![]() |
|
Log-Analyse und Auswertung: Wharscheinlich! Trojaner oder Wurm! Meine Email Inhalte waren in Spam emailsWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() | ![]() Wharscheinlich! Trojaner oder Wurm! Meine Email Inhalte waren in Spam emails Hallo, bitte überprüfen Sie meine Log-Dateien! Wahrscheinlich habe ich Wurm oder Trojaner auf dem Rechner! Danke Mit freundlichen Grüßen Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-11-2022 durchgeführt von info (Administrator) auf DESKTOP-FBM2CGL (LENOVO 82HT) (16-11-2022 12:40:11) Gestartet von C:\Users\info\Desktop\FRST64 Geladene Profile: info & SQLTELEMETRY$JTLWAWI & MSSQL$JTLWAWI Plattform: Microsoft Windows 11 Home Version 22H2 22621.819 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Edge Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe ->) (JTL-Software-GmbH -> ) C:\Program Files (x86)\JTL-Software\JTL-Pos-Server.exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(DeviceSettingsSystemAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoBoostAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoBoostSystemAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoCompanionAppAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoServiceBridgeAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(VantageCoreAddin).exe (C:\Program Files\Logitech\LogiOptions\LogiOptions.exe ->) (Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe (C:\Program Files\Logitech\LogiOptions\LogiOptions.exe ->) (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.765.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\107.0.1418.42\msedgewebview2.exe <6> (C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe ->) (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\laclient.exe (C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe (DriverStore\FileRepository\cui_dch.inf_amd64_ea08a995fd015b2b\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_ea08a995fd015b2b\igfxEMN.exe (DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_da86a3091f808822\DAX3API.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~2.INF\DAX3API.exe (DriverStore\FileRepository\dptf_cpu.inf_amd64_897ea327b3fe52f7\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_897ea327b3fe52f7\dptf_helper.exe (DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_0d436e2e99c9204a\LenovoUtilityService.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_0d436e2e99c9204a\FnHotkeyUtility.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <47> (explorer.exe ->) (JTL-Software-GmbH -> JTL-Software-GmbH) C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe <2> (explorer.exe ->) (Logitech Inc -> Logitech) C:\Program Files\Logi\LogiBolt\LogiBolt.exe (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\info\AppData\Local\Microsoft\BingWallpaperApp\BingWallpaperApp.exe (explorer.exe ->) (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe <3> (explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (LNBITSSvc.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\AutoModeDetect.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_da86a3091f808822\DAX3API.exe (services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_ea08a995fd015b2b\igfxCUIServiceN.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_897ea327b3fe52f7\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_7e52891f15a074e9\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_97c26de2338c52fb\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_dd6a7ef14d856351\AS\IAS\IntelAudioService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\drivers\Lenovo\udc\Service\UDClientService.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\YMC.exe (services.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_0d436e2e99c9204a\LenovoUtilityService.exe (services.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\LNBITSSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\sqlceip.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\sqlservr.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\Sgrm\SgrmBroker.exe (services.exe ->) (philandro Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe <2> (services.exe ->) (Pranas.NET Corp -> Pranas.Net) C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.Service.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c984e9ce714075ab\RtkAudUService64.exe <2> (services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (services.exe ->) (Wacom Co., Ltd. -> Wacom Technology, Corp.) C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_d4bbdb64f50c2454\WTabletServiceISD.exe <2> (svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxAccounts.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22092.211.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe (svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.765.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c984e9ce714075ab\RtkAudUService64.exe [1345104 2021-09-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1690368 2022-07-22] (Logitech Inc -> Logitech, Inc.) HKLM\...\Run: [LogiBolt] => C:\Program Files\Logi\LogiBolt\LogiBolt.exe [22423104 2021-12-14] (Logitech Inc -> Logitech) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3951024 2019-10-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.) HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [292120 2022-10-26] (Intel Corporation -> Intel) HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2370280882-2776377730-3563973584-1001\...\Run: [EPSDNMON] => C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE [346712 2020-07-27] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-2370280882-2776377730-3563973584-1001\...\Run: [OpenOffice Updater] => C:\Users\info\AppData\Roaming\OpenOffice Updater\Updater.exe [367480 2021-07-28] (Arne Koenig -> ) <==== ACHTUNG HKU\S-1-5-21-2370280882-2776377730-3563973584-1001\...\Run: [MicrosoftEdgeAutoLaunch_DEE908A0CF799E4107F727695860A6BE] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3892128 2022-11-10] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2370280882-2776377730-3563973584-1001\...\Run: [LogiBolt] => C:\Program Files\Logi\LogiBolt\LogiBolt.exe [22423104 2021-12-14] (Logitech Inc -> Logitech) HKU\S-1-5-21-2370280882-2776377730-3563973584-1001\...\Run: [BingWallpaperApp] => C:\Users\info\AppData\Local\Microsoft\BingWallpaperApp\BingWallpaperApp.exe [14033312 2022-10-17] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2370280882-2776377730-3563973584-1001\...\MountPoints2: {2d2ce21c-4733-11ed-8b28-f4a475e0cc6f} - "D:\.\1&1_LTE-Antenne.exe" HKU\S-1-5-80-1395438614-360207505-1988296376-2878041436-2731989883\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-80-2266128050-168046786-4118164591-2120174550-663538628\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Print\Monitors\Brother QL-500 Monitor: C:\WINDOWS\system32\PTQL5L.DLL [54272 2010-02-05] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) HKLM\...\Print\Monitors\EPSON Universal Print Driver 64MonitorBE: C:\WINDOWS\system32\E_2LM0DE.DLL [187392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\107.0.5304.107\Installer\chrmstp.exe [2022-11-11] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2022-09-17] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH) Startup: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\JTL-Wawi WORKER.lnk [2022-04-20] ShortcutTarget: JTL-Wawi WORKER.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH -> JTL-Software-GmbH) Startup: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\JTL-Wawi.lnk [2022-04-20] ShortcutTarget: JTL-Wawi.lnk -> C:\Program Files (x86)\JTL-Software\JTL-Wawi.exe (JTL-Software-GmbH -> JTL-Software-GmbH) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0600DD45-FAF2-4131-A006-0B17509B9F78} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\sc.exe start InventorySvc Task: {06C05E76-0A8F-4ABE-935F-1B17085767B8} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.) Task: {10CE9E54-5B33-4E74-9B20-A0B4A2758788} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {1CD8AF7E-19B1-4A14-A6B8-A31DECF94E98} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1F680B15-85EC-489A-B5BB-3C846D96B473} - System32\Tasks\Lenovo\UDC\Lenovo UDC Idle Monitor => C:\windows\system32\drivers\Lenovo\udc\Service\UDCUserAgent.exe [89408 2022-05-23] (Lenovo -> Lenovo Group Ltd.) Task: {2BE05972-E5A3-4453-87E4-D6278451F312} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.) Task: {2EFEA2D7-8AEE-4358-B58A-862687472876} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9475a4f7-456b-40cb-b09d-0c3d9b41ed50 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.) Task: {32CEB473-6A4C-4426-8FD6-0D50DAD405C0} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2370280882-2776377730-3563973584-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [65536 2022-05-07] (Microsoft Windows -> Microsoft Corporation) Task: {36F83E14-980A-4A4C-AE9C-DBEAFBDF9247} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\Windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" Task: {3BCD987D-D896-44BE-97CB-8DA0874FEDCE} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1900320 2022-09-29] (Lenovo -> ) Task: {3E1A8093-5EDA-46DE-B9EB-A9A75EE2B84C} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService Task: {4580A9A6-CB55-4783-A613-F484A59130EB} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.) Task: {47A604E5-64A0-49BD-BA54-CEECA0C72F10} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\1f63211a-b412-444f-a8d4-3c722c06429e => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.) Task: {5173A67B-94E2-42EB-B774-CF800C13E247} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.) Task: {58201E2D-19CA-4FF3-8280-95739CD92DC1} - System32\Tasks\Microsoft\Windows\PI\SecureBootEncodeUEFI => C:\WINDOWS\system32\SecureBootEncodeUEFI.exe [94208 2022-11-08] (Microsoft Windows -> ) Task: {5E3DCA73-74AF-41C8-9099-9EAC3257D30A} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [184656 2022-05-23] (Lenovo -> Lenovo Group Ltd.) Task: {64EC62F8-C87D-4D72-B89E-9D85025B899A} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.) Task: {71069E3F-6F9A-493D-AD56-86A0054D2309} - System32\Tasks\GoogleUpdateTaskMachineUA{14915B34-1289-48F6-8AD0-55879E199E96} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-04-20] (Google LLC -> Google LLC) Task: {74EB152A-5D83-4B8E-B242-71EEDF4858FC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {79252493-D3E9-434C-9888-62459907A185} - System32\Tasks\McAfeeTsk\OOBEUpgrader => C:\Program Files\McAfee\MSC\OOBE_Upgrader.exe /Run (Keine Datei) Task: {8C4642DF-F2A0-4EEC-883B-F2FD44CC8D5D} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation) Task: {908FC21A-B01D-4032-8CF4-8F8EF5E6179D} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation) Task: {95256F42-0144-4671-8598-9D1884709A1C} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.) Task: {A1DB4411-D52A-40DC-919D-26C024ECBBCA} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\86d3ba9a-15f2-4225-8646-4b3b7f342d33 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.) Task: {A354F79E-6AE9-4B84-8824-86DD5C63E107} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1900320 2022-09-29] (Lenovo -> ) Task: {A519E2BD-A893-49B0-A087-435F280E470E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A7366718-3B52-4369-AC57-ACED21BB83EB} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [149280 2022-09-23] (Lenovo -> Lenovo Group Ltd.) Task: {B0EECA4F-0C1A-4389-A378-3E4A86D8B006} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\c9069e3a-a9db-4efe-bf3e-24159d114291 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.) Task: {BA4E4622-02CD-4DA0-95B7-739A36404015} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\3951a282-a57c-4d58-b3fb-477d3390fe84 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.) Task: {C49785E9-17A0-4743-98B3-58D4D975FC77} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Keine Datei) Task: {C7C282C0-7762-4F39-9433-1992E7BC45D1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CBDDE040-1773-4C02-B893-39F28EFCAA4C} - System32\Tasks\GoogleUpdateTaskMachineCore{708E3306-49E8-400A-A4CC-D9B0E54B07AD} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-04-20] (Google LLC -> Google LLC) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (Keine Datei) Task: {E6CC4005-2EFC-43E2-9919-69DBFA773EDC} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.) Task: {E9C0CA64-D014-45F5-8D6B-AE8FAEFC8CEC} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.) Task: {EACD6454-D604-4A51-8D38-3451B11411BE} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService Task: {F0E33274-3AAA-467F-8E99-BD8DC54C573E} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [64256 2022-01-28] (Lenovo -> Lenovo Group Ltd.) Task: {FDE8E84C-9EA7-4C30-BA28-4B6FC46770A9} - System32\Tasks\MicrosoftEdgeShadowStackRollbackTask => C:\Program Files (x86)\Microsoft\Edge\Application\106.0.1370.34\Installer\setup.exe --handle-crash="$(ProcessPath)" (Keine Datei) Task: {FEEC19B6-30C5-43A6-9EAD-423653111B83} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{3f923e32-1886-49b7-8942-7adec40de43b}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{4f7ae1d3-85ab-4214-8a49-2e66db0e460c}: [DhcpNameServer] 172.12.0.2 Tcpip\..\Interfaces\{9afbebbe-57c9-443d-a0de-0aa760752e36}: [DhcpNameServer] 172.20.10.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-16] Edge Notifications: Default -> hxxps://oxidizerain.com; hxxps://store.dji.com; hxxps://web.whatsapp.com; hxxps://winjdblown.com; hxxps://www.facebook.com; hxxps://www.pandacleaner.de; hxxps://www.rtl.de; hxxps://www.sonnenklar.tv; hxxps://www.youtube.com Edge HomePage: Default -> hxxp://www.google.de/ Edge Extension: (Google Optimize) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bhdplaindhdkiflmbfbciehdccfhegci [2022-04-20] Edge Extension: (SEO META in 1 CLICK) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjogjfinolnhfhkbipphpdlldadpnmhc [2022-04-20] Edge Extension: (Grammarly: Grammar Checker and Writing App) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cnlefmmeadmemmdciolhbnfeacpdfbkd [2022-11-12] Edge Extension: (Tag Assistant Legacy (by Google)) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2022-04-20] Edge Extension: (MSN New Tab) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lklfbkdigihjaaeamncibechhgalldgl [2022-08-31] Edge Extension: (Coupert - Automatic Coupon Finder & Cashback) - C:\Users\info\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pefhciejnkgdgoahgfeklebcbpmhnhhd [2022-11-09] FireFox: ======== FF DefaultProfile: 809i2zzj.default FF ProfilePath: C:\Users\info\AppData\Roaming\Mozilla\Firefox\Profiles\809i2zzj.default [2022-04-20] FF ProfilePath: C:\Users\info\AppData\Roaming\Mozilla\Firefox\Profiles\5fqay1vd.default-release-1655979736316 [2022-11-15] FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-10-16] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [Keine Datei] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [Keine Datei] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [Keine Datei] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-02] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-02] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-02] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-02] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-02] (FOXIT SOFTWARE INC. -> Foxit Corporation) Chrome: ======= CHR Profile: C:\Users\info\AppData\Local\Google\Chrome\User Data\Default [2022-11-16] CHR Notifications: Default -> hxxps://business.facebook.com; hxxps://cloudpanel.ionos.de; hxxps://de.aliexpress.com; hxxps://efahrer.chip.de; hxxps://indojobs.co; hxxps://porntop.com; hxxps://stability-protection.com; hxxps://store.dji.com; hxxps://txxx.tube; hxxps://web.telegram.org; hxxps://www.autoscout24.de; hxxps://www.bussgeldkatalog.org; hxxps://www.chip.de; hxxps://www.computerbild.de; hxxps://www.conrad.de; hxxps://www.datenschutz.org; hxxps://www.easeus.de; hxxps://www.express.de; hxxps://www.facebook.com; hxxps://www.focus.de; hxxps://www.fuersie.de; hxxps://www.giga.de; hxxps://www.instagram.com; hxxps://www.manomano.de; hxxps://www.pcwelt.de; hxxps://www.pinterest.de; hxxps://www.pornohut.info; hxxps://www.reddit.com; hxxps://www.reishunger.de; hxxps://www.satellitenschuessel.com; hxxps://www.smartphonevergleich.de; hxxps://www.swp.de; hxxps://www.techbook.de; hxxps://www.testberichte.de; hxxps://www.vergleich.org; hxxps://www.wetter.com; hxxps://www.youtube.com CHR HomePage: Default -> bing.com CHR DefaultSearchURL: Default -> hxxps://www.bing.com/search?EID=MBHSC&form=BGGCMF&pc=__PARAM__BG00&q={searchTerms} CHR DefaultSuggestURL: Default -> hxxps://www.bing.com/osjson.aspx?form=BGGCSS&pc=__PARAM__BG00&query={searchTerms} CHR Extension: (Google Optimize) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhdplaindhdkiflmbfbciehdccfhegci [2022-04-20] CHR Extension: (SEO META in 1 CLICK) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjogjfinolnhfhkbipphpdlldadpnmhc [2022-04-20] CHR Extension: (Microsoft Bing-Startseite und -Suchmaschine) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddojnmkongaimkdddgmcccldlfhokcfb [2022-10-06] CHR Extension: (Google Docs Offline) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-11-07] CHR Extension: (Klarna | Shoppe jetzt. Bezahle später.) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfapbcheiepjppjbnkphkmegjlipojba [2022-11-11] CHR Extension: (PDF verkleinern - Online-Umwandeln.de) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdhnlmeefoadjmabbndlgofibjhghad [2022-04-20] CHR Extension: (Zoom) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmbjbjdpkobdjplfobhljndfdfdipjhg [2022-04-20] CHR Extension: (Ubiquiti Device Discovery Tool) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmpigflbjeapnknladcfphgkemopofig [2022-04-20] CHR Extension: (Programm zur Chromebook-Wiederherstellung) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\jndclpdbaamdhonoechobihbbiimdgai [2022-06-05] CHR Extension: (Grammarly: Grammar Checker and Writing App) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2022-11-16] CHR Extension: (Tag Assistant Legacy (by Google)) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2022-04-20] CHR Extension: (MSN New Tab) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\lklfbkdigihjaaeamncibechhgalldgl [2022-08-31] CHR Extension: (Coupert - Coupon Assistent & Cashback) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfidniedemcgceagapgdekdbmanojomk [2022-11-16] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-04-20] CHR Extension: (Grammatik- und Rechtschreibprüfung - LanguageTool) - C:\Users\info\AppData\Local\Google\Chrome\User Data\Default\Extensions\oldceeleldhonbafppcapldpdifcinji [2022-11-01] CHR HKU\S-1-5-21-2370280882-2776377730-3563973584-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ddojnmkongaimkdddgmcccldlfhokcfb] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3853384 2022-09-17] (philandro Software GmbH -> AnyDesk Software GmbH) S3 dcsvc; C:\WINDOWS\system32\dcsvc.dll [806912 2022-11-08] (Microsoft Windows -> Microsoft Corporation) R2 DolbyDAXAPI; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_da86a3091f808822\DAX3API.exe [2149944 2021-09-02] (Dolby Laboratories, Inc. -> Dolby Laboratories) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [41240 2022-10-26] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [201496 2022-10-26] (Intel Corporation -> Intel) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [206304 2020-10-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [423296 2021-10-07] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2358800 2022-05-20] (FOXIT SOFTWARE INC. -> Foxit Software Inc.) R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.) R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_dd6a7ef14d856351\\AS\\IAS\\IntelAudioService.exe [539816 ] (Intel Corporation -> Intel) S3 InventorySvc; C:\WINDOWS\system32\inventorysvc.dll [304480 2022-10-13] (Microsoft Windows -> Microsoft Corporation) R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_0d436e2e99c9204a\LenovoUtilityService.exe [241880 2022-08-31] (Lenovo -> Lenovo(beijing) Limited) R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe [31072 2022-05-24] (Lenovo -> Lenovo Group Ltd.) R2 LITSSVC; C:\WINDOWS\System32\LNBITSSvc.exe [1832944 2021-08-12] (Lenovo -> Lenovo(beijing) Limited) R2 MSSQL$JTLWAWI; C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\sqlservr.exe [479136 2022-04-30] (Microsoft Corporation -> Microsoft Corporation) R2 SgrmBroker; C:\WINDOWS\system32\Sgrm\SgrmBroker.exe [414632 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation) S4 SQLAgent$JTLWAWI; C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\SQLAGENT.EXE [572848 2022-04-30] (Microsoft Corporation -> Microsoft Corporation) R2 SQLBackupAndFTP Client Service; C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.Service.exe [1332192 2022-10-28] (Pranas.NET Corp -> Pranas.Net) S2 SQLBackupAndFTP Client Service Watchdog; C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.WatchDogService.exe [27104 2022-10-28] (Pranas.NET Corp -> Pranas.Net) R2 SQLTELEMETRY$JTLWAWI; C:\Program Files\Microsoft SQL Server\MSSQL14.JTLWAWI\MSSQL\Binn\sqlceip.exe [246704 2022-04-30] (Microsoft Corporation -> Microsoft Corporation) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [16360768 2022-08-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 TextInputManagementService; C:\WINDOWS\System32\TabSvc.dll [266240 2022-10-13] (Microsoft Windows -> Microsoft Corporation) R2 UDCService; C:\WINDOWS\System32\drivers\Lenovo\udc\Service\UDClientService.exe [71504 2022-05-23] (Lenovo -> Lenovo Group Ltd.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe [3191272 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe [133544 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) S3 wuauserv; C:\WINDOWS\system32\wuauserv.dll [137544 2022-11-08] (Microsoft Windows -> Microsoft Corporation) R2 YMC; C:\WINDOWS\System32\YMC.exe [856920 2020-06-16] (Lenovo -> Lenovo Group Ltd.) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 AcxHdAudio; C:\WINDOWS\System32\drivers\AcxHdAudio.sys [561152 2022-11-08] (Microsoft Windows -> Microsoft Corporation) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R3 avmaura; C:\WINDOWS\System32\drivers\avmaura.sys [116480 2022-05-03] (AVM Computersysteme Vertriebs GmbH -> AVM Berlin) R2 bfs; C:\WINDOWS\system32\drivers\bfs.sys [91480 2022-10-13] (Microsoft Windows -> Microsoft Corporation) S3 BHTPCRDR; C:\WINDOWS\system32\DRIVERS\bhtpcrdr.sys [175832 2020-06-12] (BayHub Technology Inc. -> BayHubTech/O2Micro) R0 bhtsddr; C:\WINDOWS\System32\drivers\bhtsddr.sys [184968 2022-06-15] (BayHub Technology Inc. -> BayHubTech) S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [Datei ist nicht signiert] S0 GenPass; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [62800 2022-05-07] (Microsoft Windows -> Microsoft Corporation) R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_2546dafe2183e972\iaLPSS2_GPIO2_TGL.sys [131224 2021-07-22] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_1308f85f1b0adf27\iaLPSS2_I2C_TGL.sys [204440 2021-07-22] (Intel Corporation -> Intel Corporation) R3 IntcUSB; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_8dd4e6dd6061449d\IntcUSB.sys [1684544 2021-09-01] (Intel Corporation -> Intel(R) Corporation) R3 MpKsl6e59f59f; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A8E241A1-2E11-449B-8B65-E0675EA9EFC9}\MpKslDrv.sys [214280 2022-11-16] (Microsoft Windows -> Microsoft Corporation) S0 pvscsi; C:\WINDOWS\System32\drivers\pvscsii.sys [45408 2022-05-07] (Microsoft Windows -> VMware, Inc.) S3 RoutePolicy; C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304 2022-05-07] (Microsoft Windows -> ) S4 RsFx0501; C:\WINDOWS\System32\DRIVERS\RsFx0501.sys [261784 2022-04-30] (Microsoft Corporation -> Microsoft Corporation) R3 SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [352256 2022-10-13] (Microsoft Windows -> Microsoft Corporation) S3 WacHIDFilterISD; C:\WINDOWS\System32\drivers\WacHIDRouterISDU.sys [115584 2021-06-24] (Wacom Co., Ltd. -> Wacom Technology, Corp.) R3 WacHIDRouterISDF; C:\WINDOWS\System32\drivers\WacHIDRouterISDF.sys [129712 2022-08-19] (Wacom Co., Ltd. -> Wacom Technology, Corp.) S3 WacHIDRouterISDFV; C:\WINDOWS\System32\drivers\WacHIDRouterISDF.sys [129712 2022-08-19] (Wacom Co., Ltd. -> Wacom Technology, Corp.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2022-11-11] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [469288 2022-11-11] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-11-11] (Microsoft Windows -> Microsoft Corporation) R2 wtd; C:\WINDOWS\System32\drivers\wtd.sys [118784 2022-10-13] (Microsoft Windows -> Microsoft Corporation) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-11-16 12:39 - 2022-11-16 12:40 - 000000000 ___DC C:\FRST 2022-11-16 12:39 - 2022-11-16 12:40 - 000000000 ____D C:\Users\info\Desktop\FRST64 2022-11-16 12:16 - 2022-11-16 12:16 - 000723674 _____ C:\WINDOWS\system32\perfh007.dat 2022-11-16 12:16 - 2022-11-16 12:16 - 000149714 _____ C:\WINDOWS\system32\perfc007.dat 2022-11-15 13:49 - 2022-11-15 13:49 - 000001427 _____ C:\WINDOWS\system32\default_error_stack-000036-000000.txt 2022-11-15 13:47 - 2022-10-25 13:19 - 000505224 _____ (Intel) C:\WINDOWS\system32\libvpl.dll 2022-11-15 13:47 - 2022-10-25 13:19 - 000444880 _____ (Intel) C:\WINDOWS\SysWOW64\libvpl.dll 2022-11-15 13:47 - 2022-10-25 13:18 - 000927200 _____ (Intel Corporation) C:\WINDOWS\system32\libmfxhw64.dll 2022-11-15 13:47 - 2022-10-25 13:18 - 000690104 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\libmfxhw32.dll 2022-11-15 13:47 - 2022-10-25 13:16 - 000576008 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll 2022-11-15 13:47 - 2022-10-25 13:16 - 000437528 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll 2022-11-15 13:47 - 2022-10-25 13:16 - 000400344 _____ C:\WINDOWS\SysWOW64\IntelControlLib32.dll 2022-11-15 13:47 - 2022-10-25 13:13 - 027948456 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll 2022-11-15 13:47 - 2022-10-25 13:13 - 001432304 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-11-15 13:47 - 2022-10-25 13:13 - 001432304 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-11-15 13:47 - 2022-10-25 13:13 - 001145584 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-11-15 13:47 - 2022-10-25 13:13 - 001145584 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-11-15 13:47 - 2022-10-25 13:13 - 000477096 _____ C:\WINDOWS\system32\ze_tracing_layer.dll 2022-11-15 13:47 - 2022-10-25 13:13 - 000382888 _____ C:\WINDOWS\system32\ze_loader.dll 2022-11-15 13:47 - 2022-10-25 13:13 - 000143784 _____ C:\WINDOWS\system32\ze_validation_layer.dll 2022-11-15 13:47 - 2022-10-25 13:12 - 020672424 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll 2022-11-15 13:47 - 2022-10-25 13:11 - 000229384 _____ C:\WINDOWS\system32\ControlLib.dll 2022-11-15 13:47 - 2022-10-25 13:11 - 000181896 _____ C:\WINDOWS\SysWOW64\ControlLib32.dll 2022-11-15 13:45 - 2022-11-15 13:45 - 000002006 _____ C:\Users\info\AppData\Local\81CA30334D9E477c9EC36502DE68F5E4.Layout2.lbx 2022-11-14 17:39 - 2022-11-14 17:39 - 000251080 _____ C:\Users\info\Downloads\WhatsApp Image 2022-11-14 at 17.38.16.jpeg 2022-11-10 14:21 - 2022-11-10 14:21 - 000053596 _____ C:\Users\info\Downloads\01785088128611.pdf 2022-11-10 14:21 - 2022-11-10 14:21 - 000001159 _____ C:\Users\Public\Desktop\JTL-Wawi.lnk 2022-11-10 14:21 - 2022-11-10 14:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JTL-Wawi 2022-11-10 14:18 - 2022-11-10 14:19 - 283677024 _____ (JTL-Software GmbH ) C:\Users\info\Downloads\setup-jtl-wawi_1.6.44.0_1108-1128_9053a37a28e.exe 2022-11-09 13:54 - 2022-11-09 13:54 - 000016519 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-11-09 13:51 - 2022-11-09 13:51 - 000000000 __HDC C:\$WinREAgent 2022-11-08 15:03 - 2022-11-08 15:03 - 045599370 _____ C:\Users\info\Downloads\update_5.7.16_f95107110946121f71a45e470e9fd444da44bf94.zip 2022-11-08 14:21 - 2022-11-08 14:54 - 000047551 _____ C:\Users\info\Desktop\image0.jpeg 2022-11-08 13:59 - 2022-11-08 13:59 - 000094208 _____ C:\WINDOWS\system32\SecureBootEncodeUEFI.exe 2022-11-08 13:59 - 2022-11-08 13:59 - 000062832 _____ C:\WINDOWS\system32\AppInstallerBackgroundUpdate.exe 2022-11-08 13:55 - 2022-11-08 13:55 - 011847936 _____ (Tim Kosse) C:\Users\info\Downloads\FileZilla_3.60.2_win64-setup.exe 2022-11-08 13:44 - 2022-11-08 13:44 - 000001995 _____ C:\Users\Public\Desktop\P-touch Editor 5.4.lnk 2022-11-08 13:43 - 2022-11-08 13:43 - 110550160 _____ (Brother Industries, Ltd. ) C:\Users\info\Downloads\pew54007ger.exe 2022-11-08 13:43 - 2022-11-08 13:43 - 004306456 _____ (Brother Industries, Ltd. ) C:\Users\info\Downloads\puw10022.exe 2022-11-08 13:43 - 2022-11-08 13:43 - 000002114 _____ C:\Users\Public\Desktop\P-touch Update Software.lnk 2022-11-07 13:55 - 2022-11-07 13:55 - 000001426 _____ C:\WINDOWS\system32\default_error_stack-000035-000000.txt 2022-11-07 13:55 - 2022-11-07 13:55 - 000000000 ____D C:\Users\info\AppData\Roaming\com.adobe.dunamis 2022-11-07 13:55 - 2022-11-07 13:55 - 000000000 ____D C:\Users\info\AppData\LocalLow\Adobe 2022-11-07 13:55 - 2022-11-07 13:55 - 000000000 ____D C:\Users\info\AppData\Local\SolidDocuments 2022-11-07 13:55 - 2022-11-07 13:55 - 000000000 ____D C:\Users\info\.ms-ad 2022-11-07 13:54 - 2022-11-07 13:54 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-11-07 13:53 - 2022-11-07 13:53 - 000002124 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2022-11-07 13:53 - 2022-11-07 13:53 - 000002112 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2022-11-07 13:52 - 2022-11-08 13:46 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2022-11-07 13:52 - 2022-11-07 13:55 - 000000000 ____D C:\ProgramData\Adobe 2022-11-07 13:51 - 2022-11-07 14:08 - 000000000 ____D C:\Users\info\AppData\Local\Adobe 2022-11-05 13:58 - 2022-11-05 13:58 - 012930989 _____ C:\Users\info\Downloads\PlusIPTV2.0.14.apk 2022-11-05 13:43 - 2022-11-05 13:43 - 000065980 _____ C:\Users\info\Downloads\TX-24LSW504-warranty-1667652199832.pdf 2022-11-05 12:39 - 2022-11-05 12:39 - 000030750 _____ C:\Users\info\Downloads\04540161830761480011AD06DE4A.ipk 2022-11-05 12:38 - 2022-11-05 12:38 - 000053885 _____ C:\Users\info\Downloads\WhatsApp Image 2022-11-05 at 12.37.35.jpeg 2022-11-04 16:24 - 2022-11-04 16:24 - 000000000 ____D C:\Users\info\AppData\Local\Cloud Game 2022-11-04 15:56 - 2022-11-04 15:56 - 000030625 _____ C:\Users\info\Downloads\Invoice 344.pdf 2022-11-04 15:11 - 2022-11-04 15:11 - 000001427 _____ C:\WINDOWS\system32\default_error_stack-000034-000000.txt 2022-11-04 14:43 - 2022-11-04 14:43 - 000002003 _____ C:\Users\info\AppData\Local\C49A4D73BD7344efA90AC9C9B5468D89.Layout2.lbx 2022-11-04 13:55 - 2022-11-04 13:55 - 000033478 _____ C:\Users\info\Downloads\DHL-Paketmarke_P9PS4T8CP2RE_1_M_N_Nuri.pdf 2022-11-03 14:29 - 2022-11-03 14:29 - 000075988 _____ C:\Users\info\Downloads\WhatsApp Image 2022-11-03 at 14.28.03.jpeg 2022-11-02 16:02 - 2022-11-02 16:02 - 000030582 _____ C:\Users\info\Downloads\enigma2-plugin-extensions-caminfo_1.20_mipsel.ipk 2022-11-02 12:52 - 2022-11-02 12:52 - 000001427 _____ C:\WINDOWS\system32\default_error_stack-000033-000000.txt 2022-11-01 20:10 - 2022-11-02 16:12 - 000037972 _____ C:\Users\info\Downloads\849912521804623844700B09C927.ipk 2022-11-01 19:38 - 2022-11-01 19:38 - 000033564 _____ C:\Users\info\Downloads\DHL-Paketmarke_RSCTQKHFW8RV_2_Christoph_Grabe.pdf 2022-11-01 19:33 - 2022-11-14 15:15 - 000000000 ____D C:\Users\info\Desktop\Rechnungen November 2022-11-01 18:33 - 2022-11-01 18:33 - 000028086 _____ C:\Users\info\Downloads\Kuendigung-Vorschau (1).pdf 2022-11-01 18:32 - 2022-11-01 18:32 - 000028086 _____ C:\Users\info\Downloads\Kuendigung-Vorschau.pdf 2022-11-01 13:29 - 2022-11-01 13:29 - 000001561 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk 2022-10-31 17:04 - 2022-10-31 17:04 - 000037459 _____ C:\Users\info\Downloads\DHL-Paketmarke_7AHSE42GYR3P_1_Sevil_Hosseini_.pdf 2022-10-31 17:04 - 2022-10-31 17:04 - 000006453 _____ C:\Users\info\Downloads\DOF-2210317AHSE42GYR3P-0024844917.pdf 2022-10-31 16:58 - 2022-10-31 16:58 - 000030366 _____ C:\Users\info\Downloads\Invoice 340.pdf 2022-10-28 14:49 - 2022-10-28 14:49 - 000003864 _____ C:\Users\info\Downloads\Widerrufsbelehrung.txt 2022-10-28 14:46 - 2022-10-28 14:46 - 000051251 _____ C:\Users\info\Downloads\protocol.pdf 2022-10-27 17:44 - 2022-10-27 17:44 - 003682167 _____ C:\Users\info\Downloads\image2.jpeg 2022-10-27 17:44 - 2022-10-27 17:44 - 003530453 _____ C:\Users\info\Downloads\image1.jpeg 2022-10-27 17:44 - 2022-10-27 17:44 - 002665920 _____ C:\Users\info\Downloads\image0.jpeg 2022-10-26 12:32 - 2022-10-17 19:59 - 000000000 ____D C:\Users\info\Documents\BWA 2022-10-26 12:30 - 2022-10-26 12:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lenovo 2022-10-26 12:25 - 2022-10-26 12:25 - 000001427 _____ C:\WINDOWS\system32\default_error_stack-000032-000000.txt 2022-10-25 13:13 - 2022-10-25 13:13 - 001969712 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-10-25 13:13 - 2022-10-25 13:13 - 001969712 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-10-25 13:13 - 2022-10-25 13:13 - 001526320 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-10-25 13:13 - 2022-10-25 13:13 - 001526320 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-10-22 16:04 - 2022-10-22 16:04 - 004810829 _____ C:\Users\info\Downloads\Rechnungen August.rar 2022-10-22 16:04 - 2022-10-22 16:04 - 000004102 _____ C:\Users\info\Downloads\Rechnungen August.html 2022-10-22 14:51 - 2022-10-22 14:51 - 000001425 _____ C:\WINDOWS\system32\default_error_stack-000031-000000.txt 2022-10-21 19:55 - 2022-10-21 19:55 - 000002002 _____ C:\Users\info\AppData\Local\B69066101E6440dbB1094ACE3260ED21.Layout2.lbx 2022-10-20 11:59 - 2022-10-20 12:01 - 281060288 _____ (JTL-Software GmbH ) C:\Users\info\Downloads\setup-jtl-wawi_1.6.43.1_1017-1557_f2e99a23f5b.exe 2022-10-19 17:42 - 2022-10-19 17:42 - 000001427 _____ C:\WINDOWS\system32\default_error_stack-000030-000000.txt 2022-10-19 12:39 - 2022-10-19 12:39 - 000000000 ____D C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bing Wallpaper 2022-10-18 17:42 - 2022-10-18 17:42 - 000001427 _____ C:\WINDOWS\system32\default_error_stack-000029-000000.txt 2022-10-17 19:59 - 2022-10-17 19:59 - 000791682 _____ C:\Users\info\Downloads\Fragebogen_compressed (1).pdf 2022-10-17 19:58 - 2022-10-17 19:58 - 003272363 _____ C:\Users\info\Downloads\Fragebogen_compressed.pdf 2022-10-17 13:54 - 2022-10-17 13:54 - 000000000 ___DC C:\tenorshare 2022-10-17 13:54 - 2022-10-17 13:54 - 000000000 ____D C:\Users\info\AppData\Roaming\TSMonitor 2022-10-17 13:54 - 2022-10-17 13:54 - 000000000 ____D C:\Users\info\.android 2022-10-17 13:54 - 2022-10-17 13:54 - 000000000 ____D C:\Program Files\DIFX 2022-10-17 13:53 - 2022-10-17 13:53 - 001885072 _____ (Tenorshare Co., Ltd.) C:\Users\info\Downloads\4ukeyforandroid.exe 2022-10-17 13:53 - 2022-10-17 13:53 - 000000000 ____D C:\Program Files (x86)\Tenorshare ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2022-11-16 12:32 - 2022-04-20 13:22 - 000000000 ____D C:\Program Files (x86)\Google 2022-11-16 12:30 - 2022-04-20 13:07 - 000000000 ____D C:\Users\info\AppData\Local\D3DSCache 2022-11-16 12:20 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2022-11-16 12:16 - 2022-10-06 16:03 - 001871538 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-11-16 12:16 - 2022-05-07 06:22 - 000000000 ____D C:\WINDOWS\INF 2022-11-16 12:16 - 2022-04-20 15:07 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-11-16 12:15 - 2022-04-20 15:07 - 000000000 ____D C:\Users\info\AppData\LocalLow\Mozilla 2022-11-16 12:13 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-11-16 12:13 - 2022-04-20 13:16 - 000000000 ____D C:\Users\info\AppData\Local\LogiBolt 2022-11-16 12:12 - 2022-10-06 16:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-11-16 12:12 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ServiceState 2022-11-16 12:12 - 2022-04-20 15:19 - 000000000 ____D C:\Program Files\TeamViewer 2022-11-16 12:12 - 2022-04-20 13:07 - 000000000 __SHD C:\Users\info\IntelGraphicsProfiles 2022-11-16 12:12 - 2021-12-02 20:42 - 000000000 ___HD C:\Intel 2022-11-16 12:12 - 2021-06-23 19:44 - 000012288 ___SH C:\DumpStack.log.tmp 2022-11-15 19:42 - 2022-05-07 06:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-11-15 17:22 - 2022-10-06 16:01 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2370280882-2776377730-3563973584-1001 2022-11-15 17:22 - 2022-10-06 16:01 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2370280882-2776377730-3563973584-1001 2022-11-15 17:22 - 2022-04-20 13:09 - 000002447 _____ C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-11-15 17:21 - 2022-10-06 15:55 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-11-15 14:45 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps 2022-11-15 14:45 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-11-15 13:20 - 2022-04-20 13:45 - 000000000 ____D C:\ProgramData\Package Cache 2022-11-12 12:45 - 2021-06-23 19:45 - 000002489 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-11-12 12:39 - 2022-10-06 16:01 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-11-12 12:39 - 2022-10-06 16:01 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-11-11 12:52 - 2021-06-23 19:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-11-11 00:11 - 2022-04-20 13:22 - 000002290 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-11-11 00:11 - 2022-04-20 13:22 - 000002249 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-11-10 14:38 - 2022-04-20 15:05 - 000000000 ____D C:\Program Files (x86)\Intel 2022-11-10 14:21 - 2022-04-20 13:39 - 000000000 ____D C:\Program Files (x86)\JTL-Software 2022-11-09 22:42 - 2022-10-06 15:55 - 000571336 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-11-09 22:41 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemResources 2022-11-09 22:41 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-11-09 14:00 - 2022-08-17 13:39 - 000000000 ____D C:\Program Files\dotnet 2022-11-09 13:59 - 2022-04-22 12:55 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-11-09 13:57 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-11-09 13:57 - 2022-04-22 12:55 - 146960040 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-11-09 13:54 - 2022-10-06 15:57 - 003212288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-11-08 15:23 - 2022-04-20 15:16 - 000000128 _____ C:\Users\info\AppData\Local\PUTTY.RND 2022-11-08 14:05 - 2022-04-20 13:07 - 000000000 ____D C:\Users\info\AppData\Local\Packages 2022-11-08 14:03 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\UUS 2022-11-08 14:03 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2022-11-08 14:03 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2022-11-08 14:03 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2022-11-08 14:03 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\setup 2022-11-08 14:03 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-11-08 14:03 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-11-08 14:03 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellComponents 2022-11-08 13:57 - 2022-04-20 14:43 - 000000000 ____D C:\Users\info\AppData\Roaming\FileZilla 2022-11-08 13:56 - 2022-04-20 14:43 - 000001971 _____ C:\Users\Public\Desktop\FileZilla Client.lnk 2022-11-08 13:56 - 2022-04-20 14:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2022-11-08 13:56 - 2022-04-20 14:43 - 000000000 ____D C:\Program Files\FileZilla FTP Client 2022-11-08 13:46 - 2022-04-20 15:07 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-11-08 13:45 - 2022-09-17 13:41 - 000000000 ____D C:\Program Files (x86)\AnyDesk 2022-11-08 13:44 - 2022-09-08 12:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch 2022-11-08 13:44 - 2022-09-08 12:03 - 000000000 ____D C:\Program Files (x86)\Brother 2022-11-08 13:44 - 2022-04-20 15:40 - 000000000 ____D C:\Users\info\AppData\Roaming\Brother 2022-11-08 13:30 - 2022-07-22 19:06 - 000000000 ____D C:\Users\info\AppData\Local\BlueStacks 2022-11-08 13:27 - 2022-04-20 16:08 - 000000000 ____D C:\Users\info\Desktop\Unterlagen 2022-11-07 14:38 - 2022-04-20 15:09 - 000001066 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2022-11-07 14:14 - 2022-07-22 19:08 - 000000000 ____D C:\ProgramData\boost_interprocess 2022-11-07 13:55 - 2022-10-06 15:28 - 000000000 ____D C:\Users\info 2022-11-07 13:55 - 2022-04-20 13:07 - 000000000 ____D C:\Users\info\AppData\Roaming\Adobe 2022-11-07 13:53 - 2022-09-24 19:55 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-11-07 13:53 - 2022-09-24 19:55 - 000000000 ____D C:\Program Files\Adobe 2022-11-04 16:28 - 2022-07-22 19:06 - 000000000 ____D C:\Users\Public\BlueStacks 2022-11-02 20:47 - 2022-04-22 15:01 - 000000000 ____D C:\Users\info\AppData\Local\CrashDumps 2022-11-02 12:53 - 2022-04-20 14:53 - 000000000 ____D C:\WINDOWS\TempInst 2022-11-01 20:06 - 2022-10-04 17:38 - 000000000 ____D C:\Users\info\Desktop\Rechnungen Oktober 2022-10-29 15:30 - 2022-04-20 15:15 - 000000000 ____D C:\Program Files (x86)\SQLBackupAndFTP 2022-10-26 12:34 - 2021-12-02 20:37 - 000000000 ____D C:\ProgramData\Lenovo 2022-10-26 12:30 - 2022-10-06 16:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\TVT 2022-10-26 12:30 - 2021-12-02 20:43 - 000000000 ____D C:\Program Files (x86)\Lenovo 2022-10-26 12:29 - 2022-08-24 12:29 - 000000882 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog 2022-10-25 18:20 - 2022-09-21 22:26 - 000000000 ____D C:\Users\info\AppData\Local\ElevatedDiagnostics 2022-10-22 15:10 - 2022-04-20 15:05 - 000000000 ____D C:\Program Files\Intel 2022-10-18 18:07 - 2022-10-06 12:20 - 000000000 ___DC C:\WINDOWS\Panther ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2022-10-12 13:08 - 2022-10-12 13:08 - 000011663 _____ () C:\Program Files (x86)\Player Setup Log.txt 2022-08-19 19:51 - 2022-08-19 19:51 - 000002005 _____ () C:\Users\info\AppData\Local\13B5078A926547c191B3F2E23D81B7D2.Layout2.lbx 2022-05-23 16:43 - 2022-05-23 16:43 - 000001992 _____ () C:\Users\info\AppData\Local\1EAAD905272A49f9A0E079BF6938A07F.Layout2.lbx 2022-10-13 14:28 - 2022-10-13 14:28 - 000001994 _____ () C:\Users\info\AppData\Local\2E6C8F14F05F4f7bA85A49ADBBFEB5EC.Layout2.lbx 2022-09-16 16:49 - 2022-09-16 16:49 - 000001998 _____ () C:\Users\info\AppData\Local\3A550B488B0C4a74944EC7E07B29FD07.Layout2.lbx 2022-08-29 19:50 - 2022-08-29 19:50 - 000002003 _____ () C:\Users\info\AppData\Local\46C1B633626D45b0B6F975836CC24DE5.Layout2.lbx 2022-04-29 17:15 - 2022-04-29 17:15 - 000001966 _____ () C:\Users\info\AppData\Local\7252FFA67B07477cB0B512EFC33B28C9.Layout2.lbx 2022-09-16 13:36 - 2022-09-16 13:36 - 000002001 _____ () C:\Users\info\AppData\Local\779AD7DB0EDF4e9eB528BB045DB580B3.Layout2.lbx 2022-05-04 16:48 - 2022-05-04 16:48 - 000001997 _____ () C:\Users\info\AppData\Local\7F145FA2FE38471cA2E8D80C56AD6789.Layout2.lbx 2022-11-15 13:45 - 2022-11-15 13:45 - 000002006 _____ () C:\Users\info\AppData\Local\81CA30334D9E477c9EC36502DE68F5E4.Layout2.lbx 2022-09-16 13:37 - 2022-09-16 13:37 - 000002004 _____ () C:\Users\info\AppData\Local\87A6DD83DC364ba68B2A43C84AE6540E.Layout2.lbx 2022-10-21 19:55 - 2022-10-21 19:55 - 000002002 _____ () C:\Users\info\AppData\Local\B69066101E6440dbB1094ACE3260ED21.Layout2.lbx 2022-11-04 14:43 - 2022-11-04 14:43 - 000002003 _____ () C:\Users\info\AppData\Local\C49A4D73BD7344efA90AC9C9B5468D89.Layout2.lbx 2022-10-07 17:33 - 2022-10-07 17:33 - 000002000 _____ () C:\Users\info\AppData\Local\CE85D06A6F094453958B77B4E63951B5.Layout2.lbx 2022-05-09 18:29 - 2022-05-09 18:29 - 000001992 _____ () C:\Users\info\AppData\Local\CE9075D9D8B54a10AE29B6D4FE4DF4A9.Layout2.lbx 2022-07-13 18:05 - 2022-07-13 18:05 - 000001988 _____ () C:\Users\info\AppData\Local\D3A5E65367DD4fca8A1E23826DE5C8E4.Layout2.lbx 2022-06-09 19:07 - 2022-06-09 19:07 - 000002001 _____ () C:\Users\info\AppData\Local\D9CB3A8B287A4ee8AA1EF63073B36708.Layout2.lbx 2022-06-24 13:14 - 2022-06-24 13:14 - 000002000 _____ () C:\Users\info\AppData\Local\E41E8E1989204b889DE68AE1F452246B.Layout2.lbx 2022-06-20 18:35 - 2022-06-20 18:35 - 000001958 _____ () C:\Users\info\AppData\Local\EDDAFA0E6065415a80546761CCCDED0D.Layout2.lbx 2022-04-20 15:16 - 2022-11-08 15:23 - 000000128 _____ () C:\Users\info\AppData\Local\PUTTY.RND 2022-08-29 15:44 - 2022-08-29 15:44 - 000002807 _____ () C:\Users\info\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== Der Text, den Sie eingegeben haben, besteht aus 129011 Zeichen und ist damit zu lang. Bitte die Logs auf mehrere Beiträge aufspalten mit maximaler Länge von 120000 Zeichen. |
Themen zu Wharscheinlich! Trojaner oder Wurm! Meine Email Inhalte waren in Spam emails |
email, emails, inhalte, rechner, spam, spam email, troja, trojaner, wurm, überprüfe, überprüfen |