![]() |
|
Log-Analyse und Auswertung: Windows 11: Chrome versucht regelmäßig(mehrfach in der Minute) eine Verdächtige Verbindung aufzubauenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() | ![]() Windows 11: Chrome versucht regelmäßig(mehrfach in der Minute) eine Verdächtige Verbindung aufzubauen Guten Tag, Chrome versucht regelmäßig Verbindung zur Seite traffic.netzwerk-ad.de aufzubauen. Diese Verbindung wird regelmäßig von Bitdefender blockiert. Hier die Logfiles: FRST.txt Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-08-2022 durchgeführt von Tobia (Administrator) auf LAPTOP-89TNMKMA (ASUSTeK COMPUTER INC. TUF Gaming FX705DT_FX705DT) (05-08-2022 17:50:00) Gestartet von C:\Users\Tobia\Downloads Geladene Profile: Tobia Plattform: Microsoft Windows 11 Home Version 21H2 22000.795 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Chrome Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSOptimization\AsusOSD.exe (C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe (C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <2> (C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.UserSessionHelper.exe (C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\26.0.1.223\DiscoverySrv.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\seccenter.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe (C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2> (C:\Program Files\Mozilla Firefox\firefox.exe ->) (Agilebits -> AgileBits, Inc.) C:\Users\Tobia\AppData\Local\1Password\app\8\1Password-BrowserSupport.exe <2> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.565.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\103.0.1264.77\msedgewebview2.exe <6> (C:\Users\Tobia\AppData\Local\WebEx\WebexHost.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\Tobia\AppData\Local\WebEx\WebEx64\Meetings\atmgr.exe (cmd.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdtrackersnmh.exe (Discord Inc. -> Discord Inc.) C:\Users\Tobia\AppData\Local\Discord\app-1.0.9005\Discord.exe <6> (DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSOptimization\AsusOptimizationStartupTask.exe (DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe (DriverStore\FileRepository\u0374485.inf_amd64_abfb7dc77f8ab6ca\B374507\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0374485.inf_amd64_abfb7dc77f8ab6ca\B374507\atieclxx.exe (explorer.exe ->) (Agilebits -> 1Password) C:\Users\Tobia\AppData\Local\1Password\app\8\1Password.exe <3> (explorer.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\Tobia\AppData\Local\WebEx\WebexHost.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <37> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler64.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13> (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0374485.inf_amd64_abfb7dc77f8ab6ca\B374507\atiesrxx.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSLinkRemote\AsusLinkRemote.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\AsusAppService\AsusAppService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSLinkNear\AsusLinkNear.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSOptimization\AsusOptimization.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSoftwareManager\AsusSoftwareManager.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSwitch\AsusSwitch.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSystemAnalysis\AsusSystemAnalysis.exe (services.exe ->) (ASUSTEK COMPUTER INCORPORATION -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUSTeK COMPUTER INC\RefreshRateService\RefreshRateService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3> (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) D:\Program Files (x86)\Origin\OriginWebHelperService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvam.inf_amd64_4c9ded46d0fbe1f8\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (sihost.exe ->) (McAfee LLC.) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\Win32\mcafee-security-ft.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.191.824.0_x86__zpdnekdrzrea0\Spotify.exe <6> (svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (svchost.exe ->) (Audible Inc) C:\Program Files\WindowsApps\AudibleInc.AudibleforWindowsPhone_10.5.67.0_x64__xns73kv1ymhp2\AudibleRT.WindowsPhone.exe (svchost.exe ->) (McAfee LLC.) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.565.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [353400 2021-01-22] (Riot Games, Inc. -> Riot Games, Inc.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech) HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [68822328 2021-03-23] (Discord Inc. -> Discord Inc.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Beschränkung <==== ACHTUNG HKU\S-1-5-21-3367350288-1690552710-1987031638-1001\...\Run: [Steam] => D:\Programme\Steam\steam.exe [4230544 2022-07-26] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3367350288-1690552710-1987031638-1001\...\Run: [1Password] => C:\Users\Tobia\AppData\Local\1Password\app\8\1Password.exe [146682224 2022-07-31] (Agilebits -> 1Password) HKU\S-1-5-21-3367350288-1690552710-1987031638-1001\...\Run: [Discord] => C:\Users\Tobia\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-3367350288-1690552710-1987031638-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [13799776 2021-12-21] (GOG Sp. z o.o. -> GOG.com) HKU\S-1-5-21-3367350288-1690552710-1987031638-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Tobia\AppData\Local\WebEx\WebexHost.exe [7802656 2022-07-20] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-3367350288-1690552710-1987031638-1001\...\MountPoints2: {743c390e-4eda-11ec-8f0c-dcf505bad986} - "E:\setup.exe" HKLM\Software\Microsoft\Active Setup\Installed Components: [{43F137B0-8F4D-463B-AB83-ADEAD4F15096}] -> C:\Program Files (x86)\Microsoft\Edge Beta\Application\104.0.1293.44\Installer\setup.exe [2022-08-03] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\103.0.5060.134\Installer\chrmstp.exe [2022-07-19] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0DF34757-626A-4833-A3D1-16F6E2B23902} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d4f46c6c269633 => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [158144 2019-04-16] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {29151928-E8FF-48F6-BD3B-F1CAB214DF47} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\system32\RtkAudUService64.exe [862192 2019-02-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {2B82C330-2E78-4868-91F9-A692FF54765C} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {2B9B14FE-4843-488B-A2E5-CA43A26F0E17} - System32\Tasks\ASUS Update Checker 2.0 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSoftwareManager\AsusUpdateChecker.exe [790744 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {2E197E83-3734-4996-8261-A10EB7864C82} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {353607E3-F4FD-44C5-AA05-464804B8EEBA} - System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [986688 2022-07-12] (Bitdefender SRL -> Bitdefender) Task: {39B45C24-56B6-459C-B421-CD7A43147A04} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {4E8C520A-64FC-4505-B6E6-DD986461D6C7} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339472 2022-02-03] (Nvidia Corporation -> NVIDIA Corporation) Task: {6FD6C34A-4FF4-4DD7-9E3B-76BF7AF9450B} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {72AABD55-B575-45A8-A2F1-CF895BB91AD2} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {82BEF979-BC3E-4CA6-8391-07F0FE1C080F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647376 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {8D6839E5-C143-42E1-841C-533F1BE4C2C2} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\26.0.1.223\WatchDog.exe [1050728 2022-03-23] (Bitdefender SRL -> Bitdefender) Task: {A1441B3B-42BC-466E-A3C8-0D9B497D0D81} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSystemAnalysis\AsusSystemAnalysis.exe [3578072 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {B39F1A03-A784-4737-8646-9C4CFA3729D1} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe [1899656 2020-11-25] (ASUSTeK Computer Inc. -> ASUS) Task: {B925D588-E7CF-4BB0-852F-5BDE7F226720} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe [56784 2020-08-27] (ASUSTeK Computer Inc. -> ) Task: {BACF6168-C096-44EA-9CF1-200FE77A8B7A} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {CA000EF4-316A-4288-8550-A9BC6016299C} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {CAB50978-FCFC-4BDD-9CBF-C9705F3E7A70} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1009872 2021-11-02] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {CC5C7088-AA41-4A4A-A7D9-6A35CFFE9F71} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [158144 2019-04-16] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {CDB5B7DD-24F9-4162-994E-F9CD869197C3} - System32\Tasks\ASUS\Framework Service => C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe [45320880 2020-11-12] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) Task: {CFBC2DED-193E-4907-905C-2B8189C03FFC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-09-20] (Google LLC -> Google LLC) Task: {D56BF5D6-0E2C-47C6-9F29-758875A4D52B} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {D729EDC3-4E47-4377-ADB7-04A8898982EF} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d6d64d6a37c84a => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [158144 2019-04-16] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {E8254B9E-B26C-4A09-ADC3-4E53F146C54F} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Keine Datei) Task: {EA5E3474-5A97-46FC-8EE4-B605C2E8AFCA} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSOptimization\AsusHotkey.exe [240296 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {EADC99CB-6899-4D9F-B8D0-00D6B81923E5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-09-20] (Google LLC -> Google LLC) Task: {F70E5E74-6D1D-44B8-AAF9-9CBB0F564438} - System32\Tasks\DSB Notification => C:\Program Files\ASUS\DSB Notification\DSBNotification.exe [782216 2019-01-28] (ASUSTeK Computer Inc. -> ASUSTeK COMPUTER INC.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{1fad8a29-ddea-49c9-8cdf-faf8d57b6739}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{6e8a33d5-1372-4af5-98bc-64e9b2aeb082}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge Profile: C:\Users\Tobia\AppData\Local\Microsoft\Edge\User Data\Default [2022-05-17] Edge HomePage: Default -> about:blank StartMenuInternet: Microsoft Edge Beta - C:\Program Files (x86)\Microsoft\Edge Beta\Application\msedge.exe FireFox: ======== FF DefaultProfile: 6u5rq09s.default FF ProfilePath: C:\Users\Tobia\AppData\Roaming\Mozilla\Firefox\Profiles\6u5rq09s.default [2022-03-31] FF ProfilePath: C:\Users\Tobia\AppData\Roaming\Mozilla\Firefox\Profiles\9iqq27gm.default-release [2022-08-05] FF Extension: (BetterTTV) - C:\Users\Tobia\AppData\Roaming\Mozilla\Firefox\Profiles\9iqq27gm.default-release\Extensions\firefox@betterttv.net.xpi [2022-08-05] FF Extension: (1Password – Passwort-Manager) - C:\Users\Tobia\AppData\Roaming\Mozilla\Firefox\Profiles\9iqq27gm.default-release\Extensions\{d634138d-c276-4fc8-924b-40a0ea21d284}.xpi [2022-07-07] FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2021-08-10] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ] FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF Extension: (Bitdefender Anti-Tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2020-09-17] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext [2021-08-13] [] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll [2021-11-26] (Oracle America, Inc. -> Oracle Corporation) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2022-03-31] <==== ACHTUNG (Zeigt auf eine *.cfg Datei) FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2022-03-31] <==== ACHTUNG Chrome: ======= CHR Profile: C:\Users\Tobia\AppData\Local\Google\Chrome\User Data\Default [2022-08-05] CHR Notifications: Default -> hxxp://127.0.0.1 CHR StartupUrls: Default -> "hxxp://ecosia.de/" CHR DefaultSearchURL: Default -> hxxps://www.ecosia.org/search?q={searchTerms}&addon=opensearch CHR DefaultSearchKeyword: Default -> ecosia.org CHR DefaultSuggestURL: Default -> hxxps://ac.ecosia.org/autocomplete?q={searchTerms}&type=list CHR Extension: (lock) - C:\Users\Tobia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aeblfdkhhhdcdjpifhhbdiojplfjncoa [2022-07-07] CHR Extension: (Google Docs Offline) - C:\Users\Tobia\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-07-28] CHR Extension: (AdBlock*– der beste Ad-Blocker) - C:\Users\Tobia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-07-21] CHR Extension: (Bitdefender Anti-Tracker) - C:\Users\Tobia\AppData\Local\Google\Chrome\User Data\Default\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2021-09-09] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Tobia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-09-09] CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl] CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof] CHR HKLM-x32\...\Chrome\Extension: [mfhcmdonhekjhfbjmeacdjbhlfgpjabp] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 ArmouryCrateService; C:\Program Files\ASUS\ARMOURY CRATE Service\ArmouryCrate.Service.exe [348280 2021-03-30] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [158144 2019-04-16] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 AsusAppService; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\AsusAppService\AsusAppService.exe [872112 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSLinkNear; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSLinkNear\AsusLinkNear.exe [1163480 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 ASUSLinkRemote; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSLinkRemote\AsusLinkRemote.exe [762032 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [158144 2019-04-16] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSOptimization\AsusOptimization.exe [375000 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) S2 AsusROGLSLService; C:\Program Files (x86)\ASUS\AsusROGLSLService\AsusROGLSLService.exe [590872 2020-12-23] (ASUSTeK Computer Inc. -> ) R2 ASUSSoftwareManager; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSoftwareManager\AsusSoftwareManager.exe [1086168 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSwitch; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSwitch\AsusSwitch.exe [623848 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSystemAnalysis\AsusSystemAnalysis.exe [3578072 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [710576 2022-06-09] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek COMPUTER INC.) R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821312 2022-07-12] (Bitdefender SRL -> Bitdefender) R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821312 2022-07-12] (Bitdefender SRL -> Bitdefender) R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2195344 2018-03-22] (Bitdefender SRL -> Bitdefender) R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL -> Bitdefender) S2 DTSAPO3Service; C:\WINDOWS\System32\DTS\PC\APO3x\DTSAPO3Service.exe [223640 2019-09-03] (DTS, Inc. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-07-31] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029456 2022-07-31] (Epic Games Inc. -> Epic Games, Inc.) S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1959776 2021-12-21] (GOG Sp. z o.o. -> GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6484832 2021-09-30] (GOG Sp. z o.o. -> GOG.com) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [225368 2022-07-13] (HP Inc. -> HP Inc.) R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [3210232 2021-03-03] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) S3 MicrosoftEdgeBetaElevationService; C:\Program Files (x86)\Microsoft\Edge Beta\Application\104.0.1293.44\elevation_service.exe [1705880 2022-08-03] (Microsoft Corporation -> Microsoft Corporation) S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2575624 2022-05-27] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; D:\Program Files (x86)\Origin\OriginWebHelperService.exe [3494672 2022-05-27] (Electronic Arts, Inc. -> Electronic Arts) R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [787608 2022-05-03] (Bitdefender SRL -> Bitdefender) R2 RefreshRateService; C:\Program Files (x86)\ASUSTeK COMPUTER INC\RefreshRateService\RefreshRateService.exe [40672 2021-09-10] (ASUSTEK COMPUTER INCORPORATION -> ASUSTek Computer Inc.) R2 ROG Live Service; C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe [5941936 2021-10-21] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12835096 2021-01-28] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [280640 2022-07-12] (Bitdefender SRL -> Bitdefender) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10091440 2021-01-22] (Riot Games, Inc. -> Riot Games, Inc.) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821312 2022-07-12] (Bitdefender SRL -> Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [2599312 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [128376 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_4c9ded46d0fbe1f8\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_4c9ded46d0fbe1f8\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0374485.inf_amd64_abfb7dc77f8ab6ca\B374507\amdkmdag.sys [81600360 2021-12-08] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R1 Asusgio2; C:\WINDOWS\system32\drivers\AsIO2.sys [33832 2019-04-09] (ASUSTeK Computer Inc. -> ) R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.) R3 AsusSAIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSSystemAnalysis\AsusSAIO.sys [46704 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [4802976 2022-05-12] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA) R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_6d80c4e5e6c9db97\ASUSOptimization\AsusWmiAcpi.sys [45248 2022-06-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) S3 AWCCDriver; C:\WINDOWS\System32\drivers\AWCCDriver.sys [42440 2020-12-08] (IndiLogic LLC -> Dell Inc.) R2 BdDci; C:\WINDOWS\System32\DRIVERS\bddci.sys [800672 2021-12-15] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2021-04-19] (Microsoft Windows Early Launch Anti-Malware Publisher -> Bitdefender) R0 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [33208 2022-03-02] (Microsoft Windows Hardware Compatibility Publisher -> © Bitdefender SRL) S3 bduefiscan; C:\WINDOWS\system32\DRIVERS\bduefiscan.sys [55864 2021-12-06] (Bitdefender SRL -> Bitdefender) R0 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [1262496 2022-06-07] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA) R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS) R2 Ignis; C:\WINDOWS\System32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL -> Bitdefender) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [14224 2021-04-01] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64872 2019-09-26] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated) R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [633264 2022-06-07] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [174024 2020-07-11] (Oracle Corporation -> Oracle Corporation) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [5782360 2021-01-22] (Riot Games, Inc. -> Riot Games, Inc.) R0 vlflt; C:\WINDOWS\System32\DRIVERS\vlflt.sys [474048 2022-05-12] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [49560 2021-06-05] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [421112 2021-06-05] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [73960 2021-06-05] (Microsoft Windows -> Microsoft Corporation) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-08-05 17:50 - 2022-08-05 17:50 - 000034600 _____ C:\Users\Tobia\Downloads\FRST.txt 2022-08-05 17:49 - 2022-08-05 17:50 - 000000000 ____D C:\FRST 2022-08-05 17:49 - 2022-08-05 17:49 - 002370048 _____ (Farbar) C:\Users\Tobia\Downloads\FRST64.exe 2022-08-04 18:13 - 2022-08-04 18:13 - 000083833 _____ C:\Users\Tobia\Downloads\Konto_0121067276-Auszug_2022_0002.PDF 2022-08-04 18:13 - 2022-08-04 18:13 - 000074778 _____ C:\Users\Tobia\Downloads\Deka_Aenderungsbestaetigung_fuer_Depot-Nr_0236978714 (1).PDF 2022-08-04 18:13 - 2022-08-04 18:13 - 000073595 _____ C:\Users\Tobia\Downloads\Deka_Aenderungsbestaetigung_fuer_Depot-Nr_0236978714.PDF 2022-08-04 18:13 - 2022-08-04 18:13 - 000055277 _____ C:\Users\Tobia\Downloads\Kundenanschreiben_Dispositionskredit.PDF 2022-08-04 18:12 - 2022-08-04 18:12 - 000066248 _____ C:\Users\Tobia\Downloads\5232xxxxxxxx2095_Abrechnung_vom_11_07_2022_Rieger_Tobias.PDF 2022-08-02 21:59 - 2022-08-02 21:59 - 000443895 _____ C:\Users\Tobia\Downloads\3111491.pdf 2022-08-01 22:54 - 2022-08-01 22:54 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-07-31 01:03 - 2022-07-31 01:03 - 000000000 ____D C:\Users\Tobia\AppData\Local\EOSUserHelper 2022-07-31 01:02 - 2022-07-31 01:02 - 000000000 ____D C:\Program Files (x86)\Epic Games 2022-07-31 01:00 - 2022-08-05 10:02 - 000000000 ____D C:\Users\Tobia\AppData\Roaming\1Password 2022-07-31 01:00 - 2022-07-31 01:00 - 117233520 _____ (AgileBits, Inc.) C:\Users\Tobia\Downloads\1PasswordSetup-latest.exe 2022-07-31 01:00 - 2022-07-31 01:00 - 000000000 ____D C:\Users\Tobia\.1password 2022-07-20 20:38 - 2022-07-20 20:39 - 291275928 _____ C:\Users\Tobia\Downloads\Town of Us.zip 2022-07-20 19:43 - 2022-07-20 19:54 - 000000000 ____D C:\Users\Tobia\AppData\Roaming\ModManager 2022-07-20 19:43 - 2022-07-20 19:43 - 000000760 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ModManager.lnk 2022-07-20 18:26 - 2022-07-20 18:26 - 003792626 _____ (Matux ) C:\Users\Tobia\Downloads\ModManagerInstaller.exe 2022-07-18 07:03 - 2022-07-18 07:03 - 000099336 _____ C:\ProgramData\agent.update.1658120631.bdinstall.v2.bin 2022-07-14 08:58 - 2022-07-14 08:58 - 000038507 _____ C:\Users\Tobia\Downloads\DHL-Paketmarke_YZYE3EWXH2KV_2_Jonas_Herbert.pdf 2022-07-13 08:37 - 2022-07-13 08:37 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe 2022-07-13 08:36 - 2022-07-13 08:36 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-07-13 08:36 - 2022-07-13 08:36 - 000335872 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-07-13 08:36 - 2022-07-13 08:36 - 000015040 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-07-13 08:31 - 2022-07-13 08:31 - 000000000 ___HD C:\$WinREAgent 2022-07-11 13:27 - 2022-07-11 13:27 - 000050230 _____ C:\Users\Tobia\Downloads\Briefmarken.1Stk.09.07.2022_1709 (1).pdf 2022-07-10 20:48 - 2022-07-10 20:48 - 000077291 _____ C:\Users\Tobia\Downloads\Liedtexte_.pdf 2022-07-10 20:28 - 2022-07-10 20:28 - 000535472 _____ C:\Users\Tobia\Downloads\Aufloesung.pdf 2022-07-10 20:28 - 2022-07-10 20:28 - 000312370 _____ C:\Users\Tobia\Downloads\Raetsel (1).pdf 2022-07-10 20:20 - 2022-07-10 20:20 - 000312370 _____ C:\Users\Tobia\Downloads\Raetsel.pdf 2022-07-10 19:53 - 2022-07-10 19:53 - 001423215 _____ C:\Users\Tobia\Downloads\Markofotos.pdf 2022-07-10 19:21 - 2022-07-10 19:21 - 000485009 _____ C:\Users\Tobia\Downloads\Karte_10.07.2022.pdf 2022-07-10 16:17 - 2022-07-10 16:17 - 022688304 _____ C:\Users\Tobia\Downloads\ShapeX_v1.2.zip 2022-07-09 17:09 - 2022-07-09 17:09 - 000050230 _____ C:\Users\Tobia\Downloads\Briefmarken.1Stk.09.07.2022_1709.pdf 2022-07-08 15:15 - 2022-07-08 15:15 - 000033831 _____ C:\Users\Tobia\Downloads\DHL-Paketmarke_T6G5BFN4WS3X_2_Guido_Neujahr.pdf 2022-07-08 08:19 - 2022-05-31 12:15 - 001905920 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-07-08 08:19 - 2022-05-31 12:15 - 001905920 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-07-08 08:19 - 2022-05-31 12:15 - 001478400 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-07-08 08:19 - 2022-05-31 12:15 - 001478400 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-07-08 08:19 - 2022-05-31 12:15 - 001467968 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-07-08 08:19 - 2022-05-31 12:15 - 001432320 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-07-08 08:19 - 2022-05-31 12:15 - 001432320 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-07-08 08:19 - 2022-05-31 12:15 - 001208520 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-07-08 08:19 - 2022-05-31 12:15 - 001145600 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-07-08 08:19 - 2022-05-31 12:15 - 001145600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-07-08 08:19 - 2022-05-31 12:12 - 001530440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-07-08 08:19 - 2022-05-31 12:12 - 001177296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-07-08 08:19 - 2022-05-31 12:12 - 000725576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-07-08 08:19 - 2022-05-31 12:12 - 000712400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-07-08 08:19 - 2022-05-31 12:12 - 000586448 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-07-08 08:19 - 2022-05-31 12:12 - 000460496 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-07-08 08:19 - 2022-05-31 12:12 - 000057448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2022-07-08 08:19 - 2022-05-31 12:11 - 006964824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-07-08 08:19 - 2022-05-31 12:11 - 006226632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-07-08 08:19 - 2022-05-31 12:11 - 002933848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-07-08 08:19 - 2022-05-31 12:11 - 002120920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-07-08 08:19 - 2022-05-31 12:11 - 001602248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-07-08 08:19 - 2022-05-31 12:11 - 000730312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-07-08 08:19 - 2022-05-31 12:11 - 000581832 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-07-08 08:19 - 2022-05-31 12:11 - 000458840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-07-08 08:19 - 2022-05-31 12:10 - 005729480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-07-08 08:19 - 2022-05-31 12:10 - 005100744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-07-08 08:19 - 2022-05-31 12:09 - 000851152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-07-08 08:19 - 2022-05-31 12:08 - 006463592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-07-08 08:19 - 2022-05-31 11:43 - 000089327 _____ C:\WINDOWS\system32\nvinfo.pb 2022-07-06 23:55 - 2022-07-06 23:55 - 000033932 _____ C:\Users\Tobia\Downloads\DHL-Paketmarke_7XLHMAGFXV43_2_Pia_Jacobaschke.pdf 2022-07-06 08:49 - 2022-07-06 08:49 - 000033220 _____ C:\Users\Tobia\Downloads\DHL-Paketmarke_E296K89CD966_2_Dirk_Schlösser.pdf ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-08-05 17:51 - 2021-05-06 23:38 - 000000000 ____D C:\Users\Tobia\AppData\Roaming\discord 2022-08-05 17:43 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-08-05 17:31 - 2020-12-19 23:34 - 000000000 ____D C:\Program Files (x86)\Google 2022-08-05 17:02 - 2021-05-06 23:38 - 000000000 ____D C:\Users\Tobia\AppData\Local\Discord 2022-08-05 16:36 - 2021-06-05 14:10 - 000000000 ___HD C:\Program Files\WindowsApps 2022-08-05 16:36 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-08-05 15:27 - 2022-03-31 18:27 - 000000000 ____D C:\Users\Tobia\AppData\LocalLow\Mozilla 2022-08-05 15:13 - 2020-12-19 23:25 - 000000000 ____D C:\Users\Tobia\AppData\Local\D3DSCache 2022-08-05 13:55 - 2021-10-13 13:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-08-05 13:32 - 2022-02-23 10:41 - 000000000 ____D C:\Users\Tobia\AppData\Local\WebEx 2022-08-05 12:25 - 2019-04-16 17:42 - 000000000 ____D C:\ProgramData\NVIDIA 2022-08-05 10:08 - 2021-10-13 13:46 - 000003752 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 2022-08-05 10:03 - 2022-03-31 18:27 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-08-05 10:02 - 2021-03-27 11:21 - 000000000 ____D C:\Users\Tobia\AppData\Local\1Password 2022-08-03 23:10 - 2020-12-19 23:29 - 000002357 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge Beta.lnk 2022-08-02 08:06 - 2022-03-31 18:27 - 000001007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-08-02 08:06 - 2022-03-31 18:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-07-31 14:30 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemTemp 2022-07-31 01:03 - 2021-11-14 01:10 - 000000000 ____D C:\Users\Tobia\AppData\Local\Epic Games 2022-07-31 01:02 - 2021-02-04 23:13 - 000000000 ____D C:\ProgramData\Epic 2022-07-31 01:00 - 2021-10-13 13:13 - 000000000 ____D C:\Users\Tobia 2022-07-31 01:00 - 2021-03-27 11:21 - 000001269 _____ C:\Users\Tobia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1Password.lnk 2022-07-30 10:11 - 2020-12-16 00:20 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-07-29 16:07 - 2020-12-20 00:35 - 000000000 ____D C:\Users\Tobia\AppData\Local\Battle.net 2022-07-28 14:57 - 2021-12-12 21:41 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3367350288-1690552710-1987031638-1001 2022-07-28 14:57 - 2021-10-13 13:46 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3367350288-1690552710-1987031638-1001 2022-07-28 14:57 - 2020-12-19 23:22 - 000002401 _____ C:\Users\Tobia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-07-27 18:12 - 2022-03-31 18:27 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-07-21 14:42 - 2022-01-13 09:41 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-07-21 14:42 - 2022-01-13 09:41 - 000003662 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7c0276acb6969 2022-07-20 22:59 - 2021-02-13 21:38 - 000000000 ____D C:\Users\Tobia\AppData\Roaming\bettercrewlink 2022-07-20 18:26 - 2022-06-28 22:09 - 000000000 ____D C:\Users\Tobia\AppData\Local\Deployment 2022-07-19 23:31 - 2021-09-20 09:09 - 000002241 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-07-19 23:31 - 2021-09-20 09:09 - 000002200 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-07-18 07:04 - 2021-10-13 13:46 - 000003846 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 2022-07-18 07:04 - 2020-12-19 16:19 - 000000000 ____D C:\Program Files\Bitdefender Agent 2022-07-14 08:02 - 2021-10-13 13:44 - 001750916 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-07-14 08:02 - 2021-06-05 19:53 - 000758464 _____ C:\WINDOWS\system32\perfh007.dat 2022-07-14 08:02 - 2021-06-05 19:53 - 000156672 _____ C:\WINDOWS\system32\perfc007.dat 2022-07-14 08:02 - 2021-06-05 14:09 - 000000000 ____D C:\WINDOWS\INF 2022-07-14 07:59 - 2021-06-05 14:01 - 000065536 _____ C:\WINDOWS\system32\config\ELAM 2022-07-14 07:57 - 2021-01-09 00:27 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2022-07-14 07:55 - 2021-10-13 13:46 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2022-07-14 07:55 - 2021-05-06 10:14 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2022-07-14 07:54 - 2021-10-13 13:46 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-07-14 07:54 - 2020-12-16 00:16 - 000012288 ___SH C:\DumpStack.log.tmp 2022-07-14 00:08 - 2021-06-05 14:01 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2022-07-14 00:07 - 2021-10-13 13:42 - 000508392 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemResources 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\setup 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\Provisioning 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-07-14 00:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-07-13 10:59 - 2020-12-30 10:16 - 000000000 ____D C:\Users\Tobia\AppData\LocalLow\Unity 2022-07-13 08:46 - 2020-12-20 19:37 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-07-13 08:44 - 2021-06-05 14:01 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-07-13 08:44 - 2020-12-20 19:37 - 146546848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-07-13 08:36 - 2021-10-13 13:42 - 003101696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-07-10 16:27 - 2022-04-10 19:04 - 000000000 ____D C:\Users\Tobia\OneDrive\Dokumente\Quiz Bilder Kategorie 2022-07-08 08:21 - 2019-04-16 17:42 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-07-06 09:09 - 2021-01-27 00:30 - 000000000 ____D C:\Users\Tobia\AppData\Local\CrashDumps 2022-07-06 00:18 - 2021-10-13 13:46 - 000004122 _____ C:\WINDOWS\system32\Tasks\ASUS Update Checker 2.0 2022-07-06 00:18 - 2021-10-13 13:46 - 000003756 _____ C:\WINDOWS\system32\Tasks\ASUS Optimization 36D18D69AFC3 ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2021-05-03 19:14 - 2021-05-25 21:31 - 000000016 _____ () C:\Users\Tobia\AppData\Roaming\obs-virtualcam.txt 2021-08-23 12:49 - 2021-08-23 12:49 - 000009587 _____ () C:\Users\Tobia\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
Themen zu Windows 11: Chrome versucht regelmäßig(mehrfach in der Minute) eine Verdächtige Verbindung aufzubauen |
administrator, asus, computer, defender, dll, firefox, geforce, google, home, homepage, internet, karte, mozilla, nvcontainer, nvcontainer.exe, nvidia, programme, prozesse, realtek, registry, scan, security, server, services.exe, svchost.exe, system, windows |