|
Log-Analyse und Auswertung: Der Zugriff auf diesen PC wurde gesperrt HilfeWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
16.03.2023, 09:41 | #1 |
| Der Zugriff auf diesen PC wurde gesperrt Hilfe Hallo Ich habe an meinem Laptop plötzlich die melden bekommen: Der Zugriff auf diesen PC wurde aus Sicherheitsgründen gesperrt Kontaktieren sie den Windows Support Ich habe natürlich den Laptop sofort neu gestartet dann war es weg Kann mir bitte jemand weiterhelfen Danke |
16.03.2023, 09:53 | #2 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Der Zugriff auf diesen PC wurde gesperrt HilfeZitat:
__________________ |
16.03.2023, 10:36 | #3 |
| Der Zugriff auf diesen PC wurde gesperrt HilfeCode:
ATTFilter durchgeführt von Ikonia (16-03-2023 09:59:13) Gestartet von D:\ Microsoft Windows 10 Home Version 22H2 19045.2728 (X64) (2022-11-04 08:08:56) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-267109815-2813959242-261323033-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-267109815-2813959242-261323033-503 - Limited - Disabled) defaultuser0 (S-1-5-21-267109815-2813959242-261323033-1000 - Limited - Disabled) => C:\Users\defaultuser0 Gast (S-1-5-21-267109815-2813959242-261323033-501 - Limited - Disabled) Ikonia (S-1-5-21-267109815-2813959242-261323033-1001 - Administrator - Enabled) => C:\Users\Ikonia WDAGUtilityAccount (S-1-5-21-267109815-2813959242-261323033-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Security (Enabled - Up to date) {2AF5B707-827E-6586-3C2C-03228A21FF9A} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Avira Security (Enabled) {71EC0A3F-391C-0E33-A103-0C8A6DF0EBF0} FW: Avira Security (Enabled) {4EFB3EBA-D5BC-D311-F570-D3065B48D523} FW: Avira Security (Enabled) {12CE3622-C811-64DE-1773-AA1774F2B8E1} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 18.05 (x64) (HKLM\...\7-Zip) (Version: 18.05 - Igor Pavlov) abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.08.2001 - Acer Incorporated) abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 4.00.2001.1 - Acer Incorporated) Acer Collection (HKLM-x32\...\{8CD449EA-BBA0-477F-AFF9-9AF6E8C50EF2}) (Version: 1.01.3011 - Acer Incorporated) Acer Configuration Manager (HKLM-x32\...\{8CB1A03C-9849-4744-AD56-341A18F9E3E2}) (Version: 2.5.22250 - Acer) Acer Jumpstart (HKLM-x32\...\{0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C}) (Version: 3.5.22220.20 - Acer) Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.12.2006 - Acer Incorporated) Acer Quick Access (HKLM\...\{8BBF04F1-C68A-441C-B5EF-446EE9960EAF}) (Version: 2.01.3008 - Acer Incorporated) Acer UEIP Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 3.02.3001 - Acer Incorporated) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 22.003.20322 - Adobe) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.445 - Adobe) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Any Video Converter 7.1.0 (HKLM-x32\...\Any Video Converter) (Version: 7.1.0 - Anvsoft) AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.25.2001.0 - Acer Incorporated) App Explorer (HKU\S-1-5-21-267109815-2813959242-261323033-1000\...\Host App Service) (Version: 0.272.1.295 - SweetLabs) <==== ACHTUNG App Explorer (HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Host App Service) (Version: 0.273.4.604 - SweetLabs) <==== ACHTUNG Apple Application Support (32-Bit) (HKLM-x32\...\{6CF0CAEE-54B6-4D84-A055-3AF110F189D3}) (Version: 8.4 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{8B127943-89E7-4691-A7A4-D05807920A84}) (Version: 8.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{065D0CC8-C382-48AF-8A88-0DD3366EB26C}) (Version: 16.0.0.25 - Apple Inc.) Apple Software Update (HKLM-x32\...\{B292D163-23D2-4523-A699-1ABEC1875609}) (Version: 2.7.0.3 - Apple Inc.) Avira Fallback Updater (HKLM-x32\...\Avira Fallback Updater) (Version: - ) Hidden Avira Phantom VPN (HKLM-x32\...\Avira Phantom VPN) (Version: 2.41.1.25731 - Avira Operations GmbH & Co. KG) Hidden Avira Security (HKLM-x32\...\Avira Security_is1) (Version: 1.1.84.10 - Avira Operations GmbH) Hidden Avira Security (HKLM-x32\...\AviraSecurityUninstaller) (Version: - Avira Operations GmbH & Co. KG) Avira System Speedup (HKLM-x32\...\Avira System Speedup_is1) (Version: 6.24.0.14 - Avira Operations GmbH) Hidden BEWERBUNGSMASTER (HKLM-x32\...\ST6UNST #1) (Version: - ) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3029 - Acer Incorporated) CCleaner (HKLM\...\CCleaner) (Version: 6.10 - Piriform) CCleaner Browser (HKLM-x32\...\CCleaner Browser) (Version: 110.0.20395.180 - Die CCleaner Browser-Autoren) CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1583.3 - Piriform Software) Hidden CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP) CrystalDiskInfo 8.17.11 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.17.11 - Crystal Dew World) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Driver Easy 5.7.4 (HKLM\...\DriverEasy_is1) (Version: 5.7.4 - Easeware) DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3019 - Acer Incorporated) Endpoint Protection SDK (HKLM\...\{68E1CCB4-4965-4713-BDEB-77F6D6C9BF9D}_is1) (Version: 1.0.2301.380 - Avira Operations GmbH & Co. KG) Hidden Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden EPSON ET-2710 Series Printer Uninstall (HKLM\...\EPSON ET-2710 Series) (Version: - Seiko Epson Corporation) Epson Event Manager (HKLM-x32\...\{DBC38C08-9FB5-43A5-B6BA-EB10AC7DA570}) (Version: 3.11.0053 - Seiko Epson Corporation) Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation) EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.) EPSON Scan PDF Extensions (HKLM-x32\...\{F9956472-6E16-4F83-BF9A-F887EF4A45B7}) (Version: 1.03.0001 - SEIKO EPSON Corp.) Epson Software Updater (HKLM-x32\...\{28C66F35-69BF-4376-BC80-4D5F4808FF3C}) (Version: 4.6.1 - Seiko Epson Corporation) EPSON-Handbücher (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.57.0.0 - Seiko Epson Corporation) EpsonNet Print (HKLM\...\{96ED1D58-440C-4345-8FEE-C4781366C67F}) (Version: 3.1.4.0 - SEIKO EPSON Corporation) Fotogalerie (HKLM-x32\...\{41BF4A3B-D60A-4E92-883F-C88C8C157261}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Free Video Editor (HKLM-x32\...\Free Video Editor_is1) (Version: 1.4.54.606 - Digital Wave Ltd) Free Video to DVD Converter (HKLM-x32\...\Free Video to DVD Converter_is1) (Version: 5.0.99.823 - Digital Wave Ltd) Free YouTube To MP3 Converter (HKLM-x32\...\Free YouTube To MP3 Converter_is1) (Version: 4.3.8.1227 - Digital Wave Ltd) HandBrake 1.2.2 (HKLM-x32\...\HandBrake) (Version: 1.2.2 - ) iDevice Manager (HKLM\...\FE5AE7DC-7B01-4263-A94C-B4526C276551_is1) (Version: 10.14.0.0 - Marx Software) Intel(R) Chipset Device Software (HKLM\...\{81520FC5-3518-40E9-9803-70CE8A801D07}) (Version: 10.1.1.38 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1025 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{4EB05024-F740-48CF-B9B0-62A041E22D5C}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{DD04783C-E206-46DB-97A7-1155B1C76038}) (Version: 11.6.0.1025 - Intel Corporation) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.5038 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1633.3 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{EC883E72-01ED-4DED-AA46-9162C34A7D4F}) (Version: 30.100.1633.03 - Intel Corporation) Hidden Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{8790ED90-756F-45DD-B38F-7436093963C6}) (Version: 19.11.1639.0649 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden Intel® Trusted Connect Service Client (HKLM\...\{75FE588B-F158-4BB3-A283-A8D18E522A52}) (Version: 1.43.301.1 - Intel Corporation) Hidden iTunes (HKLM\...\{90148675-B089-49F2-8640-FD3E5239546C}) (Version: 12.12.7.1 - Apple Inc.) Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Lazesoft Recovery Suite version 4.5 Home Edition (HKLM-x32\...\LS-32CB12D5-CC47-4BC8-BC97-0613CDCB0406_is1) (Version: 4.5 - Lazesoft) Malwarebytes version 4.5.23.241 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.23.241 - Malwarebytes) Microsoft 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.16130.20218 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 111.0.1661.41 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 110.0.1587.69 - Microsoft Corporation) Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Office Word Viewer 2003 (HKLM-x32\...\{90850407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\OneDriveSetup.exe) (Version: 23.038.0219.0001 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation) Microsoft VC++ redistributables repacked. (HKLM\...\{B409944C-1493-4B0D-A92C-2CE3C5F5F289}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft VC++ redistributables repacked. (HKLM-x32\...\{0E8D087B-5654-4010-AF4D-DE1250B8C1EB}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.23918 (HKLM\...\{DFFEB619-5455-3697-B145-243D936DB95B}) (Version: 14.0.23918 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.23918 (HKLM\...\{7B50D081-E670-3B43-A460-0E2CDB5CE984}) (Version: 14.0.23918 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation) Microsoft Visual C++ 2019 X86 Additional Runtime - 14.23.27820 (HKLM-x32\...\{86BE78D9-65A1-4E69-86F8-C1F5281F8553}) (Version: 14.23.27820 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.23.27820 (HKLM-x32\...\{00AC3934-26B4-406E-807C-1692AC7329EC}) (Version: 14.23.27820 - Microsoft Corporation) Hidden Microsoft_VC100_CRT_x86 (HKLM-x32\...\{6FDDB201-2CA0-42BD-973F-7B2C4A61EA3F}) (Version: 1.0.0 - Microsoft) Movie Maker (HKLM-x32\...\{70C91B91-61E8-4D06-86D6-A9DCC291983A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox (x64 de) (HKLM\...\Mozilla Firefox 110.0.1 (x64 de)) (Version: 110.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 61.0 - Mozilla) MP3Studio YouTube Downloader (HKLM-x32\...\{86f915b6-9939-456d-9aef-93986b672647}) (Version: 1.4.1.3 - MP3Studio) MP3Studio YouTube Downloader (HKLM-x32\...\{8828B81C-022A-4B85-9288-1C8EEB67F68C}) (Version: 1.4.1.3 - MP3Studio/) Hidden MSVCRT (HKLM-x32\...\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (HKLM-x32\...\{D0B44725-3666-492D-BEF6-587A14BD9BD9}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (HKLM-x32\...\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}) (Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (HKLM\...\{E9FA781F-3E80-4399-825A-AD3E11C28C77}) (Version: 16.4.1109.0912 - Microsoft) Hidden NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation) NVIDIA Grafiktreiber 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden osrss (HKLM-x32\...\{1BA1133B-1C7A-41A0-8CBF-9B993E63D296}) (Version: 1.0.0 - Microsoft Corporation) Hidden PDF24 Creator 10.7.1 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 10.7.1 - PDF24.org) PdfEditor 4.0 (64bit) (HKLM\...\{A3988936-7316-4777-AB16-71876BE21BE5}) (Version: 4.0.0.28 - PixelPlanet) Photo Common (HKLM-x32\...\{87DABDEA-47A4-4182-AA7C-2C90DAAE3117}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Photo Gallery (HKLM-x32\...\{07AAB66E-4718-422D-9218-4AFB3C922A71}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PixelPlanet PdfPrinter 7 (64bit) (HKLM\...\{000F58F3-A544-4BB5-AF1B-761EA1C8595C}) (Version: 7.0.161 - PixelPlanet) PS Remote Play (HKLM-x32\...\{18E06000-568E-4D9D-B506-EF3D3873210D}) (Version: 6.0.0.02240 - Sony Interactive Entertainment Inc.) Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10388 - Qualcomm Atheros) Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.278 - Qualcomm Atheros) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.65 - Qualcomm Atheros) RealNetworks - Microsoft Visual C++ 2008 Runtime (HKLM-x32\...\{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}) (Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (HKLM-x32\...\{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}) (Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 22.0) (Version: 22.0.1 - RealNetworks) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21299 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8158 - Realtek Semiconductor Corp.) Recover Keys (HKLM-x32\...\Recover Keys_is1) (Version: 11.0.4.235 - Recover Keys) StarBurn Version 15.7 (Build 0x20170407) (HKLM-x32\...\StarBurn_is1) (Version: 15.7 - StarBurn Software) TomTom MyDrive Connect 4.2.13.4348 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.13.4348 - TomTom) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation) UpdateAssistant (HKLM\...\{57D07AAD-97E2-4E16-89C4-1A3C51BC9C98}) (Version: 1.16.0.0 - Microsoft Corporation) Hidden UpdateService (HKLM-x32\...\{E3AE96D6-E196-45B4-AF62-2B41998B9E37}) (Version: 1.0.0 - RealNetworks, Inc.) Hidden VAG EEPROM Programmer (HKLM-x32\...\VAG EEPROM Programmer) (Version: - ) VAIO - Remote Play mit PlayStation®3 (HKLM-x32\...\{07441A52-E208-478A-92B7-5C337CA8C131}) (Version: 1.1.0.12240 - Sony Corporation) vc2012_redist (HKLM-x32\...\{9402AEF2-5981-4097-8BE2-6501DAC4DBFD}) (Version: 1.0.0.0 - Realnetworks) Hidden VCDS DRV 22.10 (HKLM-x32\...\VCDS DRV) (Version: DRV 22.10.0 - Ross-Tech, LLC) VdhCoApp 1.3.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper) VLC media player (HKLM\...\VLC media player) (Version: 3.0.6 - VideoLAN) vs2015_redist x86 (HKLM-x32\...\{BD46163A-0331-4A61-B65A-7B66D7C93F8E}) (Version: 1.0.0.0 - Realnetworks) Hidden Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.1.70.1 (HKLM\...\VulkanRT1.1.70.1) (Version: 1.1.70.1 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.1.70.1 (HKLM\...\VulkanRT1.1.70.1-2) (Version: 1.1.70.1 - LunarG, Inc.) Hidden WhatsApp (HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\WhatsApp) (Version: 2.2306.9 - WhatsApp) Windows 10-Update-Assistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation) Windows Live Communications Platform (HKLM-x32\...\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\{66233218-CA57-4AB2-BA43-A97AA4635960}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Installer (HKLM-x32\...\{659CB81C-B54E-4DF1-B618-F35777393A54}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{F7232FE1-BC35-4229-8D76-D49941FE9929}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (HKLM-x32\...\{B23EE11C-66FA-4395-AB02-5F7103DC485C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (HKLM-x32\...\{E703613B-BDAB-433E-A66A-DE0263E3D35D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (HKLM\...\{25058321-C33E-496B-8915-6FD64D362CAF}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (HKLM-x32\...\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (HKLM-x32\...\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (HKLM-x32\...\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (HKLM-x32\...\{D1893000-EA77-493C-8DDD-E262436E959B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (HKLM-x32\...\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (HKLM-x32\...\{FC071B45-4A5F-408F-92F8-4D9D693E866F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{714E162E-CD4F-4F1B-8302-7F5179409C25}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{955E4722-1480-4198-A144-65FA5F4446DA}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (HKLM-x32\...\{A951D5DA-4759-4C3B-9C36-C6BF30082A2F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - ) Windows-PC-Integritätsprüfung (HKLM\...\{4254C1AD-B9B0-4020-A4B1-D8B61D12142A}) (Version: 3.7.2204.15001 - Microsoft Corporation) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) Windows-Treiberpaket - Ross-Tech HIDClass (01/05/2014 6.3.0.3) (HKLM\...\3A9B09BBD4F12A76FBBD3A428729660930BA5F13) (Version: 01/05/2014 6.3.0.3 - Ross-Tech) Windows-Treiberpaket - Ross-Tech USB Driver Package (05/12/2014 2.10.00) (HKLM\...\88B02C4BD09AA7910C55C4E74BE8F036244B5CF9) (Version: 05/12/2014 2.10.00 - Ross-Tech) YouTube Song Downloader 2020 (HKLM-x32\...\AbAppId-55_is1) (Version: 19.17 - Abelssoft) Packages: ========= Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.) Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.31.42.0_x64__kgqvnymyfvs32 [2023-03-01] (king.com) Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.2480.1.0_x64__kgqvnymyfvs32 [2023-03-16] (king.com) Hidden City: Wimmelbildabenteuer -> C:\Program Files\WindowsApps\828B5831.HiddenCityMysteryofShadows_1.55.5501.0_x86__ytsefhwckbdv6 [2023-03-04] (G5 Entertainment AB) Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-12-20] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-11-04] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-11-04] (Microsoft Corporation) [MS Ad] Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2302.13003.0_x64__8wekyb3d8bbwe [2023-03-15] (Microsoft Corporation) [Startup Task] Movie Maker - Video Editor -> C:\Program Files\WindowsApps\21336V3TApps.MovieMaker-FREE_3.6.17.0_x64__bzg06mxvgh4fa [2023-03-16] (V3TApps) Reader Notification Client -> C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2021-07-29] (Adobe Systems Incorporated) Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.15.12020.0_x64__8wekyb3d8bbwe [2022-12-08] (Microsoft Studios) [MS Ad] WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2308.6.0_x64__cv1g1gvanyjgm [2023-03-12] (WhatsApp Inc.) [Startup Task] WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x64__8wekyb3d8bbwe [2023-02-24] (Microsoft Corporation) WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x86__8wekyb3d8bbwe [2023-02-24] (Microsoft Corporation) XING -> C:\Program Files\WindowsApps\XINGAG.XING_4.0.9.0_x86__xpfg3f7e9an52 [2021-06-03] (New Work SE) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-267109815-2813959242-261323033-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> "C:\Users\Ikonia\AppData\Local\Microsoft\Teams\current\Teams.exe" --toast => Keine Datei ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers1: [SystemSpeedupFilesMenu] -> {14cb2bd0-2375-3d10-9b5d-5e18865c8959} => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.ShellExtension.DLL [2023-02-03] (Avira Operations GmbH -> Avira Operations GmbH) ContextMenuHandlers2: [ContextMenu] -> {ee10d625-cc60-30a4-b3df-4b349785be6b} => C:\Program Files (x86)\Avira\Security\Antivirus.ContextMenu\Antivirus.ContextMenu.DLL [2023-03-13] (Avira Operations GmbH -> Avira Operations GmbH) ContextMenuHandlers3: [ContextMenu] -> {ee10d625-cc60-30a4-b3df-4b349785be6b} => C:\Program Files (x86)\Avira\Security\Antivirus.ContextMenu\Antivirus.ContextMenu.DLL [2023-03-13] (Avira Operations GmbH -> Avira Operations GmbH) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-03-04] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => c:\program files (x86)\real\realplayer\RPDS\Bin64\rpcontextmenu.dll [2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers4: [SystemSpeedupFoldersMenu] -> {700866bb-c8e9-3e71-b359-abb28baed0e8} => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.ShellExtension.DLL [2023-02-03] (Avira Operations GmbH -> Avira Operations GmbH) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Keine Datei ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxDTCM.dll [2018-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers5: [SystemSpeedupDesktopMenu] -> {0cab5786-30e8-3185-9b3b-ccefbf1b8afe} => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.ShellExtension.DLL [2023-02-03] (Avira Operations GmbH -> Avira Operations GmbH) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-03-04] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== ==================== Verknüpfungen & WMI ======================== ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2015-07-24 15:19 - 2015-07-24 15:19 - 001024000 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\BCL Technologies\PixelPlanet7\bclprnlib.dll 2015-07-24 15:19 - 2015-07-24 15:19 - 000659456 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\BCL Technologies\PixelPlanet7\bepprint.dll 2023-02-23 22:26 - 2023-02-23 22:27 - 001530368 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2308.6.0_x64__cv1g1gvanyjgm\e_sqlite3.dll 2023-03-12 09:51 - 2023-03-12 09:52 - 105989120 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2308.6.0_x64__cv1g1gvanyjgm\WhatsApp.dll 2023-03-12 09:51 - 2023-03-12 09:52 - 008795648 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2308.6.0_x64__cv1g1gvanyjgm\WhatsAppNative.dll 2022-02-06 12:42 - 2022-02-06 12:41 - 000498688 _____ (BCL Technologies, Inc.) [Datei ist nicht signiert] C:\WINDOWS\system32\spool\DRIVERS\x64\3\PixelPlanetpdui7.dll 2018-08-04 09:05 - 2018-04-30 13:00 - 000075776 _____ (Igor Pavlov) [Datei ist nicht signiert] C:\Program Files\7-Zip\7-zip.dll 2020-04-18 08:53 - 2020-04-18 08:53 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems32.dll] C:\Program Files (x86)\Microsoft Office\Root\Office16\AppVIsvSubsystems32.dll 2020-04-18 08:53 - 2020-04-18 08:53 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R32.dll] C:\Program Files (x86)\Microsoft Office\Root\Office16\c2r32.dll 2017-03-26 09:11 - 2016-06-14 21:01 - 001298640 _____ (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Datei ist nicht signiert] C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxinput.dll 2020-02-07 17:20 - 2020-02-07 17:20 - 000132096 _____ (Seiko Epson Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\EPSON Software\Event Manager\epnsm.dll 2009-10-21 17:39 - 2009-10-21 17:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll 2016-09-14 14:31 - 2016-09-14 14:31 - 000500736 ____S (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] C:\WINDOWS\System32\enppmon.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKU\S-1-5-21-267109815-2813959242-261323033-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKU\S-1-5-21-267109815-2813959242-261323033-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE SearchScopes: HKU\S-1-5-21-267109815-2813959242-261323033-1001 -> DefaultScope {E40C3C5C-87E8-4744-ABAD-0CB67127F015} URL = SearchScopes: HKU\S-1-5-21-267109815-2813959242-261323033-1001 -> {E40C3C5C-87E8-4744-ABAD-0CB67127F015} URL = BHO: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> c:\program files (x86)\real\realplayer\BrowserRecordPlugin\IE\rndlbrowserrecordplugin64.dll [2022-12-19] (RealNetworks, Inc. -> RealPlayer) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2023-02-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> c:\program files (x86)\real\realplayer\BrowserRecordPlugin\IE\rndlbrowserrecordplugin.dll [2022-12-19] (RealNetworks, Inc. -> RealPlayer) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-07] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2017-09-29 14:46 - 2016-07-16 12:45 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2021-12-30 22:18 - 2021-12-30 22:21 - 000000444 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Windows Live\Shared HKU\S-1-5-21-267109815-2813959242-261323033-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-267109815-2813959242-261323033-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ikonia\AppData\Roaming\Microsoft\Windows Live Photo Gallery\Fotogalerie-Hintergrundbild.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "CCleanerBrowserAutoLaunch_7943C2D6D40B36793E9D77605D4F092D" HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "iDevice Manager X Launcher" HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "iDevice Manager X Updater" HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "vidnotifier.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{80BF79AD-A3CD-4DF3-A593-3E25A29DC2C8}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{0519CE60-F908-4897-BF5D-95267C1067CE}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{B26D6EC9-05C5-4215-8B06-27B576B14225}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{165485A3-DA5F-44CF-845E-66A3960CB753}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{52B2095C-668E-47AE-ABEA-ECB67781DB0F}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{9D88357B-4EB4-4E1F-9FA5-BCFD1B453A1F}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{E563FEC8-DA09-40B6-B721-50D5D584ADBC}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{184BE008-19A2-4D0B-9110-059F7647F96F}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{FD7F4D53-130C-4C3D-B5CD-9DEB291EE2B4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{E652999E-0815-4A14-970C-E569F1F63B66}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{8D0E50D9-5059-415F-B6F4-698E62DDDF73}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{7151B903-ADDC-40CD-A403-DD0B18CB39BB}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{58BDA5F5-DF3A-4910-95BB-2FDA1044088C}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{DF66BFA6-88AF-4891-929E-357E31E0122B}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{874C7615-51FF-4940-9852-29644C64BEAB}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{5C5F3CF7-B580-4A4D-8A43-5AD40382C98D}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Seiko Epson Corporation) [Datei ist nicht signiert] FirewallRules: [{C1F014EA-D707-4003-A90C-07791100C5E0}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Seiko Epson Corporation) [Datei ist nicht signiert] FirewallRules: [{5A6B9D22-F66E-4345-B486-D784BB17B063}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{CA725AA0-C592-4421-A08D-669488CF54AC}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{1FC47ECE-BB5A-437B-ABC5-7A999CD33DEE}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{029604F0-CC80-42DA-86E2-443596189237}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{C499CB96-233F-4841-B1DC-697F6DFDD273}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{A5E248AF-03EA-49E7-AB8B-3201FAD8C25E}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{3E9B402E-15E8-4113-85D6-A5BF93725074}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{71343F6F-EC3B-4144-AB9D-B2C27515CC21}] => (Allow) LPort=1900 FirewallRules: [{9DA55DC1-8CA1-43D5-B92F-7B17895178DF}] => (Allow) LPort=2869 FirewallRules: [{25E2A556-1607-4AB7-B830-1A3EACF08550}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{E0DEE9CF-CCD1-4788-8B2F-4E992E8E25F3}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{890ED68C-46EE-405B-A35B-06DEEBDCD421}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{2F803E39-951B-4796-9202-E1C84226CC83}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{9F808645-BF13-4CBE-9C3E-83CD895BB4C5}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{A7D8AA27-E59E-41D0-B958-D9109C433262}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International B.V. -> TomTom) FirewallRules: [{F0E8C16D-DCF0-4DFB-A68D-55700A967B48}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{A990F28D-3936-48F8-9E45-B40346863FBE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{AA54C846-2FF2-4EC1-BB2B-71F8E7A35E3A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{47E169D7-23E1-4845-B93E-8AE64668BB49}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{3B4EAACA-05C4-496E-9FA3-5A3D978EE2A4}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{6B9A6B24-3E2E-4F32-9DF6-89E4117252B1}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{654897F1-6412-44DB-93B3-D3B79CDAADF7}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{D5034B7E-E4FF-4600-A072-AD09873A43B6}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{AA661343-D660-4F8E-88E9-368688BC0842}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{696254AA-0052-4D05-9E3B-A50BFC9574E9}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer) FirewallRules: [{488B14F8-993C-4C48-9BEE-1432F92B7CDB}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer) FirewallRules: [{AA80D4FA-96BC-41C2-B853-A5AC9BDE9EDC}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer) FirewallRules: [{914F07CF-2DD0-41CB-9DB5-7DA4EA57E371}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer) FirewallRules: [{6B2EF075-612E-48C8-8B38-83B8FC861943}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology) FirewallRules: [{85117002-2C5E-43EC-A68F-8E7041CFEE5B}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology) FirewallRules: [{6209D83C-7C06-448B-A0E2-AE200EA16D64}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{5FB3E846-5153-48BC-ADAE-E6DB4B191F0E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{69FA6BEF-6824-4D9E-9144-36CCB6082C52}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{39CD2423-F713-40F4-A14B-049BD27C5368}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1C14DC33-944A-4A1F-BA2A-3009A47C3354}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1B87C407-5F0A-4E8C-9D76-0659F8CC3847}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{5FC3D52D-2584-4F0D-A869-D8955ECDA335}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [TCP Query User{B239F318-80E6-4245-A5EE-CF79570744E3}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{0D2B7F40-79F0-4807-BE3C-53816978C5E8}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{E240840D-2174-4BE2-A0D5-4DBEA4888B7B}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{B8ED194A-5AED-4615-97FA-8644093CAAC1}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{6EE5C773-49BA-4C41-A123-AC41942CB4A8}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{9E0C8D3F-1C0C-44A1-BD96-C309B250D16B}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{E526140F-CF42-49BC-8E59-DCCD0CC8BFC5}] => (Allow) c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe (RealNetworks, Inc. -> RealNetworks, Inc.) FirewallRules: [{FD43C04F-793E-4068-A7B1-9A693863C09A}] => (Allow) c:\program files (x86)\real\realplayer\RealPlay.exe (RealNetworks, Inc. -> RealNetworks, Inc.) FirewallRules: [{FB5A92F0-C08B-45F9-8D31-A8D1EF77BAC7}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{C1546B58-F3F5-4939-8769-0D2C6041CA6E}] => (Allow) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe (Easeware Technology Limited -> Easeware) FirewallRules: [{76C52BD3-FCF4-4350-B4C3-2FAB748B589C}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{237FD5AC-0F33-4547-9B0D-098E5AB25020}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{4DC15DE9-B4FC-4D14-80EA-F82F357FB0A1}] => (Allow) C:\Program Files (x86)\Sony\PS Remote Play\RemotePlay.exe (Sony Interactive Entertainment Inc. -> Sony Interactive Entertainment Inc.) FirewallRules: [{29110914-FB41-4EE4-8D3A-61F4F583A1CC}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.69\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{0836C280-840E-4C8B-8CC4-FB16A0F1102B}] => (Allow) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe (PIRIFORM SOFTWARE LIMITED -> Piriform Software) ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:118.13 GB) (Free:27.99 GB) (24%) ==================== Fehlerhafte Geräte im Gerätemanager ============ Name: Generischer Adapter für das mobile Breitband Description: Generischer Adapter für das mobile Breitband Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: cxwmbclass Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (03/16/2023 09:00:39 AM) (Source: SecurityCenter) (EventID: 18) (User: ) Description: Der Windows-Sicherheitscenterdienst konnte keine Instanzen von FirewallProduct aus dem Datastore laden. Error: (03/16/2023 08:59:38 AM) (Source: SecurityCenter) (EventID: 18) (User: ) Description: Der Windows-Sicherheitscenterdienst konnte keine Instanzen von FirewallProduct aus dem Datastore laden. Error: (03/16/2023 08:56:49 AM) (Source: SecurityCenter) (EventID: 18) (User: ) Description: Der Windows-Sicherheitscenterdienst konnte keine Instanzen von FirewallProduct aus dem Datastore laden. Error: (03/16/2023 08:55:55 AM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (03/16/2023 08:54:34 AM) (Source: SecurityCenter) (EventID: 18) (User: ) Description: Der Windows-Sicherheitscenterdienst konnte keine Instanzen von FirewallProduct aus dem Datastore laden. Error: (03/15/2023 06:46:41 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Local Hostname LAPTOP-8GLFFDV9.local already in use; will try LAPTOP-8GLFFDV9-2.local instead Error: (03/15/2023 06:46:41 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister 4 LAPTOP-8GLFFDV9.local. Addr 192.168.178.29 Error: (03/15/2023 06:46:41 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 192.168.178.29:5353 16 LAPTOP-8GLFFDV9.local. AAAA FD00:0000:0000:0000:70EA:4BCE:A45B:EC15 Systemfehler: ============= Error: (03/16/2023 09:14:41 AM) (Source: DCOM) (EventID: 10000) (User: LAPTOP-8GLFFDV9) Description: Ein DCOM-Server konnte nicht gestartet werden: {0358B920-0AC7-461F-98F4-58E32CD89148}. Fehler: "2147942767" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683} Error: (03/16/2023 09:12:01 AM) (Source: Schannel) (EventID: 4103) (User: NT-AUTORITÄT) Description: Schwerwiegender Fehler beim Erstellen der Client-Anmeldeinformationen für TLS. Der interne Fehlerstatus ist 10013. Error: (03/16/2023 09:10:09 AM) (Source: DCOM) (EventID: 10000) (User: LAPTOP-8GLFFDV9) Description: Ein DCOM-Server konnte nicht gestartet werden: {0358B920-0AC7-461F-98F4-58E32CD89148}. Fehler: "2147942767" Aufgetreten beim Start dieses Befehls: C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683} Error: (03/16/2023 09:00:04 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "MessagingService_34eb7" wurde mit folgendem Fehler beendet: Das Gerät ist nicht bereit. Error: (03/16/2023 08:59:55 AM) (Source: sptd2) (EventID: 4) (User: ) Description: Der Treiber hat einen internen Fehler in seinen Datenstrukturen für festgestellt. Error: (03/16/2023 08:59:39 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Sicherheitscenter" wurde mit folgendem Fehler beendet: Der Authentifizierungsdienst ist unbekannt. Error: (03/16/2023 08:59:36 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-8GLFFDV9) Description: Der Server "{D63B10C5-BB46-4990-A94F-E40B9D520160}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (03/16/2023 08:59:35 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-8GLFFDV9) Description: Der Server "{A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Windows Defender: ================ Date: 2023-03-16 09:40:34 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {AAACF5E1-B5AF-42B1-A8F0-5A3373FDACA5} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2023-03-16 09:34:38 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {9261CC4F-1B55-48D7-B1EF-A838457EF9E8} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: LAPTOP-8GLFFDV9\Ikonia Date: 2023-03-16 09:30:43 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=Misleading:Win32/Lodi&threatid=240849&enterprise=0 Name: Misleading:Win32/Lodi Schweregrad: Hoch Kategorie: Adware Pfad: file:_C:\Program Files (x86)\DVDVideoSoft\Free DVD Video Burner\FreeDVDVideoBurner.exe; file:_C:\Users\Public\Desktop\Free DVD Video Burner.lnk Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Benutzer Benutzer: LAPTOP-8GLFFDV9\Ikonia Prozessname: Unknown Sicherheitsversion: AV: 1.381.2411.0, AS: 1.381.2411.0, NIS: 1.381.2411.0 Modulversion: AM: 1.1.19900.2, NIS: 1.1.19900.2 Date: 2023-01-18 18:02:52 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {0330E199-5E21-413E-938F-97C583A4A56D} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2023-01-17 15:37:26 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {489FB1D4-452A-41BA-A6EE-807C6733B6C1} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Event[0]: Date: 2023-03-16 08:58:18 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80240438 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2023-02-05 17:05:02 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80240017 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2023-01-27 12:51:25 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80240017 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2023-01-27 12:45:32 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: 1.381.2774.0 %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Benutzer Sicherheitstyp: AntiSpyware Updatetyp: Delta Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: 1.1.19900.2 %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80004004 Fehlerbeschreibung: Vorgang abgebrochen Date: 2023-01-27 12:45:32 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: 1.381.2774.0 %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Benutzer Sicherheitstyp: AntiVirus Updatetyp: Delta Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: 1.1.19900.2 %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80004004 Fehlerbeschreibung: Vorgang abgebrochen CodeIntegrity: =============== Date: 2023-03-16 09:43:21 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Avira\Endpoint Protection SDK\amsi\x64\avamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Speicherinformationen =========================== BIOS: Insyde Corp. V1.25 03/03/2017 Hauptplatine: Acer SpiderMan_SK Prozessor: Intel(R) Core(TM) i5-7200U CPU @ 2.50GHz Prozentuale Nutzung des RAM: 69% Installierter physikalischer RAM: 8060.22 MB Verfügbarer physikalischer RAM: 2456.74 MB Summe virtueller Speicher: 12924.22 MB Verfügbarer virtueller Speicher: 6220.46 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:118.13 GB) (Free:27.99 GB) (Model: KINGSTON RBUSNS8280S3128GH2) NTFS Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:489.76 GB) (Model: TOSHIBA MQ01ABD100) NTFS \\?\Volume{ea4d0a22-4533-46b6-911c-15bdb9ed6a98}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.51 GB) NTFS \\?\Volume{3666d248-1ca3-4153-9266-a5de66c8c93c}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: F7FE7063) Partition: GPT. ========================================================== Disk: 1 (Size: 119.2 GB) (Disk ID: F7FE7222) Partition: GPT. ==================== Ende von Addition.txt ======================= Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 12-03-2023 durchgeführt von Ikonia (Administrator) auf LAPTOP-8GLFFDV9 (Acer Aspire F5-771G) (16-03-2023 09:56:58) Gestartet von D:\ Geladene Profile: Ikonia Plattform: Microsoft Windows 10 Home Version 22H2 19045.2728 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: "C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe" --single-argument %1 Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe (C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\rpbgdownloader.exe (C:\Program Files\Acer\Acer Quick Access\QASvc.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe (C:\Program Files\Acer\Acer Quick Access\QASvc.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe (C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\SentryEye.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe <2> (C:\Program Files\NVIDIA Corporation\Display\nvtray.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxCUIService.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxEM.exe (explorer.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_YATIUOE.EXE <2> (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <16> (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (PixelPlanet GmbH -> PixelPlanet GmbH) C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe (RealNetworks, Inc. -> ) C:\Program Files (x86)\Real\RealPlayer\downloader2.exe (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (Seiko Epson Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (services.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe (services.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe (services.exe ->) (Digital Wave Ltd -> Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (services.exe ->) (geek software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe <2> (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel(R) CN -> Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxCUIService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (services.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe (services.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe (services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (svchost.exe ->) (Acer Incorporated -> ) C:\OEM\Preload\FubTool\FubTool.exe (svchost.exe ->) (Acer Incorporated -> ) C:\Program Files (x86)\Acer\Care Center\ACCStd.exe (svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\Acer Collection\ACEMon.exe (svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe (svchost.exe ->) (Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (svchost.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe (svchost.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxext.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (SweetLabs Inc -> SweetLabs, Inc) C:\Users\Ikonia\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe (svchost.exe ->) (WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2308.6.0_x64__cv1g1gvanyjgm\WhatsApp.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18374624 2017-05-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_TrueHarmony] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1488352 2017-05-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [PDF24] => C:\Program Files\PDF24\pdf24.exe [587000 2022-01-05] (geek software GmbH -> geek software GmbH) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [366944 2022-12-08] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1310720 2020-02-10] (Seiko Epson Corporation) [Datei ist nicht signiert] HKLM-x32\...\Run: [PixelPlanet PdfPrinter-Monitor] => C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe [7509160 2018-08-01] (PixelPlanet GmbH -> PixelPlanet GmbH) HKLM-x32\...\Run: [TkBellExe] => c:\program files (x86)\real\realplayer\Update\realsched.exe [347560 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) HKLM-x32\...\Run: [RealPlayer] => c:\program files (x86)\real\realplayer\RPDS\Bin\rpsystray.exe [5941184 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) HKLM-x32\...\Run: [RealDownloader] => c:\program files (x86)\real\realplayer\downloader2.exe [1191848 2022-12-19] (RealNetworks, Inc. -> ) HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Beschränkung <==== ACHTUNG HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1814848 2019-07-10] (Digital Wave Ltd -> Digital Wave Ltd) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [39159608 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIUOE.EXE [421736 2021-11-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [EPLTarget\P0000000000000002] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIUOE.EXE [421736 2021-11-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [CCleanerBrowserAutoLaunch_7943C2D6D40B36793E9D77605D4F092D] => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3454088 2023-03-03] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [iDevice Manager X Updater] => C:\Program Files\Software4u\iDevice ManagerX\Software4u.Updater.exe [69744 2022-09-01] (Tino Marx -> ) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [iDevice Manager X Launcher] => C:\Program Files\Software4u\iDevice ManagerX\Software4u.Launcher.exe [106096 2022-09-01] (Tino Marx -> Marx Software) HKLM\...\Print\Monitors\EPSON ET-2710 Series 64MonitorBE: C:\Windows\system32\E_YLMBUOE.DLL [184832 2017-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\110.0.20395.180\Installer\chrmstp.exe [2023-03-13] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) GroupPolicy-Firefox-x32: Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Policies\Mozilla\Firefox: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07E15960-0583-4BC3-9017-CB6FB21191AA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114656 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {09EA3244-927F-4AD3-A3A0-840297D423FC} - System32\Tasks\EPSON ET-2710 Series Update {8845CCA2-ABF7-4015-BE72-B8DC78756CDB} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSUOE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {0EAF3183-592E-4F68-BB88-510318DAD5EE} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26294704 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {18103B0F-83AE-48B3-928C-7DD7E8521A16} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_445_Plugin.exe [1502264 2020-10-18] (Adobe Inc. -> Adobe) Task: {1B7416D0-5212-425D-BAE5-663827111CBD} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [40352 2016-06-24] (Acer Incorporated -> ) Task: {1FA9C92C-4B7D-490F-AEAA-95F3D3DF580A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {20005CB0-5C90-478C-AC11-2BDCF64D8D99} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe [3995008 2022-12-08] (Easeware Technology Limited -> Easeware) Task: {2115AEFB-CB53-49B9-8412-33CD1DF7A571} - System32\Tasks\ReclaimerUpdateFiles_Ikonia => C:\Users\Ikonia\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.30\agent\rnupgagent.exe [734800 2023-03-15] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {23A11415-A4F9-4B0F-BE2D-2212B8EA9398} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [473904 2016-09-13] (Acer Incorporated -> Acer Incorporated) Task: {266779EA-B189-4CC4-BBAA-5A71B9F162D2} - System32\Tasks\Avira_Security_Systray => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [1774256 2023-03-13] (Avira Operations GmbH -> Avira Operations GmbH) Task: {2A1F5CF0-3FE2-49D6-8D0A-6717955C35BA} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) [Zugriff verweigert] Task: {2E148C18-085E-48C8-9715-87CBCC177924} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2022-12-13] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) Task: {2EC7E1CC-0A44-4FA5-8786-61F16DDA34B1} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [216296 2014-03-12] (Acer Incorporated -> TODO: <Company name>) Task: {307D00C8-2C7C-491B-BF9D-7CDE247926DC} - System32\Tasks\RNUpgradeHelperResumePrompt_Ikonia => C:\Users\Ikonia\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.30\agent\rnupgagent.exe [734800 2023-03-15] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {3457DF2B-279B-4781-8013-B2D0A8D0210D} - System32\Tasks\RNUpgradeHelperLogonPrompt_Ikonia => C:\Users\Ikonia\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.30\agent\rnupgagent.exe [734800 2023-03-15] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {353B1752-BEFB-4547-B533-2A8637BA5E06} - System32\Tasks\Avira_FallbackUpdater => C:\WINDOWS\system32\sc.exe start AviraFallbackUpdater Delayed=false Task: {3C8A5379-8551-4504-9F4D-ED72BD469588} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752 2017-03-20] (Acer Incorporated -> Acer Incorporated) Task: {3DFE8D0F-67C2-4859-A075-A9979015AEAD} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2022-12-13] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) Task: {4396A658-4EF9-4050-8F7B-FA84AD14B0D2} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) [Zugriff verweigert] Task: {46B16075-BE36-4539-8B6F-7875D2606A70} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.) Task: {50851C00-6159-48F3-97E7-0FBBB68C865E} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114656 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {57B4F66E-86DC-46A8-897B-6D6E5BA54544} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [716704 2023-03-01] (Mozilla Corporation -> Mozilla Foundation) Task: {58973B8D-F6EA-4431-BCA2-F8EC97687003} - System32\Tasks\App Explorer => C:\Users\Ikonia\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [7583768 2022-12-06] (SweetLabs Inc -> SweetLabs, Inc) <==== ACHTUNG Task: {6CCBDB1C-41ED-4098-BD20-5DD7308F9F3C} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {74BA13C3-4379-4B17-89A8-A30E041C4584} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {805E28DC-2857-4397-8D4E-F0B6D43AE896} - System32\Tasks\Avira_Security_Maintenance => Command(1): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> FallbackTelemetry Task: {805E28DC-2857-4397-8D4E-F0B6D43AE896} - System32\Tasks\Avira_Security_Maintenance => Command(2): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> ServiceWatchdog Task: {805E28DC-2857-4397-8D4E-F0B6D43AE896} - System32\Tasks\Avira_Security_Maintenance => Command(3): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> CrashCollector Task: {84335F77-2985-488D-91C5-EE9CF3E1FD69} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {85D95225-2C80-4F1B-BFD2-F9EC49E2BF60} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [422704 2016-09-13] (Acer Incorporated -> Acer Incorporated) Task: {8B79426D-F43D-47FB-BD99-BDA77D3CE94B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {91DD4E03-5B08-4664-9946-5DBDECBDDAD7} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "ed079d68-ffa2-4583-b83a-802caba6a121" --version "6.10.10347" --silent Task: {98A3BCF9-D3D5-4F6F-9C68-FA5A2C426BC4} - System32\Tasks\EPSON ET-2710 Series Update {CE411DDA-FD8F-49D2-BF80-81216750908D} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSUOE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {9905F3EE-273C-484E-A8E5-DDCF74655494} - System32\Tasks\Acer Collection Application => C:\Program Files (x86)\Acer\Acer Collection\ACEStd.exe [479024 2017-12-14] (Acer Incorporated -> ) Task: {9DC97D92-2173-4E73-9878-C49A3AFD5BF3} - System32\Tasks\Avira_Security_Service_SCM_Watchdog => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe [259400 2023-03-13] (Avira Operations GmbH -> Avira Operations GmbH) Task: {A15EC2FE-89B3-466F-98C4-9E3EFB6BFCBE} - System32\Tasks\Acer Collection Monitor Application => C:\Program Files (x86)\Acer\Acer Collection\ACEMon.exe [417072 2017-12-13] (Acer Incorporated -> Acer Incorporated) Task: {A2B3AF13-CDF3-4ED3-9CA8-D3C7448CCB77} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-267109815-2813959242-261323033-1001 => C:\program files (x86)\real\realplayer\RealUpgrade.exe [130472 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {A49B49C1-22DC-45C1-B548-3389EC5B97D6} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3454088 2023-03-03] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) Task: {A7ED6EC2-293B-4F15-9969-A1860138DF43} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3454088 2023-03-03] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) Task: {A8D18477-3A5D-4321-BE1D-68A8175F2324} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe [70792 2022-08-15] (Acer Incorporated -> ) Task: {BB85937A-393F-4F4F-9D39-1F17B897BD59} - System32\Tasks\Power Button => C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe [2767152 2016-09-13] (Acer Incorporated -> Acer Incorporated) Task: {BC0C8E49-501D-454E-A0FD-C1298517770D} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-267109815-2813959242-261323033-1001 => C:\program files (x86)\real\realplayer\RealUpgrade.exe [130472 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {C0A658BD-B47F-4E5A-BC4F-9AD3CC1DE189} - System32\Tasks\AcerCMUpdateTask2.5.22250 => C:\Program Files (x86)\Acer\Amundsen\2.5.22250\awc.exe [96904 2022-09-25] (Acer Incorporated -> ) Task: {C31FB69C-27E7-4151-96FD-51D11CBBB13C} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4645168 2017-05-24] (Acer Incorporated -> ) Task: {C4A742C3-F0CB-40D6-85D6-5693D458D3B4} - System32\Tasks\ReclaimerUpdateXML_Ikonia => C:\Users\Ikonia\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.30\agent\rnupgagent.exe [734800 2023-03-15] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {C5BB8527-CCDD-4A53-ADC5-FBF625C54636} - System32\Tasks\Avira_Security_Update => C:\WINDOWS\system32\net.exe [59904 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {C6C02464-6C12-40FF-9E35-E5F5DD9E3660} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112 2016-07-26] (Intel(R) Trusted Connect Service -> Intel(R) Corporation) Task: {D20F5EE5-6FBC-40B7-8A1A-4EFB68676838} - System32\Tasks\RealDownloader Update Check => c:\program files (x86)\real\realplayer\downloader2.exe [1191848 2022-12-19] (RealNetworks, Inc. -> ) Task: {D67D6CA0-1147-467E-A0A0-A649F092CE45} - System32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D94EF0D6-7027-4504-844B-3C50333C78A1} - System32\Tasks\AviraSystemSpeedupVerify => C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe [35437192 2023-02-09] (Avira Operations GmbH -> Avira Operations GmbH) Task: {DCC5A0AB-0A4B-4E5E-8C07-700528C31485} - System32\Tasks\Re-Install Application => C:\ProgramData\OEM\UpgradeTool\CareCenter_v2\2018519195326286FixpackB\BUnzip\Setup.exe [538416 2018-05-19] (Acer Incorporated -> Acer Incorporated) Task: {E2500765-077C-4F53-8F3C-CBC620611492} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {E4E8B865-FDA1-48E7-8B52-61DEACCD2C38} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantAllUsersRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) [Zugriff verweigert] Task: {E827D832-39BF-48AE-923C-0D4A85349C7E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.) Task: {EDB298BC-38CD-4B9C-A5EA-EEC972940C86} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F1113665-8240-41F5-8BFB-8467F9D62958} - System32\Tasks\CCleanerSkipUAC - Ikonia => C:\Program Files\CCleaner\CCleaner.exe [33038648 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {F34DF1F0-3FD8-430B-9C59-6F98C061379E} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2920752 2017-05-24] (Acer Incorporated -> ) Task: {F5CDDE4E-661B-4915-973B-DA2C5D646546} - System32\Tasks\FubToolByPLD => C:\OEM\Preload\FubTool\FubTool.exe [30976 2015-05-14] (Acer Incorporated -> ) Task: {FBADCA5B-F457-4612-980B-0E8AB719E19E} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\WINDOWS\system32\EOSNotify.exe (Keine Datei) Task: {FCAF8C2B-6043-43D5-A8FB-03885574A3B0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) [Zugriff verweigert] Task: {FF923D41-8DE6-48A3-AA33-E33659B4CB57} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26294704 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe Task: C:\WINDOWS\Tasks\EPSON ET-2710 Series Update {8845CCA2-ABF7-4015-BE72-B8DC78756CDB}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSUOE.EXE:/EXE:{8845CCA2-ABF7-4015-BE72-B8DC78756CDB} /F:UpdateWORKGROUP\LAPTOP-8GLFFDV9$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON ET-2710 Series Update {CE411DDA-FD8F-49D2-BF80-81216750908D}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSUOE.EXE:/EXE:{CE411DDA-FD8F-49D2-BF80-81216750908D} /F:UpdateWORKGROUP\LAPTOP-8GLFFDV9$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{998303e5-9ef6-40c2-9162-a1b5efaa1948}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{c00bc34f-3aaf-4ba5-abfa-82997f2d3d57}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{d5968225-c1f3-4187-82e8-ec79ea5fe92c}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden] Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden] Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden] Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden] Edge DefaultProfile: Default Edge Profile: C:\Users\Ikonia\AppData\Local\Microsoft\Edge\User Data\Default [2023-03-16] Edge Extension: (Avira Safe Shopping) - C:\Users\Ikonia\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2023-01-19] Edge Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\Ikonia\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2023-03-12] Edge Extension: (Edge relevant text changes) - C:\Users\Ikonia\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-01-24] Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip] Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle] FireFox: ======== FF DefaultProfile: 8tr6h7mi.default FF ProfilePath: C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default [2023-03-16] FF Notifications: Mozilla\Firefox\Profiles\8tr6h7mi.default -> hxxps://www.flypgs.com; hxxps://www.trtizle.com; hxxps://de.mail.yahoo.com; hxxps://mail.yahoo.com; hxxps://www.canlitvizle.life; hxxps://www.turkcell.com.tr; hxxps://www.tiktok.com FF Extension: (AdBlocker Ultimate) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\adblockultimate@adblockultimate.net.xpi [2023-01-25] FF Extension: (Language: Deutsch (German)) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\langpack-de@firefox.mozilla.org.xpi [2023-02-28] FF Extension: (Private Tab) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\private-tab@mozilla.xpi.xpi [2019-07-05] [UpdateUrl:hxxps://operaterunsearch.co/extensions/update.json] FF Extension: (PDF Konvertierung) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\{b3e0fe41-2edf-42f8-948f-1604cc6a8144}.xpi [2021-07-29] FF Extension: (Video DownloadHelper) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2022-12-08] FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2023-02-10] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_445.dll [2020-10-18] (Adobe Inc. -> ) FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-02-14] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_445.dll [2020-10-18] (Adobe Inc. -> ) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=22.0.1.307 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=22.0.1.307 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2022-12-19] (RealNetworks, Inc. -> RealPlayer) FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1583.3\npCCleanerBrowserUpdate3.dll [2022-12-13] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1583.3\npCCleanerBrowserUpdate3.dll [2022-12-13] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) Chrome: ======= CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103280 2022-09-01] (Apple Inc. -> Apple Inc.) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [338312 2016-08-31] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) S2 AviraFallbackUpdater; C:\Program Files (x86)\Avira\Fallback Updater\Avira.Spotlight.FallbackUpdater.exe [6515704 2023-03-15] (Avira Operations GmbH -> Avira Operations GmbH) R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [3002640 2022-09-08] (Avira Operations GmbH -> Avira Operations GmbH) R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [386864 2022-03-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [265904 2023-03-13] (Avira Operations GmbH -> Avira Operations GmbH) S2 AviraSecurityUpdater; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [296928 2023-03-13] (Avira Operations GmbH -> Avira Operations GmbH) S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2022-12-13] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\110.0.20395.180\elevation_service.exe [1818336 2023-03-03] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2022-12-13] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12512256 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [441664 2019-07-10] (Digital Wave Ltd -> Digital Wave Ltd) R2 EndpointProtectionService; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8999232 2023-03-13] (Avira Operations GmbH -> Avira Operations GmbH) S3 EndpointProtectionService2; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8999232 2023-03-13] (Avira Operations GmbH -> Avira Operations GmbH) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [206304 2020-10-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9002208 2023-03-04] (Malwarebytes Inc. -> Malwarebytes) R2 PDF24; C:\Program Files\PDF24\pdf24.exe [587000 2022-01-05] (geek software GmbH -> geek software GmbH) R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [441136 2016-09-13] (Acer Incorporated -> Acer Incorporated) R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [482608 2016-09-13] (Acer Incorporated -> Acer Incorporated) R2 RealPlayerUpdateSvc; C:\program files (x86)\real\UpdateService\RealPlayerUpdateSvc.exe [38856 2022-11-23] (RealNetworks, Inc. -> RealNetworks, Inc.) R2 RealTimes Desktop Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [991168 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [295840 2016-05-27] (Acer Incorporated -> acer) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe [3191256 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe [133576 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R0 BdNet; C:\WINDOWS\System32\DRIVERS\BdNet.sys [185704 2023-01-17] (NortonLifeLock Inc. -> BullGuard Ltd.) R1 BdSentry; C:\WINDOWS\System32\DRIVERS\BdSentry.sys [263000 2023-01-31] (Avira Operations GmbH -> Avira Operations GmbH) R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [31032 2017-10-19] (Acer Incorporated -> Acer Incorporated) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2023-03-16] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-10-12] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-12-07] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R1 netprotection_network_filter; C:\WINDOWS\System32\drivers\netprotection_network_filter.sys [112184 2023-01-13] (Avira Operations GmbH -> Avira Operations GmbH) R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [25400 2017-10-19] (Acer Incorporated -> Acer Incorporated) S0 rtp_elam; C:\WINDOWS\System32\DRIVERS\rtp_elam.sys [28128 2023-02-15] (Microsoft Windows Early Launch Anti-Malware Publisher -> Avira Operations GmbH) R2 rtp_filesystem_filter; C:\WINDOWS\System32\DRIVERS\rtp_filesystem_filter.sys [226248 2023-03-07] (Avira Operations GmbH -> Avira Operations GmbH) R1 rtp_process_monitor; C:\WINDOWS\system32\DRIVERS\rtp_process_monitor.sys [229896 2023-03-07] (Avira Operations GmbH -> Avira Operations GmbH) R1 rtp_traverse; C:\WINDOWS\system32\DRIVERS\rtp_traverse.sys [67272 2023-03-07] (Avira Operations GmbH -> Avira Operations GmbH) R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [162960 2022-01-18] (Disc Soft Ltd -> Duplex Secure Ltd) S3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [102608 2018-05-19] (Symantec Corporation -> Symantec Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2023-03-16] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473336 2023-03-16] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99576 2023-03-16] (Microsoft Windows -> Microsoft Corporation) S3 netprotection_network_filter2; System32\drivers\netprotection_network_filter2.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-03-16 09:56 - 2023-03-16 09:57 - 000000000 ____D C:\FRST 2023-03-15 17:34 - 2023-03-15 17:34 - 000003776 _____ C:\WINDOWS\system32\Tasks\RNUpgradeHelperResumePrompt_Ikonia 2023-03-15 17:34 - 2023-03-15 17:34 - 000003644 _____ C:\WINDOWS\system32\Tasks\ReclaimerUpdateFiles_Ikonia 2023-03-15 17:34 - 2023-03-15 17:34 - 000003634 _____ C:\WINDOWS\system32\Tasks\ReclaimerUpdateXML_Ikonia 2023-03-15 17:34 - 2023-03-15 17:34 - 000003376 _____ C:\WINDOWS\system32\Tasks\RNUpgradeHelperLogonPrompt_Ikonia 2023-03-15 15:37 - 2023-03-15 15:37 - 000000000 ___HD C:\$WinREAgent 2023-03-14 19:22 - 2023-03-14 19:22 - 000003888 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Maintenance 2023-03-14 19:22 - 2023-03-14 19:22 - 000003428 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Service_SCM_Watchdog 2023-03-14 19:22 - 2023-03-14 19:22 - 000002818 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Systray 2023-03-03 07:47 - 2023-03-03 07:47 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2023-03-01 18:03 - 2023-03-03 19:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2023-02-17 06:37 - 2023-03-16 08:59 - 000302264 _____ C:\WINDOWS\system32\rtp.db 2023-02-16 20:30 - 2023-02-17 06:38 - 000023672 _____ C:\WINDOWS\system32\.tmp ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-03-16 09:56 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2023-03-16 09:53 - 2018-06-15 09:37 - 000000000 ____D C:\Users\Ikonia\.cache 2023-03-16 09:40 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-03-16 09:34 - 2018-06-17 15:34 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-03-16 09:31 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-03-16 09:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-03-16 09:24 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2023-03-16 09:16 - 2022-02-11 17:30 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-03-16 09:14 - 2020-04-26 10:50 - 000000000 ____D C:\Program Files\CCleaner 2023-03-16 09:14 - 2018-02-12 20:07 - 000000000 ___DC C:\Users\Ikonia\AppData\LocalLow\Mozilla 2023-03-16 09:10 - 2019-04-24 22:18 - 000000000 ___DC C:\Users\Ikonia\AppData\Roaming\TeamViewer 2023-03-16 09:10 - 2018-02-25 18:39 - 000000000 ___DC C:\Users\Ikonia\AppData\Local\CrashDumps 2023-03-16 09:07 - 2022-11-04 09:10 - 001722788 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-03-16 09:07 - 2019-12-07 15:50 - 000744794 _____ C:\WINDOWS\system32\perfh007.dat 2023-03-16 09:07 - 2019-12-07 15:50 - 000150180 _____ C:\WINDOWS\system32\perfc007.dat 2023-03-16 09:03 - 2022-11-04 09:08 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2023-03-16 09:00 - 2022-11-04 09:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-03-16 09:00 - 2018-02-12 20:05 - 000000000 __SHD C:\Users\Ikonia\IntelGraphicsProfiles 2023-03-16 09:00 - 2017-03-26 09:11 - 000000000 ____D C:\ProgramData\NVIDIA 2023-03-16 08:59 - 2020-09-12 23:06 - 000008192 ___SH C:\DumpStack.log.tmp 2023-03-16 08:59 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-03-16 08:57 - 2022-12-19 13:16 - 000003588 _____ C:\WINDOWS\system32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-267109815-2813959242-261323033-1001 2023-03-16 08:57 - 2022-12-19 13:16 - 000003524 _____ C:\WINDOWS\system32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-267109815-2813959242-261323033-1001 2023-03-16 08:56 - 2022-11-04 08:59 - 000438824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-03-16 08:55 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-03-16 08:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-03-16 08:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-03-16 08:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-03-16 08:53 - 2022-09-21 12:26 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2023-03-16 08:15 - 2022-11-04 08:59 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-03-16 08:10 - 2018-06-17 15:26 - 000000000 ___DC C:\Users\Ikonia\AppData\Local\Host App Service 2023-03-16 08:00 - 2022-11-04 09:08 - 000003472 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2023-03-15 15:49 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-03-15 15:46 - 2022-11-04 08:59 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-03-15 15:37 - 2018-06-13 20:35 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-03-15 15:33 - 2018-06-13 20:35 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-03-15 15:24 - 2020-06-17 07:57 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-03-15 15:24 - 2020-06-17 07:57 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-03-15 15:07 - 2023-01-19 20:03 - 000003706 _____ C:\WINDOWS\system32\Tasks\Avira_FallbackUpdater 2023-03-15 05:32 - 2018-06-16 20:42 - 000000000 ____D C:\ProgramData\Packages 2023-03-15 05:32 - 2018-06-13 23:19 - 000000000 ___DC C:\Users\Ikonia\AppData\Local\Packages 2023-03-14 19:22 - 2023-01-19 20:03 - 000003480 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Update 2023-03-14 19:22 - 2023-01-19 20:03 - 000001082 _____ C:\Users\Public\Desktop\Avira.lnk 2023-03-14 19:22 - 2023-01-19 20:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2023-03-13 14:55 - 2022-03-17 16:10 - 000002383 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk 2023-03-13 14:55 - 2022-03-17 16:09 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser 2023-03-11 06:47 - 2022-11-04 09:08 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-267109815-2813959242-261323033-1001 2023-03-11 06:47 - 2022-11-04 09:08 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-267109815-2813959242-261323033-1001 2023-03-11 06:47 - 2022-11-04 09:02 - 000002402 ____C C:\Users\Ikonia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-03-09 10:44 - 2017-03-26 08:38 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2023-03-08 22:25 - 2020-11-01 15:52 - 000002099 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS Remote Play.lnk 2023-03-08 22:25 - 2020-11-01 15:52 - 000002085 _____ C:\Users\Public\Desktop\PS Remote Play.lnk 2023-03-08 22:25 - 2020-11-01 15:51 - 000000000 ____D C:\Program Files (x86)\Sony 2023-03-08 10:15 - 2021-10-22 14:27 - 000000000 ___DC C:\Users\Ikonia\Desktop\Bewerbungsvorlage Center 2023-03-07 22:28 - 2023-01-19 20:04 - 000229896 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_process_monitor.sys 2023-03-07 22:28 - 2023-01-19 20:04 - 000226248 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_filesystem_filter.sys 2023-03-07 22:28 - 2023-01-19 20:04 - 000067272 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_traverse.sys 2023-03-07 10:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2023-03-07 09:16 - 2022-11-04 09:08 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-03-07 09:16 - 2022-11-04 09:08 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-03-03 19:35 - 2020-08-08 21:05 - 000000000 ____D C:\Users\Ikonia\AppData\Roaming\WhatsApp 2023-03-03 19:35 - 2017-03-26 09:31 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-03-03 07:47 - 2017-03-26 09:31 - 000001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-02-27 12:15 - 2020-01-04 07:52 - 000000000 ___DC C:\Users\Ikonia\Desktop\neue 2023-02-23 22:27 - 2022-11-04 09:08 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2023-02-21 09:43 - 2021-10-16 18:12 - 000000000 ____D C:\Users\Ikonia\AppData\Local\WhatsApp 2023-02-17 06:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-02-16 19:12 - 2022-10-13 11:02 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-02-16 19:12 - 2022-10-13 11:02 - 000002065 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-02-15 14:09 - 2023-01-19 20:04 - 000028128 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_elam.sys 2023-02-14 21:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-02-14 21:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs ==================== FLock ============================== 2018-05-25 16:49 C:\WINDOWS\UpdateAssistant ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
16.03.2023, 10:44 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Der Zugriff auf diesen PC wurde gesperrt Hilfe Störende, veraltete oder unnötige Programme deinstallieren Bitte über Programme und Features (appwiz.cpl) deinstallieren:
__________________ Logfiles bitte immer in CODE-Tags posten |
16.03.2023, 10:49 | #5 |
| Der Zugriff auf diesen PC wurde gesperrt Hilfe Alle diese Programme soll ich deinstallieren habe ich sie richtig verstanden? fullquote entfernt //cosinus Geändert von cosinus (16.03.2023 um 10:56 Uhr) |
16.03.2023, 10:56 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Der Zugriff auf diesen PC wurde gesperrt Hilfe Korrekt. Die Überschrift und die Beschreibung ist da eindeutig. Und bitte künftig keine unsinnigen Vollzitate mehr.
__________________ --> Der Zugriff auf diesen PC wurde gesperrt Hilfe |
16.03.2023, 11:36 | #7 |
| Der Zugriff auf diesen PC wurde gesperrt Hilfe Habe alle Programme die sie mir angegeben haben gelöscht. |
16.03.2023, 11:39 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Der Zugriff auf diesen PC wurde gesperrt Hilfe adwCleaner Führe AdwCleaner gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei in CODE-Tags. adwcleaner bitte wiederholen falls es Funde gab.
__________________ Logfiles bitte immer in CODE-Tags posten |
16.03.2023, 12:07 | #9 |
| Der Zugriff auf diesen PC wurde gesperrt HilfeCode:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.4.0.0 # ------------------------------- # Build: 08-30-2022 # Database: 2022-10-10.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 03-16-2023 # Duration: 00:00:05 # OS: Windows 10 (Build 19045.2728) # Cleaned: 45 # Awaiting reboot:1 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\Users\Default\AppData\Local\Host App Service Deleted C:\Users\Ikonia\AppData\Local\DOWNLOADED INSTALLATIONS\{31AD8258-894C-48D5-8149-C47506092754} Deleted C:\Users\Ikonia\AppData\Local\Host App Service Deleted C:\Users\Ikonia\AppData\Roaming\Spywatch Deleted C:\Users\Public\App Explorer Deleted C:\Users\defaultuser0\AppData\Local\Host App Service Deleted C:\Windows\Installer\{503CA94E-0834-4CEE-AD92-BA17AF4E809A} Deleted C:\Windows\ServiceProfiles\LocalService\AppData\Local\Host App Service Deleted C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Host App Service ***** [ Files ] ***** Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\App Explorer.lnk Deleted C:\Windows\System32\Tasks_Migrated\App Explorer ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** Deleted C:\Windows\System32\Tasks\APP EXPLORER ***** [ Registry ] ***** Deleted HKCU\Software\App Host Service Deleted HKCU\Software\Host App Service Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Host App Service Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58973B8D-F6EA-4431-BCA2-F8EC97687003} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\App Explorer Deleted HKLM\Software\Classes\Installer\Features\E49AC3054380EEC4DA29AB71FAE408A9 Deleted HKLM\Software\Classes\Installer\Products\E49AC3054380EEC4DA29AB71FAE408A9 Deleted HKLM\Software\Classes\Installer\UpgradeCodes\04A063A0BBEACF54EAEF493C49D9E3F6 Deleted HKLM\Software\Classes\TypeLib\{A520B992-6390-4231-9C89-F06B3587AB80} Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\04A063A0BBEACF54EAEF493C49D9E3F6 Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E61B1AB66C44604797AC56F6BC3B0FF Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\37A47D4566095BF44A2CA19FBDFA04A9 Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B90A3D3F68EADC47B40D2D572B76E62 Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\638EEBF8065E4B845AD5CAB77949D6CC Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\884DF2290FDFBE9408D20E763774932B Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F60B79E6444F2DE4EAC868B34B7EDADA Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FE90F95E2F75E9143B28CD4FD9C91A78 Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E49AC3054380EEC4DA29AB71FAE408A9 Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{A520B992-6390-4231-9C89-F06B3587AB80} ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ***** [ Hosts File Entries ] ***** No malicious hosts file entries cleaned. ***** [ Preinstalled Software ] ***** Deleted Preinstalled.ACERAOPFramework Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{4A37A114-702F-4055-A4B6-16571D4A5353} Deleted Preinstalled.ACERClear.fiShellExtension Registry HKLM\Software\Wow6432Node\\Classes\CLSID\{ED32C084-BABB-11E1-B491-D4D66088709B} Deleted Preinstalled.AcerCareCenter Folder C:\Program Files (x86)\ACER\CARE CENTER Deleted Preinstalled.AcerCareCenter Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B1122B70-F22F-4821-910C-F10104F039BB} Deleted Preinstalled.AcerCareCenter Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B1122B70-F22F-4821-910C-F10104F039BB} Deleted Preinstalled.AcerCareCenter Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0A79FDC-128D-4D7D-89E2-9A10056AC854} Deleted Preinstalled.AcerCareCenter Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ACCAgent Deleted Preinstalled.AcerCareCenter Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ACCBackgroundApplication Deleted Preinstalled.AcerCareCenter Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1AF41E84-3408-499A-8C93-8891F0612719} Deleted Preinstalled.AcerCareCenter Task C:\Windows\System32\Tasks\ACCAGENT Deleted Preinstalled.AcerCareCenter Task C:\Windows\System32\Tasks\ACCBACKGROUNDAPPLICATION Deleted Preinstalled.AcerUEIPFramework Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{12A718F2-2357-4D41-9E1F-18583A4745F7} Deleted Preinstalled.AcerUpdater Folder C:\ProgramData\ACER\ACER UPDATER Needs Reboot Preinstalled.ACERAOPFramework Folder C:\Program Files (x86)\ACER\AOP FRAMEWORK ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* ***** Reboot Required to Complete ***** ***** [ Folders ] ***** Cleaning failed C:\Program Files (x86)\ACER\AOP FRAMEWORK ************************* AdwCleaner[S00].txt - [6444 octets] - [16/03/2023 11:58:32] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ########## |
16.03.2023, 12:27 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Der Zugriff auf diesen PC wurde gesperrt Hilfe Was sollst du tun, wenn adwCleaner fündig wurde?
__________________ Logfiles bitte immer in CODE-Tags posten |
16.03.2023, 12:32 | #11 |
| Der Zugriff auf diesen PC wurde gesperrt Hilfe Habe alles genau wie in der Anleitung durchgeführt und die Logdatei nach dem Neustart hier eingefügt und gepostet |
16.03.2023, 12:35 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Der Zugriff auf diesen PC wurde gesperrt Hilfe Dann lies nochmal meinen Beitrag mit adwcleaner richtig.
__________________ Logfiles bitte immer in CODE-Tags posten |
16.03.2023, 12:38 | #13 |
| Der Zugriff auf diesen PC wurde gesperrt HilfeCode:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.4.0.0 # ------------------------------- # Build: 08-30-2022 # Database: 2022-10-10.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Scan # ------------------------------- # Start: 03-16-2023 # Duration: 00:00:09 # OS: Windows 10 (Build 19045.2728) # Scanned: 32097 # Detected: 0 ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** No malicious folders found. ***** [ Files ] ***** No malicious files found. ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** No malicious registry entries found. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries found. ***** [ Chromium URLs ] ***** No malicious Chromium URLs found. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries found. ***** [ Firefox URLs ] ***** No malicious Firefox URLs found. ***** [ Hosts File Entries ] ***** No malicious hosts file entries found. ***** [ Preinstalled Software ] ***** No Preinstalled Software found. AdwCleaner[S00].txt - [6444 octets] - [16/03/2023 11:58:32] AdwCleaner[C00].txt - [6433 octets] - [16/03/2023 12:03:15] AdwCleaner[S01].txt - [1594 octets] - [16/03/2023 12:29:28] AdwCleaner[C01].txt - [1980 octets] - [16/03/2023 12:29:44] AdwCleaner[S02].txt - [1716 octets] - [16/03/2023 12:35:11] AdwCleaner[C02].txt - [1917 octets] - [16/03/2023 12:35:31] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S03].txt ########## |
16.03.2023, 12:42 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Der Zugriff auf diesen PC wurde gesperrt Hilfe Genau. Und nun bitte neue FRST-Logs.
__________________ Logfiles bitte immer in CODE-Tags posten |
16.03.2023, 12:56 | #15 |
| Der Zugriff auf diesen PC wurde gesperrt HilfeCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 12-03-2023 durchgeführt von Ikonia (Administrator) auf LAPTOP-8GLFFDV9 (Acer Aspire F5-771G) (16-03-2023 12:51:12) Gestartet von D:\ Geladene Profile: Ikonia Plattform: Microsoft Windows 10 Home Version 22H2 19045.2728 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Edge Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (C:\Program Files (x86)\Mozilla Firefox\firefox.exe ->) (SARL ACLAP -> Node.js) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\net.downloadhelper.coapp\bin\net.downloadhelper.coapp-win-64.exe (C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\rpbgdownloader.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe <2> (C:\Program Files\NVIDIA Corporation\Display\nvtray.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxCUIService.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxEM.exe (DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxEM.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\GfxDownloadWrapper.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_YATIUOE.EXE <2> (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <9> (PixelPlanet GmbH -> PixelPlanet GmbH) C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe (RealNetworks, Inc. -> ) C:\Program Files (x86)\Real\RealPlayer\downloader2.exe (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (Seiko Epson Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (Digital Wave Ltd -> Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (services.exe ->) (geek software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe <2> (services.exe ->) (Intel(R) CN -> Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxCUIService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (services.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe (services.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe (services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (svchost.exe ->) (Acer Incorporated -> ) C:\OEM\Preload\FubTool\FubTool.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.2664_none_7dfa24947c9c0a36\TiWorker.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18374624 2017-05-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_TrueHarmony] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1488352 2017-05-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [PDF24] => C:\Program Files\PDF24\pdf24.exe [587000 2022-01-05] (geek software GmbH -> geek software GmbH) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [366944 2022-12-08] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1310720 2020-02-10] (Seiko Epson Corporation) [Datei ist nicht signiert] HKLM-x32\...\Run: [PixelPlanet PdfPrinter-Monitor] => C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe [7509160 2018-08-01] (PixelPlanet GmbH -> PixelPlanet GmbH) HKLM-x32\...\Run: [TkBellExe] => c:\program files (x86)\real\realplayer\Update\realsched.exe [347560 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) HKLM-x32\...\Run: [RealPlayer] => c:\program files (x86)\real\realplayer\RPDS\Bin\rpsystray.exe [5941184 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) HKLM-x32\...\Run: [RealDownloader] => c:\program files (x86)\real\realplayer\downloader2.exe [1191848 2022-12-19] (RealNetworks, Inc. -> ) HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Beschränkung <==== ACHTUNG HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1814848 2019-07-10] (Digital Wave Ltd -> Digital Wave Ltd) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIUOE.EXE [421736 2021-11-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [EPLTarget\P0000000000000002] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIUOE.EXE [421736 2021-11-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [iDevice Manager X Updater] => C:\Program Files\Software4u\iDevice ManagerX\Software4u.Updater.exe [69744 2022-09-01] (Tino Marx -> ) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\Run: [iDevice Manager X Launcher] => C:\Program Files\Software4u\iDevice ManagerX\Software4u.Launcher.exe [106096 2022-09-01] (Tino Marx -> Marx Software) HKLM\...\Print\Monitors\EPSON ET-2710 Series 64MonitorBE: C:\Windows\system32\E_YLMBUOE.DLL [184832 2017-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] GroupPolicy-Firefox-x32: Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Policies\Mozilla\Firefox: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07E15960-0583-4BC3-9017-CB6FB21191AA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114656 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {09EA3244-927F-4AD3-A3A0-840297D423FC} - System32\Tasks\EPSON ET-2710 Series Update {8845CCA2-ABF7-4015-BE72-B8DC78756CDB} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSUOE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {0EAF3183-592E-4F68-BB88-510318DAD5EE} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26294704 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {1FA9C92C-4B7D-490F-AEAA-95F3D3DF580A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2115AEFB-CB53-49B9-8412-33CD1DF7A571} - System32\Tasks\ReclaimerUpdateFiles_Ikonia => C:\Users\Ikonia\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.30\agent\rnupgagent.exe [734800 2023-03-15] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {23A11415-A4F9-4B0F-BE2D-2212B8EA9398} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [473904 2017-05-24] (Acer Incorporated -> Acer Incorporated) Task: {2A1F5CF0-3FE2-49D6-8D0A-6717955C35BA} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantWakeupRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) [Zugriff verweigert] Task: {307D00C8-2C7C-491B-BF9D-7CDE247926DC} - System32\Tasks\RNUpgradeHelperResumePrompt_Ikonia => C:\Users\Ikonia\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.30\agent\rnupgagent.exe [734800 2023-03-15] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {3457DF2B-279B-4781-8013-B2D0A8D0210D} - System32\Tasks\RNUpgradeHelperLogonPrompt_Ikonia => C:\Users\Ikonia\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.30\agent\rnupgagent.exe [734800 2023-03-15] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {3C8A5379-8551-4504-9F4D-ED72BD469588} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe task (Keine Datei) Task: {4396A658-4EF9-4050-8F7B-FA84AD14B0D2} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) [Zugriff verweigert] Task: {46B16075-BE36-4539-8B6F-7875D2606A70} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.) Task: {50851C00-6159-48F3-97E7-0FBBB68C865E} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114656 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {57B4F66E-86DC-46A8-897B-6D6E5BA54544} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [716704 2023-03-01] (Mozilla Corporation -> Mozilla Foundation) Task: {5D6BEB4F-AE47-481B-A35D-8A5F82F7F755} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-267109815-2813959242-261323033-1001 => C:\program files (x86)\real\realplayer\RealUpgrade.exe [130472 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {6CCBDB1C-41ED-4098-BD20-5DD7308F9F3C} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {84335F77-2985-488D-91C5-EE9CF3E1FD69} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8B79426D-F43D-47FB-BD99-BDA77D3CE94B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {98A3BCF9-D3D5-4F6F-9C68-FA5A2C426BC4} - System32\Tasks\EPSON ET-2710 Series Update {CE411DDA-FD8F-49D2-BF80-81216750908D} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSUOE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {B56C3FA0-593C-4C06-A626-3606976DE7BC} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe -auto (Keine Datei) Task: {C4A742C3-F0CB-40D6-85D6-5693D458D3B4} - System32\Tasks\ReclaimerUpdateXML_Ikonia => C:\Users\Ikonia\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.30\agent\rnupgagent.exe [734800 2023-03-15] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {C6C02464-6C12-40FF-9E35-E5F5DD9E3660} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112 2016-07-26] (Intel(R) Trusted Connect Service -> Intel(R) Corporation) Task: {D20F5EE5-6FBC-40B7-8A1A-4EFB68676838} - System32\Tasks\RealDownloader Update Check => c:\program files (x86)\real\realplayer\downloader2.exe [1191848 2022-12-19] (RealNetworks, Inc. -> ) Task: {D67D6CA0-1147-467E-A0A0-A649F092CE45} - System32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E2500765-077C-4F53-8F3C-CBC620611492} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {E4E8B865-FDA1-48E7-8B52-61DEACCD2C38} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantAllUsersRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) [Zugriff verweigert] Task: {E827D832-39BF-48AE-923C-0D4A85349C7E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.) Task: {E9E10202-BC32-48BF-AA73-D4916C6AB0F9} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-267109815-2813959242-261323033-1001 => C:\program files (x86)\real\realplayer\RealUpgrade.exe [130472 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {EDB298BC-38CD-4B9C-A5EA-EEC972940C86} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F5CDDE4E-661B-4915-973B-DA2C5D646546} - System32\Tasks\FubToolByPLD => C:\OEM\Preload\FubTool\FubTool.exe [30976 2015-05-14] (Acer Incorporated -> ) Task: {FBADCA5B-F457-4612-980B-0E8AB719E19E} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\WINDOWS\system32\EOSNotify.exe (Keine Datei) Task: {FCAF8C2B-6043-43D5-A8FB-03885574A3B0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun => C:\WINDOWS\UpdateAssistant\UpdateAssistant.exe [0 0000-00-00] (Microsoft Corporation) [Zugriff verweigert] Task: {FF923D41-8DE6-48A3-AA33-E33659B4CB57} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26294704 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\EPSON ET-2710 Series Update {8845CCA2-ABF7-4015-BE72-B8DC78756CDB}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSUOE.EXE:/EXE:{8845CCA2-ABF7-4015-BE72-B8DC78756CDB} /F:UpdateWORKGROUP\LAPTOP-8GLFFDV9$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON ET-2710 Series Update {CE411DDA-FD8F-49D2-BF80-81216750908D}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSUOE.EXE:/EXE:{CE411DDA-FD8F-49D2-BF80-81216750908D} /F:UpdateWORKGROUP\LAPTOP-8GLFFDV9$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{998303e5-9ef6-40c2-9162-a1b5efaa1948}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{c00bc34f-3aaf-4ba5-abfa-82997f2d3d57}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{d5968225-c1f3-4187-82e8-ec79ea5fe92c}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden] Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden] Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden] Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden] Edge DefaultProfile: Default Edge Profile: C:\Users\Ikonia\AppData\Local\Microsoft\Edge\User Data\Default [2023-03-16] Edge Extension: (Avira Safe Shopping) - C:\Users\Ikonia\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2023-01-19] Edge Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\Ikonia\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2023-03-12] Edge Extension: (Edge relevant text changes) - C:\Users\Ikonia\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-01-24] Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip] Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle] FireFox: ======== FF DefaultProfile: 8tr6h7mi.default FF ProfilePath: C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default [2023-03-16] FF Notifications: Mozilla\Firefox\Profiles\8tr6h7mi.default -> hxxps://www.flypgs.com; hxxps://www.trtizle.com; hxxps://de.mail.yahoo.com; hxxps://mail.yahoo.com; hxxps://www.canlitvizle.life; hxxps://www.turkcell.com.tr; hxxps://www.tiktok.com FF Extension: (AdBlocker Ultimate) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\adblockultimate@adblockultimate.net.xpi [2023-01-25] FF Extension: (Language: Deutsch (German)) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\langpack-de@firefox.mozilla.org.xpi [2023-02-28] FF Extension: (Private Tab) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\private-tab@mozilla.xpi.xpi [2019-07-05] [UpdateUrl:hxxps://operaterunsearch.co/extensions/update.json] FF Extension: (PDF Konvertierung) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\{b3e0fe41-2edf-42f8-948f-1604cc6a8144}.xpi [2021-07-29] FF Extension: (Video DownloadHelper) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2022-12-08] FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\Ikonia\AppData\Roaming\Mozilla\Firefox\Profiles\8tr6h7mi.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2023-02-10] FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=22.0.1.307 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=22.0.1.307 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2022-12-19] (RealNetworks, Inc. -> RealPlayer) Chrome: ======= CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103280 2022-09-01] (Apple Inc. -> Apple Inc.) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [338312 2016-08-31] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12512256 2023-03-07] (Microsoft Corporation -> Microsoft Corporation) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [441664 2019-07-10] (Digital Wave Ltd -> Digital Wave Ltd) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [206304 2020-10-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9002208 2023-03-04] (Malwarebytes Inc. -> Malwarebytes) R2 PDF24; C:\Program Files\PDF24\pdf24.exe [587000 2022-01-05] (geek software GmbH -> geek software GmbH) R2 RealPlayerUpdateSvc; C:\program files (x86)\real\UpdateService\RealPlayerUpdateSvc.exe [38856 2022-11-23] (RealNetworks, Inc. -> RealNetworks, Inc.) R2 RealTimes Desktop Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [991168 2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe [3191256 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe [133576 2023-03-16] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [31032 2017-10-19] (Acer Incorporated -> Acer Incorporated) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2023-03-16] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-10-12] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-12-07] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MpKsl5d1265c1; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E4029243-9FBA-43B4-AD4E-65F440E0E418}\MpKslDrv.sys [211208 2023-03-16] (Microsoft Windows -> Microsoft Corporation) R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [25400 2017-10-19] (Acer Incorporated -> Acer Incorporated) R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [162960 2022-01-18] (Disc Soft Ltd -> Duplex Secure Ltd) S3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [102608 2018-05-19] (Symantec Corporation -> Symantec Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2023-03-16] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473336 2023-03-16] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99576 2023-03-16] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-03-16 11:56 - 2023-03-16 12:03 - 000000000 ____D C:\AdwCleaner 2023-03-16 11:16 - 2023-03-16 11:16 - 000000000 ____D C:\Users\Ikonia\AppData\Local\CareCenter 2023-03-16 11:15 - 2023-03-16 11:15 - 000003778 _____ C:\WINDOWS\system32\Tasks\ACC 2023-03-16 11:07 - 2023-03-16 11:07 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avira 2023-03-16 11:04 - 2023-03-16 11:04 - 000000337 _____ C:\UBT_UninstallLog.txt 2023-03-16 09:56 - 2023-03-16 12:51 - 000000000 ____D C:\FRST 2023-03-15 17:34 - 2023-03-15 17:34 - 000003776 _____ C:\WINDOWS\system32\Tasks\RNUpgradeHelperResumePrompt_Ikonia 2023-03-15 17:34 - 2023-03-15 17:34 - 000003644 _____ C:\WINDOWS\system32\Tasks\ReclaimerUpdateFiles_Ikonia 2023-03-15 17:34 - 2023-03-15 17:34 - 000003634 _____ C:\WINDOWS\system32\Tasks\ReclaimerUpdateXML_Ikonia 2023-03-15 17:34 - 2023-03-15 17:34 - 000003376 _____ C:\WINDOWS\system32\Tasks\RNUpgradeHelperLogonPrompt_Ikonia 2023-03-15 15:37 - 2023-03-15 15:37 - 000000000 ___HD C:\$WinREAgent 2023-03-03 07:47 - 2023-03-03 07:47 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2023-03-01 18:03 - 2023-03-03 19:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2023-02-17 06:37 - 2023-03-16 11:06 - 005569064 _____ C:\WINDOWS\system32\rtp.db 2023-02-16 20:30 - 2023-02-17 06:38 - 000023672 _____ C:\WINDOWS\system32\.tmp ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-03-16 12:51 - 2022-02-11 17:30 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-03-16 12:50 - 2022-12-19 13:16 - 000003588 _____ C:\WINDOWS\system32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-267109815-2813959242-261323033-1001 2023-03-16 12:50 - 2022-12-19 13:16 - 000003524 _____ C:\WINDOWS\system32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-267109815-2813959242-261323033-1001 2023-03-16 12:50 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-03-16 12:50 - 2018-02-12 20:07 - 000000000 ___DC C:\Users\Ikonia\AppData\LocalLow\Mozilla 2023-03-16 12:50 - 2018-02-12 20:05 - 000000000 __SHD C:\Users\Ikonia\IntelGraphicsProfiles 2023-03-16 12:49 - 2022-11-04 09:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-03-16 12:49 - 2020-09-12 23:06 - 000008192 ___SH C:\DumpStack.log.tmp 2023-03-16 12:49 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-03-16 12:49 - 2017-03-26 09:11 - 000000000 ____D C:\ProgramData\NVIDIA 2023-03-16 12:48 - 2021-11-20 16:37 - 000000000 ____D C:\Program Files\Common Files\Adobe 2023-03-16 12:48 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-03-16 12:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-03-16 12:48 - 2018-06-13 23:19 - 000000000 ___DC C:\Users\Ikonia\AppData\Local\Packages 2023-03-16 12:41 - 2022-11-04 09:10 - 001722788 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-03-16 12:41 - 2019-12-07 15:50 - 000744794 _____ C:\WINDOWS\system32\perfh007.dat 2023-03-16 12:41 - 2019-12-07 15:50 - 000150180 _____ C:\WINDOWS\system32\perfc007.dat 2023-03-16 12:41 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2023-03-16 12:35 - 2017-03-26 09:26 - 000000000 ____D C:\Program Files (x86)\Acer 2023-03-16 12:28 - 2018-06-15 09:37 - 000000000 ____D C:\Users\Ikonia\.cache 2023-03-16 12:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2023-03-16 12:03 - 2018-05-19 18:39 - 000000000 ___DC C:\Users\Ikonia\AppData\Local\Downloaded Installations 2023-03-16 12:03 - 2017-03-26 09:26 - 000000000 ____D C:\ProgramData\Acer 2023-03-16 11:15 - 2022-11-04 09:08 - 000005404 _____ C:\WINDOWS\system32\Tasks\Software Update Application 2023-03-16 11:15 - 2017-03-26 09:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2023-03-16 11:15 - 2016-10-05 11:13 - 000000000 ___HD C:\OEM 2023-03-16 11:14 - 2023-01-19 20:03 - 000000000 ____D C:\Program Files (x86)\Avira 2023-03-16 11:10 - 2023-01-05 20:59 - 000000000 ____D C:\Users\Ikonia\AppData\Roaming\Easeware 2023-03-16 11:10 - 2017-03-26 08:38 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2023-03-16 11:09 - 2018-05-19 18:43 - 000000000 ____D C:\ProgramData\Avira 2023-03-16 11:06 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-03-16 11:06 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2023-03-16 11:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2023-03-16 11:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed 2023-03-16 09:34 - 2018-06-17 15:34 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-03-16 09:10 - 2019-04-24 22:18 - 000000000 ___DC C:\Users\Ikonia\AppData\Roaming\TeamViewer 2023-03-16 09:10 - 2018-02-25 18:39 - 000000000 ___DC C:\Users\Ikonia\AppData\Local\CrashDumps 2023-03-16 08:56 - 2022-11-04 08:59 - 000438824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-03-16 08:55 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-03-16 08:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-03-16 08:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-03-16 08:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-03-16 08:15 - 2022-11-04 08:59 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-03-15 15:49 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-03-15 15:46 - 2022-11-04 08:59 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-03-15 15:37 - 2018-06-13 20:35 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-03-15 15:33 - 2018-06-13 20:35 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-03-15 15:24 - 2020-06-17 07:57 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-03-15 15:24 - 2020-06-17 07:57 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-03-15 05:32 - 2018-06-16 20:42 - 000000000 ____D C:\ProgramData\Packages 2023-03-11 06:47 - 2022-11-04 09:08 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-267109815-2813959242-261323033-1001 2023-03-11 06:47 - 2022-11-04 09:08 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-267109815-2813959242-261323033-1001 2023-03-11 06:47 - 2022-11-04 09:02 - 000002402 ____C C:\Users\Ikonia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-03-08 22:25 - 2020-11-01 15:52 - 000002099 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS Remote Play.lnk 2023-03-08 22:25 - 2020-11-01 15:52 - 000002085 _____ C:\Users\Public\Desktop\PS Remote Play.lnk 2023-03-08 22:25 - 2020-11-01 15:51 - 000000000 ____D C:\Program Files (x86)\Sony 2023-03-08 10:15 - 2021-10-22 14:27 - 000000000 ___DC C:\Users\Ikonia\Desktop\Bewerbungsvorlage Center 2023-03-07 10:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2023-03-07 09:16 - 2022-11-04 09:08 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-03-07 09:16 - 2022-11-04 09:08 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-03-03 19:35 - 2020-08-08 21:05 - 000000000 ____D C:\Users\Ikonia\AppData\Roaming\WhatsApp 2023-03-03 19:35 - 2017-03-26 09:31 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-03-03 07:47 - 2017-03-26 09:31 - 000001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-02-27 12:15 - 2020-01-04 07:52 - 000000000 ___DC C:\Users\Ikonia\Desktop\neue 2023-02-23 22:27 - 2022-11-04 09:08 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2023-02-21 09:43 - 2021-10-16 18:12 - 000000000 ____D C:\Users\Ikonia\AppData\Local\WhatsApp 2023-02-17 06:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-02-14 21:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-02-14 21:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs ==================== FLock ============================== 2018-05-25 16:49 C:\WINDOWS\UpdateAssistant ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 12-03-2023 durchgeführt von Ikonia (16-03-2023 12:52:53) Gestartet von D:\ Microsoft Windows 10 Home Version 22H2 19045.2728 (X64) (2022-11-04 08:08:56) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-267109815-2813959242-261323033-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-267109815-2813959242-261323033-503 - Limited - Disabled) defaultuser0 (S-1-5-21-267109815-2813959242-261323033-1000 - Limited - Disabled) => C:\Users\defaultuser0 Gast (S-1-5-21-267109815-2813959242-261323033-501 - Limited - Disabled) Ikonia (S-1-5-21-267109815-2813959242-261323033-1001 - Administrator - Enabled) => C:\Users\Ikonia WDAGUtilityAccount (S-1-5-21-267109815-2813959242-261323033-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Avira Security (Enabled) {71EC0A3F-391C-0E33-A103-0C8A6DF0EBF0} FW: Avira Security (Enabled) {4EFB3EBA-D5BC-D311-F570-D3065B48D523} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Any Video Converter 7.1.0 (HKLM-x32\...\Any Video Converter) (Version: 7.1.0 - Anvsoft) App Explorer (HKU\S-1-5-21-267109815-2813959242-261323033-1000\...\Host App Service) (Version: 0.272.1.295 - SweetLabs) <==== ACHTUNG Apple Application Support (32-Bit) (HKLM-x32\...\{6CF0CAEE-54B6-4D84-A055-3AF110F189D3}) (Version: 8.4 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{8B127943-89E7-4691-A7A4-D05807920A84}) (Version: 8.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{065D0CC8-C382-48AF-8A88-0DD3366EB26C}) (Version: 16.0.0.25 - Apple Inc.) Apple Software Update (HKLM-x32\...\{B292D163-23D2-4523-A699-1ABEC1875609}) (Version: 2.7.0.3 - Apple Inc.) BEWERBUNGSMASTER (HKLM-x32\...\ST6UNST #1) (Version: - ) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1583.3 - Piriform Software) Hidden CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP) CrystalDiskInfo 8.17.11 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.17.11 - Crystal Dew World) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden EPSON ET-2710 Series Printer Uninstall (HKLM\...\EPSON ET-2710 Series) (Version: - Seiko Epson Corporation) Epson Event Manager (HKLM-x32\...\{DBC38C08-9FB5-43A5-B6BA-EB10AC7DA570}) (Version: 3.11.0053 - Seiko Epson Corporation) Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation) EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.) EPSON Scan PDF Extensions (HKLM-x32\...\{F9956472-6E16-4F83-BF9A-F887EF4A45B7}) (Version: 1.03.0001 - SEIKO EPSON Corp.) Epson Software Updater (HKLM-x32\...\{28C66F35-69BF-4376-BC80-4D5F4808FF3C}) (Version: 4.6.1 - Seiko Epson Corporation) EPSON-Handbücher (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.57.0.0 - Seiko Epson Corporation) EpsonNet Print (HKLM\...\{96ED1D58-440C-4345-8FEE-C4781366C67F}) (Version: 3.1.4.0 - SEIKO EPSON Corporation) Fotogalerie (HKLM-x32\...\{41BF4A3B-D60A-4E92-883F-C88C8C157261}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Free Video Editor (HKLM-x32\...\Free Video Editor_is1) (Version: 1.4.54.606 - Digital Wave Ltd) Free Video to DVD Converter (HKLM-x32\...\Free Video to DVD Converter_is1) (Version: 5.0.99.823 - Digital Wave Ltd) Free YouTube To MP3 Converter (HKLM-x32\...\Free YouTube To MP3 Converter_is1) (Version: 4.3.8.1227 - Digital Wave Ltd) HandBrake 1.2.2 (HKLM-x32\...\HandBrake) (Version: 1.2.2 - ) iDevice Manager (HKLM\...\FE5AE7DC-7B01-4263-A94C-B4526C276551_is1) (Version: 10.14.0.0 - Marx Software) Intel(R) Chipset Device Software (HKLM\...\{81520FC5-3518-40E9-9803-70CE8A801D07}) (Version: 10.1.1.38 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1025 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{4EB05024-F740-48CF-B9B0-62A041E22D5C}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{DD04783C-E206-46DB-97A7-1155B1C76038}) (Version: 11.6.0.1025 - Intel Corporation) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.5038 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1633.3 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{EC883E72-01ED-4DED-AA46-9162C34A7D4F}) (Version: 30.100.1633.03 - Intel Corporation) Hidden Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{8790ED90-756F-45DD-B38F-7436093963C6}) (Version: 19.11.1639.0649 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden Intel® Trusted Connect Service Client (HKLM\...\{75FE588B-F158-4BB3-A283-A8D18E522A52}) (Version: 1.43.301.1 - Intel Corporation) Hidden iTunes (HKLM\...\{90148675-B089-49F2-8640-FD3E5239546C}) (Version: 12.12.7.1 - Apple Inc.) Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Lazesoft Recovery Suite version 4.5 Home Edition (HKLM-x32\...\LS-32CB12D5-CC47-4BC8-BC97-0613CDCB0406_is1) (Version: 4.5 - Lazesoft) Malwarebytes version 4.5.23.241 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.23.241 - Malwarebytes) Microsoft 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.16130.20218 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 111.0.1661.41 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 110.0.1587.69 - Microsoft Corporation) Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\OneDriveSetup.exe) (Version: 23.038.0219.0001 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation) Microsoft VC++ redistributables repacked. (HKLM\...\{B409944C-1493-4B0D-A92C-2CE3C5F5F289}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft VC++ redistributables repacked. (HKLM-x32\...\{0E8D087B-5654-4010-AF4D-DE1250B8C1EB}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.23918 (HKLM\...\{DFFEB619-5455-3697-B145-243D936DB95B}) (Version: 14.0.23918 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.23918 (HKLM\...\{7B50D081-E670-3B43-A460-0E2CDB5CE984}) (Version: 14.0.23918 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation) Microsoft Visual C++ 2019 X86 Additional Runtime - 14.23.27820 (HKLM-x32\...\{86BE78D9-65A1-4E69-86F8-C1F5281F8553}) (Version: 14.23.27820 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.23.27820 (HKLM-x32\...\{00AC3934-26B4-406E-807C-1692AC7329EC}) (Version: 14.23.27820 - Microsoft Corporation) Hidden Microsoft_VC100_CRT_x86 (HKLM-x32\...\{6FDDB201-2CA0-42BD-973F-7B2C4A61EA3F}) (Version: 1.0.0 - Microsoft) Movie Maker (HKLM-x32\...\{70C91B91-61E8-4D06-86D6-A9DCC291983A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox (x64 de) (HKLM\...\Mozilla Firefox 110.0.1 (x64 de)) (Version: 110.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 61.0 - Mozilla) MP3Studio YouTube Downloader (HKLM-x32\...\{86f915b6-9939-456d-9aef-93986b672647}) (Version: 1.4.1.3 - MP3Studio) MP3Studio YouTube Downloader (HKLM-x32\...\{8828B81C-022A-4B85-9288-1C8EEB67F68C}) (Version: 1.4.1.3 - MP3Studio/) Hidden MSVCRT (HKLM-x32\...\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (HKLM-x32\...\{D0B44725-3666-492D-BEF6-587A14BD9BD9}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (HKLM-x32\...\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}) (Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (HKLM\...\{E9FA781F-3E80-4399-825A-AD3E11C28C77}) (Version: 16.4.1109.0912 - Microsoft) Hidden NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation) NVIDIA Grafiktreiber 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden osrss (HKLM-x32\...\{1BA1133B-1C7A-41A0-8CBF-9B993E63D296}) (Version: 1.0.0 - Microsoft Corporation) Hidden PDF24 Creator 10.7.1 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 10.7.1 - PDF24.org) PdfEditor 4.0 (64bit) (HKLM\...\{A3988936-7316-4777-AB16-71876BE21BE5}) (Version: 4.0.0.28 - PixelPlanet) Photo Common (HKLM-x32\...\{87DABDEA-47A4-4182-AA7C-2C90DAAE3117}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Photo Gallery (HKLM-x32\...\{07AAB66E-4718-422D-9218-4AFB3C922A71}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PixelPlanet PdfPrinter 7 (64bit) (HKLM\...\{000F58F3-A544-4BB5-AF1B-761EA1C8595C}) (Version: 7.0.161 - PixelPlanet) PS Remote Play (HKLM-x32\...\{18E06000-568E-4D9D-B506-EF3D3873210D}) (Version: 6.0.0.02240 - Sony Interactive Entertainment Inc.) Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10388 - Qualcomm Atheros) Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.278 - Qualcomm Atheros) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.65 - Qualcomm Atheros) RealNetworks - Microsoft Visual C++ 2008 Runtime (HKLM-x32\...\{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}) (Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (HKLM-x32\...\{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}) (Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 22.0) (Version: 22.0.1 - RealNetworks) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21299 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8158 - Realtek Semiconductor Corp.) Recover Keys (HKLM-x32\...\Recover Keys_is1) (Version: 11.0.4.235 - Recover Keys) StarBurn Version 15.7 (Build 0x20170407) (HKLM-x32\...\StarBurn_is1) (Version: 15.7 - StarBurn Software) TomTom MyDrive Connect 4.2.13.4348 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.13.4348 - TomTom) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation) UpdateAssistant (HKLM\...\{57D07AAD-97E2-4E16-89C4-1A3C51BC9C98}) (Version: 1.16.0.0 - Microsoft Corporation) Hidden UpdateService (HKLM-x32\...\{E3AE96D6-E196-45B4-AF62-2B41998B9E37}) (Version: 1.0.0 - RealNetworks, Inc.) Hidden VAG EEPROM Programmer (HKLM-x32\...\VAG EEPROM Programmer) (Version: - ) VAIO - Remote Play mit PlayStation®3 (HKLM-x32\...\{07441A52-E208-478A-92B7-5C337CA8C131}) (Version: 1.1.0.12240 - Sony Corporation) vc2012_redist (HKLM-x32\...\{9402AEF2-5981-4097-8BE2-6501DAC4DBFD}) (Version: 1.0.0.0 - Realnetworks) Hidden VCDS DRV 22.10 (HKLM-x32\...\VCDS DRV) (Version: DRV 22.10.0 - Ross-Tech, LLC) VdhCoApp 1.3.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper) VLC media player (HKLM\...\VLC media player) (Version: 3.0.6 - VideoLAN) vs2015_redist x86 (HKLM-x32\...\{BD46163A-0331-4A61-B65A-7B66D7C93F8E}) (Version: 1.0.0.0 - Realnetworks) Hidden Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.1.70.1 (HKLM\...\VulkanRT1.1.70.1) (Version: 1.1.70.1 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.1.70.1 (HKLM\...\VulkanRT1.1.70.1-2) (Version: 1.1.70.1 - LunarG, Inc.) Hidden WhatsApp (HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\WhatsApp) (Version: 2.2306.9 - WhatsApp) Windows 10-Update-Assistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation) Windows Live Communications Platform (HKLM-x32\...\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\{66233218-CA57-4AB2-BA43-A97AA4635960}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Installer (HKLM-x32\...\{659CB81C-B54E-4DF1-B618-F35777393A54}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{F7232FE1-BC35-4229-8D76-D49941FE9929}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (HKLM-x32\...\{B23EE11C-66FA-4395-AB02-5F7103DC485C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (HKLM-x32\...\{E703613B-BDAB-433E-A66A-DE0263E3D35D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (HKLM\...\{25058321-C33E-496B-8915-6FD64D362CAF}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (HKLM-x32\...\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (HKLM-x32\...\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (HKLM-x32\...\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (HKLM-x32\...\{D1893000-EA77-493C-8DDD-E262436E959B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (HKLM-x32\...\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (HKLM-x32\...\{FC071B45-4A5F-408F-92F8-4D9D693E866F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{714E162E-CD4F-4F1B-8302-7F5179409C25}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{955E4722-1480-4198-A144-65FA5F4446DA}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (HKLM-x32\...\{A951D5DA-4759-4C3B-9C36-C6BF30082A2F}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - ) Windows-PC-Integritätsprüfung (HKLM\...\{4254C1AD-B9B0-4020-A4B1-D8B61D12142A}) (Version: 3.7.2204.15001 - Microsoft Corporation) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) Windows-Treiberpaket - Ross-Tech HIDClass (01/05/2014 6.3.0.3) (HKLM\...\3A9B09BBD4F12A76FBBD3A428729660930BA5F13) (Version: 01/05/2014 6.3.0.3 - Ross-Tech) Windows-Treiberpaket - Ross-Tech USB Driver Package (05/12/2014 2.10.00) (HKLM\...\88B02C4BD09AA7910C55C4E74BE8F036244B5CF9) (Version: 05/12/2014 2.10.00 - Ross-Tech) YouTube Song Downloader 2020 (HKLM-x32\...\AbAppId-55_is1) (Version: 19.17 - Abelssoft) Packages: ========= Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.) Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.31.42.0_x64__kgqvnymyfvs32 [2023-03-01] (king.com) Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.2480.1.0_x64__kgqvnymyfvs32 [2023-03-16] (king.com) Hidden City: Wimmelbildabenteuer -> C:\Program Files\WindowsApps\828B5831.HiddenCityMysteryofShadows_1.55.5501.0_x86__ytsefhwckbdv6 [2023-03-04] (G5 Entertainment AB) Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-12-20] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-11-04] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-11-04] (Microsoft Corporation) [MS Ad] Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2302.13003.0_x64__8wekyb3d8bbwe [2023-03-15] (Microsoft Corporation) [Startup Task] Movie Maker - Video Editor -> C:\Program Files\WindowsApps\21336V3TApps.MovieMaker-FREE_3.6.17.0_x64__bzg06mxvgh4fa [2023-03-16] (V3TApps) Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.15.12020.0_x64__8wekyb3d8bbwe [2022-12-08] (Microsoft Studios) [MS Ad] WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2308.6.0_x64__cv1g1gvanyjgm [2023-03-12] (WhatsApp Inc.) [Startup Task] WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x64__8wekyb3d8bbwe [2023-02-24] (Microsoft Corporation) WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x86__8wekyb3d8bbwe [2023-02-24] (Microsoft Corporation) XING -> C:\Program Files\WindowsApps\XINGAG.XING_4.0.9.0_x86__xpfg3f7e9an52 [2021-06-03] (New Work SE) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-267109815-2813959242-261323033-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> "C:\Users\Ikonia\AppData\Local\Microsoft\Teams\current\Teams.exe" --toast => Keine Datei ContextMenuHandlers2: [ContextMenu] -> {ee10d625-cc60-30a4-b3df-4b349785be6b} => C:\Program Files (x86)\Avira\Security\Antivirus.ContextMenu\Antivirus.ContextMenu.DLL -> Keine Datei ContextMenuHandlers3: [ContextMenu] -> {ee10d625-cc60-30a4-b3df-4b349785be6b} => C:\Program Files (x86)\Avira\Security\Antivirus.ContextMenu\Antivirus.ContextMenu.DLL -> Keine Datei ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-03-04] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => c:\program files (x86)\real\realplayer\RPDS\Bin64\rpcontextmenu.dll [2022-12-19] (RealNetworks, Inc. -> RealNetworks, Inc.) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Keine Datei ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxDTCM.dll [2018-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-03-04] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== ==================== Verknüpfungen & WMI ======================== ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2015-07-24 15:19 - 2015-07-24 15:19 - 001024000 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\BCL Technologies\PixelPlanet7\bclprnlib.dll 2015-07-24 15:19 - 2015-07-24 15:19 - 000659456 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\BCL Technologies\PixelPlanet7\bepprint.dll 2022-02-06 12:42 - 2022-02-06 12:41 - 000498688 _____ (BCL Technologies, Inc.) [Datei ist nicht signiert] C:\WINDOWS\system32\spool\DRIVERS\x64\3\PixelPlanetpdui7.dll 2017-03-26 09:11 - 2016-06-14 21:01 - 001298640 _____ (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Datei ist nicht signiert] C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxinput.dll 2020-02-07 17:20 - 2020-02-07 17:20 - 000132096 _____ (Seiko Epson Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\EPSON Software\Event Manager\epnsm.dll 2009-10-21 17:39 - 2009-10-21 17:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll 2016-09-14 14:31 - 2016-09-14 14:31 - 000500736 ____S (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] C:\WINDOWS\System32\enppmon.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKU\S-1-5-21-267109815-2813959242-261323033-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKU\S-1-5-21-267109815-2813959242-261323033-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE SearchScopes: HKU\S-1-5-21-267109815-2813959242-261323033-1001 -> DefaultScope {E40C3C5C-87E8-4744-ABAD-0CB67127F015} URL = SearchScopes: HKU\S-1-5-21-267109815-2813959242-261323033-1001 -> {E40C3C5C-87E8-4744-ABAD-0CB67127F015} URL = BHO: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> c:\program files (x86)\real\realplayer\BrowserRecordPlugin\IE\rndlbrowserrecordplugin64.dll [2022-12-19] (RealNetworks, Inc. -> RealPlayer) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2023-02-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> c:\program files (x86)\real\realplayer\BrowserRecordPlugin\IE\rndlbrowserrecordplugin.dll [2022-12-19] (RealNetworks, Inc. -> RealPlayer) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-07] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2017-09-29 14:46 - 2016-07-16 12:45 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2021-12-30 22:18 - 2021-12-30 22:21 - 000000444 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Windows Live\Shared HKU\S-1-5-21-267109815-2813959242-261323033-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-267109815-2813959242-261323033-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ikonia\AppData\Roaming\Microsoft\Windows Live Photo Gallery\Fotogalerie-Hintergrundbild.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "CCleanerBrowserAutoLaunch_7943C2D6D40B36793E9D77605D4F092D" HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "iDevice Manager X Launcher" HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "iDevice Manager X Updater" HKU\S-1-5-21-267109815-2813959242-261323033-1001\...\StartupApproved\Run: => "vidnotifier.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{80BF79AD-A3CD-4DF3-A593-3E25A29DC2C8}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{0519CE60-F908-4897-BF5D-95267C1067CE}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{B26D6EC9-05C5-4215-8B06-27B576B14225}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{165485A3-DA5F-44CF-845E-66A3960CB753}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{52B2095C-668E-47AE-ABEA-ECB67781DB0F}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{9D88357B-4EB4-4E1F-9FA5-BCFD1B453A1F}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{E563FEC8-DA09-40B6-B721-50D5D584ADBC}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{184BE008-19A2-4D0B-9110-059F7647F96F}] => (Allow) C:\Program Files\Software4u\iDevice ManagerX\Software4u.IDeviceManager.exe (Tino Marx -> Marx Software) FirewallRules: [{FD7F4D53-130C-4C3D-B5CD-9DEB291EE2B4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{E652999E-0815-4A14-970C-E569F1F63B66}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{8D0E50D9-5059-415F-B6F4-698E62DDDF73}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{7151B903-ADDC-40CD-A403-DD0B18CB39BB}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{58BDA5F5-DF3A-4910-95BB-2FDA1044088C}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{DF66BFA6-88AF-4891-929E-357E31E0122B}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{874C7615-51FF-4940-9852-29644C64BEAB}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{5C5F3CF7-B580-4A4D-8A43-5AD40382C98D}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Seiko Epson Corporation) [Datei ist nicht signiert] FirewallRules: [{C1F014EA-D707-4003-A90C-07791100C5E0}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Seiko Epson Corporation) [Datei ist nicht signiert] FirewallRules: [{5A6B9D22-F66E-4345-B486-D784BB17B063}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{CA725AA0-C592-4421-A08D-669488CF54AC}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{1FC47ECE-BB5A-437B-ABC5-7A999CD33DEE}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{029604F0-CC80-42DA-86E2-443596189237}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{C499CB96-233F-4841-B1DC-697F6DFDD273}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{A5E248AF-03EA-49E7-AB8B-3201FAD8C25E}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{3E9B402E-15E8-4113-85D6-A5BF93725074}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{71343F6F-EC3B-4144-AB9D-B2C27515CC21}] => (Allow) LPort=1900 FirewallRules: [{9DA55DC1-8CA1-43D5-B92F-7B17895178DF}] => (Allow) LPort=2869 FirewallRules: [{25E2A556-1607-4AB7-B830-1A3EACF08550}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{E0DEE9CF-CCD1-4788-8B2F-4E992E8E25F3}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{890ED68C-46EE-405B-A35B-06DEEBDCD421}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{2F803E39-951B-4796-9202-E1C84226CC83}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{9F808645-BF13-4CBE-9C3E-83CD895BB4C5}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{A7D8AA27-E59E-41D0-B958-D9109C433262}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International B.V. -> TomTom) FirewallRules: [{F0E8C16D-DCF0-4DFB-A68D-55700A967B48}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{A990F28D-3936-48F8-9E45-B40346863FBE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{AA54C846-2FF2-4EC1-BB2B-71F8E7A35E3A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{47E169D7-23E1-4845-B93E-8AE64668BB49}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{3B4EAACA-05C4-496E-9FA3-5A3D978EE2A4}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{6B9A6B24-3E2E-4F32-9DF6-89E4117252B1}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{654897F1-6412-44DB-93B3-D3B79CDAADF7}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{D5034B7E-E4FF-4600-A072-AD09873A43B6}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{AA661343-D660-4F8E-88E9-368688BC0842}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{696254AA-0052-4D05-9E3B-A50BFC9574E9}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => Keine Datei FirewallRules: [{488B14F8-993C-4C48-9BEE-1432F92B7CDB}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe => Keine Datei FirewallRules: [{AA80D4FA-96BC-41C2-B853-A5AC9BDE9EDC}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => Keine Datei FirewallRules: [{914F07CF-2DD0-41CB-9DB5-7DA4EA57E371}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe => Keine Datei FirewallRules: [{6B2EF075-612E-48C8-8B38-83B8FC861943}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe => Keine Datei FirewallRules: [{85117002-2C5E-43EC-A68F-8E7041CFEE5B}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe => Keine Datei FirewallRules: [{6209D83C-7C06-448B-A0E2-AE200EA16D64}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{5FB3E846-5153-48BC-ADAE-E6DB4B191F0E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{69FA6BEF-6824-4D9E-9144-36CCB6082C52}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{39CD2423-F713-40F4-A14B-049BD27C5368}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1C14DC33-944A-4A1F-BA2A-3009A47C3354}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1B87C407-5F0A-4E8C-9D76-0659F8CC3847}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{5FC3D52D-2584-4F0D-A869-D8955ECDA335}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [TCP Query User{B239F318-80E6-4245-A5EE-CF79570744E3}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{0D2B7F40-79F0-4807-BE3C-53816978C5E8}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{E240840D-2174-4BE2-A0D5-4DBEA4888B7B}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{B8ED194A-5AED-4615-97FA-8644093CAAC1}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{6EE5C773-49BA-4C41-A123-AC41942CB4A8}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{9E0C8D3F-1C0C-44A1-BD96-C309B250D16B}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{E526140F-CF42-49BC-8E59-DCCD0CC8BFC5}] => (Allow) c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe (RealNetworks, Inc. -> RealNetworks, Inc.) FirewallRules: [{FD43C04F-793E-4068-A7B1-9A693863C09A}] => (Allow) c:\program files (x86)\real\realplayer\RealPlay.exe (RealNetworks, Inc. -> RealNetworks, Inc.) FirewallRules: [{FB5A92F0-C08B-45F9-8D31-A8D1EF77BAC7}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{76C52BD3-FCF4-4350-B4C3-2FAB748B589C}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCDS.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{237FD5AC-0F33-4547-9B0D-098E5AB25020}] => (Allow) C:\Ross-Tech\VCDS-DRV\VCIConfig.EXE (Ross-Tech, LLC -> Ross-Tech, LLC) FirewallRules: [{4DC15DE9-B4FC-4D14-80EA-F82F357FB0A1}] => (Allow) C:\Program Files (x86)\Sony\PS Remote Play\RemotePlay.exe (Sony Interactive Entertainment Inc. -> Sony Interactive Entertainment Inc.) FirewallRules: [{29110914-FB41-4EE4-8D3A-61F4F583A1CC}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.69\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:118.13 GB) (Free:34.27 GB) (29%) ==================== Fehlerhafte Geräte im Gerätemanager ============ Name: Generischer Adapter für das mobile Breitband Description: Generischer Adapter für das mobile Breitband Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: cxwmbclass Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (03/16/2023 09:00:39 AM) (Source: SecurityCenter) (EventID: 18) (User: ) Description: Der Windows-Sicherheitscenterdienst konnte keine Instanzen von FirewallProduct aus dem Datastore laden. Error: (03/16/2023 08:59:38 AM) (Source: SecurityCenter) (EventID: 18) (User: ) Description: Der Windows-Sicherheitscenterdienst konnte keine Instanzen von FirewallProduct aus dem Datastore laden. Error: (03/16/2023 08:56:49 AM) (Source: SecurityCenter) (EventID: 18) (User: ) Description: Der Windows-Sicherheitscenterdienst konnte keine Instanzen von FirewallProduct aus dem Datastore laden. Error: (03/16/2023 08:55:55 AM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren. ] Error: (03/16/2023 08:54:34 AM) (Source: SecurityCenter) (EventID: 18) (User: ) Description: Der Windows-Sicherheitscenterdienst konnte keine Instanzen von FirewallProduct aus dem Datastore laden. Error: (03/15/2023 06:46:41 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Local Hostname LAPTOP-8GLFFDV9.local already in use; will try LAPTOP-8GLFFDV9-2.local instead Error: (03/15/2023 06:46:41 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister 4 LAPTOP-8GLFFDV9.local. Addr 192.168.178.29 Error: (03/15/2023 06:46:41 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 192.168.178.29:5353 16 LAPTOP-8GLFFDV9.local. AAAA FD00:0000:0000:0000:70EA:4BCE:A45B:EC15 Systemfehler: ============= Error: (03/16/2023 12:49:59 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "MessagingService_37da9" wurde mit folgendem Fehler beendet: Das Gerät ist nicht bereit. Error: (03/16/2023 12:49:49 PM) (Source: sptd2) (EventID: 4) (User: ) Description: Der Treiber hat einen internen Fehler in seinen Datenstrukturen für festgestellt. Error: (03/16/2023 12:35:31 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Digital Wave Update Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (03/16/2023 12:35:31 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA GeForce Experience Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (03/16/2023 12:35:31 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "RealTimes Desktop Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (03/16/2023 12:35:31 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "RealPlayer Update Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (03/16/2023 12:35:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "PDF24" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Error: (03/16/2023 12:35:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Microsoft Office-Klick-und-Los-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Windows Defender: ================ Date: 2023-03-16 09:40:34 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {AAACF5E1-B5AF-42B1-A8F0-5A3373FDACA5} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2023-03-16 09:34:38 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {9261CC4F-1B55-48D7-B1EF-A838457EF9E8} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: LAPTOP-8GLFFDV9\Ikonia Date: 2023-03-16 09:30:43 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=Misleading:Win32/Lodi&threatid=240849&enterprise=0 Name: Misleading:Win32/Lodi Schweregrad: Hoch Kategorie: Adware Pfad: file:_C:\Program Files (x86)\DVDVideoSoft\Free DVD Video Burner\FreeDVDVideoBurner.exe; file:_C:\Users\Public\Desktop\Free DVD Video Burner.lnk Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Benutzer Benutzer: LAPTOP-8GLFFDV9\Ikonia Prozessname: Unknown Sicherheitsversion: AV: 1.381.2411.0, AS: 1.381.2411.0, NIS: 1.381.2411.0 Modulversion: AM: 1.1.19900.2, NIS: 1.1.19900.2 Date: 2023-01-18 18:02:52 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {0330E199-5E21-413E-938F-97C583A4A56D} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2023-01-17 15:37:26 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {489FB1D4-452A-41BA-A6EE-807C6733B6C1} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Event[0]: Date: 2023-03-16 08:58:18 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80240438 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2023-02-05 17:05:02 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80240017 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2023-01-27 12:51:25 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80240017 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2023-01-27 12:45:32 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: 1.381.2774.0 %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Benutzer Sicherheitstyp: AntiSpyware Updatetyp: Delta Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: 1.1.19900.2 %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80004004 Fehlerbeschreibung: Vorgang abgebrochen Date: 2023-01-27 12:45:32 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: 1.381.2774.0 %Vorherige Version der Sicherheitsinformationen: 1.381.2411.0 Update Source: Benutzer Sicherheitstyp: AntiVirus Updatetyp: Delta Benutzer: NT-AUTORITÄT\Netzwerkdienst Aktuelle Modulversion: 1.1.19900.2 %Vorherige Modulversion: 1.1.19900.2 Fehlercode: 0x80004004 Fehlerbeschreibung: Vorgang abgebrochen CodeIntegrity: =============== Date: 2023-03-16 11:06:53 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\BdNet.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2023-03-16 10:07:00 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Avira\Endpoint Protection SDK\amsi\x64\avamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Speicherinformationen =========================== BIOS: Insyde Corp. V1.25 03/03/2017 Hauptplatine: Acer SpiderMan_SK Prozessor: Intel(R) Core(TM) i5-7200U CPU @ 2.50GHz Prozentuale Nutzung des RAM: 48% Installierter physikalischer RAM: 8060.22 MB Verfügbarer physikalischer RAM: 4150.64 MB Summe virtueller Speicher: 12924.22 MB Verfügbarer virtueller Speicher: 9112.23 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:118.13 GB) (Free:34.27 GB) (Model: KINGSTON RBUSNS8280S3128GH2) NTFS Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:489.74 GB) (Model: TOSHIBA MQ01ABD100) NTFS \\?\Volume{ea4d0a22-4533-46b6-911c-15bdb9ed6a98}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.51 GB) NTFS \\?\Volume{3666d248-1ca3-4153-9266-a5de66c8c93c}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: F7FE7063) Partition: GPT. ========================================================== Disk: 1 (Size: 119.2 GB) (Disk ID: F7FE7222) Partition: GPT. ==================== Ende von Addition.txt ======================= |
Themen zu Der Zugriff auf diesen PC wurde gesperrt Hilfe |
aus sicherheitsgründen, gesperrt, gestartet, hilfe, laptop, meinem, melde, melden, natürlich, neu, pc wurde gesperrt, plötzlich, sicherheitsgründe, sicherheitsgründen, sofort, support, weiterhelfen, windows, zugriff |