|
Plagegeister aller Art und deren Bekämpfung: Verdacht auf Manipulation des RechnersWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.11.2022, 10:16 | #1 |
| Verdacht auf Manipulation des Rechners Hallo, seit einigen Tagen verhält sich mein Rechner seltsam, immer mal wieder poppen kurz (Millisekunden) Fenster auf und verschwinden wieder. Ich habe die Befürchtung, dass ich mir etwas eingefangen habe. Vielen Dank! |
15.11.2022, 10:39 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Verdacht auf Manipulation des Rechners Und wie stellst du dir nun Hilfe vor wo du keine Infos gepostet hast?
__________________Angaben zum System, Betriebssystem, Hardware?
__________________ |
15.11.2022, 10:45 | #3 |
| Verdacht auf Manipulation des Rechners ok. Hier die Infos: Laptop, Windows 10 Home Version 22H2.
__________________ |
15.11.2022, 10:46 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Verdacht auf Manipulation des Rechners Hinweise für Hilfesuchende ignoriert? Was ist mit den Logfiles?
__________________ Logfiles bitte immer in CODE-Tags posten |
15.11.2022, 12:26 | #5 |
| Verdacht auf Manipulation des RechnersCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 14-11-2022 durchgeführt von ***** (Administrator) auf LAPTOP-PO9HTAP8 (Acer Aspire VN7-792G) (15-11-2022 11:58:27) Gestartet von C:\Users\*****\Downloads Geladene Profile: ***** Plattform: Microsoft Windows 10 Home Version 22H2 19045.2251 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Edge Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\26.0.1.233\DiscoverySrv.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe (C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe <2> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudCKKS.exe (C:\Users\*****\AppData\Local\WebEx\WebexHost.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\*****\AppData\Local\WebEx\WebEx64\Meetings\atmgr.exe (C:\Windows\cc\CtlSysMgr.exe ->) (Salfeld Computer GmbH -> Salfeld Computer GmbH) C:\ProgramData\NFS\v3\NfsCcSvc.exe (C:\Windows\cc\CtlSysMgr.exe ->) (Salfeld Computer GmbH -> Salfeld Computer) C:\Windows\cc\CtlSysUI.exe (explorer.exe ->) () [Datei ist nicht signiert] C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudDrive.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe (explorer.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\*****\AppData\Local\WebEx\WebexHost.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <25> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (explorer.exe ->) (OpenVPN Inc. -> ) C:\Program Files\OpenVPN\bin\openvpn-gui.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\*****\AppData\Local\Microsoft\Teams\current\Teams.exe <8> (services.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3> (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe (services.exe ->) (Dolby Laboratories, Inc. -> ) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel(R) Smart Sound Technology -> Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (services.exe ->) (OpenVPN Inc. -> The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe (services.exe ->) (pdfforge GmbH -> pdfforge GmbH) C:\Program Files\PDF Architect 8\activation-service.exe (services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (services.exe ->) (Salfeld Computer GmbH -> Salfeld Computer) C:\Windows\cc\CtlSysMgr.exe (services.exe ->) (Salfeld Computer GmbH -> Salfeld Computer) C:\Windows\cc\WinCtlSvc.exe (svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (svchost.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe (svchost.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\secd.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22092.211.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (pdfforge GmbH -> pdfforge GmbH) C:\Program Files\PDF Architect 8\architect-launcher.exe <2> ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [DAX2_APP] => C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe [628736 2015-06-16] () [Datei ist nicht signiert] HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [989208 2022-10-26] (Bitdefender SRL -> Bitdefender) HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2017-07-21] (Razer USA Ltd. -> Razer Inc.) HKLM-x32\...\Run: [ManOWarHelper] => C:\Program Files (x86)\Razer\Razer_ManOWar_Driver\Drivers\SysAudio\ManOWarHelper.exe [1598920 2017-06-29] (Razer USA Ltd. -> Razer Inc) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [107879704 2020-10-14] (Microsoft Corporation -> Microsoft Corporation) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Beschränkung <==== ACHTUNG HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4268456 2022-01-16] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [Lync] => C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe [23980408 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\*****\AppData\Local\WebEx\WebexHost.exe [8014024 2022-11-03] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [OpenVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [829304 2021-06-17] (OpenVPN Inc. -> ) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\*****\AppData\Local\Microsoft\Teams\Update.exe [2585824 2022-10-21] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [MicrosoftEdgeAutoLaunch_32B8F7AFAC00AF216A6F856F0EBA89F5] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3892128 2022-11-10] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Run: [Spotify] => C:\Users\Surfen erlaubt\AppData\Roaming\Spotify\Spotify.exe [23177616 2018-06-02] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Run: [Spotify Web Helper] => C:\Users\Surfen erlaubt\AppData\Roaming\Spotify\SpotifyWebHelper.exe [782736 2018-06-02] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Run: [OPENVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [829304 2021-06-17] (OpenVPN Inc. -> ) HKLM\...\Print\Monitors\HP 7012 Status Monitor: C:\Windows\system32\hpinksts7012LM.dll [328704 2014-03-03] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet Pro 8620): C:\Windows\system32\HPDiscoPM7012.dll [763912 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP) HKLM\...\Print\Monitors\PDF Architect 8 Monitor: C:\WINDOWS\system32\spool\DRIVERS\x64\brand_solution_name_pdfpmon_v.6.11.0.7.dll [960120 2022-04-07] (PDF Tools AG -> PDF Tools AG (hxxp://www.pdf-tools.com)) HKLM\...\Print\Monitors\pdfcmon: C:\Windows\system32\pdfcmon.dll [116736 2020-08-13] (pdfforge GmbH) [Datei ist nicht signiert] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\107.0.5304.107\Installer\chrmstp.exe [2022-11-13] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{E5931AF4-2A8F-48A5-AFC8-460348F480E8}] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /f /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe" GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-504\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-503\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-500\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-1005\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-1004\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-1001\User: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {016EB425-0501-4ECB-BCBC-294BA29B12F1} - System32\Tasks\pdfforge GmbH\PDF Architect 8\App Notification Logon => C:\Program Files\PDF Architect 8\architect-launcher.exe [2311216 2022-02-21] (pdfforge GmbH -> pdfforge GmbH) Task: {03EF9C3A-7530-421F-B22E-B177B6D27772} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001UA => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {074411DB-B1F5-47E9-B2C2-899331357725} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {0979E790-AF73-4F07-A310-CB375E09A146} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService Task: {1A6B223B-B6A8-4ACF-867E-70B77957A846} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {2653D769-2116-4F71-8FA8-9227E98921B1} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6637512 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {27DCF17F-0B7E-4874-B71F-E1176990AF59} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\26.0.1.233\WatchDog.exe [1053264 2022-07-25] (Bitdefender SRL -> Bitdefender) Task: {2CF118BA-A172-45F4-997D-8BFA53BC982C} - System32\Tasks\pdfforge GmbH\PDF Architect 8\App Notification => C:\Program Files\PDF Architect 8\architect-launcher.exe [2311216 2022-02-21] (pdfforge GmbH -> pdfforge GmbH) Task: {31F18EEA-2626-47DF-9E76-80E89E85788B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {3B7E3489-E159-498D-A407-1DD80DCACF3A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d4a51966ecab48 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {40786FA8-8C4E-4640-9458-8A1BE0EE3BD4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d746a2e5488cb => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {40E6B493-C7DD-4149-AD16-4910AD835471} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe [139448 2016-06-20] (Microsoft Corporation -> Microsoft Corporation) Task: {463F5AB4-55BA-4BB5-BE3E-4F5C76CC87AA} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [437816 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {487807B3-0AE9-4C04-9833-7C518FF97AFC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d3f8f16c0f61c5 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {5369D932-AA3A-46F3-ACDE-6335AA88AC5E} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [706616 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {550D0822-4C97-4CC8-B6CA-6407F183E708} - System32\Tasks\GoogleUpdateTaskMachineCore{31544E59-009B-4B74-80C3-CC3D3184E402} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-01-25] (Google LLC -> Google LLC) Task: {58A6673F-A65C-43B9-BE16-3FF33091AB2F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6637512 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {64DC2D2A-25E7-4EBA-8045-058C3E28C83E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d58e6bb3a1dce0 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {65C4EE69-495C-47D5-9164-E203D65F2E1E} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752 2017-03-20] (Acer Incorporated -> Acer Incorporated) Task: {6938E80D-E634-4D1F-977A-AFEC9274089B} - System32\Tasks\CareCenter\RtHDVBg_Dolby_Reg_HKLMRun => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1471488 2016-11-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {73972125-18D5-4D70-9959-92578E1806AB} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [706616 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {794331E8-7275-48A8-BC4B-009B32700459} - System32\Tasks\pdfforge GmbH\Update => C:\Program Files\PDF Architect 8\architect.exe [3497520 2022-02-21] (pdfforge GmbH -> pdfforge GmbH) Task: {8F9C9FBE-DD43-4AA5-98F4-10A296F147FE} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [630328 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {92573E17-A012-4882-94A5-3543E4CC52A5} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [630328 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {958AA79B-7192-4405-A320-132084163D8F} - System32\Tasks\pdfforge GmbH\PDF Architect 8\Update => C:\Program Files\PDF Architect 8\architect.exe [3497520 2022-02-21] (pdfforge GmbH -> pdfforge GmbH) Task: {ABCF6A9B-807C-424C-BB80-179C862E8BE3} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {AC42A10D-F5A3-41F3-A5CD-B8AA4487695B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114600 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {B9CF36F0-2031-43B0-AF52-658A8D98D50F} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {BD1C364E-343F-4CDC-B377-234B1EB2379B} - System32\Tasks\googleupdatetaskusers-1-5-21-908791101-83370650-475787697-1001ua1d746a2e5720f8 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {BEA15AAD-E524-4389-9841-9AA686D3970A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d7cf0e7c51503e => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {BF49C12F-EC36-4E0A-A312-A8A33361F09D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001UA1d4a51966ef402d => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {C01FF759-986C-4264-9744-E4AFA7D3EC47} - System32\Tasks\googleupdatetaskusers-1-5-21-908791101-83370650-475787697-1001ua1d7cf0e7c5876da => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {C3FA2C9D-A714-4FD6-B184-45952EA73433} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001UA1d3f8f16c11fb86 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {C468F05B-203D-4541-988F-E45F2C8EC821} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.) Task: {CE32C02C-C189-4600-8A54-2E22843728F8} - System32\Tasks\CareCenter\RTHDVCPL_Reg_HKLMRun => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16704512 2016-11-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {D3AE8648-ED69-4482-BFA9-65B8D3EFEF4A} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {D5BD28FF-928E-4F87-BFF3-73D48C6C77D2} - System32\Tasks\googleupdatetaskmachineua{c8b8244e-3d09-4ebf-b4a9-7e2b05049acc} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-01-25] (Google LLC -> Google LLC) Task: {D5EB9194-EA56-4CC4-923F-BAEC14A9CCF3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114600 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {E6C7B541-3F22-44E4-BC52-BEF111B59945} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [3834520 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {EDE932DC-42DD-45D3-8E2A-BC9F9E15B402} - System32\Tasks\HPCustParticipation HP Officejet Pro 8620 => C:\Program Files\HP\HP Officejet Pro 8620\Bin\HPCustPartic.exe [5745672 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP) Task: {F878A1D1-F7E9-493D-BA2D-BE422AE738DD} - System32\Tasks\googleupdatetaskusers-1-5-21-908791101-83370650-475787697-1001ua1d58e6bb3a4bb9e => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {FB859B1A-38F9-4F0A-93DC-41F2BD7D5FF0} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Keine Datei) Task: {FBC1F3E4-1121-47B0-A701-CA8C8EFEBAE1} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [782904 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {FD43D4F2-C69A-4815-BCBD-632EC2F3056C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{119c9056-eb0e-4b01-824e-6ee262d45114}: [DhcpNameServer] 141.31.111.9 Tcpip\..\Interfaces\{5b96962c-5dab-461d-9e2e-b75229a77d6b}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{db9ad27d-9c9f-4575-ba61-7a1db51e50f1}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden] Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden] Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden] Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden] Edge DefaultProfile: Default Edge Profile: C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-15] Edge Extension: (Bitdefender Anti-tracker) - C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbconhplchnbippmjabbcedokimacfjl [2022-11-13] Edge HKLM-x32\...\Edge\Extension: [dbconhplchnbippmjabbcedokimacfjl] Edge HKLM-x32\...\Edge\Extension: [pdhdldaneekjpoaldekpgomomeabpnek] FireFox: ======== FF DefaultProfile: a0g0lex5.default FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\a0g0lex5.default [2022-11-15] FF Homepage: Mozilla\Firefox\Profiles\a0g0lex5.default -> www.google.de FF NewTab: Mozilla\Firefox\Profiles\a0g0lex5.default -> hxxps://defaultsearch.co/homepage?hp=1&pId=PF170501&iDate=2020-08-13 04:57:01&bName=&bitmask=0600 FF Extension: (TrafficLight) - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\a0g0lex5.default\Extensions\trafficlight@bitdefender.com.xpi [2022-04-07] FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\a0g0lex5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-10-31] FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2021-06-29] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ] FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF Extension: (Bitdefender Anti-Tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2020-09-17] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext [2022-11-03] [] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) [Datei ist nicht signiert] FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-10-16] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-10-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-10-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) [Datei ist nicht signiert] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Keine Datei] FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2022-11-14] <==== ACHTUNG (Zeigt auf eine *.cfg Datei) FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2022-11-14] <==== ACHTUNG Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default [2022-11-15] CHR Notifications: Default -> hxxps://teams.microsoft.com; hxxps://www.tomtom.com CHR Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-08-30] CHR Extension: (Bitdefender Wallet) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2022-11-13] CHR Extension: (Bitdefender Anti-tracker) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2022-11-13] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl] CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.) R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2022-10-26] (Bitdefender SRL -> Bitdefender) R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2022-10-26] (Bitdefender SRL -> Bitdefender) R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2995792 2022-01-28] (Bitdefender SRL -> Bitdefender) R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL -> Bitdefender) R2 CC-Updater; C:\WINDOWS\cc\WinCtlSvc.exe [7892760 2022-09-25] (Salfeld Computer GmbH -> Salfeld Computer) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12516280 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) R2 DAX2API; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [154816 2016-07-18] (Dolby Laboratories, Inc. -> ) S3 dcsvc; C:\WINDOWS\system32\dcsvc.dll [785408 2022-11-09] (Microsoft Windows -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2018-07-27] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1284360 2018-05-16] (Bayerisches Landesamt fuer Steuern -> ) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [228848 2022-11-04] (HP Inc. -> HP Inc.) S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert] R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21304 2017-09-28] (Microsoft Corporation -> Microsoft Corporation) R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert] S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [11569424 2018-10-28] (Mail.Ru LLC -> LLC Mail.Ru) R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1165368 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2020-10-14] (Microsoft Windows -> Microsoft Corporation) R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [73592 2021-06-17] (OpenVPN Inc. -> The OpenVPN Project) R2 PDF Architect 8; C:\Program Files\PDF Architect 8\activation-service.exe [3336752 2022-02-21] (pdfforge GmbH -> pdfforge GmbH) S3 PDF Architect 8 Creator; C:\Program Files\PDF Architect 8\creator-ws.exe [628272 2022-02-21] (pdfforge GmbH -> pdfforge GmbH) S3 PDF Architect 8 Update Service; C:\Program Files\PDF Architect 8\update-service.exe [382000 2022-02-21] (pdfforge GmbH -> pdfforge GmbH) R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [789072 2022-07-25] (Bitdefender SRL -> Bitdefender) R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [401024 2017-08-07] (Razer USA Ltd. -> Razer Inc.) S3 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [179840 2017-08-07] (Razer USA Ltd. -> Razer Inc.) S3 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2017-07-19] (Razer USA Ltd. -> ) R2 SCC-Dienst; C:\WINDOWS\cc\ctlsysmgr.exe [9959192 2022-11-14] (Salfeld Computer GmbH -> Salfeld Computer) S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182392 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [187904 2017-09-28] (Microsoft Corporation) [Datei ist nicht signiert] S2 upccsvc; C:\WINDOWS\upcc\upccsvc.exe [1683616 2019-04-14] (Salfeld Computer GmbH -> Salfeld GmbH) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [280088 2022-10-26] (Bitdefender SRL -> Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2022-10-26] (Bitdefender SRL -> Bitdefender) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe [3191272 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe [133544 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [X] S3 ePowerSvc; "C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe" [X] R2 NvContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" S3 NvContainerNetworkService; "C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerNetworkService -f "C:\ProgramData\NVIDIA\NvContainerNetworkService.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\NetworkService" S3 QALSvc; "C:\Program Files\Acer\Acer Quick Access\QALSvc.exe" [X] S3 QASvc; "C:\Program Files\Acer\Acer Quick Access\QASvc.exe" [X] S3 UEIPSvc; "C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [5118384 2022-09-12] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [798128 2022-09-29] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-Malware Publisher -> Bitdefender) R0 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [33208 2022-02-01] (Microsoft Windows Hardware Compatibility Publisher -> © Bitdefender SRL) S3 bduefiscan; C:\WINDOWS\system32\DRIVERS\bduefiscan.sys [55864 2021-07-08] (Bitdefender SRL -> Bitdefender) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R0 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [1274296 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA) S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2017-06-29] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.) R2 Ignis; C:\WINDOWS\system32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL -> Bitdefender) R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [31000 2018-05-15] (Acer Incorporated -> Acer Incorporated) S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv.sys [10782936 2018-10-28] (Mail.Ru LLC -> LLC Mail.Ru) R1 netfltcc; C:\WINDOWS\System32\drivers\netfltcc.sys [95752 2019-08-21] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 PcaSp60; C:\Windows\SysWOW64\DRIVERS\PcaSp60.sys [38912 2010-09-07] (PRINTING COMMUNICATIONS ASSOCIATES, INC -> Printing Communications Assoc., Inc. (PCAUSA)) S3 Qcamain; C:\WINDOWS\System32\drivers\Qcamainx64.sys [2276352 2015-07-10] (Qualcomm Atheros, Inc.) [Datei ist nicht signiert] R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [25368 2018-05-15] (Acer Incorporated -> Acer Incorporated) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [45752 2017-07-19] (Razer USA Ltd. -> Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [139704 2017-07-18] (Razer USA Ltd. -> Razer, Inc.) R3 SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [315392 2022-08-11] (Microsoft Windows -> Microsoft Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43640 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2021-12-25] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [633264 2022-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) R0 vlflt; C:\WINDOWS\System32\DRIVERS\vlflt.sys [480184 2022-05-26] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49616 2022-11-11] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [469288 2022-11-11] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-11-11] (Microsoft Windows -> Microsoft Corporation) R3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [38176 2021-12-25] (WireGuard LLC -> WireGuard LLC) S1 FileAbap; system32\drivers\FileAbap64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-11-15 11:57 - 2022-11-15 11:57 - 002375168 _____ (Farbar) C:\Users\*****\Downloads\FRST64 (1).exe 2022-11-15 11:27 - 2022-11-15 11:27 - 002375168 _____ (Farbar) C:\Users\*****\Downloads\FRST64.exe 2022-11-15 11:25 - 2022-11-15 11:26 - 000000000 ____D C:\Desktop-Dateien 2022-11-15 11:17 - 2022-11-15 11:17 - 000000000 ___DC C:\Users\*****\Documents\Dateien 2022-11-15 11:14 - 2022-11-15 11:14 - 000000000 ____D C:\Users\*****\Downloads\Dateien_neu 2022-11-15 10:54 - 2022-11-15 11:30 - 000112195 _____ C:\Users\*****\Downloads\Addition.txt 2022-11-15 10:51 - 2022-11-15 11:59 - 000041810 _____ C:\Users\*****\Downloads\FRST.txt 2022-11-15 10:51 - 2022-11-15 11:58 - 000000000 ____D C:\FRST 2022-11-15 09:48 - 2022-11-15 09:48 - 000000000 ___HD C:\$WinREAgent 2022-11-13 21:59 - 2022-11-13 21:59 - 000633084 _____ C:\ProgramData\cl.1668373021.bdinstall.v2.bin 2022-11-13 21:59 - 2022-11-13 21:59 - 000113376 _____ C:\ProgramData\cl.kit.1668373011.bdinstall.v2.bin 2022-11-13 21:59 - 2022-11-13 21:59 - 000000000 ____D C:\ProgramData\Gemma 2022-11-13 21:59 - 2022-11-13 21:59 - 000000000 ____D C:\ProgramData\Atc 2022-11-13 21:59 - 2022-11-13 21:59 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4 2022-11-13 21:58 - 2022-11-13 21:58 - 000000000 ____D C:\WINDOWS\system32\elambkup 2022-11-13 21:58 - 2022-11-13 21:58 - 000000000 ____D C:\Users\*****\AppData\Roaming\Bitdefender 2022-11-13 21:58 - 2022-11-13 21:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Security 2022-11-13 21:58 - 2022-11-13 21:58 - 000000000 ____D C:\ProgramData\BDLogging 2022-11-13 21:58 - 2022-09-29 12:18 - 000798128 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bddci.sys 2022-11-13 21:58 - 2022-09-12 13:21 - 005118384 _____ (Bitdefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\atc.sys 2022-11-13 21:58 - 2022-06-27 06:58 - 001274296 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\gemma.sys 2022-11-13 21:58 - 2022-02-01 05:13 - 000033208 _____ (© Bitdefender SRL) C:\WINDOWS\system32\Drivers\bdprivmon.sys 2022-11-13 21:58 - 2021-07-08 23:36 - 000055864 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bduefiscan.sys 2022-11-13 21:58 - 2020-12-18 00:33 - 000022976 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys 2022-11-13 21:58 - 2020-10-07 09:30 - 000185312 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\ignis.sys 2022-11-13 21:57 - 2022-11-13 22:14 - 000000000 ____D C:\ProgramData\Bitdefender 2022-11-13 21:57 - 2022-11-13 21:57 - 000000000 ____D C:\Program Files\Bitdefender 2022-11-13 21:57 - 2022-04-16 14:09 - 000633264 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\trufos.sys 2022-11-13 21:56 - 2022-11-13 21:58 - 000000000 ____D C:\Program Files\Common Files\Bitdefender 2022-11-13 21:56 - 2022-05-26 03:20 - 000480184 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\vlflt.sys 2022-11-13 21:54 - 2022-11-13 21:54 - 000003846 _____ C:\WINDOWS\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 2022-11-13 21:53 - 2022-11-13 21:53 - 000156520 _____ C:\ProgramData\agent.1668372773.bdinstall.v2.bin 2022-11-13 21:52 - 2022-11-13 21:52 - 000000000 ____D C:\Users\*****\AppData\Local\Bitdefender 2022-11-13 21:52 - 2022-11-13 21:52 - 000000000 ____D C:\ProgramData\Bitdefender Agent 2022-11-13 21:52 - 2022-11-13 21:52 - 000000000 ____D C:\Program Files\Bitdefender Agent 2022-11-10 09:21 - 2022-09-30 05:24 - 000174112 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudmdm.sys 2022-11-10 09:21 - 2022-09-30 05:23 - 000167440 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus2.sys 2022-11-09 19:56 - 2022-11-09 19:56 - 000688128 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-11-09 19:56 - 2022-11-09 19:56 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-11-09 19:56 - 2022-11-09 19:56 - 000073216 _____ C:\WINDOWS\system32\nettraceex.dll 2022-11-09 19:56 - 2022-11-09 19:56 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-11-06 10:32 - 2022-11-14 08:25 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-11-02 08:13 - 2022-11-02 08:13 - 000000000 ____D C:\Users\*****\AppData\Roaming\Python 2022-11-01 21:01 - 2022-11-01 21:01 - 000000000 ____D C:\Users\*****\AppData\Roaming\Fusion360 2022-11-01 21:01 - 2022-11-01 21:01 - 000000000 ____D C:\Users\*****\AppData\Roaming\CadSoft 2022-11-01 20:38 - 2022-11-01 20:38 - 000000000 ___DC C:\Users\*****\Documents\Fusion 360 2022-11-01 20:37 - 2022-11-01 21:01 - 000000000 ____D C:\Users\*****\AppData\Roaming\Autodesk 2022-11-01 20:37 - 2022-11-01 20:37 - 000000000 ___DC C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk 2022-11-01 20:37 - 2022-11-01 20:37 - 000000000 ____D C:\ProgramData\Autodesk 2022-11-01 20:32 - 2022-11-09 08:05 - 000000000 ____D C:\Users\*****\AppData\Local\Autodesk 2022-10-28 14:32 - 2022-10-28 14:32 - 000002216 ____C C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox Privater Modus.lnk 2022-10-20 19:08 - 2022-10-20 19:09 - 000000000 ____D C:\Users\*****\Downloads\alt2 ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-11-15 11:53 - 2020-06-17 20:57 - 001834296 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-11-15 11:53 - 2019-12-07 15:50 - 000786850 _____ C:\WINDOWS\system32\perfh007.dat 2022-11-15 11:53 - 2019-12-07 15:50 - 000167928 _____ C:\WINDOWS\system32\perfc007.dat 2022-11-15 11:53 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-11-15 11:47 - 2022-02-01 13:00 - 000000000 ___RD C:\Users\*****\iCloudDrive 2022-11-15 11:46 - 2022-08-11 11:02 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Salfeld Kindersicherung.lnk 2022-11-15 11:46 - 2020-06-17 20:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-11-15 11:46 - 2020-06-17 20:45 - 000008192 ___SH C:\DumpStack.log.tmp 2022-11-15 11:46 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-11-15 11:46 - 2019-12-07 10:03 - 001310720 _____ C:\WINDOWS\system32\config\BBI 2022-11-15 11:46 - 2018-08-07 07:19 - 000000000 ____D C:\WINDOWS\dl 2022-11-15 11:46 - 2016-09-22 19:53 - 000000000 ____D C:\ProgramData\NVIDIA 2022-11-15 11:45 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-11-15 11:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-11-15 11:44 - 2015-07-10 12:04 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicyUsers 2022-11-15 11:42 - 2018-08-07 07:19 - 000000000 ____D C:\WINDOWS\cc 2022-11-15 11:29 - 2021-11-22 08:01 - 000000000 ____D C:\Users\*****\AppData\Local\WebEx 2022-11-15 10:41 - 2020-06-17 20:45 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-11-15 10:04 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2022-11-15 09:59 - 2020-08-31 19:03 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-11-15 09:58 - 2022-10-04 20:27 - 000005570 _____ C:\Users\*****\AppData\Roaming\LTspiceXVII.ini 2022-11-15 09:51 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-11-15 09:39 - 2016-11-18 13:10 - 000000000 ___DC C:\Users\*****\AppData\LocalLow\Mozilla 2022-11-14 14:14 - 2017-07-16 06:45 - 000000000 ___DC C:\Users\*****\AppData\Roaming\.minecraft 2022-11-13 21:59 - 2022-01-25 19:09 - 000000000 ____D C:\Program Files (x86)\Google 2022-11-13 21:51 - 2017-12-01 16:47 - 000000000 ___DC C:\Users\*****\AppData\Local\Packages 2022-11-13 21:50 - 2022-01-25 19:11 - 000002243 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-11-11 07:27 - 2018-06-17 13:48 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-11-10 17:18 - 2020-08-31 19:03 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-11-10 17:18 - 2020-08-31 19:03 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-11-10 00:20 - 2020-06-17 20:45 - 000439200 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-11-10 00:20 - 2016-11-11 11:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-11-09 19:56 - 2020-06-17 20:46 - 003014656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-11-09 19:45 - 2016-07-06 11:42 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-11-09 19:39 - 2016-07-06 11:42 - 146960040 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-11-09 16:17 - 2016-07-07 15:26 - 000000000 ____D C:\Program Files (x86)\Minecraft 2022-11-07 13:32 - 2021-11-01 10:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-11-07 13:32 - 2016-11-11 11:49 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-11-04 14:48 - 2021-05-12 22:58 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2022-11-04 14:48 - 2021-04-08 20:13 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2022-11-04 09:50 - 2021-02-08 13:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-11-03 16:05 - 2022-01-04 20:20 - 000000000 ___DC C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2022-11-01 20:38 - 2019-07-21 11:43 - 000000000 ____D C:\Users\*****\AppData\Local\cache 2022-10-28 14:32 - 2022-02-14 08:10 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-10-28 11:30 - 2018-07-13 19:39 - 000000000 ___DC C:\Users\*****\AppData\Local\PlaceholderTileLogoFolder 2022-10-26 09:36 - 2022-10-04 20:24 - 000000000 ___DC C:\Users\*****\Documents\LTspiceXVII 2022-10-24 12:44 - 2022-01-04 20:20 - 000000000 ____D C:\Users\*****\AppData\Roaming\Code 2022-10-24 12:37 - 2022-10-14 10:11 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2022-10-24 12:37 - 2020-06-17 20:59 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-10-21 19:04 - 2021-04-10 20:04 - 000002364 ____C C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2022-10-18 07:34 - 2022-01-04 19:48 - 000000000 ____D C:\Users\*****\anaconda3 ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2022-10-04 20:27 - 2022-11-15 09:58 - 000005570 _____ () C:\Users\*****\AppData\Roaming\LTspiceXVII.ini 2021-09-12 18:37 - 2021-09-12 18:37 - 000000875 _____ () C:\Users\*****\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
15.11.2022, 12:27 | #6 |
| Verdacht auf Manipulation des RechnersCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 14-11-2022 durchgeführt von ***** (15-11-2022 11:59:59) Gestartet von C:\Users\*****\Downloads Microsoft Windows 10 Home Version 22H2 19045.2251 (X64) (2020-06-17 19:59:26) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-908791101-83370650-475787697-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-908791101-83370650-475787697-503 - Limited - Disabled) Gast (S-1-5-21-908791101-83370650-475787697-501 - Limited - Disabled) ***** (S-1-5-21-908791101-83370650-475787697-1001 - Administrator - Enabled) => C:\Users\***** *****_7wbdj9i (S-1-5-21-908791101-83370650-475787697-1010 - Limited - Disabled) *****_nu5teho (S-1-5-21-908791101-83370650-475787697-1004 - Limited - Disabled) Surfen erlaubt (S-1-5-21-908791101-83370650-475787697-1005 - Limited - Enabled) => C:\Users\Surfen erlaubt WDAGUtilityAccount (S-1-5-21-908791101-83370650-475787697-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Bitdefender Virenschutz (Enabled - Out of date) {840E1EB8-082E-3D95-EAAA-FD11CF357A26} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: 360 Total Security (Enabled - Up to date) {91AD8F88-E316-BC3A-E0A3-9F4C5B36A8D0} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Firewall (Disabled) {BC359F9D-4241-3CCD-C1F5-542431E63D5D} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.03.2003 - Acer Incorporated) abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 4.00.2001.1 - Acer Incorporated) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 22.003.20263 - Adobe) Adobe AIR (HKLM-x32\...\{CE25DBD3-FCA7-4E77-9A60-F77BE12FC4BA}) (Version: 30.0.0.107 - Adobe Systems Incorporated) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 30.0.0.107 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601032}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Anaconda3 2021.11 (Python 3.9.7 64-bit) (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Anaconda3 2021.11 (Python 3.9.7 64-bit)) (Version: 2021.11 - Anaconda, Inc.) Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{0E4C791E-B78E-477D-BD5A-CDD0985BA6EC}) (Version: 7.0.20622.1 - Microsoft Corporation) Application Verifier x64 External Package (HKLM\...\{D9908CED-5ABB-FEE9-FC84-743F4D38637C}) (Version: 10.1.16299.15 - Microsoft) Hidden Atom (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\atom) (Version: 1.28.2 - GitHub Inc.) Autodesk Fusion 360 (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.14793 - Autodesk, Inc.) Azure AD Authentication Connected Service (HKLM-x32\...\{8A1AD070-269F-4A15-AAB5-76AB896EF195}) (Version: 14.0.25420 - Microsoft Corporation) Hidden AzureTools.Notifications (HKLM-x32\...\{1E5CA362-39B6-4BD0-B9C0-69CF15F0FEA2}) (Version: 2.7.30611.1601 - Microsoft Corporation) Hidden Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 26.0.1.233 - Bitdefender) Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 26.0.30.102 - Bitdefender) Blend for Visual Studio SDK for .NET 4.5 (HKLM-x32\...\{37E53780-3944-4A6A-842F-727128E8616E}) (Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blender (HKLM\...\{E29A1273-2E7A-40E7-AA63-428A11D59429}) (Version: 2.79.2 - Blender Foundation) BlocklingsAutoInstaller (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\f5ffdb473cb943e8) (Version: 1.0.0.4 - BlocklingsAutoInstaller) Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.) Cisco Webex Meetings (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\ActiveTouchMeetingClient) (Version: 42.2.4 - Cisco Webex LLC) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Discord (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Discord) (Version: 1.0.9002 - Discord Inc.) Discord (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Discord) (Version: 0.0.301 - Discord Inc.) Dolby Audio X2 Windows API SDK (HKLM\...\{2A027A37-B09B-44FB-B1C9-2DD6BA0014E8}) (Version: 0.7.2.61 - Dolby Laboratories, Inc.) Dolby Audio X2 Windows APP (HKLM\...\{7DA57EF8-9D20-4126-AF15-D0CC97D0C017}) (Version: 0.4.0.22 - Dolby Laboratories, Inc.) Dotfuscator and Analytics Community Edition 5.22.0 (HKLM-x32\...\{60018889-9E0F-43E8-9B89-29E8C828B40A}) (Version: 5.22.0.3788 - PreEmptive Solutions) Hidden ElsterFormular (HKLM-x32\...\{41FB4389-2F19-4947-9662-30A6AC0C5F7D}) (Version: 19.4.0 - Thüringer Landesfinanzdirektion) Epic Games Launcher (HKLM-x32\...\{64F36122-A72E-4185-A986-0A73C3FA6F73}) (Version: 1.1.135.0 - Epic Games, Inc.) FileZilla Client 3.27.1 (HKLM-x32\...\FileZilla Client) (Version: 3.27.1 - Tim Kosse) Fotogalerie (HKLM-x32\...\{41BF4A3B-D60A-4E92-883F-C88C8C157261}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Foxit PhantomPDF (HKLM-x32\...\{A4023BDF-82D5-412D-9D58-8C2819EBFE2E}) (Version: 7.0.410.326 - Foxit Software Inc.) GameMaker 8.1 (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\GameMaker81) (Version: - ) GHL Control Center Version 1.1.3.7 (HKLM-x32\...\{935EB8AB-EA6A-44CF-91E4-4A2203364BEE}}_is1) (Version: 1.1.3.7 - GHL) GIMP 2.8.20 (HKLM\...\GIMP-2_is1) (Version: 2.8.20 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 107.0.5304.107 - Google LLC) Gtk# for .Net 2.12.26 (HKLM-x32\...\{BC25B808-A11C-4C9F-9C0A-6682E47AAB83}) (Version: 2.12.26 - Xamarin, Inc.) HP Officejet Pro 8620 - Grundlegende Software für das Gerät (HKLM\...\{F6CE08BC-6929-412E-BB42-A9A7CD9721D7}) (Version: 32.3.198.49673 - Hewlett-Packard Co.) HP Officejet Pro 8620 Hilfe (HKLM-x32\...\{F8E43C63-DFF2-4134-A46C-2A6F00517A35}) (Version: 32.0.0 - Hewlett Packard) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) iCloud Outlook (HKLM\...\{F054257C-600A-4918-B730-F6829E491781}) (Version: 13.0.0.201 - Apple Inc.) Intel(R) Chipset Device Software (HKLM\...\{12CB6BC1-4E71-4890-AA0E-26CED6AD7EDD}) (Version: 10.1.1.13 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1169 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{7EEC6C54-5441-472A-8792-A5185CC17DF1}) (Version: 11.0.0.1169 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{846DE3C3-F079-4E2D-AE25-74D2B62B1D9F}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) ME UninstallLegacy (HKLM\...\{D622E3AC-0583-4CEC-9455-8B9139C7B4A2}) (Version: 1.0.1.0 - Intel Corporation) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4550 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{30E935B2-0DAC-455E-AC76-3C8504DC3D18}) (Version: 30.100.1519.07 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{7D84E343-A23D-451C-B123-0195B2D903A6}) (Version: 1.42.17.0 - Intel Corporation) Hidden IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.42 - Irfan Skiljan) Java 8 Update 221 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation) Java SE Development Kit 8 Update 121 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180121}) (Version: 8.0.1210.13 - Oracle Corporation) Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Kits Configuration Installer (HKLM-x32\...\{86E59C8F-61D5-1782-A3CE-60AE7E4D7791}) (Version: 10.1.16299.15 - Microsoft) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LTspice XVII (HKLM\...\LTspice XVII) (Version: - Linear Technology Corporation) Microsoft .NET Core 5.0 SDK (HKLM-x32\...\{E092A9F3-15AE-46B4-9A25-6C25F7F44795}) (Version: 1.0.23902 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (ENU) (HKLM-x32\...\{A223B446-EC3D-3031-828D-5188800AB782}) (Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (HKLM-x32\...\{976C3D92-0DEC-37A6-A870-FF4FC18CD029}) (Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{034547E9-D8FA-49E7-8B9C-4C9861FB9146}) (Version: 4.6.00127 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Developer Pack (DEU) (HKLM-x32\...\{ccac9f21-ebd8-47e8-b566-de87b1f69e42}) (Version: 4.6.1055 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.6.1 Developer Pack (HKLM-x32\...\{463d5540-8dfd-4eef-92e5-b729b3b73cfb}) (Version: 4.6.1055 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.6.1 SDK (Deutsch) (HKLM-x32\...\{529EFF09-750D-48B9-A47A-34A3B6248C3F}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.7.1 Targeting Pack (HKLM-x32\...\{5686C5E9-A3B3-451E-A2EA-4C246CDE5CC9}) (Version: 4.7.02558 - Microsoft Corporation) Hidden Microsoft 365 Apps for Enterprise - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 16.0.15726.20174 - Microsoft Corporation) Microsoft Agents for Visual Studio 2015 Preview - ENU (HKLM-x32\...\{B57097EF-5F38-348C-8081-4D0F0B78757E}) (Version: 14.0.23102 - Microsoft Corporation) Hidden Microsoft Agents for Visual Studio 2015 Preview (HKLM-x32\...\{CE37CE67-2660-30EE-805B-78829CC3554B}) (Version: 14.0.23102 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Azure Mobile Services Connected Service (HKLM-x32\...\{107518BF-43A3-4CB6-B571-9C5A241F9586}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Azure Mobile Services SDK V2.0 (HKLM-x32\...\{A00EC54A-CE16-4CF6-A14A-5CF81A1FE03F}) (Version: 2.0.20908.0 - Microsoft Corporation) Hidden Microsoft Azure Mobile Services Tools for Visual Studio - v1.4 (HKLM-x32\...\{5536AAD4-740A-4577-843D-4281D3F30726}) (Version: 1.4.30611.1601 - Microsoft Corporation) Hidden Microsoft Azure Shared Components for Visual Studio 2015 - v1.8 (HKLM-x32\...\{F02B1BAC-94DA-46FB-B27B-7287FC0EF481}) (Version: 1.8.40521.1 - Microsoft Corporation) Hidden Microsoft Azure Storage Connected Service (HKLM-x32\...\{8F15E32A-FAD1-49E3-9378-C8EE0530E192}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Build Tools 14.0 (amd64) (HKLM\...\{79750C81-714E-45F2-B5DE-42DEF00687B8}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Build Tools 14.0 (x86) (HKLM-x32\...\{6BF8837D-67E1-4359-89FB-C08BFD6F2138}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Build Tools Language Resources 14.0 (amd64) (HKLM\...\{34BFF66C-9A7E-4778-8A9F-1DA1F0F4C22E}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Build Tools Language Resources 14.0 (x86) (HKLM-x32\...\{5127B392-8820-4822-A21F-1CB78C2E25AD}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 107.0.1418.42 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 107.0.1418.42 - Microsoft Corporation) Microsoft Expression Blend SDK for .NET 4 (HKLM-x32\...\{9B3A1C97-A361-463E-8817-444F9F88CDFE}) (Version: 2.0.20525.0 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.2 (HKLM-x32\...\{4740889B-2D03-3A6F-BC42-07C8AFDF3B2E}) (Version: 2.2.25420 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation) Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2015 (HKLM-x32\...\{2D170B66-A905-385C-93E0-20A47812B777}) (Version: 3.4.4.1321 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\OneDriveSetup.exe) (Version: 21.099.0516.0003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation) Microsoft Portable Library Multi-Targeting Pack (HKLM-x32\...\{09D51995-D17C-35E4-9143-314298EB5155}) (Version: 14.0.25431.01 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - enu (HKLM-x32\...\{B01EE326-AFD3-30C9-804A-CBC36CBD4922}) (Version: 14.0.25420.01 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Teams) (Version: 1.5.00.28361 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Teams) (Version: 1.2.00.17057 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27029 (HKLM-x32\...\{64ff2cb0-807c-4ee9-87ef-ec1b2ede0daf}) (Version: 14.16.27029.1 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27029 (HKLM-x32\...\{f50edb7e-c25e-47b4-bc4f-7ec4a4d256b1}) (Version: 14.16.27029.1 - Microsoft Corporation) Microsoft Visual C++ 2017 X64 Additional Runtime - 14.16.27024 (HKLM\...\{9D29FC96-9EEE-4253-943F-96B3BBFDD0B6}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X64 Debug Runtime - 14.16.27024 (HKLM\...\{344CC757-8D5A-4BB7-B623-45071834B60C}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X64 Minimum Runtime - 14.16.27024 (HKLM\...\{F1B0FB3A-E0EA-47A6-9383-3650655403B0}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X86 Additional Runtime - 14.16.27024 (HKLM-x32\...\{7258184A-EC44-4B1A-A7D3-68D85A35BFD0}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X86 Debug Runtime - 14.16.27024 (HKLM-x32\...\{AC431C8F-C06F-429C-831E-1B5B1CAAC944}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X86 Minimum Runtime - 14.16.27024 (HKLM-x32\...\{5EEFCEFB-E5F7-4C82-99A5-813F04AA4FBD}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Devenv (HKLM-x32\...\{FC1F3422-0C94-3178-AD95-3EA889DF55AF}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Devenv Resources (HKLM-x32\...\{173D2989-6B09-3A90-8819-A53E43F99818}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Diagnostic Tools - amd64 (HKLM\...\{62D2E847-606F-49FB-A38B-F9D5AA936331}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Performance Collection Tools - ENU (HKLM\...\{3AE40040-2F48-4617-9228-49E999738BDB}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Performance Collection Tools (HKLM\...\{FCC6E820-B5DB-454E-96E3-B6182DDEEC8D}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Preparation (HKLM-x32\...\{919C67A9-2DE8-4929-A910-CB85E009B5CB}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Preparation (HKLM-x32\...\{93A31A4A-197C-43F0-9687-7FFC47C33D44}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Preparation (HKLM-x32\...\{9E99CC49-D305-4D42-AC34-6C732062B142}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Profiling Tools (HKLM-x32\...\{4AD3777F-D26B-4FCD-8823-B1D9784141C6}) (Version: 14.0.25123 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 SDK - ENU (HKLM-x32\...\{67A74EC1-A89D-3553-B38D-D17D4991CD2F}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Shell (Minimum) (HKLM-x32\...\{030A6785-C3A9-37DA-8530-444C320629FA}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Shell (Minimum) Interop Assemblies (HKLM-x32\...\{166EEF5C-F996-390E-91F6-DD6DFD008E9B}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Shell (Minimum) Resources (HKLM-x32\...\{7FF53256-7BAF-3EFA-91B4-DB65F37EB5E9}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Test Tools Language Pack - ENU (HKLM-x32\...\{E41854EE-D8A6-4E03-B42D-E0006C24A306}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Tools for Unity (HKLM-x32\...\{D1F8A274-EE6F-4698-A272-8B2753B9C26B}) (Version: 3.8.0.7 - Microsoft Corporation) Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64 (HKLM\...\{2D02967A-1085-4421-8559-B0147208EE13}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64 (HKLM\...\{BCAC059C-E06C-4D45-928A-A69061678ECA}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - ENU (HKLM-x32\...\{0DC92391-4C2B-4C35-A674-EBDEE5ABB375}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 (HKLM-x32\...\{35B1EDF3-63B5-4908-989D-6F62DBA02C58}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 (HKLM-x32\...\{6BD4394B-DE2E-4D0A-B835-31E2BD9AEC38}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 (HKLM-x32\...\{7DFB810E-B924-4DAD-975A-E07F58153727}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Performance Debugger Web Views (HKLM-x32\...\{A5C0F000-F324-46D3-BBD9-5F6AD1886B12}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3.1 Team Explorer Language Pack - ENU (HKLM-x32\...\{A308948E-D2D2-3323-A336-49DBA82964D7}) (Version: 14.102.25619 - Microsoft) Hidden Microsoft Visual Studio 2015 VsGraphics Helper Dependencies (HKLM\...\{599702AA-91EB-38C1-B994-CDE35C57E007}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Windows Diagnostic Tools - ENU (HKLM-x32\...\{AB5A27F1-57C7-4E4C-90C4-28E55272FD6F}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Windows Diagnostic Tools (HKLM-x32\...\{4100F789-5312-4A41-817C-3118F6F44CAB}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 XAML Application Timeline - ENU (HKLM-x32\...\{C3C024EC-B097-43BE-9BFC-E3D10EF45510}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 XAML Application Timeline (HKLM-x32\...\{2230AE9A-A95A-4C15-A4D1-6536F4B24B7D}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 XAML Visual Diagnostics - ENU (HKLM-x32\...\{8BD56634-6B9E-4CDA-8857-C73F20F57907}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 XAML Visual Diagnostics (HKLM-x32\...\{FD733BA2-59BF-4BF1-ADD4-14A1F3EB98CD}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2017 Tools for Unity (HKLM-x32\...\{1AD79405-0A2D-43D6-82AE-8CB8B212D906}) (Version: 3.9.0.3 - Microsoft Corporation) Hidden Microsoft Visual Studio Code (User) (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.73.0 - Microsoft Corporation) Microsoft Visual Studio Community 2015 with Updates (HKLM-x32\...\{79b486b9-c5f0-4096-a00c-8351f59587c2}) (Version: 14.0.25420.1 - Microsoft Corporation) Microsoft Visual Studio Connected Services (HKLM-x32\...\{76722C36-3BF4-4326-9ADF-A56ABA50AA9F}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.18.1100.314 - Microsoft Corporation) Microsoft Visual Studio Services Hub (HKLM-x32\...\{79B9B6C9-3FAF-4F50-96A9-C1651EA0DD31}) (Version: 1.0.25420.01 - Microsoft Corporation) Hidden Microsoft Visual Studio Setup Configuration (HKLM-x32\...\{23B8EFE9-8716-4560-B3D7-EBAFCDFD25A2}) (Version: 1.18.21.37008 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office Integration (x64) (HKLM\...\{647DB777-6309-3551-9262-6B9CDB97635B}) (Version: 14.98.25331 - Microsoft) Hidden Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office Integration Language Pack (x64) - ENU (HKLM\...\{F04AB121-B3E1-39FE-8A5E-EF8484210107}) (Version: 14.98.25331 - Microsoft) Hidden Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboarding (x64) (HKLM\...\{4E27A682-5F47-3B82-AF7C-90218C7078C3}) (Version: 14.98.25331 - Microsoft) Hidden Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboarding Language Pack (x64) - ENU (HKLM\...\{B97772BE-2F7E-3F09-93B4-D1C9E196018A}) (Version: 14.98.25331 - Microsoft) Hidden Microsoft Visual Studio Team Foundation Server 2017 Update 9 Office Integration (x64) (HKLM\...\{29F73FA6-CA54-3F2F-980F-D1E1DC4E9C81}) (Version: 15.129.28621 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2017 Update 9 Office Integration Language Pack (x64) - ENU (HKLM\...\{688F4A95-C85C-3855-B894-05B0FF7B17F6}) (Version: 15.129.28621 - Microsoft Corporation) Hidden Microsoft VisualStudio JavaScript Language Service (HKLM-x32\...\{42C14710-7126-489A-8899-C73AE77E5345}) (Version: 14.0.25527 - Microsoft Corporation) Hidden Microsoft VisualStudio JavaScript Project System (HKLM-x32\...\{1637E141-7E5A-4DE9-9D52-0F6334AC3474}) (Version: 14.0.25527 - Microsoft Corporation) Hidden Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft.VisualStudio.Office365 (HKLM-x32\...\{3196EC29-B75D-4EE3-8AB0-46418BC31483}) (Version: 1.6.2.0 - Microsoft Corporation) Hidden Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Movie Maker (HKLM-x32\...\{70C91B91-61E8-4D06-86D6-A9DCC291983A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox (x64 de) (HKLM\...\Mozilla Firefox 106.0.5 (x64 de)) (Version: 106.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 106.0.5.8343 - Mozilla) MSBuild/NuGet Integration 14.0 (x86) (HKLM-x32\...\{128C1654-3B9E-4959-8BFB-CE6F09C0A01D}) (Version: 14.0.25420 - Microsoft Corporation) Hidden MSI Development Tools (HKLM-x32\...\{973CACA2-E018-065B-0580-F2784802E299}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden MSVCRT (HKLM-x32\...\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (HKLM-x32\...\{D0B44725-3666-492D-BEF6-587A14BD9BD9}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (HKLM-x32\...\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}) (Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (HKLM\...\{E9FA781F-3E80-4399-825A-AD3E11C28C77}) (Version: 16.4.1109.0912 - Microsoft) Hidden Multi-Device Hybrid Apps using C# - Templates - ENU (HKLM-x32\...\{12D99739-FFD3-3761-8AA6-F929E0FE407E}) (Version: 14.0.23107 - Microsoft Corporation) Hidden NVIDIA GeForce Experience 3.1.0.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.1.0.52 - NVIDIA Corporation) NVIDIA Grafiktreiber 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 19.0.3 - OBS Project) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.15726.20096 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20096 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20096 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.15726.20096 - Microsoft Corporation) Hidden OpenVPN 2.5.3-I601 amd64 (HKLM\...\{E5931AF4-2A8F-48A5-AFC8-460348F480E8}) (Version: 2.5.022 - OpenVPN, Inc.) Paket zur Festlegung von "Doc Redirected"-Zielversionen von Microsoft .NET Framework 4.7.1 (Deutsch) (HKLM-x32\...\{5B970BE4-A2F2-41BD-8B91-FEA8DAA1DB9B}) (Version: 4.7.02558 - Microsoft Corporation) Hidden Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM-x32\...\{4860C1E5-CE58-4D32-89DE-37951333B4C9}) (Version: 4.6.01055 - Microsoft Corporation) PDF Architect 8 (HKLM-x32\...\PDF Architect 8) (Version: 8.0.110.2302 - pdfforge GmbH) PDF Architect 8 Edit Module (HKLM\...\{EB959D16-DAC6-445F-95C0-25E794771E3F}) (Version: 8.0.130.15255 - pdfforge GmbH) Hidden PDF Architect 8 View Module (HKLM\...\{B0548DB6-5A20-4E32-A11C-77FA56026CA0}) (Version: 8.0.130.15255 - pdfforge GmbH) Hidden PDFCreator (HKLM\...\{00010FEF-82A2-497E-983A-7105A0364FA7}) (Version: 4.2.0 - pdfforge GmbH) Photo Common (HKLM-x32\...\{87DABDEA-47A4-4182-AA7C-2C90DAAE3117}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Photo Gallery (HKLM-x32\...\{07AAB66E-4718-422D-9218-4AFB3C922A71}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.12.0 - Prolific Technology INC) PlanetSide 2 (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PreEmptive Analytics Visual Studio Components (HKLM-x32\...\{436A18DD-5F2C-4B3C-985E-AD3C13B0CC25}) (Version: 1.2.5134.1 - PreEmptive Solutions) Hidden Python 3.10.1 (64-bit) (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\{af822d5e-759c-4e77-9696-3cc835cd54a9}) (Version: 3.10.1150.0 - Python Software Foundation) Python 3.10.1 Core Interpreter (64-bit) (HKLM\...\{862831D8-A2FD-4ED5-B9B9-C8C3ECA1CAE8}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Development Libraries (64-bit) (HKLM\...\{A17FBEFC-ABDD-4E5E-AAA5-CC503ACF648F}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Documentation (64-bit) (HKLM\...\{DD75DEC5-89C0-4E54-88A2-83DCCA026F3A}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Executables (64-bit) (HKLM\...\{4F07CBC9-1051-41FC-978D-EECA76E4D547}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 pip Bootstrap (64-bit) (HKLM\...\{167746E3-B9B3-4964-803A-F893F1FC56C9}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Standard Library (64-bit) (HKLM\...\{98A2C72D-7929-414D-995B-4E47D8307C93}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Tcl/Tk Support (64-bit) (HKLM\...\{5A807757-F64E-46D3-ABD1-B4907BB75B72}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Test Suite (64-bit) (HKLM\...\{0393EBB7-8F16-42DC-9B63-F1552F481B92}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Utility Scripts (64-bit) (HKLM\...\{FD9B0798-B88D-4148-9159-6206EACD7C47}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.6.1 (64-bit) (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\{5984d629-979e-4439-b893-accde1a00a68}) (Version: 3.6.1150.0 - Python Software Foundation) Python 3.6.1 Add to Path (64-bit) (HKLM\...\{079FEF6F-9E83-4694-897D-69C30389B772}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Core Interpreter (64-bit) (HKLM\...\{27133190-078A-4A46-81B0-FF476EAEBF2A}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Development Libraries (64-bit) (HKLM\...\{953B4007-8312-48CA-817E-29B43988EB35}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Documentation (64-bit) (HKLM\...\{41626EAD-257F-401F-8531-51C5A7D4CA6C}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Executables (64-bit) (HKLM\...\{9139037B-B991-4022-946F-DAA9A9FDC7EE}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 pip Bootstrap (64-bit) (HKLM\...\{5F9A36CA-767E-4922-84AB-73E61264FE5C}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Standard Library (64-bit) (HKLM\...\{B7A716F0-78C1-4CB9-8756-0E51C5DD7622}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Tcl/Tk Support (64-bit) (HKLM\...\{AC60D963-1CE4-429B-AB29-F973DC55A918}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Test Suite (64-bit) (HKLM\...\{A298B2DB-1F21-476D-9BD7-4ECC23101C90}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Utility Scripts (64-bit) (HKLM\...\{7CB8460F-55AD-4C70-8D04-72947C46C85E}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.2 (32-bit) (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\{8388fa07-1617-4b8d-8ad8-6a940ad8052c}) (Version: 3.6.2150.0 - Python Software Foundation) Python 3.6.2 Core Interpreter (32-bit) (HKLM-x32\...\{4542573C-6216-4584-BA90-72BAF7954404}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Development Libraries (32-bit) (HKLM-x32\...\{69E3E4A6-2A0F-4A32-9C2D-591EEC107289}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Documentation (32-bit) (HKLM-x32\...\{796410A7-1669-4FE4-8332-F684B61269E2}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Executables (32-bit) (HKLM-x32\...\{348C0EFF-60B1-4E68-88B8-33D7DF70DFCF}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 pip Bootstrap (32-bit) (HKLM-x32\...\{6B2D61BA-C42D-4324-B23F-1D7B5A2808EF}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Standard Library (32-bit) (HKLM-x32\...\{79B4337D-166F-4BC0-B67A-F73806CC730E}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Tcl/Tk Support (32-bit) (HKLM-x32\...\{DF24AFFD-23AB-4A7D-A0E0-6410CE3B6B9D}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Test Suite (32-bit) (HKLM-x32\...\{433FD2E2-839C-4211-88B7-45C90F738842}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Utility Scripts (32-bit) (HKLM-x32\...\{9B79DE7E-E864-4758-8DFC-85DA43B19671}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{7DE12550-BE09-44DD-BDB4-0EC26BA89DAF}) (Version: 3.10.7644.0 - Python Software Foundation) Qualcomm Atheros 11ac Wireless LAN&Bluetooth Installer (HKLM-x32\...\{3241744A-BA36-41F0-B4AA-EF3946D00632}) (Version: 11.0.0.10198 - Qualcomm Atheros) Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 2.5.3 - Razer Inc.) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.21.00.721 - Razer Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.31213 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.3.723.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.) Revo Uninstaller 2.3.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.3.8 - VS Revo Group, Ltd.) Roblox Player for Surfen erlaubt (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\roblox-player) (Version: - Roblox Corporation) Roblox Studio for Surfen erlaubt (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\{2922D6F1-2865-4EFA-97A9-94EEAB3AFA14}) (Version: - Roblox Corporation) Roblox Studio for Surfen erlaubt (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\roblox-studio) (Version: - Roblox Corporation) Roslyn Language Services - x86 (HKLM-x32\...\{6970C7E1-F99D-388D-8903-DF8FCE677FED}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Roslyn Language Services - x86 (HKLM-x32\...\{6C1985E7-E1C5-3A95-86EF-2C62465F15C3}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Salfeld Kindersicherung (HKLM-x32\...\Salfeld) (Version: - Salfeld GmbH) Scratch 2 Offline Editor (HKLM-x32\...\{6E988774-5309-E02E-7EA8-F19CB65C2063}) (Version: 255 - Massachusetts Institute of Technology) Hidden Scratch 2 Offline Editor (HKLM-x32\...\edu.media.mit.Scratch2Editor) (Version: 461 - Massachusetts Institute of Technology) SDK ARM Additions (HKLM-x32\...\{7922BB77-0B59-840A-AC80-D560A34D75C5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden SDK ARM Redistributables (HKLM-x32\...\{C87DF65C-A672-7E08-A083-E7D48FE8DB70}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Spotify (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Spotify) (Version: 1.0.80.474.gef6b503e - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Studie zur Verbesserung von HP Officejet Pro 8620 (HKLM\...\{825BC9A9-A005-4FDB-BDE9-A4F2DF69C3B7}) (Version: 32.3.198.49673 - Hewlett-Packard Co.) Team Explorer for Microsoft Visual Studio 2015 Update 3.1 (HKLM-x32\...\{7A95671A-759E-3B83-B763-4289D1D24D73}) (Version: 14.102.25619 - Microsoft) Hidden Teams Machine-Wide Installer (HKLM-x32\...\{39AF0813-FA7B-4860-ADBE-93B9B214B914}) (Version: 1.3.0.28779 - Microsoft Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\TeamSpeak 3 Client) (Version: 3.1.0 - TeamSpeak Systems GmbH) Test Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{9EABBFE1-7EED-47D9-8FB8-21D7E4808057}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Thunderbolt(TM) Software (HKLM-x32\...\{5B88BE64-93E7-4D6B-83D0-37B911166FF2}) (Version: 15.2.35.250 - Intel Corporation) Tools for .Net 3.5 - DEU Lang Pack (HKLM-x32\...\{13BD574A-7F41-420A-B486-7A2D4CEB7F3B}) (Version: 3.11.50727 - Microsoft Corporation) Hidden Tools for .Net 3.5 (HKLM-x32\...\{1690CE56-2231-4E59-9006-A0876D949EA8}) (Version: 3.11.50727 - Microsoft Corporation) Hidden Twitch (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) TypeScript Power Tool (HKLM-x32\...\{465ACA24-B8D6-4FEC-A42D-9EFCB92CD560}) (Version: 1.8.34.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{BA5762C7-D35F-4725-A4BD-525854127018}) (Version: 1.8.36.0 - Microsoft Corporation) Hidden UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden Universal CRT Extension SDK (HKLM-x32\...\{A5FA2886-1925-133F-0D41-B9A8ECEA0A2D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (HKLM-x32\...\{B739B4C5-EEEC-8E70-0276-38C4779AF398}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{A9D6F52C-694E-3E41-7AB8-5BEB644742A5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Tools x64 (HKLM\...\{E053089E-7953-3219-814F-F485FC151C54}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Tools x86 (HKLM-x32\...\{B9424F08-0617-C4F6-A798-5A9250C1A738}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal General MIDI DLS Extension SDK (HKLM-x32\...\{D261CEA1-AB8D-9CFA-4407-BCEFC78661AC}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation) Uplay (HKLM-x32\...\Uplay) (Version: 63.0 - Ubisoft) USBVCOM Driver Installer (HKLM-x32\...\{A6099CC4-B1A8-4888-9F6C-8275EA8EC3A0}) (Version: 1.00.0005 - Cypress) USBVCOM Driver version 1.0.3.1 (HKLM\...\{4F5554CC-A54E-42AA-A51E-2C3DCA71115D}_is1) (Version: 1.0.3.1 - Cypress) vcpp_crt.redist.clickonce (HKLM-x32\...\{77B667B9-36B3-4712-AD45-28EA1A278D8B}) (Version: 14.16.27012 - Microsoft Corporation) Hidden Visual C++ Compiler/Tools X86 Base Package (HKLM-x32\...\{7BC93EE9-44F1-3783-AD76-F6BD6C8F6B58}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ Compiler/Tools X86 Base Package (HKLM-x32\...\{BFEC9D45-BAD4-3D7C-B6A7-887D21E6C25A}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ Compiler/Tools X86 Base Resource Package (HKLM-x32\...\{62505F19-7D2A-3FD0-B1A2-D8E2FA2F96B3}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ Compiler/Tools X86 Base Resource Package (HKLM-x32\...\{85658238-483F-3148-967E-ECD533AE6FE7}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ IDE Base Package (HKLM-x32\...\{30B0517F-1E18-3D45-A78C-C2E34B9A368D}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Visual C++ IDE Base Resource Package (HKLM-x32\...\{A3CF57ED-FFD1-3AC4-B9D7-90069B2B5EDA}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Base Resource Package (HKLM-x32\...\{DC3240BB-9136-3978-8EF3-F041ACEA11BF}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Common Package (HKLM-x32\...\{BD5A23D6-1E9F-3378-89CF-E96908078D53}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Common Resource Package (HKLM-x32\...\{EFE03B21-A8A5-3CCD-81BD-7FC47007F1BA}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Package (HKLM-x32\...\{81B64FE0-5DC1-35D4-A51E-AD11803C520C}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{0FDFB80D-91E1-36F1-B523-0B90421FDDC1}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{1D958A62-C980-3CB7-AC59-40EF0D1FA80E}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{1DC85000-B0F8-325F-AD01-2770D36517D5}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{2FEE4EBD-CEB0-3E26-9405-CF0D812CFA3C}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{33DA2215-AF20-3F21-A171-57F0533A5CAF}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{43027679-FD40-32E6-A9F0-7BB3CDEBE416}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{49D4D4E2-21E8-3346-A496-1A1415B18594}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{4E61EF40-8A51-3D99-AA4C-32F203370083}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{5130318D-7FEA-35E6-927D-01368910BDFC}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{66DA8EAA-D4CD-30DC-B993-0EDF728ED1F6}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{B2321364-E928-325D-A954-933D35239BE5}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{D1201DF3-F934-342A-A586-2B255CB8B215}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{D209BFE9-3EDA-3606-AF6B-DCADA87A2285}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{D9CE69E8-D77A-3C94-A910-641622794ED4}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Debugger Package (HKLM-x32\...\{F3F23EAE-D617-3A1F-8717-FACD35A1ECEE}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Visual C++ IDE Debugger Resource Package (HKLM-x32\...\{E20C5867-063A-36FF-B630-A9C96CE5D8AF}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Professional Core Package (HKLM-x32\...\{C67257E4-F24C-3C35-86BB-E9B7D5D4D9FB}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE x64 Package (HKLM\...\{60DED060-0B6B-3CC1-B955-D0CD401F0FBA}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ Library PGO X86 Package (HKLM-x32\...\{023FCA1D-E591-3AF9-9D2F-9876639A511A}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ MSBuild ARM Package (HKLM-x32\...\{51547499-4A12-3CC6-AE3D-3C5E87D72909}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ MSBuild Base Package (HKLM-x32\...\{35433594-85A3-3EEA-963E-0E5E860B82D6}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ MSBuild Base Resource Package (HKLM-x32\...\{D073E568-C258-381C-B9DB-965434B1DF53}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ MSBuild X64 Package (HKLM-x32\...\{EE527713-BE8A-348A-8854-DACBCE5316F2}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ MSBuild X86 Package (HKLM-x32\...\{8CB498C5-672B-3F6C-9143-84B0BBC1EAB3}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual Studio 2012 Verification SDK (HKLM-x32\...\{A3BCFD43-58D6-3132-A7DF-16CE04672372}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual Studio 2015 Prerequisites - ENU Language Pack (HKLM\...\{83B181F2-20B8-4F00-8E71-C66E951A8D4F}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Visual Studio 2015 Prerequisites (HKLM\...\{DF32E41C-24AD-4A87-B43A-B38553B1806E}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Visual Studio 2015 Update 3 (KB3022398) (HKLM-x32\...\{7a68448b-9cf2-4049-bd73-5875f1aa7ba2}) (Version: 14.0.25420 - Microsoft Corporation) Visual Studio Community 2017 (HKLM-x32\...\dcd98f6c) (Version: 15.9.28307.586 - Microsoft Corporation) Visual Studio Graphics Analyzer (HKLM-x32\...\{8C26982F-B345-3C87-8D17-5E88ADDAFFF6}) (Version: 14.0.25420 - Microsoft Corporation) Hidden VPNMaster 3.7.0.0 stable (HKLM-x32\...\VPNMaster) (Version: 3.7.0.0 stable - inconnecting.com) VS Script Debugging Common (HKLM\...\{8B657335-3813-4CF4-A6FE-2AA44BE23F94}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden VS Update core components (HKLM-x32\...\{B2918D01-1D89-34D3-87EF-A28121BC6EB7}) (Version: 14.0.25431 - Microsoft Corporation) Hidden vs_communitymsi (HKLM-x32\...\{71797C29-380A-492C-B35A-F5E4A7B57BDC}) (Version: 15.9.28307 - Microsoft Corporation) Hidden vs_communitymsires (HKLM-x32\...\{5297D80E-CD92-48D8-9DB0-301AB3205772}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_devenvmsi (HKLM-x32\...\{BFFA2FFB-1095-4ADD-A352-368806D2412B}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_filehandler_amd64 (HKLM-x32\...\{A254DA0E-26A1-43C3-95BE-7A24D5599473}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_filehandler_x86 (HKLM-x32\...\{1F42A73E-CF26-4D67-BA79-752CA56B639F}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_FileTracker_Singleton (HKLM-x32\...\{A41E138F-5A3F-443C-B72D-957AB994FB5A}) (Version: 15.9.28128 - Microsoft Corporation) Hidden vs_minshellinteropmsi (HKLM-x32\...\{3A78DA3D-C8D4-429D-B536-6E59A0088451}) (Version: 15.8.27825 - Microsoft Corporation) Hidden vs_minshellmsi (HKLM-x32\...\{68B8AD33-CE97-4C3D-9583-669C39D21BA5}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_minshellmsires (HKLM-x32\...\{0D3A6730-43CE-4AF6-BDF7-4D0660296C60}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_tipsmsi (HKLM-x32\...\{1AC6CC3D-7724-4D84-9270-798A2191AB1C}) (Version: 15.0.27005 - Microsoft Corporation) Hidden vs_update3notification (HKLM-x32\...\{AB3DF932-C990-34D4-BF43-970F760DA3CD}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) WCF Data Services 5.6.4 Runtime (HKLM-x32\...\{DB85E7BD-B2DD-43D4-B3C0-23D7B527B597}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{0A3B508E-5638-4471-BCC9-954E1868CB86}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden WinAppDeploy (HKLM-x32\...\{9690D51C-4435-1C20-7819-66CCAB0F03F9}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows App Certification Kit Native Components (HKLM\...\{09215AC7-B15F-A151-B90A-6B432EAD80A8}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows App Certification Kit SupportedApiList x86 (HKLM-x32\...\{6BC13537-D39F-5BF2-85F3-E073AE3ED446}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows App Certification Kit x64 (HKLM-x32\...\{0D9BEF83-4D44-5BCA-353F-07BA0A16CA46}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Desktop Extension SDK (HKLM-x32\...\{8358B2F8-FEE0-7FBA-14E5-AC84A7E61552}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Desktop Extension SDK Contracts (HKLM-x32\...\{44B8DFA4-495D-9972-F663-557B1BC0CB71}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Espc Package (HKLM-x32\...\{42AF2A8C-6EBB-3D2E-9BF1-6135379FBABC}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Windows Espc Resource Package (HKLM-x32\...\{FC94D188-1E08-3707-9D23-F41178D44664}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Windows IoT Extension SDK (HKLM-x32\...\{5899CA05-6772-95EC-4261-A09E5EE0FBF2}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows IoT Extension SDK Contracts (HKLM-x32\...\{58BC56B7-DCB8-EE66-AA40-2EAE7E2EB0F2}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows IP Over USB (HKLM-x32\...\{8CBFAC58-3058-B2AD-10E2-9E2A859B554B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Live Communications Platform (HKLM-x32\...\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\{66233218-CA57-4AB2-BA43-A97AA4635960}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Installer (HKLM-x32\...\{659CB81C-B54E-4DF1-B618-F35777393A54}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{F7232FE1-BC35-4229-8D76-D49941FE9929}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (HKLM-x32\...\{B23EE11C-66FA-4395-AB02-5F7103DC485C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (HKLM-x32\...\{E703613B-BDAB-433E-A66A-DE0263E3D35D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (HKLM\...\{25058321-C33E-496B-8915-6FD64D362CAF}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (HKLM-x32\...\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (HKLM-x32\...\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (HKLM-x32\...\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (HKLM-x32\...\{D1893000-EA77-493C-8DDD-E262436E959B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (HKLM-x32\...\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (HKLM-x32\...\{FC071B45-4A5F-408F-92F8-4D9D693E866F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{714E162E-CD4F-4F1B-8302-7F5179409C25}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{955E4722-1480-4198-A144-65FA5F4446DA}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (HKLM-x32\...\{A951D5DA-4759-4C3B-9C36-C6BF30082A2F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Mobile Extension SDK (HKLM-x32\...\{93BEE599-02CB-18E1-744E-D95724E81157}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Mobile Extension SDK Contracts (HKLM-x32\...\{D7A6AB64-9E5C-E5E2-5438-655F7D36475D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Phone SDK 8.0 Assemblies for Visual Studio 2015 (HKLM-x32\...\{44474AE7-7770-3676-AC63-C9DDD15011FF}) (Version: 14.0.25123 - Microsoft Corporation) Hidden Windows SDK (HKLM-x32\...\{921D9904-2313-037F-31B4-D62B9988E236}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK AddOn (HKLM-x32\...\{350F0ECD-0783-4529-8797-98F0AD33EAC0}) (Version: 10.1.0.0 - Microsoft Corporation) Windows SDK ARM Desktop Tools (HKLM-x32\...\{CBACB843-4AEF-D40C-B9BE-CCA402D2B980}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Headers arm (HKLM-x32\...\{CD480276-2E5A-3FE0-D40C-D7C55617F98B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Headers arm64 (HKLM-x32\...\{97AA8169-0E70-3B19-46C5-D4453608D589}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Headers x64 (HKLM-x32\...\{20630AC0-B423-2229-3399-A0B5285CB325}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Headers x86 (HKLM-x32\...\{4616D3B4-B5F0-ECBF-4617-0345C9550649}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Libs arm (HKLM-x32\...\{1FEC7E98-2A0A-11F9-1321-5F27304A3E4E}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Libs arm64 (HKLM-x32\...\{A6B742A8-13BA-4A15-0056-E9F2354FADA4}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Libs x64 (HKLM-x32\...\{DAE5B0BB-F2BC-98F5-6147-A83B6DF4B2AA}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Libs x86 (HKLM-x32\...\{82BEC2F8-2758-E0A4-F14B-CAAF3234FE00}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Tools arm64 (HKLM-x32\...\{399E1622-1DD3-2284-510C-3ABEBEB4B4FA}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Tools x64 (HKLM-x32\...\{8105E4C5-379E-F713-8A4D-14A2317A7ABE}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Tools x86 (HKLM-x32\...\{5169186A-B6CA-38E6-BC29-54ABFAFD3721}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK DirectX x64 Remote (HKLM\...\{A60760B2-EF83-1EB6-BC8E-B9A7EC91D3D6}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK DirectX x86 Remote (HKLM-x32\...\{A6EFB3CD-C4B4-878E-1DFF-F01FAF9A1A34}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK EULA (HKLM-x32\...\{A2528C8D-B98A-D28F-C650-722503516A93}) (Version: 10.1.16299.15 - Microsoft Corporations) Hidden Windows SDK Facade Windows WinMD Versioned (HKLM-x32\...\{F76495AC-2A86-BD70-3F0A-20D33E6A3300}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps (HKLM-x32\...\{B5CEC165-2F1F-4348-37A3-BB31DA90BD68}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Contracts (HKLM-x32\...\{7736BDAD-A5B6-8BE7-E34B-F53280448C29}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps DirectX x64 Remote (HKLM\...\{45D32E0E-27C5-82DE-B739-6A9608A2411A}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps DirectX x86 Remote (HKLM-x32\...\{1D42A0CE-494E-EDB0-9613-553487B5953D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Headers (HKLM-x32\...\{07C90F9B-3020-AD74-53A2-404D0A77E6A8}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Libs (HKLM-x32\...\{57186CA6-5B4D-1D1E-0AF0-A6F5244BBA36}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Metadata (HKLM-x32\...\{ECA49B9D-E452-169B-F8E2-E9E415F0190D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Tools (HKLM-x32\...\{CB17BD4C-C6D7-E5D7-5031-F37645D22579}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Managed Apps Libs (HKLM-x32\...\{458C3A87-069F-E8E2-AF52-43152BA91548}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Modern Non-Versioned Developer Tools (HKLM-x32\...\{454B446B-6DC1-3524-53D5-4439D56358EF}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Modern Versioned Developer Tools (HKLM-x32\...\{79513535-6F89-55F0-E50F-5D563C4DEAF7}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Redistributables (HKLM-x32\...\{380602CD-5F67-486B-8F98-36A5EAD1A89F}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Signing Tools (HKLM-x32\...\{3ED687AC-3F6D-819B-3948-F0CB24111524}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Software Development Kit - Windows 10.0.16299.15 (HKLM-x32\...\{6195c203-b53c-4bb7-983a-6070a902e704}) (Version: 10.1.16299.15 - Microsoft Corporation) Windows Software Development Kit DirectX x64 Remote (HKLM\...\{5247E16E-BCF8-95AB-1653-B3F8FBF8B3F1}) (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (HKLM-x32\...\{A1CB8286-CFB3-A985-D799-721A0F2A27F3}) (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (HKLM\...\{96F4525A-470D-F15C-796E-58D9988C3E5F}) (Version: 8.100.26936 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (HKLM-x32\...\{56AD3004-0B49-967F-F682-B05650B61A78}) (Version: 8.100.26936 - Microsoft Corporation) Hidden Windows Team Extension SDK (HKLM-x32\...\{3BFC920A-C3C0-2DFB-7509-03F5EFC95654}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Team Extension SDK Contracts (HKLM-x32\...\{B155C75C-1567-ECA5-D71B-86F5CF1DE1ED}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows-PC-Integritätsprüfung (HKLM\...\{4254C1AD-B9B0-4020-A4B1-D8B61D12142A}) (Version: 3.7.2204.15001 - Microsoft Corporation) Windows-PC-Integritätsprüfung (HKLM\...\{AD47C6B2-6C72-4F0E-B66F-7685C28ACDFD}) (Version: 3.3.2110.22002 - Microsoft Corporation) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) WinRAR 5.40 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) WinRT Intellisense Desktop - en-us (HKLM-x32\...\{385A1387-A488-9E90-3635-086129610034}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{D7DD3171-DA58-52A1-95B2-4769640855AF}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense IoT - en-us (HKLM-x32\...\{7336279F-8F8F-5530-A543-3BE963846C0A}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{E414A474-0A87-4F66-C409-A4D9857CFD34}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense Mobile - en-us (HKLM-x32\...\{CE760B86-975B-F514-5673-0ED4332B801B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense PPI - en-us (HKLM-x32\...\{5E67F8BE-D8D2-257F-CE19-419A2D5125C7}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{A2AA063E-AF50-A1F5-8925-A06EB1556644}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense UAP - en-us (HKLM-x32\...\{7D4C7F4A-02A9-E434-6451-C8787DF28C1F}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{BC467065-9374-5345-DA3F-FCF073304A25}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WISO Steuer-Sparbuch 2021 (HKLM-x32\...\{336FE95D-A21D-4540-ADF4-1A874E4BBE2E}) (Version: 28.02.1946 - Buhl Data Service GmbH) WISO Steuer-Sparbuch 2022 (HKLM-x32\...\{7E995B4B-4235-4869-BFB3-5F5420011A9B}) (Version: 29.08.3260 - Buhl Data Service GmbH) World of Tanks (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) Zoom (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\ZoomUMX) (Version: 5.7.4 (804) - Zoom Video Communications, Inc.) Packages: ========= Acer Explorer -> C:\Program Files\WindowsApps\AcerIncorporated.AcerExplorer_2.0.3007.0_x86__48frkmn4z8aw4 [2016-07-07] (Acer Incorporated) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_140.1.307.0_x64__v10z8vjag6ke6 [2022-11-04] (HP Inc.) iCloud -> C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa [2022-08-11] (Apple Inc.) [Startup Task] Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-07-03] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-07-01] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-07-01] (Microsoft Corporation) [MS Ad] Music Maker Jam -> C:\Program Files\WindowsApps\MAGIX.MusicMakerJam_3.1.1.0_x64__a2t3txkz9j1jw [2020-02-02] (MAGIX) Python 3.9 -> C:\Program Files\WindowsApps\PythonSoftwareFoundation.Python.3.9_3.9.3568.0_x64__qbz5n2kfra8p0 [2022-05-18] (Python Software Foundation) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{1019ADC7-17CB-4489-AFD5-6642C7400ACE}\localserver32 -> C:\Users\*****\AppData\Local\Webex\Webex\Applications\ptOIEx64.exe (Cisco WebEx LLC -> Cisco WebEx LLC) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\*****\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.22234.1\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{32E26FD9-F435-4A20-A561-35D4B987CFDC}\InprocServer32 -> C:\Users\*****\AppData\Local\WebEx\WebEx64\Meetings\atucfobj.dll (Cisco WebEx LLC -> Cisco WebEx LLC) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.35.422\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.34.11\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\*****\AppData\Local\Autodesk\webdeploy\production\f0f1459572ae987db1490b82e7990102aa92065e\NPreview10.dll (Autodesk, Inc. -> ) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.36.82\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\*****\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{E339815B-4FEA-48AB-A784-68A40A5A213A} -> [iCloud Drive] => C:\Users\*****\iCloudDrive [2022-02-01 13:00] CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.35.301\psuser_64.dll => Keine Datei ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => -> Keine Datei ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated) ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2015-01-27] (Foxit Software Incorporated -> Foxit Software Inc.) ContextMenuHandlers1: [PDFArchitect8_ManagerExt] -> {DDD1CFB8-3C9C-4269-B905-43CC309D569E} => C:\Program Files\PDF Architect 8\context-menu.dll [2022-02-21] (pdfforge GmbH -> pdfforge GmbH) ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => C:\Program Files\PDFCreator\PDFCreatorShell.DLL [2020-07-10] (Dev Code-Sign -> pdfforge GmbH) [Datei ist nicht signiert] ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Keine Datei ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igfxDTCM.dll [2016-11-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anaconda3 (64-bit)\Anaconda Prompt (anaconda3).lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> "/K" C:\Users\*****\anaconda3\Scripts\activate.bat C:\Users\*****\anaconda3 ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2019-08-13 14:38 - 2019-08-13 14:38 - 000147456 _____ () [Datei ist nicht signiert] C:\ProgramData\NFS\v3\nfccapi.dll 2017-09-28 17:41 - 2017-09-28 17:41 - 000266240 _____ (Microsoft Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbPc.DLL 2019-08-13 14:38 - 2019-08-13 14:38 - 000373760 _____ (NetFilterSDK.com) [Datei ist nicht signiert] C:\ProgramData\NFS\v3\protflt.dll 2020-08-13 05:56 - 2020-08-13 05:56 - 000116736 _____ (pdfforge GmbH) [Datei ist nicht signiert] C:\WINDOWS\System32\pdfcmon.dll 2020-06-30 12:37 - 2020-06-30 12:37 - 000460288 _____ (The curl library, hxxps://curl.haxx.se/) [Datei ist nicht signiert] C:\Program Files\PDF Architect 8\libcurl.dll 2019-08-13 14:38 - 2019-08-13 14:38 - 002648576 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Datei ist nicht signiert] C:\ProgramData\NFS\v3\libcrypto-1_1.dll 2019-08-13 14:38 - 2019-08-13 14:38 - 000640512 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Datei ist nicht signiert] C:\ProgramData\NFS\v3\libssl-1_1.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Users\Public\AppData:CSM [466] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [233] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-908791101-83370650-475787697-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-908791101-83370650-475787697-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE HKU\S-1-5-21-908791101-83370650-475787697-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE SearchScopes: HKU\S-1-5-21-908791101-83370650-475787697-1001 -> {C599838B-A6B5-4F0D-AC78-43D06D8C3263} URL = SearchScopes: HKU\S-1-5-21-908791101-83370650-475787697-1005 -> DefaultScope {C599838B-A6B5-4F0D-AC78-43D06D8C3263} URL = SearchScopes: HKU\S-1-5-21-908791101-83370650-475787697-1005 -> {C599838B-A6B5-4F0D-AC78-43D06D8C3263} URL = BHO: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\bdtbie.dll [2022-10-26] (Bitdefender SRL -> Bitdefender) BHO: Kein Name -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2022-10-26] (Bitdefender SRL -> Bitdefender) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\antispam32\bdtbie.dll [2022-10-26] (Bitdefender SRL -> Bitdefender) BHO-x32: Kein Name -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2022-10-26] (Bitdefender SRL -> Bitdefender) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-10-06] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-10-06] (Oracle America, Inc. -> Oracle Corporation) Toolbar: HKLM - Kein Name - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2022-10-26] (Bitdefender SRL -> Bitdefender) Toolbar: HKLM-x32 - Kein Name - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2022-10-26] (Bitdefender SRL -> Bitdefender) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-908791101-83370650-475787697-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-908791101-83370650-475787697-1001\...\sharepoint.com -> hxxps://dhbwstg-files.sharepoint.com ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-10 12:04 - 2015-07-10 12:02 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2017-06-23 20:29 - 2022-02-27 17:42 - 000000445 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics 92.168.137.1 LAPTOP-PO9HTAP8.mshome.net # 2023 1 2 10 18 11 52 696 ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Razer Chroma SDK\bin;C:\Program Files\Razer Chroma SDK\bin;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\GtkSharp\2.12\bin;C:\Program Files (x86)\Windows Live\Shared;C:\Users\*****\AppData\Local\Microsoft\WindowsApps;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-908791101-83370650-475787697-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\*****\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img9.jpg HKU\S-1-5-21-908791101-83370650-475787697-1005\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) ist aktiviert. Network Binding: ============= WLAN: Rawether NDIS 6.X SPR Protocol Driver -> PCA_PCASP60 (enabled) Ethernet: Rawether NDIS 6.X SPR Protocol Driver -> PCA_PCASP60 (enabled) OpenVPN Wintun: Rawether NDIS 6.X SPR Protocol Driver -> PCA_PCASP60 (enabled) LAN-Verbindung: Rawether NDIS 6.X SPR Protocol Driver -> PCA_PCASP60 (enabled) ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) HKLM\...\StartupApproved\Run: => "RtHDVBg_Dolby" HKLM\...\StartupApproved\Run: => "Logitech Download Assistant" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "ManOWarHelper" HKLM\...\StartupApproved\Run32: => "Razer Synapse" HKLM\...\StartupApproved\Run32: => "TeamsMachineInstaller" HKU\S-1-5-21-908791101-83370650-475787697-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-908791101-83370650-475787697-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-908791101-83370650-475787697-1001\...\StartupApproved\Run: => "Lync" HKU\S-1-5-21-908791101-83370650-475787697-1005\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-908791101-83370650-475787697-1005\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-908791101-83370650-475787697-1005\...\StartupApproved\Run: => "Spotify" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [UDP Query User{EB384433-1C26-492D-9E37-BBF1AC52DB0C}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [TCP Query User{64AF719C-8F10-4BF0-872A-0AD9D2805A66}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [{8184F970-68F7-4449-BC8B-B8A14F2FA826}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{933DE9F2-2494-4F11-930A-A1E425B4D691}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [UDP Query User{5C79E782-1D23-4DD3-9AF3-8A5B621F20E8}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [TCP Query User{ED948E2C-1016-4EA6-BED9-117A2C9E6D35}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [UDP Query User{FA367ADE-F915-4E2B-A6AA-839EDD1A3002}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{83249A0C-D2B0-4BD3-8000-8362E9861C12}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{FE58E8B3-2A39-4A9C-9DF1-42023B2C1E59}C:\program files\java\jdk1.8.0_121\bin\java.exe] => (Block) C:\program files\java\jdk1.8.0_121\bin\java.exe FirewallRules: [TCP Query User{753DB395-A9F8-41AD-9020-6826C03F9F93}C:\program files\java\jdk1.8.0_121\bin\java.exe] => (Block) C:\program files\java\jdk1.8.0_121\bin\java.exe FirewallRules: [{E444CB16-7E16-4BB9-8D46-D9D5F986B807}] => (Allow) D:\SteamLibrary\steamapps\common\SteamVRPerformanceTest\bin\win64\vr.exe () [Datei ist nicht signiert] FirewallRules: [{035384AA-AB19-45A0-958E-E79C392F7F78}] => (Allow) D:\SteamLibrary\steamapps\common\SteamVRPerformanceTest\bin\win64\vr.exe () [Datei ist nicht signiert] FirewallRules: [{645EEAC0-826C-4E08-A4CB-5103655CBE65}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{B8DFF324-AECF-4B00-AF64-284B21E9E7CF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{227DE642-B4A4-40DB-B65D-741AF59B20FE}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology) FirewallRules: [{153D9351-68F9-4CE6-AE66-5419EB374260}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology) FirewallRules: [{D1449E72-5288-4FF3-88B1-34F6AC527BFF}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer) FirewallRules: [{05EBF720-9C08-4032-9F83-DDB35AB3D67E}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer) FirewallRules: [{9374E55F-F31F-454E-8D92-4D68414A5ACB}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer) FirewallRules: [{BA76611A-53EA-4E98-9240-01D77C34D7E0}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer) FirewallRules: [{1F0645D0-C4E3-43C2-A84C-CC7A2AC7F648}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{B9710695-EAED-4AAF-98D9-E76DA99252E6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{ACC24AD3-A807-468D-A72E-89DEC3F0A8A5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{9851BFEC-6BC2-46DC-9CD5-6C520935B35E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{65D30CD7-1E32-43F3-8E12-CCF1DBC52EB2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{57A58E3C-6A03-4EED-A5CB-E9FD0B8A3158}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{48D83EED-F242-4D5E-B3D3-0E1978950289}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{28A40758-FB49-491B-B5AE-3A4D83A1CD8A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{DF17AA8B-0AB9-407A-8563-B7D7C5DBCB72}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{BEA30D0C-EEE9-48D3-A7E2-290BE7B7A772}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{F42F7C8D-DFC7-4AF7-B2C4-E531627B4934}C:\programdata\eclipse\eclipse.exe] => (Block) C:\programdata\eclipse\eclipse.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{AAAE9FA1-B0B9-4083-9CC7-EF2124DBA6B0}C:\programdata\eclipse\eclipse.exe] => (Block) C:\programdata\eclipse\eclipse.exe () [Datei ist nicht signiert] FirewallRules: [{8A270323-1ADB-4DFE-B2B4-85AE1A8EA895}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{99E2005B-0D5A-4221-BFB1-094E40E76CCE}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{90D7FC04-7D6F-4DE4-8D4F-ADF251B3B453}] => (Allow) LPort=2869 FirewallRules: [{ED6ED6FF-1F6C-47DB-9686-A06FA0185F77}] => (Allow) LPort=1900 FirewallRules: [{A19217F9-6060-4458-B810-833B0E23B4E6}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D9F07D3D-B4E9-4DF4-8C5F-64540D544E9C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{A1466D8D-0D4E-48F0-8CBE-A7984F32DB69}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [TCP Query User{D02DDE5F-E2DA-4668-B6B9-1656459FAC6F}C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{B467B38C-8A62-4E47-833D-ACF17807F314}C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [TCP Query User{B705E7C7-5561-49FA-8825-3CEF0761B3C6}C:\windows\syswow64\dplaysvr.exe] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [UDP Query User{45C4C533-0F38-4CA7-A148-A25DE3463317}C:\windows\syswow64\dplaysvr.exe] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [TCP Query User{6F224260-E68C-4D98-9EEA-E4BBF3EE5D82}C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{9A31E651-386F-411A-B13F-F9B63BCB48DC}C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [TCP Query User{D56620BA-8100-4076-A6B0-9599D6704950}C:\users\surfen erlaubt\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\surfen erlaubt\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{C2A38CB3-8424-4028-B8D0-0E8C7211AA9A}C:\users\surfen erlaubt\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\surfen erlaubt\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{041E1479-B433-4715-A5DD-22871D264FA4}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{1B2E9650-25D7-400A-9D69-EEE9157C5F1E}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{D0CA56BB-74D7-48D3-8056-77BF758B4E1C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{4517CFE5-167F-4252-8873-C3B5B68186F5}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{E378946B-893C-4620-9A49-07AB293104CC}E:\dcmview\teamview.exe] => (Allow) E:\dcmview\teamview.exe => Keine Datei FirewallRules: [UDP Query User{DA258AF0-4849-4865-8A18-35D27E6EAF2C}E:\dcmview\teamview.exe] => (Allow) E:\dcmview\teamview.exe => Keine Datei FirewallRules: [{2489711C-4802-49F9-A6C3-8B7CF251EF88}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D197A07F-D0BF-4A8D-90B8-C5F2BF0EB8A1}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{39338C00-1519-48BE-82E5-BD378D55B0ED}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\FaxApplications.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{0B28350F-BF4A-42D7-BD1B-F7903CD6A78F}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\DigitalWizards.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{7F212FDC-B086-4E02-80EF-64C3C7160723}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\SendAFax.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{46BAB28B-E264-4944-A2E9-912AF9A17998}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{9B9B3849-9CF1-4AB6-B5E4-900AA8B78AF8}] => (Allow) LPort=5357 FirewallRules: [{B3E22232-1E75-456C-86EF-2C8AC5E33760}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{A3D9D162-7758-4E23-8FBE-ADD943C95C4D}] => (Allow) C:\Users\*****\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [TCP Query User{B01FD606-6F00-4695-83F3-10C5EC1BE11C}C:\users\*****\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\*****\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{A58D7FA7-415A-4383-86CD-03BAF9555D2B}C:\users\*****\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\*****\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{CFFA9E58-FC25-4480-B961-8B9E63953CAD}C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe] => (Allow) C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{E816E4DC-BD57-46DC-9D98-28B3C18315BC}C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe] => (Allow) C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe () [Datei ist nicht signiert] FirewallRules: [{DA895EDE-7F30-49BB-A15B-9DD1983F5742}] => (Block) C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe () [Datei ist nicht signiert] FirewallRules: [{CFFE0F26-A5ED-4D72-9025-5FFB67E32D2D}] => (Block) C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe () [Datei ist nicht signiert] FirewallRules: [TCP Query User{F0366173-08E1-4563-B7BF-D10ABBAE3E03}C:\users\*****\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\*****\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{E4460271-2155-411A-AE79-925D07D5FE9D}C:\users\*****\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\*****\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{585D0152-E74B-429C-A539-A9433C9958CA}C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [UDP Query User{7092CC1D-5035-4BCC-BE4A-15DEADD606E0}C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [TCP Query User{34AE92AB-9397-4BFB-9298-5E82C260870F}C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [UDP Query User{BE6D004A-1EF6-4E17-BDFE-E362D4B5B510}C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [{5A77AADF-E6C3-4C7B-8902-ED4A1506FF1B}] => (Allow) C:\Users\*****\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [TCP Query User{E1F24A83-BB2F-4D66-A5A0-13D21AA08866}C:\users\surfen erlaubt\desktop\tor browser\browser\torbrowser\tor\pluggabletransports\snowflake-client.exe] => (Block) C:\users\surfen erlaubt\desktop\tor browser\browser\torbrowser\tor\pluggabletransports\snowflake-client.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{46E9105B-A784-4018-86A5-6D90FA59104E}C:\users\surfen erlaubt\desktop\tor browser\browser\torbrowser\tor\pluggabletransports\snowflake-client.exe] => (Block) C:\users\surfen erlaubt\desktop\tor browser\browser\torbrowser\tor\pluggabletransports\snowflake-client.exe () [Datei ist nicht signiert] FirewallRules: [{C0AC6436-6C57-4164-ADC0-8AACBB9459DF}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3618BE3C-5756-4F4A-AD30-B9F16C339F22}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{4F5C903C-EB15-48EE-ACE8-9B6859D99668}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{69437A4F-6E88-48A0-A3F3-011285327062}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe => Keine Datei FirewallRules: [{79F631EF-A50D-4D00-8CA4-4B3925622E19}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe => Keine Datei FirewallRules: [{F141CE78-481F-4D2C-86BC-9E32B8468645}] => (Allow) E:\RouterSetup\QISWizard.exe => Keine Datei FirewallRules: [{0751F6B3-4726-4542-AEE5-DF124E1D9D32}] => (Allow) E:\RouterSetup\QISWizard.exe => Keine Datei FirewallRules: [{F5898F8A-31D4-494E-A572-38B6D77AF25B}] => (Allow) E:\RouterSetup\QISWizard.exe => Keine Datei FirewallRules: [{C14BDDC2-6177-435D-AD9E-ABD89CF99AB9}] => (Allow) E:\RouterSetup\QISWizard.exe => Keine Datei FirewallRules: [{11EF1D1B-9CD7-4A0E-9F10-9C37EEC81403}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{8107D56C-8A4D-48D9-8BC0-E454D271BD35}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{7600EAB9-BAFE-4FF8-B184-A0F58DC09D39}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C2A09077-4D59-4A21-B5B9-B7A4E19AB65A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{6774290E-591E-4D82-A4D0-F317D38A0D60}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C264228C-FC37-4671-8F7B-97A6C343775D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C2398DBF-518F-4BA3-9362-A66BA8DBD0AB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{8F34D5EB-9FE7-4B13-BCF0-6A2E345EEA45}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{AFB7774C-BD04-4ADA-9C3A-B26A9D5DC038}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\107.0.1418.42\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{CB1CEA04-CF74-487F-9D77-DEE7D44A93F0}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Wiederherstellungspunkte ========================= 09-11-2022 19:45:37 Windows Modules Installer 09-11-2022 19:46:48 Windows Modules Installer 09-11-2022 19:47:38 Windows Modules Installer 15-11-2022 09:51:25 Windows Modules Installer ==================== Fehlerhafte Geräte im Gerätemanager ============ ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (11/15/2022 11:42:12 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NfsCcSvc.exe, Version: 22.0.0.1809, Zeitstempel: 0x6316e5a2 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0366ff80 ID des fehlerhaften Prozesses: 0x23b4 Startzeit der fehlerhaften Anwendung: 0x01d8f8deea21afd7 Pfad der fehlerhaften Anwendung: C:\ProgramData\NFS\v3\NfsCcSvc.exe Pfad des fehlerhaften Moduls: unknown Berichtskennung: 72cc2c80-1cc9-446f-9f51-e2a20d77150c Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/15/2022 11:41:36 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Error: (11/15/2022 11:41:36 AM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (11/15/2022 11:41:36 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Error: (11/15/2022 11:41:36 AM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (11/15/2022 09:59:49 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: HPPrintScanDoctorService.exe, Version: 6.0.0.0, Zeitstempel: 0x635250ab Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.19041.2130, Zeitstempel: 0xb5ced1c6 Ausnahmecode: 0xc0000374 Fehleroffset: 0x00000000000ff6a9 ID des fehlerhaften Prozesses: 0x1544 Startzeit der fehlerhaften Anwendung: 0x01d8f8d08c6c31c8 Pfad der fehlerhaften Anwendung: C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 60489571-4303-4712-a4a0-a8ee5d1edfe1 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/15/2022 09:59:42 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NfsCcSvc.exe, Version: 22.0.0.1809, Zeitstempel: 0x6316e5a2 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0f81ff80 ID des fehlerhaften Prozesses: 0x2c50 Startzeit der fehlerhaften Anwendung: 0x01d8f8d096cdec08 Pfad der fehlerhaften Anwendung: C:\ProgramData\NFS\v3\NfsCcSvc.exe Pfad des fehlerhaften Moduls: unknown Berichtskennung: 18489fe6-44a3-4988-9830-4610c7b4d014 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/14/2022 08:24:52 AM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Fehler beim Aktualisieren des -Status auf SECURITY_PRODUCT_STATE_OFF. Systemfehler: ============= Error: (11/15/2022 12:01:35 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 12:01:35 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 12:01:35 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 12:01:34 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 11:58:29 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: LAPTOP-PO9HTAP8) Description: Fehler bei der Verarbeitung der Gruppenrichtlinie. Es wurde versucht, registrierungsbasierte Richtlinieneinstellungen für das Gruppenrichtlinienobjekt "LocalGPO-S-1-5-21-908791101-83370650-475787697-1001" zu lesen. Die Gruppenrichtlinieneinstellungen dürfen nicht erzwungen werden, bis dieses Ereignis behoben ist. Weitere Informationen über den Dateinamen und -pfad, der den Fehler verursacht hat, können den Ereignisdetails entnommen werden. Error: (11/15/2022 11:52:47 AM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 11:49:41 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: LAPTOP-PO9HTAP8) Description: Fehler bei der Verarbeitung der Gruppenrichtlinie. Es wurde versucht, registrierungsbasierte Richtlinieneinstellungen für das Gruppenrichtlinienobjekt "LocalGPO-S-1-5-21-908791101-83370650-475787697-1001" zu lesen. Die Gruppenrichtlinieneinstellungen dürfen nicht erzwungen werden, bis dieses Ereignis behoben ist. Weitere Informationen über den Dateinamen und -pfad, der den Fehler verursacht hat, können den Ereignisdetails entnommen werden. Error: (11/15/2022 11:49:22 AM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Windows Defender: ================ Date: 2022-11-13 10:49:25 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {9079809C-44C5-4542-8139-2671E8CE552D} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-11-12 10:16:56 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {3F5AA96D-07C5-4DCE-8F63-95670165501D} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-11-11 08:01:42 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {9C8E09E8-EDB6-4935-88D2-72ABA445EC0B} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-11-10 18:22:17 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {6A8632FD-CFC1-4459-8BF7-23CCF35C7B78} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-10-29 10:20:52 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {10B3BF97-2B54-4188-B76C-D6B40D305EEA} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Event[0]: Date: 2022-10-13 00:04:15 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.377.118.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19700.3 Fehlercode: 0x80072efd Fehlerbeschreibung: Die Serververbindung konnte nicht hergestellt werden. CodeIntegrity: =============== Date: 2022-11-13 21:58:49 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== BIOS: Insyde Corp. V1.05 12/16/2015 Hauptplatine: Acer Aspire VN7-792G Prozessor: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz Prozentuale Nutzung des RAM: 74% Installierter physikalischer RAM: 8104.78 MB Verfügbarer physikalischer RAM: 2074.48 MB Summe virtueller Speicher: 20392.78 MB Verfügbarer virtueller Speicher: 14403.5 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:237.43 GB) (Free:53.04 GB) (Model: SAMSUNG MZNLN256HCHP-00000) NTFS Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:922.48 GB) (Model: WDC WD10JPVX-22JC3T0) NTFS \\?\Volume{8861349e-e1b7-4c75-8df6-94080e2fed67}\ () (Fixed) (Total:0.93 GB) (Free:0.41 GB) NTFS \\?\Volume{498d1e76-1cf9-4fb6-966b-2ff13739afb4}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: 3CDCE18B) Partition: GPT. ========================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 3CDCE199) Partition: GPT. ==================== Ende von Addition.txt ======================= |
15.11.2022, 12:47 | #7 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Verdacht auf Manipulation des Rechners Der Rechner ist aber übel zugemüllt Installierst du alles, was dir in die Griffel kommt? Zitat:
Wie kommt diese Software da drauf? Autodesk Fusion 360 für computergestützte Fertigung und diverse Tools, die nur Softwareentwickler benötigen? Ist das ein gewerblich genutztes System?
__________________ Logfiles bitte immer in CODE-Tags posten |
15.11.2022, 13:18 | #8 |
| Verdacht auf Manipulation des Rechners Ohje. Es ist ein rein privater Familienrechner, der seit Jahren auch von den Kids verwendet wird, seit einiger Zeit u.a. auch für's Studium (Informatikanteil). Geändert von Delia3 (15.11.2022 um 14:15 Uhr) |
15.11.2022, 13:26 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Verdacht auf Manipulation des Rechners Ja aber irgendwo muss den ganzen Krempel ja installiert haben. Wenn da ungefragt bzw ohne dass das abgestimmt wird immer wieder der Rechner zugemüllt wird, werdet ihr immer wieder Probleme bekommen. Und wenn da jemand studiert und viel mit Software herumexperimentieren muss, dann macht das keinen Sinn dass dafür ein Rechner genutzt wird, den alle anderen auch noch verwenden wollen. Störende, veraltete oder unnötige Programme deinstallieren Bitte über Programme und Features (appwiz.cpl) deinstallieren:
__________________ Logfiles bitte immer in CODE-Tags posten |
15.11.2022, 13:54 | #10 |
| Verdacht auf Manipulation des Rechners Die Hinweise werden wir beherzigen. Danke dafür. Nun habe ich die genannten Dateien deinstalliert und den Rechner neue gestartet. Was soll ich als Nächstes tun? |
15.11.2022, 14:05 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Verdacht auf Manipulation des Rechners Zur Kontrolle neue FRST-Logs.
__________________ Logfiles bitte immer in CODE-Tags posten |
15.11.2022, 14:35 | #12 |
| Verdacht auf Manipulation des RechnersCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-11-2022 durchgeführt von *****(Administrator) auf LAPTOP-PO9HTAP8 (Acer Aspire VN7-792G) (15-11-2022 14:19:13) Gestartet von C:\Users\*****\Downloads Geladene Profile: ***** Plattform: Microsoft Windows 10 Home Version 22H2 19045.2251 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Edge Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe <2> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudCKKS.exe (C:\Users\*****\AppData\Local\WebEx\WebexHost.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\*****\AppData\Local\WebEx\WebEx64\Meetings\atmgr.exe (explorer.exe ->) () [Datei ist nicht signiert] C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudDrive.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe (explorer.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\*****\AppData\Local\WebEx\WebexHost.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (explorer.exe ->) (OpenVPN Inc. -> ) C:\Program Files\OpenVPN\bin\openvpn-gui.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\*****\AppData\Local\Microsoft\Teams\current\Teams.exe <9> (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <11> (Salfeld Computer GmbH -> Salfeld Computer GmbH) C:\ProgramData\NFS\v3\NfsCcSvc.exe (Salfeld Computer GmbH -> Salfeld Computer) C:\Windows\cc\CtlSysUI.exe (services.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (services.exe ->) (Dolby Laboratories, Inc. -> ) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel(R) Smart Sound Technology -> Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (services.exe ->) (OpenVPN Inc. -> The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe (services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (services.exe ->) (Salfeld Computer GmbH -> Salfeld Computer) C:\Windows\cc\CtlSysMgr.exe (services.exe ->) (Salfeld Computer GmbH -> Salfeld Computer) C:\Windows\cc\WinCtlSvc.exe (svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (svchost.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe (svchost.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\secd.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22092.211.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [DAX2_APP] => C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe [628736 2015-06-16] () [Datei ist nicht signiert] HKLM\...\Run: [CL-26-C662A72F-1E97-4341-BBC6-AFAB005707A5] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-26-C662A72F-1E97-4341-BBC6-AFAB005707A5\setuplauncher.exe" /run:Installer.exe /args:"/setup-folder:"CL-26-C662A72F-1E97-4341-BBC6-AFAB005 (Der Dateneintrag hat 7 mehr Zeichen). (Keine Datei) HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2017-07-21] (Razer USA Ltd. -> Razer Inc.) HKLM-x32\...\Run: [ManOWarHelper] => C:\Program Files (x86)\Razer\Razer_ManOWar_Driver\Drivers\SysAudio\ManOWarHelper.exe [1598920 2017-06-29] (Razer USA Ltd. -> Razer Inc) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [107879704 2020-10-14] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4268456 2022-01-16] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [Lync] => C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe [23980408 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\*****\AppData\Local\WebEx\WebexHost.exe [8014024 2022-11-03] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [OpenVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [829304 2021-06-17] (OpenVPN Inc. -> ) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\*****\AppData\Local\Microsoft\Teams\Update.exe [2585824 2022-10-21] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Run: [MicrosoftEdgeAutoLaunch_32B8F7AFAC00AF216A6F856F0EBA89F5] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3892128 2022-11-10] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Run: [Spotify] => C:\Users\Surfen erlaubt\AppData\Roaming\Spotify\Spotify.exe [23177616 2018-06-02] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Run: [Spotify Web Helper] => C:\Users\Surfen erlaubt\AppData\Roaming\Spotify\SpotifyWebHelper.exe [782736 2018-06-02] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Run: [OPENVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [829304 2021-06-17] (OpenVPN Inc. -> ) HKLM\...\Print\Monitors\HP 7012 Status Monitor: C:\Windows\system32\hpinksts7012LM.dll [328704 2014-03-03] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet Pro 8620): C:\Windows\system32\HPDiscoPM7012.dll [763912 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP) HKLM\Software\Microsoft\Active Setup\Installed Components: [{E5931AF4-2A8F-48A5-AFC8-460348F480E8}] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /f /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe" GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-504\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-503\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-500\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-1005\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-1004\User: Beschränkung <==== ACHTUNG GroupPolicyUsers\S-1-5-21-908791101-83370650-475787697-1001\User: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {03EF9C3A-7530-421F-B22E-B177B6D27772} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001UA => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {0979E790-AF73-4F07-A310-CB375E09A146} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService Task: {1320C340-628D-40B1-BE8A-8EAFB78B9769} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6637512 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {1A6B223B-B6A8-4ACF-867E-70B77957A846} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {1D5E76C3-25DC-4035-A658-A9C6B0C3B353} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {31F18EEA-2626-47DF-9E76-80E89E85788B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {3B7E3489-E159-498D-A407-1DD80DCACF3A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d4a51966ecab48 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {40786FA8-8C4E-4640-9458-8A1BE0EE3BD4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d746a2e5488cb => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {40E6B493-C7DD-4149-AD16-4910AD835471} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe [139448 2016-06-20] (Microsoft Corporation -> Microsoft Corporation) Task: {463F5AB4-55BA-4BB5-BE3E-4F5C76CC87AA} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [437816 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {487807B3-0AE9-4C04-9833-7C518FF97AFC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d3f8f16c0f61c5 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {5369D932-AA3A-46F3-ACDE-6335AA88AC5E} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [706616 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {64DC2D2A-25E7-4EBA-8045-058C3E28C83E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d58e6bb3a1dce0 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {65C4EE69-495C-47D5-9164-E203D65F2E1E} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752 2017-03-20] (Acer Incorporated -> Acer Incorporated) Task: {6938E80D-E634-4D1F-977A-AFEC9274089B} - System32\Tasks\CareCenter\RtHDVBg_Dolby_Reg_HKLMRun => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1471488 2016-11-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {6FC317E4-905D-4AE3-9927-73427DFCF287} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {73972125-18D5-4D70-9959-92578E1806AB} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [706616 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {794331E8-7275-48A8-BC4B-009B32700459} - System32\Tasks\pdfforge GmbH\Update => C:\Program Files\PDF Architect 8\architect.exe --update --mode check auto notify (Keine Datei) Task: {7A926F0B-E64E-46BF-BAD1-74643E61914F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6637512 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {8F9C9FBE-DD43-4AA5-98F4-10A296F147FE} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [630328 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {92573E17-A012-4882-94A5-3543E4CC52A5} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [630328 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {926E3383-028F-4611-B697-076FA48E8912} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114600 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {9BF6A56C-5FEE-48C1-9BB8-1561A2AAFE8E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9CC6CAB0-60B1-4E43-9EED-89278074D74B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154376 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {A48B970B-C74E-445B-ABE5-45D37FEDE3A4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {ABCF6A9B-807C-424C-BB80-179C862E8BE3} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {B9CF36F0-2031-43B0-AF52-658A8D98D50F} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {BD1C364E-343F-4CDC-B377-234B1EB2379B} - System32\Tasks\googleupdatetaskusers-1-5-21-908791101-83370650-475787697-1001ua1d746a2e5720f8 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {BEA15AAD-E524-4389-9841-9AA686D3970A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001Core1d7cf0e7c51503e => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /c (Keine Datei) Task: {BF49C12F-EC36-4E0A-A312-A8A33361F09D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001UA1d4a51966ef402d => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {C01FF759-986C-4264-9744-E4AFA7D3EC47} - System32\Tasks\googleupdatetaskusers-1-5-21-908791101-83370650-475787697-1001ua1d7cf0e7c5876da => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {C3FA2C9D-A714-4FD6-B184-45952EA73433} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-908791101-83370650-475787697-1001UA1d3f8f16c11fb86 => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {CE32C02C-C189-4600-8A54-2E22843728F8} - System32\Tasks\CareCenter\RTHDVCPL_Reg_HKLMRun => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16704512 2016-11-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {D3AE8648-ED69-4482-BFA9-65B8D3EFEF4A} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {D4D2A042-1D57-45BE-ABC3-4D1C960EDA9E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114600 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {E3BE36E5-07AA-4CC7-8293-E59FC583F814} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154376 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {E6C7B541-3F22-44E4-BC52-BEF111B59945} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [3834520 2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Task: {EDE932DC-42DD-45D3-8E2A-BC9F9E15B402} - System32\Tasks\HPCustParticipation HP Officejet Pro 8620 => C:\Program Files\HP\HP Officejet Pro 8620\Bin\HPCustPartic.exe [5745672 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP) Task: {F878A1D1-F7E9-493D-BA2D-BE422AE738DD} - System32\Tasks\googleupdatetaskusers-1-5-21-908791101-83370650-475787697-1001ua1d58e6bb3a4bb9e => C:\Users\*****\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei) Task: {FB859B1A-38F9-4F0A-93DC-41F2BD7D5FF0} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Keine Datei) Task: {FBC1F3E4-1121-47B0-A701-CA8C8EFEBAE1} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [782904 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{119c9056-eb0e-4b01-824e-6ee262d45114}: [DhcpNameServer] 141.31.111.9 Tcpip\..\Interfaces\{5b96962c-5dab-461d-9e2e-b75229a77d6b}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{db9ad27d-9c9f-4575-ba61-7a1db51e50f1}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden] Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden] Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden] Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden] Edge DefaultProfile: Default Edge Profile: C:\Users\*****\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-15] FireFox: ======== FF DefaultProfile: a0g0lex5.default FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\a0g0lex5.default [2022-11-15] FF Homepage: Mozilla\Firefox\Profiles\a0g0lex5.default -> www.google.de FF NewTab: Mozilla\Firefox\Profiles\a0g0lex5.default -> hxxps://defaultsearch.co/homepage?hp=1&pId=PF170501&iDate=2020-08-13 04:57:01&bName=&bitmask=0600 FF Extension: (TrafficLight) - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\a0g0lex5.default\Extensions\trafficlight@bitdefender.com.xpi [2022-04-07] FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\a0g0lex5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-10-31] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi => nicht gefunden FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) [Datei ist nicht signiert] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Keine Datei] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Keine Datei] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) [Datei ist nicht signiert] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Keine Datei] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default [2022-11-15] CHR Notifications: Default -> hxxps://teams.microsoft.com; hxxps://www.tomtom.com CHR Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-08-30] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx <nicht gefunden> ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 CC-Updater; C:\WINDOWS\cc\WinCtlSvc.exe [7892760 2022-09-25] (Salfeld Computer GmbH -> Salfeld Computer) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12515768 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) R2 DAX2API; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [154816 2016-07-18] (Dolby Laboratories, Inc. -> ) S3 dcsvc; C:\WINDOWS\system32\dcsvc.dll [785408 2022-11-09] (Microsoft Windows -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2018-07-27] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1284360 2018-05-16] (Bayerisches Landesamt fuer Steuern -> ) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [228848 2022-11-04] (HP Inc. -> HP Inc.) S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert] R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21304 2017-09-28] (Microsoft Corporation -> Microsoft Corporation) R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert] S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [11569424 2018-10-28] (Mail.Ru LLC -> LLC Mail.Ru) R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1165368 2016-10-25] (NVIDIA Corporation -> NVIDIA Corporation) S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2020-10-14] (Microsoft Windows -> Microsoft Corporation) R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [73592 2021-06-17] (OpenVPN Inc. -> The OpenVPN Project) R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [401024 2017-08-07] (Razer USA Ltd. -> Razer Inc.) S3 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [179840 2017-08-07] (Razer USA Ltd. -> Razer Inc.) S3 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2017-07-19] (Razer USA Ltd. -> ) R2 SCC-Dienst; C:\WINDOWS\cc\ctlsysmgr.exe [9959192 2022-11-14] (Salfeld Computer GmbH -> Salfeld Computer) S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182392 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [187904 2017-09-28] (Microsoft Corporation) [Datei ist nicht signiert] S2 upccsvc; C:\WINDOWS\upcc\upccsvc.exe [1683616 2019-04-14] (Salfeld Computer GmbH -> Salfeld GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe [3191272 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe [133544 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [X] S3 ePowerSvc; "C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe" [X] R2 NvContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" S3 NvContainerNetworkService; "C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerNetworkService -f "C:\ProgramData\NVIDIA\NvContainerNetworkService.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\NetworkService" S3 QALSvc; "C:\Program Files\Acer\Acer Quick Access\QALSvc.exe" [X] S3 QASvc; "C:\Program Files\Acer\Acer Quick Access\QASvc.exe" [X] S3 UEIPSvc; "C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2017-06-29] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.) R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [31000 2018-05-15] (Acer Incorporated -> Acer Incorporated) R3 MpKslfdd807c1; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{08CBB2F6-3497-4A94-80F2-4682A2461F73}\MpKslDrv.sys [214280 2022-11-15] (Microsoft Windows -> Microsoft Corporation) S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv.sys [10782936 2018-10-28] (Mail.Ru LLC -> LLC Mail.Ru) R1 netfltcc; C:\WINDOWS\System32\drivers\netfltcc.sys [95752 2019-08-21] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 PcaSp60; C:\Windows\SysWOW64\DRIVERS\PcaSp60.sys [38912 2010-09-07] (PRINTING COMMUNICATIONS ASSOCIATES, INC -> Printing Communications Assoc., Inc. (PCAUSA)) S3 Qcamain; C:\WINDOWS\System32\drivers\Qcamainx64.sys [2276352 2015-07-10] (Qualcomm Atheros, Inc.) [Datei ist nicht signiert] R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [25368 2018-05-15] (Acer Incorporated -> Acer Incorporated) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [45752 2017-07-19] (Razer USA Ltd. -> Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [139704 2017-07-18] (Razer USA Ltd. -> Razer, Inc.) R3 SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [315392 2022-08-11] (Microsoft Windows -> Microsoft Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43640 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2021-12-25] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2022-11-11] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [469288 2022-11-11] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-11-11] (Microsoft Windows -> Microsoft Corporation) R3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [38176 2021-12-25] (WireGuard LLC -> WireGuard LLC) S1 FileAbap; system32\drivers\FileAbap64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-11-15 14:18 - 2022-11-15 14:18 - 002375168 _____ (Farbar) C:\Users\*****\Downloads\FRST64(1).exe 2022-11-15 13:36 - 2022-11-15 13:36 - 000435260 _____ C:\ProgramData\cl.uninstall.1668515713.bdinstall.v2.bin 2022-11-15 13:36 - 2022-11-15 13:36 - 000083356 _____ C:\ProgramData\agent.uninstall.1668515776.bdinstall.v2.bin 2022-11-15 11:57 - 2022-11-15 11:57 - 002375168 _____ (Farbar) C:\Users\*****\Downloads\FRST64 (1).exe 2022-11-15 11:27 - 2022-11-15 11:27 - 002375168 _____ (Farbar) C:\Users\*****\Downloads\FRST64.exe 2022-11-15 11:25 - 2022-11-15 11:26 - 000000000 ____D C:\Desktop-Dateien 2022-11-15 11:17 - 2022-11-15 11:17 - 000000000 ___DC C:\Users\*****\Documents\Dateien 2022-11-15 11:14 - 2022-11-15 11:14 - 000000000 ____D C:\Users\*****\Downloads\Dateien_neu 2022-11-15 10:54 - 2022-11-15 12:19 - 000112223 _____ C:\Users\*****\Downloads\Addition.txt 2022-11-15 10:51 - 2022-11-15 14:20 - 000033275 _____ C:\Users\*****\Downloads\FRST.txt 2022-11-15 10:51 - 2022-11-15 14:19 - 000000000 ____D C:\FRST 2022-11-15 09:48 - 2022-11-15 09:48 - 000000000 ___HD C:\$WinREAgent 2022-11-13 21:59 - 2022-11-13 21:59 - 000633084 _____ C:\ProgramData\cl.1668373021.bdinstall.v2.bin 2022-11-13 21:59 - 2022-11-13 21:59 - 000113376 _____ C:\ProgramData\cl.kit.1668373011.bdinstall.v2.bin 2022-11-13 21:59 - 2022-11-13 21:59 - 000000000 ____D C:\ProgramData\Gemma 2022-11-13 21:59 - 2022-11-13 21:59 - 000000000 ____D C:\ProgramData\Atc 2022-11-13 21:59 - 2022-11-13 21:59 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4 2022-11-13 21:58 - 2022-11-13 21:58 - 000000000 ____D C:\WINDOWS\system32\elambkup 2022-11-13 21:58 - 2022-11-13 21:58 - 000000000 ____D C:\ProgramData\BDLogging 2022-11-13 21:53 - 2022-11-13 21:53 - 000156520 _____ C:\ProgramData\agent.1668372773.bdinstall.v2.bin 2022-11-13 21:52 - 2022-11-13 21:52 - 000000000 ____D C:\Users\*****\AppData\Local\Bitdefender 2022-11-13 21:52 - 2022-11-13 21:52 - 000000000 ____D C:\ProgramData\Bitdefender Agent 2022-11-10 09:21 - 2022-09-30 05:24 - 000174112 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudmdm.sys 2022-11-10 09:21 - 2022-09-30 05:23 - 000167440 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus2.sys 2022-11-09 19:56 - 2022-11-09 19:56 - 000688128 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-11-09 19:56 - 2022-11-09 19:56 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-11-09 19:56 - 2022-11-09 19:56 - 000073216 _____ C:\WINDOWS\system32\nettraceex.dll 2022-11-09 19:56 - 2022-11-09 19:56 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-11-06 10:32 - 2022-11-15 13:35 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-11-02 08:13 - 2022-11-02 08:13 - 000000000 ____D C:\Users\*****\AppData\Roaming\Python 2022-11-01 21:01 - 2022-11-01 21:01 - 000000000 ____D C:\Users\*****\AppData\Roaming\Fusion360 2022-11-01 21:01 - 2022-11-01 21:01 - 000000000 ____D C:\Users\*****\AppData\Roaming\CadSoft 2022-11-01 20:38 - 2022-11-01 20:38 - 000000000 ___DC C:\Users\*****\Documents\Fusion 360 2022-11-01 20:37 - 2022-11-01 21:01 - 000000000 ____D C:\Users\*****\AppData\Roaming\Autodesk 2022-11-01 20:37 - 2022-11-01 20:37 - 000000000 ___DC C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk 2022-11-01 20:37 - 2022-11-01 20:37 - 000000000 ____D C:\ProgramData\Autodesk 2022-11-01 20:32 - 2022-11-09 08:05 - 000000000 ____D C:\Users\*****\AppData\Local\Autodesk 2022-10-28 14:32 - 2022-10-28 14:32 - 000002216 ____C C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox Privater Modus.lnk 2022-10-20 19:08 - 2022-10-20 19:09 - 000000000 ____D C:\Users\*****\Downloads\alt2 ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-11-15 14:18 - 2018-08-07 07:19 - 000000000 ____D C:\WINDOWS\dl 2022-11-15 14:09 - 2016-11-18 13:10 - 000000000 ___DC C:\Users\*****\AppData\LocalLow\Mozilla 2022-11-15 13:59 - 2020-06-17 20:57 - 001834296 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-11-15 13:59 - 2019-12-07 15:50 - 000786850 _____ C:\WINDOWS\system32\perfh007.dat 2022-11-15 13:59 - 2019-12-07 15:50 - 000167928 _____ C:\WINDOWS\system32\perfc007.dat 2022-11-15 13:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-11-15 13:53 - 2022-02-01 13:00 - 000000000 ___RD C:\Users\*****\iCloudDrive 2022-11-15 13:52 - 2022-08-11 11:02 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Salfeld Kindersicherung.lnk 2022-11-15 13:52 - 2020-06-17 20:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-11-15 13:52 - 2020-06-17 20:45 - 000008192 ___SH C:\DumpStack.log.tmp 2022-11-15 13:52 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-11-15 13:52 - 2019-12-07 10:03 - 001310720 _____ C:\WINDOWS\system32\config\BBI 2022-11-15 13:52 - 2016-09-22 19:53 - 000000000 ____D C:\ProgramData\NVIDIA 2022-11-15 13:45 - 2021-02-08 13:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-11-15 13:44 - 2022-01-25 19:09 - 000000000 ____D C:\Program Files (x86)\Google 2022-11-15 13:44 - 2016-08-06 09:07 - 000000000 ___DC C:\Users\*****\AppData\Roaming\IrfanView 2022-11-15 13:37 - 2015-08-31 11:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2022-11-15 13:35 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2022-11-15 13:34 - 2021-11-01 14:42 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-11-15 13:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-11-15 13:34 - 2016-11-04 15:05 - 000000000 ____D C:\Program Files (x86)\Adobe 2022-11-15 13:33 - 2016-07-09 16:31 - 000000000 ___DC C:\Users\*****\AppData\Local\acer 2022-11-15 13:33 - 2015-08-31 11:50 - 000000000 ____D C:\Program Files (x86)\Acer 2022-11-15 13:14 - 2020-06-17 20:45 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-11-15 11:45 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-11-15 11:44 - 2015-07-10 12:04 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicyUsers 2022-11-15 11:42 - 2018-08-07 07:19 - 000000000 ____D C:\WINDOWS\cc 2022-11-15 11:29 - 2021-11-22 08:01 - 000000000 ____D C:\Users\*****\AppData\Local\WebEx 2022-11-15 09:59 - 2020-08-31 19:03 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-11-15 09:58 - 2022-10-04 20:27 - 000005570 _____ C:\Users\*****\AppData\Roaming\LTspiceXVII.ini 2022-11-15 09:51 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-11-14 14:14 - 2017-07-16 06:45 - 000000000 ___DC C:\Users\*****\AppData\Roaming\.minecraft 2022-11-13 21:51 - 2017-12-01 16:47 - 000000000 ___DC C:\Users\*****\AppData\Local\Packages 2022-11-11 07:27 - 2018-06-17 13:48 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-11-10 17:18 - 2020-08-31 19:03 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-11-10 17:18 - 2020-08-31 19:03 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-11-10 00:20 - 2020-06-17 20:45 - 000439200 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-11-10 00:20 - 2016-11-11 11:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-11-10 00:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-11-09 19:56 - 2020-06-17 20:46 - 003014656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-11-09 19:45 - 2016-07-06 11:42 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-11-09 19:39 - 2016-07-06 11:42 - 146960040 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-11-09 16:17 - 2016-07-07 15:26 - 000000000 ____D C:\Program Files (x86)\Minecraft 2022-11-07 13:32 - 2021-11-01 10:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-11-07 13:32 - 2016-11-11 11:49 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-11-04 14:48 - 2021-05-12 22:58 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2022-11-04 14:48 - 2021-04-08 20:13 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2022-11-03 16:05 - 2022-01-04 20:20 - 000000000 ___DC C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2022-11-01 20:38 - 2019-07-21 11:43 - 000000000 ____D C:\Users\*****\AppData\Local\cache 2022-10-28 14:32 - 2022-02-14 08:10 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-10-28 11:30 - 2018-07-13 19:39 - 000000000 ___DC C:\Users\*****\AppData\Local\PlaceholderTileLogoFolder 2022-10-26 09:36 - 2022-10-04 20:24 - 000000000 ___DC C:\Users\*****\Documents\LTspiceXVII 2022-10-24 12:44 - 2022-01-04 20:20 - 000000000 ____D C:\Users\*****\AppData\Roaming\Code 2022-10-21 19:04 - 2021-04-10 20:04 - 000002364 ____C C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2022-10-18 07:34 - 2022-01-04 19:48 - 000000000 ____D C:\Users\*****\anaconda3 ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2022-10-04 20:27 - 2022-11-15 09:58 - 000005570 _____ () C:\Users\*****\AppData\Roaming\LTspiceXVII.ini 2021-09-12 18:37 - 2021-09-12 18:37 - 000000875 _____ () C:\Users\*****\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
15.11.2022, 14:36 | #13 |
| Verdacht auf Manipulation des RechnersCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-11-2022 durchgeführt von ***** (15-11-2022 14:22:18) Gestartet von C:\Users\*****\Downloads Microsoft Windows 10 Home Version 22H2 19045.2251 (X64) (2020-06-17 19:59:26) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-908791101-83370650-475787697-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-908791101-83370650-475787697-503 - Limited - Disabled) Gast (S-1-5-21-908791101-83370650-475787697-501 - Limited - Disabled) ***** (S-1-5-21-908791101-83370650-475787697-1001 - Administrator - Enabled) => C:\Users\***** *****_7wbdj9i (S-1-5-21-908791101-83370650-475787697-1010 - Limited - Disabled) *****_nu5teho (S-1-5-21-908791101-83370650-475787697-1004 - Limited - Disabled) Surfen erlaubt (S-1-5-21-908791101-83370650-475787697-1005 - Limited - Enabled) => C:\Users\Surfen erlaubt WDAGUtilityAccount (S-1-5-21-908791101-83370650-475787697-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: 360 Total Security (Enabled - Up to date) {91AD8F88-E316-BC3A-E0A3-9F4C5B36A8D0} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Anaconda3 2021.11 (Python 3.9.7 64-bit) (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Anaconda3 2021.11 (Python 3.9.7 64-bit)) (Version: 2021.11 - Anaconda, Inc.) Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{0E4C791E-B78E-477D-BD5A-CDD0985BA6EC}) (Version: 7.0.20622.1 - Microsoft Corporation) Application Verifier x64 External Package (HKLM\...\{D9908CED-5ABB-FEE9-FC84-743F4D38637C}) (Version: 10.1.16299.15 - Microsoft) Hidden Atom (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\atom) (Version: 1.28.2 - GitHub Inc.) Autodesk Fusion 360 (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.14793 - Autodesk, Inc.) Azure AD Authentication Connected Service (HKLM-x32\...\{8A1AD070-269F-4A15-AAB5-76AB896EF195}) (Version: 14.0.25420 - Microsoft Corporation) Hidden AzureTools.Notifications (HKLM-x32\...\{1E5CA362-39B6-4BD0-B9C0-69CF15F0FEA2}) (Version: 2.7.30611.1601 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (HKLM-x32\...\{37E53780-3944-4A6A-842F-727128E8616E}) (Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blender (HKLM\...\{E29A1273-2E7A-40E7-AA63-428A11D59429}) (Version: 2.79.2 - Blender Foundation) BlocklingsAutoInstaller (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\f5ffdb473cb943e8) (Version: 1.0.0.4 - BlocklingsAutoInstaller) Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.) Cisco Webex Meetings (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\ActiveTouchMeetingClient) (Version: 42.2.4 - Cisco Webex LLC) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Discord (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Discord) (Version: 1.0.9002 - Discord Inc.) Discord (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Discord) (Version: 0.0.301 - Discord Inc.) Dolby Audio X2 Windows API SDK (HKLM\...\{2A027A37-B09B-44FB-B1C9-2DD6BA0014E8}) (Version: 0.7.2.61 - Dolby Laboratories, Inc.) Dolby Audio X2 Windows APP (HKLM\...\{7DA57EF8-9D20-4126-AF15-D0CC97D0C017}) (Version: 0.4.0.22 - Dolby Laboratories, Inc.) Dotfuscator and Analytics Community Edition 5.22.0 (HKLM-x32\...\{60018889-9E0F-43E8-9B89-29E8C828B40A}) (Version: 5.22.0.3788 - PreEmptive Solutions) Hidden ElsterFormular (HKLM-x32\...\{41FB4389-2F19-4947-9662-30A6AC0C5F7D}) (Version: 19.4.0 - Thüringer Landesfinanzdirektion) Epic Games Launcher (HKLM-x32\...\{64F36122-A72E-4185-A986-0A73C3FA6F73}) (Version: 1.1.135.0 - Epic Games, Inc.) Fotogalerie (HKLM-x32\...\{41BF4A3B-D60A-4E92-883F-C88C8C157261}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden GameMaker 8.1 (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\GameMaker81) (Version: - ) GHL Control Center Version 1.1.3.7 (HKLM-x32\...\{935EB8AB-EA6A-44CF-91E4-4A2203364BEE}}_is1) (Version: 1.1.3.7 - GHL) GIMP 2.8.20 (HKLM\...\GIMP-2_is1) (Version: 2.8.20 - The GIMP Team) Gtk# for .Net 2.12.26 (HKLM-x32\...\{BC25B808-A11C-4C9F-9C0A-6682E47AAB83}) (Version: 2.12.26 - Xamarin, Inc.) HP Officejet Pro 8620 - Grundlegende Software für das Gerät (HKLM\...\{F6CE08BC-6929-412E-BB42-A9A7CD9721D7}) (Version: 32.3.198.49673 - Hewlett-Packard Co.) HP Officejet Pro 8620 Hilfe (HKLM-x32\...\{F8E43C63-DFF2-4134-A46C-2A6F00517A35}) (Version: 32.0.0 - Hewlett Packard) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) iCloud Outlook (HKLM\...\{F054257C-600A-4918-B730-F6829E491781}) (Version: 13.0.0.201 - Apple Inc.) Intel(R) Chipset Device Software (HKLM\...\{12CB6BC1-4E71-4890-AA0E-26CED6AD7EDD}) (Version: 10.1.1.13 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1169 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{7EEC6C54-5441-472A-8792-A5185CC17DF1}) (Version: 11.0.0.1169 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{846DE3C3-F079-4E2D-AE25-74D2B62B1D9F}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) ME UninstallLegacy (HKLM\...\{D622E3AC-0583-4CEC-9455-8B9139C7B4A2}) (Version: 1.0.1.0 - Intel Corporation) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4550 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{30E935B2-0DAC-455E-AC76-3C8504DC3D18}) (Version: 30.100.1519.07 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{7D84E343-A23D-451C-B123-0195B2D903A6}) (Version: 1.42.17.0 - Intel Corporation) Hidden Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Kits Configuration Installer (HKLM-x32\...\{86E59C8F-61D5-1782-A3CE-60AE7E4D7791}) (Version: 10.1.16299.15 - Microsoft) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LTspice XVII (HKLM\...\LTspice XVII) (Version: - Linear Technology Corporation) Microsoft .NET Core 5.0 SDK (HKLM-x32\...\{E092A9F3-15AE-46B4-9A25-6C25F7F44795}) (Version: 1.0.23902 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (ENU) (HKLM-x32\...\{A223B446-EC3D-3031-828D-5188800AB782}) (Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (HKLM-x32\...\{976C3D92-0DEC-37A6-A870-FF4FC18CD029}) (Version: 4.5.21005 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{034547E9-D8FA-49E7-8B9C-4C9861FB9146}) (Version: 4.6.00127 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Developer Pack (DEU) (HKLM-x32\...\{ccac9f21-ebd8-47e8-b566-de87b1f69e42}) (Version: 4.6.1055 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.6.1 Developer Pack (HKLM-x32\...\{463d5540-8dfd-4eef-92e5-b729b3b73cfb}) (Version: 4.6.1055 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.6.1 SDK (Deutsch) (HKLM-x32\...\{529EFF09-750D-48B9-A47A-34A3B6248C3F}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.7.1 Targeting Pack (HKLM-x32\...\{5686C5E9-A3B3-451E-A2EA-4C246CDE5CC9}) (Version: 4.7.02558 - Microsoft Corporation) Hidden Microsoft 365 Apps for Enterprise - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 16.0.15726.20202 - Microsoft Corporation) Microsoft Agents for Visual Studio 2015 Preview - ENU (HKLM-x32\...\{B57097EF-5F38-348C-8081-4D0F0B78757E}) (Version: 14.0.23102 - Microsoft Corporation) Hidden Microsoft Agents for Visual Studio 2015 Preview (HKLM-x32\...\{CE37CE67-2660-30EE-805B-78829CC3554B}) (Version: 14.0.23102 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Azure Mobile Services Connected Service (HKLM-x32\...\{107518BF-43A3-4CB6-B571-9C5A241F9586}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Azure Mobile Services SDK V2.0 (HKLM-x32\...\{A00EC54A-CE16-4CF6-A14A-5CF81A1FE03F}) (Version: 2.0.20908.0 - Microsoft Corporation) Hidden Microsoft Azure Mobile Services Tools for Visual Studio - v1.4 (HKLM-x32\...\{5536AAD4-740A-4577-843D-4281D3F30726}) (Version: 1.4.30611.1601 - Microsoft Corporation) Hidden Microsoft Azure Shared Components for Visual Studio 2015 - v1.8 (HKLM-x32\...\{F02B1BAC-94DA-46FB-B27B-7287FC0EF481}) (Version: 1.8.40521.1 - Microsoft Corporation) Hidden Microsoft Azure Storage Connected Service (HKLM-x32\...\{8F15E32A-FAD1-49E3-9378-C8EE0530E192}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Build Tools 14.0 (amd64) (HKLM\...\{79750C81-714E-45F2-B5DE-42DEF00687B8}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Build Tools 14.0 (x86) (HKLM-x32\...\{6BF8837D-67E1-4359-89FB-C08BFD6F2138}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Build Tools Language Resources 14.0 (amd64) (HKLM\...\{34BFF66C-9A7E-4778-8A9F-1DA1F0F4C22E}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Build Tools Language Resources 14.0 (x86) (HKLM-x32\...\{5127B392-8820-4822-A21F-1CB78C2E25AD}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 107.0.1418.42 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 107.0.1418.42 - Microsoft Corporation) Microsoft Expression Blend SDK for .NET 4 (HKLM-x32\...\{9B3A1C97-A361-463E-8817-444F9F88CDFE}) (Version: 2.0.20525.0 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.2 (HKLM-x32\...\{4740889B-2D03-3A6F-BC42-07C8AFDF3B2E}) (Version: 2.2.25420 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation) Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2015 (HKLM-x32\...\{2D170B66-A905-385C-93E0-20A47812B777}) (Version: 3.4.4.1321 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\OneDriveSetup.exe) (Version: 21.099.0516.0003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation) Microsoft Portable Library Multi-Targeting Pack (HKLM-x32\...\{09D51995-D17C-35E4-9143-314298EB5155}) (Version: 14.0.25431.01 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - enu (HKLM-x32\...\{B01EE326-AFD3-30C9-804A-CBC36CBD4922}) (Version: 14.0.25420.01 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\Teams) (Version: 1.5.00.28361 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Teams) (Version: 1.2.00.17057 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27029 (HKLM-x32\...\{64ff2cb0-807c-4ee9-87ef-ec1b2ede0daf}) (Version: 14.16.27029.1 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27029 (HKLM-x32\...\{f50edb7e-c25e-47b4-bc4f-7ec4a4d256b1}) (Version: 14.16.27029.1 - Microsoft Corporation) Microsoft Visual C++ 2017 X64 Additional Runtime - 14.16.27024 (HKLM\...\{9D29FC96-9EEE-4253-943F-96B3BBFDD0B6}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X64 Debug Runtime - 14.16.27024 (HKLM\...\{344CC757-8D5A-4BB7-B623-45071834B60C}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X64 Minimum Runtime - 14.16.27024 (HKLM\...\{F1B0FB3A-E0EA-47A6-9383-3650655403B0}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X86 Additional Runtime - 14.16.27024 (HKLM-x32\...\{7258184A-EC44-4B1A-A7D3-68D85A35BFD0}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X86 Debug Runtime - 14.16.27024 (HKLM-x32\...\{AC431C8F-C06F-429C-831E-1B5B1CAAC944}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 X86 Minimum Runtime - 14.16.27024 (HKLM-x32\...\{5EEFCEFB-E5F7-4C82-99A5-813F04AA4FBD}) (Version: 14.16.27024 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Devenv (HKLM-x32\...\{FC1F3422-0C94-3178-AD95-3EA889DF55AF}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Devenv Resources (HKLM-x32\...\{173D2989-6B09-3A90-8819-A53E43F99818}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Diagnostic Tools - amd64 (HKLM\...\{62D2E847-606F-49FB-A38B-F9D5AA936331}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Performance Collection Tools - ENU (HKLM\...\{3AE40040-2F48-4617-9228-49E999738BDB}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Performance Collection Tools (HKLM\...\{FCC6E820-B5DB-454E-96E3-B6182DDEEC8D}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Preparation (HKLM-x32\...\{919C67A9-2DE8-4929-A910-CB85E009B5CB}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Preparation (HKLM-x32\...\{93A31A4A-197C-43F0-9687-7FFC47C33D44}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Preparation (HKLM-x32\...\{9E99CC49-D305-4D42-AC34-6C732062B142}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Profiling Tools (HKLM-x32\...\{4AD3777F-D26B-4FCD-8823-B1D9784141C6}) (Version: 14.0.25123 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 SDK - ENU (HKLM-x32\...\{67A74EC1-A89D-3553-B38D-D17D4991CD2F}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Shell (Minimum) (HKLM-x32\...\{030A6785-C3A9-37DA-8530-444C320629FA}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Shell (Minimum) Interop Assemblies (HKLM-x32\...\{166EEF5C-F996-390E-91F6-DD6DFD008E9B}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Shell (Minimum) Resources (HKLM-x32\...\{7FF53256-7BAF-3EFA-91B4-DB65F37EB5E9}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Test Tools Language Pack - ENU (HKLM-x32\...\{E41854EE-D8A6-4E03-B42D-E0006C24A306}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Tools for Unity (HKLM-x32\...\{D1F8A274-EE6F-4698-A272-8B2753B9C26B}) (Version: 3.8.0.7 - Microsoft Corporation) Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64 (HKLM\...\{2D02967A-1085-4421-8559-B0147208EE13}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64 (HKLM\...\{BCAC059C-E06C-4D45-928A-A69061678ECA}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - ENU (HKLM-x32\...\{0DC92391-4C2B-4C35-A674-EBDEE5ABB375}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 (HKLM-x32\...\{35B1EDF3-63B5-4908-989D-6F62DBA02C58}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 (HKLM-x32\...\{6BD4394B-DE2E-4D0A-B835-31E2BD9AEC38}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 (HKLM-x32\...\{7DFB810E-B924-4DAD-975A-E07F58153727}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3 Performance Debugger Web Views (HKLM-x32\...\{A5C0F000-F324-46D3-BBD9-5F6AD1886B12}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Update 3.1 Team Explorer Language Pack - ENU (HKLM-x32\...\{A308948E-D2D2-3323-A336-49DBA82964D7}) (Version: 14.102.25619 - Microsoft) Hidden Microsoft Visual Studio 2015 VsGraphics Helper Dependencies (HKLM\...\{599702AA-91EB-38C1-B994-CDE35C57E007}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Windows Diagnostic Tools - ENU (HKLM-x32\...\{AB5A27F1-57C7-4E4C-90C4-28E55272FD6F}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 Windows Diagnostic Tools (HKLM-x32\...\{4100F789-5312-4A41-817C-3118F6F44CAB}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 XAML Application Timeline - ENU (HKLM-x32\...\{C3C024EC-B097-43BE-9BFC-E3D10EF45510}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 XAML Application Timeline (HKLM-x32\...\{2230AE9A-A95A-4C15-A4D1-6536F4B24B7D}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 XAML Visual Diagnostics - ENU (HKLM-x32\...\{8BD56634-6B9E-4CDA-8857-C73F20F57907}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio 2015 XAML Visual Diagnostics (HKLM-x32\...\{FD733BA2-59BF-4BF1-ADD4-14A1F3EB98CD}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Microsoft Visual Studio 2017 Tools for Unity (HKLM-x32\...\{1AD79405-0A2D-43D6-82AE-8CB8B212D906}) (Version: 3.9.0.3 - Microsoft Corporation) Hidden Microsoft Visual Studio Code (User) (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.73.0 - Microsoft Corporation) Microsoft Visual Studio Community 2015 with Updates (HKLM-x32\...\{79b486b9-c5f0-4096-a00c-8351f59587c2}) (Version: 14.0.25420.1 - Microsoft Corporation) Microsoft Visual Studio Connected Services (HKLM-x32\...\{76722C36-3BF4-4326-9ADF-A56ABA50AA9F}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.18.1100.314 - Microsoft Corporation) Microsoft Visual Studio Services Hub (HKLM-x32\...\{79B9B6C9-3FAF-4F50-96A9-C1651EA0DD31}) (Version: 1.0.25420.01 - Microsoft Corporation) Hidden Microsoft Visual Studio Setup Configuration (HKLM-x32\...\{23B8EFE9-8716-4560-B3D7-EBAFCDFD25A2}) (Version: 1.18.21.37008 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office Integration (x64) (HKLM\...\{647DB777-6309-3551-9262-6B9CDB97635B}) (Version: 14.98.25331 - Microsoft) Hidden Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office Integration Language Pack (x64) - ENU (HKLM\...\{F04AB121-B3E1-39FE-8A5E-EF8484210107}) (Version: 14.98.25331 - Microsoft) Hidden Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboarding (x64) (HKLM\...\{4E27A682-5F47-3B82-AF7C-90218C7078C3}) (Version: 14.98.25331 - Microsoft) Hidden Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboarding Language Pack (x64) - ENU (HKLM\...\{B97772BE-2F7E-3F09-93B4-D1C9E196018A}) (Version: 14.98.25331 - Microsoft) Hidden Microsoft Visual Studio Team Foundation Server 2017 Update 9 Office Integration (x64) (HKLM\...\{29F73FA6-CA54-3F2F-980F-D1E1DC4E9C81}) (Version: 15.129.28621 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2017 Update 9 Office Integration Language Pack (x64) - ENU (HKLM\...\{688F4A95-C85C-3855-B894-05B0FF7B17F6}) (Version: 15.129.28621 - Microsoft Corporation) Hidden Microsoft VisualStudio JavaScript Language Service (HKLM-x32\...\{42C14710-7126-489A-8899-C73AE77E5345}) (Version: 14.0.25527 - Microsoft Corporation) Hidden Microsoft VisualStudio JavaScript Project System (HKLM-x32\...\{1637E141-7E5A-4DE9-9D52-0F6334AC3474}) (Version: 14.0.25527 - Microsoft Corporation) Hidden Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft.VisualStudio.Office365 (HKLM-x32\...\{3196EC29-B75D-4EE3-8AB0-46418BC31483}) (Version: 1.6.2.0 - Microsoft Corporation) Hidden Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Movie Maker (HKLM-x32\...\{70C91B91-61E8-4D06-86D6-A9DCC291983A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox (x64 de) (HKLM\...\Mozilla Firefox 106.0.5 (x64 de)) (Version: 106.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 106.0.5.8343 - Mozilla) MSBuild/NuGet Integration 14.0 (x86) (HKLM-x32\...\{128C1654-3B9E-4959-8BFB-CE6F09C0A01D}) (Version: 14.0.25420 - Microsoft Corporation) Hidden MSI Development Tools (HKLM-x32\...\{973CACA2-E018-065B-0580-F2784802E299}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden MSVCRT (HKLM-x32\...\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (HKLM-x32\...\{D0B44725-3666-492D-BEF6-587A14BD9BD9}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (HKLM-x32\...\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}) (Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (HKLM\...\{E9FA781F-3E80-4399-825A-AD3E11C28C77}) (Version: 16.4.1109.0912 - Microsoft) Hidden Multi-Device Hybrid Apps using C# - Templates - ENU (HKLM-x32\...\{12D99739-FFD3-3761-8AA6-F929E0FE407E}) (Version: 14.0.23107 - Microsoft Corporation) Hidden NVIDIA GeForce Experience 3.1.0.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.1.0.52 - NVIDIA Corporation) NVIDIA Grafiktreiber 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 19.0.3 - OBS Project) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden OpenVPN 2.5.3-I601 amd64 (HKLM\...\{E5931AF4-2A8F-48A5-AFC8-460348F480E8}) (Version: 2.5.022 - OpenVPN, Inc.) Paket zur Festlegung von "Doc Redirected"-Zielversionen von Microsoft .NET Framework 4.7.1 (Deutsch) (HKLM-x32\...\{5B970BE4-A2F2-41BD-8B91-FEA8DAA1DB9B}) (Version: 4.7.02558 - Microsoft Corporation) Hidden Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM-x32\...\{4860C1E5-CE58-4D32-89DE-37951333B4C9}) (Version: 4.6.01055 - Microsoft Corporation) Photo Common (HKLM-x32\...\{87DABDEA-47A4-4182-AA7C-2C90DAAE3117}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Photo Gallery (HKLM-x32\...\{07AAB66E-4718-422D-9218-4AFB3C922A71}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.12.0 - Prolific Technology INC) PlanetSide 2 (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PreEmptive Analytics Visual Studio Components (HKLM-x32\...\{436A18DD-5F2C-4B3C-985E-AD3C13B0CC25}) (Version: 1.2.5134.1 - PreEmptive Solutions) Hidden Python 3.10.1 (64-bit) (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\{af822d5e-759c-4e77-9696-3cc835cd54a9}) (Version: 3.10.1150.0 - Python Software Foundation) Python 3.10.1 Core Interpreter (64-bit) (HKLM\...\{862831D8-A2FD-4ED5-B9B9-C8C3ECA1CAE8}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Development Libraries (64-bit) (HKLM\...\{A17FBEFC-ABDD-4E5E-AAA5-CC503ACF648F}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Documentation (64-bit) (HKLM\...\{DD75DEC5-89C0-4E54-88A2-83DCCA026F3A}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Executables (64-bit) (HKLM\...\{4F07CBC9-1051-41FC-978D-EECA76E4D547}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 pip Bootstrap (64-bit) (HKLM\...\{167746E3-B9B3-4964-803A-F893F1FC56C9}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Standard Library (64-bit) (HKLM\...\{98A2C72D-7929-414D-995B-4E47D8307C93}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Tcl/Tk Support (64-bit) (HKLM\...\{5A807757-F64E-46D3-ABD1-B4907BB75B72}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Test Suite (64-bit) (HKLM\...\{0393EBB7-8F16-42DC-9B63-F1552F481B92}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.10.1 Utility Scripts (64-bit) (HKLM\...\{FD9B0798-B88D-4148-9159-6206EACD7C47}) (Version: 3.10.1150.0 - Python Software Foundation) Hidden Python 3.6.1 (64-bit) (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\{5984d629-979e-4439-b893-accde1a00a68}) (Version: 3.6.1150.0 - Python Software Foundation) Python 3.6.1 Add to Path (64-bit) (HKLM\...\{079FEF6F-9E83-4694-897D-69C30389B772}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Core Interpreter (64-bit) (HKLM\...\{27133190-078A-4A46-81B0-FF476EAEBF2A}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Development Libraries (64-bit) (HKLM\...\{953B4007-8312-48CA-817E-29B43988EB35}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Documentation (64-bit) (HKLM\...\{41626EAD-257F-401F-8531-51C5A7D4CA6C}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Executables (64-bit) (HKLM\...\{9139037B-B991-4022-946F-DAA9A9FDC7EE}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 pip Bootstrap (64-bit) (HKLM\...\{5F9A36CA-767E-4922-84AB-73E61264FE5C}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Standard Library (64-bit) (HKLM\...\{B7A716F0-78C1-4CB9-8756-0E51C5DD7622}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Tcl/Tk Support (64-bit) (HKLM\...\{AC60D963-1CE4-429B-AB29-F973DC55A918}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Test Suite (64-bit) (HKLM\...\{A298B2DB-1F21-476D-9BD7-4ECC23101C90}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Utility Scripts (64-bit) (HKLM\...\{7CB8460F-55AD-4C70-8D04-72947C46C85E}) (Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.2 (32-bit) (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\{8388fa07-1617-4b8d-8ad8-6a940ad8052c}) (Version: 3.6.2150.0 - Python Software Foundation) Python 3.6.2 Core Interpreter (32-bit) (HKLM-x32\...\{4542573C-6216-4584-BA90-72BAF7954404}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Development Libraries (32-bit) (HKLM-x32\...\{69E3E4A6-2A0F-4A32-9C2D-591EEC107289}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Documentation (32-bit) (HKLM-x32\...\{796410A7-1669-4FE4-8332-F684B61269E2}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Executables (32-bit) (HKLM-x32\...\{348C0EFF-60B1-4E68-88B8-33D7DF70DFCF}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 pip Bootstrap (32-bit) (HKLM-x32\...\{6B2D61BA-C42D-4324-B23F-1D7B5A2808EF}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Standard Library (32-bit) (HKLM-x32\...\{79B4337D-166F-4BC0-B67A-F73806CC730E}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Tcl/Tk Support (32-bit) (HKLM-x32\...\{DF24AFFD-23AB-4A7D-A0E0-6410CE3B6B9D}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Test Suite (32-bit) (HKLM-x32\...\{433FD2E2-839C-4211-88B7-45C90F738842}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python 3.6.2 Utility Scripts (32-bit) (HKLM-x32\...\{9B79DE7E-E864-4758-8DFC-85DA43B19671}) (Version: 3.6.2150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{7DE12550-BE09-44DD-BDB4-0EC26BA89DAF}) (Version: 3.10.7644.0 - Python Software Foundation) Qualcomm Atheros 11ac Wireless LAN&Bluetooth Installer (HKLM-x32\...\{3241744A-BA36-41F0-B4AA-EF3946D00632}) (Version: 11.0.0.10198 - Qualcomm Atheros) Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 2.5.3 - Razer Inc.) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.21.00.721 - Razer Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.31213 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.3.723.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.) Revo Uninstaller 2.3.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.3.8 - VS Revo Group, Ltd.) Roblox Player for Surfen erlaubt (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\roblox-player) (Version: - Roblox Corporation) Roblox Studio for Surfen erlaubt (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\{2922D6F1-2865-4EFA-97A9-94EEAB3AFA14}) (Version: - Roblox Corporation) Roblox Studio for Surfen erlaubt (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\roblox-studio) (Version: - Roblox Corporation) Roslyn Language Services - x86 (HKLM-x32\...\{6970C7E1-F99D-388D-8903-DF8FCE677FED}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Roslyn Language Services - x86 (HKLM-x32\...\{6C1985E7-E1C5-3A95-86EF-2C62465F15C3}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Salfeld Kindersicherung (HKLM-x32\...\Salfeld) (Version: - Salfeld GmbH) Scratch 2 Offline Editor (HKLM-x32\...\{6E988774-5309-E02E-7EA8-F19CB65C2063}) (Version: 255 - Massachusetts Institute of Technology) Hidden Scratch 2 Offline Editor (HKLM-x32\...\edu.media.mit.Scratch2Editor) (Version: 461 - Massachusetts Institute of Technology) SDK ARM Additions (HKLM-x32\...\{7922BB77-0B59-840A-AC80-D560A34D75C5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden SDK ARM Redistributables (HKLM-x32\...\{C87DF65C-A672-7E08-A083-E7D48FE8DB70}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Spotify (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\Spotify) (Version: 1.0.80.474.gef6b503e - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Studie zur Verbesserung von HP Officejet Pro 8620 (HKLM\...\{825BC9A9-A005-4FDB-BDE9-A4F2DF69C3B7}) (Version: 32.3.198.49673 - Hewlett-Packard Co.) Team Explorer for Microsoft Visual Studio 2015 Update 3.1 (HKLM-x32\...\{7A95671A-759E-3B83-B763-4289D1D24D73}) (Version: 14.102.25619 - Microsoft) Hidden Teams Machine-Wide Installer (HKLM-x32\...\{39AF0813-FA7B-4860-ADBE-93B9B214B914}) (Version: 1.3.0.28779 - Microsoft Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\TeamSpeak 3 Client) (Version: 3.1.0 - TeamSpeak Systems GmbH) Test Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{9EABBFE1-7EED-47D9-8FB8-21D7E4808057}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Thunderbolt(TM) Software (HKLM-x32\...\{5B88BE64-93E7-4D6B-83D0-37B911166FF2}) (Version: 15.2.35.250 - Intel Corporation) Tools for .Net 3.5 - DEU Lang Pack (HKLM-x32\...\{13BD574A-7F41-420A-B486-7A2D4CEB7F3B}) (Version: 3.11.50727 - Microsoft Corporation) Hidden Tools for .Net 3.5 (HKLM-x32\...\{1690CE56-2231-4E59-9006-A0876D949EA8}) (Version: 3.11.50727 - Microsoft Corporation) Hidden Twitch (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) TypeScript Power Tool (HKLM-x32\...\{465ACA24-B8D6-4FEC-A42D-9EFCB92CD560}) (Version: 1.8.34.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{BA5762C7-D35F-4725-A4BD-525854127018}) (Version: 1.8.36.0 - Microsoft Corporation) Hidden UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden Universal CRT Extension SDK (HKLM-x32\...\{A5FA2886-1925-133F-0D41-B9A8ECEA0A2D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (HKLM-x32\...\{B739B4C5-EEEC-8E70-0276-38C4779AF398}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{A9D6F52C-694E-3E41-7AB8-5BEB644742A5}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Tools x64 (HKLM\...\{E053089E-7953-3219-814F-F485FC151C54}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal CRT Tools x86 (HKLM-x32\...\{B9424F08-0617-C4F6-A798-5A9250C1A738}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Universal General MIDI DLS Extension SDK (HKLM-x32\...\{D261CEA1-AB8D-9CFA-4407-BCEFC78661AC}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation) Uplay (HKLM-x32\...\Uplay) (Version: 63.0 - Ubisoft) USBVCOM Driver Installer (HKLM-x32\...\{A6099CC4-B1A8-4888-9F6C-8275EA8EC3A0}) (Version: 1.00.0005 - Cypress) USBVCOM Driver version 1.0.3.1 (HKLM\...\{4F5554CC-A54E-42AA-A51E-2C3DCA71115D}_is1) (Version: 1.0.3.1 - Cypress) vcpp_crt.redist.clickonce (HKLM-x32\...\{77B667B9-36B3-4712-AD45-28EA1A278D8B}) (Version: 14.16.27012 - Microsoft Corporation) Hidden Visual C++ Compiler/Tools X86 Base Package (HKLM-x32\...\{7BC93EE9-44F1-3783-AD76-F6BD6C8F6B58}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ Compiler/Tools X86 Base Package (HKLM-x32\...\{BFEC9D45-BAD4-3D7C-B6A7-887D21E6C25A}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ Compiler/Tools X86 Base Resource Package (HKLM-x32\...\{62505F19-7D2A-3FD0-B1A2-D8E2FA2F96B3}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ Compiler/Tools X86 Base Resource Package (HKLM-x32\...\{85658238-483F-3148-967E-ECD533AE6FE7}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ IDE Base Package (HKLM-x32\...\{30B0517F-1E18-3D45-A78C-C2E34B9A368D}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Visual C++ IDE Base Resource Package (HKLM-x32\...\{A3CF57ED-FFD1-3AC4-B9D7-90069B2B5EDA}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Base Resource Package (HKLM-x32\...\{DC3240BB-9136-3978-8EF3-F041ACEA11BF}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Common Package (HKLM-x32\...\{BD5A23D6-1E9F-3378-89CF-E96908078D53}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Common Resource Package (HKLM-x32\...\{EFE03B21-A8A5-3CCD-81BD-7FC47007F1BA}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Package (HKLM-x32\...\{81B64FE0-5DC1-35D4-A51E-AD11803C520C}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{0FDFB80D-91E1-36F1-B523-0B90421FDDC1}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{1D958A62-C980-3CB7-AC59-40EF0D1FA80E}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{1DC85000-B0F8-325F-AD01-2770D36517D5}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{2FEE4EBD-CEB0-3E26-9405-CF0D812CFA3C}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{33DA2215-AF20-3F21-A171-57F0533A5CAF}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{43027679-FD40-32E6-A9F0-7BB3CDEBE416}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{49D4D4E2-21E8-3346-A496-1A1415B18594}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{4E61EF40-8A51-3D99-AA4C-32F203370083}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{5130318D-7FEA-35E6-927D-01368910BDFC}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{66DA8EAA-D4CD-30DC-B993-0EDF728ED1F6}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{B2321364-E928-325D-A954-933D35239BE5}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{D1201DF3-F934-342A-A586-2B255CB8B215}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{D209BFE9-3EDA-3606-AF6B-DCADA87A2285}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Core Professional Plus Resource Package (HKLM-x32\...\{D9CE69E8-D77A-3C94-A910-641622794ED4}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Debugger Package (HKLM-x32\...\{F3F23EAE-D617-3A1F-8717-FACD35A1ECEE}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Visual C++ IDE Debugger Resource Package (HKLM-x32\...\{E20C5867-063A-36FF-B630-A9C96CE5D8AF}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE Professional Core Package (HKLM-x32\...\{C67257E4-F24C-3C35-86BB-E9B7D5D4D9FB}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ IDE x64 Package (HKLM\...\{60DED060-0B6B-3CC1-B955-D0CD401F0FBA}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ Library PGO X86 Package (HKLM-x32\...\{023FCA1D-E591-3AF9-9D2F-9876639A511A}) (Version: 14.0.24210 - Microsoft Corporation) Hidden Visual C++ MSBuild ARM Package (HKLM-x32\...\{51547499-4A12-3CC6-AE3D-3C5E87D72909}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ MSBuild Base Package (HKLM-x32\...\{35433594-85A3-3EEA-963E-0E5E860B82D6}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ MSBuild Base Resource Package (HKLM-x32\...\{D073E568-C258-381C-B9DB-965434B1DF53}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ MSBuild X64 Package (HKLM-x32\...\{EE527713-BE8A-348A-8854-DACBCE5316F2}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual C++ MSBuild X86 Package (HKLM-x32\...\{8CB498C5-672B-3F6C-9143-84B0BBC1EAB3}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual Studio 2012 Verification SDK (HKLM-x32\...\{A3BCFD43-58D6-3132-A7DF-16CE04672372}) (Version: 14.0.25420 - Microsoft Corporation) Hidden Visual Studio 2015 Prerequisites - ENU Language Pack (HKLM\...\{83B181F2-20B8-4F00-8E71-C66E951A8D4F}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Visual Studio 2015 Prerequisites (HKLM\...\{DF32E41C-24AD-4A87-B43A-B38553B1806E}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Visual Studio 2015 Update 3 (KB3022398) (HKLM-x32\...\{7a68448b-9cf2-4049-bd73-5875f1aa7ba2}) (Version: 14.0.25420 - Microsoft Corporation) Visual Studio Community 2017 (HKLM-x32\...\dcd98f6c) (Version: 15.9.28307.586 - Microsoft Corporation) Visual Studio Graphics Analyzer (HKLM-x32\...\{8C26982F-B345-3C87-8D17-5E88ADDAFFF6}) (Version: 14.0.25420 - Microsoft Corporation) Hidden VPNMaster 3.7.0.0 stable (HKLM-x32\...\VPNMaster) (Version: 3.7.0.0 stable - inconnecting.com) VS Script Debugging Common (HKLM\...\{8B657335-3813-4CF4-A6FE-2AA44BE23F94}) (Version: 16.0.95.0 - Microsoft Corporation) Hidden VS Update core components (HKLM-x32\...\{B2918D01-1D89-34D3-87EF-A28121BC6EB7}) (Version: 14.0.25431 - Microsoft Corporation) Hidden vs_communitymsi (HKLM-x32\...\{71797C29-380A-492C-B35A-F5E4A7B57BDC}) (Version: 15.9.28307 - Microsoft Corporation) Hidden vs_communitymsires (HKLM-x32\...\{5297D80E-CD92-48D8-9DB0-301AB3205772}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_devenvmsi (HKLM-x32\...\{BFFA2FFB-1095-4ADD-A352-368806D2412B}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_filehandler_amd64 (HKLM-x32\...\{A254DA0E-26A1-43C3-95BE-7A24D5599473}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_filehandler_x86 (HKLM-x32\...\{1F42A73E-CF26-4D67-BA79-752CA56B639F}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_FileTracker_Singleton (HKLM-x32\...\{A41E138F-5A3F-443C-B72D-957AB994FB5A}) (Version: 15.9.28128 - Microsoft Corporation) Hidden vs_minshellinteropmsi (HKLM-x32\...\{3A78DA3D-C8D4-429D-B536-6E59A0088451}) (Version: 15.8.27825 - Microsoft Corporation) Hidden vs_minshellmsi (HKLM-x32\...\{68B8AD33-CE97-4C3D-9583-669C39D21BA5}) (Version: 15.9.28302 - Microsoft Corporation) Hidden vs_minshellmsires (HKLM-x32\...\{0D3A6730-43CE-4AF6-BDF7-4D0660296C60}) (Version: 15.0.26621 - Microsoft Corporation) Hidden vs_tipsmsi (HKLM-x32\...\{1AC6CC3D-7724-4D84-9270-798A2191AB1C}) (Version: 15.0.27005 - Microsoft Corporation) Hidden vs_update3notification (HKLM-x32\...\{AB3DF932-C990-34D4-BF43-970F760DA3CD}) (Version: 14.0.25431 - Microsoft Corporation) Hidden Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) WCF Data Services 5.6.4 Runtime (HKLM-x32\...\{DB85E7BD-B2DD-43D4-B3C0-23D7B527B597}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{0A3B508E-5638-4471-BCC9-954E1868CB86}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden WinAppDeploy (HKLM-x32\...\{9690D51C-4435-1C20-7819-66CCAB0F03F9}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows App Certification Kit Native Components (HKLM\...\{09215AC7-B15F-A151-B90A-6B432EAD80A8}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows App Certification Kit SupportedApiList x86 (HKLM-x32\...\{6BC13537-D39F-5BF2-85F3-E073AE3ED446}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows App Certification Kit x64 (HKLM-x32\...\{0D9BEF83-4D44-5BCA-353F-07BA0A16CA46}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Desktop Extension SDK (HKLM-x32\...\{8358B2F8-FEE0-7FBA-14E5-AC84A7E61552}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Desktop Extension SDK Contracts (HKLM-x32\...\{44B8DFA4-495D-9972-F663-557B1BC0CB71}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Espc Package (HKLM-x32\...\{42AF2A8C-6EBB-3D2E-9BF1-6135379FBABC}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Windows Espc Resource Package (HKLM-x32\...\{FC94D188-1E08-3707-9D23-F41178D44664}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Windows IoT Extension SDK (HKLM-x32\...\{5899CA05-6772-95EC-4261-A09E5EE0FBF2}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows IoT Extension SDK Contracts (HKLM-x32\...\{58BC56B7-DCB8-EE66-AA40-2EAE7E2EB0F2}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows IP Over USB (HKLM-x32\...\{8CBFAC58-3058-B2AD-10E2-9E2A859B554B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Live Communications Platform (HKLM-x32\...\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\{66233218-CA57-4AB2-BA43-A97AA4635960}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Installer (HKLM-x32\...\{659CB81C-B54E-4DF1-B618-F35777393A54}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{F7232FE1-BC35-4229-8D76-D49941FE9929}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (HKLM-x32\...\{B23EE11C-66FA-4395-AB02-5F7103DC485C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (HKLM-x32\...\{E703613B-BDAB-433E-A66A-DE0263E3D35D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (HKLM\...\{25058321-C33E-496B-8915-6FD64D362CAF}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (HKLM-x32\...\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (HKLM-x32\...\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (HKLM-x32\...\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (HKLM-x32\...\{D1893000-EA77-493C-8DDD-E262436E959B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (HKLM-x32\...\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (HKLM-x32\...\{FC071B45-4A5F-408F-92F8-4D9D693E866F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{714E162E-CD4F-4F1B-8302-7F5179409C25}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{955E4722-1480-4198-A144-65FA5F4446DA}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (HKLM-x32\...\{A951D5DA-4759-4C3B-9C36-C6BF30082A2F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Mobile Extension SDK (HKLM-x32\...\{93BEE599-02CB-18E1-744E-D95724E81157}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Mobile Extension SDK Contracts (HKLM-x32\...\{D7A6AB64-9E5C-E5E2-5438-655F7D36475D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Phone SDK 8.0 Assemblies for Visual Studio 2015 (HKLM-x32\...\{44474AE7-7770-3676-AC63-C9DDD15011FF}) (Version: 14.0.25123 - Microsoft Corporation) Hidden Windows SDK (HKLM-x32\...\{921D9904-2313-037F-31B4-D62B9988E236}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK AddOn (HKLM-x32\...\{350F0ECD-0783-4529-8797-98F0AD33EAC0}) (Version: 10.1.0.0 - Microsoft Corporation) Windows SDK ARM Desktop Tools (HKLM-x32\...\{CBACB843-4AEF-D40C-B9BE-CCA402D2B980}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Headers arm (HKLM-x32\...\{CD480276-2E5A-3FE0-D40C-D7C55617F98B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Headers arm64 (HKLM-x32\...\{97AA8169-0E70-3B19-46C5-D4453608D589}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Headers x64 (HKLM-x32\...\{20630AC0-B423-2229-3399-A0B5285CB325}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Headers x86 (HKLM-x32\...\{4616D3B4-B5F0-ECBF-4617-0345C9550649}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Libs arm (HKLM-x32\...\{1FEC7E98-2A0A-11F9-1321-5F27304A3E4E}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Libs arm64 (HKLM-x32\...\{A6B742A8-13BA-4A15-0056-E9F2354FADA4}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Libs x64 (HKLM-x32\...\{DAE5B0BB-F2BC-98F5-6147-A83B6DF4B2AA}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Libs x86 (HKLM-x32\...\{82BEC2F8-2758-E0A4-F14B-CAAF3234FE00}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Tools arm64 (HKLM-x32\...\{399E1622-1DD3-2284-510C-3ABEBEB4B4FA}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Tools x64 (HKLM-x32\...\{8105E4C5-379E-F713-8A4D-14A2317A7ABE}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Desktop Tools x86 (HKLM-x32\...\{5169186A-B6CA-38E6-BC29-54ABFAFD3721}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK DirectX x64 Remote (HKLM\...\{A60760B2-EF83-1EB6-BC8E-B9A7EC91D3D6}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK DirectX x86 Remote (HKLM-x32\...\{A6EFB3CD-C4B4-878E-1DFF-F01FAF9A1A34}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK EULA (HKLM-x32\...\{A2528C8D-B98A-D28F-C650-722503516A93}) (Version: 10.1.16299.15 - Microsoft Corporations) Hidden Windows SDK Facade Windows WinMD Versioned (HKLM-x32\...\{F76495AC-2A86-BD70-3F0A-20D33E6A3300}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps (HKLM-x32\...\{B5CEC165-2F1F-4348-37A3-BB31DA90BD68}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Contracts (HKLM-x32\...\{7736BDAD-A5B6-8BE7-E34B-F53280448C29}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps DirectX x64 Remote (HKLM\...\{45D32E0E-27C5-82DE-B739-6A9608A2411A}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps DirectX x86 Remote (HKLM-x32\...\{1D42A0CE-494E-EDB0-9613-553487B5953D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Headers (HKLM-x32\...\{07C90F9B-3020-AD74-53A2-404D0A77E6A8}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Libs (HKLM-x32\...\{57186CA6-5B4D-1D1E-0AF0-A6F5244BBA36}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Metadata (HKLM-x32\...\{ECA49B9D-E452-169B-F8E2-E9E415F0190D}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Apps Tools (HKLM-x32\...\{CB17BD4C-C6D7-E5D7-5031-F37645D22579}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK for Windows Store Managed Apps Libs (HKLM-x32\...\{458C3A87-069F-E8E2-AF52-43152BA91548}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Modern Non-Versioned Developer Tools (HKLM-x32\...\{454B446B-6DC1-3524-53D5-4439D56358EF}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Modern Versioned Developer Tools (HKLM-x32\...\{79513535-6F89-55F0-E50F-5D563C4DEAF7}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Redistributables (HKLM-x32\...\{380602CD-5F67-486B-8F98-36A5EAD1A89F}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows SDK Signing Tools (HKLM-x32\...\{3ED687AC-3F6D-819B-3948-F0CB24111524}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Software Development Kit - Windows 10.0.16299.15 (HKLM-x32\...\{6195c203-b53c-4bb7-983a-6070a902e704}) (Version: 10.1.16299.15 - Microsoft Corporation) Windows Software Development Kit DirectX x64 Remote (HKLM\...\{5247E16E-BCF8-95AB-1653-B3F8FBF8B3F1}) (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (HKLM-x32\...\{A1CB8286-CFB3-A985-D799-721A0F2A27F3}) (Version: 8.100.25984 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (HKLM\...\{96F4525A-470D-F15C-796E-58D9988C3E5F}) (Version: 8.100.26936 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (HKLM-x32\...\{56AD3004-0B49-967F-F682-B05650B61A78}) (Version: 8.100.26936 - Microsoft Corporation) Hidden Windows Team Extension SDK (HKLM-x32\...\{3BFC920A-C3C0-2DFB-7509-03F5EFC95654}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows Team Extension SDK Contracts (HKLM-x32\...\{B155C75C-1567-ECA5-D71B-86F5CF1DE1ED}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden Windows-PC-Integritätsprüfung (HKLM\...\{4254C1AD-B9B0-4020-A4B1-D8B61D12142A}) (Version: 3.7.2204.15001 - Microsoft Corporation) Windows-PC-Integritätsprüfung (HKLM\...\{AD47C6B2-6C72-4F0E-B66F-7685C28ACDFD}) (Version: 3.3.2110.22002 - Microsoft Corporation) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) WinRT Intellisense Desktop - en-us (HKLM-x32\...\{385A1387-A488-9E90-3635-086129610034}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{D7DD3171-DA58-52A1-95B2-4769640855AF}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense IoT - en-us (HKLM-x32\...\{7336279F-8F8F-5530-A543-3BE963846C0A}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{E414A474-0A87-4F66-C409-A4D9857CFD34}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense Mobile - en-us (HKLM-x32\...\{CE760B86-975B-F514-5673-0ED4332B801B}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense PPI - en-us (HKLM-x32\...\{5E67F8BE-D8D2-257F-CE19-419A2D5125C7}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{A2AA063E-AF50-A1F5-8925-A06EB1556644}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense UAP - en-us (HKLM-x32\...\{7D4C7F4A-02A9-E434-6451-C8787DF28C1F}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{BC467065-9374-5345-DA3F-FCF073304A25}) (Version: 10.1.16299.15 - Microsoft Corporation) Hidden WISO Steuer-Sparbuch 2021 (HKLM-x32\...\{336FE95D-A21D-4540-ADF4-1A874E4BBE2E}) (Version: 28.02.1946 - Buhl Data Service GmbH) WISO Steuer-Sparbuch 2022 (HKLM-x32\...\{7E995B4B-4235-4869-BFB3-5F5420011A9B}) (Version: 29.08.3260 - Buhl Data Service GmbH) World of Tanks (HKU\S-1-5-21-908791101-83370650-475787697-1005\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) Zoom (HKU\S-1-5-21-908791101-83370650-475787697-1001\...\ZoomUMX) (Version: 5.7.4 (804) - Zoom Video Communications, Inc.) Packages: ========= Acer Explorer -> C:\Program Files\WindowsApps\AcerIncorporated.AcerExplorer_2.0.3007.0_x86__48frkmn4z8aw4 [2016-07-07] (Acer Incorporated) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_140.1.307.0_x64__v10z8vjag6ke6 [2022-11-04] (HP Inc.) iCloud -> C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa [2022-08-11] (Apple Inc.) [Startup Task] Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-07-03] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-07-01] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-07-01] (Microsoft Corporation) [MS Ad] Music Maker Jam -> C:\Program Files\WindowsApps\MAGIX.MusicMakerJam_3.1.1.0_x64__a2t3txkz9j1jw [2020-02-02] (MAGIX) Python 3.9 -> C:\Program Files\WindowsApps\PythonSoftwareFoundation.Python.3.9_3.9.3568.0_x64__qbz5n2kfra8p0 [2022-05-18] (Python Software Foundation) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{1019ADC7-17CB-4489-AFD5-6642C7400ACE}\localserver32 -> C:\Users\*****\AppData\Local\Webex\Webex\Applications\ptOIEx64.exe (Cisco WebEx LLC -> Cisco WebEx LLC) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\*****\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.22234.1\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{32E26FD9-F435-4A20-A561-35D4B987CFDC}\InprocServer32 -> C:\Users\*****\AppData\Local\WebEx\WebEx64\Meetings\atucfobj.dll (Cisco WebEx LLC -> Cisco WebEx LLC) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.35.422\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.34.11\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\*****\AppData\Local\Autodesk\webdeploy\production\f0f1459572ae987db1490b82e7990102aa92065e\NPreview10.dll (Autodesk, Inc. -> ) CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.36.82\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\*****\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{E339815B-4FEA-48AB-A784-68A40A5A213A} -> [iCloud Drive] => C:\Users\*****\iCloudDrive [2022-02-01 13:00] CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-908791101-83370650-475787697-1001_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\*****\AppData\Local\Google\Update\1.3.35.301\psuser_64.dll => Keine Datei ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => -> Keine Datei ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated) ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => -> Keine Datei ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Keine Datei ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igfxDTCM.dll [2016-11-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation -> NVIDIA Corporation) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anaconda3 (64-bit)\Anaconda Prompt (anaconda3).lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> "/K" C:\Users\*****\anaconda3\Scripts\activate.bat C:\Users\*****\anaconda3 ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2019-08-13 14:38 - 2019-08-13 14:38 - 000147456 _____ () [Datei ist nicht signiert] C:\ProgramData\NFS\v3\nfccapi.dll 2017-09-28 17:41 - 2017-09-28 17:41 - 000266240 _____ (Microsoft Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbPc.DLL 2019-08-13 14:38 - 2019-08-13 14:38 - 000373760 _____ (NetFilterSDK.com) [Datei ist nicht signiert] C:\ProgramData\NFS\v3\protflt.dll 2019-08-13 14:38 - 2019-08-13 14:38 - 002648576 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Datei ist nicht signiert] C:\ProgramData\NFS\v3\libcrypto-1_1.dll 2019-08-13 14:38 - 2019-08-13 14:38 - 000640512 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Datei ist nicht signiert] C:\ProgramData\NFS\v3\libssl-1_1.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Users\Public\AppData:CSM [466] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [233] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-908791101-83370650-475787697-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-908791101-83370650-475787697-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE HKU\S-1-5-21-908791101-83370650-475787697-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE SearchScopes: HKU\S-1-5-21-908791101-83370650-475787697-1001 -> {C599838B-A6B5-4F0D-AC78-43D06D8C3263} URL = SearchScopes: HKU\S-1-5-21-908791101-83370650-475787697-1005 -> DefaultScope {C599838B-A6B5-4F0D-AC78-43D06D8C3263} URL = SearchScopes: HKU\S-1-5-21-908791101-83370650-475787697-1005 -> {C599838B-A6B5-4F0D-AC78-43D06D8C3263} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-04] (Microsoft Corporation -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-908791101-83370650-475787697-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-908791101-83370650-475787697-1001\...\sharepoint.com -> hxxps://dhbwstg-files.sharepoint.com ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-10 12:04 - 2015-07-10 12:02 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2017-06-23 20:29 - 2022-02-27 17:42 - 000000445 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics 92.168.137.1 LAPTOP-PO9HTAP8.mshome.net # 2023 1 2 10 18 11 52 696 ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Razer Chroma SDK\bin;C:\Program Files\Razer Chroma SDK\bin;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\GtkSharp\2.12\bin;C:\Program Files (x86)\Windows Live\Shared;C:\Users\*****\AppData\Local\Microsoft\WindowsApps;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-908791101-83370650-475787697-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\*****\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img9.jpg HKU\S-1-5-21-908791101-83370650-475787697-1005\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) ist aktiviert. Network Binding: ============= WLAN: Rawether NDIS 6.X SPR Protocol Driver -> PCA_PCASP60 (enabled) Ethernet: Rawether NDIS 6.X SPR Protocol Driver -> PCA_PCASP60 (enabled) OpenVPN Wintun: Rawether NDIS 6.X SPR Protocol Driver -> PCA_PCASP60 (enabled) LAN-Verbindung: Rawether NDIS 6.X SPR Protocol Driver -> PCA_PCASP60 (enabled) ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) HKLM\...\StartupApproved\Run: => "RtHDVBg_Dolby" HKLM\...\StartupApproved\Run: => "Logitech Download Assistant" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "ManOWarHelper" HKLM\...\StartupApproved\Run32: => "Razer Synapse" HKLM\...\StartupApproved\Run32: => "TeamsMachineInstaller" HKU\S-1-5-21-908791101-83370650-475787697-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-908791101-83370650-475787697-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-908791101-83370650-475787697-1001\...\StartupApproved\Run: => "Lync" HKU\S-1-5-21-908791101-83370650-475787697-1005\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-908791101-83370650-475787697-1005\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-908791101-83370650-475787697-1005\...\StartupApproved\Run: => "Spotify" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [UDP Query User{EB384433-1C26-492D-9E37-BBF1AC52DB0C}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [TCP Query User{64AF719C-8F10-4BF0-872A-0AD9D2805A66}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [{8184F970-68F7-4449-BC8B-B8A14F2FA826}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{933DE9F2-2494-4F11-930A-A1E425B4D691}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [UDP Query User{5C79E782-1D23-4DD3-9AF3-8A5B621F20E8}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [TCP Query User{ED948E2C-1016-4EA6-BED9-117A2C9E6D35}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [UDP Query User{FA367ADE-F915-4E2B-A6AA-839EDD1A3002}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{83249A0C-D2B0-4BD3-8000-8362E9861C12}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{FE58E8B3-2A39-4A9C-9DF1-42023B2C1E59}C:\program files\java\jdk1.8.0_121\bin\java.exe] => (Block) C:\program files\java\jdk1.8.0_121\bin\java.exe => Keine Datei FirewallRules: [TCP Query User{753DB395-A9F8-41AD-9020-6826C03F9F93}C:\program files\java\jdk1.8.0_121\bin\java.exe] => (Block) C:\program files\java\jdk1.8.0_121\bin\java.exe => Keine Datei FirewallRules: [{E444CB16-7E16-4BB9-8D46-D9D5F986B807}] => (Allow) D:\SteamLibrary\steamapps\common\SteamVRPerformanceTest\bin\win64\vr.exe () [Datei ist nicht signiert] FirewallRules: [{035384AA-AB19-45A0-958E-E79C392F7F78}] => (Allow) D:\SteamLibrary\steamapps\common\SteamVRPerformanceTest\bin\win64\vr.exe () [Datei ist nicht signiert] FirewallRules: [{645EEAC0-826C-4E08-A4CB-5103655CBE65}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{B8DFF324-AECF-4B00-AF64-284B21E9E7CF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{227DE642-B4A4-40DB-B65D-741AF59B20FE}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology) FirewallRules: [{153D9351-68F9-4CE6-AE66-5419EB374260}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology) FirewallRules: [{D1449E72-5288-4FF3-88B1-34F6AC527BFF}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => Keine Datei FirewallRules: [{05EBF720-9C08-4032-9F83-DDB35AB3D67E}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => Keine Datei FirewallRules: [{9374E55F-F31F-454E-8D92-4D68414A5ACB}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => Keine Datei FirewallRules: [{BA76611A-53EA-4E98-9240-01D77C34D7E0}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => Keine Datei FirewallRules: [{1F0645D0-C4E3-43C2-A84C-CC7A2AC7F648}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{B9710695-EAED-4AAF-98D9-E76DA99252E6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{ACC24AD3-A807-468D-A72E-89DEC3F0A8A5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{9851BFEC-6BC2-46DC-9CD5-6C520935B35E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{65D30CD7-1E32-43F3-8E12-CCF1DBC52EB2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{57A58E3C-6A03-4EED-A5CB-E9FD0B8A3158}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{48D83EED-F242-4D5E-B3D3-0E1978950289}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{28A40758-FB49-491B-B5AE-3A4D83A1CD8A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{DF17AA8B-0AB9-407A-8563-B7D7C5DBCB72}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{BEA30D0C-EEE9-48D3-A7E2-290BE7B7A772}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{F42F7C8D-DFC7-4AF7-B2C4-E531627B4934}C:\programdata\eclipse\eclipse.exe] => (Block) C:\programdata\eclipse\eclipse.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{AAAE9FA1-B0B9-4083-9CC7-EF2124DBA6B0}C:\programdata\eclipse\eclipse.exe] => (Block) C:\programdata\eclipse\eclipse.exe () [Datei ist nicht signiert] FirewallRules: [{8A270323-1ADB-4DFE-B2B4-85AE1A8EA895}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{99E2005B-0D5A-4221-BFB1-094E40E76CCE}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{90D7FC04-7D6F-4DE4-8D4F-ADF251B3B453}] => (Allow) LPort=2869 FirewallRules: [{ED6ED6FF-1F6C-47DB-9686-A06FA0185F77}] => (Allow) LPort=1900 FirewallRules: [{A19217F9-6060-4458-B810-833B0E23B4E6}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D9F07D3D-B4E9-4DF4-8C5F-64540D544E9C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{A1466D8D-0D4E-48F0-8CBE-A7984F32DB69}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [TCP Query User{D02DDE5F-E2DA-4668-B6B9-1656459FAC6F}C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{B467B38C-8A62-4E47-833D-ACF17807F314}C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [TCP Query User{B705E7C7-5561-49FA-8825-3CEF0761B3C6}C:\windows\syswow64\dplaysvr.exe] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [UDP Query User{45C4C533-0F38-4CA7-A148-A25DE3463317}C:\windows\syswow64\dplaysvr.exe] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [TCP Query User{6F224260-E68C-4D98-9EEA-E4BBF3EE5D82}C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{9A31E651-386F-411A-B13F-F9B63BCB48DC}C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\surfen erlaubt\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [TCP Query User{D56620BA-8100-4076-A6B0-9599D6704950}C:\users\surfen erlaubt\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\surfen erlaubt\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{C2A38CB3-8424-4028-B8D0-0E8C7211AA9A}C:\users\surfen erlaubt\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\surfen erlaubt\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{041E1479-B433-4715-A5DD-22871D264FA4}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{1B2E9650-25D7-400A-9D69-EEE9157C5F1E}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{D0CA56BB-74D7-48D3-8056-77BF758B4E1C}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{4517CFE5-167F-4252-8873-C3B5B68186F5}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{E378946B-893C-4620-9A49-07AB293104CC}E:\dcmview\teamview.exe] => (Allow) E:\dcmview\teamview.exe => Keine Datei FirewallRules: [UDP Query User{DA258AF0-4849-4865-8A18-35D27E6EAF2C}E:\dcmview\teamview.exe] => (Allow) E:\dcmview\teamview.exe => Keine Datei FirewallRules: [{2489711C-4802-49F9-A6C3-8B7CF251EF88}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D197A07F-D0BF-4A8D-90B8-C5F2BF0EB8A1}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{39338C00-1519-48BE-82E5-BD378D55B0ED}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\FaxApplications.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{0B28350F-BF4A-42D7-BD1B-F7903CD6A78F}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\DigitalWizards.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{7F212FDC-B086-4E02-80EF-64C3C7160723}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\SendAFax.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{46BAB28B-E264-4944-A2E9-912AF9A17998}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{9B9B3849-9CF1-4AB6-B5E4-900AA8B78AF8}] => (Allow) LPort=5357 FirewallRules: [{B3E22232-1E75-456C-86EF-2C8AC5E33760}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP) FirewallRules: [{A3D9D162-7758-4E23-8FBE-ADD943C95C4D}] => (Allow) C:\Users\*****\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [TCP Query User{B01FD606-6F00-4695-83F3-10C5EC1BE11C}C:\users\*****\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\*****\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{A58D7FA7-415A-4383-86CD-03BAF9555D2B}C:\users\*****\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\*****\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{CFFA9E58-FC25-4480-B961-8B9E63953CAD}C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe] => (Allow) C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{E816E4DC-BD57-46DC-9D98-28B3C18315BC}C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe] => (Allow) C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe () [Datei ist nicht signiert] FirewallRules: [{DA895EDE-7F30-49BB-A15B-9DD1983F5742}] => (Block) C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe () [Datei ist nicht signiert] FirewallRules: [{CFFE0F26-A5ED-4D72-9025-5FFB67E32D2D}] => (Block) C:\program files\jperf\jperf-2.0.2\jperf-2.0.2\bin\iperf.exe () [Datei ist nicht signiert] FirewallRules: [TCP Query User{F0366173-08E1-4563-B7BF-D10ABBAE3E03}C:\users\*****\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\*****\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{E4460271-2155-411A-AE79-925D07D5FE9D}C:\users\*****\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\*****\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{585D0152-E74B-429C-A539-A9433C9958CA}C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [UDP Query User{7092CC1D-5035-4BCC-BE4A-15DEADD606E0}C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [TCP Query User{34AE92AB-9397-4BFB-9298-5E82C260870F}C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [UDP Query User{BE6D004A-1EF6-4E17-BDFE-E362D4B5B510}C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\program files (x86)\minecraft\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [{5A77AADF-E6C3-4C7B-8902-ED4A1506FF1B}] => (Allow) C:\Users\*****\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [TCP Query User{E1F24A83-BB2F-4D66-A5A0-13D21AA08866}C:\users\surfen erlaubt\desktop\tor browser\browser\torbrowser\tor\pluggabletransports\snowflake-client.exe] => (Block) C:\users\surfen erlaubt\desktop\tor browser\browser\torbrowser\tor\pluggabletransports\snowflake-client.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{46E9105B-A784-4018-86A5-6D90FA59104E}C:\users\surfen erlaubt\desktop\tor browser\browser\torbrowser\tor\pluggabletransports\snowflake-client.exe] => (Block) C:\users\surfen erlaubt\desktop\tor browser\browser\torbrowser\tor\pluggabletransports\snowflake-client.exe () [Datei ist nicht signiert] FirewallRules: [{C0AC6436-6C57-4164-ADC0-8AACBB9459DF}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3618BE3C-5756-4F4A-AD30-B9F16C339F22}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{4F5C903C-EB15-48EE-ACE8-9B6859D99668}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{69437A4F-6E88-48A0-A3F3-011285327062}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe => Keine Datei FirewallRules: [{79F631EF-A50D-4D00-8CA4-4B3925622E19}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe => Keine Datei FirewallRules: [{F141CE78-481F-4D2C-86BC-9E32B8468645}] => (Allow) E:\RouterSetup\QISWizard.exe => Keine Datei FirewallRules: [{0751F6B3-4726-4542-AEE5-DF124E1D9D32}] => (Allow) E:\RouterSetup\QISWizard.exe => Keine Datei FirewallRules: [{F5898F8A-31D4-494E-A572-38B6D77AF25B}] => (Allow) E:\RouterSetup\QISWizard.exe => Keine Datei FirewallRules: [{C14BDDC2-6177-435D-AD9E-ABD89CF99AB9}] => (Allow) E:\RouterSetup\QISWizard.exe => Keine Datei FirewallRules: [{11EF1D1B-9CD7-4A0E-9F10-9C37EEC81403}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{8107D56C-8A4D-48D9-8BC0-E454D271BD35}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{7600EAB9-BAFE-4FF8-B184-A0F58DC09D39}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C2A09077-4D59-4A21-B5B9-B7A4E19AB65A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{6774290E-591E-4D82-A4D0-F317D38A0D60}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C264228C-FC37-4671-8F7B-97A6C343775D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C2398DBF-518F-4BA3-9362-A66BA8DBD0AB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{8F34D5EB-9FE7-4B13-BCF0-6A2E345EEA45}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{AFB7774C-BD04-4ADA-9C3A-B26A9D5DC038}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\107.0.1418.42\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Wiederherstellungspunkte ========================= 09-11-2022 19:45:37 Windows Modules Installer 09-11-2022 19:46:48 Windows Modules Installer 09-11-2022 19:47:38 Windows Modules Installer 15-11-2022 09:51:25 Windows Modules Installer 15-11-2022 13:41:34 Removed Foxit PhantomPDF 15-11-2022 13:45:47 Removed Java 8 Update 221 15-11-2022 13:46:31 Removed Java SE Development Kit 8 Update 121 (64-bit) 15-11-2022 13:48:34 Removed PDFCreator ==================== Fehlerhafte Geräte im Gerätemanager ============ ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (11/15/2022 01:46:27 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\WINDOWS\system32\msiexec.exe /V; Beschreibung = Removed Java SE Development Kit 8 Update 121 (64-bit); Fehler = 0x80042319). Error: (11/15/2022 01:46:27 PM) (Source: SPP) (EventID: 16387) (User: ) Description: Fehler des Writers "MSSearch Service Writer" beim Erstellen einer Momentaufnahme. Weitere Informationen: "". Error: (11/15/2022 01:37:19 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Error: (11/15/2022 01:37:19 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (11/15/2022 11:42:12 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NfsCcSvc.exe, Version: 22.0.0.1809, Zeitstempel: 0x6316e5a2 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0366ff80 ID des fehlerhaften Prozesses: 0x23b4 Startzeit der fehlerhaften Anwendung: 0x01d8f8deea21afd7 Pfad der fehlerhaften Anwendung: C:\ProgramData\NFS\v3\NfsCcSvc.exe Pfad des fehlerhaften Moduls: unknown Berichtskennung: 72cc2c80-1cc9-446f-9f51-e2a20d77150c Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/15/2022 11:41:36 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Error: (11/15/2022 11:41:36 AM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (11/15/2022 11:41:36 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren. . Systemfehler: ============= Error: (11/15/2022 02:21:35 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: LAPTOP-PO9HTAP8) Description: Fehler bei der Verarbeitung der Gruppenrichtlinie. Es wurde versucht, registrierungsbasierte Richtlinieneinstellungen für das Gruppenrichtlinienobjekt "LocalGPO-S-1-5-21-908791101-83370650-475787697-1001" zu lesen. Die Gruppenrichtlinieneinstellungen dürfen nicht erzwungen werden, bis dieses Ereignis behoben ist. Weitere Informationen über den Dateinamen und -pfad, der den Fehler verursacht hat, können den Ereignisdetails entnommen werden. Error: (11/15/2022 02:18:31 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "SCC-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/15/2022 01:54:19 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 01:54:19 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 01:54:19 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 01:53:03 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 01:53:02 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Error: (11/15/2022 01:53:02 PM) (Source: TPM) (EventID: 27) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung des TPMs (Trusted Platform Module). Das TPM befindet sich möglicherweise im Fehlermodus. Wenden Sie sich zu Diagnosezwecken unter Angabe der angefügten Informationen an den TPM-Hersteller. Windows Defender: ================ Date: 2022-11-15 14:06:49 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {CB05F2D3-4744-421D-9FD3-144ADAEF1999} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-11-13 10:49:25 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {9079809C-44C5-4542-8139-2671E8CE552D} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-11-12 10:16:56 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {3F5AA96D-07C5-4DCE-8F63-95670165501D} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-11-11 08:01:42 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {9C8E09E8-EDB6-4935-88D2-72ABA445EC0B} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2022-11-10 18:22:17 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {6A8632FD-CFC1-4459-8BF7-23CCF35C7B78} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Event[0]: Date: 2022-10-13 00:04:15 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.377.118.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19700.3 Fehlercode: 0x80072efd Fehlerbeschreibung: Die Serververbindung konnte nicht hergestellt werden. CodeIntegrity: =============== Date: 2022-11-15 14:23:01 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2022-11-15 14:17:53 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Mozilla Firefox\firefox.exe) attempted to load \Device\HarddiskVolume3\Program Files\Mozilla Firefox\mozavcodec.dll that did not meet the Microsoft signing level requirements. Date: 2022-11-15 14:17:53 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Mozilla Firefox\firefox.exe) attempted to load \Device\HarddiskVolume3\Program Files\Mozilla Firefox\mozavutil.dll that did not meet the Microsoft signing level requirements. Date: 2022-11-15 14:06:26 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== BIOS: Insyde Corp. V1.05 12/16/2015 Hauptplatine: Acer Aspire VN7-792G Prozessor: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz Prozentuale Nutzung des RAM: 66% Installierter physikalischer RAM: 8104.78 MB Verfügbarer physikalischer RAM: 2738.88 MB Summe virtueller Speicher: 20392.78 MB Verfügbarer virtueller Speicher: 15159.89 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:237.43 GB) (Free:57.17 GB) (Model: SAMSUNG MZNLN256HCHP-00000) NTFS Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:922.48 GB) (Model: WDC WD10JPVX-22JC3T0) NTFS \\?\Volume{8861349e-e1b7-4c75-8df6-94080e2fed67}\ () (Fixed) (Total:0.93 GB) (Free:0.41 GB) NTFS \\?\Volume{498d1e76-1cf9-4fb6-966b-2ff13739afb4}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: 3CDCE18B) Partition: GPT. ========================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 3CDCE199) Partition: GPT. ==================== Ende von Addition.txt ======================= |
15.11.2022, 15:24 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Verdacht auf Manipulation des Rechners adwCleaner Führe AdwCleaner gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei in CODE-Tags. adwcleaner bitte wiederholen falls es Funde gab.
__________________ Logfiles bitte immer in CODE-Tags posten |
16.11.2022, 07:40 | #15 |
| Verdacht auf Manipulation des RechnersCode:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.4.0.0 # ------------------------------- # Build: 08-30-2022 # Database: 2022-10-10.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 11-15-2022 # Duration: 00:00:00 # OS: Windows 10 (Build 19045.2251) # Cleaned: 1 # Awaiting reboot:1 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** No malicious folders cleaned. ***** [ Files ] ***** No malicious files cleaned. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** No malicious registry entries cleaned. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Hosts File Entries ] ***** No malicious hosts file entries cleaned. ***** [ Preinstalled Software ] ***** Needs Reboot Preinstalled.ACERAOPFramework Folder C:\Program Files (x86)\ACER\AOP FRAMEWORK ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* ***** Reboot Required to Complete ***** ***** [ Folders ] ***** Cleaning failed C:\Program Files (x86)\ACER\AOP FRAMEWORK ************************* AdwCleaner[S00].txt - [1472 octets] - [15/11/2022 15:30:31] AdwCleaner[C00].txt - [1858 octets] - [15/11/2022 15:32:08] AdwCleaner[S01].txt - [1594 octets] - [15/11/2022 16:49:00] AdwCleaner[C01].txt - [1606 octets] - [15/11/2022 16:49:37] AdwCleaner[S02].txt - [1716 octets] - [15/11/2022 16:52:14] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C02].txt ########## Aber vielen Dank für die Hilfe gestern! |
Themen zu Verdacht auf Manipulation des Rechners |
befürchtung, eingefangen, fenster, gefangen, manipulation, poppen, rechner, rechners, seltsam, tagen, verdacht, verhält, verschwinden |