Join\Device-Sync)... 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Workplace Join\Device-Sync) : -1/0 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WwanSvc\OobeDiscovery)... 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WwanSvc\OobeDiscovery) : -1/0 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task)... 2022/07/03 15:59:33:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task) : -1/0 2022/07/03 16:00:37:INFO [CloudScanner::PreProcess] Processing detection (HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run|DocFetcher-Daemon)... 2022/07/03 16:00:37:INFO [CloudScanner::PreProcess] Processing detection (HKEY_USERS\S-1-5-21-779246859-3990032973-3551585165-1001\Software\Microsoft\Windows\CurrentVersion\Run|Free Download Manager)... 2022/07/03 16:00:37:INFO [CloudScanner::PreProcess] Processing detection (HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce|OneDrive)... 2022/07/03 16:00:37:INFO [CloudScanner::PreProcess] Processing detection (HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce|OneDrive)... 2022/07/03 16:00:38:INFO [CloudScanner::PostProcess] Processing detection (HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run|DocFetcher-Daemon)... 2022/07/03 16:00:38:INFO [CloudScanner::PostProcess] Detection processed (HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run|DocFetcher-Daemon) : 2/65 2022/07/03 16:00:38:INFO [CloudScanner::PostProcess] Processing detection (HKEY_USERS\S-1-5-21-779246859-3990032973-3551585165-1001\Software\Microsoft\Windows\CurrentVersion\Run|Free Download Manager)... 2022/07/03 16:00:38:INFO [CloudScanner::PostProcess] Detection processed (HKEY_USERS\S-1-5-21-779246859-3990032973-3551585165-1001\Software\Microsoft\Windows\CurrentVersion\Run|Free Download Manager) : 0/67 2022/07/03 16:00:38:INFO [CloudScanner::PostProcess] Processing detection (HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce|OneDrive)... 2022/07/03 16:00:38:INFO [CloudScanner::PostProcess] Detection processed (HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce|OneDrive) : -1/0 2022/07/03 16:00:38:INFO [CloudScanner::PostProcess] Processing detection (HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce|OneDrive)... 2022/07/03 16:00:38:INFO [CloudScanner::PostProcess] Detection processed (HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce|OneDrive) : -1/0 2022/07/03 16:01:06:INFO [CloudScanner::PreProcess] Processing detection (MaxLauncher.lnk)... 2022/07/03 16:01:06:INFO [CloudScanner::PreProcess] Processing detection (desktop.ini [Microsoft Windows])... 2022/07/03 16:01:06:INFO [CloudScanner::PreProcess] Processing detection (strings.txt)... 2022/07/03 16:01:06:INFO [CloudScanner::PreProcess] Processing detection (DocFetcher Pro Demo Daemon.lnk)... 2022/07/03 16:01:06:INFO [CloudScanner::PreProcess] Processing detection (desktop.ini [Microsoft Windows])... 2022/07/03 16:01:06:INFO [CloudScanner::PreProcess] Processing detection (IntentionActivator.exe - Verknüpfung.lnk)... 2022/07/03 16:01:06:INFO [CloudScanner::PreProcess] Processing detection (MadAppLauncher.lnk)... 2022/07/03 16:01:07:INFO [CloudScanner::PostProcess] Processing detection (MaxLauncher.lnk)... 2022/07/03 16:01:08:INFO [CloudScanner::PostProcess] Detection processed (MaxLauncher.lnk) : 1/72 2022/07/03 16:01:08:INFO [CloudScanner::PostProcess] Processing detection (desktop.ini [Microsoft Windows])... 2022/07/03 16:01:09:INFO [CloudScanner::PostProcess] Detection processed (desktop.ini [Microsoft Windows]) : 0/57 2022/07/03 16:01:09:INFO [CloudScanner::PostProcess] Processing detection (strings.txt)... 2022/07/03 16:01:09:INFO [CloudScanner::PostProcess] Detection processed (strings.txt) : -1/0 2022/07/03 16:01:09:INFO [CloudScanner::PostProcess] Processing detection (DocFetcher Pro Demo Daemon.lnk)... 2022/07/03 16:01:09:INFO [CloudScanner::PostProcess] Detection processed (DocFetcher Pro Demo Daemon.lnk) : 1/62 2022/07/03 16:01:09:INFO [CloudScanner::PostProcess] Processing detection (desktop.ini [Microsoft Windows])... 2022/07/03 16:01:09:INFO [CloudScanner::PostProcess] Detection processed (desktop.ini [Microsoft Windows]) : 0/55 2022/07/03 16:01:09:INFO [CloudScanner::PostProcess] Processing detection (IntentionActivator.exe - Verknüpfung.lnk)... 2022/07/03 16:01:10:INFO [CloudScanner::PostProcess] Detection processed (IntentionActivator.exe - Verknüpfung.lnk) : 0/67 2022/07/03 16:01:10:INFO [CloudScanner::PostProcess] Processing detection (MadAppLauncher.lnk)... 2022/07/03 16:01:10:INFO [CloudScanner::PostProcess] Detection processed (MadAppLauncher.lnk) : 0/68 2022/07/03 16:04:00:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/03 16:09:02:DEBUG [ITask] Removed TaskAdvert:4 [campaign: Adlice PEViewer] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:59:02] [next run: 00:00:00] 2022/07/03 16:09:02:DEBUG [ITask] Removed TaskAdvert:24 [campaign: Need secure navigation ?] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:59:02] [next run: 00:00:00] 2022/07/03 16:09:02:DEBUG [ITask] Removed TaskAdvert:2 [campaign: Follow us on Facebook] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:59:02] [next run: 00:00:00] 2022/07/03 16:09:02:DEBUG [ITask] Removed TaskAdvert:20 [campaign: Rip DVD Free and Fast] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/03 15:59:02] [next run: 00:00:00] 2022/07/03 16:09:02:DEBUG [Advert::Serialize] Saving campaigns... 2022/07/03 16:15:54:INFO [VTScanner::SerializeCache] Saving cache in C:\ProgramData\RogueKiller\vt.cache (4 entries)... 2022/07/03 16:15:54:DEBUG [ReportFactory::RegisterType] Creating report of type RK-REPORT 2022/07/03 16:15:58:DEBUG [ReportEngine::AddNewReport] Creating new report (AdliceReport_RK-REPORT_07032022_161553.json)... 2022/07/03 16:15:58:INFO [Telemetry::Send] Sending telemetry data 2022/07/03 16:16:00:DEBUG [CoreScanner::StartScan] Scan finished. 2022/07/03 16:16:00:DEBUG [Scheduler::Reload] Reloading all tasks... 2022/07/03 16:20:49:DEBUG [CoreScanner::StartRemoval] Starting removal. 2022/07/03 16:20:50:INFO [QuarantineEngine::PushRegistryKey] Adding registry key to quarantine (HKEY_USERS\S-1-5-21-779246859-3990032973-3551585165-1001\Software / PUP.Gen1) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushRegistryKey] Adding registry key to quarantine (HKEY_LOCAL_MACHINE\System\ControlSet001\Services / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushRegistryKey] Adding registry key to quarantine (HKEY_LOCAL_MACHINE\System\ControlSet001\Services / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\config\crashrpt.cfg / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\config\dnr.cfg / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\config\hsspx\hsspx.cfg / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\config\hssstate.cfg / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\config\startup.cfg / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\config\unr.cfg / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\cmw_srv_20220703.log / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\hsscp_20220703.log / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\hssfx.2022-07-03.log / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\HssInstaller_20210223.log / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\hydra_20220703.log / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\01ee22f651c849ee82c71c981838cc76.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\022b811565614905883f557797692f53.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\02fdb2d8ed7c47989c1e99b842e7f3c9.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\044cda14f2ee428586450bdeefbc5d96.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\04af69dcebc34c14ba08ce0c8ed9d692.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\057f92c5980c4bd5b97403eaf65ec2a4.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\0d9bededc2a943e8a8dfc1d0950f008b.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\0f638d5018e54abf9b59f89b1684d851.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\0fbdf2e5636a4b4d87470fa6a8d2eaf7.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\0fe2e6c08ca146ffb136f41d6919dd64.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\1170311baedc43df8560ffae6e0d6cd6.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\11dded3abd044af2af5befce7bc7cf93.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\1274c8df5d2e4de19955d658ae15c267.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\12d981bcc7ef4d90a9ecaf6e451e1cd5.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\1352b35f340e484fbfb6bef74eedfcb8.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\172183402a7d4b54a33059d4252b721f.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\1ac8f0549b56441ea6efdf00b2bc49ee.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\1b6e25934adf4062a4dc51612a36e65f.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\1cf899ef610c4990bc885c475864bb1a.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\1f7c11074afd4522ba36b525379b9239.tmf / Adw.HotspotShield) 2022/07/03 16:20:50:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\2015e7cbf0a54ab0aa754bfc091a6026.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\206157522a1544479ac3326c60f5aa68.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\21f795756fe64975948ff1f228d45e49.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\223f7cdcc919463db51d5b1253e60d43.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\25cec00bd0d441c6977662f93eeb5479.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\25e1b3e493cb424180be4531395b0d2d.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\26cea10716ce487e9e8cf95deb800fc4.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\28095a78c94c4ac6a5df12cbe3de5df6.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\293cc60970ac4df8a0078eb484291849.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\29c349a5a37547089d2d9fd80cf98b51.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\29f98652c2d643f5b44e692fe5d430c1.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\2c1046411f974e5194a185526e4fa086.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\2ca1c609cbe8424d9b0a848d9f5d4fbb.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\2d7949edba4147ffa5bcb07606d5528f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\2fa6d7a7c38c49dd9e8df04362f4a827.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\301e6275148f488fa7d2f31328221379.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\304e7b15020b41cca7abdc26b6a9d722.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\3078d536d9304cb7a520ebfb85782650.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\30a01c1ff73148afa2277153aefdce90.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\3167b57fea4f4ad59b737a078382626c.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\32d139d4cacd4e1c8159605060d95f40.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\330d28ee13824d5c80620c650204172f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\343b4b3e5c8d41de95f57437b0a02c41.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\3444b3b0d82b416aacc18ca54f23c738.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\366417db431a4f52bacc9c7c38893834.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\3738096d44f94ca6b7aa7b11ecc1fcb9.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\3ad515e723a14cae896fd9a88a3289d1.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\3c637e08a41c496cb38cb4d532928758.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\400c58d94e20455cb7910eeb0d328acd.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\45b7fbb5fe6e4a4a9258060ced7c5bf7.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\486d5fafd0ed4c9abafddeafbf6e16ea.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\49e695a6aa51420fa9f7237d3914985b.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\4a830efbcd8a463e83adc2e9ffd74c1c.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\4bb98dd4a49e4227949a9a5142874ff0.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\4bc087f235cf4aeeaacc1b39e4bae73d.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\4eae4feed91345788f7ba4554afd0122.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\4f36eb5f1a3d438192098fa5271d163e.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\4f4f6faa09b749b2b8eba3cff95bdc81.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\4f6ee6901bef46d39a037a27f518fb1f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\4fa6f705b32e47b9a71fd55dc1c30cb3.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\50c821a405d14982ac1d28e7e36c95fb.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\50e6e237076744cb9147f09bb87e2dbd.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\51214607f5a04647860c10e9af43d4b0.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\515d4135dc324b62b65cf1729f4826c7.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\51690e7363e449679222bfa98193f84c.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\51a74cf2c0ad43a0b4027cde6d7c2abe.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\556b8b04772b4ac2b515b71df53610df.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\56f8e4b223b8499794e5c63a0c5b267b.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5834bf99f0ae4467a1c2a060d181c3b7.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5882205de43347698674bd67b264f798.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\594d5bbd1d2c4766b49b1b4138b5d492.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5a20f1f8e2b64f8382c07bde818275bc.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5b13321cd5434e14b9493408c91d4235.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5b6e563b1f1a4a83ba30117402a35ac3.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5d9908d452f342b88b3fef1c630dcc4e.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5dc30b482f8b4225878b9ff18d81f823.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5dd4d12a7fc9418e837b4346710fba3f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5e4ffad68cd34923a9766127239f781e.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\5ee6b6190c374cfcad66f009e01c2c32.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\651fbe4d16124d03a63144cdfc9e2e60.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\65779ca56f3f4e48a11013a516de5465.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\65bdfc337db84679975fc1789cb71d2b.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\67b381b0c0084998ae8a9fb563933137.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\6808a761ded14fae934aab9047c544d2.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\698fc1c4da11416f99ef5bc3c956b241.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\69b1c6e524034db39f3a67d33c2e1df2.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\6af789f3c5604c9da8cbfaa1ebd2a4e0.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\6bdc25aee5d94059a35f104da879f88f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\6cf301f794dc4a89b82396a805e6479f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\70ac5ce0a33f43b6999a6fc35a70d7bb.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\70aeaa4d579e464293c99dcc51dc8f06.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\727abd1a9ba4433fb217a3582549fadb.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\73fdd6b278b2444187cd979c21d7b25a.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\753dc899608047bba7ec1db0160610bd.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\75fbd7798ee04e29b03bcb9fb57bc6d6.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\76a3324e75534b09b79fe3afbec560fd.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\76b419c1bece412fb9025a027fd9ab26.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\772530e52ca34ac0bd74bd627811cb0a.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\79c63c1f3ae54275863bdc2ddd6d0c5b.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\7b109dea768247eeae373f93c343780c.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\7b6bc8b2915f4196a804e1d1c663b827.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\7ccb13418148494992376af84772f766.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\7dc8a9c4c47f4e359b0c368ce6357dbc.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\7e049cdb7f214092b7f88eaf2be9f7f9.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\7e8e384db5d242e5b6e533b5bc8568d3.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\7ebf881f1ab94a67bb3a89443622498e.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\823fcd60b53b4e2a9d55810b271777b2.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\827f687800a7450bb7a1445d50aceec5.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\82c38b6b8c4b4627a55eb5325896b7a2.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\881d4ae51ffd4cf595e017e57aa012f6.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\895d8dc941b34ec8b0847bd66dccdd92.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\89ce771922c64c0da859ae2cc23655f3.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8bd8705aa2bd4657ae09ede5e900f49f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8c0c424684014c13a0a44b041192bdc9.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8c65a3920e634caaae34c1eae3c3ac2e.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8c952d9656e34e238f4157225098aef2.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8cd9b8a319124f008b847f5dd32fc5db.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8df8c4ccdbbd4c47892915958c8337de.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8e16ef574f304497914231677f7b8e7f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8eac56f428d74f80bb7ff8e94a4c23fc.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8ecdabce604e4b47b33277bb00561caa.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\8f40db7f361f4284ba201ead1cd7b1dc.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\92333a92359a43b8b1a0614c25889558.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\940dd26d6fd040c3bc8e23a62da2c5d1.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\94dc58ceaab344aa99fd6c3861f073fb.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\9552f7a742c541308fd514589bc13902.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\95b5d9fbc1ba41818fd6694be409584c.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\96898f2aca5242c4807dd63ecae754f1.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\96edda50bcfd4d589dc18def43ffab99.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\97a1fbf4ee9746289ff575d074bfbd6f.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\9805c44086914f548b1682d39db0955a.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\98acf23d81034043814c693e74ae88eb.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\9935acd4f9b24921807f322891bbbba0.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\99a72dbeac19452282c7b29120567946.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\9a09be8e404a4c9ea9f00a9ce520c28a.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\9b12a93aa8db4cf782944df3adec9edd.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\a0a197bc7cfa49e8a8ee72b1b5616170.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\a244a87a92064c28a13e8e77cfc06970.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\a25fdc17027b470eb95931c24803b00e.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\a323ec268016421fb136e39459e39b09.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\a562dcff37ba4136980edc8c2edac313.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\a5761fe676e1413e94d1582576b8dcc4.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\aa0fb5116fd048b9ba9c3e3edc3b0816.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\abc8cc391ba94e17ae8c34bcee4a6e1a.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\ac6a8ec06556483196b6127ee74e1269.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\ad410d088943492785fe236c73e9a60e.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b05a2942d6f84c57a52fcaa9f3b731db.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b1e9531aedb744e284af415e4a375876.tmf / Adw.HotspotShield) 2022/07/03 16:20:51:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b2578105f93640d7b185fa2e5d83a1c5.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b2924e20353146f6bc0a7e24ce18ea97.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b3abda9125384721bb9b38ea17114f0e.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b48fb1eedcbb40f2a5547a326ba4b6fc.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b5bfecdb6e29475dac105a2027e30dea.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b5d1822cadcf4d17b3abe09a26fffb7f.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b5eb11aa127a4900a7225760ce04324c.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b62dd4027aa44417a25a08013c7bc223.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b64b49a5818243468d5482ed8d8c91de.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b6aeaa9dafaa4ecfb38f69d0a513ee06.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b921d52578d34acdbd00f39da0d1345c.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b9d2d58bb9024fadb2541b4bbe5b16c4.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\b9de3fe45cb94d1e81075979eaa9ecf6.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\bb3ba07a04794a3b9da541e259b85ef7.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\bb7baefd63ff4b6ca257588ce8bf43f3.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\bbd311d0f97a430c82b3c8562ea77fe7.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\bc40b088561642db801e521139a7060d.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\bdbc2d4749aa4789a493839c1bee9c70.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c015c75b988045779573e1f8b9c46d80.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c0a643895eb34c438b503e0e9ac89d48.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c10d2f7d73ce434192ff145b27d38224.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c160b5661c93489bb34fde70d108bd7d.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c1df9ba016ba4fcca77c27db5e8fb61a.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c217a176ed854871a452cae9f6d3b47b.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c237e6ab00e94109ac66b39170cc7c8a.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c499207893d145f69ee0e2f54d722c53.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c647d41cea124aa4bcc8610589359857.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c6b2ee5b5d6c4bbf8345dea9b776de13.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\c8c35599cbf2472eb6b9ed1b9f8fd2bf.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\ca40ba15f6e649eabac47b9ea4728239.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\ca4ec1ba61464db0ab2386ff1e813e29.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\cc6fee22247d45b4ab2b1deeac0662b5.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\cfa50ce7c5e84105911af84be06a7dfc.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d05ce54e51cb42ebb96b9cf97123dfee.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d08c4e6ab5944ff6af08a662202dce3d.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d0bd1e085d604db3a6b172d4e462f655.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d12654ae2abc440f866ba74fcd7f1c30.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d24896f5948a42898669cde25a6fbeb4.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d38e5f975a8145d6ad7cf0d5bef84e50.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d453dd8fdb9b4b938ea4bc419f8a4575.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d51ffc60b4664c1a83371556f4967ba7.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d70497c5467644acaa534bfd1c46b297.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d70fea1a8ffc4ee9a28c4fd73bd3b865.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d79935d68bd44cd1a622d692ece60a2a.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d8374291c6bb450fb36595a5ac6a573d.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\d944eb7973d54c06a90f184ab4ac5e16.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\dbf069c31e84409c80ba542096bbfe29.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\dd049a34d67d4f6486b2fe0d6b3a1e88.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\dfc05a7f5a3b4042b9497fe16bcaf985.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\e1a81747e65d4f87ac3f54028aed9b67.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\e4ae37dcfe344ef8a06d64870a37ef48.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\e4ff859ceead42258ab05cbeb9ef99b2.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\e586c216bac44fc0aa23562b2cb8659e.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\e6a8b5c43692430db338d58285c7f35c.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\e75b37ce2d93419f80b3cf64b088f06c.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\eb37bf5bb24f45658b1bf1818febe4b8.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\ebde3e4feb1947e992cca52985ea514b.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\ecab1b387fef448b9535fcd1ac319ae0.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\edcbfc264f524804b15b61b7f290a48e.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\ee589acfed104482a59a43ff21b71be1.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\ef11091859484fe18170bc959473c766.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\efbac39175844fe0ae4446150f05946b.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\f0fabee6ce4b451a942b24c7dc279de6.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\f1a691c218f341ad9cbf7b6703f2c929.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\f5e9b07ba98c406d8087098f8e33eed1.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\f67389a1a4e64e2388057188ffa44e50.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\f9ce32ad6a8549cf8724df623716ed0b.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\f9e142705f784b49b9a4767ae7255946.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\fa091d2cd29a485a90ed004eeb340be0.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\fa9a03c972d040fb8ae936500f643e64.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\faba12ed90f4409ea6b6f9d22d18bc19.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\fb242aef935b438a88851e186366a1f3.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\fb5883accf534035a6ee6707aa16bf10.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\fb5b0e11f95f484995d618a9e0f5b32e.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\fbcaa1bc13ec47c3a9d127cba90c04ef.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\fc04a7faa3c34cb4bdb70820b67141b2.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\logs\ucr\fd90c6f9ce7e4969bda9c4f154c26a5e.tmf / Adw.HotspotShield) 2022/07/03 16:20:52:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\rep\events.db / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield\Hotspot Shield.lnk / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\afvpn.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-console-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-datetime-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-debug-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-errorhandling-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-file-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-file-l1-2-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-file-l2-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-handle-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-heap-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-interlocked-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-libraryloader-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:53:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-localization-l1-2-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-memory-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-namedpipe-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-processenvironment-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-processthreads-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-processthreads-l1-1-1.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-profile-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-rtlsupport-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-string-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-synch-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-synch-l1-2-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-sysinfo-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-timezone-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-core-util-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\API-MS-Win-core-xstate-l2-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-conio-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-convert-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-environment-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-filesystem-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-heap-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-locale-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-math-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-multibyte-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-private-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-process-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-runtime-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-stdio-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-string-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-time-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\api-ms-win-crt-utility-l1-1-0.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\ar\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\AutoMapper.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Castle.Core.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\cfghlp.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\cfghlp_cmd64.exe / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe.config / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\CommonServiceLocator.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\concrt140.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\CrashRpt1403.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\crashrpt_lang.ini / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\CrashSender1403.exe / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\de\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\es\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Foundation.Common.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Foundation.Interop.Wfp.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\fr\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\FxNtfBridge.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\FxServiceBridge.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Google.Protobuf.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hardcodet.Wpf.TaskbarNotification.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.Application.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.Common.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.Framework.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.Management.Contract.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.Management.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.Notification.Contract.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.Services.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.UI.Auxiliary.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.UI.View.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Client.UI.ViewModel.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Common.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Common.Rpc.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Common.Support.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Common.Wcf.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.Backend.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.Common.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.Configuration.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.DataPath.dll / Adw.HotspotShield) 2022/07/03 16:20:54:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.Landing.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.ManagedAdapter.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.Management.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.Messaging.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.Service.Support.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.TrayNtf.exe / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Hss.UnifiedApi.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\hsscp.exe / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\hsscp.exe.config / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\HssInstaller.exe / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\HssInstaller64.exe / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\HtmlToXamlConverter.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\hydra.exe / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\ja\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\ko\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-ara.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-bur.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-chi.dll / Adw.HotspotShield) |
14.07.2022, 11:46 | #5 |
| Teil 3Code:
ATTFilter 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-eng.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-fre.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-ger.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-ind.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-jpn.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-kor.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-per.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-por.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-rus.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-spa.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-tur.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\lang\gui-vie.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Microsoft.Expression.Interactions.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Mixpanel.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\msvcp140.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\msvcp140_1.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\msvcp140_2.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Newtonsoft.Json.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Ninject.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Ninject.Extensions.Factory.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\NLog.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Ntf.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\PktMgrLib.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Prism.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\Prism.Wpf.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\pt\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\ru\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\speed.gif / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\System.Collections.Immutable.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\System.ValueTuple.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\System.Windows.Interactivity.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\tapinstall.exe / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\tr\Hss.Client.UI.View.resources.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\TrafMgrClnt.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\TrafMgr_1_4_32.sys / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\TrafMgr_1_4_64.sys / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\ucrtbase.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\vccorlib140.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\vcruntime140.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\vistahlp.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\x64\afvpn.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\x64\CrashRpt1403.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\x64\crashrpt_lang.ini / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\x64\CrashSender1403.exe / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\x64\hydra.exe / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\x64\PktMgrLib.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\x64\TrafMgrClnt.dll / Adw.HotspotShield) 2022/07/03 16:20:55:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\x64\TrafMgr_1_4_64.sys / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\bin\ZendeskApi_v2.dll / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\config\hydra_hssst.cfg / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\config\hydra_hssst.cfg.bak / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\config\sd-info-direct.cfg / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\config\sd-info-failed.cfg / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\config\sd-info-main.cfg / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\config\sd-info-saved.cfg / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\config\upd_dat.cfg / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\driver\openvpn-sha1.cer / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\driver\openvpn-sha256.cer / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\driver\tap-windows-9.21.2.exe / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\hss.ico / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\anim.js / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\anim_v2.js / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\auto_connect_template.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\bandwidth_fbw.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\cannot_unblock.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\enable_unblock.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\bandwidth_fbw_close.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\bandwidth_fbw_graf.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\bandwidth_fbw_logo.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\close.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\hss.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\l.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\logo.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\logo_hss.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\s.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\img\temp_banner.png / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\mal_rep.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\newhs.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\safe.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\styles.css / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\styles2.css / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\style_v2.css / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\template_v2.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\unblock_doms.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\unsafe.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\update.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\wifisec.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\ntf\wifi_protected.html / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\htdocs\proxy.js / Adw.HotspotShield) 2022/07/03 16:20:56:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\Program Files (x86)\Hotspot Shield\license.txt / Adw.HotspotShield) 2022/07/03 16:20:56:DEBUG [ReportFactory::RegisterType] Creating report of type RK-REPORT 2022/07/03 16:20:56:DEBUG [ReportEngine::AddNewReport] Creating new report (AdliceReport_RK-REPORT_07032022_162056.json)... 2022/07/03 16:20:56:INFO [Telemetry::Send] Sending telemetry data 2022/07/03 16:20:57:DEBUG [CoreScanner::StartRemoval] Removal finished. 2022/07/03 16:20:57:DEBUG [Scheduler::Reload] Reloading all tasks... 2022/07/14 13:54:37:INFO [InstallManager::Install] Installing (C:\ProgramData\RogueKiller)... 2022/07/14 13:54:37:DEBUG [RKCore::InitImpl] Initializing RogueKiller Anti-Malware:15.5.3.0 2022/07/14 13:54:37:DEBUG [RKCore::Init] Initializing RogueKiller Anti-Malware:15.5.3.0 2022/07/14 13:54:37:DEBUG [Licensing::CheckLicense] No license found, missing info 2022/07/14 13:54:38:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/14 13:54:38:DEBUG [ReportEngine::SetPath] Path set (C:\ProgramData\RogueKiller\reports) 2022/07/14 13:54:38:DEBUG [ReportEngine::Unserialize] Unserializing, found 4 reports. 2022/07/14 13:54:38:DEBUG [SchedulerCommon::Load] Loading tasks... 2022/07/14 13:54:38:DEBUG [SchedulerCommon::CreateTask] Creating task (scan) 2022/07/14 13:54:38:DEBUG [SchedulerCommon::CreateTask] Creating task (update_check) 2022/07/14 13:54:38:DEBUG [SchedulerCommon::CreateTask] Creating task (scan_reminder) 2022/07/14 13:54:38:DEBUG [SchedulerCommon::CreateTask] Creating task (marketing) 2022/07/14 13:54:38:DEBUG [SchedulerCommon::CreateTask] Creating task (review) 2022/07/14 13:54:38:DEBUG [SchedulerCommon::CreateTask] Creating task (rtp) 2022/07/14 13:54:38:DEBUG [ITask] Added TaskScan:scan::E58A6044 [interval: 0/0] [start: 2/5] [run: 0/-1] [last run: 1601/01/01 07:00:00] [last set: 2022/07/03 15:53:58] [next run: 00:00:00] 2022/07/14 13:54:38:DEBUG [ITask] Added TaskUpdateCheck:update_check::E8239AAE [interval: 3/1] [start: 2/10] [run: 1/-1] [last run: 2022/07/03 16:03:59] [last set: 2022/07/03 15:53:58] [next run: 2022/07/03 17:03:59] 2022/07/14 13:54:38:DEBUG [ITask] Added TaskScanReminder:scan_reminder::BBA5DA8D [interval: 4/1] [start: 2/30] [run: 1/-1] [last run: 2022/07/03 16:23:59] [last set: 2022/07/03 15:53:58] [next run: 2022/07/04 16:23:59] 2022/07/14 13:54:38:DEBUG [ITask] Added TaskMarketing:marketing::989610F5 [interval: 4/1] [start: 3/6] [run: 0/-1] [last run: 1601/01/01 07:00:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/14 13:54:37] 2022/07/14 13:54:38:DEBUG [ITask] Added TaskReview:review::5DBA079D [interval: 4/7] [start: 4/1] [run: 0/-1] [last run: 1601/01/01 07:00:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/14 13:54:37] 2022/07/14 13:54:38:DEBUG [ITask] Added TaskRTP [interval: 2/15] [start: 9/-1] [run: 3/-1] [last run: 2022/07/03 16:24:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/03 16:39:00] 2022/07/14 13:54:38:DEBUG [Workers::Register] Registering worker (Scheduler)... 2022/07/14 13:54:38:DEBUG [Workers::Register] Registering worker (Agent)... 2022/07/14 13:54:38:DEBUG [Workers::Start] Starting worker (Agent)... 2022/07/14 13:54:38:DEBUG [Workers::Start] Starting worker (Scheduler)... 2022/07/14 13:54:38:INFO [InstallManager::RegisterAtStartup] Registration, startup=0, name=RogueKiller Anti-Malware, path=C:\Users\wrt\Downloads\RogueKiller_portable64.exe, svc=rkrtservice, admin=1 2022/07/14 13:54:38:INFO [InstallManager::RegisterAtStartup] Removing all startup entries, name=RogueKiller Anti-Malware 2022/07/14 13:54:38:DEBUG [Advert::Unserialize] Loading campaigns... 2022/07/14 13:54:38:DEBUG [ITask] Added TaskAdvert:12 [campaign: Save 20% with our special Bundle !] [interval: 3/5] [start: 2/5] [run: 1/2] [last run: 2022/07/03 15:59:00] [last set: 2022/07/14 13:54:37] [next run: 2022/07/14 13:59:37] 2022/07/14 13:54:38:DEBUG [Advert::Serialize] Saving campaigns... 2022/07/14 13:54:38:DEBUG [Workers::Register] Registering worker (AdvertNotifs)... 2022/07/14 13:54:38:INFO [VTScanner::UnSerializeCache] Loading cache... 2022/07/14 13:54:38:INFO [VTScanner::UnSerializeCache] 4 entries loaded 2022/07/14 13:54:38:INFO [Cloud::UnSerializeCache] Loading cache... 2022/07/14 13:54:38:INFO [Cloud::UnSerializeCache] 0 entries loaded 2022/07/14 13:54:38:INFO [QuarantineEngine::Init] Loading quarantine engine... 2022/07/14 13:54:38:INFO [QuarantineEngine::SetQuarantineFolder] Loading quarantine items from (C:\ProgramData\RogueKiller\quarantine) 2022/07/14 13:54:39:INFO [QuarantineEngine::Release] Releasing quarantine items... 2022/07/14 13:54:39:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/14 13:54:40:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/14 13:54:40:DEBUG [TaskScanReminder] Running 2022/07/14 13:54:40:DEBUG [ITask] Running TaskScanReminder:scan_reminder::BBA5DA8D [interval: 4/1] [start: 2/30] [run: 1/-1] [last run: 2022/07/03 16:23:59] [last set: 2022/07/03 15:53:58] [next run: 2022/07/04 16:23:59] 2022/07/14 13:54:40:INFO [QuarantineEngine::SetQuarantineFolder] Loaded 430 items. 2022/07/14 13:54:40:INFO [Exclusions::Unserialize] Loading exclusions... 2022/07/14 13:54:40:INFO [RulesEngine::LoadRules] Loading rules... 2022/07/14 13:54:40:INFO [RulesEngine::ReadRulesFromResources] Loading rules from resources... 2022/07/14 13:54:40:INFO [Exclusions::Serialize] Saving exclusions... 2022/07/14 13:54:40:DEBUG [ReportFactory::RegisterType] Registered type RK-REPORT 2022/07/14 13:54:40:DEBUG [ReportEngine::Unserialize] Unserializing, found 4 reports. 2022/07/14 13:54:40:DEBUG [CoreScanner::RegisterWorkers] Registering & starting workers... 2022/07/14 13:54:40:DEBUG [Workers::Register] Registering worker (ScannerWorker)... 2022/07/14 13:54:40:DEBUG [Workers::Start] Starting worker (ScannerWorker)... 2022/07/14 13:54:40:DEBUG [CoreScanner::RegisterSignals] Registering callbacks... 2022/07/14 13:54:56:DEBUG [TaskMarketing] Running 2022/07/14 13:54:56:DEBUG [ITask] Running TaskMarketing:marketing::989610F5 [interval: 4/1] [start: 3/6] [run: 0/-1] [last run: 1601/01/01 07:00:00] [last set: 2022/07/03 15:53:58] [next run: 2022/07/14 13:54:37] 2022/07/14 13:55:03:DEBUG [Workers::Register] Registering worker (Advert)... 2022/07/14 13:55:03:DEBUG [UCheck::GetUpdateable] Getting updateable programs... 2022/07/14 13:55:04:DEBUG [UCheck::GetUpdateable] Found 231 updateable programs. 2022/07/14 13:55:04:DEBUG [UCheck::CreateInstalledList] Searching installed programs... 2022/07/14 13:55:06:DEBUG [UCheck::HandleDuplicates] Found duplicate: Everything 1.4.1.1005 (x86) 2022/07/14 13:55:06:DEBUG [UCheck::HandleDuplicates] Found duplicate: Free Download Manager 3.9.7 2022/07/14 13:55:06:DEBUG [UCheck::HandleDuplicates] Found duplicate: Everything 1.4.1.935 (x64) 2022/07/14 13:55:06:DEBUG [UCheck::HandleDuplicates] Found duplicate: Free Download Manager 2022/07/14 13:55:06:DEBUG [UCheck::CreateInstalledList] Found 138 installed programs, total size 12636205056. 2022/07/14 13:55:06:DEBUG [UCheck::CreateUpdatesList] Searching updates... 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: CPUID CPU-Z 1.89 (1.89 => 2.01) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Everything 1.4.1.935 (x64) (1.4.1.935 => 1.4.1.1017) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: VLC media player (3.0.3 => 3.0.17.4) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: LibreOffice 7.3.2.2 (7.3.2.2 => 7.3.4) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Free Download Manager (5.1.38.7312 => 6.16.2.4586) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Everything 1.4.1.1005 (x86) (1.4.1.1005 => 1.4.1.1017) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Free Download Manager 3.9.7 (3.9.1641.0 => 6.16.2.4586) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: KeePass Password Safe 2.38 (2.38 => 2.51.1) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Mozilla Thunderbird 68.12.1 (x86 de) (68.12.1 => 102.0.2) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Skype Version 8.81 (8.81.0.268 => 8.86.0.409) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: TreeSize Free V4.4.2 (4.4.2 => 4.5.3) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: CherryTree Version 0.39.4 (0.39.4 => 0.99.48.0) 2022/07/14 13:55:08:DEBUG [UCheck::CreateUpdatesList] Found outdated program: Zoom (5.4.1 (58698.1027) => 5.11.1) 2022/07/14 13:55:08:DEBUG [CoreScanner::StartScan] Starting scan. 2022/07/14 13:55:08:DEBUG [CoreScanner::StartScan] Starting CPU limiter. 2022/07/14 13:55:08:DEBUG [CoreScanner::LoadDefinitions] Loading signatures... 2022/07/14 13:55:08:INFO [YaraScanner::LoadRemoteSignatures] Loading remote signatures, download_new=1... 2022/07/14 13:55:08:INFO [YaraScanner::LoadVersionInformation] Found signatures version (20220628_123012) 2022/07/14 13:55:09:INFO [YaraScanner::CheckForUpdates] Signatures outdated (20220628_123012 => 20220711_090857). 2022/07/14 13:55:09:INFO YaraScanner::LoadRemoteSignatures: Downloading 20220711_090857... 2022/07/14 13:55:16:INFO [YaraScanner::LoadSignaturesPackage] Loading signatures package (C:\Users\wrt\AppData\Local\Temp\as_BD97.tmp.zip)... 2022/07/14 13:55:16:INFO [YaraScanner::LoadSignaturesPackage] Extracted signatures to (C:\ProgramData\RogueKiller\signatures) 2022/07/14 13:55:16:INFO [YaraScanner::LoadRemoteSignatures] Signatures updated (20220628_123012 => 20220711_090857). 2022/07/14 13:55:16:INFO [YaraScanner::LoadExistingSignatures] Loading local signatures... 2022/07/14 13:55:16:INFO [YaraScanner::LoadVersionInformation] Found signatures version (20220711_090857) 2022/07/14 13:55:17:INFO [VTScanner::UnSerializeCache] Loading cache... 2022/07/14 13:55:17:INFO [VTScanner::UnSerializeCache] 4 entries loaded 2022/07/14 13:55:17:DEBUG [CoreScanner::LoadDrivers] Loading kernel drivers... 2022/07/14 13:55:17:INFO [Truesight::Load] Driver loaded. 2022/07/14 13:55:17:DEBUG [CoreScanner::LoadDrivers] Truesight driver loaded. 2022/07/14 13:55:17:DEBUG [CoreScanner::LoadDefinitions] Loading MalPE_AI model... 2022/07/14 13:55:17:INFO [MalPE_AI::LoadFromResources] Loading AI, fast=0... 2022/07/14 13:55:17:INFO [MalPE_AI::LoadFromResources] Model loaded, fast=0 2022/07/14 13:55:17:INFO [MalPE_AI::LoadFromResources] Loading AI, fast=1... 2022/07/14 13:55:17:INFO [MalPE_AI::LoadFromResources] Model loaded, fast=1 2022/07/14 13:55:35:INFO [CloudScanner::PreProcess] Processing detection (browsernativehost.exe)... 2022/07/14 13:55:36:INFO [CloudScanner::PostProcess] Processing detection (browsernativehost.exe)... 2022/07/14 13:55:36:INFO [CloudScanner::PostProcess] Detection processed (browsernativehost.exe) : 0/67 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (Beep)... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (bcmfn2 [Microsoft Windows])... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (CimFS)... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (exfat)... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (fastfat)... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (hsstap)... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_GPIO2 [Microsoft Windows])... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (iai2c [Microsoft Windows])... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (iagpio [Microsoft Windows])... 2022/07/14 13:55:39:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_GPIO2_CNL [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (Beep)... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (Beep) : -1/0 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (bcmfn2 [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (bcmfn2 [Microsoft Windows]) : 0/66 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (CimFS)... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (CimFS) : -1/0 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (exfat)... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (exfat) : -1/0 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (fastfat)... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (fastfat) : -1/0 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (hsstap)... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (hsstap) : -1/0 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_GPIO2 [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_GPIO2 [Microsoft Windows]) : 0/67 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (iai2c [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (iai2c [Microsoft Windows]) : 0/65 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (iagpio [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (iagpio [Microsoft Windows]) : 0/64 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_GPIO2_CNL [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_GPIO2_CNL [Microsoft Windows]) : 0/62 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_GPIO2_BXT_P [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_I2C_BXT_P [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_GPIO2_GLK [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_I2C [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_I2C_GLK [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (iaLPSS2i_I2C_CNL [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (iaLPSSi_I2C [Microsoft Windows])... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (ibtsiva)... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (Msfs)... 2022/07/14 13:55:40:INFO [CloudScanner::PreProcess] Processing detection (MsRPC)... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_GPIO2_BXT_P [Microsoft Windows])... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_GPIO2_BXT_P [Microsoft Windows]) : 0/66 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_I2C_BXT_P [Microsoft Windows])... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_I2C_BXT_P [Microsoft Windows]) : 0/67 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_GPIO2_GLK [Microsoft Windows])... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_GPIO2_GLK [Microsoft Windows]) : 0/63 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_I2C [Microsoft Windows])... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_I2C [Microsoft Windows]) : 0/62 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_I2C_GLK [Microsoft Windows])... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_I2C_GLK [Microsoft Windows]) : 0/67 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (iaLPSS2i_I2C_CNL [Microsoft Windows])... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (iaLPSS2i_I2C_CNL [Microsoft Windows]) : 0/67 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (iaLPSSi_I2C [Microsoft Windows])... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (iaLPSSi_I2C [Microsoft Windows]) : 0/65 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (ibtsiva)... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (ibtsiva) : -1/0 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (Msfs)... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (Msfs) : -1/0 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Processing detection (MsRPC)... 2022/07/14 13:55:41:INFO [CloudScanner::PostProcess] Detection processed (MsRPC) : -1/0 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (Npfs)... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (Ntfs)... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (Null)... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (Netwtw04 [Microsoft Windows])... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (ReFS)... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (ReFSv1)... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (ssh-agent [Microsoft Windows])... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (vstor2-mntapi20-shared)... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (Wof)... 2022/07/14 13:55:45:INFO [CloudScanner::PreProcess] Processing detection (C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (Npfs)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (Npfs) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (Ntfs)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (Ntfs) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (Null)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (Null) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (Netwtw04 [Microsoft Windows])... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (Netwtw04 [Microsoft Windows]) : 0/68 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (ReFS)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (ReFS) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (ReFSv1)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (ReFSv1) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (ssh-agent [Microsoft Windows])... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (ssh-agent [Microsoft Windows]) : 0/67 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (vstor2-mntapi20-shared)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (vstor2-mntapi20-shared) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (Wof)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (Wof) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated))... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual))... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\AppID\EDP Policy Manager)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\AppID\SmartScreenSpecific)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\AppListBackup\Backup)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated))... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual))... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\AppID\EDP Policy Manager)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\AppID\EDP Policy Manager) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\AppID\SmartScreenSpecific)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\AppID\SmartScreenSpecific) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\AppListBackup\Backup)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\AppListBackup\Backup) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\SystemTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\UserTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\UserTask-Roam)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Chkdsk\ProactiveScan)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Autochk\Proxy)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\SystemTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\SystemTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\UserTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\UserTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CertificateServicesClient\UserTask-Roam)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CertificateServicesClient\UserTask-Roam) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Chkdsk\ProactiveScan)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Chkdsk\ProactiveScan) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Autochk\Proxy)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Autochk\Proxy) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\CloudExperienceHost\CreateObjectTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Device Setup\Metadata Refresh)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\HandleCommand)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\CloudExperienceHost\CreateObjectTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\CloudExperienceHost\CreateObjectTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Device Setup\Metadata Refresh)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Device Setup\Metadata Refresh) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\HandleCommand)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\HandleCommand) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Diagnosis\Scheduled)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Diagnosis\Scheduled)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Diagnosis\Scheduled) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\DiskFootprint\StorageSense)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\EDP\EDP App Launch Task)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\EDP\EDP Auth Task)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\EDP\StorageCardEncryption Task)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\FileHistory\File History (maintenance mode))... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\DiskFootprint\StorageSense)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\DiskFootprint\StorageSense) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\EDP\EDP App Launch Task)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\EDP\EDP App Launch Task) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\EDP\EDP Auth Task)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\EDP\EDP Auth Task) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\EDP\StorageCardEncryption Task)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\EDP\StorageCardEncryption Task) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\FileHistory\File History (maintenance mode))... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\FileHistory\File History (maintenance mode)) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Flighting\OneSettings\RefreshCache)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Input\LocalUserSyncDataAvailable)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Input\MouseSyncDataAvailable)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Input\PenSyncDataAvailable)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Input\TouchpadSyncDataAvailable)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\ScanForUpdates)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\ScanForUpdatesAsUser)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\SmartRetry)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Flighting\OneSettings\RefreshCache)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Flighting\OneSettings\RefreshCache) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Input\LocalUserSyncDataAvailable)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Input\LocalUserSyncDataAvailable) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Input\MouseSyncDataAvailable)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Input\MouseSyncDataAvailable) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Input\PenSyncDataAvailable)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Input\PenSyncDataAvailable) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Input\TouchpadSyncDataAvailable)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Input\TouchpadSyncDataAvailable) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\ScanForUpdates)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\ScanForUpdates) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\ScanForUpdatesAsUser)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\ScanForUpdatesAsUser) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\SmartRetry)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\SmartRetry) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\International\Synchronize Language Settings)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\Installation)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\License Manager\TempSignedLicenseExchange)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Maintenance\WinSAT)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Maps\MapsToastTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Maps\MapsUpdateTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\International\Synchronize Language Settings)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\International\Synchronize Language Settings) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\Installation)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\LanguageComponentsInstaller\Installation) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\License Manager\TempSignedLicenseExchange)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\License Manager\TempSignedLicenseExchange) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Maintenance\WinSAT)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Maintenance\WinSAT) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Maps\MapsToastTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Maps\MapsToastTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Maps\MapsUpdateTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Maps\MapsUpdateTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Multimedia\SystemSoundsService)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Offline Files\Background Synchronization)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\NetTrace\GatherNetworkInfo)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Offline Files\Logon Synchronization)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\PI\Secure-Boot-Update)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\PI\Sqm-Tasks)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Plug and Play\Device Install Group Policy)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Plug and Play\Device Install Reboot Required)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Multimedia\SystemSoundsService)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Multimedia\SystemSoundsService) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Offline Files\Background Synchronization)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Offline Files\Background Synchronization) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\NetTrace\GatherNetworkInfo)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\NetTrace\GatherNetworkInfo) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Offline Files\Logon Synchronization)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Offline Files\Logon Synchronization) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\PI\Secure-Boot-Update)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\PI\Secure-Boot-Update) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\PI\Sqm-Tasks)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\PI\Sqm-Tasks) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Plug and Play\Device Install Group Policy)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Plug and Play\Device Install Group Policy) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Plug and Play\Device Install Reboot Required)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Plug and Play\Device Install Reboot Required) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Plug and Play\Plug and Play Cleanup)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Ras\MobilityManager)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Registry\RegIdleBackup)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SettingSync\BackgroundUploadTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SettingSync\NetworkStateChangeTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Servicing\StartComponentCleanup)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\CreateObjectTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Plug and Play\Plug and Play Cleanup)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Plug and Play\Plug and Play Cleanup) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Ras\MobilityManager)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Ras\MobilityManager) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Registry\RegIdleBackup)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Registry\RegIdleBackup) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SettingSync\BackgroundUploadTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SettingSync\BackgroundUploadTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SettingSync\NetworkStateChangeTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SettingSync\NetworkStateChangeTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Servicing\StartComponentCleanup)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Servicing\StartComponentCleanup) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\CreateObjectTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\CreateObjectTask) : -1/0 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\FamilySafetyRefreshTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\HelloFace\FODCleanupTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\IndexerAutomaticMaintenance)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Shell\UpdateUserPictureTask)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization)... 2022/07/14 13:55:46:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate)... 2022/07/14 13:55:47:INFO [CLSIDScanner::Parse] Loading CLSID entries, this may take some time... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\FamilySafetyRefreshTask)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\FamilySafetyRefreshTask) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\HelloFace\FODCleanupTask)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\HelloFace\FODCleanupTask) : 0/67 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\IndexerAutomaticMaintenance)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\IndexerAutomaticMaintenance) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Shell\UpdateUserPictureTask)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Shell\UpdateUserPictureTask) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Sysmain\ResPriStaticDbSync)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\TextServicesFramework\MsCtfMonitor)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Task Manager\Interactive)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\TPM\Tpm-HASCertRetr)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\TPM\Tpm-Maintenance)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\USB\Usb-Notifications)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\User Profile Service\HiveUploadTask)... 2022/07/14 13:55:47:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Sysmain\ResPriStaticDbSync)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Sysmain\ResPriStaticDbSync) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\TextServicesFramework\MsCtfMonitor)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\TextServicesFramework\MsCtfMonitor) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Task Manager\Interactive)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Task Manager\Interactive) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\TPM\Tpm-HASCertRetr)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\TPM\Tpm-HASCertRetr) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\TPM\Tpm-Maintenance)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\TPM\Tpm-Maintenance) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\USB\Usb-Notifications)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\USB\Usb-Notifications) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\User Profile Service\HiveUploadTask)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\User Profile Service\HiveUploadTask) : -1/0 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun)... 2022/07/14 13:55:47:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WDI\ResolutionHost)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WaaSMedic\PerformRemediation)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WindowsColorSystem\Calibration Loader)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Wininet\CacheTask)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WlanSvc\CDSSync)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WOF\WIM-Hash-Management)... 2022/07/14 13:55:48:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WOF\WIM-Hash-Validation)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WDI\ResolutionHost)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WDI\ResolutionHost) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WaaSMedic\PerformRemediation)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WaaSMedic\PerformRemediation) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WindowsColorSystem\Calibration Loader)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WindowsColorSystem\Calibration Loader) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Wininet\CacheTask)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Wininet\CacheTask) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WlanSvc\CDSSync)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WlanSvc\CDSSync) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WOF\WIM-Hash-Management)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WOF\WIM-Hash-Management) : -1/0 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WOF\WIM-Hash-Validation)... 2022/07/14 13:55:48:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WOF\WIM-Hash-Validation) : -1/0 2022/07/14 13:55:52:INFO [CLSIDScanner::Parse] Loaded 8307 entries. 2022/07/14 13:55:57:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Work Folders\Work Folders Maintenance Work)... 2022/07/14 13:55:57:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization)... 2022/07/14 13:55:57:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\Workplace Join\Device-Sync)... 2022/07/14 13:55:57:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows\WwanSvc\OobeDiscovery)... 2022/07/14 13:55:57:INFO [CloudScanner::PreProcess] Processing detection (\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task)... 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Work Folders\Work Folders Maintenance Work)... 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Work Folders\Work Folders Maintenance Work) : -1/0 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization)... 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization) : -1/0 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\Workplace Join\Device-Sync)... 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\Workplace Join\Device-Sync) : -1/0 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows\WwanSvc\OobeDiscovery)... 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows\WwanSvc\OobeDiscovery) : -1/0 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Processing detection (\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task)... 2022/07/14 13:55:57:INFO [CloudScanner::PostProcess] Detection processed (\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task) : -1/0 2022/07/14 13:56:53:INFO [CloudScanner::PreProcess] Processing detection (HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run|DocFetcher-Daemon)... 2022/07/14 13:56:53:INFO [CloudScanner::PreProcess] Processing detection (HKEY_USERS\S-1-5-21-779246859-3990032973-3551585165-1001\Software\Microsoft\Windows\CurrentVersion\Run|Free Download Manager)... 2022/07/14 13:56:54:INFO [CloudScanner::PostProcess] Processing detection (HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run|DocFetcher-Daemon)... 2022/07/14 13:56:54:INFO [CloudScanner::PostProcess] Detection processed (HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run|DocFetcher-Daemon) : 2/65 2022/07/14 13:56:54:INFO [CloudScanner::PostProcess] Processing detection (HKEY_USERS\S-1-5-21-779246859-3990032973-3551585165-1001\Software\Microsoft\Windows\CurrentVersion\Run|Free Download Manager)... 2022/07/14 13:56:54:INFO [CloudScanner::PostProcess] Detection processed (HKEY_USERS\S-1-5-21-779246859-3990032973-3551585165-1001\Software\Microsoft\Windows\CurrentVersion\Run|Free Download Manager) : 0/67 2022/07/14 13:57:23:INFO [CloudScanner::PreProcess] Processing detection (desktop.ini [Microsoft Windows])... 2022/07/14 13:57:23:INFO [CloudScanner::PreProcess] Processing detection (MaxLauncher.lnk)... 2022/07/14 13:57:23:INFO [CloudScanner::PreProcess] Processing detection (desktop.ini [Microsoft Windows])... 2022/07/14 13:57:23:INFO [CloudScanner::PreProcess] Processing detection (DocFetcher Pro Demo Daemon.lnk)... 2022/07/14 13:57:23:INFO [CloudScanner::PreProcess] Processing detection (strings.txt)... 2022/07/14 13:57:23:INFO [CloudScanner::PreProcess] Processing detection (MadAppLauncher.lnk)... 2022/07/14 13:57:23:INFO [CloudScanner::PreProcess] Processing detection (IntentionActivator.exe - Verknüpfung.lnk)... 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Processing detection (desktop.ini [Microsoft Windows])... 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Detection processed (desktop.ini [Microsoft Windows]) : 0/57 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Processing detection (MaxLauncher.lnk)... 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Detection processed (MaxLauncher.lnk) : 1/72 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Processing detection (desktop.ini [Microsoft Windows])... 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Detection processed (desktop.ini [Microsoft Windows]) : 0/55 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Processing detection (DocFetcher Pro Demo Daemon.lnk)... 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Detection processed (DocFetcher Pro Demo Daemon.lnk) : 1/62 2022/07/14 13:57:24:INFO [CloudScanner::PostProcess] Processing detection (strings.txt)... 2022/07/14 13:57:25:INFO [CloudScanner::PostProcess] Detection processed (strings.txt) : -1/0 2022/07/14 13:57:25:INFO [CloudScanner::PostProcess] Processing detection (MadAppLauncher.lnk)... 2022/07/14 13:57:25:INFO [CloudScanner::PostProcess] Detection processed (MadAppLauncher.lnk) : 0/68 2022/07/14 13:57:25:INFO [CloudScanner::PostProcess] Processing detection (IntentionActivator.exe - Verknüpfung.lnk)... 2022/07/14 13:57:25:INFO [CloudScanner::PostProcess] Detection processed (IntentionActivator.exe - Verknüpfung.lnk) : 0/67 2022/07/14 13:59:39:DEBUG [TaskAdvert] Running [campaign: Save 20% with our special Bundle !] [run_count: 1/2] 2022/07/14 13:59:40:DEBUG [ITask] Running TaskAdvert:12 [campaign: Save 20% with our special Bundle !] [interval: 3/5] [start: 2/5] [run: 1/2] [last run: 2022/07/03 15:59:00] [last set: 2022/07/14 13:54:37] [next run: 2022/07/14 13:59:37] 2022/07/14 13:59:40:DEBUG [TaskAdvert] Updating Run Date [campaign: Save 20% with our special Bundle !] [2022/07/14 13:59:38] 2022/07/14 13:59:40:DEBUG [ITask] Added TaskAdvert:3 [campaign: Follow us on Twitter] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/14 13:59:39] [next run: 00:00:00] 2022/07/14 13:59:40:DEBUG [ITask] Added TaskAdvert:5 [campaign: RogueKiller for Technicians] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/14 13:59:39] [next run: 00:00:00] 2022/07/14 13:59:40:DEBUG [ITask] Added TaskAdvert:24 [campaign: Need secure navigation ?] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/14 13:59:39] [next run: 00:00:00] 2022/07/14 13:59:40:DEBUG [ITask] Added TaskAdvert:20 [campaign: Rip DVD Free and Fast] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/14 13:59:39] [next run: 00:00:00] 2022/07/14 13:59:40:DEBUG [Advert::Serialize] Saving campaigns... 2022/07/14 13:59:40:DEBUG [Advert::Serialize] Unable to save campaigns to 2022/07/14 14:09:43:DEBUG [ITask] Removed TaskAdvert:3 [campaign: Follow us on Twitter] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/14 13:59:39] [next run: 00:00:00] 2022/07/14 14:09:43:DEBUG [ITask] Removed TaskAdvert:5 [campaign: RogueKiller for Technicians] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/14 13:59:39] [next run: 00:00:00] 2022/07/14 14:09:43:DEBUG [ITask] Removed TaskAdvert:24 [campaign: Need secure navigation ?] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/14 13:59:39] [next run: 00:00:00] 2022/07/14 14:09:43:DEBUG [ITask] Removed TaskAdvert:20 [campaign: Rip DVD Free and Fast] [interval: 0/-1] [start: 9/-1] [run: 0/-1] [last run: 00:00:00] [last set: 2022/07/14 13:59:39] [next run: 00:00:00] 2022/07/14 14:09:43:DEBUG [Advert::Serialize] Saving campaigns... 2022/07/14 14:16:20:INFO [CloudScanner::PreProcess] Processing detection (Malwarebytes Browser Guard)... 2022/07/14 14:16:21:INFO [VTScanner::SerializeCache] Saving cache in C:\ProgramData\RogueKiller\vt.cache (4 entries)... 2022/07/14 14:16:21:DEBUG [ReportFactory::RegisterType] Creating report of type RK-REPORT 2022/07/14 14:16:22:DEBUG [ReportEngine::AddNewReport] Creating new report (AdliceReport_RK-REPORT_07142022_141620.json)... 2022/07/14 14:16:22:INFO [Telemetry::Send] Sending telemetry data 2022/07/14 14:16:23:CRITICAL [CurlHelper::Post] Error (HTTP:509) on https://stats.adlice.com/api.php?action=submit&application=roguekiller 2022/07/14 14:16:23:CRITICAL [Telemetry::Send] Unable to send telemetry data 2022/07/14 14:16:23:DEBUG [CoreScanner::StartScan] Scan finished. 2022/07/14 14:16:23:DEBUG [Scheduler::Reload] Reloading all tasks... 2022/07/14 14:54:42:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/14 15:54:43:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/14 16:54:45:INFO [VersionManager::Software::CheckIfOutdated] Software up to date (15.5.3.0) 2022/07/14 17:05:14:DEBUG [CoreScanner::StartRemoval] Starting removal. 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\rep\events.raw / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\afvpn\sd_cur.data / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\afvpn\sd_history / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\afvpn\state / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\logs\diagnostics.2022-07-12.jlog / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\logs\diagnostics.2022-07-12.log / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\logs\hsssvc.11.1.5.12073.2022-07-13.0.jlog / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\logs\hsssvc.11.1.5.12073.2022-07-13.0.log / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\logs\hsssvc.11.1.5.12073.2022-07-14.jlog / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\system\logs\hsssvc.11.1.5.12073.2022-07-14.log / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\user\logs\hsscp.11.1.5.12073.2022-07-13.0.jlog / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\user\logs\hsscp.11.1.5.12073.2022-07-13.0.log / Adw.HotspotShield) 2022/07/14 17:05:14:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\user\logs\hsscp.11.1.5.12073.2022-07-14.jlog / Adw.HotspotShield) 2022/07/14 17:05:15:INFO [QuarantineEngine::PushFile] Adding file to quarantine (C:\ProgramData\Hotspot Shield\user\logs\hsscp.11.1.5.12073.2022-07-14.log / Adw.HotspotShield) 2022/07/14 17:05:15:DEBUG [ReportFactory::RegisterType] Creating report of type RK-REPORT 2022/07/14 17:05:15:DEBUG [ReportEngine::AddNewReport] Creating new report (AdliceReport_RK-REPORT_07142022_170514.json)... 2022/07/14 17:05:15:INFO [Telemetry::Send] Sending telemetry data 2022/07/14 17:05:15:DEBUG [CoreScanner::StartRemoval] Removal finished. 2022/07/14 17:05:15:DEBUG [Scheduler::Reload] Reloading all tasks... |
Themen zu Hotspot shield malware und chrome.exe |
administrator, adobe, chrome.exe trojaner, defender, desktop, frage, google, hotspot shield malware, internet, internet explorer, malware, opera, performance, programme, proxy, prozesse, realtek, registry, router, scan, services.exe, svchost.exe, system, trojaner, usb, windows, zugriff verweigert |